<?xml version="1.0" encoding="gb2312"?>
<rss version="2.0">
<channel>
<title>安全文章</title>
<link>http://www.vfocus.net/art/index.html</link>
<description>安全文章</description>
<language>zh-cn</language>
<generator>CopyRight&amp;#160;&amp;#169;&amp;#160;2002-2025 &lt;a href=&quot;/&quot; target=_blank title=&quot;:::VITTERSAFE危特网安:::&quot;&gt;VFocuS.Net&lt;/a&gt; All Rights Reserved</generator>
<webmaster>webmaster@mail.securitycn.net</webmaster>
<item>
    <title>Apache APISIX 2.12.1 - Remote Code Execution (RCE)</title>
    <link>http://www.vfocus.net/art/20220318/15112.html</link>
    <description># Exploit Title: Apache APISIX 2.12.1 - Remote Code Execution (RCE)# Date: 2022-03-16# Exploit Author: Ven3xy# Vendor Homepage: https://apisix.apache.org/# Version: Apache APISIX 1.3 2.12.1# Tested on: CentOS 7# CVE : CVE-2022-24112import requestsim</description>
    <pubDate>2022-03-18</pubDate>
    <category>Exploits</category>
    <author>Ven3xy</author>
    <comments>https://github.com/M4xSec</comments>
</item>
<item>
    <title>Linux Kernel 5.8 &lt; 5.16.11 - Local Privilege Escalation (DirtyPipe)</title>
    <link>http://www.vfocus.net/art/20220314/15111.html</link>
    <description>// Exploit Title: Linux Kernel 5.8 5.16.11 - Local Privilege Escalation (DirtyPipe)// Exploit Author: blasty (peter@haxx.in)// Original Author: Max Kellermann (max.kellermann@ionos.com)// CVE: CVE-2022-0847/* SPDX-License-Identifier: GPL-2.0 *//* *</description>
    <pubDate>2022-03-14</pubDate>
    <category>Exploits</category>
    <author>Kellermann</author>
    <comments>max.kellermann@ionos.com</comments>
</item>
<item>
    <title>Google Chrome 81.0.4044 V8 - Remote Code Execution</title>
    <link>http://www.vfocus.net/art/20210406/15110.html</link>
    <description># Exploit Title: Google Chrome 81.0.4044 V8 - Remote Code Execution# Date: 05/04/2021# Exploit Author: Tobias Marcotto# Tested on: Kali Linux x64 # Version: 83.0.4103.106# Description: Out of bounds write in V8 in Google Chrome prior to 83.0.4103.10</description>
    <pubDate>2021-04-06</pubDate>
    <category>Exploits</category>
    <author>Marcotto</author>
    <comments>vfocus.net</comments>
</item>
<item>
    <title>Google Chrome 86.0.4240 V8 - Remote Code Execution</title>
    <link>http://www.vfocus.net/art/20210406/15109.html</link>
    <description># Exploit Title: Google Chrome 86.0.4240 V8 - Remote Code Execution# Date: 05/04/2021# Exploit Author: Tobias Marcotto# Tested on: Kali Linux x64 # Version: 87.0.4280.88# Description: Insufficient data validation in V8 in Google Chrome prior to 87.0</description>
    <pubDate>2021-04-06</pubDate>
    <category>Exploits</category>
    <author>Marcotto</author>
    <comments>vfocus.net</comments>
</item>
<item>
    <title>vsftpd 3.0.3 - Remote Denial of Service</title>
    <link>http://www.vfocus.net/art/20210406/15108.html</link>
    <description># Exploit Title: vsftpd 3.0.3 - Remote Denial of Service# Date: 22-03-2021# Exploit Author: xynmaps# Vendor Homepage: https://security.appspot.com/vsftpd.html# Software Link: https://security.appspot.com/downloads/vsftpd-3.0.3.tar.gz# Version: 3.0.3</description>
    <pubDate>2021-04-06</pubDate>
    <category>Exploits</category>
    <author>xynmaps</author>
    <comments>vfocus.net</comments>
</item>
<item>
    <title>Microsoft Exchange 2019 - SSRF to Arbitrary File Write (Proxylogon)</title>
    <link>http://www.vfocus.net/art/20210406/15107.html</link>
    <description>import requestsfrom urllib3.exceptions import InsecureRequestWarningimport randomimport stringimport sysdef id_generator(size=6, chars=string.ascii_lowercase + string.digits): return ''.join(random.choice(chars) for _ in range(size))if len(sys.argv)</description>
