Subscribe via feed.
Archive for April, 2021

Fast PHP Chat 1.3 SQL Injection

Posted by deepcore under exploit (No Respond)

Fast PHP Chat version 1.3 suffers from a remote SQL injection vulnerability.

Multilaser Router RE018 AC1200 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

Multilaser Router RE018 AC1200 suffers from a cross site request forgery vulnerability.

WordPress RSS For Yandex Turbo 1.29 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

WordPress RSS for Yandex Turbo plugin version 1.29 suffers from a persistent cross site scripting vulnerability.

RemoteClinic 2 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

RemoteClinic 2 suffers from multiple cross site scripting vulnerabilities.

rconfig 3.9.6 Shell Upload

Posted by deepcore under exploit (No Respond)

rconfig versions 3.9.6 and below shell upload exploit. This is a variant of the flaw discovered in the same version by Murat Seker in March of 2021.

Hasura GraphQL 1.3.3 Arbitrary File Read

Posted by deepcore under exploit (No Respond)

Hasura GraphQL version 1.3.3 suffers from an arbitrary file read vulnerability.

Hasura GraphQL 1.3.3 Server-Side Request Forgery

Posted by deepcore under exploit (No Respond)

Hasura GraphQL version 1.3.3 suffers from a server-side request forgery vulnerability.

Adtran Personal Phone Manager 10.8.1 Persistent Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Adtran Personal Phone Manager version 10.8.1 suffers from a persistent cross site scripting vulnerability.

Adtran Personal Phone Manager 10.8.1 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Adtran Personal Phone Manager version 10.8.1 suffers from multiple reflective cross site scripting vulnerabilities.

Tenda D151 / D301 Configuration Download

Posted by deepcore under exploit (No Respond)

Tenda versions D151 and D301 configuration downloading exploit.