BlackCat CMS 1.3.6 – Cross-Site Request Forgery
>> TAG: #remote exploit
BlackCat CMS 1.3.6 – Cross-Site Request Forgery
ForensiTAppxService 2.2.0.4 – ‘ForensiTAppxService.exe’ Unquoted Service Path
Seat Reservation System 1.0 – ‘id’ SQL Injection
Mida eFramework 2.9.0 – Back Door Access
B-swiss 3 Digital Signage System 3.6.5 – Remote Code Execution
SpamTitan 7.07 – Remote Code Execution (Authenticated)
Mantis Bug Tracker 2.3.0 – Remote Code Execution (Unauthenticated)
Microsoft SQL Server Reporting Services 2016 – Remote Code Execution
Windows TCPIP Finger Command – C2 Channel and Bypassing Security Software
Piwigo 2.10.1 – Cross Site Scripting