    <pubDate>2021-04-06</pubDate>
    <category>Exploits</category>
    <author>F5</author>
    <comments>btwaf.cn</comments>
</item>
<item>
    <title>Monitoring System (Dashboard) 1.0 - File Upload RCE (Authenticated)</title>
    <link>http://www.vfocus.net/art/20210312/15106.html</link>
    <description># Exploit Title: Monitoring System (Dashboard) 1.0 - File Upload RCE (Authenticated)# Exploit Author: Richard Jones# Date: 2021-03-11# Vendor Homepage: https://www.sourcecodester.com/php/11741/monitoring-system-dashboard.html# Software Link: https:/</description>
    <pubDate>2021-03-12</pubDate>
    <category>Exploits</category>
    <author>Jones</author>
    <comments>exploit-db.com</comments>
</item>
<item>
    <title>Nsasoft Hardware Software Inventory 1.6.4.0 - 'multiple' Denial of Service (PoC)</title>
    <link>http://www.vfocus.net/art/20210312/15105.html</link>
    <description># Exploit Title: Nsasoft Hardware Software Inventory 1.6.4.0 - 'multiple' Denial of Service (PoC)# Exploit Author : Enes zeser# Exploit Date: 2021-02-28# Vendor Homepage : https://www.nsauditor.com/# Link Software : https://www.nsauditor.com/downloa</description>
    <pubDate>2021-03-12</pubDate>
    <category>Exploits</category>
    <author>Enes</author>
    <comments>exploit-db.com</comments>
</item>
<item>
    <title>Atlassian JIRA 8.11.1 - User Enumeration</title>
    <link>http://www.vfocus.net/art/20210312/15104.html</link>
    <description># Title: Atlassian JIRA 8.11.1 - User Enumeration# Author: Dolev Farhi# Vulnerable versions: version 7.13.16, 8.0.0 version 8.5.7, 8.6.0 version 8.12.0# CVE: CVE-2020-14181# Credit to original CVE author: Mikhail Klyuchnikov of Positive Technologies</description>
    <pubDate>2021-03-12</pubDate>
    <category>Exploits</category>
    <author>Farhi</author>
    <comments>exploit-db.com</comments>
</item>
<item>
    <title>Golden FTP Server 4.70 - 'PASS' Buffer Overflow</title>
    <link>http://www.vfocus.net/art/20210312/15103.html</link>
    <description># Golden FTP Server 4.70 - 'PASS' Buffer Overflow (2)# Author: 1F98D# Original Authors: Craig Freyman (cd1zz) and Gerardo Iglesias Galvan (iglesiasgg)# Tested on Windows 10 (x64)## A buffer overflow exists in GoldenFTP during the authentication proc</description>
    <pubDate>2021-03-12</pubDate>
    <category>Exploits</category>
    <author>1F98D</author>
    <comments>exploit-db.com</comments>
</item>
<item>
    <title>Joomla JCK Editor 6.4.4 - 'parent' SQL Injection</title>
    <link>http://www.vfocus.net/art/20210312/15102.html</link>
    <description># Exploit Title: Joomla JCK Editor 6.4.4 - 'parent' SQL Injection (2)# Googke Dork: inurl:/plugins/editors/jckeditor/plugins/jtreelink/# Date: 05/03/2021# Exploit Author: Nicholas Ferreira# Vendor Homepage: http://docs.arkextensions.com/downloads/jc</description>
    <pubDate>2021-03-12</pubDate>
    <category>Exploits</category>
    <author>Ferreira</author>
    <comments>exploit-db.com</comments>
</item>
<item>
    <title>Hotel and Lodge Management System 1.0 - Remote Code Execution (Unauthenticated)</title>
    <link>http://www.vfocus.net/art/20210312/15101.html</link>
    <description># Exploit Title: Hotel and Lodge Management System 1.0 - Remote Code Execution (Unauthenticated)# Date: 07-03-2021# Exploit Author: Christian Vierschilling# Vendor Homepage: https://www.sourcecodester.com# Software Link: https://www.sourcecodester.c</description>
    <pubDate>2021-03-12</pubDate>
    <category>Exploits</category>
