Subscribe via feed.
Archive for July, 2020

Namirial SIGNificant SignAnyWhere 6.10.x Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Namirial SIGNificant SignAnyWhere versions 6.10.60.25434 and 6.10.100.25817 suffer from a persistent cross site scripting vulnerability.

Cisco ASA / FTD Remote File Disclosure

Posted by deepcore under exploit (No Respond)

This Python script checks whether the target server is vulnerable to CVE-2020-3452, a vulnerability in Cisco Adaptive Security Appliance (ASA) and Cisco Firepower Threat Defense (FTD) products that can allow for remote file disclosure.

Cisco Adaptive Security Appliance Software 9.11 Local File Inclusion

Posted by deepcore under exploit (No Respond)

Adaptive Security Appliance Software version 9.11 local file inclusion exploit.

Cisco Adaptive Security Appliance Software 9.7 Arbitrary File Deletion

Posted by deepcore under exploit (No Respond)

Cisco Adaptive Security Appliance Software version 9.7 unauthenticated arbitrary file deletion exploit.

WordPress Maintenance Mode By SeedProd 5.1.1 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

WordPress Maintenance Mode by SeedProd plugin version 5.1.1 suffers from a persistent cross site scripting vulnerability.

Baldr Botnet Panel Shell Upload

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a arbitrary file upload vulnerability within the Baldr stealer malware control panel. Attackers can turn this vulnerability into remote code execution by adding malicious PHP code inside the victim logs ZIP file and registering a new bot to the panel by uploading the ZIP file under the logs directory. On versions […]

[webapps] Online Shopping Alphaware 1.0 – Authentication Bypass

Posted by deepcore under Security (No Respond)

Online Shopping Alphaware 1.0 – Authentication Bypass

Tags: ,

[webapps] Cisco Adaptive Security Appliance Software 9.7 – Unauthenticated Arbitrary File Deletion

Posted by deepcore under Security (No Respond)

Cisco Adaptive Security Appliance Software 9.7 – Unauthenticated Arbitrary File Deletion

Tags: ,

[webapps] WordPress Plugin Maintenance Mode by SeedProd 5.1.1 – Persistent Cross-Site Scripting

Posted by deepcore under Security (No Respond)

WordPress Plugin Maintenance Mode by SeedProd 5.1.1 – Persistent Cross-Site Scripting

Tags: ,

http://www.phuho.go.th/Admin/IMG/20200422032710.html

Posted by deepcore under defacement (No Respond)

http://www.phuho.go.th/Admin/IMG/20200422032710.html notified by moncet

Tags: