Subscribe via feed.
Archive for May, 2020

Sentrifugo v3.2 CMS – Persistent XSS Web Vulnerability

Posted by deepcore under exploit (No Respond)

The vulnerability laboratory core research team discovered a persistent cross site scripting vulnerability in the Sentri…

Qik Chat v3.0 iOS – (Name) Command Inject Vulnerability

Posted by deepcore under exploit (No Respond)

The vulnerability laboratory core research team discovered a command injection vulnerability in the Qik Chat v3.0 in the…

[webapps] NEC Electra Elite IPK II WebPro 01.03.01 – Session Enumeration

Posted by deepcore under Security (No Respond)

NEC Electra Elite IPK II WebPro 01.03.01 – Session Enumeration

Tags: ,

[webapps] SimplePHPGal 0.7 – Remote File Inclusion

Posted by deepcore under Security (No Respond)

SimplePHPGal 0.7 – Remote File Inclusion

Tags: ,

[webapps] BlogEngine 3.3 – 'syndication.axd' XML External Entity Injection

Posted by deepcore under Security (No Respond)

BlogEngine 3.3 – ‘syndication.axd’ XML External Entity Injection

Tags: ,

[webapps] webERP 4.15.1 – Unauthenticated Backup File Access

Posted by deepcore under Security (No Respond)

webERP 4.15.1 – Unauthenticated Backup File Access

Tags: ,

[webapps] Online Scheduling System 1.0 – 'username' SQL Injection

Posted by deepcore under Security (No Respond)

Online Scheduling System 1.0 – ‘username’ SQL Injection

Tags: ,

[local] Oracle Database 11g Release 2 – 'OracleDBConsoleorcl' Unquoted Service Path

Posted by deepcore under Security (No Respond)

Oracle Database 11g Release 2 – ‘OracleDBConsoleorcl’ Unquoted Service Path

Tags: ,

[webapps] Fishing Reservation System 7.5 – 'uid' SQL Injection

Posted by deepcore under Security (No Respond)

Fishing Reservation System 7.5 – ‘uid’ SQL Injection

Tags: ,

[remote] Saltstack 3000.2 – Remote Code Execution

Posted by deepcore under Security (No Respond)

Saltstack 3000.2 – Remote Code Execution

Tags: ,