Trihedral VTScada DoS / XSS / Information Disclosure
Trihedral VTScada versions prior to 11.2.26 suffer from resource consumption, cross site scripting, and information disclosure vulnerabilities.MD5 | cb976665ca752634c866774df96acaffDownloadVendor:...
View ArticleMicrosoft .NET Framework 4.7 DLL Hijacking
Microsoft .NET Framework version 4.7 suffers from dll hijacking vulnerabilities.MD5 | 5b1e4d178e8382d65a9f6aa04db6bba5DownloadHi @ll,the executable installers for .NET Framework 4.7 (released about2...
View ArticleMicrosoft Dynamic CRM 2016 Cross Site Scripting
Microsoft Dynamic CRM 2016 versions SP1 and below suffer from a cross site scripting vulnerability.MD5 | 6edb82874ea081b8edfc3b1e81d10c4dDownloadProduct: MS Dynamic CRM 2016Vendor:...
View ArticleGoogle Chrome - Out-of-Bounds Access in RegExp Stubs
EDB-ID: 42286Author: Google Security ResearchPublished: 2017-06-30CVE: N/A Type: DosPlatform: MultipleAliases: N/AAdvisory/Source: LinkTags: Out Of BoundsVulnerable App: N/A A minimal PoC is as...
View ArticleLG MRA58K - 'ASFParser::SetMetaData' Stack Overflow
EDB-ID: 42285Author: Google Security ResearchPublished: 2017-06-30CVE: N/A Type: DosPlatform: AndroidAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A There are three variants of the below...
View ArticleRSA Archer GRC 6.2.0.2 CSRF / XSS / Bypass / Open Redirect
RSA Archer GRC version 6.2.0.2 suffers from bypass, cross site request forgery, information disclosure, open redirection, and cross site scripting vulnerabilities.MD5 |...
View ArticleDrupal Core Overlay Module CVE-2015-7943 Incomplete Fix Open Redirection...
Drupal is prone to an open-redirection vulnerability. An attacker can leverage this issue by constructing a crafted URI and enticing a user to follow it. When an unsuspecting victim follows the link,...
View ArticleBOA Web Server 0.94.14rc21 - Arbitrary File Access
EDB-ID: 42290Author: Miguel Mendez ZPublished: 2017-06-20CVE: CVE-2017-9833 Type: WebappsPlatform: LinuxVulnerable App: N/A Title: Vulnerability in BOA Webserver 0.94.14 Date: 20-06-2017 Status: Vendor...
View ArticleCMS Made Simple 2.2.1 Local File Inclusion
CMS Made Simple versions 2.2.1 and below suffers from a local inclusion vulnerability.MD5 |...
View ArticleHumax Digital HG100R 2.0.6 XSS / Information Disclosure
Humax Digital HG100R version 2.0.6 suffers from backup disclosure, root credential disclosure, and cross site scripting vulnerabilities.MD5 | d929ed2b472ae8a416c2a4ab898c7996DownloadHumax Digital...
View ArticleDoorGets CMS 7.0 Open Redirect
DoorGets CMS version 7.0 suffers from an open redirect vulnerability.MD5 | 1bcf47aa92dd9245470a475367ee8161Download# Title: Open Redirect DoorGets CMS# Version: 7.0# vendor:...
View ArticleeVestigator Forensic PenTester Remote Code Execution
eVestigator Forensic PenTester version 1 suffers from a remote code execution vulnerability via man-in-the-middle attacks.MD5 | 63d61dcd2b12d16dc334b0324e5e2700DownloadSource:packetstormsecurity.com
View ArticleAustralian Education App Remote Code Execution
Australian Education App suffers from a remote code execution vulnerability.MD5 | 63571b9d56e1594f58b3d2024e6a2e07DownloadSource:packetstormsecurity.com
View ArticleBestSafe Browser FREE NoAds 3 Remote Code Execution
BestSafe Browser FREE NoAds version 3 suffers from a remote code execution vulnerability.MD5 | f6b9ad096476f787dcda95571f3a8e1aDownloadSource:packetstormsecurity.com
View ArticleWebmin 1.840 Cross Site Scripting
Webmin version 1.840 suffers from a cross site scripting vulnerability.MD5 | bb51602cc1da9c4e34fe8d5f821ccdd0DownloadVulnerability type: Reflected Cross Site Scripting------------------------Product:...
View ArticleInsomniaX 2.1.8 Arbitrary Kernel Extension Loading
It was found that the loader application bundled with InsomniaX can be used to load arbitrary Kernel Extensions (kext). The loader is normally used to load a kext file that is needed to disable the Lid...
View ArticleXenforo Forum CMS 1.5.13 Cross Site Scripting
Xenforo Forum CMS version 1.5.13 suffers from a persistent cross site scripting vulnerability.MD5 | 4049540e25d622043fb619c1860d275bDownload ______ ______ _____ ___ _____ _____ _____ | ___ \ | ___ \ |...
View ArticleBOA Web Server 0.94.14rc21 Arbitrary File Access
BOA Web Server version 0.94.14rc21 an arbitrary file access vulnerability.MD5 | aaea3bb5ba1b420b9f8f2471697656b2DownloadBOA Web Server 0.94.14 - Access to arbitrary files as privilegesTitle:...
View ArticleOpenDreamBox 2.0.0 Plugin WebAdmin - Remote Code Execution
EDB-ID: 42293Author: Jonatas FilPublished: 2017-07-03CVE: N/A Type: WebappsPlatform: HardwareVulnerable App: N/A # Shodan Dork: "DreamBox" 200 ok" # Date: 07/03/17 # Exploit Author: Jonatas Fil #...
View ArticleOpenDreamBox 2.0.0 Remote Code Execution
OpenDreamBox version 2.0.0 suffers from a remote code execution vulnerability in the WebAdmin plugin.MD5 | f918f00248ddecb3c503ab86d599f958Download# Exploit Title: OpenDreamBox 2.0.0 - Plugin WebAdmin...
View Article