Subscribe via feed.
Archive for April, 2021

htmly 2.8.0 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

htmly version 2.8.0 suffers from a persistent cross site scripting vulnerability.

Backdoor.Win32.Zombam.h Buffer Overflow

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.Zombam.h malware suffers from a buffer overflow vulnerability.

Nagios XI Remote Code Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a command injection vulnerability in the /admin/monitoringplugins.php page of Nagios XI versions prior to 5.8.0 when uploading plugins. Successful exploitation allows an authenticated admin user to achieve remote code execution as the apache user by uploading a malicious plugin. Valid credentials for a Nagios XI admin user are required. This module […]

http://bantago.go.th/portal/datas/image/1618382873.gif

Posted by deepcore under defacement (No Respond)

http://bantago.go.th/portal/datas/image/1618382873.gif notified by Xyp3r2667

Tags:

[webapps] Tileserver-gl 3.0.0 – 'key' Reflected Cross-Site Scripting (XSS)

Posted by deepcore under Security (No Respond)

Tileserver-gl 3.0.0 – ‘key’ Reflected Cross-Site Scripting (XSS)

Tags: ,

[webapps] Horde Groupware Webmail 5.2.22 – Stored XSS

Posted by deepcore under Security (No Respond)

Horde Groupware Webmail 5.2.22 – Stored XSS

Tags: ,

http://kaendongmunic.go.th

Posted by deepcore under defacement (No Respond)

http://kaendongmunic.go.th notified by Xyp3r2667

Tags:

http://kampoo.go.th

Posted by deepcore under defacement (No Respond)

http://kampoo.go.th notified by Xyp3r2667

Tags:

http://www.khaowrai.go.th

Posted by deepcore under defacement (No Respond)

http://www.khaowrai.go.th notified by Xyp3r2667

Tags:

http://www.banprue.go.th

Posted by deepcore under defacement (No Respond)

http://www.banprue.go.th notified by Melody-x48

Tags: