Subscribe via feed.
Posts under XSS

Secunia Security Advisory 50942

Secunia Security Advisory – Apple has issued an update for Java for Mac OS X. This fixes multiple vulnerabilities, which can be exploited by malicious people to disclose potentially sensitive information, manipulate certain data, cause a DoS (Denial of Service), and potentially compromise a vulnerable system.

Tags: , , ,

Apple Security Advisory 2012-10-16-1

Apple Security Advisory 2012-10-16-1 – Multiple vulnerabilities exist in Java 1.6.0_35, the most serious of which may allow an untrusted Java applet to execute arbitrary code outside the Java sandbox. Visiting a web page containing a maliciously crafted untrusted Java applet may lead to arbitrary code execution with the privileges of the current user.

Tags: , , , ,

[papers] – CVE-2012-1535: Adobe Flash Player Integer Overflow Vulnerability Analysis

Posted by deepcore under exploit, hhu, m$, XSS (No Respond)

CVE-2012-1535: Adobe Flash Player Integer Overflow Vulnerability Analysis

Tags: , , , ,

Apple iOS Default SSH Password

This Metasploit module exploits the default credentials of Apple iOS when it has been jailbroken and the passwords for the ‘root’ and ‘mobile’ users have not been changed.

Tags: , , ,

[webapps] – Web Help Desk by SolarWinds – Stored XSS

Posted by smalldevicehere under exploit, m$, Security, XSS (No Respond)

Web Help Desk by SolarWinds – Stored XSS

Tags: , , , ,

Rubilyn 0.0.1

This is a 64bit Mac OS-X kernel rootkit that uses no hardcoded address to hook the BSD subsystem in all OS-X Lion and below.

Tags: , , ,

strongSwan IPsec Implementation 5.0.1

strongSwan is a complete IPsec implementation for the Linux, Android, Maemo, FreeBSD, and Mac OS X operating systems. It interoperates with with most other IPsec-based VPN products via the IKEv2 or IKEv1 key exchange protocols

Tags: , ,

Secunia Security Advisory 50859

Secunia Security Advisory – Some vulnerabilities have been reported in Apple OS X Server, which can be exploited by malicious people to disclose certain sensitive information, bypass certain security restrictions, and compromise a user’s system.

Tags: , , , ,

OPlayer 2.0.05 iOS Cross Site Scripting

OPlayer version 2.0.05 iOS suffers from multiple cross site scripting vulnerabilities.

Tags: , , , ,

Apple Mac OS X Lion Arbitrary Code Execution

Andy Davis of NCC Group has discovered an arbitrary code execution vulnerability in Apple OS X Lion versions 10.7 to 10.7.4 and OS X Lion Server versions 10.7 to 10.7.4.

Tags: , , ,