PhreeBooks 5.2.3 Remote Code Execution
Authored by Kr0ff
PhreeBooks ERP version 5.2.3 remote code execution exploit. Original discovery of this vulnerability is attributed to Abdullah Celebi in April of 2019.
Change Mirror Download
# Exploit Title: PhreeBooks...
SEO Panel 4.6.0 Remote Code Execution
Authored by Kr0ff
SEO Panel version 4.6.0 remote code execution exploit. Original discovery of code execution in this version is attributed to Daniel Monzon and Kiko Andreu in October of...
Sudo 1.8.31p2 / 1.9.5p1 Buffer Overflow
Authored by Blasty, Spencer McIntyre, Qualys Security Advisory, bwatters-r7, Alexander Krog | Site metasploit.com
A heap based buffer overflow exists in the sudo command line utility that can be exploited...
Apple Safari Remote Code Execution
Authored by Google Security Research, mjurczyk
Apple Safari is susceptible to a remote code execution vulnerability via an undefined othersubr in Type 1 fonts handled by libType1Scaler.dylib on macOS and...
XNU Kernel Turnstiles Type Confusion
Authored by Google Security Research, ianbeer
The XNU kernel suffers from a type confusion vulnerability in turnstiles.
advisories | CVE-2020-27932
XNU Kernel Mach Message Trailers Memory Disclosure
Authored by Google Security Research, ianbeer
The XNU kernel suffers from a memory disclosure vulnerability in mach message trailers.
advisories | CVE-2020-27950
Apple CoreText libType1Scaler.dylib Memory Disclosure
Authored by Google Security Research, Tim Willis
Apple CoreText libType1Scaler.dylib suffers from a memory disclosure vulnerability via an uninitialized transient array.
advisories | CVE-2020-27946
Apple CoreText libType1Scaler.dylib Buffer Overflow
Authored by Google Security Research, Tim Willis
Apple CoreText libType1Scaler.dylib suffers from a heap buffer overflow vulnerability in the Counter Control Hints.
advisories | CVE-2020-27943
Apple CoreText libFontParser.dylib Stack Corruption
Authored by Google Security Research, Tim Willis
Apple CoreText libFontParser.dylib suffers from a stack corruption vulnerability in the handling of /BlendDesignPositions Type 1 objects.
advisories | CVE-2020-0938, CVE-2020-29624
Apple CoreText libType1Scaler.dylib Out-Of-Bounds Write / Integer Overflow
Authored by Google Security Research, Tim Willis
Apple CoreText libType1Scaler.dylib suffers from a heap out-of-bounds-write due to an integer overflow vulnerability in STOREWV othersubr.
advisories | CVE-2020-27944





