Free Hosting Manager V2.0.2 is vulnerable to SQL injection on multiple files such as reset.php, tickets.php, viewaccount.php, and home.php. In reset.php, the code parameter is vulnerable to SQL injection. In tickets.php, the id parameter is vulnerable to SQL injection. In viewaccount.php, the id parameter is vulnerable to SQL injection. In home.php, the clientuser cookie is vulnerable to SQL injection.
OpenCart versions 1.4.7 to 1.5.5.1 are vulnerable to directory traversal attacks due to insufficient sanitization of user-supplied data. An attacker can exploit this vulnerability to access files and directories outside the intended directory.
This module exploits a stack buffer overflow in Cool PDF Reader prior to version 3.0.2.256. The vulnerability is triggered when opening a malformed PDF file that contains a specially crafted image stream. This module has been tested successfully on Cool PDF 3.0.2.256 over Windows XP SP3 and Windows 7 SP1.
This module exploits a remote command execution vulnerability in Apache Struts versions < 2.3.1.2. This issue is caused because the ParametersInterceptor allows for the use of parentheses which in turn allows it to interpret parameter values as OGNL expressions during certain exception handling for mismatched data types of properties which allows remote attackers to execute arbitrary Java code via a crafted parameter.
The Stradus CMS is vulnerable to File Upload, XSS and SQL Injection. The File Upload vulnerability can be exploited by sending a malicious file to the upload.php page in the moduls/photo_album/ and moduls/simply_image/ directories. The XSS and SQL Injection vulnerabilities can be exploited by sending malicious input to the log_view.php page in the adminfiles/ directory and the new.php page in the moduls/photo_album/ directory.
A local privilege escalation vulnerability has been identified in Photodex ProShow Producer v5.0.3310. Insecure file permissions on the executable file 'scsiaccess.exe', which is used by the application service 'ScsiAccess' under the SYSTEM account, may allow a less privileged user to gain access to SYSTEM privileges. A local attacker or compromised process is able to replace the original application binary with a malicious application which will be executed by a victim user or after a ScsiAccess service restart.
A file upload vulnerability exists in Slash CMS due to improper validation of uploaded files. An attacker can upload a malicious file to the server and execute arbitrary code. Additionally, an XSS/SQL injection vulnerability exists due to improper sanitization of user-supplied input. An attacker can inject malicious code into the application and execute it.
Flatnux CMS is vulnerable to Local File Inclusion. An attacker can exploit this vulnerability by sending a crafted HTTP request with a malicious file path in the 'theme' parameter. This can allow an attacker to read sensitive files from the server.
AContent 1.3 is vulnerable to Local File Inclusion. An attacker can send a malicious POST request to the tool_provider_outcome.php script with a crafted URL parameter to include a local file. This can be used to read sensitive information such as the database credentials.
The TP-Link WR740N Wireless N Router network device is exposed to a remote denial of service vulnerability when processing a HTTP request. This issue occurs when the web server (httpd) fails to handle a HTTP GET request over a given default TCP port 80. Sending a sequence of three dots (...) to the router will crash its httpd service denying the legitimate users access to the admin control panel management interface. To bring back the http srv and the admin UI, a user must physically reboot the router.