Subscribe via feed.
Archive for July, 2020

eGroupWare 1.14 Remote Command Execution

Posted by deepcore under exploit (No Respond)

eGroupWare version 1.14 suffers from a remote command execution vulnerability.

docPrint Pro 8.0 Buffer Overflow

Posted by deepcore under exploit (No Respond)

docPrint Pro version 8.0 Add URL SEH buffer overflow exploit with egghunter.

Ruby On Rails 5.0.1 Remote Code Execution

Posted by deepcore under exploit (No Respond)

Ruby On Rails version 5.0.1 remote code execution exploit.

Virtual Airlines Manager 2.6.2 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Virtual Airlines Manager version 2.6.2 suffers from a persistent cross site scripting vulnerability.

pfSense 2.4.4-p3 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

pfSense version 2.4.4-p3 suffers from a cross site request forgery vulnerability.

Socket.io-file 2.0.31 Arbitrary File Upload

Posted by deepcore under exploit (No Respond)

Socket.io-file versions 2.0.31 and below suffer from an arbitrary file upload vulnerability.

[webapps] Cisco Adaptive Security Appliance Software 9.11 – Local File Inclusion

Posted by deepcore under Security (No Respond)

Cisco Adaptive Security Appliance Software 9.11 – Local File Inclusion

Tags: ,

[webapps] eGroupWare 1.14 – 'spellchecker.php' Remote Command Execution

Posted by deepcore under Security (No Respond)

eGroupWare 1.14 – ‘spellchecker.php’ Remote Command Execution

Tags: ,

HackRF One/ Portapack hints

Posted by deepquest under HackRFOne, PortaPack, RTL-SDR (No Respond)

Finally received days ago a Portapack with a bundle of 5 antennas covering from 1Mhz to 6GHz. Portapack is just a standalone HackRF One with a touch screen. The band coverage makes the usage virtually limitless: interception, replay, broadcast from most frequencies.

[webapps] Webtareas 2.1p – Arbitrary File Upload (Authenticated)

Posted by deepcore under Security (No Respond)

Webtareas 2.1p – Arbitrary File Upload (Authenticated)

Tags: ,