Posts

Micro Focus Operations Bridge Reporter Unauthenticated Command Injection

Micro Focus Operations Bridge Reporter shrboadmin Default Password

OX App Suite / OX Guard SSRF / DoS / Cross Site Scripting

Piwigo 11.3.0 SQL Injection

Backdoor.Win32.Agent.oj Code Execution

Microsoft Windows UAC Privilege Escalation

Backdoor.Win32.Agent.oj Buffer Overflow

Moodle 3.6.1 Cross Site Scripting

Backdoor.Win32.Agent.kte Buffer Overflow

Backdoor.Win32.Agent.gmug Heap Corruption

GNU wget Arbitrary File Upload / Code Execution

Backdoor.Win32.Agent.ggw Authentication Bypass

Worm.Win32.Delf.hu Insecure Permissions

HEUR.Trojan.Win32.Bayrob.gen Insecure Permissions

Microsoft SAFER Bypass

NodeBB Emoji 3.2.1 Arbitrary FIle Write

Cacti 1.2.12 SQL Injection / Remote Code Execution

Fog Project 1.5.9 Shell Upload

Android NFC Stack Out-Of-Bounds Write

Backdoor.Win32.Agent.afq Heap Corruption

Backdoor.Win32.Agent.afq Directory Traversal

Root Detection Bypass With frida-push And Objection For iOS And Android

GitHub Missing Audit Logging

Backdoor.Win32.Agent.afq Missing Authentication

Kirby CMS 3.5.3.1 Cross Site Scripting

Trojan-Dropper.Win32.Injector.aobl Insecure Permissions

Trojan-Dropper.Win32.Dycler.vrp Insecure Permissions

PFSense 2.5.0 Cross Site Scripting

Kimai 1.14 CSV Injection

VMware vRealize Operations Manager Server-Side Request Forgery / Code Execution

WordPress WPGraphQL 1.3.5 Denial Of Service

Apache Druid 0.20.0 Remote Command Execution

Montiorr 1.7.6m Cross Site Scripting

Hasura GraphQL 1.3.3 Remote Code Execution

OpenPLC 3 Remote Code Execution

SEO Panel 4.8.0 SQL Injection

Windows 10 Wi-Fi Drivers For Intel Wireless Adapters 22.30.0 Privilege Escalation

Worm.Win32.Busan.k Insecure Transit

Sipwise C5 NGCP CSC Cross Site Request Forgery

Sipwise C5 NGCP CSC Cross Site Scripting

DzzOffice 2.02.1 Cross Site Scripting

Document Management System 1.0 SQL Injection / Remote Code Execution

GetSimple CMS My SMTP Contact 1.1.1 CSRF/ XSS / Code Execution

Moodle 3.10.3 Cross Site Scripting

BMD BMDWeb 2.0 Cross Site Scripting

Packed.Win32.Black.d Unauthenticated Open Proxy

OTRS 6.0.1 Remote Command Execution

Backdoor.Win32.DarkKomet.artr Insecure Permissions

Trojan-Dropper.Win32.Agent.xtp Insecure Permissions

RemoteClinic 2.0 Cross Site Scripting