AppLocker Execution Prevention Bypass
AppLocker Execution Prevention Bypass
WordPress Bulk Delete Plugin 5.5.3 – Privilege Escalation
Schneider Electric SBO / AS – Multiple Vulnerabilities
An independent vulnerability laboratory researcher discovered a client-side cross site request forgery vulnerability in the Iran Telecom Charging Panel ADSL.
An independent vulnerability laboratory researcher discovered a client-side url redirect and cross site scripting web vulnerability in the official Adobe (Edex) web-application.
This archive contains all of the 240 exploits added to Packet Storm in February, 2016.
SySS GmbH found out that the request new user and translation functionalities of the web application perfact::mpa are prone to reflected cross-site scripting attacks.
SySS GmbH found out that unauthorized users are able to download arbitrary files of other users that have been uploaded via the file upload functionality. As the file names of…
The tested web application perfact::mpa offers no protection against cross-site request forgery (CSRF) attacks. This kind of attack forces end users respectively their web browsers to perform unwanted actions in…
The SySS GmbH found out that any logged in user is able to download valid VPN configuration files of arbitrary existing remote sessions. All an intruder needs to know is…