Tailor Management System – ‘id’ SQL Injection
>> AUTHOR: deepcore
Tailor Management System – ‘id’ SQL Injection
Audio Playback Recorder 3.2.2 – Local Buffer Overflow (SEH)
Scopia XT Desktop 8.3.915.4 – Cross-Site Request Forgery (change admin password)
Cabot version 0.11.12 suffers from a persistent cross site scripting vulnerability.
Grocy version 2.7.1 suffers from a persistent cross site scripting vulnerability.
Joomla GMapFP component versions J3.5 and J3.5F suffer from an unauthenticated arbitrary file upload vulnerability.
Rapid7 Nexpose Installer version 6.6.39 suffers from a local privilege escalation vulnerability.
This Metasploit module exploits an arbitrary file write in cfprefsd on macOS versions 10.15.4 and below in order to run a payload as root. The CFPreferencesSetAppValue function, which is reachable…
ShareMouse 5.0.43 – ‘ShareMouse Service’ Unquoted Service Path
Cabot 0.11.12 – Persistent Cross-Site Scripting