Aggregator
CVE-2019-11358 | Oracle Siebel UI Framework up to 21.2 UIF Open UI cross site scripting (Nessus ID 208606 / ID 176919)
CVE-2019-11358 | Oracle Identity Manager 12.2.1.3.0 jQuery cross site scripting (Nessus ID 208606 / ID 176919)
CVE-2019-11358 | Oracle Hyperion Planning 11.1.2.4/11.2.6.0 jQuery cross site scripting (Nessus ID 208606 / ID 176919)
CVE-2019-11358 | Oracle PeopleSoft Enterprise FIN Expenses 9.2 cross site scripting (Nessus ID 208606 / ID 176919)
CVE-2019-11358 | Oracle BI Publisher 5.5.0.0.0/12.2.1.3.0/12.2.1.4.0 BI Publisher Security cross site scripting (Nessus ID 208606 / ID 176919)
CVE-2019-11358 | Oracle Business Process Management Suite 12.2.1.3.0/12.2.1.4.0 Runtime Engine cross site scripting (Nessus ID 208606 / ID 176919)
CVE-2024-47875 | cure53 DOMPurify up to 2.4.x/3.1.2 cross site scripting (GHSA-gx9m-whjm-85jf / Nessus ID 208927)
CVE-2007-0347 | CVSTrac up to 2.0 format.c is_eow sql injection (EDB-3223 / Nessus ID 24263)
InfiltraxInfiltrax: UAC Bypass, Keylogging, and Persistent Access for Penetration Testers
Infiltrax Infiltrax is a post-exploitation reconnaissance tool for penetration testers and red teams, designed to capture screenshots, retrieve clipboard contents, log keystrokes, bypass UAC and install AnyDesk for persistent remote access. Feature Screenshot Capture:...
The post InfiltraxInfiltrax: UAC Bypass, Keylogging, and Persistent Access for Penetration Testers appeared first on Penetration Testing Tools.
CVE-2014-7650 | Ashok88 JJA- Juvenile Justice Act 1986 1 X.509 Certificate cryptographic issues (VU#582497)
ligolo-ng: advanced tunneling/pivoting tool
Ligolo-ng : Tunneling like a VPN An advanced, yet simple, tunneling tool that uses a TUN interface. Ligolo-ng is a simple, lightweight, and fast tool that allows pentesters to establish tunnels from a reverse TCP/TLS connection without the need of...
The post ligolo-ng: advanced tunneling/pivoting tool appeared first on Penetration Testing Tools.
echidna: Ethereum fuzz testing framework
echidna Echidna is a weird creature that eats bugs and is highly electrosensitive (with apologies to Jacob Stanley) More seriously, Echidna is a Haskell program designed for fuzzing/property-based testing of Ethereum smart contracts. It...
The post echidna: Ethereum fuzz testing framework appeared first on Penetration Testing Tools.
CVE-2016-1564 | WordPress up to 4.4.0 class-wp-theme.php cross site scripting (News 36185 / Nessus ID 87900)
CVE-2016-1567 | chrony up to 1.31.1/2.2.0 Key 7pk security (FEDORA-2016-6a0b0ab775 / Nessus ID 88724)
CVE-2014-7649 | Pocketmags Classic Car Buyer X.509 Certificate cryptographic issues (VU#582497)
CVE-2014-7648 | Ip-phone-smart SMARTalk 1.1 X.509 Certificate cryptographic issues (VU#582497)
CVE-2014-7647 | mygoodhotels BOOKING DISCOUNT 0.1 X.509 Certificate cryptographic issues (VU#582497)
Weekly Update 421
It wasn't easy talking about the Muah.AI data breach. It's not just the rampant child sexual abuse material throughout the system (or at least requests for the AI to generate images of it), it's the reactions of people to it. The tweets justifying