[MAGAZINE] [BUG BOUNTY] [HACKTIVITY] [SHOP] | |
Account [Registration]   Lab Role [Anonymous] Researcher: 778 Advisories: 849 Documents: 31 Videos: 156 Date: 05.09.2015 TZ: 09:42

[ Home ] [ Upcoming ] [ Mobile ] [ Vendor ] [ Web-Application ] [ Remote ] [ Local ] [ Websites ] [ Documents ] [ Videos ] [ ? ]

[ Mobile Vulnerabilities ]

D2015-08-20Photo Transfer (2) v1.0 iOS - Denial of Service Vulnerability3.4Remote1448Vulnerability-Lab
D2015-08-07Device Inspector v1.5 iOS - Command Inject Vulnerabilities5.7Local2557Vulnerability-Lab
D2015-07-27AdHocMate v1.0 iOS - Persistent Mail Encode Vulnerability3.8Local1319Vulnerability-Lab
D2015-07-20Airdroid iOS, Android & Win 3.1.3 - Persistent Vulnerability3.9Remote4436Hadji Samir
D2015-07-06UDID+ v2.5 iOS - Mail Command Inject Vulnerability5.7Local1829Vulnerability-Lab
D2015-07-01WK UDID v1.0.1 iOS - Command Inject Vulnerability5.6Local1856Vulnerability-Lab
D2015-06-30FCS Scanner v1.0 & v1.4 - Command Inject Vulnerability5.9Local1620Vulnerability-Lab
D2015-05-19HiDisk 2.4 iOS - (FolderPath) Persistent Vulnerability3.5Remote3011Vulnerability-Lab
D2015-05-18OYO File Manager 1.1 iOS&Android - Multiple Vulnerabilities6.9Remote2295Vulnerability-Lab
D2015-05-13iClassSchedule 1.6 iOS & Android - Persistent Vulnerability3.4Remote2197Kathrina SL
D2015-05-12Wireless Photo Transfer v3.0 iOS - File Include Vulnerability6.5Remote2293Vulnerability-Lab
D2015-05-07Album Streamer v2.0 iOS - Directory Traversal Vulnerability6.6Remote2351Vulnerability-Lab

[ Vendor Vulnerabilities ]

D2015-09-04Shopify Bug Bounty #8 - (FilePath) Persistent Vulnerability4.1Remote356Hadji Samir
D2015-09-03Yahoo Bug Bounty #32 - CSRF bulkImport Web Vulnerability3.8Remote3653Hadji Samir
D2015-09-02PayPal Inc - SecApproval & 2FA Auth Bypass Vulnerability6.1Remote7761Benjamin K.M.
D2015-08-28PayPal Bug Bounty #119 - Stored Cross Site Vulnerability4.2Remote1441Ebrahim Hegazy
D2015-08-17UBNT Bug Bounty #1 - CS Cross Site Scripting Vulnerability2.8Remote6862Hadji Samir
D2015-08-11UBNT Bug Bounty #3 - Persistent Filename Vulnerability4.2Remote9358Hadji Samir
D2015-07-27Apple iTunes & AppStore - Persistent Invoice Vulnerability5.9Remote9433Vulnerability-Lab
D2015-07-15FoxyCart Bug Bounty #1 - Bypass & Persistent Vulnerability3.4Remote5811Benjamin K.M.
D2015-07-02Ebay Inc Magento Bug Bounty #16 - CSRF Web Vulnerability2.5Remote5609Hadji Samir
D2015-06-30Ebay Magento Bug Bounty #14 - Persistent Vulnerability3.8Remote5002Hadji Samir
D2015-06-30Pinterest Bug Bounty #1 - Persistent CNAME Vulnerability3.3Remote9366Benjamin K.M.
D2015-06-17Ebay Magento Bug Bounty #12 - CSRF Web Vulnerability2.5Remote5831Hadji Samir

[ Web Application Vulnerabilities ]

D2015-09-04Virtual Freer v1.57 - Authentication Bypass Vulnerability8.9Remote435Mohammad Reza
D2015-08-26LinuxOptic CMS 2009 - Auth Bypass Session Vulnerability8.1Remote1114Aaditya Purani
D2015-08-25Dogma India dogmaindia CMS - Auth Bypass Vulnerability8.1Remote1140Aaditya Purani
D2015-08-20WebSolutions India Design CMS - SQL Injection Vulnerability8.7Remote1245Danger Security Team
D2015-08-12bizidea Design CMS 2015Q3 - SQL Injection Vulnerability8.7Remote1870Danger Security Team
D2015-07-23ThaiWeb CMS 2015Q3 - SQL Injection Web Vulnerability8.6Remote2756GuardIran Security
D2015-07-02eSolutions HTTP Live Headers 1.0.6 - Cross Site Vulnerability3.3Remote2059Hadji Samir
D2015-06-22ManageEngine Asset Explorer v6.1 - Persistent Vulnerability3.5Remote4646Alain Homewood
D2015-06-19ManageEngine SupportCenter 7.90 - Multiple Vulnerabilities6.9Remote3075Alain Homewood
D2015-05-18CRUCMS Crucial Networking - SQL Injection Vulnerability8.2Remote3110kj-fido
D2015-05-13Web India Solutions CMS 2015 - SQL Injection Vulnerability8.3Remote5512kj-fido
D2015-05-08Pimcore v3.0.5 CMS - Multiple Web Vulnerabilities6.2Remote2827Alain Homewood

[ Remote Vulnerabilities ]

D2015-09-03Zhone ADSL2+ 4P Bridge&Router - Multiple Vulnerabilities8.8Remote660Mahmoud Khaled
D2015-08-16PDF Shaper v3.5 - (MSF) Buffer Overflow Vulnerability7.9Remote813metacom
D2015-08-15MS HTA (HTML Application) - Code Execution (MS14-064)9.3Remote1089Reza Espargham
D2015-06-16ZTE ZXV10 W300 v3.1.0c_DR0 - UI Session Vulnerability6Remote3700Hadji Samir
D2015-05-30Apple iOS 8.0.3 - Silent VCF & iMessage DoS Vulnerability4Remote8575Benjamin K.M.
D2015-02-27Swiss File Knife v1.7.4 HTTP - Buffer Overflow Vulnerability8.4Remote3177lucyoa
D2015-02-26DSS TFTP 1.0 Server - Path Traversal Vulnerability6.2Remote3064lucyoa
D2014-12-05NASA Orion - Bypass, Persistent Issue & Embed Code Exec6Remote9311Benjamin K.M.
D2014-08-29WWW File Share Pro v7.0 - Denial of Service Vulnerability4.2Remote6553Ateeq Khan
D2014-04-07BlueMe Bluetooth v5.0 iOS - Code Execution Vulnerability8.2Remote9502Vulnerability-Lab
D2014-04-06Bluetooth Text Chat v1.0 iOS - Code Execution Vulnerability8.1Remote9646Benjamin K.M.
D2013-10-25Feeder.co RSS Feeder 5.2 Chrome - Persistent Vulnerability3.8Remote10154Ateeq Khan

[ Local Vulnerabilities ]

D2015-08-20ChiefPDF Software v2.x - Buffer Overflow Vulnerability7.3Local1094metacom
D2015-06-29Blueberry Express v5.9.x - Buffer Overflow Vulnerability6.4Local1570Ateeq Khan
D2015-06-051 Click Extract Audio v2.3.6 - Activex Buffer Overflow6.1Local1843metacom
D2015-06-041 Click Audio Converter v2.3.6 - Activex Buffer Overflow6.1Local1750metacom
D2015-06-03Jildi FTP Client 1.5.2 b1138 - Buffer Overflow Vulnerability6.2Remote1757metacom
D2015-06-01WebDrive 12.2 (B4172) - Buffer Overflow Vulnerability6.8Remote1816metacom
D2015-05-19Eisbär SCADA (All Versions) - Persistent UI Vulnerability5.2Local3535Vulnerability-Lab
D2015-05-19Staff FTP v3.04 Software - DLL Hijacking Vulnerability6Local2132metacom
D2015-05-18WISE-FTP Software v8.0.2 - DLL Hijacking Vulnerability6Local2029metacom
D2015-05-04HUAWEI MobiConnect 23.9.17.216 - Privilege Escalation6.7Local9294Hadji Samir
D2015-03-02Apple iOS 8.0 - 8.0.2 - Controls Re Auth Bypass Vulnerability5.2Local13216Vulnerability-Lab
D2015-01-29T-Mobile Internet Manager - DLL Hijacking (mfc71enu.dll)5.6Local3878metacom

[ Website Vulnerabilities ]

