PHPLib < 7.4 – SQL Injection
PHPLib < 7.4 – SQL Injection
WordPress CP Polls plugin version 1.0.8 suffers from a persistent cross site scripting vulnerability via file upload.
Putty version 0.66 suffers from a DLL hijacking vulnerability.
WordPress CP Polls plugin version 1.0.8 suffers from cross site request forgery and cross site scripting vulnerabilities.
Pulse CMS version 4.5.2 suffers from a backup disclosure vulnerability.
A vulnerability in the sncc0.sys kernel driver for Secret Net 7 and Secret Net Studio 8 allows for a local privilege escalation attack.
This Metasploit module will generate a .NET service executable on the target and utilise InstallUtil to run the payload bypassing the AppLocker protection. Currently only the InstallUtil method is provided,…
WordPress Bulk Delete plugin version 5.5.3 suffers from a privilege escalation vulnerability.
An independent vulnerability laboratory researcher discovered a remote sql injection vulnerability in the official persian PHPNuke Mod_weblink web extension.
An independent vulnerability laboratory researcher discovered a cross site request forgery web vulnerability in the official AVG Threat Labs web-application.