Alerton Webtalk versions 2.5 and 3.3 suffer from cross site request forgery, password hash disclosure, command injection, and login flow vulnerabilities.
>> CATEGORY: exploit
Live Helper Chat versions 2.06v through 2.58v suffer from a cross site scripting vulnerability.
The TYPO3 News module suffers from a remote SQL injection vulnerability.
Easy File Uploader suffers from a remote shell upload vulnerability.
Simple File Uploader suffers from an arbitrary file download vulnerability.
There is a memory corruption vulnerability in Microsoft Internet Explorer. The vulnerability was confirmed on version 11.576.14393.0 (update version 11.0.38) running on Windows 10 64-bit with page heap enabled for…
…
Adventures in Automotive Networks and Control Units (aka car hacking) is an overview of the original work by Charlie Miller and Chris Valasek that covers CAN bus sniffing, injection, and…
Private Tunnel Client version 2.8 local buffer overflow SEH exploit.
Flyspray version 1.0-rc4 suffers from a cross site scripting vulnerability.