Subscribe via feed.
Archive for April, 2020

User Management System 2.0 SQL Injection

Posted by deepcore under exploit (No Respond)

User Management System version 2.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

Complaint Management System 4.2 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Complaint Management System version 4.2 suffers from a persistent cross site scripting vulnerability.

AMD Radeon DirectX 11 Driver 8.17.10.0871 Memory Corruption

Posted by deepcore under exploit (No Respond)

AMD Radeon DirectX 11 Driver version 8.17.10.0871 suffers from a memory corruption vulnerability.

Complaint Management System 4.2 SQL Injection

Posted by deepcore under exploit (No Respond)

Complaint Management System version 4.2 suffers a remote SQL injection vulnerability that allows for authentication bypass.

Complaint Management System 4.2 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

Complaint Management System version 4.2 suffers from a cross site request forgery vulnerability.

Zen Load Balancer 3.10.1 Directory Traversal

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits an authenticated directory traversal vulnerability in Zen Load Balancer version 3.10.1. The flaw exists in index.cgi not properly handling the filelog= parameter which allows a malicious actor to load arbitrary file path.

WebRTC FEC Extension Processing Out-Of-Bounds Write

Posted by deepcore under exploit (No Respond)

When WebRTC processes a packet using FEC, it does not adequately check bounds when zeroing the video timing extension.

Chrome AudioArray::Allocate Data Race / Out-Of-Bounds Access

Posted by deepcore under exploit (No Respond)

Chrome suffers from an issue where a data race in AudioArray::Allocate can lead to out-of-bounds access.

WebRTC Layer Info Out-Of-Bounds Write

Posted by deepcore under exploit (No Respond)

WebRTC suffers from an out-of-bounds memory write in the method RtpFrameReferenceFinder::UpdateLayerInfoH264. This occurs when updating the layer info with the frame marking extension.

WebKit AudioArray::allocate Data Race / Out-Of-Bounds Access

Posted by deepcore under exploit (No Respond)

WebKit has a data race condition in AudioArray::allocate that can lead to out-of-bounds access.