WordPress Plugin Userpro < 4.9.17.1 – Authentication Bypass
>> TAG: #remote exploit
WordPress Plugin Userpro < 4.9.17.1 – Authentication Bypass
GraphicsMagick – Memory Disclosure / Heap Overflow
tnftp – ‘savefile’ Arbitrary Command Execution (Metasploit)
WordPress Plugin JTRT Responsive Tables 4.1 – SQL Injection
Ladon Framework for Python 0.9.40 – XML External Entity Expansion
OctoberCMS 1.0.426 (Build 426) – Cross-Site Request Forgery
WhatsApp 2.17.52 – Memory Corruption
Ingenious School Management System 2.3.0 – ‘friend_index’ SQL injection
ZyXEL PK5001Z Modem – Backdoor Account
Website Broker Script – ‘status_id’ SQL Injection