Subscribe via feed.
Archive for January, 2021

Anchor CMS 0.12.7 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Anchor CMS version 0.12.7 suffers from a markdown persistent cross site scripting vulnerability. Original discovery of persistent cross site scripting in this version was discovered by Sinem Sahin in September of 2020.

Coturn 4.5.1.x Access Control Bypass

Posted by deepcore under exploit (No Respond)

Coturn version 4.5.1.x suffers from a loopback access control bypass vulnerability.

WordPress Custom Global Variables 1.0.5 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

WordPress Custom Global Variables plugin version 1.0.5 suffers from a persistent cross site scripting vulnerability.

[webapps] SmartAgent 3.1.0 – Privilege Escalation

Posted by deepcore under Security (No Respond)

SmartAgent 3.1.0 – Privilege Escalation

Tags: ,

[webapps] Cemetry Mapping and Information System 1.0 – Multiple SQL Injections

Posted by deepcore under Security (No Respond)

Cemetry Mapping and Information System 1.0 – Multiple SQL Injections

Tags: ,

[webapps] Gila CMS 2.0.0 – Remote Code Execution (Unauthenticated)

Posted by deepcore under Security (No Respond)

Gila CMS 2.0.0 – Remote Code Execution (Unauthenticated)

Tags: ,

http://www.abtbungkla.go.th/test.php

Posted by deepcore under defacement (No Respond)

http://www.abtbungkla.go.th/test.php notified by Anonymous Indonesia

Tags:

[webapps] OpenCart 3.0.36 – ATO via Cross Site Request Forgery

Posted by deepcore under Security (No Respond)

OpenCart 3.0.36 – ATO via Cross Site Request Forgery

Tags: ,

[webapps] WordPress Plugin Custom Global Variables 1.0.5 – 'name' Stored Cross-Site Scripting (XSS)

Posted by deepcore under Security (No Respond)

WordPress Plugin Custom Global Variables 1.0.5 – ‘name’ Stored Cross-Site Scripting (XSS)

Tags: ,

[webapps] Cemetry Mapping and Information System 1.0 – Multiple Stored Cross-Site Scripting

Posted by deepcore under Security (No Respond)

Cemetry Mapping and Information System 1.0 – Multiple Stored Cross-Site Scripting

Tags: ,