Subscribe via feed.
Archive for February, 2021

http://www.srisamran-sm.go.th/me.html

Posted by deepcore under defacement (No Respond)

http://www.srisamran-sm.go.th/me.html notified by Mr V

Tags:

Apple Security Advisory 2021-02-09-1

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2021-02-09-1 – macOS Big Sur 11.2.1, macOS Catalina 10.15.7 Supplemental Update, and macOS Mojave 10.14.6 Security Update 2021-002 address code execution and out of bounds write vulnerabilities.

Tags: , ,

Huawei MBAMainService Unquoted Service Path

Posted by deepcore under exploit (No Respond)

Huawei MBAMainService suffers from an unquoted service path vulnerability.

PEEL Shopping 9.3.0 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

PEEL Shopping version 9.3.0 suffers from a persistent cross site scripting vulnerability.

Backdoor.Win32.Augudor.a Code Execution

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.Augudor.a malware suffers from a code execution vulnerability.

Openlitespeed WebServer 1.7.8 Command Injection

Posted by deepcore under exploit (No Respond)

Openlitespeed WebServer version 1.7.8 remote command injection exploit. Original discovery of command injection in this version is attributed to cm0s from SunCSR in January of 2021.

Online Marriage Registration System 1.0 Remote Code Execution

Posted by deepcore under exploit (No Respond)

Online Marriage Registration System (OMRS) version 1.0 remote code execution exploit. Original discovery of remote code execution in this version was discovered by Selim Enes Karaduman in June of 2020.

Backdoor.Win32.BackAttack.18 Missing Authentication

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.BackAttack.18 malware suffers from a missing authentication vulnerability that can allow for remote screenshots, system restart, and more.

[webapps] School Event Attendance Monitoring System 1.0 – 'Item Name' Stored Cross-Site Scripting

Posted by deepcore under Security (No Respond)

School Event Attendance Monitoring System 1.0 – ‘Item Name’ Stored Cross-Site Scripting

Tags: ,

[webapps] School File Management System 1.0 – 'multiple' Stored Cross-Site Scripting

Posted by deepcore under Security (No Respond)

School File Management System 1.0 – ‘multiple’ Stored Cross-Site Scripting

Tags: ,