Subscribe via feed.

[webapps] – Vtiger CRM 5.4.0 (index.php, onlyforuser param) – SQL Injection

Posted by deepcore under exploit, m$, Security (No Respond)

Vtiger CRM 5.4.0 (index.php, onlyforuser param) – SQL Injection

Tags: , , ,

Apple Security Advisory 2013-09-18-3

Apple Security Advisory 2013-09-18-3 – Xcode 5.0 is now available and addresses a security issue in Git. When using the imap-send command, git did not verify that the server hostname matched a domain name in the X.509 certificate, which allowed a man-in-the-middle attacker to spoof SSL servers via an arbitrary valid certificate. This issue was addressed by updating git to version 1.8.3.1.

Tags: , , ,

Apple Security Advisory 2013-09-18-2

Apple Security Advisory 2013-09-18-2 – iOS 7 is now available and addresses Certificate Trust Policy, Core Graphics, Core Media, Data Protection, and various other issues and vulnerabilities.

Tags: , ,

[remote] – McKesson ActiveX File/Environmental Variable Enumeration

Posted by deepcore under exploit, m$, Security (No Respond)

McKesson ActiveX File/Environmental Variable Enumeration

Tags: , ,

[webapps] – WordPress Plugin Complete Gallery Manager 3.3.3 – Arbitrary File Upload Vulnerability

Posted by deepcore under exploit, m$, Security (No Respond)

Wordpress Plugin Complete Gallery Manager 3.3.3 – Arbitrary File Upload Vulnerability

Tags: , , ,

[remote] – HP ProCurve Manager SNAC UpdateCertificatesServlet File Upload

Posted by deepcore under exploit, m$, Security (No Respond)

HP ProCurve Manager SNAC UpdateCertificatesServlet File Upload

Tags: , , ,

[remote] – HP ProCurve Manager SNAC UpdateDomainControllerServlet File Upload

Posted by deepcore under exploit, m$, Security (No Respond)

HP ProCurve Manager SNAC UpdateDomainControllerServlet File Upload

Tags: , , ,

[local] – Agnitum Outpost Internet Security Local Privilege Escalation

Posted by deepcore under exploit, m$, Security (No Respond)

Agnitum Outpost Internet Security Local Privilege Escalation

Tags: , ,

[remote] – Mitsubishi MC-WorkX 8.02 ActiveX Control (IcoLaunch) File Execution

Posted by deepcore under exploit, m$, Security (No Respond)

Mitsubishi MC-WorkX 8.02 ActiveX Control (IcoLaunch) File Execution

Tags: , , ,

[webapps] – Router ONO Hitron CDE-30364 – CSRF Vulnerability

Posted by deepcore under exploit, m$, Security (No Respond)

Router ONO Hitron CDE-30364 – CSRF Vulnerability

Tags: , , , ,