Subscribe via feed.
Archive for February, 2021

Apport 2.20 Privilege Escalation

Posted by deepcore under exploit (No Respond)

Apport version 2.20 suffers from a local privilege escalation vulnerability.

Batflat CMS 1.3.6 Remote Code Execution

Posted by deepcore under exploit (No Respond)

Batflat CMS versions 1.3.6 and below suffer from a remote code execution vulnerability.

Backdoor.Win32.Agent.aak Buffer Overflow

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.Agent.aak malware suffers from a buffer overflow vulnerability.

[local] dataSIMS Avionics ARINC 664-1 – Local Buffer Overflow (PoC)

Posted by deepcore under Security (No Respond)

dataSIMS Avionics ARINC 664-1 – Local Buffer Overflow (PoC)

Tags: ,

[webapps] Online Exam System With Timer 1.0 – 'email' SQL injection Auth Bypass

Posted by deepcore under Security (No Respond)

Online Exam System With Timer 1.0 – ’email’ SQL injection Auth Bypass

Tags: ,

[webapps] Comment System 1.0 – 'multiple' Stored Cross-Site Scripting

Posted by deepcore under Security (No Respond)

Comment System 1.0 – ‘multiple’ Stored Cross-Site Scripting

Tags: ,

[webapps] PEEL Shopping 9.3.0 – 'Comments/Special Instructions' Stored Cross-Site Scripting

Posted by deepcore under Security (No Respond)

PEEL Shopping 9.3.0 – ‘Comments/Special Instructions’ Stored Cross-Site Scripting

Tags: ,

Faulty Evaluation System 1.0 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Faulty Evaluation System version 1.0 suffers from multiple persistent cross site scripting vulnerabilities.

Billing Management System 2.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Billing Management System version 2.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

[webapps] Batflat CMS 1.3.6 – Remote Code Execution (Authenticated)

Posted by deepcore under Security (No Respond)

Batflat CMS 1.3.6 – Remote Code Execution (Authenticated)

Tags: ,