NetGain Enterprise Manager versions 7.2.562 build 853 and below suffer from a ping command injection vulnerability.
>> CATEGORY: exploit
Joomla Abstract component version 2.1 suffers from a remote SQL injection vulnerability.
Joomla StreetGuessr Game component version 1.0 suffers from a remote SQL injection vulnerability.
Joomla Guesser component version 1.0.4 suffers from a remote SQL injection vulnerability.
pfSense version 2.3.2 suffers from cross site request forgery and cross site scripting vulnerabilities that can assist in gaining a reverse-shell remotely as root.
Joomla Recipe Manager component version 2.2 suffers from a remote SQL injection vulnerability.
Ektron versions 8.5, 8.7 equal to and below sp1, and 9.0 before sp1 have vulnerabilities in various operations within the ServerControlWS.asmxweb services. These vulnerabilities allow for remote code execution without…
WordPress Adminer plugin version 1.4.4 suffers from an interface exposure issue.
WordPress File Manager plugin version 3.0.1 suffers from a cross site request forgery vulnerability.
WordPress Global Content Blocks plugin version 2.1.5 suffers from a cross site request forgery vulnerability.