[FD] [KIS-2024-03] Invision Community <= 4.7.16 (toolbar.php) Remote Code Execution Vulnerability

2024-04-11 Thread Egidio Romano
-- Invision Community <= 4.7.16 (toolbar.php) Remote Code Execution Vulnerability -- [-] Software Link: https://invisioncommunity.com [-] Affe

[FD] [KIS-2024-02] Invision Community <= 4.7.15 (store.php) SQL Injection Vulnerability

2024-04-11 Thread Egidio Romano
Invision Community <= 4.7.15 (store.php) SQL Injection Vulnerability [-] Software Link: https://invisioncommunity.com [-] Affected Versions: All versions f

[FD] Multiple Issues in concretecmsv9.2.7

2024-04-11 Thread Andrey Stoykov
# Exploit Title: Multiple Web Flaws in concretecmsv9.2.7 # Date: 4/2024 # Exploit Author: Andrey Stoykov # Version: 9.2.7 # Tested on: Ubuntu 22.04 # Blog: http://msecureltd.blogspot.com Verbose Error Message - Stack Trace: 1. Directly browse to edit profile page 2. Error should come up with ver