D2015-08-13Apple Support - Permission Exception Web Vulnerability3.3Remote3723Hadji Samir
D2015-08-12Apple Consultants - Client Side Cross Site Vulnerability3.3Remote3965Hadji Samir
D2015-08-11Apple iTunes U - Persistent POST Inject Web Vulnerability3.7Remote3741Hadji Samir
D2015-08-10T Mobile Business - CS Cross Site Scripting Vulnerability2.5Remote5725Murat Yilmazlar
D2015-08-07Ferrari - PHP CGI Argument Injection (RCE) Vulnerability9.2Remote1332Kieran Claessens
D2015-07-10AirDroid ID - Client Side JSONP Callback Vulnerability5.6Remote2143Hadji Samir
D2015-04-24Cisco (Newsroom) - CS Cross Site Scripting Vulnerability2.5Remote2320Hadji Samir
D2014-08-28Avira License - Cross Site Request Forgery Vulnerability3.4Remote7099Mazen Gamal
D2014-07-17Microsoft MSN HBE - TB Blind SQL Injection Vulnerability9.1Remote15251Ateeq Khan
D2014-06-17Secunia.com CSI/VIM - Persistent Validation Vulnerabilities3.9Remote9749Benjamin K.M.
D2014-03-05SonicWall Backend Server - CS Cross Site Web Vulnerability2Remote11331Benjamin K.M.
D2014-02-21CNNVD Gov CN #1 - Filter Bypass & Persistent Vulnerability5.5Remote10988Benjamin K.M.

[ IT-Security Documents ]

D2015-08-09Bettercap - New MITM Framework3.5Tutorial1413Rajivarnan R.
D2015-01-30Glibc Ghost Vulnerability (CVE-2015-0235) - How to Secure6.8Report3844Rajivarnan R.
D2014-07-29Wickr Announcement - Bug Bounty Program 2014RReport7626Wickr Security
D2014-05-12Vulnerable Workers in Uncertain Times - 4th Conference CFPRReport11330ADAPT IT
D2014-04-09HeartBleed SSL CVE 20140160 - 10 Steps to Fix in UbuntuRReport9342Vulnerability-Lab
D2014-03-26ES746 Support-Bulletin - EMS Vulnerability Resolved3.5Bulletins9157Vulnerability-Lab
D2014-03-13RFP - External Network Vulnerability Assessment & PenTestRReport9202Ismail Kaleem
D2014-01-31HackInTheBox Quartal Magazine - eZine Issue 10RMagazin9177HITB TEAM
D2013-05-28Filter Evasion and Bypass Methods - Pentest MagazineRReport14988Vulnerability-Lab
D2012-11-30HackInTheBox Quartal Magazine - eZine Issue 09RMagazin11712HITB TEAM
D2012-11-26Security in a serious way [THN] - eZine Issue 014RMagazin11448THN TEAM
D2012-06-16Malware Magazine [THN] - eZine Issue 012RMagazin11937THN TEAM

[ IT-Security Videos ]

D2015-09-02PayPal - Mobile Security Approval Auth Bypass Vulnerability6.1Remote7232Benjamin K.M.
D2015-08-28PayPal Bug Bounty #119 - Stored Cross Site Vulnerability4.2Remote1091Ebrahim Hegazy
D2015-08-25PayPal Notify - Cross Site Request Forgery Vulnerability3.2Remote1092Paresh Parmar
D2015-08-13Shopify - Persistent Embed POST Inject Vulnerability3.8Remote2619Vulnerability-Lab
D2015-08-11UBNT Bug Bounty #3 - Persistent Filename Vulnerability4.2Remote6454Hadji Samir
D2015-08-07Ferrari Online Service - (PHP) Remote Commend Injection9.2Remote1209Kieran Claessens
D2015-07-27Apple iTunes & AppStore - Persistent Store Vulnerability5.9Remote4619Vulnerability-Lab
D2015-07-10VK Community - Filter Bypass & Persistent Vulnerability3.9Remote3456Vulnerability-Lab
D2015-06-29Blueberry Express v5.9.x - Buffer Overflow Vulnerability6.4Local1475Vulnerability-Lab
D2015-06-19Tango FTP Software v1.0 - Activex Heap Spray Exploit6.6Local1324metacom
D2015-06-18Tango DropBox v3.1 PRO - ActiveX Heap Spray Exploit6.6Local1244metacom
D2015-06-17Ebay Inc Magento #10 - Persistent Filename Vulnerability3.7Remote4120Hadji Samir

[ Search ] [ News ] [ Submit ] [ Stats ] [ Team ] [ Partner ] [ Talks & Workshop ] [ Subscribe ] [ Customer ] [ Contact ] [ Impressum ]


[Statistics] [Hacktivity] [September] 6 Critical: 0 High: 4 Medium: 2 Low: 0 Best Researcher: [Hadji Samir] Threat:

© EVOLUTION SECURITY GmbH ™