Ubuntu Security Notice 3945-1 - It was discovered that Ruby incorrectly handled certain RubyGems. An attacker could possibly use this issue to execute arbitrary commands. It was discovered that Ruby incorrectly handled certain inputs. An attacker could possibly use this issue to execute arbitrary code.
e31c0b3ee67169a56b90d68e0524ec93
Ubuntu Security Notice 3946-1 - It was discovered that rssh incorrectly handled certain command-line arguments and environment variables. An authenticated user could bypass rssh's command restrictions, allowing an attacker to run arbitrary commands.
4f673b4e30b7456bf9f5c03e61b35cf6
DirectAdmin versions 1.561 and below suffer from multiple cross site scripting vulnerabilities.
55fb7c5c8f2bb42df534a00528ddba62
This Metasploit module allows the user to run commands on the server with the teacher user privilege. The 'Upload files' section in the 'File Manager' field contains an arbitrary file upload vulnerability.
720c50c8ee708b2b3df793d3b1d82de3
CyberArk EPM version 10.2.1.603 suffers from a security restrictions bypass vulnerability.
4825d0713d3a0b2f7fdbf74b91102824
Various vulnerabilities have been found in Nagios XI version 5.5.10, which allow a remote attacker able to trick an authenticated victim (with "autodiscovery job" creation privileges) to visit a malicious URL to obtain a remote root shell via a reflected cross site scripting, an authenticated remote code Execution and a local privilege escalation.
a57f6817171de50e793d88c586dbe05c
149 bytes small Linux/x86 add user to passwd file shellcode.
44caa95cda5b50ce19fab3550fbc0038
OrangeScrum Project Management Software version 1.6.1 suffers from a database disclosure vulnerability.
0dae945ee025a5d89462c96d4fb3f408
Opus Online Placement University System version 4.2.0 suffers from a database disclosure vulnerability.
075512ec53eedb5de2a0b47d1fbcfd45
JobSkee Open Source JobBoard version 1.1.3 suffers from a database disclosure vulnerability.
26692fee2ddf5b350ebfb978f944382a
Gibbonedu The Flexible School Platform version 17.0.00 suffers from a database disclosure vulnerability.
0e50660436253b0246d7ef620868fbb6