Subscribe via feed.
Archive for June, 2020

CipherMail Community Virtual Appliance 4.6.2 Code Execution

Posted by deepcore under exploit (No Respond)

CipherMail Community Virtual Appliance version 4.6.2 suffers from remote command execution and file injection vulnerabilities.

Pydio Cells 2.0.4 XSS / File Write / Code Execution

Posted by deepcore under exploit (No Respond)

Pydio Cells version 2.0.4 suffers from cross site scripting, file write, code execution, and various other vulnerabilities.

[webapps] Virtual Airlines Manager 2.6.2 – 'id' SQL Injection

Posted by deepcore under Security (No Respond)

Virtual Airlines Manager 2.6.2 – ‘id’ SQL Injection

Tags: ,

[webapps] Joomla J2 Store 3.3.11 – 'filter_order_Dir' SQL Injection (Authenticated)

Posted by deepcore under Security (No Respond)

Joomla J2 Store 3.3.11 – ‘filter_order_Dir’ SQL Injection (Authenticated)

Tags: ,

[webapps] Sistem Informasi Pengumuman Kelulusan Online 1.0 – Cross-Site Request Forgery (Add Admin)

Posted by deepcore under Security (No Respond)

Sistem Informasi Pengumuman Kelulusan Online 1.0 – Cross-Site Request Forgery (Add Admin)

Tags: ,

[local] 10-Strike Bandwidth Monitor 3.9 – Buffer Overflow (SEH,DEP,ASLR)

Posted by deepcore under Security (No Respond)

10-Strike Bandwidth Monitor 3.9 – Buffer Overflow (SEH,DEP,ASLR)

Tags: ,

[remote] HFS Http File Server 2.3m Build 300 – Buffer Overflow (PoC)

Posted by deepcore under Security (No Respond)

HFS Http File Server 2.3m Build 300 – Buffer Overflow (PoC)

Tags: ,

Online-Exam-System 2015 SQL Injection

Posted by deepcore under exploit (No Respond)

Online-Exam-System 2015 suffers from a remote SQL injection vulnerability.

NeonLMS 4.6 Shell Upload

Posted by deepcore under exploit (No Respond)

NeonLMS version 3.6 suffers from an authenticated remote shell upload vulnerability.

Virtual Airlines Manager 2.6.2 SQL Injection

Posted by deepcore under exploit (No Respond)

Virtual Airlines Manager version 2.6.2 suffers from a remote SQL injection vulnerability.