[FD] My Photo Wifi Share Photo Server 1.1 iOS - Command Injection Vulnerability

2014-03-28 Thread Vulnerability Lab
any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability- Lab or its suppliers are not liable in any case of damage, including direct, indirect, incidental

[FD] Vanctech File Commander 1.1 iOS - Multiple Vulnerabilities

2014-03-31 Thread Vulnerability Lab
: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability- Lab or its suppliers

[FD] Woltlab Burning Board 3.9.1 - Persistent Web Vulnerability Editor Reverse Encoding Issue

2014-04-11 Thread Vulnerability Lab
: == Vulnerability Laboratory [Research Team] - Ateeq Khan (at...@evolution-sec.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all

[FD] AirPhoto WebDisk v4.1.0 iOS - Code Execution Vulnerability

2014-04-23 Thread Vulnerability Lab
Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability- Lab

[FD] Depot WiFi v1.0.0 iOS - Multiple Web Vulnerabilities

2014-04-25 Thread Vulnerability Lab
as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability- Lab or its suppliers are not liable in any case of damage, including direct, indirect, incidental

[FD] Paypal Inc Bug Bounty #109 MOS - Bypass Persistent Vulnerability

2014-05-14 Thread Vulnerability Lab
: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability- Lab or its

[FD] TigerCom My Assistant v1.1 iOS - File Include Vulnerability

2014-06-03 Thread Vulnerability Lab
in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct

[FD] Bluetooth Photo-File Share v2.1 iOS - Multiple Web Vulnerabilities

2014-06-03 Thread Vulnerability Lab
] - Benjamin Kunz Mejri (b...@evolution-sec.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including

[FD] iScan Online Mobile 2.0.1 iOS - Command Inject Vulnerability

2014-06-03 Thread Vulnerability Lab
in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including

[FD] Paypal Inc Bug Bounty #36 - SecurityKey Card Serialnumber Module Vulnerability

2014-06-18 Thread Vulnerability Lab
: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case

[FD] Secunia CSI/VIM - Filter Bypass Persistent Validation Vulnerabilities

2014-06-18 Thread Vulnerability Lab
: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its

[FD] Secunia CSI/VIM - Filter Bypass Persistent Validation Vulnerabilities

2014-06-18 Thread Vulnerability Lab
Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct, indirect, incidental, consequential loss of business profits

[FD] Yahoo! Bug Bounty #29 YM - Filter Bypass Persistent Web Vulnerability

2014-07-10 Thread Vulnerability Lab
. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct, indirect, incidental, consequential loss of business

[FD] Yahoo! Bug Bounty #30 YM - Application Side Mail Encoding (File Attachment) Vulnerability

2014-07-10 Thread Vulnerability Lab
Laboratory [Research Team] - Ateeq ur Rehman Khan (at...@evolution-sec.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed

[FD] Barracuda Networks #35 Web Firewall 610 v6.0.1 - Filter Bypass Persistent Vulnerability

2014-07-22 Thread Vulnerability Lab
] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose

[FD] Barracuda Networks Firewall 6.1.2 #36 - Filter Bypass Exception Handling Vulnerability + PoC Video BNSEC-2398

2014-07-24 Thread Vulnerability Lab
in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability- Lab or its suppliers are not liable in any case of damage, including direct

[FD] Barracuda Networks SpamVirus Firewall v5.1.3 - Client Side Cross Site Vulnerability

2014-07-28 Thread Vulnerability Lab
) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability

[FD] WiFi HD v7.3.0 iOS - Multiple Web Vulnerabilities

2014-07-29 Thread Vulnerability Lab
: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its

[FD] (BNSEC-1263) Barracuda Networks Web Application Firewall v6.1.5 LoadBalancer v4.2.2 #37 - Filter Bypass Multiple Vulnerabilities

