Pi-hole 4.3.2 – Remote Code Execution (Authenticated)
>> AUTHOR: deepcore
Pi-hole 4.3.2 – Remote Code Execution (Authenticated)
Mocha Telnet Lite for iOS 4.2 – ‘User’ Denial of Service (PoC)
RTSP for iOS 1.0 – ‘IP Address’ Denial of Service (PoC)
Daily Expenses Management System 1.0 – ‘username’ SQL Injection
Daily Tracker System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.
Daily Tracker System version 1.0 suffers from a cross site scripting vulnerability.
Online Bike Rental version 1.0 suffers from a remote shell upload vulnerability.
Online Shopping Alphaware version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.
This Metasploit module exploits a buffer overflow within the CA Unified Infrastructure Management nimcontroller. The vulnerability occurs in the robot (controller) component when sending a specially crafted directory_list probe. Technically…
This Metasploit module exploits a race and use-after-free vulnerability in the FreeBSD kernel IPv6 socket handling. A missing synchronization lock in the IPV6_2292PKTOPTIONS option handling in setsockopt permits racing ip6_setpktopt…