Subscribe via feed.
Archive for April, 2020

Git Credential Helper Protocol Newline Injection

Posted by deepcore under exploit (No Respond)

A git clone action can leak cached / stored credentials for github.com to example.com due to insecure handling of newlines in the credential helper protocol.

Liferay Portal Java Unmarshalling Remote Code Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a Java unmarshalling vulnerability via JSONWS in Liferay Portal versions prior to 6.2.5 GA6, 7.0.6 GA7, 7.1.3 GA4, and 7.2.1 GA2 to execute code as the Liferay user. Tested against 7.2.0 GA1.

TP-Link Archer A7/C7 Unauthenticated LAN Remote Code Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a command injection vulnerability in the tdpServer daemon (/usr/bin/tdpServer), running on the router TP-Link Archer A7/C7 (AC1750), hardware version 5, MIPS Architecture, firmware version 190726. The vulnerability can only be exploited by an attacker on the LAN side of the router, but the attacker does not need any authentication to abuse […]

Playable v9.18 iOS – Multiple Web Vulnerabilities

Posted by deepcore under exploit (No Respond)

The vulnerability laboratory core research team discovered multiple vulnerabilities in the official Playable v9.18 apple…

TAO AP v3.3.0 RC02 – Multiple Web Vulnerabilities

Posted by deepcore under exploit (No Respond)

The vulnerability laboratory core research team discovered multiple cross site vulnerabilities in the TAO Open Source As…

[remote] Apache Solr – Remote Code Execution via Velocity Template (Metasploit)

Posted by deepcore under Security (No Respond)

Apache Solr – Remote Code Execution via Velocity Template (Metasploit)

Tags: ,

[remote] DotNetNuke – Cookie Deserialization Remote Code Execution (Metasploit)

Posted by deepcore under Security (No Respond)

DotNetNuke – Cookie Deserialization Remote Code Execution (Metasploit)

Tags: ,

[remote] PlaySMS – index.php Unauthenticated Template Injection Code Execution (Metasploit)

Posted by deepcore under Security (No Respond)

PlaySMS – index.php Unauthenticated Template Injection Code Execution (Metasploit)

Tags: ,

[remote] Pandora FMS – Ping Authenticated Remote Code Execution (Metasploit)

Posted by deepcore under Security (No Respond)

Pandora FMS – Ping Authenticated Remote Code Execution (Metasploit)

Tags: ,

[remote] Liferay Portal – Java Unmarshalling via JSONWS RCE (Metasploit)

Posted by deepcore under Security (No Respond)

Liferay Portal – Java Unmarshalling via JSONWS RCE (Metasploit)

Tags: ,