TI Online Examination System v2 – Arbitrary File Download
TI Online Examination System v2 – Arbitrary File Download
Vtiger version 6.3.0 CRM’s administration interface allows for the upload of a company logo. Instead of uploading an image, an attacker may choose to upload a file containing PHP code…
This Metasploit module exploits a vulnerability in SonicWall Global Management System Virtual Appliance versions 8.1 (Build 8110.1197) and below. This virtual appliance can be downloaded from http://www.sonicwall.com/products/sonicwall-gms/ and is used…
This Metasploit module exploits a SQL injection and command injection vulnerability in MicroFocus Secure Messaging Gateway. An unauthenticated user can execute a terminal command under the context of the web…
[Hebrew] Digital Whisper Security Magazine #97
[Hebrew] Digital Whisper Security Magazine #93
Linux/ARM – Reverse (::1:4444/TCP) Shell (/bin/sh) +IPv6 Shellcode (116 Bytes)
[Hebrew] Digital Whisper Security Magazine #95
WebRTC – VP8 Block Decoding Use-After-Free
SonicWall Global Management System – XMLRPC set_time_zone Command Injection (Metasploit)