Sophos Endpoint Protection 10.7 – Tamper-Protection Bypass
Sophos Endpoint Protection 10.7 – Tamper-Protection Bypass
This Metasploit module exploits a vulnerability in browsers using well-known property of WebRTC (Web Real-Time Communications) which enables Web applications and sites to capture or exchange arbitrary data between browsers…
Chrome V8 suffers from a type confusion vulnerability in ElementsAccessorBase::CollectValuesOrEntriesImpl.
Chrome V8 has multiple bugs in Genesis::InitializeGlobal.
A security fix applied for Microsoft Edge Chakra JIT is incomplete.
A security fix applied for Microsoft Edge Chakra JIT is incomplete.
This Metasploit module will generate and upload a plugin to ProcessMaker resulting in execution of PHP code as the web server user. Credentials for a valid user account with Administrator…
Rockwell LOGIX 5324 ER suffers from cross site scripting and html injection vulnerabilities.
Inspection of mpengine.dll revealed that the code responsible for processing RAR archives appears to be a forked and modified version of the original unrar code and has a vulnerability that…
Sophos Endpoint Protection version 10.7 suffers from a tamper protection bypass vulnerability.