Subscribe via feed.
Archive for February, 2022

[webapps] WordPress Plugin Secure Copy Content Protection and Content Locking 2.8.1 – SQL-Injection (Unauthenticated)

Posted by deepcore under Security (No Respond)

WordPress Plugin Secure Copy Content Protection and Content Locking 2.8.1 – SQL-Injection (Unauthenticated)

Tags: ,

[webapps] Home Owners Collection Management System 1.0 – 'id' Blind SQL Injection

Posted by deepcore under Security (No Respond)

Home Owners Collection Management System 1.0 – ‘id’ Blind SQL Injection

Tags: ,

[webapps] Home Owners Collection Management System 1.0 – Remote Code Execution (RCE) (Authenticated)

Posted by deepcore under Security (No Respond)

Home Owners Collection Management System 1.0 – Remote Code Execution (RCE) (Authenticated)

Tags: ,

[webapps] Hospital Management Startup 1.0 – 'Multiple' SQLi

Posted by deepcore under Security (No Respond)

Hospital Management Startup 1.0 – ‘Multiple’ SQLi

Tags: ,

[webapps] Home Owners Collection Management System 1.0 – Account Takeover (Unauthenticated)

Posted by deepcore under Security (No Respond)

Home Owners Collection Management System 1.0 – Account Takeover (Unauthenticated)

Tags: ,

[local] Cain & Abel 4.9.56 – Unquoted Service Path

Posted by deepcore under Security (No Respond)

Cain & Abel 4.9.56 – Unquoted Service Path

Tags: ,

[webapps] WordPress Plugin Contact Form Builder 1.6.1 – Cross-Site Scripting (XSS)

Posted by deepcore under Security (No Respond)

WordPress Plugin Contact Form Builder 1.6.1 – Cross-Site Scripting (XSS)

Tags: ,

FileBrowser 2.17.2 Code Execution / Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

FileBrowser versions 2.17.2 and below suffer from a cross site request forgery vulnerability that can lead to remote code execution.

WordPress Security Audit 1.0.0 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

WordPress Security Audit plugin version 1.0.0 suffers from a persistent cross site scripting vulnerability.

WordPress CP Blocks 1.0.14 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

WordPress CP Blocks plugin version 1.0.14 suffers from a persistent cross site scripting vulnerability.