bugsearch's profile picture.

Bug Search

@bugsearch

phpBB 3.2.3 - Remote Code Execution goo.gl/fb/qQoT2e


Oracle Weblogic Server - Deserialization Remote Command Execution (Patch Bypass) goo.gl/fb/ZsvASP


Imperva SecureSphere 13.x - PWS Command Injection (Metasploit) goo.gl/fb/oHzojE


Kados R10 GreenBee - Multiple SQL Injection goo.gl/fb/3gYUWS


Anyburn 4.3 x86 - 'Copy disc to image file' Buffer Overflow - (UNICODE)(SEH) goo.gl/fb/ZMrhEP


Drupal < 8.5.11 / < 8.6.10 - RESTful Web Services unserialize() RCE (Metasploit) goo.gl/fb/7GbFNq


QNAP TS-431 QTS < 4.2.2 - Remote Command Execution (Metasploit) goo.gl/fb/BG1vMJ


FreeBSD - Intel SYSRET Privilege Escalation (Metasploit) goo.gl/fb/t5YV4Y


Android - binder Use-After-Free via racy Initialization of ->allow_user_free goo.gl/fb/dFR9Jw


Linux < 4.20.14 - Virtual Address 0 is Mappable via Privileged write() to /proc/*/mem goo.gl/fb/fnE6TX


Android - getpidcon() Usage in Hardware binder ServiceManager Permits ACL Bypass goo.gl/fb/VVkZ7w


OpenDocMan 1.3.4 - 'search.php where' SQL Injection goo.gl/fb/cED963


Linux/x86 - XOR Encoder / Decoder execve(/bin/sh) Shellcode (45 bytes) goo.gl/fb/ntsqqR


CMSsite 1.0 - Multiple Cross-Site Request Forgery goo.gl/fb/wHEbf1


Bolt CMS 3.6.4 - Cross-Site Scripting goo.gl/fb/sngrbe


MarcomCentral FusionPro VDP Creator < 10.0 - Directory Traversal goo.gl/fb/bF9bJr


Fiberhome AN5506-04-F RP2669 - Persistent Cross-Site Scripting goo.gl/fb/nxWaaR


zzzphp CMS 1.6.1 - Cross-Site Request Forgery goo.gl/fb/vbeyvv


Linux/x86 - iptables -F Shellcode (43 bytes) goo.gl/fb/Lyirty


WordPress Plugin Cerber Security, Antispam & Malware Scan 8.0 - Multiple Bypass… goo.gl/fb/C9zwbs


Loading...

Something went wrong.


Something went wrong.