[Canvas] Agora pack 2.72 is out

Yuriy Gurkin audit at gleg.net
Mon Dec 25 14:02:38 UTC 2017


Hi, List,

2.72 ver. of Agora contains 5 modules. List:

- Baidu Pan Cloud Desktop NetDisk (Baidu Cloud Network Drive) - Denial Of
Service [0-Day]
- Kaltura <= 13.1.0 - Remote Code Execution CVE-2017-14143
- Joomla! 3.7.0 Blind SQL Injection vulnerability in "com_fields" parameter
CVE-2017-8917
- WordPress Polls 1.2.4 – Authenticated SQL Injection
- WordPress JTRT Responsive Tables <= 4.1 – Authenticated SQL Injection

Happy pentesting,
Gleg`s Security team <http://gleg.net/>
Follow us on Twitter: GlegExploitPack <https://twitter.com/GlegExploitPack>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.immunityinc.com/pipermail/canvas/attachments/20171225/2ce4fb36/attachment.html>


More information about the Canvas mailing list