Subscribe via feed.
Archive for March, 2023

101+ News Portal 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

101+ News Portal version 1.0 suffers from a remote blind SQL injection vulnerability.

MyBB Active Threads 1.3.0 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

MyBB Active Threads plugin version 1.3.0 suffers from a cross site scripting vulnerability.

MyBB External Redirect Warning 1.3 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

MyBB External Redirect Warning plugin version 1.3 suffers from a cross site scripting vulnerability.

https://suphanburi.m-society.go.th

Posted by deepcore under defacement (No Respond)

https://suphanburi.m-society.go.th notified by CYBER EAGLES

Tags:

https://ssock.go.th

Posted by deepcore under defacement (No Respond)

https://ssock.go.th notified by 0x1998

Tags:

MyBB External Redirect Warning 1.3 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

MyBB External Redirect Warning plugin version 1.3 suffers from a cross site scripting vulnerability.

Shannon Baseband NrmmMsgCodec Emergency Number List Heap Buffer Overflow

Posted by deepcore under exploit (No Respond)

There is a heap buffer overflow in Shannon baseband, inside the 5G MM protocol implementation (NrmmMsgCodec as it is called in Shannon according to debug strings), specifically when handling the “Emergency number list” message (IEI = 0x34).

Shannon Baseband NrmmMsgCodec Extended Emergency Number List Heap Buffer Overflow

Posted by deepcore under exploit (No Respond)

There is a heap buffer overflow in Shannon baseband, inside the 5G MM protocol implementation (NrmmMsgCodec as it is called in Shannon according to debug strings), specifically when handling the “Extended emergency number list” message (IEI = 0x7A).

Shannon Baseband NrmmMsgCodec Access Category Definitions Heap Buffer Overflow

Posted by deepcore under exploit (No Respond)

There is a heap buffer overflow in Shannon Baseband, inside the 5G MM protocol implementation (NrmmMsgCodec as it is called in Shannon according to debug strings), specifically when handling the Operator-defined access category definitions message (IEI = 0x76).

Riello UPS Restricted Shell Bypass

Posted by deepcore under exploit (No Respond)

Riello UPS systems can have their restricted configuration shell bypassed to gain full underlying operating system access.