2014-07-29 Thread Vulnerability Lab
Document Title: === Barracuda Networks Web Application Firewall v6.1.5 LoadBalancer v4.2.2 #37 - Filter Bypass Multiple Vulnerabilities References (Source): http://www.vulnerability-lab.com/get_content.php?id=1103 Barracuda Networks Security ID (BNSEC):

[FD] TigerCom iFolder+ v1.2 iOS - Multiple Vulnerabilities

2014-07-31 Thread Vulnerability Lab
is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct

[FD] Photo WiFi Transfer 1.01 - Directory Traversal Vulnerability

2014-08-01 Thread Vulnerability Lab
] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose

[FD] Video WiFi Transfer 1.01 - Directory Traversal Vulnerability

2014-08-04 Thread Vulnerability Lab
-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular

[FD] FreeDisk v1.01 iOS - Multiple Web Vulnerabilities

2014-08-04 Thread Vulnerability Lab
) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability

[FD] Ebay Inc Magento ProStore CP #4 - Filter Validation Bypass Persistent (Payment Information) Vulnerability

2014-08-04 Thread Vulnerability Lab
: == Vulnerability Laboratory [Research Team] - Benjamin Kunz Mejri (b...@evolution-sec.com) [ad...@vulnerability-lab.com] [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims

[FD] PhotoSync Wifi Bluetooth v1.0 - File Include Vulnerability

2014-08-06 Thread Vulnerability Lab
: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable

[FD] PhotoSync v2.2 iOS - Command Inject Web Vulnerability

2014-08-06 Thread Vulnerability Lab
-sec.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability

[FD] Easy FTP Pro v4.2 iOS - Command Inject Vulnerabilities

2014-08-07 Thread Vulnerability Lab
...@evolution-sec.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties

[FD] Barracuda Networks Web Security Flex Appliance Application v4.x - Filter Bypass Persistent Vulnerabilities (BNSEC 707)

2014-08-25 Thread Vulnerability Lab
) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular

[FD] Barracuda Networks Web Security Flex v4.1 - Persistent Vulnerabilities (BNSEC-699)

2014-08-25 Thread Vulnerability Lab
. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct, indirect, incidental, consequential loss

[FD] Avira License Application - Cross Site Request Forgery Vulnerability

2014-09-01 Thread Vulnerability Lab
=Mazen%20Gamal Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability

[FD] WWW File Share Pro v7.0 - Denial of Service Vulnerability

2014-09-01 Thread Vulnerability Lab
. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct, indirect, incidental, consequential loss

[FD] Apple iOS v7.1.2 - Merge Apps Service Local Bypass Vulnerability

2014-09-02 Thread Vulnerability Lab
: == Vulnerability Laboratory [Research Team] - Benjamin Kunz Mejri (b...@evolution-sec.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties

[FD] Photorange v1.0 iOS - File Include Web Vulnerability

2014-09-11 Thread Vulnerability Lab
Authors: == Vulnerability Laboratory [Research Team] - Benjamin Kunz Mejri (b...@evolution-sec.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab

[FD] ChatSecure IM v2.2.4 iOS - Persistent Web Vulnerability

2014-09-11 Thread Vulnerability Lab
: == Vulnerability Laboratory [Research Team] - Benjamin Kunz Mejri (b...@evolution-sec.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all

[FD] Briefcase 4.0 iOS - Code Execution File Include Vulnerability

2014-09-15 Thread Vulnerability Lab
provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage

[FD] USBWiFi Flash Drive v1.3 iOS - Code Execution Vulnerability

2014-09-16 Thread Vulnerability Lab
) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability

[FD] Oracle Corporation MyOracle - Persistent Vulnerability

2014-09-18 Thread Vulnerability Lab
as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability- Lab or its suppliers are not liable in any case of damage, including direct, indirect, incidental

[FD] GS Foto Uebertraeger v3.0 iOS - File Include Vulnerability

2014-09-26 Thread Vulnerability Lab
] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose

[FD] Oracle Corporation MyOracle - Persistent Vulnerability

2014-09-26 Thread Vulnerability Lab
...@evolution-sec.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties

