[Canvas] Gleg updates - "Corona_struggle" releases

audit at gleg.net audit at gleg.net
Wed Apr 29 18:56:07 UTC 2020


Hi list, new updates available for download:

1.54 DefPack :
  - SecuSTATION SC-831 HD Camera - Remote Configuration Disclosure
  - D-Link DIR-859 Unauthenticated Information Disclosure - CVE-2019-20213
  - DBPower C300 HD Camera Remote Configuration Disclosure
  - Belkin N600DB Wireless Router wifi password disclosure

ZDA  1.23 new 0Days:
- IntegraXor 8.010010 Stable SCADA Remote Denial of Service [0Day]
  - Mozilla WebThings 0.10.0 Remote Code Execution [0Day]

SCADA  2.01:
  - Inductive Automation Ignition 8.0.7 - Arbitrary File Upload. [1Day]
  - Mozilla WebThings 0.10.0 Arbitrary File Delete. [1Day]

Agora 3.00 ver:
  - SOPlanning 1.45 SQL injection. public
- ag_Nostromo_Remote_Code_Execution . CVE-2019-16278
- D-Link DIR-859 UnAuthenticated Remote Command Execution. CVE-2019-20215
-  AMSS++ v 4.31 - 'id' SQL Injection. public


Good health and happy pentesting,
-Gleg's research team



More information about the Canvas mailing list