JSC suffers from a type confusion vulnerability during bailout when reconstructing arguments objects.
>> CATEGORY: exploit
WebKit suffers from a universal cross site scripting vulnerability in JSObject::putInlineSlow and JSValue::putToPrimitive.
SD.NET RIM version 4.7.3c suffers from a remote SQL injection vulnerability.
XNU has an issue where missing locking in checkdirs_callback() enables a race condition with fchdir_common().
html5_snmp version 1.11 suffers from a persistent cross site scripting vulnerability.
html5_snmp version 1.11 suffers from a remote SQL injection vulnerability.
Microsoft Office365 suffers from an issue where auto-execution of macro-enabled office documents can be leveraged simply by the file having the same name as a prior document with permissions.
Ayukov NFTP client version 1.71 suffers from a SYST buffer overflow vulnerability.
Launch Manager version 6.1.7600.16385 suffers from a DsiWMIService unquoted service path vulnerability.
Microsoft Office365 suffers from an improper integrity validation check that can allow for a protection bypass condition that will let docx documents become macro-enabled.