Air Drive Plus 2.4 – Arbitrary File Upload Vulnerability
Air Drive Plus 2.4 – Arbitrary File Upload Vulnerability
An independent Vulnerability Laboratory Researcher discovered a cross site request forgery vulnerability in the official Facebook.com system web-application. The issue allows attackers to establishe a videocall connection to any facebook…
The Vulnerability Laboratory Research Team discovered an arbitrary file upload web vulnerability in the official Photo Transfer 2 – v1.0 iOS mobile web-application.
Konica Minolta FTP Utility 1.0 – Remote Command Execution
Konica Minolta FTP Utility 1.00 Post Auth CWD Command SEH Overflow
The MicrosoftWindowsShellCreateObjectTask initializes a shell32 based ICreateObject COM server as local system. This is marked as being accessible from a normal user account so once created we can attach to…
The MicrosoftWindowsShellCreateObjectTask initializes a shell32 based ICreateObject COM server as local system. This is marked as being accessible from a normal user account so once created we can attach to…
Farol suffers from a remote SQL injection vulnerability.
A use-after-free crash was observed in Microsoft Office 2007 with Microsoft Office File Validation Add-In disabled and Application Verifier enabled for testing and reproduction. This bug did not reproduce in…
A type confusion crash was observed in Microsoft Office 2007 with Microsoft Office File Validation Add-In disabled and Application Verifier enabled for testing and reproduction. This bug did not reproduce…