Subscribe via feed.
Archive for September, 2021

Ionic Identity Vault 4.7 Android Biometric Authentication Bypass

Posted by deepcore under exploit (No Respond)

Ionic Identity Vault versions 4.7 and below suffer from a biometric authentication bypass vulnerability on Android.

Bus Pass Management System 1.0 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Bus Pass Management System version 1.0 suffers from a persistent cross site scripting vulnerability.

Argus Surveillance DVR 4.0 Unquoted Service Path

Posted by deepcore under exploit (No Respond)

Argus Surveillance DVR version 4.0 suffers from an unquoted service path vulnerability.

FlatCore CMS 2.0.7 Remote Code Execution

Posted by deepcore under exploit (No Respond)

FlatCore CMS version 2.0.7 authenticated remote code execution exploit.

Antminer Monitor 0.5.0 Authentication Bypass

Posted by deepcore under exploit (No Respond)

Antminer Monitor version 0.5.0 suffers from an authentication bypass vulnerability.

Online Learning System 2 SQL Injection

Posted by deepcore under exploit (No Respond)

Online Learning System version 2 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

Bus Pass Management System 1.0 Insecure Direct Object Reference

Posted by deepcore under exploit (No Respond)

Bus Pass Management System version 1.0 suffers from an insecure direct object reference vulnerability.

Backdoor.Win32.Nyara.aq Insecure Permissions

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.Nyara.aq malware suffers from an insecure permissions vulnerability.

Patient Appointment Scheduler System 1.0 Shell Upload

Posted by deepcore under exploit (No Respond)

Patient Appointment Scheduler System version 1.0 suffers from a remote shell upload vulnerability.

Patient Appointment Scheduler System 1.0 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Patient Appointment Scheduler System version 1.0 suffers from a persistent cross site scripting vulnerability.