Subscribe via feed.

Adobe IndesignServer 5.5 SOAP Server Arbitrary Script Execution

This Metasploit module abuses the “RunScript” procedure provided by the SOAP interface of Adobe InDesign Server, to execute arbitrary vbscript (Windows) or applescript(OSX). The exploit drops the payload on the server and must be removed manually.

Tags: , ,

[papers] – A Pentester’s Guide to Hacking OData

Posted by muieanca under exploit, localhost, m$, software, tools (No Respond)

A Pentester’s Guide to Hacking OData

Tags: , , , ,

Adobe Readies Patch for Critical Reader, Acrobat Flaws

Posted by deepcore under Security (No Respond)

Adobe Inc. said on Friday that it is planning to release an out-of-cycle update to fix critical security holes in its Reader and Acrobat products, including a fix for a newly disclosed hole that is already being exploited in the wild.

Tags: , , , , , ,

Microsoft, Adobe, Oracle unite with massive patch batch

Posted by deepquest under m$, Security (No Respond)

It was an extreme version of Patch Tuesday as Microsoft, Adobe Systems, and Oracle released updates that fixed dozens of critical vulnerabilities in their wares.

Tags: , , ,