http://dongichan.go.th/pun10.html notified by Jakarta Blackhat
>> AUTHOR: deepcore
http://dongichan.go.th/pun10.html notified by Jakarta Blackhat
http://nasum.go.th/pun10.html notified by Jakarta Blackhat
iFunbox 4.2 – ‘Apple Mobile Device Service’ Unquoted Service Path
OpenEMR 5.0.1.7 – ‘fileName’ Path Traversal (Authenticated)
Solaris SunSSH 11.0 x86 – libpam Remote Root (3)
Wise Care 365 5.6.7.568 – ‘WiseBootAssistant’ Unquoted Service Path
DiskPulse version 13.6.14 suffers from an unquoted service path vulnerability.
Disk Sorter Server version 13.6.12 suffers from an unquoted service path vulnerability.
Teachers Record Management System version 1.0 suffers from a persistent cross site scripting vulnerability.
Teachers Record Management System version 1.0 suffers from multiple remote SQL injection vulnerabilities. This report has additional payloads although the original discovery of SQL injection in this version is attributed…