This Metasploit module exploits a server-side include (SSI) in SharePoint to leak the web.config file and forge a malicious ViewState with the extracted validation key. This exploit is authenticated and…
http://thamuang101.go.th/new.html notified by roet404
http://trat-edu.go.th/new.html notified by roet404
http://bigdata.ednan1.go.th/new.html notified by roet404
http://nb2.go.th/new.html notified by roet404
Visitor Management System in PHP 1.0 – SQL Injection (Authenticated)
WordPress Plugin WP Courses < 2.0.29 – Broken Access Controls leading to Courses Content Disclosure
Loan Management System 1.0 – Multiple Cross Site Scripting (Stored)
Comtrend AR-5387un router – Persistent XSS (Authenticated)
http://ocsb.go.th/u.htm notified by ./Fell Ganns