Subscribe via feed.
Archive for April, 2022

Responsive Online Blog 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Responsive Online Blog version 1.0 remote blind boolean-based SQL injection exploit that retrieves usernames and md5 hashes for all site users. Original discovery of the vulnerability is attributed to Eren Simsek.

WordPress Popup Maker 1.16.5 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

WordPress Popup Maker plugin version 1.16.5 suffers from a persistent cross site scripting vulnerability.

Backdoor.Win32.GateHell.21 Man-In-The-Middle

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.GateHell.21 malware suffers from a man-in-the-middle vulnerability.

Linux watch_queue Filter Out-Of-Bounds Write

Posted by deepcore under exploit (No Respond)

The Linux watch_queue filter suffers from an out of bounds write vulnerability.

WordPress Motopress Hotel Booking Lite 4.2.4 SQL Injection

Posted by deepcore under exploit (No Respond)

WordPress Motopress Hotel Booking Lite plugin version 4.2.4 suffers from a remote SQL injection vulnerability.

Linux FUSE Use-After-Free

Posted by deepcore under exploit (No Respond)

Linux suffers from a vulnerability where FUSE allows use-after-free reads of write() buffers, allowing theft of (partial) /etc/shadow hashes.

Backdoor.Win32.Delf.zn Insecure Credential Storage

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.Delf.zn malware suffers from an insecure credential storage vulnerability.

Backdoor.Win32.GateHell.21 Authentication Bypass

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.GateHell.21 malware suffers from an authentication bypass vulnerability.

BlueZ Key Theft / bluetoothd Double-Free

Posted by deepcore under exploit (No Respond)

BlueZ suffers from a vulnerability where a malicious USB device can steal Bluetooth link keys over HCI using a fake BD_ADDR. It was also discovered that bluetoothd suffers from a double-free memory corruption flaw.

BlueZ Key Theft / bluetoothd Double-Free

Posted by deepcore under exploit (No Respond)

BlueZ suffers from a vulnerability where a malicious USB device can steal Bluetooth link keys over HCI using a fake BD_ADDR. It was also discovered that bluetoothd suffers from a double-free memory corruption flaw.