    <author>Christian</author>
    <comments>exploit-db.com</comments>
</item>
<item>
    <title>AnyDesk 5.5.2 - Remote Code Execution</title>
    <link>http://www.vfocus.net/art/20210303/15100.html</link>
    <description># Exploit Title: AnyDesk 5.5.2 - Remote Code Execution# Date: 09/06/20# Exploit Author: scryh# Vendor Homepage: https://anydesk.com/en# Version: 5.5.2# Tested on: Linux# Walkthrough: https://devel0pment.de/?p=1881#!/usr/bin/env pythonimport structim</description>
    <pubDate>2021-03-03</pubDate>
    <category>Exploits</category>
    <author>scryh</author>
    <comments>https://devel0pment.de</comments>
</item>
<item>
    <title>Zen Cart 1.5.7b - Remote Code Execution (Authenticated)</title>
    <link>http://www.vfocus.net/art/20210303/15099.html</link>
    <description>### This module requires Metasploit: https://metasploit.com/download# Current source: https://github.com/rapid7/metasploit-framework######## This exploit write payload in database and trig to command# a bug in an zencart v1.5.7b web application####c</description>
    <pubDate>2021-03-03</pubDate>
    <category>Exploits</category>
    <author>Saratar</author>
    <comments>trregen222@gmail.com</comments>
</item>
<item>
    <title>Tiny Tiny RSS - Remote Code Execution</title>
    <link>http://www.vfocus.net/art/20210303/15098.html</link>
    <description># Exploit Title: Tiny Tiny RSS - Remote Code Execution# Date: 21/09/2020# Exploit Author: Daniel Neagaru Benjamin Nadarevi# Blog post: https://www.digeex.de/blog/tinytinyrss/# Software Link: https://git.tt-rss.org/fox/tt-rss# Version: all before 202</description>
    <pubDate>2021-03-03</pubDate>
    <category>Exploits</category>
    <author>Neagaru</author>
    <comments>https://www.digeex.de/blog</comments>
</item>
<item>
    <title>Covid-19 Contact Tracing System 1.0 - Remote Code Execution (Unauthenticated)</title>
    <link>http://www.vfocus.net/art/20210303/15097.html</link>
    <description># Exploit Title: Covid-19 Contact Tracing System 1.0 - Remote Code Execution (Unauthenticated)# Date: 28-02-2021# Exploit Author: Christian Vierschilling# Vendor Homepage: https://www.sourcecodester.com# Software Link: https://www.sourcecodester.com</description>
    <pubDate>2021-03-03</pubDate>
    <category>Exploits</category>
    <author>Christian</author>
    <comments>exploit-db.com</comments>
</item>
<item>
    <title>Online Catering Reservation System 1.0 - Remote Code Execution (Unauthenticated)</title>
    <link>http://www.vfocus.net/art/20210303/15096.html</link>
    <description># Exploit Title: Online Catering Reservation System 1.0 - Unauthenticated Remote Code Execution# Date: 28-02-2021# Exploit Author: Christian Vierschilling# Vendor Homepage: https://www.sourcecodester.com# Software Link: https://www.sourcecodester.co</description>
    <pubDate>2021-03-03</pubDate>
    <category>Exploits</category>
    <author>Christian</author>
    <comments>exploit-db.com</comments>
</item>
<item>
    <title>VMware vCenter Server 7.0 - Unauthenticated File Upload</title>
    <link>http://www.vfocus.net/art/20210303/15095.html</link>
    <description>pre# Exploit Title: VMware vCenter Server 7.0 - Unauthenticated File Upload # Date: 2021-02-27 # Exploit Author: Photubias # Vendor Advisory: [1] https://www.vmware.com/security/advisories/VMSA-2021-0002.html # Version: vCenter Server 6.5 (7515524lt</description>
    <pubDate>2021-03-03</pubDate>
    <category>Exploits</category>
    <author>Photubias</author>
    <comments>www.ic4.be</comments>
</item>
<item>
    <title>WiFi Mouse 1.7.8.5 - Remote Code Execution</title>
