ICNA

Iranian Cyber News Agency

Vulnerability

WordPress Theme Vuln Find By Iran Cyber Security Group

Hacker injector of Iran Cyber Security Group have made discover of bug in theme of WordPress: WordPress theme parallelus-salutation Arbitrary File Download Vulnerability Details is here Other vulnerability discover by Iran Cyber Security Group is here

Iran Cyber Security Group Discover CMS SQLi Vuln

Hackers of team Iran Cyber Security Group made discover of CMS SQL Injection vulnerability: Adox Solutions CMS Details: https://cxsecurity.com/issue/WLB-2015110220 Discover by: 0x3a 0x3a says thanks to: root3r | MOHAMAD-NOFOZI | KamraN HellisH | JOK3R | Pi.Hack | CRY$I$ BL4CK | WH!T3…

Digital Boys UnderGround Team Discover CMS Vuln

Hackers from Digital Boys UnderGround Team have discover Hamayeshnegar.com CMS vulnerability is used by many Iran University include: Mashhad University of Medical Sciences –www.cong-ebc2.mums.ac.ir– Vulnerability is discover by BadBoy17 [email protected] Link to detail is here: http://iedb.ir/exploits-4183.html

GuardIran Exploit Joomla.com

DeMoN from GuardIran Security Team have found vulnerabilities in Joomla.com The vulnerabilities relate to uploading files Joomla is a free and open-source content management system -CMS- for publishing web content. It is built on a model–view–controller web application framework that can…

GuardIran Security Team Find CMS XSS Vulns

Hackers from GuardIran Security Team have discover XSS vulnerabilities in CMS: Bisnis7 CMS StudioWeb CMS Both vulnerabilities is discover by DeMoN Thanks is go to: C0d3!Nj3ct!0N | REX | abarestan | GrYpHoN | BLACKH4T   Details of Bisnis 7 CMS…

Ashiyane DST Post More Vulnerabilities

The Ashiyane DST have discover more vulnerabilities in many platforms Ehsan Hosseini expand on his work on hoosk CMS CSRF with stored XSS vulnerability Hoosk is a lightweight, user-focused Content Management System -CMS- which can be used to create stylish responsive…

GaurdIran Security Team Find Moodle and WordPress Vulnerabilities

GaurdIran Security Team have found Cross Site Scripting -XSS- vulnerabities in global educational software tool Moodle they have also found wordpress comment upload vulnerability Discover by DeMoN thank C0d3!Nj3ct!0N REX abarestan GrYpHoN BLACKH4T visit guardiran here

Ashiyane Report Hoosk CMS CSRF Vuln

Hacker Ehasn Hosseini [email protected] of Ashiyane Digital Security Team have discover CSRF vulnerability: Hoosk CMS CSRF Add Admin Vulnerability Hoosk is a lightweight Content Management System -CMS- which is used to create easy responsive website Hoosk CMS suffer from cross site…

prot3ct0r Discover Multiple Browser Remote Code Execution Vulns

Iranian pentester prot3ct0r -Ehsan Noreddini- have discover browser remote code execution vulnerability: The World Browser Avant Browser IE Engine Microsoft Compiled HTML Help Remote Code Execution -RCE- is attacker ability to execute commands on target machines or processes Is used…

Iranian Pentester Discover HTML Compiler Vuln

Iranian Pentester Ehsan Noreddini is discover remote code vulnerability in HTML Compiler HTML Compiler program allow you to convert all HTML application -use CSS JavaScript Images- into standalone Windows applications Files is never be extracted to users computer Executable applications have…