Subscribe via feed.
Archive for August, 2020

[webapps] All-Dynamics Digital Signage System 2.0.2 – Cross-Site Request Forgery (Add Admin)

Posted by deepcore under Security (No Respond)

All-Dynamics Digital Signage System 2.0.2 – Cross-Site Request Forgery (Add Admin)

Tags: ,

http://mueang.trang.doae.go.th

Posted by deepcore under defacement (No Respond)

http://mueang.trang.doae.go.th notified by Zeerx7

Tags:

[webapps] Victor CMS 1.0 – 'Search' SQL Injection

Posted by deepcore under Security (No Respond)

Victor CMS 1.0 – ‘Search’ SQL Injection

Tags: ,

Car Rental Management System 1.0 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Car Rental Management System version 1.0 suffers from a persistent cross site scripting vulnerability.

Car Rental Management System 1.0 Remote Code Execution

Posted by deepcore under exploit (No Respond)

Car Rental Management System version 1.0 unauthenticated remote code execution exploit.

Pi-hole 4.3.2 Remote Code Execution

Posted by deepcore under exploit (No Respond)

Pi-hole version 4.3.2 authenticated remote code execution exploit.

RTSP For iOS 1.0 Denial Of Service

Posted by deepcore under exploit (No Respond)

RTSP for iOS version 1.0 denial of service proof of concept exploit.

Daily Expenses Management System 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Daily Expenses Management System version 1.0 suffers from a remote SQL injection vulnerability.

Mocha Telnet Lite For iOS 4.2 Denial Of Service

Posted by deepcore under exploit (No Respond)

Mocha Telnet Lite for iOS version 4.2 denial of service proof of concept exploit.

Gantt-Chart For Jira 5.5.3 Missing Privilege Check

Posted by deepcore under exploit (No Respond)

Gantt-Chart for Jira versions 5.5.3 and below misses a privilege check which allows an attacker to read and write the module configuration for other users.