Subscribe via feed.
Archive for December, 2020

eClass LMS 2.6 Shell Upload

Posted by deepcore under exploit (No Respond)

Last Updated on December 2, 2020 by deepcore eClass LMS version 2.6 suffers from a remote shell upload vulnerability.

Packet Storm New Exploits For November, 2020

Posted by deepcore under exploit (No Respond)

Last Updated on December 2, 2020 by deepcore This archive contains all of the 185 exploits added to Packet Storm in November, 2020.

[webapps] Artworks Gallery 1.0 – Arbitrary File Upload RCE (Authenticated)

Posted by deepcore under Security (No Respond)

Last Updated on December 2, 2020 by deepcore Artworks Gallery 1.0 – Arbitrary File Upload RCE (Authenticated)

Tags: ,

[webapps] Expense Management System – 'description' Stored Cross Site Scripting

Posted by deepcore under Security (No Respond)

Last Updated on December 2, 2020 by deepcore Expense Management System – ‘description’ Stored Cross Site Scripting

Tags: ,

[webapps] Artworks Gallery 1.0 – Arbitrary File Upload RCE (Authenticated) via Edit Profile

Posted by deepcore under Security (No Respond)

Last Updated on December 2, 2020 by deepcore Artworks Gallery 1.0 – Arbitrary File Upload RCE (Authenticated) via Edit Profile

Tags: ,

[local] aSc TimeTables 2021.6.2 – Denial of Service (PoC)

Posted by deepcore under Security (No Respond)

Last Updated on December 2, 2020 by deepcore aSc TimeTables 2021.6.2 – Denial of Service (PoC)

Tags: ,

[webapps] Pharmacy Store Management System 1.0 – 'id' SQL Injection

Posted by deepcore under Security (No Respond)

Last Updated on December 2, 2020 by deepcore Pharmacy Store Management System 1.0 – ‘id’ SQL Injection

Tags: ,

[local] IDT PC Audio 1.0.6433.0 – 'STacSV' Unquoted Service Path

Posted by deepcore under Security (No Respond)

Last Updated on December 2, 2020 by deepcore IDT PC Audio 1.0.6433.0 – ‘STacSV’ Unquoted Service Path

Tags: ,

[webapps] Under Construction Page with CPanel 1.0 – SQL injection

Posted by deepcore under Security (No Respond)

Last Updated on December 2, 2020 by deepcore Under Construction Page with CPanel 1.0 – SQL injection

Tags: ,

[webapps] WonderCMS 3.1.3 – 'Menu' Persistent Cross-Site Scripting

Posted by deepcore under Security (No Respond)

Last Updated on December 2, 2020 by deepcore WonderCMS 3.1.3 – ‘Menu’ Persistent Cross-Site Scripting

Tags: ,