Xeams version 4.5 build 5755 suffers from cross site request forgery and cross site scripting vulnerabilities.
5b0de84610bd9cec2e0c622b699be56bdc7acdcc49862431395ff4916d529a79
Syncrify Server version 3.6 build 833 suffers from cross site request forgery and cross site scripting vulnerabilities.
93f6f957cc8cf86fdcf92d4636a9bf54342fde02464b86ab05a5c510225d3958
SynaMan version 3.4 build 1436 suffers from cross site request forgery and cross site scripting vulnerabilities.
6ab1b2f93aca389179502a5b70564abad6a80c2d417198ae5f5864729515616c
SynTail version 1.5 build 566 suffers from cross site request forgery and cross site scripting vulnerabilities.
d72ce579c7f581c425afa9a2347fa35d8c2e085f93fa80be200f7006d097308f
Docker versions prior to 1.6.1 suffer from privilege escalation and information disclosure vulnerabilities.
95ee351837d4eafc2ac444cb87bd4b716e7c5f58566ada9fb56a9b758dee33cc
This is proof of concept code that demonstrates reverse-engineering of the default WPA key generation algorithm used in ADB broadband Pirelli routers in Argentina and Portugal. Model P.DG-A4001N is affected. This is the second version of the exploit and adds support for MEO routers in Portugal.
713f565efa26dec0805186efd4a9a990744451458398ddb642832bd8ba3c8cce
Capstone is a multi-architecture, multi-platform disassembly framework. It has a simple and lightweight architecture-neutral API, thread-safe by design, provides details on disassembled instruction, and more.
fc2741e7bc5fb23e2f960a54da3fe9858cf01ff45a1cf9bacb88a5870d0dec6e
Pimcore CMS version 3.0.5 suffers from command execution, cross site scripting, and remote SQL injection vulnerabilities.
b719015dc04a6baf76b9db2543926798410e1538960d36fc5ca33f2fa2be3b77
Windows Media Player MediaInfo version 0.7.61 buffer overflow exploit.
7a57ca5f54aa1397281c140c3de574a7fab60e11bf67595d325e95d4b9d43c6b
WordPress Yet Another Related Posts plugin versions 4.2.4 and below suffer from cross site request forgery, remote code execution, and cross site scripting vulnerabilities.
35afdb8d38644ef3657288d6e17f966e9fc4f0349858bab68ec3c2c3e99d31b9
MacKeeper suffers from a remote code execution vulnerability in the URL handler. Included in this bundle is the advisory and the source code to the proof of concept.
61bda7a68f01c57e6a1218642d9c2734402cd77fd0a5dd7e9a66def9858f7316
Feed2JS version 1.7 suffers from a cross site scripting vulnerability.
3ba37dbd97b4ca44a37bbd7c4e925e5531e0610cb4344a659ee3720d4398706f
Mandriva Linux Security Advisory 2015-232 - A malformed certificate input could cause a heap overflow read in the DER decoding functions of Libtasn1. The heap overflow happens in the function _asn1_extract_der_octet().
ec326717f181b47c6bed3f888aa55e2c20fbd5905b5a06673a291b04b2841d52
Debian Linux Security Advisory 3251-2 - The update for dnsmasq issued as DSA-3251-1 introduced a regression for the armel and armhf builds causing dnsmasq failing to start under certain configurations. Updated packages are now available to address this regression. Additionally dnsmasq was patched to handle the case were the libc headers defined SO_REUSEPORT, but is not supported by the running kernel.
c079f27400285ce160def0dff4ce99357d3614e7a234b2d7ea47e70e91304226
Debian Linux Security Advisory 3253-1 - Pound, a HTTP reverse proxy and load balancer, had several issues related to vulnerabilities in the Secure Sockets Layer (SSL) protocol.
09deb636c70138068c014c0f9575be8db21fe581187a43aab3741e4a8320f77f
Zeeways CMS suffers from cross site scripting and traversal vulnerabilities.
25f2882778c7764dfb5ea41846a44afd5013bb2e206de28d9a888cc2287aa58c
Artnana Webboard version 1.4 suffers from multiple cross site scripting vulnerabilities.
8082e8417b52547e10b16cc60069df540752b87d02b6fe52d97be523c7d601d4
Mt. Vernon Media web design products version 1.12 suffer from multiple remote SQL injection vulnerabilities.
0a871b9a22537c21d6c285297e8011b215d8acd4776da1c465b224137b80e2b5
Mt. Vernon Media web design products version 1.12 suffer from multiple cross site scripting vulnerabilities.
f9662defaf91a5df0b46ea41d3f488460c74933b3b07ac06746e26894dd528d1
Mt. Vernon Media web design products version 1.12 suffer from a html injection vulnerability.
bebb2aef18c7a2bcf384218bc8a70bba6a3caba28de4fffcab06bd26bba2117b
DAVOSET is a tool for committing distributed denial of service attacks using execution on other sites.
c14a6bfd1f4f5b1061dca8fc34cb2c791ae0c1ed43acc667f7b7f7869e89f161