Subscribe via feed.
Archive for May, 2021

Dental Clinic Appointment Reservation System 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Dental Clinic Appointment Reservation System version 1.0 suffers from multiple remote SQL injection vulnerabilities with one of them allowing for authentication bypass.

OpenPLC WebServer 3 Remote Code Execution

Posted by deepcore under exploit (No Respond)

OpenPLC WebServer version 3 authentication remote code execution exploit.

ScadaBR 1.0 / 1.1CE Linux Shell Upload

Posted by deepcore under exploit (No Respond)

ScadaBR versions 1.0 and 1.1CE authenticated shell upload exploit written for Linux targets.

Microsoft Internet Explorer 8/11 Use-After-Free

Posted by deepcore under exploit (No Respond)

Microsoft Internet Explorer 8/11 and WPAD service Jscript.dll use-after-free exploit.

ScadaBR 1.0 / 1.1CE Windows Shell Upload

Posted by deepcore under exploit (No Respond)

ScadaBR versions 1.0 and 1.1CE authenticated shell upload exploit written for Windows targets.

Firefox 72 IonMonkey JIT Type Confusion

Posted by deepcore under exploit (No Respond)

Firefox 72 IonMonkey JIT type confusion exploit.

Internet Explorer jscript9.dll Memory Corruption

Posted by deepcore under exploit (No Respond)

There is a vulnerability in jscript9 that could be potentially used by an attacker to execute arbitrary code when viewing an attacker-controlled website in Internet Explorer. The vulnerability has been confirmed on Windows 10 64-bit with the latest security patches applied.

http://www.phafaek.go.th

Posted by deepcore under defacement (No Respond)

http://www.phafaek.go.th notified by Fallag GTX

Tags:

[webapps] Chamilo LMS 1.11.14 – Remote Code Execution (Authenticated)

Posted by deepcore under Security (No Respond)

Chamilo LMS 1.11.14 – Remote Code Execution (Authenticated)

Tags: ,

[webapps] Podcast Generator 3.1 – 'Long Description' Persistent Cross-Site Scripting (XSS)

Posted by deepcore under Security (No Respond)

Podcast Generator 3.1 – ‘Long Description’ Persistent Cross-Site Scripting (XSS)

Tags: ,