Subscribe via feed.
Archive for January, 2021

Backdoor.Win32.Ketch.b Remote Stack Buffer Overflow

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.Ketch.b malware suffers from a remote stack buffer overflow vulnerability.

Cemetery Mapping And Information System 1.0 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Cemetery Mapping and Information System version 1.0 suffers from multiple persistent cross site scripting vulnerabilities.

Backdoor.Win32.Levelone.a Remote Stack Buffer Overflow

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.Levelone.a malware suffers from a remote stack buffer overflow vulnerability.

EyesOfNetwork 5.3 Local File Inclusion

Posted by deepcore under exploit (No Respond)

EyesOfNetwork version 5.3 suffers from a local file inclusion vulnerability.

PortableKanban 4.3.6578.38136 Encrypted Password Disclosure

Posted by deepcore under exploit (No Respond)

PortableKanban version 4.3.6578.38136 suffers from a credential disclosure vulnerability via reverse engineering the executable.

Gentoo Linux Security Advisory 202101-03

Posted by deepcore under exploit (No Respond)

Gentoo Linux Security Advisory 202101-3 – A buffer overflow in ipmitool might allow remote attacker(s) to execute arbitrary code. Versions less than 1.8.18_p20201004-r1 are affected.

OpenCart 3.0.36 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

OpenCart version 3.0.36 account takeover cross site request forgery exploit.

Backdoor.Win32.Levelone.b Remote Stack Buffer Overflow

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.Levelone.b malware suffers from a stack buffer overflow vulnerability.

Prestashop 1.7.7.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Prestashop version 1.7.7.0 suffers from a remote blind SQL injection vulnerability.

EyesOfNetwork 5.3 Remote Code Execution / Privilege Escalation

Posted by deepcore under exploit (No Respond)

EyesOfNetwork version 5.3 remote code execution and privilege escalation exploit. Initial discovery of remote code execution in this version is attributed to Clement Billac in February of 2020.