Subscribe via feed.
Archive for May, 2021

http://www.manangdalam.go.th/ngenk.htm

Posted by deepcore under defacement (No Respond)

http://www.manangdalam.go.th/ngenk.htm notified by Xyp3r2667

Tags:

Sandboxie 5.49.7 Denial Of Service

Posted by deepcore under exploit (No Respond)

Sandboxie version 5.49.7 suffers from a denial of service vulnerability.

Sandboxie Plus 0.7.4 Unquoted Service Path

Posted by deepcore under exploit (No Respond)

Sandboxie Plus version 0.7.4 suffers from an unquoted service path vulnerability.

Voting System 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Voting System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass. Original discovery of SQL injection in this version is attributed to Syed Sheeraz Ali in May of 2021.

Human Resource Information System 0.1 Remote Code Execution

Posted by deepcore under exploit (No Respond)

Human Resource Information System version 0.1 suffers from a remote code execution vulnerability.

Voting System 1.0 Shell Upload

Posted by deepcore under exploit (No Respond)

Voting System version 1.0 suffers from a remote shell upload vulnerability.

Android Memory Disclosure / Out-Of-Bounds Write / Double-Free

Posted by deepcore under exploit (No Respond)

Android suffers from memory disclosure, out-of-bounds write, and double-free vulnerabilities in NFC’s Felica tag handling.

WifiHotSpot 1.0.0.0 Unquoted Service Path

Posted by deepcore under exploit (No Respond)

WifiHotSpot version 1.0.0.0 suffers from an unquoted service path vulnerability.

Epic Games Easy Anti-Cheat 4.0 Local Privilege Escalation

Posted by deepcore under exploit (No Respond)

Epic Games Easy Anti-Cheat version 4.0 suffers from a local privilege escalation vulnerability.

macOS Gatekeeper Check Bypass

Posted by deepcore under exploit (No Respond)

This Metasploit module serves an OSX app (as a zip) that contains no Info.plist, which bypasses gatekeeper in macOS versions prior to 11.3. If the user visits the site on Safari, the zip file is automatically extracted, and clicking on the downloaded file will automatically launch the payload. If the user visits the site in […]