GitList version 0.6 unauthenticated remote code execution exploit.
GitList version 0.6 unauthenticated remote code execution exploit.
This Metasploit module exploits a Drupal property injection in the Forms API. Drupal versions 6.x, less than 7.58, 8.2.x, less than 8.3.9, less than 8.4.6, and less than 8.5.1 are…
Apple Security Advisory 2018-04-24-1 – iOS 11.3.1 is now available and addresses code execution vulnerabilities.
Apple Security Advisory 2018-04-24-2 – Security Update 2018-001 is now available and addresses privilege escalation and UI spoofing issues.
Apple Security Advisory 2018-04-24-3 – Safari 11.1 is now available and addresses code execution vulnerabilities.
http://maesalocal.go.th/def.html notified by Mister
Frog CMS 0.9.5 – Persistent Cross-Site Scripting
Jfrog Artifactory < 4.16 – Unauthenticated Arbitrary File Upload / Remote Command Execution
SickRage < v2018.03.09 – Clear-Text Credentials HTTP Response