what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 101 - 125 of 170 RSS Feed

Files

Facebook ParlAI 1.0.0 Code Execution / Deserialization
Posted Sep 14, 2021
Authored by Abhiram V

Facebook ParlAI version 1.0.0 suffers from a deserialization vulnerability that can allow for code execution.

tags | exploit, code execution
advisories | CVE-2021-24040
SHA-256 | 9da634b02b722fa3af05ba67e9c19879fb1f0cd3947fbdb6dd88459cdf7aac56
Purchase Order Management System 1.0 Shell Upload
Posted Sep 14, 2021
Authored by Aryan Chehreghani

Purchase Order Management System version 1.0 suffers from a remote shell upload vulnerability.

tags | exploit, remote, shell
SHA-256 | adbec2ba2a2b77b4a8198e5ede57e1dc118d478d21f0f9e1393f1c542e410439
Active WebCam 11.5 Unquoted Service Path
Posted Sep 14, 2021
Authored by Salman Asad

Active WebCam version 11.5 suffers from an unquoted service path vulnerability.

tags | exploit
SHA-256 | 519c9c46fc0095e44a9bf04b7728357cce3f079549e491411eb144b1eded576c
Apartment Visitor Management System 1.0 Shell Upload / SQL Injection
Posted Sep 13, 2021
Authored by mari0x00

Apartment Visitor Management System version 1.0 suffers from a remote SQL injection vulnerability that allows for a shell upload.

tags | exploit, remote, shell, sql injection
SHA-256 | 5aee9da5e3d03618d766843ef08f9e59fdbb86eb3a07d98f3bafc88ffcbe1a93
WordPress Download From Files 1.48 Shell Upload
Posted Sep 12, 2021
Authored by spacehen

WordPress Download From Files plugin version 1.48 suffers from a remote shell upload vulnerability.

tags | exploit, remote, shell
SHA-256 | e60f6dedb4caa64e369e41397c4f603384d57ace3aeeb458bebe459b9cae34f9
Men Salon Management System 1.0 Cross Site Scripting / SQL Injection
Posted Sep 11, 2021
Authored by Aryan Chehreghani

Men Salon Management System version 1.0 suffers from cross site scripting and remote SQL injection vulnerabilities.

tags | exploit, remote, vulnerability, xss, sql injection
SHA-256 | 8917ea868eb7090b64c42647247b46df8630a40058b829a1b5bbac026b794007
Atlassian Confluence WebWork OGNL Injection
Posted Sep 10, 2021
Authored by wvu, Jang, Benny Jacob | Site metasploit.com

This Metasploit module exploits an OGNL injection in Atlassian Confluence's WebWork component to execute commands as the Tomcat user.

tags | exploit
advisories | CVE-2021-26084
SHA-256 | 78b308738c153a19545165ba47b4b15d6c0473eedcb99a8170d7a8e03183480a
Internet Explorer JIT Optimization Memory Corruption
Posted Sep 10, 2021
Authored by Ivan Fratric, Google Security Research

Internet Explorer suffers from an issue where incorrect JIT optimization in jscript9.dll leads to memory corruption.

tags | exploit
advisories | CVE-2021-34480
SHA-256 | cb83b562636ea76e2bb8cf3458b612c7c7976ae831087491f462b16ec9a8758e
ECOA Building Automation System Arbitrary File Deletion
Posted Sep 10, 2021
Authored by Neurogenesia | Site zeroscience.mk

ECOA building automation systems suffer from an arbitrary file deletion vulnerability. Many versions are affected.

tags | exploit, arbitrary
SHA-256 | 74b68e2af97ce92c0f6145176c6346d99ffdc70d081fbb5279db58eb124bb1b5
Backdoor.Win32.WinterLove.i MVID-2021-0341 Hardcoded Credential
Posted Sep 10, 2021
Authored by malvuln | Site malvuln.com

Backdoor.Win32.WinterLove.i malware suffers from a hardcoded credential vulnerability.

tags | exploit
systems | windows
SHA-256 | 5b3e636473f599956429b4488c51c576410e0fb6797838f3edaa1227851bc07b
ECOA Building Automation System Local File Disclosure
Posted Sep 10, 2021
Authored by Neurogenesia | Site zeroscience.mk

ECOA building automation systems suffer from a local file disclosure vulnerability. Many versions are affected.

tags | exploit, local
SHA-256 | ab578e3b99dda2c479565b63ee2a81cbdefbf253cf929994b8241910d546052c
ECOA Building Automation System Authorization Bypass / Insecure Direct Object Reference
Posted Sep 10, 2021
Authored by Neurogenesia | Site zeroscience.mk

ECOA building automation systems suffer from authorization bypass and insecure direct object reference vulnerabilities. Many versions are affected.

tags | exploit, vulnerability
SHA-256 | 2fbaa33171e382ad3ebccde715fa7a4331d3d4391ce1d026f2ab795d2e9a0458
ECOA Building Automation System Remote Privilege Escalation
Posted Sep 10, 2021
Authored by Neurogenesia | Site zeroscience.mk

ECOA building automation systems suffer from a remote privilege escalation vulnerability. Many versions are affected.

