Subscribe via feed.
Archive for October, 2020

http://don.go.th/asu.php

Posted by deepcore under defacement (No Respond)

http://don.go.th/asu.php notified by MR.COLT

Tags:

CSE Bookstore 1.0 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

CSE Bookstore version 1.0 suffers from a persistent cross site scripting vulnerability.

DedeCMS 5.8 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

DedeCMS version 5.8 suffers from a cross site scripting vulnerability.

Agent Tesla Botnet Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Agent Tesla Botnet suffers from a cross site scripting vulnerability.

Citadel WebCit Session Hijacking

Posted by deepcore under exploit (No Respond)

Citadel WebCit versions prior to 926 suffer from a session hijacking vulnerability.

Wondershare Dr.Fone 3.0.0 Unquoted Service Path

Posted by deepcore under exploit (No Respond)

Wondershare Dr.Fone version 3.0.0 suffers from an unquoted service path vulnerability.

Simple College Website 1.0 Code Execution / SQL Injection

Posted by deepcore under exploit (No Respond)

Simple College Website version 1.0 suffers from code execution and remote SQL injection vulnerabilities.

Microsoft Windows Kernel cng.sys Buffer Overflow

Posted by deepcore under exploit (No Respond)

The Microsoft Windows Kernel Cryptography Driver (cng.sys) exposes a DeviceCNG device to user-mode programs and supports a variety of IOCTLs with non-trivial input structures. It constitutes a locally accessible attack surface that can be exploited for privilege escalation (such as sandbox escape).

Google Discloses Windows Zero-Day Exploited In The Wild

Posted by deepcore under exploit (No Respond)

Online Examination System 1.0 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Online Examination System version 1.0 suffers from a persistent cross site scripting vulnerability.