Subscribe via feed.
Archive for September, 2021

Pair Of Google Chrome Zero Day Bugs Actively Exploited

Posted by deepcore under exploit (No Respond)

[webapps] AlphaWeb XE – File Upload Remote Code Execution (RCE) (Authenticated)

Posted by deepcore under Security (No Respond)

AlphaWeb XE – File Upload Remote Code Execution (RCE) (Authenticated)

Tags: ,

[webapps] Seowon 130-SLC router – 'queriesCnt' Remote Code Execution (Unauthenticated)

Posted by deepcore under Security (No Respond)

Seowon 130-SLC router – ‘queriesCnt’ Remote Code Execution (Unauthenticated)

Tags: ,

[webapps] Evolution CMS 3.1.6 – Remote Code Execution (RCE) (Authenticated)

Posted by deepcore under Security (No Respond)

Evolution CMS 3.1.6 – Remote Code Execution (RCE) (Authenticated)

Tags: ,

[webapps] Support Board 3.3.3 – 'Multiple' SQL Injection (Unauthenticated)

Posted by deepcore under Security (No Respond)

Support Board 3.3.3 – ‘Multiple’ SQL Injection (Unauthenticated)

Tags: ,

DMA Softlab Radius Manager 4.4.0 Session Management / Cross Site Scripting

Posted by deepcore under exploit (No Respond)

DMA Softlab Radius Manager version 4.4.0 chained exploit written in go that exploits session management and cross site scripting vulnerabilities.

[webapps] Purchase Order Management System 1.0 – Remote File Upload

Posted by deepcore under Security (No Respond)

Purchase Order Management System 1.0 – Remote File Upload

Tags: ,

[webapps] Men Salon Management System 1.0 – Multiple Vulnerabilities

Posted by deepcore under Security (No Respond)

Men Salon Management System 1.0 – Multiple Vulnerabilities

Tags: ,

[local] Active WebCam 11.5 – Unquoted Service Path

Posted by deepcore under Security (No Respond)

Active WebCam 11.5 – Unquoted Service Path

Tags: ,

[webapps] Apartment Visitor Management System (AVMS) 1.0 – SQLi to RCE

Posted by deepcore under Security (No Respond)

Apartment Visitor Management System (AVMS) 1.0 – SQLi to RCE

Tags: ,