Posts under XSS
[webapps] – WordPress Better WP Security Plugin – Stored XSS
Wordpress Better WP Security Plugin – Stored XSS
Tags: exploit, function-toggle, please-visit, webapps, xssApple Quicktime 7 Invalid Atom Length Buffer Overflow
Posted by deepcore under Apple, exploit, facebook, iphone, m$, OSX security tools, Privacy, Security, tools, twitter, XSS (No Respond)
This Metasploit module exploits a vulnerability found in Apple Quicktime. The flaw is triggered when Quicktime fails to properly handle the data length for certain atoms such as ‘rdrf’ or ‘dref’ in the Alis record, which may result a buffer overflow by loading a specially crafted .mov file, and allows arbitrary code execution under the context of the user.
Tags: Apple, exploit, Security, twitter, ubuntu