Synology Photo Station 6.7.3-3432 / 6.3-2967 - Remote Code Execution
EDB-ID: 42434Author: Kacper SzurekPublished: 2017-08-08CVE: CVE-2017-11151... Type: WebappsPlatform: HardwareAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A Source:...
View ArticleMicrosoft Office SharePoint CVE-2017-8654 Cross Site Scripting Vulnerability
Microsoft Office SharePoint is prone to a cross-site scripting vulnerability because it fails to properly sanitize user-supplied input. An attacker may leverage this issue to execute arbitrary script...
View ArticleWildMIDI 0.4.2 - Multiple Vulnerabilities
EDB-ID: 42433Author: qflb.wuPublished: 2017-08-08CVE: CVE-2017-11661... Type: DosPlatform: LinuxAliases: N/AAdvisory/Source: N/ATags: Denial of Service (DoS)Vulnerable App: N/A ================ Author...
View ArticleMicrosoft Windows 8.1 (x64) - RGNOBJ Integer Overflow (MS16-098) (2)
EDB-ID: 42435Author: SensePostPublished: 2017-08-08CVE: N/A Type: LocalPlatform: Win_x86-64Aliases: N/AAdvisory/Source: LinkTags: LocalVulnerable App: N/A -...
View ArticleDALIM SOFTWARE ES Core 5.0 build 7184.1 - Server-Side Request Forgery
EDB-ID: 42439Author: LiquidWormPublished: 2017-08-09CVE: N/A Type: WebappsPlatform: JSPVulnerable App: N/A Vendor: Dalim Software GmbH Product web page: https://www.dalim.com Affected version:...
View ArticleWebFile Explorer 1.0 - Arbitrary File Download
EDB-ID: 42440Author: Ihsan SencanPublished: 2017-08-09CVE: N/A Type: WebappsPlatform: PHPVulnerable App: N/A # Exploit Title: WebFile Explorer 1.0 - Arbitrary File Download # Dork: N/A # Date:...
View ArticleDALIM SOFTWARE ES Core 5.0 build 7184.1 - Cross-Site Scripting / Cross-Site...
EDB-ID: 42437Author: LiquidWormPublished: 2017-08-09CVE: N/A Type: WebappsPlatform: JSPVulnerable App: N/A DALIM SOFTWARE ES Core 5.0 build 7184.1 Multiple Stored XSS And CSRF Vulnerabilities Vendor:...
View ArticleDALIM SOFTWARE ES Core 5.0 build 7184.1 - Directory Traversal
EDB-ID: 42438Author: LiquidWormPublished: 2017-08-09CVE: N/A Type: WebappsPlatform: JSPVulnerable App: N/A Vendor: Dalim Software GmbH Product web page: https://www.dalim.com Affected version:...
View ArticleDALIM SOFTWARE ES Core 5.0 build 7184.1 - User Enumeration
EDB-ID: 42436Author: LiquidWormPublished: 2017-08-09CVE: N/A Type: WebappsPlatform: JSPVulnerable App: N/A # # # DALIM SOFTWARE ES Core 5.0 build 7184.1 User Enumeration Weakness # # # Vendor: Dalim...
View ArticleDrupal Better Field Descriptions Module Cross Site Scripting Vulnerability
The Better Field Descriptions module for Drupal is prone to a cross-site scripting vulnerability because it fails to properly sanitize user-supplied input. An attacker may leverage this issue to...
View ArticleWordPress Easy Modal 2.0.17 SQL Injection
WordPress Easy Modal plugin versions 2.0.17 and below suffer multiple remote SQL injection vulnerabilities.MD5 | 542c9307580448eb3f35d4186895bd12Download DefenseCode ThunderScan SAST Advisory WordPress...
View ArticleWordPress PressForward 4.3.0 Cross Site Scripting
WordPress PressForward plugin versions 4.3.0 and below suffer from a cross site scripting vulnerability.MD5 | c1bc43011a404f94f827c88a862b2af5Download DefenseCode ThunderScan SAST Advisory WordPress...
View ArticleWordPress Podlove Podcast Publisher 2.5.3 SQL Injection
WordPress Podlove Podcast Publisher plugin versions 2.5.3 and below suffer from a remote SQL injection vulnerability.MD5 | 7644c1e718ad96e70260bb88694784a8Download DefenseCode ThunderScan SAST Advisory...
View ArticleDALIM SOFTWARE ES Core 5.0 Build 7184.1 User Enumeration
DALIM SOFTWARE ES Core version 5.0 build 7184.1 suffers from a user enumeration weakness vulnerability.MD5 | 88880ef2ce8b63e81ebfb59d4e065708Download#!/usr/bin/env python### DALIM SOFTWARE ES Core 5.0...
View ArticleDALIM SOFTWARE ES Core 5.0 Build 7184.1 SSRF
DALIM SOFTWARE ES Core version 5.0 build 7184.1 suffers from a server-side request forgery vulnerability.MD5 | e4cf92df4fabe47cdccf21a808417f2fDownloadDALIM SOFTWARE ES Core 5.0 build 7184.1...
View ArticleDALIM SOFTWARE ES Core 5.0 Build 7184.1 File Disclosure
DALIM SOFTWARE ES Core version 5.0 build 7184.1 suffers from multiple remote file disclosure vulnerabilities.MD5 | c761202bc8de7da35dd69a0a76f5a0e4DownloadDALIM SOFTWARE ES Core 5.0 build 7184.1...
View ArticleDALIM SOFTWARE ES Core 5.0 Build 7184.1 XSS / CSRF
DALIM SOFTWARE ES Core version 5.0 build 7184.1 suffers from cross site request forgery and cross site scripting vulnerabilities.MD5 | f45967f142034d6fe2d841c45f04a738Download<!--DALIM SOFTWARE ES...
View ArticleMicrosoft Edge textarea.defaultValue Memory Disclosure
There is a use-after-free vulnerability in Microsoft Edge that can lead to memory disclosure. The vulnerability has been confirmed on Windows 10 Enterprise 64-bit (OS version 1607, OS build...
View ArticlePiwigo Plugin User Tag 0.9.0 - Cross-Site Scripting
EDB-ID: 42443Author: Touhid M.ShaikhPublished: 2017-08-10CVE: N/A Type: WebappsPlatform: PHPVulnerable App: # Date: 10 Aug, 2017 # Extension Version: 0.9.0 # Software Link:...
View ArticleGIF Collection 2.0 - SQL Injection
EDB-ID: 42442Author: Ihsan SencanPublished: 2017-08-10CVE: N/A Type: WebappsPlatform: PHPVulnerable App: N/A # Exploit Title: GIF Collection 2.0 - SQL Injection # Dork: N/A # Date: 10.08.2017 # Vendor...
View Article