    <link>http://www.vfocus.net/art/20210303/15094.html</link>
    <description># Exploit Title: WiFi Mouse 1.7.8.5 - Remote Code Execution# Date: 25-02-2021# Author: H4rk3nz0# Vendor Homepage: http://necta.us/# Software Link: http://wifimouse.necta.us/#download# Version: 1.7.8.5# Tested on: Windows Enterprise Build 17763# Desk</description>
    <pubDate>2021-03-03</pubDate>
    <category>Exploits</category>
    <author>H4rk3nz0</author>
    <comments>exploit-db.com</comments>
</item>
<item>
    <title>FortiLogger 4.4.2.2 - Unauthenticated Arbitrary File Upload (Metasploit)</title>
    <link>http://www.vfocus.net/art/20210303/15093.html</link>
    <description>### This module requires Metasploit: https://metasploit.com/download# Current source: https://github.com/rapid7/metasploit-framework##class MetasploitModule Msf::Exploit::Remote Rank = NormalRanking include Msf::Exploit::EXE prepend Msf::Exploit::Re</description>
    <pubDate>2021-03-03</pubDate>
    <category>Exploits</category>
    <author>BerkanEr</author>
    <comments>b3rsec@protonmail.com</comments>
</item>
<item>
    <title>VMware vCenter 6.5 / 7.0 Remote Code Execution</title>
    <link>http://www.vfocus.net/art/20210226/15092.html</link>
    <description>import tarfile import os from io import BytesIO import requests proxies = { http: http://127.0.0.1:8080 , https: http://127.0.0.1:8080 , } def return_zip(): with tarfile.open(test.tar, 'w') as tar: payload = BytesIO() id_rsa_pub = 'ssh-rsa AAAAB3Nza</description>
    <pubDate>2021-02-26</pubDate>
    <category>Exploits</category>
    <author>calmness</author>
    <comments>https://blog.csdn.net/weixin_43650289</comments>
</item>
<item>
    <title>Remote Desktop Web Access - Authentication Timing Attack (Metasploit Module)</title>
    <link>http://www.vfocus.net/art/20210226/15091.html</link>
    <description>#!/usr/bin/env python3# -*- coding: utf-8 -*-# standard modulesfrom metasploit import module# extra modulesDEPENDENCIES_MISSING = Falsetry: import base64 import itertools import os import requestsexcept ImportError: DEPENDENCIES_MISSING = True# Meta</description>
    <pubDate>2021-02-26</pubDate>
    <category>Exploits</category>
    <author>Matthew</author>
    <comments>https://raxis.com/blog</comments>
</item>
<item>
    <title>ASUS Remote Link 1.1.2.13 - Remote Code Execution</title>
    <link>http://www.vfocus.net/art/20210226/15090.html</link>
    <description># Exploit: ASUS Remote Link 1.1.2.13 - Remote Code Execution# Date: 24-02-2021# Exploit Author: H4rk3nz0# Vendor Homepage: http://asus.com/# Software Link: http://remotelink.asus.com/# Version: 1.1.2.13# Tested on: Windows 10 Enterprise Build 17763#</description>
    <pubDate>2021-02-26</pubDate>
    <category>Exploits</category>
    <author>H4rk3nz0</author>
    <comments>www.exploit-db.com</comments>
</item>
<item>
    <title>VMware vCenter 6.5 / 7.0 Remote Code Execution Proof Of Concept</title>
    <link>http://www.vfocus.net/art/20210226/15089.html</link>
    <description>#-*- coding:utf-8 -*-banner = 888888ba dP 88 `8b 88 a88aaaa8P' .d8888b. d8888P .d8888b. dP dP 88 `8b. 88' `88 88 Y8ooooo. 88 88 88 .88 88. .88 88 88 88. .88 88888888P `88888P8 dP `88888P' `88888P' oooooooooooooooooooooooooooooooooooooooooooooooooooo</description>
    <pubDate>2021-02-26</pubDate>
    <category>Exploits</category>
    <author>NebulabdSec</author>
    <comments>github.com</comments>
</item>
<item>
    <title>Unified Remote 3.9.0.2463 - Remote Code Execution</title>
    <link>http://www.vfocus.net/art/20210224/15088.html</link>
