PHPKB Multi-Language 9 suffers from an authenticated directory traversal vulnerability.
PHPKB Multi-Language 9 suffers from an image-upload.php remote authenticated code execution vulnerability.
The shared ShaderCache directory can be exploited to create an arbitrary file on the file system leading to elevation of privilege.
This Metasploit module takes advantage of a command injection vulnerability in the path parameter of the ajax archive file functionality within the rConfig web interface in order to execute the…
ManageEngine Desktop Central – Java Deserialization (Metasploit)
Rconfig 3.x – Chained Remote Code Execution (Metasploit)
CoronaBlue aka SMBGhost proof of concept exploit for Microsoft Windows 10 (1903/1909) SMB version 3.1.1. This script connects to the target host, and compresses the authentication request with a bad…
Microsoft Windows SMB version 3.1.1 suffers from a code execution vulnerability.
Zyxel CNM SecuManager versions 3.1.0 and 3.1.1 suffer from having hard-coded secrets, missing authentication, backdoors, and remote code execution vulnerabilities.
PHPKB Multi-Language 9 – ‘image-upload.php’ Authenticated Remote Code Execution