[papers] – [Hebrew] Digital Whisper Security Magazine #37
[Hebrew] Digital Whisper Security Magazine #37
[webapps] – Endpoint Protector v4.0.4.2 Multiple Persistent XSS
Endpoint Protector v4.0.4.2 Multiple Persistent XSS
Apple QuickTime Player 7.7.2 Crash
Apple QuickTime Player version 7.7.2 division by zero crash proof of concept exploit.
[webapps] – White Label CMS v 1.5 CSRF w/ persistent XSS
White Label CMS v 1.5 CSRF w/ persistent XSS
[webapps] – Movable Type Pro 5.13en Stored XSS Vulnerability
Movable Type Pro 5.13en Stored XSS Vulnerability
DropBox iOS / Android App File Theft
DropBox version 1.4.6 on iOS, 2.0.1 on Android, and Google Drive version 1.0.1 on iOS suffer from a file theft vulnerability due to allowing arbitrary javascript to be executed inside of the privileged file zone.
[dos] – Internet Explorer 9 XSS Filter Bypass
Internet Explorer 9 XSS Filter Bypass
[papers] – Whitepaper : Exploiting Transparent User Identification
Whitepaper : Exploiting Transparent User Identification
[webapps] – OTRS 3.1 Stored XSS Vulnerability
OTRS 3.1 Stored XSS Vulnerability