    <description># Exploit Title: Unified Remote 3.9.0.2463 - Remote Code Execution# Author: H4rk3nz0# Vendor Homepage: https://www.unifiedremote.com/# Software Link: https://www.unifiedremote.com/download# Tested on: Windows 10, 10.0.19042 Build 19042#!/usr/bin/pyt</description>
    <pubDate>2021-02-24</pubDate>
    <category>Exploits</category>
    <author>H4rk3nz0</author>
    <comments>exploit-db.com</comments>
</item>
<item>
    <title>HFS (HTTP File Server) 2.3.x - Remote Command Execution</title>
    <link>http://www.vfocus.net/art/20210224/15087.html</link>
    <description># Exploit Title: HFS (HTTP File Server) 2.3.x - Remote Command Execution (3)# Google Dork: intext:httpfileserver 2.3# Date: 20/02/2021# Exploit Author: Pergyz# Vendor Homepage: http://www.rejetto.com/hfs/# Software Link: https://sourceforge.net/proj</description>
    <pubDate>2021-02-24</pubDate>
    <category>Exploits</category>
    <author>Pergyz</author>
    <comments>https://www.rejetto.com</comments>
</item>
<item>
    <title>Apache Flink JAR Upload Java Code Execution</title>
    <link>http://www.vfocus.net/art/20210224/15086.html</link>
    <description>### This module requires Metasploit: https://metasploit.com/download# Current source: https://github.com/rapid7/metasploit-framework##class MetasploitModule Msf::Exploit::Remote Rank = ExcellentRanking include Msf::Exploit::Remote::HttpClient prepen</description>
    <pubDate>2021-02-24</pubDate>
    <category>Exploits</category>
    <author>bcoles</author>
    <comments>metasploit.com</comments>
</item>
<item>
    <title>dataSIMS Avionics ARINC 664-1 - Local Buffer Overflow (PoC)</title>
    <link>http://www.vfocus.net/art/20210220/15085.html</link>
    <description># Exploit Title: dataSIMS Avionics ARINC 664-1 - Local Buffer Overflow (PoC)# Exploit Author: Kaan apar# Date: 2020-02-17# Vendor Homepage: https://www.ddc-web.com/# Software Link: https://www.ddc-web.com/en/connectivity/databus/milstd1553-1/softwar</description>
    <pubDate>2021-02-20</pubDate>
    <category>Exploits</category>
    <author>Ka&amp;#287;an&amp;Ccedil;apar</author>
    <comments>https://www.exploit-db.com/</comments>
</item>
<item>
    <title>Microsoft Internet Explorer 11 32-bit - Use-After-Free</title>
    <link>http://www.vfocus.net/art/20210218/15084.html</link>
    <description># Exploit Title: Microsoft Internet Explorer 11 32-bit - Use-After-Free# Date: 2021-02-05# Exploit Author: deadlock (Forrest Orr)# Vendor Homepage: https://www.microsoft.com/# Software Link: https://www.microsoft.com/en-gb/download/internet-explorer</description>
    <pubDate>2021-02-18</pubDate>
    <category>Exploits</category>
    <author>deadlock</author>
    <comments>https://labs.f-secure.com/blog</comments>
</item>
<item>
    <title>Erlang Cookie - Remote Code Execution</title>
    <link>http://www.vfocus.net/art/20210218/15083.html</link>
    <description>Erlang Cookie - Remote Code Execution</description>
    <pubDate>2021-02-18</pubDate>
    <category>Exploits</category>
    <author>1F98D</author>
    <comments>https://insinuator.net</comments>
</item>
<item>
    <title>Microsoft SQL Server Reporting Services 2016 - Remote Code Execution</title>
    <link>http://www.vfocus.net/art/20200918/15082.html</link>
    <description># Exploit Title: Microsoft SQL Server Reporting Services 2016 - Remote Code Execution# Google Dork: inurl:ReportViewer.aspx# Date: 2020-09-17# Exploit Author: West Shepherd# Vendor Homepage: https://www.microsoft.com# Version: Microsoft SQL Server 2</description>
    <pubDate>2020-09-18</pubDate>
    <category>Exploits</category>
    <author>SHEPHERD</author>
    <comments>https://www.mdsec.co.uk/2020/02/cve-2020-0618-rce-</comments>
