PhreeBooks ERP 5.2.3 – Remote Command Execution
>> TAG: #remote exploit
PhreeBooks ERP 5.2.3 – Remote Command Execution
Cisco RV320 and RV325 – Unauthenticated Remote Code Execution (Metasploit)
PhreeBooks ERP 5.2.3 – Arbitrary File Upload
Google Chrome 73.0.3683.39 / Chromium 74.0.3712.0 – ‘ReadableStream’ Internal Object Leak Type Confusion
Clinic Pro v4 – ‘month’ SQL Injection
Google Chrome 72.0.3626.81 – ‘V8TrustedTypePolicyOptions::ToImpl’ Type Confusion
iScripts ReserveLogic – SQL Injection
WebKitGTK+ – ‘ThreadedCompositor’ Race Condition
SpiderMonkey – IonMonkey Compiled Code Fails to Update Inferred Property Types (Type Confusion)
Inout RealEstate – ‘city’ SQL Injection