Subscribe via feed.
Archive for April, 2020

[local] AIDA64 Engineer 6.20.5300 – 'Report File' filename Buffer Overflow (SEH)

Posted by deepcore under Security (No Respond)

AIDA64 Engineer 6.20.5300 – ‘Report File’ filename Buffer Overflow (SEH)

Tags: ,

https://www.phanathos.go.th/ITA/KiLL3R.html

Posted by deepcore under defacement (No Respond)

https://www.phanathos.go.th/ITA/KiLL3R.html notified by ADDiCT_KiLL3R

Tags:

KandNconcepts Club CMS 1.1 / 1.2 Cross Site Scripting / SQL Injection

Posted by deepcore under exploit (No Respond)

KandNconcepts Club CMS versions 1.1 and 1.2 suffer from cross site scripting and remote SQL injection vulnerabilities.

DiskBoss 7.7.14 Denial Of Service

Posted by deepcore under exploit (No Respond)

DiskBoss version 7.7.14 suffers from a denial of service vulnerability.

10Strike LANState 9.32 Host Check hostname Buffer Overflow

Posted by deepcore under exploit (No Respond)

10Strike LANState version 9.32 on x86 Host Check hostname SEH buffer overflow exploit.

Packet Storm New Exploits For March, 2020

Posted by deepcore under exploit (No Respond)

This archive contains all of the 150 exploits added to Packet Storm in March, 2020.

[local] DiskBoss 7.7.14 – 'Input Directory' Local Buffer Overflow (PoC)

Posted by deepcore under Security (No Respond)

DiskBoss 7.7.14 – ‘Input Directory’ Local Buffer Overflow (PoC)

Tags: ,

Grandstream UCM6200 Series WebSocket 1.0.20.20 SQL Injection

Posted by deepcore under exploit (No Respond)

Grandstream UCM6200 Series WebSocket versions 1.0.20.20 and below suffer from a remote SQL injection vulnerability.

Grandstream UCM6200 Series CTI Interface SQL Injection

Posted by deepcore under exploit (No Respond)

Grandstream UCM6200 Series CTI Interface versions 1.0.20.20 and below suffer from a remote SQL injection vulnerability.

FlashFXP 4.2.0 Build 1730 Denial Of Service

Posted by deepcore under exploit (No Respond)

FlashFXP version 4.2.0 build 1730 denial of service proof of concept exploit.