CVE-2019-6690: Improper Input Validation in python-gnupg

2019-01-27 Thread Stig Palmquist
Kjäll and Stig Palmquist. Thanks to @dewaelethom who wrote the CTF challenge. -BEGIN PGP SIGNATURE- iQIzBAEBCgAdFiEEj7OMIAQn+GdSU5z5EMg4owYJR3UFAlxK3b4ACgkQEMg4owYJ R3XWpQ/9Ex7/vIH6k6gFXk2SXTEK19g8D1zsopPsQaE/uzvAARJrdGe0mxAtlqWo Z5C/4w+4B4ioLK8wphFiFglvwNN/qxeTOXR3z5RoVbNSvd4BQ1GQR23N

CVE-2018-20162: Digi TransPort LR54 Restricted Shell Escape

2019-02-17 Thread Stig Palmquist
cgi-bin/cvename.cgi?name=CVE-2018-20162 Credits - --- Vulnerability discovered by Stig Palmquist. Thanks to @duniel_pls and @alexanderkjall for reviewing this report. -BEGIN PGP SIGNATURE- iQIzBAEBCgAdFiEEj7OMIAQn+GdSU5z5EMg4owYJR3UFAlxpeAsACgkQEMg4owYJ