This Metasploit module exploits a command injection vulnerability in the Linear eMerge E3 Access Controller.
>> AUTHOR: deepcore
Prima Access Control version 2.3.35 suffers from a persistent cross site scripting vulnerability.
Prima Access Control version 2.3.35 authenticated python script upload remote root code execution exploit.
This Metasploit module has been tested with AIX 7.1 and 7.2, and should also work with 6.1. Due to permission restrictions of the crontab in AIX, this module does not…
This Metasploit module exploits a post-auth command injection in the Pulse Secure VPN server to execute commands as root. The env(1) command is used to bypass application whitelisting and run…
This Metasploit module exploits a vulnerability in Bludit. A remote user could abuse the uuid parameter in the image upload feature in order to save a malicious payload anywhere onto…
FUDForum 3.0.9 – Remote Code Execution
Technicolor TD5130.2 – Remote Command Execution
Technicolor TC7300.B0 – ‘hostname’ Persistent Cross-Site Scripting
gSOAP 2.8 – Directory Traversal