Subscribe via feed.
Archive for January, 2021

http://www.tessabantak.go.th

Posted by deepcore under defacement (No Respond)

http://www.tessabantak.go.th notified by Xyp3r2667

Tags:

Backdoor.Win32.Zombam.k Stack Buffer Overflow

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.Zombam.k malware suffers from a remote string dereference stack buffer overflow vulnerability.

sar2html 3.2.1 Remote Code Execution

Posted by deepcore under exploit (No Respond)

sar2html version 3.2.1 remote code execution exploit. Original discovery for this vector of attack is attributed to Furkan Kayapinar in August of 2019.

CMS Made Simple 2.2.15 Remote Command Execution

Posted by deepcore under exploit (No Respond)

CMS Made Simple version 2.2.15 suffers from an authenticated remote command execution vulnerability.

Subrion CMS 4.2.1 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Subrion CMS version 4.2.1 suffers from a cross site scripting vulnerability. Original discovered of cross site scripting in this version is attributed to Ismail Tasdelen in July of 2018.

Incom CMS 2.0 File Upload

Posted by deepcore under exploit (No Respond)

Incom CMS version 2.0 suffers from an unauthenticated arbitrary file upload vulnerability.

House Rental And Property Listing 1.0 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

House Rental and Property Listing version 1.0 suffers from multiple persistent cross site scripting vulnerabilities.

Intel Matrix Storage Event Monitor 8.0.0.1039 Unquoted Service Path

Posted by deepcore under exploit (No Respond)

Intel Matrix Storage Event Monitor x86 version 8.0.0.1039 suffers from an IAANTMON unquoted service path vulnerability.

Click2Magic 1.1.5 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Click2Magic version 1.1.5 suffers from a persistent cross site scripting vulnerability.

EgavilanMedia User Registration And Login System With Admin Panel 1.0 XSS

Posted by deepcore under exploit (No Respond)

EgavilanMedia User Registration and Login System with Admin Panel version 1.0 suffers from multiple persistent cross site scripting vulnerabilities. Original discovery of persistent cross site scripting in this version is attributed to Soushikta Chowdhury in December of 2020.