Avaya one-X versions 9.x, 10.0.x, and 10.1.x suffer from arbitrary file disclosure and deletion vulnerabilities.
LW-N605R devices allow remote code execution via shell metacharacters in the HOST field of the ping feature at adm/systools.asp. Authentication is needed but the default password of admin for the…
Microsoft Baseline Security Analyzer version 2.3 suffers from an XML external entity injection vulnerability.
Linux suffers from an insufficient shootdown for paging-structure caches.
This write up holds the details for the Tor Browser information disclosure vulnerability as discussed in CVE-2017-16541. Version 7.0.8 is affected.
Easy File Sharing Web Server version 6.9 POST msg.ghp UserID remote buffer overflow SEH exploit with DEP bypass and ROP.
Android suffers from a privilege escalation vulnerability in zygote that can be leveraged by CVE-2018-9445.
Tor Browser version 7.x suffers from a NoScript bypass vulnerability.
http://www.songdaohospital.go.th notified by Falc0n Eye$
iCash 7.6.5 – Denial of Service (PoC)