Subscribe via feed.
Archive for July, 2017

LibTIFF 4.0.8 tif_jbig.c Denial Of Service

Posted by deepcore under exploit (No Respond)

LibTIFF versions 4.0.8 and below suffer from a denial of service vulnerability in tif_jbig.c.

LibTIFF 4.0.7 _TIFFVGetField (tiffsplit) Out-Of-Bounds Read

Posted by deepcore under exploit (No Respond)

LibTIFF version 4.0.7 suffers from a _TIFFVGetField (tiffsplit) out-of-bounds read vulnerability.

Barracuda WAF V360 Firmware 8.0.1.014 Early Boot Root Shell

Posted by deepcore under exploit (No Respond)

Firmware reversing of the Barracuda Web Application Firewall uncovered debug features that should have been removed on the production images. Appending a debugging statement onto a grub configuration line leads to an early boot root shell. Firmware version 8.0.1.014 is affected.

Barracuda WAF V360 Firmware 8.0.1.014 Credential Disclosure

Posted by deepcore under exploit (No Respond)

Firmware reversing of the Barracuda Web Application Firewall uncovered development artifacts that should have been removed on the production images. Once the encryption scheme was broken, many QA and development tools were discovered on the affected partitions. Some of these contained sensitive information such as authentication credentials used by internal developers. Firmware version 8.0.1.014 is […]

Barracuda WAF V360 Firmware 8.0.1.014 Grub Password Complexity

Posted by deepcore under exploit (No Respond)

The grub password for all Barracuda WAF V360 virtual appliances is four characters in length and, as a result, may be trivially easy to crack. Firmware version 8.0.1.014 is affected.

Barracuda WAF V360 Firmware 8.0.1.014 Username / Session ID Leak

Posted by deepcore under exploit (No Respond)

The Barracuda WAF management application transmits the current user and session identifier over HTTP GET. Firmware version 8.0.1.014 is affected.

Barracuda WAF V360 Firmware 8.0.1.014 Support Tunnel Hijack

Posted by deepcore under exploit (No Respond)

Barracuda WAF V360 with firmware 8.0.1.014 suffers from a support tunnel hijacking vulnerability.

Solarwinds LEM 6.3.1 Hardcoded Credentials

Posted by deepcore under exploit (No Respond)

Solarwinds Log and Event Manager Virtual Appliance version 6.3.1 has hard-coded credentials.

e107 v2 Bootstrap CMS – CSRF Web Vulnerability

Posted by deepcore under exploit (No Respond)

An independent vulnerability laboratory researcher discovered a client-side cross site request forgery vulnerability in …

Yaws 2.0 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Yaws server version2.0 suffers from multiple cross site scripting vulnerabilities.