[Hebrew] Digital Whisper Security Magazine #75
>> TAG: #remote exploit
[Hebrew] Digital Whisper Security Magazine #75
FortiClient SSLVPN 5.4 – Credentials Disclosure
PHP 5.0.0 – fbird_[p]connect() Local Denial of Service
PHP 5.0.0 – snmpwalkoid() Local Denial of Service
ZKTeco ZKAccess Professional 3.5.3 – Insecure File Permissions Privilege Escalation
PHP 7.0 – JsonSerializable::jsonSerialize json_encode Local Denial of Service
ZKTeco ZKAccess Security System 5.3.1 – Persistent Cross-Site Scripting
PHP 7.0 – AppendIterator::append Local Denial of Service
ZKTeco ZKBioSecurity 3.0 – (visLogin.jsp) Local Authorization Bypass
ZKTeco ZKBioSecurity 3.0 – Hardcoded Credentials Remote SYSTEM Code Execution