Home
Fatih's Blog
Cancel

Group Office CRM | SSRF

Software: https://sourceforge.net/projects/group-office/ Version: 6.4.196 Vulnerability: SSRF CVE: CVE-2021-28060 Description of the product: Group Office is an open source groupware applic...

Sentrifugo 3.2 | SQLi [employeeNumId] parameter | CVE-2020-26805

Software: https://sourceforge.net/projects/sentrifugo/ Version: 3.2 Vulnerability: Unrestricted File Upload CVE: CVE-2020-26805 Sentrifugo is a FREE and powerful Human Resource Management Sy...

Sentrifugo 3.2 | RCE [Authenticated] (assets) | CVE-2020-26803

Software: https://sourceforge.net/projects/sentrifugo/ Version: 3.2 Vulnerability: Unrestricted File Upload CVE: CVE-2020-26803 Exploit-DB: https://www.exploit-db.com/exploits/48997 Sentrif...

Sentrifugo 3.2 | RCE [Authenticated] (announcements) | CVE-2020-26804

Software: https://sourceforge.net/projects/sentrifugo/ Version: 3.2 Vulnerability: Unrestricted File Upload CVE: CVE-2020-26804 Exploit-DB: https://www.exploit-db.com/exploits/48998 Sentrif...

CMSUno 1.6.2 | RCE [Authenticated] (password.php) | CVE-2020-25557

Vendor: https://github.com/boiteasite/cmsuno/ Version: 1.6.2Vulnerability: Code Injection CVE: CVE-2020-25557 Exploit-DB: https://www.exploit-db.com/exploits/49031 Analysis If you read my othe...

CMSUno 1.6.2 | RCE [Authenticated] (config.php) | CVE-2020-25538

Vendor:  https://github.com/boiteasite/cmsuno/ Version: 1.6.2 Vulnerability: Code Injection CVE: CVE-2020-25538 Exploit-DB: https://www.exploit-db.com/exploits/48996 Analysis When I read the ...

The First CrackMe of The Series - CrackMe1

1 - Starting The CrackMe Series - Why? 2 - The First CrackMe of The Series - CrackMe1 –> You are here Filename: CrackMe1.exe Architecture: x64 Source: Github MD5: ACAB0D5D36D2780C173...

Starting The CrackMe Series - Why?

1 - Starting The CrackMe Series - Why? –> You are here 2- The First CrackMe of The Series - CrackMe1 What is the purpose of this series? I think the best way to learn reverse engineering is...

GOG Galaxy Desktop App | Local Privilege Escalation | CVE-2020-11827

Vendor: https://www.gog.com/galaxy Versions Affected: Prior to 1.2.67 Vulnerability: Local Privilege Escalation Discoverer: Fatih Çelik CVE: CVE-2020-11827 CVSS 3.x Base Score: 7.8 HIGH Descr...

Virtualbox Local DOS Vulnerability | CVE-2020-2909

Vendor: https://www.virtualbox.org/ Supported Versions Affected: Prior to 5.2.40, prior to 6.0.20, prior to 6.1.6 Vulnerability: Local Denial of Service Discoverer: Fatih Çelik CVE: 2020-2909 ...