Subscribe via feed.
Archive for February, 2020

RDP DOUBLEPULSAR Remote Code Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module executes a Metasploit payload against the Equation Group’s DOUBLEPULSAR implant for RDP. While this module primarily performs code execution against the implant, the “Neutralize implant” target allows you to disable the implant.

Centreon 19.10.5 Pollers Remote Command Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a Centreon version 19.10.5 Pollers remote command execution vulnerability.

[remote] HiSilicon DVR/NVR hi3520d firmware – Remote Backdoor Account

Posted by deepcore under Security (No Respond)

HiSilicon DVR/NVR hi3520d firmware – Remote Backdoor Account

Tags: ,

[webapps] Verodin Director Web Console 3.5.4.0 – Remote Authenticated Password Disclosure (PoC)

Posted by deepcore under Security (No Respond)

Verodin Director Web Console 3.5.4.0 – Remote Authenticated Password Disclosure (PoC)

Tags: ,

[webapps] Kronos WebTA 4.0 – Authenticated Remote Privilege Escalation

Posted by deepcore under Security (No Respond)

Kronos WebTA 4.0 – Authenticated Remote Privilege Escalation

Tags: ,

[local] xglance-bin 11.00 – Privilege Escalation

Posted by deepcore under Security (No Respond)

xglance-bin 11.00 – Privilege Escalation

Tags: ,

[webapps] Wago PFC200 – Authenticated Remote Code Execution (Metasploit)

Posted by deepcore under Security (No Respond)

Wago PFC200 – Authenticated Remote Code Execution (Metasploit)

Tags: ,

[local] Socat 1.7.3.4 – Heap-Based Overflow (PoC)

Posted by deepcore under Security (No Respond)

Socat 1.7.3.4 – Heap-Based Overflow (PoC)

Tags: ,

[webapps] AVideo Platform 8.1 – Cross Site Request Forgery (Password Reset)

Posted by deepcore under Security (No Respond)

AVideo Platform 8.1 – Cross Site Request Forgery (Password Reset)

Tags: ,

[webapps] AVideo Platform 8.1 – Information Disclosure (User Enumeration)

Posted by deepcore under Security (No Respond)

AVideo Platform 8.1 – Information Disclosure (User Enumeration)

Tags: ,