Mcard Mobile Card Selling Platform version 1 suffers from a cross site request forgery vulnerability.
c4594b600e38aba9e28a92cd471584af396ad3e6eb125cc811f17ee565ddd31f
101 bytes small Linux/x86 reverse TCP shell shellcode that connects to 10.0.7.17:4444.
22af9d7bc500d183faef5ccb630af4273d337569c7d2c4da7a0c15724d754239
PES Pro version 1.9.7 allows for addition of administrative users due to an authentication bypass vulnerability.
7714f363e55452a88a32d7b1f9c2cbcbfe6d3b1e222218512c0e97209041de0c
113 bytes small Linux/x86 IPv6 TCP bindshell on port 4444 shellcode.
47d6c0aa04034b7b7b7f8d99b2ba6240275cd794978fea5a06b6ddc8d70add0e
68 bytes small Linux/x86 reverse TCP shell shellcode.
b1c5d6084e0faaf2dec77aa6c0a2ddc7611a30b5d1d603a74dae5acf704506b7