[FD] SmarterTools Smarter Track 6-10 - Information Disclosure Vulnerability

2014-09-26 Thread Vulnerability Lab
?id=305567696) Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability

[FD] Paypal Inc Bug Bounty #16 - Persistent Mail Encoding Vulnerability

2014-09-26 Thread Vulnerability Lab
in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage

[FD] All In One Wordpress Firewall 3.8.3 - Persistent Vulnerability

2014-09-30 Thread Vulnerability Lab
] - Benjamin Kunz Mejri (b...@evolution-sec.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including

[FD] PayPal Inc Bug Bounty #59 - Persistent Mail Encoding Vulnerability

2014-09-30 Thread Vulnerability Lab
] - Benjamin Kunz Mejri (b...@evolution-sec.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including

[FD] PayPal Inc Bug Bounty #71 PPM - Persistent Filter Vulnerability

2014-09-30 Thread Vulnerability Lab
-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular

[FD] BulletProof Security Wordpress v50.8 - POST Inject Vulnerability

2014-10-03 Thread Vulnerability Lab
: == Vulnerability Laboratory [Research Team] - Benjamin Kunz Mejri (b...@evolution-sec.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims

[FD] HTTP Commander AJS v3.1.9 - Client Side Exception Vulnerability

2014-10-03 Thread Vulnerability Lab
-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular

[FD] PayPal Inc Bug Bounty Issue #70 France - Persistent (Escape Shopping) Mail Vulnerability

2014-10-03 Thread Vulnerability Lab
] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose

[FD] Paypal Inc Bug Bounty #30 - Filter Bypass Persistent Vulnerabilities

2014-10-06 Thread Vulnerability Lab
as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct, indirect, incidental

[FD] PayPal Inc Bug Bounty #53 - Multiple Persistent Vulnerabilities

2014-10-06 Thread Vulnerability Lab
Team] - Benjamin Kunz Mejri (b...@evolution-sec.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied

[FD] PayPal Inc BB #98 MOS - Persistent Settings Vulnerability

2014-10-14 Thread Vulnerability Lab
: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable

[FD] Indeed Job Search 2.5 iOS API - Multiple Vulnerabilities

2014-10-14 Thread Vulnerability Lab
] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose

[FD] Paypal Inc MultiOrderShipping API - Filter Bypass Persistent XML Vulnerability

2014-10-14 Thread Vulnerability Lab
. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct, indirect, incidental, consequential loss

[FD] Files Document PDF 2.0.2 iOS - Multiple Vulnerabilities

2014-10-21 Thread Vulnerability Lab
. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct, indirect, incidental, consequential loss of business

[FD] FileBug v1.5.1 iOS - Path Traversal Web Vulnerability

2014-10-21 Thread Vulnerability Lab
-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular

[FD] iFunBox Free v1.1 iOS - File Include Vulnerability

2014-10-22 Thread Vulnerability Lab
] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose

[FD] File Manager v4.2.10 iOS - Code Execution Vulnerability

2014-10-22 Thread Vulnerability Lab
is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct

[FD] Dell SonicWall GMS v7.2.x - Persistent Web Vulnerability

2014-10-23 Thread Vulnerability Lab
of the input values in the message body context Filter and restrict context of send mails through the application and the web-server of the sonicwall gms appliance. The issue has already been patched by the dell security team in cooperation with the vulnerability-lab during the year 2014. Security Risk

[FD] File Manager v4.2.10 iOS - Code Execution Vulnerability

2014-10-23 Thread Vulnerability Lab
is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct

[FD] iFileExplorer v6.51 iOS - File Include Web Vulnerability

2014-10-27 Thread Vulnerability Lab
Laboratory [Research Team] - Katharin S. L. (CH) (resea...@vulnerability-lab.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties

[FD] WebDisk+ v2.1 iOS - Code Execution Vulnerability

2014-10-27 Thread Vulnerability Lab
: == Vulnerability Laboratory [Research Team] - Benjamin Kunz Mejri (b...@evolution-sec.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties

