[Canvas] D2 Exploitation Pack 1.79, July 31 2014

DSquare Security sales at d2sec.com
Tue Jul 29 17:05:36 EDT 2014

D2 Exploitation Pack 1.79 has been released with 3 new exploits and 
one new tool.

This month we provide you two remote code execution exploits for 
HP Data Protector and ManageEngine Desktop Central.

Also you can find a new exploit for pwnrouter and a tool to mount a 
FUSE-based filesystem.

D2 Exploitation Pack is updated each month with new exploits and tools.
For customized exploits or tools please contact us at info at d2sec.com.

For sales inquiries and orders, please contact sales at d2sec.com

DSquare Security, LLC


version 1.79 July 31, 2014

canvas_modules - Added:
- d2sec_desktopcentral: ManageEngine Desktop Central 8.0.0 Arbitrary File Upload Remote Code Execution Vulnerability (Web Exploit)
- d2sec_hpdp2: HP Data Protector 8.10 Remote Command Execution Vulnerability (Exploit Windows)
- d2sec_pwnrouter:
  - D-Link UPnP SOAP OS Remote Command Execution

d2sec_modules - Added :
- d2sec_httpfs : FUSE-based filesystem that uses HTTP messages to mount a remote directory on a local machine (Tools Linux)

More information about the Canvas mailing list