↧
HTCSyncManagerUpdate DLL Hijacking
HTCSyncManagerUpdate suffers from a DLL hijacking vulnerability.
View ArticleTienda-Online-Economica Cross Site Scripting
Tienda-Online-Economica suffers from a cross site scripting vulnerability. Note that this advisory has site-specific information.
View ArticlevbBux / vbPlaza 4.0.3 SQL Injection
vbBux / vbPlaza version 4.0.3 suffers from a remote SQL injection vulnerability.
View ArticleGnew 2013.1 Cross Site Scripting / SQL Injection
Gnew 2013.1 suffers from cross site scripting and remote SQL injection vulnerabilities.
View ArticleSybase EAServer XXE Injection
This is a supplement to the SA-20130719-0 SEC Consult advisory that notes an additional attack vector for an XXE injection vulnerability in Sybase EAServer.
View ArticleRuby on Rails Known Secret Session Cookie Remote Code Execution
This Metasploit module implements remote command execution on Ruby on Rails applications. Prerequisite is knowledge of the "secret_token" (Rails 2/3) or "secret_key_base" (Rails 4). The values for...
View Article
More Pages to Explore .....