Monthly Archives: September 2015
Android Stagefright Remote Code Execution
Android Stagefright remote code execution exploit that leverages an integer overflow in the libstagefright MP4 ‘stsc’ atom handling.
SAP Mobile Platform 3 XXE Injection
SAP NetWeaver AS Java version 7.4 suffers from multiple XXE vulnerabilities. An attacker can read an arbitrary file on a server by sending a correct XML request with a crafted DTD and reading the response from the service. An attacker can perform a DoS attack (for example, XML Entity Expansion). An SMB Relay attack is a type of Man-in-the-Middle attack where the attacker asks the victim to authenticate into a machine controlled by the attacker, then relays the credentials to the target. The attacker forwards the authentication information both ways and gets access.
HP Security Bulletin HPSBOV03505 1
HP Security Bulletin HPSBOV03505 1 – Potential security vulnerabilities have been identified with the TCP/IP Services for OpenVMS running NTP. These vulnerabilities could be exploited remotely to allow unauthenticated attackers to execute code with the privileges of ntpd or cause a Denial of Service (DoS). Revision 1 of this advisory.
Synology Download Station 3.5-2956 / 3.5-2962 Cross Site Scripting
Synology Download Station versions 3.5-2956 and 3.5-2962 suffer from multiple cross site scripting vulnerabilities.
Synology Video Station 1.5-0757 Command Injection / SQL Injection
Synology Video Station version 1.5-0757 suffers from remote command injection and SQL injection vulnerabilities.
HP Security Bulletin HPSBGN03504 1
HP Security Bulletin HPSBGN03504 1 – Potential security vulnerabilities have been identified in HP UCMDB which would allow local disclosure of sensitive information. Revision 1 of this advisory.
SAP NetWeaver AS FKCDBFTRACE ABAP Hardcoded Credentials
SAP NetWeaver AS ABAP contains a hardcoded username that changes the system’s behavior if the user is authenticated successfully. The user may obtain additional information that should not be displayed.
SAP NetWeaver AS LSCT1I13 ABAP Hardcoded Credentials
An attacker can use hardcoded credentials to get unauthorized access and perform various actions in the NetWeaver AS ABAP. In addition, it is likely that the code will be implemented into the system as a backdoor.
DSA-3355 libvdpau – security update
Florian Weimer of Red Hat Product Security discovered that libvdpau, the
VDPAU wrapper library, did not properly validate environment variables,
allowing local attackers to gain additional privileges.