Metasploit msfd - Remote Code Execution via Browser (Metasploit)
EDB-ID: 44569Author: MetasploitPublished: 2018-05-02CVE: N/A Type: RemotePlatform: RubyAliases: N/AAdvisory/Source: LinkTags: Metasploit Framework (MSF)Vulnerable App: N/A # This module requires...
View ArticleMetasploit msfd - Remote Code Execution (Metasploit)
EDB-ID: 44570Author: MetasploitPublished: 2018-05-02CVE: N/A Type: RemotePlatform: RubyAliases: N/AAdvisory/Source: LinkTags: Metasploit Framework (MSF)Vulnerable App: N/A # This module requires...
View ArticleExim < 4.90.1 - base64d Remote Code Execution
EDB-ID: 44571Author: straight_blastPublished: 2018-05-02CVE: CVE-2018-6789 Type: RemotePlatform: LinuxAliases: N/AAdvisory/Source: LinkTags: RemoteVulnerable App: N/A import time import socket import...
View ArticleFlexense SyncBreeze 10.7 Cross Site Scripting
Flexense SyncBreeze versions 10.1 through 10.7 suffer from a cross site scripting vulnerability.MD5 | dc3d929be52d1652079ed25ac7202292Download *Description:*URL: l...
View ArticleFlexense DiskPulse 10.7 Cross Site Scripting
Flexense DiskPulse versions 10.1 through 10.7 suffer from a cross site scripting vulnerability.MD5 | e62946400eb17c92fe50a11afbb871b1Download *Description:*URL: localhost/Affected Component:...
View ArticleWatchguard Hard-Coded Credentials / Failed Controls
WatchGuard Access Points running firmware before version 1.2.9.15 suffer from hard-coded credential, hidden authentication, file upload, and incorrect validation vulnerabilities.MD5 |...
View ArticlePeel Shopping Cart 9.0.0 Cross Site Request Forgery / Cross Site Scripting
Peel Shopping Cart version 9.0.0 suffers from cross site request forgery and cross site scripting vulnerabilities.MD5 |...
View ArticleEasy MPEG To DVD Burner 1.7.11 Buffer Overflow
Easy MPEG to DVD Burner version 1.7.11 local buffer overflow SEH exploit.MD5 | 400cb70de1b4ddeb99a83ab109c7fb61Download#!/usr/bin/python# Exploit Title: Easy MPEG to DVD Burner 1.7.11 SEH Local Buffer...
View ArticleFlexense DiskBoss 9.1.16 Cross Site Scripting
Flexense DiskBoss versions 7.4.28 through 9.1.16 suffer from a cross site scripting vulnerability.MD5 | 60a674bc1d46d229f2e178805ae7e665Download *Description:*URL: l...
View ArticleFlexense Disksavvy 10.7 Cross Site Scripting
Flexense Disksavvy versions 10.4 through 10.7 suffer from a cross site scripting vulnerability.MD5 | eba79cc88886022951d98f66845c8118Download *Description:*URL: localhost/Affected Component:...
View ArticleLibreOffice 6.0.3 / OpenOffice 4.1.5 Information Disclosure
LibreOffice version 6.0.3 and OpenOffice version 4.1.5 suffers from a .odt information disclosure vulnerability.MD5 | 1ef9e481618e168735c940551d00aa30Download#! /usr/bin/python# Exploit Title:...
View ArticleExim base64d Remote Code Execution
Exim versions prior to 4.90.1 suffer from a base64d remote code execution vulnerability.MD5 | ef4f89036ca7319be07398da99805c49Download#!/usr/bin/pythonimport timeimport socketimport structs = Nonef =...
View ArticleFlexense DupScout 10.7 Cross Site Scripting
Flexense DupScout versions 10.0.18 through 10.7 suffer from a cross site scripting vulnerability.MD5 | 529777f139491d4efacfd5e6f5bc5387Download *Description:*URL: localhost/Affected Component:...
View ArticleFlexense VX Search 10.7 Cross Site Scripting
Flexense VX Search versions 10.1.12 through 10.7 suffer from a cross site scripting vulnerability.MD5 | 1e86886c6d835a7ff46a3f5abde1af98Download *Description:*URL: localhost/Affected Component:...
View ArticleFlexense DiskSorter 10.7 Cross Site Scripting
Flexense DiskSorter versions 9.5.12 through 10.7 suffer from a cross site scripting vulnerability.MD5 | d4fb1c2f7b38a25520bc865e565ac75dDownload *Description:*URL: localhost/Affected Component:...
View ArticleArastta 1.6.2 Cross Site Scripting
Arastta version 1.6.2 suffers from a cross site scripting vulnerability.MD5 | 0f66d1ad03e3589e9115c036290a43b8Download=================================================Synopsis: Arastta 1.6.2 xss...
View ArticleTrovebox 4.0.0-rc6 SQL Injection / Bypss / SSRF
Trovebox versions 4.0.0-rc6 and below suffer from authentication bypass, server-side request forgery, unsafe token generation, nd remote SQL injection vulnerabilities.MD5 |...
View ArticleCA Spectrum 10.1.x / 10.2.x Denial Of Service
CA Technologies Support is alerting customers to a potential risk with CA Spectrum. A vulnerability exists that can allow an unauthenticated remote attacker to cause a denial of service. CA has...
View ArticleosCommerce Installer Unauthenticated Code Execution
If the /install/ directory was not removed, it is possible for an unauthenticated attacker to run the "install_4.php" script, which will create the configuration file for the installation. This allows...
View ArticleAdobe Reader PDF - Client Side Request Injection
EDB-ID: 44573Author: Alex InführPublished: 2018-05-02CVE: N/A Type: LocalPlatform: WindowsAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A % most whitespace can be removed (truncated to...
View Article