Subscribe via feed.
Author Archive

Helmet Store Showroom 1.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Helmet Store Showroom version 1.0 suffers from a remote SQL injection vulnerability that allows for login bypass.

Dreamer CMS 4.0.0 SQL Injection

Posted by deepcore under exploit (No Respond)

Dreamer CMS version 4.0.0 suffers from a remote SQL injection vulnerability.

myBB forums 1.8.26 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

myBB forums version 1.8.26 suffers from a persistent cross site scripting vulnerability.

DSL-124 Wireless N300 ADSL2+ Backup Disclosure

Posted by deepcore under exploit (No Respond)

DSL-124 Wireless N300 ADSL2+ suffers from a backup disclosure vulnerability.

Covenant 0.5 Remote Code Execution

Posted by deepcore under exploit (No Respond)

Covenant version 0.5 suffers from a remote code execution vulnerability.

Virtual Reception 1.0 Directory Traversal

Posted by deepcore under exploit (No Respond)

Virtual Reception version 1.0 suffers from a directory traversal vulnerability.

Lavasoft 4.1.0.409 Unquoted Service Path

Posted by deepcore under exploit (No Respond)

Lavasoft version 4.1.0.409 suffers from an unquoted service path vulnerability.

CrowdStrike Falcon Agent 6.44.15806 Uninstall Issue

Posted by deepcore under exploit (No Respond)

CrowdStrike Falcon Agent version 6.44.15806 has an uninstall bypass flaw that works without an installation token.

Forcepoint (Stonesoft VPN Client) 6.2.0 / 6.8.0 Local Privilege Escalation

Posted by deepcore under exploit (No Respond)

Forcepoint (Stonesoft VPN Client) versions 6.2.0 and 6.8.0 suffer from a privilege escalation vulnerability.

WordPress WPForms 1.7.8 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

WordPress WPForms plugin version 1.7.8 suffers from a cross site scripting vulnerability.