Subscribe via feed.
Archive for September, 2021

Backdoor.Win32.VB.awm Authentication Bypass / Information Disclosure

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.VB.awm malware suffers from bypass and information leakage vulnerabilities.

ECOA Building Automation System Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

ECOA building automation systems suffer from a cross site request forgery vulnerability. Many versions are affected.

ECOA Building Automation System Cookie Poisoning / Authentication Bypass

Posted by deepcore under exploit (No Respond)

ECOA building automation systems suffer from a cookie poisoning vulnerability that allows for authentication bypass. Many versions are affected.

ECOA Building Automation System Configuration Download Information Disclosure

Posted by deepcore under exploit (No Respond)

ECOA building automation systems suffer from a configuration download information disclosure vulnerability. Many versions are affected.

Backdoor.Win32.Wollf.h Code Execution

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.Wollf.h malware suffers from a code execution vulnerability.

ECOA Building Automation System Hardcoded SSH Credentials

Posted by deepcore under exploit (No Respond)

ECOA building automation systems have hardcoded SSH credentials. Many versions are affected.

ECOA Building Automation System Missing Encryption

Posted by deepcore under exploit (No Respond)

ECOA building automation systems suffer from missing encryption of sensitive information. Many versions are affected.

ECOA Building Automation System Remote Privilege Escalation

Posted by deepcore under exploit (No Respond)

ECOA building automation systems suffer from a remote privilege escalation vulnerability. Many versions are affected.

ECOA Building Automation System Authorization Bypass / Insecure Direct Object Reference

Posted by deepcore under exploit (No Respond)

ECOA building automation systems suffer from authorization bypass and insecure direct object reference vulnerabilities. Many versions are affected.

ECOA Building Automation System Local File Disclosure

Posted by deepcore under exploit (No Respond)

ECOA building automation systems suffer from a local file disclosure vulnerability. Many versions are affected.