Subscribe via feed.
Archive for June, 2020

Oriol Espinal CMS 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Oriol Espinal CMS version 1.0 suffers from a remote SQL injection vulnerability.

Hostel Management System 2.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Hostel Management System version 2.0 suffers from a remote SQL injection vulnerability.

Clinic Management System 1.0 Shell Upload

Posted by deepcore under exploit (No Respond)

Clinic Management System version 1.0 suffers from a remote shell upload vulnerability.

Underconstructionpage Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Underconstructionpage versions prior to 3.75 suffer from a persistent cross site scripting vulnerability.

D-Link DIR-615 T1 20.10 CAPTCHA Bypass

Posted by deepcore under exploit (No Respond)

D-Link DIR-615 T1 version 20.10 suffers from a CAPTCHA bypass vulnerability.

Secure Computing SnapGear Management Console SG560 3.1.5 CSRF

Posted by deepcore under exploit (No Respond)

Secure Computing SnapGear Management Console SG560 version 3.1.5 suffers from a cross site request forgery vulnerability.

Online Marriage Registration System 1.0 Remote Code Execution

Posted by deepcore under exploit (No Respond)

Online Marriage Registration System version 1.0 suffers from a remote code execution vulnerability.

Secure Computing SnapGear Management Console SG560 3.1.5 Arbitrary File Read / Write

Posted by deepcore under exploit (No Respond)

Secure Computing SnapGear Management Console SG560 version 3.1.5 suffers from arbitrary file read and write vulnerabilities. The application allows the currently logged-in user to edit the configuration files in the system using the CGI executable edit_config_files in /cgi-bin/cgix/. The files that are allowed to be modified (read/write/delete) are located in the /etc/config/ directory. An attacker […]

Navigate CMS 2.8.7 Directory Traversal

Posted by deepcore under exploit (No Respond)

Navigate CMS version 2.8.7 suffers from an authenticated directory traversal vulnerability.

NeonLMS Learning Management System PHP Laravel Script 4.6 File Download

Posted by deepcore under exploit (No Respond)

NeonLMS Learning Management System PHP Laravel Script version 4.6 suffers from an arbitrary file download vulnerability.