WordPress Good LMS plugin versions 2.1.4 and below suffer from a remote SQL injection vulnerability.
This Metasploit module exploits an authentication bypass and command injection in SaltStack Salt’s REST API to execute commands as the root user. The following versions have received a patch: 2015.8.10,…
http://www.sskh.moph.go.th notified by Al Catraz
OpenCart Theme Journal 3.1.0 – Sensitive Data Exposure
IDT PC Audio 1.0.6425.0 – ‘STacSV’ Unquoted Service Path
SAntivirus IC 10.0.21.61 – ‘SAntivirusIC’ Unquoted Service Path
DigitalPersona 5.1.0.656 ‘DpHostW’ – Unquoted Service Path
Apache Tomcat – AJP ‘Ghostcat’ File Read/Inclusion (Metasploit)
Touchbase.io 1.10 – Stored Cross Site Scripting