Subscribe via feed.
Archive for March, 2020

[local] SpyHunter 4 – 'SpyHunter 4 Service' Unquoted Service Path

Posted by deepcore under Security (No Respond)

SpyHunter 4 – ‘SpyHunter 4 Service’ Unquoted Service Path

Tags: ,

[local] SpyHunter 4 – 'SpyHunter 4 Service' Unquoted Service Path

Posted by deepcore under Security (No Respond)

SpyHunter 4 – ‘SpyHunter 4 Service’ Unquoted Service Path

Tags: ,

[local] Iskysoft Application Framework Service 2.4.3.241 – 'IsAppService' Unquoted Service Path

Posted by deepcore under Security (No Respond)

Iskysoft Application Framework Service 2.4.3.241 – ‘IsAppService’ Unquoted Service Path

Tags: ,

[local] Iskysoft Application Framework Service 2.4.3.241 – 'IsAppService' Unquoted Service Path

Posted by deepcore under Security (No Respond)

Iskysoft Application Framework Service 2.4.3.241 – ‘IsAppService’ Unquoted Service Path

Tags: ,

[local] Deep Instinct Windows Agent 1.2.29.0 – 'DeepMgmtService' Unquoted Service Path

Posted by deepcore under Security (No Respond)

Deep Instinct Windows Agent 1.2.29.0 – ‘DeepMgmtService’ Unquoted Service Path

Tags: ,

[local] Deep Instinct Windows Agent 1.2.29.0 – 'DeepMgmtService' Unquoted Service Path

Posted by deepcore under Security (No Respond)

Deep Instinct Windows Agent 1.2.29.0 – ‘DeepMgmtService’ Unquoted Service Path

Tags: ,

UniSharp Laravel File Manager 2.0.0 Arbitrary File Read

Posted by deepcore under exploit (No Respond)

UniSharp Laravel File Manager version 2.0.0 suffers from an arbitrary file read vulnerability.

XOO Digital 2.1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

XOO Digital version 2.1.0 suffers from a remote SQL injection vulnerability.

Exchange Control Panel Viewstate Deserialization

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a .NET serialization vulnerability in the Exchange Control Panel (ECP) web page. The vulnerability is due to Microsoft Exchange Server not randomizing the keys on a per-installation basis resulting in them using the same validationKey and decryptionKey values. With knowledge of these, values an attacker can craft a special viewstate to […]

[remote] EyesOfNetwork – AutoDiscovery Target Command Execution (Metasploit)

Posted by deepcore under Security (No Respond)

EyesOfNetwork – AutoDiscovery Target Command Execution (Metasploit)

Tags: ,