Subscribe via feed.
Archive for March, 2022

Moodle 3.11.5 SQL Injection

Posted by deepcore under exploit (No Respond)

Moodle version 3.11.5 suffers from an authenticated remote SQL injection vulnerability.

Chrome HandleTable::AddDispatchersFromTransit Integer Overflow

Posted by deepcore under exploit (No Respond)

Chrome suffers from an integer overflow vulnerability in HandleTable::AddDispatchersFromTransit that can lead to memory corruption.

Windows SpoolFool Privilege Escalation

Posted by deepcore under exploit (No Respond)

The Windows Print Spooler has a privilege escalation vulnerability that can be leveraged to achieve code execution as SYSTEM. The SpoolDirectory, a configuration setting that holds the path that a printer’s spooled jobs are sent to, is writable for all users, and it can be configured via SetPrinterDataEx() provided the caller has the PRINTER_ACCESS_ADMINISTER permission. […]

College Website Management System 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

College Website Management System version 1.0 suffers from a remote SQL injection vulnerability.

Laravel Media Library Pro 2.1.6 Shell Upload

Posted by deepcore under exploit (No Respond)

Laravel Media Library Pro versions 2.1.6 and below as well as 1.17.10 and below suffer from a remote shell upload vulnerability.

Apple Security Advisory 2022-03-14-8

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2022-03-14-8 – Logic Pro X 10.7.3 addresses code execution and out of bounds read vulnerabilities.

Tags: , ,

Apple Security Advisory 2022-03-14-9

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2022-03-14-9 – GarageBand 10.4.6 addresses code execution and out of bounds read vulnerabilities.

Tags: , ,

Apple Security Advisory 2022-03-14-6

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2022-03-14-6 – Security Update 2022-003 Catalina addresses bypass, code execution, denial of service, null pointer, out of bounds read, out of bounds write, and use-after-free vulnerabilities.

Tags: , ,

Apple Security Advisory 2022-03-14-7

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2022-03-14-7 – Xcode 13.3 addresses code execution and out of bounds read vulnerabilities.

Tags: , ,

Apple Security Advisory 2022-03-14-10

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2022-03-14-10 – iTunes 12.12.3 for Windows addresses buffer overflow, code execution, and out of bounds read vulnerabilities.

Tags: , ,