Subscribe via feed.

YingZhi Python 1.9 Arbitrary Traversal / Write

YingZhi Python version 1.9 application for iOS allows for arbitrary file uploads to the root WWW directory and also has a ftp server directory traversal vulnerability that forces no authentication.

Tags: , , ,

Apple Security Advisory 2012-09-24-1

Apple Security Advisory 2012-09-24-1 – Apple TV 5.1 is now available and addresses issues relating to malicious media loading, memory corruption, and more.

Tags: , ,

Secunia Security Advisory 50586

Secunia Security Advisory – Multiple vulnerabilities have been reported in Apple iOS, which can be exploited by malicious, local users to disclose system information and gain escalated privileges, by malicious people to disclose potentially sensitive information, conducts spoofing attacks, and compromise a user’s device, and by malicious people with physical access to disclose potentially sensitive information and bypass certain security restrictions.

Tags: , , , ,

Apple Security Advisory 2012-09-12-1

Apple Security Advisory 2012-09-12-1 – iTunes 10.7 is now available and addresses multiple memory corruption issues in webkit.

Tags: , ,

Secunia Security Advisory 50618

Secunia Security Advisory – Multiple vulnerabilities have been reported in Apple iTunes, which can be exploited by malicious people to compromise a user’s system.

Tags: , , , ,

[webapps] – Trend Micro InterScan Messaging Security Suite Stored XSS and CSRF

Posted by admin under exploit, m$, Security, XSS (No Respond)

Trend Micro InterScan Messaging Security Suite Stored XSS and CSRF

Tags: , ,

[papers] – Detecting and Exploiting XSS Vulnerabilities with Xenotix XSS Exploit Framework

Posted by tirosh under exploit, m$, XSS (No Respond)

Detecting and Exploiting XSS Vulnerabilities with Xenotix XSS Exploit Framework

Tags: , , , ,

[webapps] – Clipster Video Persistent XSS Vulnerability

Posted by whisla13 under exploit, m$, Security, XSS (No Respond)

Clipster Video Persistent XSS Vulnerability

Tags: , , , ,

[webapps] – OTRS Open Technology Real Services 3.1.8 and 3.1.9 XSS Vulnerability

Posted by Bailey under exploit, m$, Security, XSS (No Respond)

OTRS Open Technology Real Services 3.1.8 and 3.1.9 XSS Vulnerability

Tags: , , ,

[webapps] – BusinessWiki 2.5RC3 Stored XSS & Arbitrary File Upload

Posted by lucio under exploit, m$, Security, XSS (No Respond)

BusinessWiki 2.5RC3 Stored XSS & Arbitrary File Upload

Tags: , , ,