This Metasploit module exploits a vulnerability that exists due to a lack of input validation when creating a user. Messages for a given user are stored in a directory partially…
>> AUTHOR: deepcore
http://ccit.go.th notified by ./s3nt1n3L
Virtual Freer version 1.58 suffers from a remote command execution vulnerability.
SmartClient version 120 suffers from information disclosure, local file inclusion, remote file upload, and XML external entity injection vulnerabilities.
Nanometrics Centaur version 4.3.23 suffers from an unauthenticated remote memory leak vulnerability.
WordPress Contact-Form-7 plugin version 5.1.6 suffers from a cross site scripting vulnerability.
DBPower C300 HD Camera suffers from a remote configuration disclosure vulnerability.
Core FTP Lite 1.3 – Denial of Service (PoC)
Easy2Pilot 7 – Cross-Site Request Forgery (Add User)
http://nlaradio.senate.go.th/my.ini notified by L4663R666H05T