Subscribe via feed.

[webapps] WordPress Plugin amministrazione-aperta 3.7.3 – Local File Read – Unauthenticated

Posted by deepcore under Security (No Respond)

WordPress Plugin amministrazione-aperta 3.7.3 – Local File Read – Unauthenticated

Tags: ,

[webapps] ICEHRM 31.0.0.0S – Cross-site Request Forgery (CSRF) to Account Takeover

Posted by deepcore under Security (No Respond)

ICEHRM 31.0.0.0S – Cross-site Request Forgery (CSRF) to Account Takeover

Tags: ,

[remote] iRZ Mobile Router – CSRF to RCE

Posted by deepcore under Security (No Respond)

iRZ Mobile Router – CSRF to RCE

Tags: ,

[remote] Ivanti Endpoint Manager 4.6 – Remote Code Execution (RCE)

Posted by deepcore under Security (No Respond)

Ivanti Endpoint Manager 4.6 – Remote Code Execution (RCE)

Tags: ,

[local] Sysax FTP Automation 6.9.0 – Privilege Escalation

Posted by deepcore under Security (No Respond)

Sysax FTP Automation 6.9.0 – Privilege Escalation

Tags: ,

[remote] ICT Protege GX/WX 2.08 – Stored Cross-Site Scripting (XSS)

Posted by deepcore under Security (No Respond)

ICT Protege GX/WX 2.08 – Stored Cross-Site Scripting (XSS)

Tags: ,

[remote] ICT Protege GX/WX 2.08 – Client-Side SHA1 Password Hash Disclosure

Posted by deepcore under Security (No Respond)

ICT Protege GX/WX 2.08 – Client-Side SHA1 Password Hash Disclosure

Tags: ,

[webapps] WordPress Plugin iQ Block Country 1.2.13 – Arbitrary File Deletion via Zip Slip (Authenticated)

Posted by deepcore under Security (No Respond)

WordPress Plugin iQ Block Country 1.2.13 – Arbitrary File Deletion via Zip Slip (Authenticated)

Tags: ,

[webapps] Moodle 3.11.5 – SQLi (Authenticated)

Posted by deepcore under Security (No Respond)

Moodle 3.11.5 – SQLi (Authenticated)

Tags: ,

[webapps] Pluck CMS 4.7.16 – Remote Code Execution (RCE) (Authenticated)

Posted by deepcore under Security (No Respond)

Pluck CMS 4.7.16 – Remote Code Execution (RCE) (Authenticated)

Tags: ,