Froxlor 0.9.37 HTML Injection
Froxlor version 0.9.37 suffers from an html injection vulnerability.MD5 | 98db6fb9a97c1f47d6516d13ba25a380Download[+] Credits: John Page (aka HyP3rlinX) [+] Website: hyp3rlinx.altervista.org[+] Source:...
View ArticleJoomla Advertisement Board Classifieds 3.2.0 Shell Upload
Joomla Advertisement Board Classifieds extension version 3.2.0 suffers from a remote shell upload vulnerability.MD5 |...
View ArticleImageMagick CVE-2017-1000445 Denial of Service Vulnerability
ImageMagick is prone to a denial-of-service vulnerability. An attacker can exploit this issue to cause a denial-of-service condition.ImageMagick 7.0.7-1 and prior versions are vulnerable....
View ArticleKingsoft Antivirus/Internet Security 9+ - Privilege Escalation
EDB-ID: 43421Author: mr_mePublished: 2018-01-03CVE: N/A Type: LocalPlatform: WindowsAliases: N/AAdvisory/Source: LinkTags: LocalVulnerable App: N/A Vulnerability Summary The following advisory...
View ArticleEMC xPression 4.5SP1 Patch 13 - 'model.jobHistoryId' SQL Injection
EDB-ID: 43422Author: Pawel GocylaPublished: 2018-01-03CVE: CVE-2017-14960 Type: WebappsPlatform: MultipleAliases: N/AAdvisory/Source: N/ATags: SQL Injection (SQLi)Vulnerable App: N/A Author: Pawel...
View ArticleAtmail 7.1.1 PRO Cross Site Scripting
Atmail version 7.1.1 PRO suffers from a cross site scripting vulnerability.MD5 | c8cff2aae64a0139e77502e9203f7b00Download============================================================================| #...
View ArticleBoost My Campaign 1.1 Information Disclosure
Boost My Campaign version 1.1 suffers from multiple information disclosure vulnerabilities.MD5 |...
View ArticleKingsoft Antivirus / Internet Security 9+ Privilege Escalation
Kingsoft Antivirus / Internet Security version 9+ suffers from privilege escalation vulnerability.MD5 | 4cf2427589e849acac46487ad7c7fe58Download'''Vulnerability SummaryThe following advisory describes...
View ArticleXplico Remote Code Execution
This Metasploit module exploits a command injection vulnerability in Xplico. Unauthenticated users can register a new account and then execute a terminal command under the context of the root user.MD5...
View ArticleLinksys WVBR0-25 User-Agent Command Execution
The Linksys WVBR0-25 Wireless Video Bridge, used by DirecTV to connect wireless Genie cable boxes to the Genie DVR, is vulnerable to OS command injection in versions prior to 1.0.41 of the web...
View ArticleMultiple CPU Hardwares CVE-2017-5753 Information Disclosure Vulnerability
Multiple CPU Hardwares are prone to an information-disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may aid in further attacks. InformationBugtraq ID:...
View ArticleMultiple CPU Hardwares CVE-2017-5754 Information Disclosure Vulnerability
Multiple CPU Hardwares are prone to an information-disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may aid in further attacks. InformationBugtraq ID:...
View ArticleMultiple CPU Hardwares CVE-2017-5715 Information Disclosure Vulnerability
Multiple CPU Hardwares are prone to an information-disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may aid in further attacks. InformationBugtraq ID:...
View ArticleIopsys Router - 'dhcp' Remote Code Execution
EDB-ID: 43428Author: neonseaPublished: 2017-12-23CVE: CVE-2017-17867 Type: RemotePlatform: HardwareAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A import json import sys import subprocess...
View ArticleMultiple CPUs - 'Spectre' Information Disclosure (PoC)
EDB-ID: 43427Author: multiplePublished: 2018-01-03CVE: CVE-2017-5715... Type: LocalPlatform: MultipleAliases: SpectreAdvisory/Source: LinkTags: N/AVulnerable App: N/A #include <stdlib.h> #include...
View ArticleLinksys WVBR0-25 - User-Agent Command Execution (Metasploit)
EDB-ID: 43429Author: MetasploitPublished: 2018-01-04CVE: CVE-2017-17411 Type: RemotePlatform: HardwareAliases: N/AAdvisory/Source: LinkTags: Metasploit Framework (MSF)Vulnerable App: N/A # This module...
View ArticleXplico - Remote Code Execution (Metasploit)
EDB-ID: 43430Author: MetasploitPublished: 2018-01-04CVE: CVE-2017-16666 Type: RemotePlatform: LinuxAliases: N/AAdvisory/Source: LinkTags: Metasploit Framework (MSF)Vulnerable App: N/A # This module...
View ArticleIopsys Router dhcp Remote Code Execution
Iopsys router suffers from a dhcp related remote code execution vulnerability.MD5 | 54885f686c0eb8621891ad24f69b864cDownload#!/usr/bin/pythonimport jsonimport sysimport subprocessimport socketimport...
View ArticleSpectre Information Disclosure Proof Of Concept
Spectre information disclosure proof of concept exploit that affects multiple CPUs.MD5 | 98f87055672b6c38186854b5370f5469Download#include <stdio.h>#include <stdlib.h>#include...
View ArticleJoomla JHotelReservation 6.0.5 SQL Injection
Joomla JHotelReservation extension version 6.0.5 suffers from a remote SQL injection vulnerability.MD5 | 8c701872957dae6ddcb0a2715e8182a5Download#################################################Title:...
View Article