</item>
<item>
    <title>CompleteFTP Professional 12.1.3 - Remote Code Execution</title>
    <link>http://www.vfocus.net/art/20200805/15081.html</link>
    <description># Exploit Title: CompleteFTP Professional 12.1.3 - Remote Code Execution# Date: 2020-03-11# Exploit Author: 1F98D# Original Author: Rhino Security Labs# Vendor Homepage: https://enterprisedt.com/products/completeftp/# Version: CompleteFTP Profession</description>
    <pubDate>2020-08-05</pubDate>
    <category>Exploits</category>
    <author>1F98D</author>
    <comments>https://rhinosecuritylabs.com</comments>
</item>
<item>
    <title>vCloud Director 9.7.0.15498291 - Remote Code Execution</title>
    <link>http://www.vfocus.net/art/20200706/15080.html</link>
    <description>#!/usr/bin/python# Exploit Title: vCloud Director - Remote Code Execution# Exploit Author: Tomas Melicher# Technical Details: https://citadelo.com/en/blog/full-infrastructure-takeover-of-vmware-cloud-director-CVE-2020-3956/# Date: 2020-05-24# Vendor</description>
    <pubDate>2020-07-06</pubDate>
    <category>Exploits</category>
    <author>AARONSVK</author>
    <comments>https://citadelo.com/en/blog/full-infrastructure-t</comments>
</item>
<item>
    <title>Microsoft Windows - 'SMBGhost' Remote Code Execution</title>
    <link>http://www.vfocus.net/art/20200610/15079.html</link>
    <description>#!/usr/bin/env python'''# EDB Note ~ Download: https://github.com/offensive-security/exploitdb-bin-sploits/raw/master/bin-sploits/48537.zip# SMBGhost_RCE_PoCRCE PoC for CVE-2020-0796 SMBGhostFor demonstration purposes only! Only use this a reference</description>
    <pubDate>2020-06-10</pubDate>
    <category>Exploits</category>
    <author>chompie1337</author>
    <comments>https://ricercasecurity.blogspot.com</comments>
</item>
<item>
    <title>vCloud Director 9.7.0.15498291 - Remote Code Execution</title>
    <link>http://www.vfocus.net/art/20200610/15078.html</link>
    <description>#!/usr/bin/python# Exploit Title: vCloud Director - Remote Code Execution# Exploit Author: Tomas Melicher# Technical Details: https://citadelo.com/en/blog/full-infrastructure-takeover-of-vmware-cloud-director-CVE-2020-3956/# Date: 2020-05-24# Vendor</description>
    <pubDate>2020-06-10</pubDate>
    <category>Exploits</category>
    <author>aaronsvk</author>
    <comments>https://citadelo.com/en/blog/full-infrastructure-t</comments>
</item>
<item>
    <title>Apache James Server 2.3.2 - Insecure User Creation Arbitrary File Write (Metaspl</title>
    <link>http://www.vfocus.net/art/20200225/15077.html</link>
    <description>### This module requires Metasploit: https://metasploit.com/download# Current source: https://github.com/rapid7/metasploit-framework##class MetasploitModule Msf::Exploit::Remote Rank = NormalRanking include Msf::Exploit::Remote::Tcp include Msf::Exp</description>
    <pubDate>2020-02-25</pubDate>
    <category>Exploits</category>
    <author>Metasploit</author>
    <comments>metasploit.com</comments>
</item>
<item>
    <title>NEOWISE CARBONFTP 1.4 - Weak Password Encryption</title>
    <link>http://www.vfocus.net/art/20200122/15076.html</link>
    <description># Exploit Title: NEOWISE CARBONFTP 1.4 - Weak Password Encryption# discovery Date: 2019-01-24# published : 2020-01-20# Exploit Author: hyp3rlinx# Vendor Homepage: https://www.neowise.com# Software Link: https://www.neowise.com/freeware/# Version: 1.</description>
    <pubDate>2020-01-22</pubDate>
    <category>Exploits</category>
    <author>hyp3rlinx</author>
    <comments>hyp3rlinx.altervista.org</comments>
</item>
<item>
