Linux suffers from an anon_vma use-after-free vulnerability through the bogus merge of VMAs caused by double-reuse of leaf anon_vma because of ->degree misinterpretation.
>> CATEGORY: exploit
Joomla KSAdvertiser extension version 2.5.37 suffers from a cross site scripting vulnerability.
Canteen Management version 1.0-2022 suffers from a cross site scripting vulnerability.
This Metasploit module exploits a command injection within Enlightenment’s enlightenment_sys binary. This is done by calling the mount command and feeding it paths which meet all of the system requirements,…
This Metasploit module utilizes the Remote Mouse Server by Emote Interactive protocol to deploy a payload and run it from the server. This module will only deploy a payload if…
Joomla Solidres extension version 2.12.9 suffers from a cross site scripting vulnerability.
Canteen Management version 1.0-2022 suffers from a remote SQL injection vulnerability.
Joomla RAXO All-Mode PRO extension version 2.01 suffers from a cross site scripting vulnerability.
WordPress Elementor plugin versions 3.6.0 through 3.6.2 suffer from a remote shell upload vulnerability. This is achieved by sending a request to install Elementor Pro from a user supplied zip…
WordPress WPvivid Backup plugin versions prior to 0.9.76 suffer from a path traversal vulnerability.