月度存档: 11月 2013

多个WordPress主题’themify-ajax.php’任意文件上传漏洞

Apache Roller OGNL表达式注入远程代码执行漏洞(CVE-2013-4212)

Google Gmail IOS Mobile Application – Persistent / Stored XSS

PHP-Nuke 8.2.4 – Multiple Vulnerabilities

MyBB Ajaxfs 2 Plugin – SQL Injection Vulnerability

FreeBSD ‘nand_ioctl()’ 函数本地信息泄露漏洞

JPEGView GIF图形处理”Image Top Position”符号扩展缓冲区溢出漏洞

Linux Kernel IPVS net/netfilter/ipvs/ip_vs_ctl.c栈缓冲区溢出漏洞

WordPress Make A Statement (MaS) Theme – CSRF Vulnerability

WordPress Amplus Theme – CSRF Vulnerability

WordPress Dimension Theme – CSRF Vulnerability

WordPress Euclid V1 Themes CSRF File Upload Vulnerability

Linux Kernel IP虚拟服务器栈缓冲区溢出漏洞

Symantec Altiris DS SQL Injection

WordPress Kernel Theme ‘upload-handler.php’任意文件上传漏洞

Juniper Networks JUNOS EmbedThis AppWeb web服务器跨站脚本漏洞

OWASP Java Encoder跨站脚本过滤器安全绕过漏洞

Apache Tomcat应用跨站请求伪造漏洞

Google Android签名验证安全绕过漏洞

ProjeQtOr ‘objectId’参数SQL注入漏洞

TinyMCE SQL注入漏洞

TinyMCE任意文件上传漏洞

WordPress Think Responsive Themes ‘upload_settings_image.php’任意文件上传漏洞

WordPress Think Responsive Themes ‘upload_settings_image.php’任意文件上传漏洞

Linux Kernel多个整数溢出漏洞

Linux Kernel ‘oz_cdev_write()’函数本地缓冲区溢出漏洞

WordPress This Way Theme ‘upload_settings_image.php’任意文件上传漏洞

McAfee Email Gateway未明任意命令执行漏洞