Subscribe via feed.
Archive for January, 2023

Dcastalia CMS 1.2 Insecure Direct Object Reference

Posted by deepcore under exploit (No Respond)

Dcastalia CMS version 1.2 suffers from an insecure direct object reference that allows users to access the administrative interface.

Deprixa Pro CMS 3.2.5 Insecure Settings

Posted by deepcore under exploit (No Respond)

Deprixa Pro CMS version 3.2.5 appears to leave a default administrative account in place post installation.

WordPress Slider Revolution 4.6.5 Shell Upload

Posted by deepcore under exploit (No Respond)

WordPress Slider Revolution plugin version 4.6.5 suffers from a remote shell upload vulnerability.

WordPress Mega Main Menu 2.2.2 Information Disclosure

Posted by deepcore under exploit (No Respond)

WordPress Mega Main Menu plugin version 2.2.2 suffers from a backup disclosure vulnerability.

Online Food Ordering System 2.0 Shell Upload

Posted by deepcore under exploit (No Respond)

Online Food Ordering System version 2.0 suffers from a remote shell upload vulnerability.

Online Food Ordering System 2.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Online Food Ordering System version 2.0 suffers from a remote SQL injection vulnerability.

Arm Mali CSF KBASE_REG_NO_USER_FREE Unsafe Use Use-After-Free

Posted by deepcore under exploit (No Respond)

The Mali driver tries to use the KBASE_REG_NO_USER_FREE flag to ensure that the memory region referenced by kbase_csf_tiler_heap::buf_desc_reg cannot be freed by userspace. However, this flag is only a single bit, and there can be multiple tiler heaps referencing the same memory region. This can lead to a use-after-free condition.

Linux 4.10 Use-After-Free

Posted by deepcore under exploit (No Respond)

Linux kernel version 4.10 suffers from a use-after-free vulnerability in __do_semtimedop() due to a lockless check outside the RCU section.

MOV.AI Robotics Engine 2.2.3-3 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

MOV.AI Robotics Engine version 2.2.3-3 suffers from multiple cross site scripting vulnerabilities.

Tiki Wiki CMS Groupware 25.0 Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

Tiki Wiki CMS Groupware versions 25.0 and below suffer from multiple cross site request forgery vulnerabilities.