Oracle ADF < 12.1.2 – XML External Entity Injection (XXE) Vulnerability
Product & Service Introduction;
In computing, Oracle Application Development Framework, usually called Oracle ADF, provides a commercial Java framework for building enterprise applications. It provides visual and declarative approaches to Java EE development. It supports rapid application development based on ready-to-use design patterns, metadata-driven and visual tools.
Exploitation Technique;
Remote, Authenticated
Alcatel Lucent Home Device Manager – Management Console Multiple XSS (CVE-2015-8687)
Document Title: =============== Alcatel Lucent Home Device Manager - Management Console Multiple XSS CVE-Number: =========== CVE-2015-8687 Release Date: ============= 03 Jan 2016 Read the rest of this entry »
Moodle Login Bypass via Open-Session Folder
Hi,
Moodle login screen can bypass via hijacked(taken from session folder) sessionID.
Nokia Solutions and Networks @vantage – Multiple Reflected XSS (CVE-2015-6929)
Document Title: ============== Nokia Solutions and Networks @vantage - Multiple Reflected XSS Release Date: ============ 9 Sep 2015 Read the rest of this entry »
Huawei SEQ Analyst – Multiple Reflected Cross Site Scripting (XSS) Vulnerability (CVE-2015-2347)
#Document Title: =============== Huawei SEQ Analyst – Multiple Reflected Cross Site Scripting(XSS) #Release Date: ============= 15 Apr 2015 Read the rest of this entry »
- ← Previous
- 1
- 2
- 3
- …
- 6
- Next →