Subscribe via feed.

Mac OS X 10.8.3 ftpd Remote Resource Exhaustion

ftpd on Mac OS X 10.8.3 suffers from a denial of service vulnerability.

Tags: , , , ,

WikiLeaks shows PoK part of Kashmir, no LoC – Hindustan Times

Posted by deepcore under DDOS, m$, Wikileak, XSS (No Respond)

PakistanToday.com.pk WikiLeaks shows PoK part of Kashmir, no LoC Hindustan Times The Indian Embassy in Washington did not respond to an email as whether it was aware of WikiLeak's goof up and what steps it has taken to depict factual representation of the international boundary. Though on its website, WikiLeaks has said that the ..

Tags: , ,

[webapps] – Network Weathermap 0.97a (editor.php) – Persistent XSS

Posted by deepcore under exploit, m$, Security, XSS (No Respond)

Network Weathermap 0.97a (editor.php) – Persistent XSS

Tags: , , , ,

[webapps] – ViewGit 0.0.6 – Multiple XSS Vulnerabilities

Posted by deepcore under exploit, m$, Security, XSS (No Respond)

ViewGit 0.0.6 – Multiple XSS Vulnerabilities

Tags: , , ,

Apple Security Advisory 2013-03-14-2

Apple Security Advisory 2013-03-14-2 – Safari 6.0.3 is now available and addresses multiple security issues.

Tags: , , ,

Apple Security Advisory 2013-03-14-1

Apple Security Advisory 2013-03-14-1 – OS X Mountain Lion version 10.8.3 and Security Update 2013-001 addresses multiple vulnerabilities. These updates address a canonicalization issue with HFS and Apache, a buffer overflow in libtiff, an authentication bypass, and more.

Tags: , , ,

Setuid Tunnelblick Privilege Escalation

This Metasploit module exploits a vulnerability in Tunnelblick 3.2.8 on Mac OS X. The vulnerability exists in the setuid openvpnstart, where an insufficient validation of path names allows execution of arbitrary shell scripts as root. This Metasploit module has been tested successfully on Tunnelblick 3.2.8 build 2891.3099 over Mac OS X 10.7.5.

Tags: , , ,

[papers] – Story of a Client-Side Attack

Posted by deepcore under exploit, m$, XSS (No Respond)

Story of a Client-Side Attack

Tags: , , , ,

[webapps] – MTP Poll 1.0 – Multiple XSS Vulnerabilities

Posted by deepcore under exploit, m$, Security, XSS (No Respond)

MTP Poll 1.0 – Multiple XSS Vulnerabilities

Tags: , , , ,

[webapps] – glFusion 1.2.2 – Multiple XSS Vulnerabilities

Posted by deepcore under exploit, m$, XSS (No Respond)

glFusion 1.2.2 – Multiple XSS Vulnerabilities

Tags: , ,