[CVE-2012-4750] Ezhometech EzServer 7.0 Remote Heap Corruption Vulnerability

2012-10-15 Thread lorenzo . cantoni86
[Title]: Ezhometech EzServer 7.0 Remote Heap Corruption Vulnerability [Description]: EzServer is a software for audio and video streaming adopted by various companies worldwide. Version 7.0 is affected by a remote heap corruption vulnerability. Version 6.x is not affected by this issue, as

[CVE-2012-3870] Openconstructor CMS 3.12.0 'createobject.php', 'name' and 'description' parameters Stored Cross-site Scrpting vulnerabilities

2012-08-06 Thread lorenzo . cantoni86
###Title###: Openconstructor CMS 3.12.0 'createobject.php', 'name' and 'description' parameters Stored Cross-site Scrpting vulnerabilities ###Affected Software###: http://www.openconstructor.org/ http://code.google.com/p/openconstructor/downloads/list

[CVE-2012-3872] Openconstructor CMS 3.12.0 Multiple Reflected Cross-site Scrpting vulnerabilities

2012-08-06 Thread lorenzo . cantoni86
###Title###: Openconstructor CMS 3.12.0 Multiple Reflected Cross-site Scrpting vulnerabilities ###Affected Software###: http://www.openconstructor.org/ http://code.google.com/p/openconstructor/downloads/list http://esectorsolutions.com/about/whats-new/esector-news/detailed/?id=234

[CVE-2012-3871] Openconstructor CMS 3.12.0 'data/hybrid/i_hybrid.php', 'header' parameter Stored Cross-site Scripting Vulnerability

2012-08-06 Thread lorenzo . cantoni86
###Title###: Openconstructor CMS 3.12.0 'data/hybrid/i_hybrid.php', 'header' parameter Stored Cross-site Scripting Vulnerability ###Affected Software###: http://www.openconstructor.org/ http://code.google.com/p/openconstructor/downloads/list

[CVE-2012-3873] Openconstructor CMS 3.12.0 'id' parameter multiple SQL injection vulnerabilities

2012-08-06 Thread lorenzo . cantoni86
###Title###: Openconstructor CMS 3.12.0 'id' parameter multiple SQL injection vulnerabilities ###Affected Software###: http://www.openconstructor.org/ http://code.google.com/p/openconstructor/downloads/list http://esectorsolutions.com/about/whats-new/esector-news/detailed/?id=234