Certain Secure Access SA Series SSL VPN products (originally developed by Juniper Networks but now sold and supported by Pulse Secure, LLC) allow privilege escalation, as demonstrated by Secure Access…
ZeusCart version 4.0 suffers from a cross site request forgery vulnerability.
WordPress Firma Rehberi theme version 4.9.9 suffers from remote shell upload and remote SQL injection vulnerabilities.
WordPress Cvp-Adegrontec theme version 4.8.3 suffers from a remote shell upload vulnerability.
WordPress Share-Buttons plugin version 4.9.9 suffers from a remote shell upload vulnerability.
WordPress Saphali-Customer-Reviews plugin version 5.0.2 suffers from a remote shell upload vulnerability.
WordPress WP-Ajax-Form-Pro plugin version 5.0.2 suffers from a remote shell upload vulnerability.
SQLScan version 1.0 denial of service proof of concept exploit.
ATool version 1.0.0.22 suffers from a kernel pool buffer overflow vulnerability.
http://www.mnre.go.th/k3t.html notified by KURD ELECTRONIC TEAM