There is a vulnerability in Kik Messenger for Android that allows an attacker to send arbitrary XMPP stanzas (XMPP control messages) to another Kik client, including XMPP stanzas that are normally sent only by the Kik server. Included is a proof of concept that demonstrates sending of the stc stanza which triggers a captcha dialog […]
https://wangsomboonhospital.go.th/1975.html notified by 1975 Team
Tags:
defacement
There is a vulnerability in Kik Messenger for Android that allows an attacker to send arbitrary XMPP stanzas (XMPP control messages) to another Kik client, including XMPP stanzas that are normally sent only by the Kik server. Included is a proof of concept that demonstrates sending of the stc stanza which triggers a captcha dialog […]
https://khamthoa.go.th/kz.html notified by Mr.Kro0oz.305
Tags:
defacement
https://sikhiotown.go.th/kz.html notified by Mr.Kro0oz.305
Tags:
defacement
Confluence Data Center 7.18.0 – Remote Code Execution (RCE)
Tags:
0day,
remote exploit
WordPress Plugin Motopress Hotel Booking Lite 4.2.4 – Stored Cross-Site Scripting (XSS)
Tags:
0day,
remote exploit
WordPress Download Manager versions 3.2.42 and below suffer from a cross site scripting vulnerability.
This Metasploit module exploits an OGNL injection in Atlassian Confluence servers. A specially crafted URI can be used to evaluate an OGNL expression resulting in OS command execution.
This Metasploit module exploits an OGNL injection in Atlassian Confluence servers. A specially crafted URI can be used to evaluate an OGNL expression resulting in OS command execution.