    <title>Centreon 19.04 - Authenticated Remote Code Execution (Metasploit)</title>
    <link>http://www.vfocus.net/art/20200122/15075.html</link>
    <description>##################################################################### This module requires Metasploit: https://metasploit.com/download ## Current source: https://github.com/rapid7/metasploit-framework ################################################</description>
    <pubDate>2020-01-22</pubDate>
    <category>Exploits</category>
    <author>TheCyberGeek</author>
    <comments>metasploit.com</comments>
</item>
<item>
    <title>Plantronics Hub 3.13.2 - SpokesUpdateService Privilege Escalation (Metasploit)</title>
    <link>http://www.vfocus.net/art/20200120/15074.html</link>
    <description>### This module requires Metasploit: https://metasploit.com/download# Current source: https://github.com/rapid7/metasploit-framework##class MetasploitModule Msf::Exploit::Local Rank = ExcellentRanking include Exploit::EXE include Post::File include</description>
    <pubDate>2020-01-20</pubDate>
    <category>Exploits</category>
    <author>Metasploit</author>
    <comments>metasploit.com</comments>
</item>
<item>
    <title>Vtiger CRM 7.1.0 Remote Code Execution</title>
    <link>http://www.vfocus.net/art/20190103/15073.html</link>
    <description># Exploit Title: Vtiger CRM 7.1.0 - Remote Code Execution# Date: 2018-12-27# Exploit Author: Azkan Mustafa AkkuA (AkkuS)# Contact: https://pentest.com.tr# Vendor Homepage: https://www.vtiger.com# Software Link: https://sourceforge.net/projects/vtige</description>
    <pubDate>2019-01-03</pubDate>
    <category>Exploits</category>
    <author>Akkus</author>
    <comments>https://pentest.com.tr</comments>
</item>
<item>
    <title>Ayukov NFTP FTP Client 2.0 Buffer Overflow</title>
    <link>http://www.vfocus.net/art/20190103/15072.html</link>
    <description># Exploit Title: Ayukov NFTP FTP Client 2.0 - Buffer Overflow# Date: 2018-12-29# Exploit Author: Uday Mittal# Vendor Homepage: http://www.ayukov.com/nftp/# Software Link: ftp://ftp.ayukov.com/pub/src/nftp-1.72.zip # Version : below 2.0# Tested on: M</description>
    <pubDate>2019-01-03</pubDate>
    <category>Exploits</category>
    <author>Mittal</author>
    <comments>vfocus.net</comments>
</item>
<item>
    <title>EZ CD Audio Converter 8.0.7 Denial Of Service</title>
    <link>http://www.vfocus.net/art/20190103/15071.html</link>
    <description># Exploit Title: EZ CD Audio Converter 8.0.7 - Denial of Service (PoC)# Date: 2018-12-30# Exploit Author: Achilles# Vendor Homepage: https://www.poikosoft.com/# Software Link : https://download.poikosoft.com/ez_cd_audio_converter_setup_x64.exe# Expl</description>
    <pubDate>2019-01-03</pubDate>
    <category>Exploits</category>
    <author>Achilles</author>
    <comments>vfocus.net</comments>
</item>
<item>
    <title>NetworkSleuth 3.0.0.0 Denial Of Service</title>
    <link>http://www.vfocus.net/art/20190103/15070.html</link>
    <description># Exploit Title: NetworkSleuth 3.0.0.0 - 'Key' Denial of Service (PoC)# Discovery by: Luis Martinez# Discovery Date: 2018-12-27# Vendor Homepage: www.nsauditor.com# Software Link : http://www.nsauditor.com/downloads/networksleuth_setup.exe# Tested V</description>
    <pubDate>2019-01-03</pubDate>
    <category>Exploits</category>
    <author>Martinez</author>
    <comments>luismtzsilva at gmail.com</comments>
</item>
<item>
    <title>NBMonitor Network Bandwidth Monitor 1.6.5.0 Denial Of Service</title>
    <link>http://www.vfocus.net/art/20190103/15069.html</link>
