Microsoft Exchange 2019 unauthenticated email download exploit.
>> CATEGORY: exploit
Microsoft Exchange 2019 unauthenticated email download exploit.
Backdoor.Win32.Delf.aez malware suffers from a code execution vulnerability.
This Metasploit module exploits an unauthenticated Java deserialization in the NetMotion Mobility server’s MvcUtil.valueStringToObject() method, as invoked through the /mobility/Menu/isLoggedOn endpoint, to execute code as the SYSTEM account. Mobility server…
NiceHash Miner Excavator versions 1.6.7c and below suffer from a cross site request forgery vulnerability. The issue enables any external web site to send commands to the local miner instance,…
The way Microsoft Windows implements file security appears to have some significant shortcomings.
rxvt version 2.7.0 and rxvt-unicode version 9.22 incorrectly handles ANSI escape sequences allowing for arbitrary code execution.
rxvt version 2.7.0 and rxvt-unicode version 9.22 incorrectly handles ANSI escape sequences allowing for arbitrary code execution.
Customer Relationship Management System version 1.0 suffers from a persistent cross site scripting vulnerability. Original discovery of persistent cross site scripting in this version is attributed to Richard Jones in…
Backdoor.Win32.Delf.abb malware suffers from insecure transit issues.
Simple Chatbot Application version 1.0 suffers from a persistent cross site scripting vulnerability.