23-04-2010
GetSimple CMS Multiple Cross-Site Scripting Vulnerabilities
Input appended to the URL after admin/components.php, admin/resetpassword.php, admin/settings.php, admin/support.php, admin/theme-edit.php, and admin/theme.php is not properly sanitised before being returned to the user. This can be exploited to execute arbitrary HTML and script code in a user's browser session in the context of an affected site.
 
 
detalji


22-04-2010
Elastix "id_nodo" Local File Inclusion Vulnerability
Input passed via the "id_nodo" parameter to help/frameRight.php is not properly verified before being used. This can be exploited to disclose the content of arbitrary local files via directory traversal attacks.
 
detalji


14-04-2010
Axon Virtual PBX Multiple Vulnerabilities

Axon Virtual PBX Multiple Vulnerabilities. Detaljnije

 

detalji


17-02-2010
Huawei HG510 Multiple Vulnerabilities
Huawei HG510 is a device offered by the Serbian telecom operator, to provide ADSL Internet connection.
Administration of settings on this device is allowed only from local LAN network but not only from
private IP address (eg 192.168.1.1) then You can access with public IP address.
 
 
detalji


10-12-2009
Kiwi Syslog Server Web Access Weakness and Security Issue

Kiwi Syslog Server Web Access Weakness and Security Issue. Detaljnije

detalji


11-11-2009
Axon Virtual PBX "/logon" Cross-Site Scripting Vulnerabilities

Axon Virtual PBX "/logon" Cross-Site Scripting Vulnerabilities. Detaljnije

detalji


07-10-2009
Exponent CMS Contact Module "email" Cross-Site Scripting Vulnerability
Exponent CMS Contact Module "email" Cross-Site Scripting Vulnerability. Detaljnije
 
 
detalji


  [1] 2 3