Subscribe via feed.

[webapps] Moodle 3.9 – Remote Code Execution (RCE) (Authenticated)

Posted by deepcore under Security (No Respond)

Moodle 3.9 – Remote Code Execution (RCE) (Authenticated)

Tags: ,

[webapps] CMSuno 1.7 – 'tgo' Stored Cross-Site Scripting (XSS) (Authenticated)

Posted by deepcore under Security (No Respond)

CMSuno 1.7 – ‘tgo’ Stored Cross-Site Scripting (XSS) (Authenticated)

Tags: ,

[webapps] GFI Mail Archiver 15.1 – Telerik UI Component Arbitrary File Upload (Unauthenticated)

Posted by deepcore under Security (No Respond)

GFI Mail Archiver 15.1 – Telerik UI Component Arbitrary File Upload (Unauthenticated)

Tags: ,

[webapps] Client Management System 1.1 – 'cname' Stored Cross-site scripting (XSS)

Posted by deepcore under Security (No Respond)

Client Management System 1.1 – ‘cname’ Stored Cross-site scripting (XSS)

Tags: ,

[webapps] WordPress Plugin WP Customize Login 1.1 – 'Change Logo Title' Stored Cross-Site Scripting (XSS)

Posted by deepcore under Security (No Respond)

WordPress Plugin WP Customize Login 1.1 – ‘Change Logo Title’ Stored Cross-Site Scripting (XSS)

Tags: ,

[webapps] qdPM 9.1 – Remote Code Execution (RCE) (Authenticated)

Posted by deepcore under Security (No Respond)

qdPM 9.1 – Remote Code Execution (RCE) (Authenticated)

Tags: ,

[webapps] qdPM 9.2 – DB Connection String and Password Exposure (Unauthenticated)

Posted by deepcore under Security (No Respond)

qdPM 9.2 – DB Connection String and Password Exposure (Unauthenticated)

Tags: ,

[webapps] ApacheOfBiz 17.12.01 – Remote Command Execution (RCE) via Unsafe Deserialization of XMLRPC arguments

Posted by deepcore under Security (No Respond)

ApacheOfBiz 17.12.01 – Remote Command Execution (RCE) via Unsafe Deserialization of XMLRPC arguments

Tags: ,

[webapps] Hotel Management System 1.0 – Cross-Site Scripting (XSS) Arbitrary File Upload Remote Code Execution (RCE)

Posted by deepcore under Security (No Respond)

Hotel Management System 1.0 – Cross-Site Scripting (XSS) Arbitrary File Upload Remote Code Execution (RCE)

Tags: ,

[webapps] Men Salon Management System 1.0 – SQL Injection Authentication Bypass

Posted by deepcore under Security (No Respond)

Men Salon Management System 1.0 – SQL Injection Authentication Bypass

Tags: ,