Information Security News and Exploits

Providing you with Security News and Exploits from all over the web.

Wordpress Age Verification Plugin <= 0.4 Open Redirect

Wordpress uCan Post plugin <= 1.0.09 Stored XSS

appRain CMF <= 0.1.5 (uploadify.php) Unrestricted File Upload Exploit

Avaya WinPDM UniteHostRouter <= 3.8.2 Pre-Auth Command Execute

AllWebMenus < 1.1.9 WordPress Menu Plugin Arbitrary File Upload

miniCMS v1.0 => v2.0 Arbitrary File Upload

Mempodipper – Linux Local Root for >=2.6.39, 32-bit and 64-bit

WordPress <= 3.3.1 Multiple Vulnerabilities

Peel SHOPPING => v2.9 xss/sql injection vulnerability

Def-Blog v1.0.3 sql injection vulnerability

VebTek CMS LFD Vulnerability

linux/x86 – netcat : connect back port 8081 – 77 bytes

linux/x86 – port bind shellcode 84 bytes

vBSEO <= 3.6.0 "proc_deutf()" Remote PHP Code Injection Exploit

HP Diagnostics Server magentservice.exe Overflow

Apache Struts2 <= 2.3.1 Multiple Vulnerabilities

Wordpress Pay With Tweet Plugin <= 1.1 Multiple Vulnerabilities

Wordpress Age Verification Plugin <= 0.4 Open Redirect

Wordpress uCan Post plugin <= 1.0.09 Stored XSS

appRain CMF <= 0.1.5 (uploadify.php) Unrestricted File Upload Exploit