Subscribe via feed.
Archive for June, 2022

http://www.singburihosp.go.th/0x.jpg

Posted by deepcore under defacement (No Respond)

http://www.singburihosp.go.th/0x.jpg notified by L4663R666H05T

Tags:

http://satun.nfe.go.th/t_khokoa/web1/file_editor/0x.txt

Posted by deepcore under defacement (No Respond)

http://satun.nfe.go.th/t_khokoa/web1/file_editor/0x.txt notified by L4663R666H05T

Tags:

http://www.sahathat.go.th/obec/web1/file_editor/0x.txt

Posted by deepcore under defacement (No Respond)

http://www.sahathat.go.th/obec/web1/file_editor/0x.txt notified by L4663R666H05T

Tags:

Apache 2.4.50 Remote Code Execution

Posted by deepcore under exploit (No Respond)

Apache version 2.4.50 remote code execution exploit that leverages a traversal as identified in CVE-2021-42013. Written in C.

Reolink E1 Zoom Camera 3.0.0.716 Private Key Disclosure

Posted by deepcore under exploit (No Respond)

Reolink E1 Zoom Camera versions 3.0.0.716 and below suffer from a private key disclosure vulnerability.

Reolink E1 Zoom Camera 3.0.0.716 Configuration Disclosure

Posted by deepcore under exploit (No Respond)

Reolink E1 Zoom Camera versions 3.0.0.716 and below suffer from a configuration disclosure vulnerability.

Korenix JetPort 5601V3 Backdoor Account

Posted by deepcore under exploit (No Respond)

Korenix JetPort 5601V3 with firmware version 1.0 suffers from having default backdoor accounts. The vendor will not address the issue as they claim the secret cannot be cracked in a reasonable amount of time.

dbus-broker-29 Memory Corruption

Posted by deepcore under exploit (No Respond)

dbus-broker-29 suffers from multiple memory corruption vulnerabilities. dbus-broker-31 addresses these issues.

Poly EagleEye Director II 2.2.1.1 Command Injection / Authentication Bypass

Posted by deepcore under exploit (No Respond)

Poly EagleEye Director II version 2.2.1.1 suffers from multiple authenticated remote command injection vulnerabilities as well as an authentication bypass vulnerability.

Poly Studio X30 / Studio X50 / Studio X70 / G7500 Command Injection

Posted by deepcore under exploit (No Respond)

Poly Studio X30, Studio X50, Studio X70, and G7500 versions 3.4.0-292042, 3.5.0-344025, and 3.6.0 suffers from an authenticated command injection vulnerability.