Posts

Enhanced Mitigation Experience Toolkit (EMET) XML Injection

FTPShell Client 6.70 Enterprise Edition Stack Buffer Overflow

Nagios XI Chained Remote Code Execution

Microsoft Windows ADODB.Record Object File Overwrite

GNU libiberty CVE-2018-12934 Denial of Service Vulenerability

Atlassian Fisheye and Crucible CVE-2017-16859 Directory Traversal Vulnerability

GNU libiberty CVE-2018-12938 Denial of Service Vulenerability

Android media.metrics Service Race Condition

TP-Link TL-WR841N V13 Insecure Direct Object Reference

TP-Link TL-WR841N V13 Command Injection

TP-Link TL-WR841N V13 Cross Site Request Forgery

Cisco Adaptive Security Appliance Path Traversal

hycus CMS 1.0.4 SQL Injection

DIGISOL DG-HR3400 Wireless Router Cross Site Scripting

BEESCMS 4.0 Cross Site Request Forgery

HongCMS 3.0.0 SQL Injection

UAC Bypass And Research With UAC-A-Mola

Cisco Adaptive Security Appliance - Path Traversal

Xen CVE-2018-12892 Local Security Bypass Vulnerability

DIGISOL DG-HR3400 Wireless Router - Cross-Site Scripting

HongCMS 3.0.0 - SQL Injection

hycus CMS 1.0.4 - Authentication Bypass

BEESCMS 4.0 - Cross-Site Request Forgery (Add Admin)

InPage '.inp' File Parser Remote Code Execution Vulnerability

Joomla! Core CVE-2018-12712 Local File Include Vulnerability

Quest KACE Systems Management - Command Injection (Metasploit)

Wordpress < 4.9.6 - (Authenticated) Arbitrary File Deletion

HPE VAN SDN 2.7.18.0503 - Remote Root

PRTG Command Injection

WordPress 4.9.6 Arbitrary File Deletion

Quest KACE Systems Management Command Injection

HP Enterprise VAN SDN Controller 2.7.18.0503 Remote Root

Polaris Office 2017 8.1 Remote Code Execution

Liferay Portal Server-Side Request Forgery

PoDoFo 0.9.5 Buffer Overflow

PHP 'ext/exif/exif.c' Denial of Service Vulnerability

PoDoFo 0.9.5 - Buffer Overflow

Liferay Portal < 7.0.4 - Server-Side Request Forgery

Ecessa ShieldLink SL175EHQ 10.7.4 Add Superuser Cross Site Request Forgery

Ecessa WANWorx WVR-30 10.7.4 Add Superuser Cross Site Request Forgery

Ecessa Edge EV150 10.7.4 Add Superuser Cross Site Request Forgery

Digisol DG-BR4000NG Cross Site Scripting

Intex Router N-150 Cross Site Request Forgery

WordPress Advanced Order Export For WooCommerce CSV Injection

Digisol DG-BR4000NG Buffer Overflow

Foxit Reader 9.0.1.1049 Remote Code Execution

WordPress iThemes Security SQL Injection

WordPress Comments Import And Export CSV Injection

Intex Router N-150 Arbitrary File Upload