[FD] Apple iOS v9.1, 9.2 & 9.2.1 - Application Update Loop Pass Code Bypass

2016-02-04 Thread Vulnerability Lab
Document Title: === Apple iOS v9.1, 9.2 & 9.2.1 - Application Update Loop Pass Code Bypass References (Source): http://www.vulnerability-lab.com/get_content.php?id=1710 Apple Follow-up ID: 631627909 Video:

[FD] NDI5aster – Privilege Escalation through NDIS 5.x Filter Intermediate Drivers

2016-02-04 Thread Kyriakos Economou
NDI5aster – Privilege Escalation through NDIS 5.x Filter Intermediate Drivers ABSTRACT The Network Driver Interface Specification (NDIS) [11] provides a programming interface specification that facilitates from the network driver architecture perspective the communication between a protocol

[FD] osTicket multiple vulnerabilities

2016-02-04 Thread Giovanni Cerrato
= - Release date: February 04th, 2016 - Discovered by: Giovanni Cerrato and Enrico Cinquini - Severity: High = I. VULNERABILITY - osTicket multiple vulnerabilities. II.

[FD] Executable installers are vulnerable^WEVIL (case 23): WinImage's installer and self-extractors allow arbitrary (remote) code execution and escalation of privilege

2016-02-04 Thread Stefan Kanthak
Hi @ll, the executable installer winima90.exe and previous versions available from loads and executes CRTdll.dll, UXTheme.dll, RichEd32.dll and WindowsCodecs.dll from its "application directory". Self-extracting executables created with WinImage load and execute