Subscribe via feed.
Archive for July, 2020

Daily Expense Tracker 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Daily Expense Tracker version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

Plexus anblick Digital Signage Management 3.1.13 Open Redirect

Posted by deepcore under exploit (No Respond)

Plexus anblick Digital Signage Management version 3.1.13 suffers from an open redirection vulnerability.

Employee Record Management System 1.1 SQL Injection

Posted by deepcore under exploit (No Respond)

Employee Record Management System version 1.1 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

Company Visitor Management System (CVMS) 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Company Visitor Management System (CVMS) version 1.0 suffers from multiple remote SQL Injection vulnerabilities, one of which allows for authentication bypass.

UBICOD Medivision Digital Signage 1.5.1 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

UBICOD Medivision Digital Signage version 1.5.1 suffers from a cross site request forgery vulnerability.

Directory Management System (DMS) 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Directory Management System (DMS) version 1.0 suffers from multiple remote SQL Injection vulnerabilities, one of which allows for authentication bypass.

UBICOD Medivision Digital Signage 1.5.1 Privilege Escalation

Posted by deepcore under exploit (No Respond)

UBICOD Medivision Digital Signage version 1.5.1 suffers from a privilege escalation vulnerability that is leveraged via authorization bypass.

usrsctp Stack Buffer Overflow

Posted by deepcore under exploit (No Respond)

There is a stack buffer overflow in usrsctp when a server processes a skipped auth block from an incoming connection. Proof of concept exploit included.

SIGRed Windows DNS Denial Of Service

Posted by deepcore under exploit (No Respond)

Proof of concept denial of service exploit for the SIGRed vulnerability in Microsoft Windows DNS.

[local] NetPCLinker 1.0.0.0 – Buffer Overflow (SEH Egghunter)

Posted by deepcore under Security (No Respond)

NetPCLinker 1.0.0.0 – Buffer Overflow (SEH Egghunter)

Tags: ,