The industrial managed switch series 852 from WAGO is affected by multiple vulnerabilities such as old software components embedded in the firmware. Furthermore, hardcoded password hashes and credentials were also…
Aida64 6.00.5100 – ‘Log to CSV File’ Local SEH Buffer Overflow
Active Directory Enumeration with PowerShell
CentOS 7.6 – ‘ptrace_scope’ Privilege Escalation
This Metasploit module exploits an arbitrary command execution vulnerability in Webmin 1.910 and lower versions. Any user authorized to the “Package Updates” module can execute arbitrary commands with root privileges.
ProShow version 9.0.3797 suffers from a local privilege escalation vulnerability.
WordPress Insert or Embed Articulate Content plugin versions 4.2995 through 4.2997 suffers from a remote code execution vulnerability.
phpMyAdmin version 4.8 suffers from a cross site request forgery vulnerability.
Liferay Portal version 7.1 CE GA4 suffers from cross site scripting vulnerability in the SimpleCaptcha API.
FusionPBX versions 4.4.3 and below suffer from a remote code execution vulnerability via cross site scripting.