Subscribe via feed.
Archive for July, 2022

PCProtect Endpoint 5.17.470 Tampering / Privilege Escalation

Posted by deepcore under exploit (No Respond)

PCProtect Endpoint version 5.17.470 fails to provide sufficient anti-tampering protection that can be leveraged to achieve SYSTEM privileges.

Expert X Jobs Portal And Resume Builder 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Expert X Jobs Portal and Resume Builder version 1.0 suffers from a remote SQL injection vulnerability.

Garage Management System 1.0 Shell Upload

Posted by deepcore under exploit (No Respond)

Garage Management System version 1.0 suffers from a remote shell upload vulnerability.

Hospital Information System 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Hospital Information System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

Roxy-WI Remote Command Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits an unauthenticated command injection vulnerability in Roxy-WI versions prior to 6.1.1.0. Successful exploitation results in remote code execution under the context of the web server user. Roxy-WI is an interface for managing HAProxy, Nginx and Keepalived servers.

Roxy-WI Remote Command Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits an unauthenticated command injection vulnerability in Roxy-WI versions prior to 6.1.1.0. Successful exploitation results in remote code execution under the context of the web server user. Roxy-WI is an interface for managing HAProxy, Nginx and Keepalived servers.

Marty Marketplace Multi Vendor Ecommerce Script 1.2 SQL Injection

Posted by deepcore under exploit (No Respond)

Marty Marketplace Multi Vendor Ecommerce Script version 1.2 suffers from a remote SQL injection vulnerability.

Patlite 1.46 Buffer Overflow

Posted by deepcore under exploit (No Respond)

Patlite versions 1.45 and below suffer from a buffer overflow vulnerability.

[webapps] WordPress Plugin Visual Slide Box Builder 3.2.9 – SQLi

Posted by deepcore under Security (No Respond)

WordPress Plugin Visual Slide Box Builder 3.2.9 – SQLi

Tags: ,

Patlite 1.46 Buffer Overflow

Posted by deepcore under exploit (No Respond)

Patlite versions 1.45 and below suffer from a buffer overflow vulnerability.