Subscribe via feed.
Posts under m$

[webapps] – Sitecom N300/N600 Devices – Multiple Vulnerabilities

Posted by deepcore under exploit, m$, Security (No Respond)

Sitecom N300/N600 Devices – Multiple Vulnerabilities

Tags: , , ,

[webapps] – Adobe ColdFusion 9 Administrative Login Bypass

Posted by deepcore under exploit, m$, Security (No Respond)

Adobe ColdFusion 9 Administrative Login Bypass

Tags: , , ,

[remote] – Oracle Java BytePackedRaster.verify() Signed Integer Overflow

Posted by deepcore under exploit, m$, Security (No Respond)

Oracle Java BytePackedRaster.verify() Signed Integer Overflow

Tags: , , ,

[webapps] – Samsung DVR Firmware 1.10 – Authentication Bypass

Posted by deepcore under exploit, m$, Security (No Respond)

Samsung DVR Firmware 1.10 – Authentication Bypass

Tags: , , , ,

[remote] – Graphite Web Unsafe Pickle Handling

Posted by deepcore under exploit, m$, Security (No Respond)

Graphite Web Unsafe Pickle Handling

Tags: , , ,

[webapps] – Bitbot C2 Panel gate2.php – Multiple Vulnerabilities

Posted by deepcore under exploit, m$, Security (No Respond)

Bitbot C2 Panel gate2.php – Multiple Vulnerabilities

Tags: , , ,

[papers] – Win32-Worm:VBS/Jenxcus.A Malware Report

Posted by deepcore under exploit, m$, XSS (No Respond)

Win32-Worm:VBS/Jenxcus.A Malware Report

Tags: , , , ,

[remote] – freeFTPd 1.0.10 (PASS Command) – SEH Buffer Overflow

Posted by deepcore under exploit, m$, Security (No Respond)

freeFTPd 1.0.10 (PASS Command) – SEH Buffer Overflow

Tags: , ,

Packet Storm Advisory 2013-0819-1 – Oracle Java BytePackedRaster.verify()

The BytePackedRaster.verify() method in Oracle Java versions prior to 7u25 is vulnerable to a signed integer overflow that allows bypassing of “dataBitOffset” boundary checks. This vulnerability allows for remote code execution. User interaction is required for this exploit in that the target must visit a malicious page or open a malicious file

Tags: , ,

Packet Storm Exploit 2013-0819-1 – Oracle Java BytePackedRaster.verify() Signed Integer Overflow

The BytePackedRaster.verify() method in Oracle Java versions prior to 7u25 is vulnerable to a signed integer overflow that allows bypassing of “dataBitOffset” boundary checks. This exploit code demonstrates remote code execution by popping calc.exe

Tags: ,