Kentico CMS Staging SyncServer Unserialize Remote Command Execution

This module exploits a vulnerability in the Kentico CMS platform versions 12.0.14 and earlier. Remote Command Execution is possible via unauthenticated XML requests to the Staging Service SyncServer.a ...

Continue Reading
Schneider Electric Pelco Endura NET55XX Encoder

This module exploits inadequate access controls within the webUI to enable the SSH service and change the root password. This module has been tested successfully on: NET5501, NET5501-I, NET5501-XT, NE ...

Continue Reading
Ricoh myPrint 2.9.2.4 – Hard-Coded Credentials

Post ContentRead More ...

Continue Reading
Ricoh myPrint 2.9.2.4 – Hard-Coded Credentials

Ricoh myPrint 2.9.2.4 - Hard-Coded CredentialsRead More ...

Continue Reading
opencobalt.org Cross Site Scripting vulnerability OBB-2672353

Following the coordinated and responsible vulnerability disclosure guidelines of the **[ISO 29147]()** standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. not ...

Continue Reading
drbike.co.th Cross Site Scripting vulnerability OBB-2672372

Following the coordinated and responsible vulnerability disclosure guidelines of the **[ISO 29147]()** standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. not ...

Continue Reading
orangevelodrome.com Cross Site Scripting vulnerability OBB-2672368

Following the coordinated and responsible vulnerability disclosure guidelines of the **[ISO 29147]()** standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. not ...

Continue Reading
doujin-francais.fr Cross Site Scripting vulnerability OBB-2672367

Following the coordinated and responsible vulnerability disclosure guidelines of the **[ISO 29147]()** standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. not ...

Continue Reading

Back to Main

Subscribe for the latest news: