Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2017-04-26   OpenText Documentum Content Server - dm_bp_transition.ebs docbase Method Arbitrary Code Execution 189 WEB Andrey B. Panfilov
2017-04-21   Apple WebKit / Safari 10.0.2(12602.3.12.0.1) - 'operationSpreadGeneric' Universal Cross-Site Scrip 73 WEB Google Security Research
2017-04-21   Apple WebKit / Safari 10.0.2(12602.3.12.0.1) - 'PrototypeMap::createEmptyStructure' Universal Cros 109 WEB Google Security Research
2017-04-19   WebKit operationSpreadGeneric Universal Cross Site Scripting 93 WEB lokihardt
2017-04-18   Mantis Bug Tracker 1.3.0/2.3.0 - Password Reset 86 WEB hyp3rlinx
2017-04-18   Huawei HG532n Command Injection 112 WEB Ahmed S. Darwish
2017-04-14   Alienvault OSSIM/USM 5.3.4/5.3.5 - Remote Command Execution (Metasploit) 136 WEB Peter Lapp
2017-04-13   PCMAN FTP Server 2.0.7 ACCT Buffer Overflow 76 WEB Cybernetic
2017-04-13   XiongMai uc-http 1.0.0 Local File Inclusion / Directory Traversal 115 WEB Project Insecurity
2017-04-12   Apple WebKit / Safari 10.0.3 (12602.4.8) - Universal Cross-Site Scripting via a Focus Event and a Li 67 WEB Google Security Research
2017-04-12   Apple WebKit / Safari 10.0.3 (12602.4.8) - Synchronous Page Load Universal Cross-Site Scripting 138 WEB Google Security Research
2017-04-12   Brother MFC-J6520DW - Authentication Bypass / Password Change 149 WEB Patryk Bogdan
2017-04-12   Adobe Multiple Products - XML Injection File Content Disclosure 133 WEB Thomas Sluyter
2017-04-11   WordPress Plugin CopySafe Web Protect < 2.6 - Cross-Site Request Forgery 167 WEB Zhiyang Zeng
2017-04-11   WordPress Plugin WHIZZ < 1.1.1 - Cross-Site Request Forgery 186 WEB Zhiyang Zeng
2017-04-11   e107 CMS 2.1.4 - Cross-Site Request Forgery 114 WEB Zhiyang Zeng
2017-04-11   QNAP TVS-663 QTS < 4.2.4 build 20170313 - Command Injection 101 WEB Harry Sintonen
2017-04-11   WordPress Plugin Firewall 2 1.3 - Cross-Site Request Forgery / Cross-Site Scripting 84 WEB dxw
2017-04-11   Wordpress webplayer Plugins SQL Injection Vulnerability 307 WEB Hassan Shakeri
2017-04-07   HelpDEZK 1.1.1 - Cross-Site Request Forgery / Code Execution 154 WEB rungga_reksya
2017-04-07   Moodle 2.x/3.x - SQL Injection 133 WEB Marko Belzetski
2017-04-06   D-Link DIR-615 - Cross-Site Request Forgery 163 WEB Pratik S. Shah
2017-04-05   Apple WebKit 10.0.2(12602.3.12.0.1, r210800) - 'constructJSReadableStreamDefaultReader' Type Confu 114 WEB Google Security Research
2017-04-05   Apple WebKit 10.0.2(12602.3.12.0.1) - 'disconnectSubframes' Universal Cross-Site Scripting 63 WEB Google Security Research
2017-04-05   Apple Webkit - Universal Cross-Site Scripting by Accessing a Named Property from an Unloaded Window 146 WEB Google Security Research