T27-2020 Notification regarding BIOVIA Foundation 2019 SP2 Hot Fix 3
T21-2020 Creating a Domain Index on BIOVIA Databases for Direct 2016, 2017 R2, 2018, or Direct 2020
T22-2020 Creating a Domain Index on BIOVIA ACD Data Mart for Direct 2018 or Direct 2020
T30-2020 Notification regarding BIOVIA Workbook 2019 SP1 HF3
T31-2020 Notification regarding BIOVIA Workbook 2019 HF5 Interim File Release 1
T32-2020 Notification regarding BIOVIA Workbook 2019 SP1 HF3 Interim File Release 1
Kaseya uploadImage Arbitrary File Upload
This Metasploit module exploits an arbitrary file upload vulnerability found in Kaseya versions below 6.3.0.2. A malicious user can upload an ASP file to an arbitrary directory without previous authentication, leading to arbitrary code execution with IUSR privileges.
Numara / BMC Track-It! FileStorageService Arbitrary File Upload
This Metasploit module exploits an arbitrary file upload vulnerability in Numara / BMC Track-It! v8 to v11.X. The application exposes the FileStorageService .NET remoting service on port 9010 (9004 for version 8) which accepts unauthenticated uploads. This can be abused by a malicious user to upload a ASP or ASPX file to the web root leading to arbitrary code execution as NETWORK SERVICE or SYSTEM. This Metasploit module has been tested successfully on versions 11.3.0.355, 10.0.51.135, 10.0.50.107, 10.0.0.143, 9.0.30.248 and 8.0.2.51.
Kaseya VSA uploader.aspx Arbitrary File Upload
This Metasploit module exploits an arbitrary file upload vulnerability found in Kaseya VSA versions between 7 and 9.1. A malicious unauthenticated user can upload an ASP file to an arbitrary directory leading to arbitrary code execution with IUSR privileges. This Metasploit module has been tested with Kaseya v7.0.0.17, v8.0.0.10 and v9.0.0.3.
Mozilla Just Doubled Its Payouts As It Tries To Attract Software Vulnerability Hunters
School ERP Pro 1.0 Arbitrary File Read
GitLab 12.9.0 Arbitrary File Read
i-doit Open Source CMDB 1.14.1 Arbitrary File Deletion
i-doit Open Source CMDB version 1.14.1 suffers from an arbitrary file deletion vulnerability.
MPC Sharj 3.11.1 Arbitrary File Download
webTareas 2.0.p8 Arbitrary File Deletion
Wapiti Web Application Vulnerability Scanner 3.0.2
Wapiti is a web application vulnerability scanner. It will scan the web pages of a deployed web application and will fuzz the URL parameters and forms to find common web vulnerabilities.
Bing.com Hostname / IP Enumerator 1.0
This tool enumerates hostnames from Bing.com for an IP address. Bing.com is Microsoft's search engine which has an IP: search parameter. Written in Bash for Linux. Requires wget.
Wapiti Web Application Vulnerability Scanner 3.0.3
Wapiti is a web application vulnerability scanner. It will scan the web pages of a deployed web application and will fuzz the URL parameters and forms to find common web vulnerabilities.