NovaRad NovaPACS Diagnostics Viewer 8.5 – XML External Entity Injection (File Disclosure)
>> TAG: #remote exploit
Jorani Leave Management 0.6.5 – ‘startdate’ SQL Injection
Apache Roller 5.0.3 – XML External Entity Injection (File Disclosure)
FTPShell Server 6.80 – ‘Add Account Name’ Buffer Overflow (SEH)
FUJI XEROX DocuCentre-V 3065 Printer – Remote Command Execution
Tenda ADSL Router D152 – Cross-Site Scripting
Logicspice FAQ Script 2.9.7 – Remote Code Execution
iSmartViewPro 1.5 – ‘DDNS’ Buffer Overflow
PHP File Browser Script 1 – Directory Traversal
Visual Ping 0.8.0.0 – ‘Host’ Denial of Service (PoC)