Subscribe via feed.
Archive for July, 2022

Loan Management System 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Loan Management System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

Loan Management System 1.0 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Loan Management System version 1.0 suffers from a persistent cross site scripting vulnerability.

[webapps] WordPress Plugin WP-UserOnline 2.87.6 – Stored Cross-Site Scripting (XSS)

Posted by deepcore under Security (No Respond)

WordPress Plugin WP-UserOnline 2.87.6 – Stored Cross-Site Scripting (XSS)

Tags: ,

[remote] Schneider Electric SpaceLogic C-Bus Home Controller (5200WHC2) – Remote Code Execution

Posted by deepcore under Security (No Respond)

Schneider Electric SpaceLogic C-Bus Home Controller (5200WHC2) – Remote Code Execution

Tags: ,

[webapps] Geonetwork 4.2.0 – XML External Entity (XXE)

Posted by deepcore under Security (No Respond)

Geonetwork 4.2.0 – XML External Entity (XXE)

Tags: ,

[webapps] Carel pCOWeb HVAC BACnet Gateway 2.1.0 – Directory Traversal

Posted by deepcore under Security (No Respond)

Carel pCOWeb HVAC BACnet Gateway 2.1.0 – Directory Traversal

Tags: ,

[local] Asus GameSDK v1.0.0.4 – 'GameSDK.exe' Unquoted Service Path

Posted by deepcore under Security (No Respond)

Asus GameSDK v1.0.0.4 – ‘GameSDK.exe’ Unquoted Service Path

Tags: ,

[webapps] Dingtian-DT-R002 3.1.276A – Authentication Bypass

Posted by deepcore under Security (No Respond)

Dingtian-DT-R002 3.1.276A – Authentication Bypass

Tags: ,

[remote] rpc.py 0.6.0 – Remote Code Execution (RCE)

Posted by deepcore under Security (No Respond)

rpc.py 0.6.0 – Remote Code Execution (RCE)

Tags: ,

http://www.kalasin-pao.go.th/antidrug//images/id.gif

Posted by deepcore under defacement (No Respond)

http://www.kalasin-pao.go.th/antidrug//images/id.gif notified by Moroccan Revolution

Tags: