Jease CMS version 2.11 suffers from a malicious script insertion vulnerability.
Monthly Archives: December 2014
Morfy CMS 1.05 Remote Command Execution
Morfy CMS version 1.05 suffers from a remote command execution vulnerability.
WordPress Bird Feeder 1.2.3 CSRF / XSS
WordPress Bird Feeder plugin version 1.2.3 suffers from cross site request forgery and cross site scripting vulnerabilities.
Revive Adserver 3.0.5 Cross Site Scripting
Revive Adserver version 3.0.5 suffers from a cross site scripting vulnerability.
Revive Adserver 3.0.5 Cross Site Scripting / Denial Of Service
Revive Adserver versions 3.0.5 and below suffer from cross site scripting and denial of service vulnerabilities.
E-Journal 1.0 Shell Upload / SQL Injection
E-Journal version 1.0 suffers from remote shell upload, privilege escalation, and remote SQL injection vulnerabilities.
vBulletin Moderator Control Panel 4.2.2 CSRF
The moderator control panel in vBulletin version 4.2.2 suffers from a cross site request forgery vulnerability.
HP Security Bulletin HPSBMU03221 1
HP Security Bulletin HPSBMU03221 1 – A potential security vulnerability has been identified with HP Connect-IT running SSLv3. This is the SSLv3 vulnerability known as “Padding Oracle on Downgraded Legacy Encryption” also known as “Poodle”, which could be exploited remotely to allow disclosure of information. Revision 1 of this advisory.
HP Security Bulletin HPSBOV03225 1
HP Security Bulletin HPSBOV03225 1 – Potential security vulnerabilities have been identified with HP OpenVMS POP. The vulnerabilities could be exploited remotely to create a server Denial of Service (DoS). Revision 1 of this advisory.
HP Security Bulletin HPSBOV03226 1
HP Security Bulletin HPSBOV03226 1 – Potential security vulnerabilities have been identified with the TCP/IP Services for OpenVMS BIND 9 Resolver. These vulnerabilities could be remotely exploited to cause a Denial of Service (DoS) and other vulnerabilities. Revision 1 of this advisory.