Monstra CMS 3.0.4 – Arbitrary File Upload / Remote Code Execution
>> TAG: #remote exploit
Monstra CMS 3.0.4 – Arbitrary File Upload / Remote Code Execution
Joomla! Component Guru Pro – ‘promocode’ SQL Injection
Joomla! Component JB Visa 1.0 – ‘visatype’ SQL Injection
Zoom Linux Client 2.0.106600.0904 – Stack-Based Buffer Overflow
Joomla! Component User Bench 1.0 – ‘userid’ SQL Injection
Outlook for Android – Attachment Download Directory Traversal
Western Digital MyCloud – ‘multi_uploadify’ File Upload (Metasploit)
Zoom Linux Client 2.0.106600.0904 – Command Injection
CDex 1.96 – Buffer Overflow
Linux/x64 – Custom Encoded XOR + execve(/bin/sh) Shellcode