tags | exploit, remote
SHA-256 | 5d72cdb1a9e256f8aa04a95cc7fda1757d99f39d0120ff44f6e0ad0f1aa9003d
ECOA Building Automation System Missing Encryption
Posted Sep 10, 2021
Authored by Neurogenesia | Site zeroscience.mk

ECOA building automation systems suffer from missing encryption of sensitive information. Many versions are affected.

tags | exploit
SHA-256 | fbea3c02c7a377cbfc0e1fe62af2f79450fdffd163742edd08eb5f1c1d89ce80
ECOA Building Automation System Hardcoded SSH Credentials
Posted Sep 10, 2021
Authored by Neurogenesia | Site zeroscience.mk

ECOA building automation systems have hardcoded SSH credentials. Many versions are affected.

tags | exploit
SHA-256 | 3b6c0f63a46ae33fbb65a334f754cbd3d76e400e5a655fe28a84047f54567cc0
Backdoor.Win32.Wollf.h MVID-2021-0340 Code Execution
Posted Sep 10, 2021
Authored by malvuln | Site malvuln.com

Backdoor.Win32.Wollf.h malware suffers from a code execution vulnerability.

tags | exploit, code execution
systems | windows
SHA-256 | a4937a349899e6afba56cc0926e8355d321358d1f37d6ac1ffef42a24ba6d576
ECOA Building Automation System Configuration Download Information Disclosure
Posted Sep 10, 2021
Authored by Neurogenesia | Site zeroscience.mk

ECOA building automation systems suffer from a configuration download information disclosure vulnerability. Many versions are affected.

tags | exploit, info disclosure
SHA-256 | aef4a97a1314e27e1969f3d4e1a72da189d996a3e5a1eb6091e6d19bba339d2d
ECOA Building Automation System Cookie Poisoning / Authentication Bypass
Posted Sep 10, 2021
Authored by Neurogenesia | Site zeroscience.mk

ECOA building automation systems suffer from a cookie poisoning vulnerability that allows for authentication bypass. Many versions are affected.

tags | exploit
SHA-256 | 9f1383de0fd14fccc3b75dfe56afccaa387d7add8055bd914de409611271ac92
ECOA Building Automation System Cross Site Request Forgery
Posted Sep 10, 2021
Authored by Neurogenesia | Site zeroscience.mk

ECOA building automation systems suffer from a cross site request forgery vulnerability. Many versions are affected.

tags | exploit, csrf
SHA-256 | c5e04be1683df924f6735186c911be919b8740e173fc6f468e327ce6ed73c7ee
Backdoor.Win32.VB.awm MVID-2021-0339 Authentication Bypass / Information Disclosure
Posted Sep 10, 2021
Authored by malvuln | Site malvuln.com

Backdoor.Win32.VB.awm malware suffers from bypass and information leakage vulnerabilities.

tags | exploit, vulnerability
systems | windows
SHA-256 | 6f599670a0087704724f901a40e71705e4b518d6a21c4ed3aa2e68db4b6b6399
ECOA Building Automation System Directory Traversal
Posted Sep 10, 2021
Authored by Neurogenesia | Site zeroscience.mk

ECOA building automation systems suffer from directory traversal vulnerability that allows for content disclosure. Many versions are affected.

tags | exploit
SHA-256 | 020d2d4f0280cbde5afa73dac4c8cfd23db4621f938bb3e0bb70091b1c53de10
ECOA Building Automation System Path Traversal / Arbitrary File Upload
Posted Sep 10, 2021
Authored by Neurogenesia | Site zeroscience.mk

ECOA building automation systems suffer from path traversal and arbitrary file upload vulnerabilities. Many versions are affected.

tags | exploit, arbitrary, vulnerability, file upload
SHA-256 | ea7f9bd9279b87a7dac72d39679684829a62542b790b1b70e36bca9e2ed2428b
ECOA Building Automation System Weak Default Credentials
Posted Sep 10, 2021
Authored by Neurogenesia | Site zeroscience.mk

ECOA building automation systems suffer from having default weak credentials. Many versions are affected.

tags | exploit
SHA-256 | 45f0fdd9a7c77effec513c3335453ac15ea81dbffa7b4d63604efe22c99cf375
HEUR.Trojan.Win32.Generic MVID-2021-0338 Insecure Permissions
Posted Sep 10, 2021
Authored by malvuln | Site malvuln.com

HEUR.Trojan.Win32.Generic malware suffers from an insecure permissions vulnerability.

tags | exploit, trojan
systems | windows
SHA-256 | 25046969aaca55e46ee3bcad8ebe2562ebfc1fe9516d228cf50ca1401c1cb9a1
ECOA Building Automation System Hidden Backdoor Accounts
Posted Sep 9, 2021
Authored by Neurogenesia | Site zeroscience.mk

ECOA building automation systems have hidden backdoor accounts. Many versions are affected.

tags | exploit
SHA-256 | 5338c6d16a6962eaad95acb798ea3fad3c0a94ef6d58971c4a72cb3a313efc07
Page 5 of 7
Back34567Next

Top Authors In Last 30 Days

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close