Aggregator
CVE-2024-56112 | CyberPanel phpmyadminsignin.php token/username cross site scripting
CVE-2024-56073 | FastNetMon Community Edition up to 1.2.7 Zero-length Templates for Netflow divide by zero
CVE-2024-56072 | FastNetMon Community Edition up to 1.2.7 sFlow v5 Plugin denial of service
CVE-2024-56074 | gitingest symlink
CVE-2024-55970 | Syncfusion Essential Studio for ASP.NET MVC up to 27.1.54 Parameter request path traversal
CVE-2024-55969 | Syncfusion Essential Studio for ASP.NET MVC up to 27.1.54 docx Document xml external entity reference
CVE-2023-29476 | Menlo On-Premise Appliance up to 2.88.0/2.89.0/2.90.0 Web Policy request smuggling
CVE-2024-56082 | Lumos up to 1.0.16 markdown-to-jsx ChatBar.tsx cross site scripting (Issue 193)
CVE-2024-56083 | Cognition Devin prior 2024-12-12 VSCode Live Share URL random values
CVE-2024-11841 | Giving Tithe.ly Giving Button Plugin up to 1.1 on WordPress Shortcode cross site scripting
CVE-2024-56084 | Logpoint UniversalNormalizer up to 5.6.x command injection
CVE-2024-56086 | Logpoint up to 7.4.x Report Template command injection
CVE-2024-56085 | Logpoint up to 7.4.x Search Template Dashboard injection
CVE-2024-56087 | Logpoint up to 7.4.x Search Template Dashboard injection
Kernel Callback Tables for Process Injection: perform process injection and hijack execution flow
Kernel Callback Tables for Process Injection The Kernel Callback Table in the Process Environment Block (PEB) can be hijacked by attackers to redirect a process’s execution flow, enabling them to execute malicious payloads. This...
The post Kernel Callback Tables for Process Injection: perform process injection and hijack execution flow appeared first on Penetration Testing Tools.
Inveigh: .NET IPv4/IPv6 machine-in-the-middle tool
Inveigh Inveigh is a cross-platform .NET IPv4/IPv6 machine-in-the-middle tool for penetration testers. This repo contains the primary C# version as well as the legacy PowerShell version. Overview Inveigh conducts spoofing attacks and hash/credential captures...
The post Inveigh: .NET IPv4/IPv6 machine-in-the-middle tool appeared first on Penetration Testing Tools.
UEFI Firmware Parser: Parse BIOS/Intel ME/UEFI firmware related structures
UEFI Firmware Parser The UEFI firmware parser is a simple module and set of scripts for parsing, extracting, and recreating UEFI firmware volumes. This includes parsing modules for BIOS, OptionROM, Intel ME and other...
The post UEFI Firmware Parser: Parse BIOS/Intel ME/UEFI firmware related structures appeared first on Penetration Testing Tools.