[FD] Folder Plus v2.5.1 iOS - Persistent Item Vulnerability

2014-10-27 Thread Vulnerability Lab
) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability

[FD] Google Youtube - Filter Bypass Persistent Vulnerability [9-5942000004564] (PoC Video Demonstration)

2014-10-27 Thread Vulnerability Lab
: == Jasminder Pal Singh - @singh_jasminder [http://jasminderpalsingh.info] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including

[FD] SeasonApps iTransfer 1.1 - Persistent UI Vulnerability

2014-11-07 Thread Vulnerability Lab
Kunz Mejri (b...@evolution-sec.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including

[FD] BookFresh - Persistent Clients Invite Vulnerability

2014-11-07 Thread Vulnerability Lab
) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability

[FD] PayPal Inc BugBounty #107 MultiOrder Shipping (API) - Persistent History Vulnerability

2014-11-07 Thread Vulnerability Lab
Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability

[FD] PayPal Inc Bug Bounty #88 - Filter Bypass Arbitrary Code Execution Vulnerability

2014-11-12 Thread Vulnerability Lab
...@vulnerability-lab.com) Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability

[FD] iUSB v1.2 iOS - Arbitrary Code Execution Vulnerability

2014-12-16 Thread Vulnerability Lab
as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct, indirect, incidental

[FD] iWifi for Chat v1.1 iOS - Denial of Service Vulnerability

2014-12-16 Thread Vulnerability Lab
Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct, indirect, incidental, consequential loss of business profits

[FD] Elefant CMS v1.3.9 - Persistent Name Update Vulnerability

2014-12-16 Thread Vulnerability Lab
: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any

[FD] Konakart v7.3.0.1 CMS - CS Cross Site Web Vulnerability

2014-12-16 Thread Vulnerability Lab
: == Vulnerability Laboratory [Research Team] - Benjamin Kunz Mejri (b...@evolution-sec.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab

[FD] Bird Feeder v1.2.3 WP Plugin - CSRF XSS Vulnerability

2014-12-17 Thread Vulnerability Lab
: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any

[FD] Morfy CMS v1.05 - Command Execution Vulnerability

2014-12-17 Thread Vulnerability Lab
-application is estimated as high. (CVSS 6.2) Credits Authors: == Paulos Yibelo [Independent Vulnerability Researcher] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all

[FD] Jease CMS v2.11 - Persistent UI Web Vulnerability

2014-12-17 Thread Vulnerability Lab
: == Manideep K. - Information Security Researcher [https://in.linkedin.com/in/manideepk] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed

[FD] E-Journal CMS (ID) - Multiple Web Vulnerabilities

2014-12-18 Thread Vulnerability Lab
Zaoldyeck and Winda Utari Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability

[FD] Facebook Bug Bounty #16 (Studio) - Persistent Vulnerability

2014-12-18 Thread Vulnerability Lab
Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct, indirect, incidental, consequential loss of business profits

[FD] Apple iOS v8.x - Message Context Privacy Vulnerability

2014-12-18 Thread Vulnerability Lab
as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct, indirect, incidental

[FD] Mobilis 3g MobiConnect 3G++ ZDServer v1.0.1.2 - Privilege Escalation Vulnerability

2014-12-19 Thread Vulnerability Lab
is estimated as high. (CVSS 6.4) Credits Authors: == Hadji Samir s...@hotmail.fr Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed

[FD] Facebook BB #18 - IDOR Issue Privacy Vulnerability

2014-12-19 Thread Vulnerability Lab
: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers

[FD] Facebook Bug Bounty #17 - Migrate Privacy Vulnerability

2014-12-25 Thread Vulnerability Lab
Authors: == Paulos Yibelo (paulosyibelo.com) Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties

[FD] ZTE Ucell 3G Modem App - Privilege Escalation Vulnerability

2014-12-25 Thread Vulnerability Lab
: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable

[FD] Pimcore v3.0 v2.3.0 CMS - SQL Injection Vulnerability

2014-12-25 Thread Vulnerability Lab
Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability

[FD] PHPLIST v3.0.6 v3.0.10 - SQL Injection Vulnerability

2014-12-25 Thread Vulnerability Lab
: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable

[FD] Lazarus Guestbook v1.22 - Multiple Web Vulnerabilities

2014-12-25 Thread Vulnerability Lab
Authors: == TaurusOmar - @TaurusOmar_ (taurusoma...@gmail.com) [overhat.blogspot.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either

[FD] Wickr Desktop v2.2.1 Windows - Denial of Service Vulnerability

2014-12-25 Thread Vulnerability Lab
in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct

[FD] Wickr Desktop v2.2.1 Windows - Denial of Service Vulnerability

2014-12-25 Thread Vulnerability Lab
Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its

[FD] CatBot v0.4.2 (PHP) - SQL Injection Vulnerability

2015-01-16 Thread Vulnerability Lab
is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct, indirect

[FD] VeryPhoto v3.0 iOS - Command Injection Vulnerability

2015-01-16 Thread Vulnerability Lab
Laboratory [Research Team] - Benjamin Kunz Mejri (b...@evolution-sec.com) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either

[FD] File Pro Mini v5.2 iOS - Multiple Web Vulnerabilities

2015-01-16 Thread Vulnerability Lab
) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability

[FD] Barracuda Cloud Series - Filter Bypass Vulnerability (ID 731)

2015-02-11 Thread Vulnerability Lab
as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any case of damage, including direct, indirect, incidental

[FD] BlinkSale Bug Bounty #1 - Encode Validation Vulnerability

2015-02-11 Thread Vulnerability Lab
) [www.vulnerability-lab.com] Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability

[FD] Facebook Bug Bounty #23 - Session ID CSRF Vulnerability

2015-02-11 Thread Vulnerability Lab
Balhis (https://www.facebook.com/joe.balhis) Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability

[FD] Pandora FMS v5.1 SP1 - SQL Injection Web Vulnerability

2015-02-11 Thread Vulnerability Lab
: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers

[FD] T-Mobile Internet Manager - DLL Hijacking (mfc71enu.dll)

2015-02-11 Thread Vulnerability Lab
vulnerability in the mfc71enu.dll is estimated as medium. (CVSS 5.6) Credits Authors: == metacom Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either

[FD] Mangallam CMS - SQL Injection Web Vulnerability

2015-01-26 Thread Vulnerability Lab
Team - P0!s0nC0d3 Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability

[FD] ZTE Datacard MF19 0V1.0.0B PCW - Multiple Vulnerabilities

2015-01-06 Thread Vulnerability Lab
are estimated as high. (CVSS 6.0) Credits Authors: == Hadji Samir s...@hotmail.fr Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed

[FD] Heroku API Bug Bounty #1 - Persistent Invitation Vulnerability

2015-01-11 Thread Vulnerability Lab
: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable in any

[FD] Sitefinity Enterprise v7.2.53 - Persistent UI Vulnerability

2015-01-13 Thread Vulnerability Lab
Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab

[FD] Swiss File Knife v1.7.4 HTTP - Buffer Overflow Vulnerability

2015-02-28 Thread Vulnerability Lab
: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers

[FD] DSS TFTP 1.0 Server - Path Traversal Vulnerability

2015-02-26 Thread Vulnerability Lab
: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability and capability for a particular purpose. Vulnerability-Lab or its suppliers are not liable

[FD] Data Source: Scopus CMS - SQL Injection Web Vulnerability

2015-02-26 Thread Vulnerability Lab
- (http://www.guardiran.org) Disclaimer Information: = The information provided in this advisory is provided as it is without any warranty. Vulnerability Lab disclaims all warranties, either expressed or implied, including the warranties of merchantability

  1   2   3   4   5   6   7   >