Joomla! Component Jimtawl 2.1.6 – Arbitrary File Upload
Joomla! Component Jimtawl 2.1.6 – Arbitrary File Upload
Oracle Hospitality Simphony (MICROS) 2.7 < 2.9 – Directory Traversal
Joomla! Component JEXTN Classified 1.0.0 – ‘sid’ SQL Injection
FiberHome AN5506 – Unauthenticated Remote DNS Change
systemd (systemd-tmpfiles) versions prior to 236 suffer from an fs.protected_hardlinks=0 local privilege escalation vulnerability.
Sprecher Automation SPRECON-E-C and PU-2433 versions prior to 8.49 suffer from directory traversal, missing authentication, broken authentication, and denial of service vulnerabilities.
Chromium suffers from a sandbox escape vulnerability via an exposed filesystem::mojom::Directory mojo interface in the catalog service.
IPSwitch MoveIt versions 8.1 through 9.4 suffer from a persistent cross site scripting vulnerability.
This Metasploit module exploits a weak access control check in the BMC Server Automation RSCD agent that allows arbitrary operating system commands to be executed without authentication. Note: Under Windows,…
This archive contains all of the 268 exploits added to Packet Storm in January, 2018.