Subscribe via feed.
Archive for December, 2022

SOUND4 IMPACT/FIRST/PULSE/Eco 2.x password Command Injection

Posted by deepcore under exploit (No Respond)

SOUND4 IMPACT/FIRST/PULSE/Eco versions 2.x and below suffer from a password related unauthenticated command injection vulnerability.

SOUND4 IMPACT/FIRST/PULSE/Eco 2.x username Command Injection

Posted by deepcore under exploit (No Respond)

SOUND4 IMPACT/FIRST/PULSE/Eco versions 2.x and below suffer from a username related unauthenticated command injection vulnerability.

SOUND4 IMPACT/FIRST/PULSE/Eco 2.x traceroute.php Conditional Command Injection

Posted by deepcore under exploit (No Respond)

SOUND4 IMPACT/FIRST/PULSE/Eco versions 2.x and below suffer from a conditional command injection vulnerability in traceroute.php.

SOUND4 IMPACT/FIRST/PULSE/Eco 2.x upload.cgi Code Execution

Posted by deepcore under exploit (No Respond)

SOUND4 IMPACT/FIRST/PULSE/Eco versions 2.x and below suffer from an unauthenticated remote code execution vulnerability in upload.cgi.

SOUND4 IMPACT/FIRST/PULSE/Eco 2.x Unauthenticated Factory Reset

Posted by deepcore under exploit (No Respond)

SOUND4 IMPACT/FIRST/PULSE/Eco versions 2.x and below suffer from an unauthenticated factory reset vulnerability in restorefactory.cgi.

http://mnoi.takesa2.go.th/file_editor/ww.jpg

Posted by deepcore under defacement (No Respond)

http://mnoi.takesa2.go.th/file_editor/ww.jpg notified by Swan

Tags:

Shoplazza 1.1 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Shoplazza version 1.1 suffers from a persistent cross site scripting vulnerability.

Backdoor.Win32.InCommander.17.b MVID-2022-0665 Hardcoded Credentials

Posted by deepcore under exploit (No Respond)

Backdoor.Win32.InCommander.17.b malware suffers from a hardcoded credential vulnerability.

Ransom.Win64.AtomSilo MVID-2022-0666 Cryptography Logic Flaw

Posted by deepcore under exploit (No Respond)

Ransom.Win64.AtomSilo malware suffers from a cryptography logic flaw.

Intelbras WiFiber 120AC inMesh 1.1-220216 Command Injection

Posted by deepcore under exploit (No Respond)

Intelbras WiFiber 120AC inMesh version 1.1-220216 suffers from an authenticated command injection vulnerability.