Exif Pilot version 4.7.2 SEH-based buffer overflow exploit.
Monthly Archives: January 2015
WhatsApp blocks WhatsApp Plus users

“You’re temporarily banned from WhatsApp because you may have violated our terms of service. You’ll be able to use WhatsApp again in:” Maybe this text sound you familiar…
WhatsApp has blocked the accounts of all WhatsApp Plus users. The reason? It cannot guarantee the security of the service.
The block will last 24 hours and WhatsApp explains it as follows:

WhatsApp Plus is an Android app developed by a Spanish programmer, based on WhatsApp but unofficial and unauthorized by it. It allows users to access WhatsApp and customize the look, use other emoticons, send songs…
However, WhatsApp warned that using unauthorized apps was a violation of its Terms of Service, and those who use them will be banned and that is what has happened.
The post WhatsApp blocks WhatsApp Plus users appeared first on MediaCenter Panda Security.
articleFR CMS 3.0.5 Arbitrary File Upload
articleFR CMS version 3.0.5 suffers from a remote shell upload vulnerability.
Facebook will highlight hoaxes in users’ newsfeeds
Facebook has announced plans to crack down on spam and hoaxes in the newsfeed, with a note highlighting ‘false information’ when enough people flag the link as a hoax.
The post Facebook will highlight hoaxes in users’ newsfeeds appeared first on We Live Security.
PhotoSync 1.1.3 Command Injection
PhotoSync version 1.1.3 suffers from a command injection vulnerability.
MalwareBytes Anti-Exploit Out-Of-Bounds Read Denial Of Service
MalwareBytes Anti-Exploit versions 1.03.1.1220 and 1.04.1.1012 suffer from a denial of service vulnerability.
PhotoSync v1.1.3 Android – Command Inject Vulnerability
Posted by Vulnerability Lab on Jan 21
Document Title:
===============
PhotoSync v1.1.3 Android – Command Inject Vulnerability
References (Source):
====================
http://www.vulnerability-lab.com/get_content.php?id=1410
Release Date:
=============
2015-01-21
Vulnerability Laboratory ID (VL-ID):
====================================
1410
Common Vulnerability Scoring System:
====================================
5.2
Product & Service Introduction:…
iExplorer 3.6.3 – DLL Hijacking Exploit itunesmobiledevice.dll
Posted by Vulnerability Lab on Jan 21
Document Title:
===============
iExplorer 3.6.3 – DLL Hijacking Exploit itunesmobiledevice.dll
References (Source):
====================
http://www.vulnerability-lab.com/get_content.php?id=1415
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-9600
CVE-ID:
=======
CVE-2014-9600
Release Date:
=============
2015-01-19
Vulnerability Laboratory ID (VL-ID):
====================================
1415
Common Vulnerability Scoring System:…
LizardSquad DDoS Stresser – Multiple Vulnerabilities
Posted by Vulnerability Lab on Jan 21
Document Title:
===============
LizardSquad DDoS Stresser – Multiple Vulnerabilities
References (Source):
====================
http://www.vulnerability-lab.com/get_content.php?id=1417
Release Date:
=============
2015-01-20
Vulnerability Laboratory ID (VL-ID):
====================================
1417
Common…
Remote Desktop v0.9.4 Android – Multiple Vulnerabilities
Posted by Vulnerability Lab on Jan 21
Document Title:
===============
Remote Desktop v0.9.4 Android – Multiple Vulnerabilities
References (Source):
====================
http://www.vulnerability-lab.com/get_content.php?id=1413
Release Date:
=============
2015-01-20
Vulnerability Laboratory ID (VL-ID):
====================================
1413
Common Vulnerability Scoring System:
====================================
4.4
Product & Service Introduction:…