Subscribe via feed.
Archive for January, 2020

Hospital Management System 4.0 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Hospital Management System version 4.0 suffers from a persistent cross site scripting vulnerability in add-patient.php. This version is already known to have persistent cross site scripting issues.

Easy XML Editor 1.7.8 XML Injection

Posted by deepcore under exploit (No Respond)

Easy XML Editor version 1.7.8 suffers from an XML external entity injection vulnerability.

Advie Framework 2.0.8 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Adive Framework version 2.0.8 suffers from a persistent cross site scripting vulnerability.

Sysax Multi Server 5.50 Denial Of Service

Posted by deepcore under exploit (No Respond)

Sysax Multi Server version 5.50 suffers from a denial of service vulnerability.

Centreon 19.04 Remote Code Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits an authenticated remote code execution vulnerability in Centreon version 19.04.

[local] NEOWISE CARBONFTP 1.4 – Weak Password Encryption

Posted by deepcore under Security (No Respond)

NEOWISE CARBONFTP 1.4 – Weak Password Encryption

Tags: ,

[webapps] ManageEngine Network Configuration Manager 12.2 – 'apiKey' SQL Injection

Posted by deepcore under Security (No Respond)

ManageEngine Network Configuration Manager 12.2 – ‘apiKey’ SQL Injection

Tags: ,

[webapps] Centreon 19.04 – Authenticated Remote Code Execution (Metasploit)

Posted by deepcore under Security (No Respond)

Centreon 19.04 – Authenticated Remote Code Execution (Metasploit)

Tags: ,

[dos] Sysax Multi Server 5.50 – Denial of Service (PoC)

Posted by deepcore under Security (No Respond)

Sysax Multi Server 5.50 – Denial of Service (PoC)

Tags: ,

[webapps] Adive Framework 2.0.8 – Persistent Cross-Site Scripting

Posted by deepcore under Security (No Respond)

Adive Framework 2.0.8 – Persistent Cross-Site Scripting

Tags: ,