Subscribe via feed.
Archive for January, 2021

Backdoor.Win32.Wollf.16 Hardcoded Password

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.Wollf.16 malware creates and runs a service named contime.exe with SYSTEM integrity and listens on port 5240. The malware uses a weak hardcoded password of 12345678 which can easily be viewed in the binary using strings utility.

PEAR Archive_Tar Arbitrary File Write

Posted by deepcore under exploit (No Respond)

This Metasploit module takes advantages of Archive_Tar versions prior to 1.4.11 which fail to validate file stream wrappers contained within filenames to write an arbitrary file containing user controlled content to an arbitrary file on disk. Note that the file will be written to disk with the permissions of the user that PHP is running […]

MobileIron MDM Hessian-Based Java Deserialization Remote Code Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits an ACL bypass in MobileIron MDM products to execute a Groovy gadget against a Hessian-based Java deserialization endpoint.

Backdoor.Win32.DarkKomet.bhfh Insecure Permissions

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.DarkKomet.bhfh malware suffers from an insecure permissions vulnerability.

SonicWall Says It Was Hacked Using Zero-Days In Its Own Products

Posted by deepcore under exploit (No Respond)

[webapps] Oracle WebLogic Server 12.2.1.0 – RCE (Unauthenticated)

Posted by deepcore under Security (No Respond)

Oracle WebLogic Server 12.2.1.0 – RCE (Unauthenticated)

Tags: ,

[webapps] Tenda AC5 AC1200 Wireless – 'WiFi Name & Password' Stored Cross Site Scripting

Posted by deepcore under Security (No Respond)

Tenda AC5 AC1200 Wireless – ‘WiFi Name & Password’ Stored Cross Site Scripting

Tags: ,

[webapps] Simple College Website 1.0 – 'full' Stored Cross Site Scripting

Posted by deepcore under Security (No Respond)

Simple College Website 1.0 – ‘full’ Stored Cross Site Scripting

Tags: ,

[webapps] Simple College Website 1.0 – 'name' Sql Injection (Authentication Bypass)

Posted by deepcore under Security (No Respond)

Simple College Website 1.0 – ‘name’ Sql Injection (Authentication Bypass)

Tags: ,

[webapps] Cemetry Mapping and Information System 1.0 – 'user_email' Sql Injection (Authentication Bypass)

Posted by deepcore under Security (No Respond)

Cemetry Mapping and Information System 1.0 – ‘user_email’ Sql Injection (Authentication Bypass)

Tags: ,