Joomla DVFolderContent module version 1.0.2 suffers from a local file disclosure vulnerability.
>> CATEGORY: exploit
The CompTIA ticketing system allows for personal information disclosure via just knowing someone’s email address.
Ubiquiti UniFi AP AC Lite version 5.2.7 allows for direct modification of the database with no authentication.
Netgear Genie version 2.4.32 suffers from an unquoted service path elevation of privilege vulnerability.
Sophos UTM versions 9.405-5 and 9.404-5 suffer from information disclosure vulnerabilities.
This Metasploit module abuses the Capcom.sys kernel driver’s function that allows for an arbitrary function to be executed in the kernel from user land. This function purposely disables SMEP prior…
This archive contains all of the 178 exploits added to Packet Storm in September, 2016.
The ghostscript -dSAFER parameter that is used when handling untrusted documents appears broken on multiple distributions. This could result in arbitrary file disclosure on systems that process pdf, ps, use…
An independent vulnerability laboratory researcher discovered a dll hijacking exploit in the official Flv Player 2011 v1…
An independent vulnerability laboratory researcher discovered an insecure file permission vulnerability in the WampServe…