Kirby CMS < 2.5.7 – Cross-Site Scripting
>> TAG: #remote exploit
Kirby CMS < 2.5.7 – Cross-Site Scripting
Linux/x64 – Reverse TCP (127.0.0.1:4444/TCP) Shell (/bin/sh) + Password (1234567) Shellcode (104 bytes)
Symantec Endpoint Protection 12.1 – Tamper-Protection Bypass
ManageEngine Applications Manager 13 – SQL Injection
pfSense 2.3.1_1 – Command Execution
Linux Kernel 4.13 (Ubuntu 17.10) – ‘waitid()’ SMEP/SMAP Privilege Escalation
Avaya OfficeScan (IPO) < 10.1 – ActiveX Buffer Overflow
Avaya OfficeScan (IPO) < 10.1 – 'SoftConsole' Buffer Overflow (SEH)
Actiontec C1000A Modem – Backdoor Account