Archive for September, 2015
Posted by deepcore under Security (No Respond)
[webapps] – Western Digital My Cloud 04.01.03-421, 04.01.04-422 – Command Injection
Posted by deepcore under Security (No Respond)
[remote] – ManageEngine EventLog Analyzer Remote Code Execution
Posted by deepcore under Security (No Respond)
[local] – Ubuntu Apport – Local Privilege Escalation
Posted by deepcore under Security (No Respond)
[webapps] – Kaseya Virtual System Administrator – Multiple Vulnerabilities
Posted by deepcore under Security (No Respond)
IconLover v5.4.5 – Stack Buffer Overflow Vulnerability
Posted by deepcore under exploit (No Respond)
An independent vulnerability laboratory researcher discovered a buffer overflow vulnerability in the IconLover v5.4.2 and v5.4.5 software.
Photos in Wifi v1.0.1 iOS – Arbitrary File Upload Vulnerability
Posted by deepcore under exploit (No Respond)
The Vulnerability Laboratory Core Research Team discovered an arbitrary file upload web vulnerability in the Photos in Wifi v1.0.1 iOS mobile web-application.
Flowdock API Bug Bounty #4 – Persistent RSS Vulnerability
Posted by deepcore under exploit (No Respond)
The Vulnerability Laboratory Research Team discovered an application-side input validation exception-handling web vulnerability in the official Flowdock online service web-application.
WinRAR SFX v5.21 – Remote Code Execution Vulnerability
Posted by deepcore under exploit (No Respond)
An independent vulnerability laboratory researcher discovered a code execution vulnerability in the official WInRAR SFX v5.21 software.
[remote] – PCMan FTP Server 2.0.7 – Directory Traversal Vulnerability
Posted by deepcore under Security (No Respond)