Subscribe via feed.
Archive for January, 2020

[webapps] Karakuzu ERP Management Web 5.7.0 – 'k_adi_duz' SQL Injection

Posted by deepcore under Security (No Respond)

Karakuzu ERP Management Web 5.7.0 – ‘k_adi_duz’ SQL Injection

Tags: ,

[webapps] Online Course Registration 2.0 – Remote Code Execution

Posted by deepcore under Security (No Respond)

Online Course Registration 2.0 – Remote Code Execution

Tags: ,

NextVPN 4.10 Insecure File Permissions

Posted by deepcore under exploit (No Respond)

NextVPN version 4.10 suffers from an insecure file permissions vulnerability.

WordPress Ultimate Addons For Beaver Builder 1.2.4.1 Authentication Bypass

Posted by deepcore under exploit (No Respond)

WordPress Ultimate Addons for Beaver Builder version 1.2.4.1 suffers from an authentication bypass vulnerability.

nostromo 1.9.6 Remote Code Execution

Posted by deepcore under exploit (No Respond)

nostromo version 1.9.6 suffers from a remote code execution vulnerability.

Shopping Portal ProVersion 3.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Shopping Portal ProVersion version 3.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

IBM InfoPrint 4247-Z03 Impact Matrix Printer Directory Traversal

Posted by deepcore under exploit (No Respond)

IBM InfoPrint 4247-Z03 Impact Matrix Printer suffers from a directory traversal vulnerability.

Hospital Management System 4.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Hospital Management System version 4.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

Microsoft Windows .Group File URL Field Code Execution

Posted by deepcore under exploit (No Respond)

Microsoft Windows suffers from a .group file code execution vulnerability that leverages the URL field.

Packet Storm New Exploits For December, 2019

Posted by deepcore under exploit (No Respond)

This archive contains all of the 128 exploits added to Packet Storm in December, 2019.