Gnome Fonts Viewer 3.34.0 – Heap Corruption
>> ARCHIVE: 2020-09
Gnome Fonts Viewer 3.34.0 – Heap Corruption
ZTE Router F602W – Captcha Bypass
CuteNews 2.1.2 – Remote Code Execution
Tiandy IPC and NVR 9.12.7 – Credential Disclosure
Yaws versions 1.81 through 2.0.7 suffer from remote OS command injection and XML external entity injection vulnerabilities.
The CloundExperienceHostBroker hosts unsafe COM objects accessible to a normal user leading to elevation of privilege.
The Qualcomm Adreno GPU shares a global mapping called a “scratch” buffer with the Adreno KGSL kernel driver. The contents of the scratch buffer can be overwritten by untrusted GPU…
The StorageFolder class when used out of process can bypass security checks to read and write files not allowed to an AppContainer.
http://thepsathit.go.th/doc/ghi.html notified by Ghost Hunter Illusion
http://abtnongyang.go.th/doc/ghi.html notified by Ghost Hunter Illusion