    <description># Exploit Title: NBMonitor Network Bandwidth Monitor 1.6.5.0 - 'Name' Denial of Service (PoC)# Author: Luis Martinez# Date: 2018-12-27# Vendor Homepage: www.nsauditor.com# Software Link : http://www.nbmonitor.com/downloads/nbmonitor_setup.exe# Teste</description>
    <pubDate>2019-01-03</pubDate>
    <category>Exploits</category>
    <author>Martinez</author>
    <comments>luismtzsilva at gmail.com</comments>
</item>
<item>
    <title>Hashicorp Consul Rexec Remote Command Execution</title>
    <link>http://www.vfocus.net/art/20181229/15068.html</link>
    <description>### This module requires Metasploit: https://metasploit.com/download# Current source: https://github.com/rapid7/metasploit-framework##class MetasploitModule Msf::Exploit::Remote Rank = ExcellentRanking include Msf::Exploit::Remote::HttpClient includ</description>
    <pubDate>2018-12-29</pubDate>
    <category>Exploits</category>
    <author>Kaiser</author>
    <comments>metasploit.com</comments>
</item>
<item>
    <title>Hashicorp Consul Services API Remote Command Execution</title>
    <link>http://www.vfocus.net/art/20181229/15067.html</link>
    <description>### This module requires Metasploit: https://metasploit.com/download# Current source: https://github.com/rapid7/metasploit-framework##class MetasploitModule Msf::Exploit::Remote Rank = ExcellentRanking include Msf::Exploit::Remote::HttpClient includ</description>
    <pubDate>2018-12-29</pubDate>
    <category>Exploits</category>
    <author>Kaiser</author>
    <comments>metasploit.com</comments>
</item>
<item>
    <title>WebKit JSC AbstractValue::set Use-After-Free</title>
    <link>http://www.vfocus.net/art/20181229/15066.html</link>
    <description>WebKit: JSC: A bug in AbstractValue::set CVE-2018-4443void AbstractValue::set(Graph graph, RegisteredStructure structure){ RELEASE_ASSERT(structure); m_structure = structure; m_arrayModes = asArrayModes(structure-indexingType()); m_type = speculatio</description>
    <pubDate>2018-12-29</pubDate>
    <category>Exploits</category>
    <author>lokihardt</author>
    <comments>Google Security Research</comments>
</item>
<item>
    <title>WebKit JSC JSArray::shiftCountWithArrayStorage Out-Of-Band Read / Write</title>
    <link>http://www.vfocus.net/art/20181229/15065.html</link>
    <description>WebKit: JSC: A bug in JSArray::shiftCountWithArrayStorage CVE-2018-4441bool JSArray::shiftCountWithArrayStorage(VM vm, unsigned startIndex, unsigned count, ArrayStorage* storage){ unsigned oldLength = storage-length(); RELEASE_ASSERT(count = oldLeng</description>
    <pubDate>2018-12-29</pubDate>
    <category>Exploits</category>
    <author>lokihardt</author>
    <comments>Google Security Research</comments>
</item>
<item>
    <title>史上最秀黑客：抢银行，ATM狂吐10亿，全换比特币</title>
    <link>http://www.vfocus.net/art/20181228/15064.html</link>
    <description>（原标题：史上最秀黑客：抢银行，让ATM狂吐10亿欧，全部换成比特币） 他们的故事全球几乎无人知晓，但他们的名字却是世界所有银行共同铭记的噩梦。 Carbanak，这个名称无法直译成中文的黑客组织，在5年时间内，横扫全球银行，攫取至少10亿欧元。他们创造的木马病毒，</description>
    <pubDate>2018-12-28</pubDate>
    <category>黑客传奇</category>
    <author>31QU</author>
    <comments>31QU</comments>
</item>
<item>
    <title>Terminal Services Manager 3.1 Local Buffer Overflow</title>
    <link>http://www.vfocus.net/art/20181228/15063.html</link>
    <description># Exploit Title: Terminal Services Manager 3.1 - Buffer Overflow (SEH)# Date: 2018-12-25# Exploit Author: bzyo# Twitter: @bzyo_# Vulnerable Software: Terminal Services Manager 3.1# Vendor Homepage: https://lizardsystems.com# Version: 3.1 # Software</description>
    <pubDate>2018-12-28</pubDate>
    <category>Exploits</category>
    <author>bzyo</author>
    <comments>@bzyo_</comments>
</item>

</channel>
</rss>
