Multiple vendors web server source code disclosure (8.3 name format vulnerability - take II)

2002-05-20 Thread Ory Segal
ty - Take II) => Author: Ory Segal & Amit Klein - Sanctum inc. http://www.sanctuminc.com => Release date: 19/5/2002 (vendor was notified on 9/5/2002) => Vendor: General The following servers where found to be vulnerable: - Deerfield Website Pro 3.1.11.0 installed on Microsoft Wi

ColdFusion MX Cross Site Scripting vulnerability

2002-06-18 Thread Ory Segal
==> Macromedia ColdFusion MX Cross site scripting vulnerability <== => Author: Ory Segal, Sanctum Inc. => Release date: 18/06/2002 (vendor was notified at: 03/06/2002) => Vendor: Macromedia ( http://www.macromedia.com ) => Product: - Macromedia ColdFusion MX

VisNetic WebSite XSS vulnerability through HTTP referer header

2002-12-12 Thread Ory Segal
Visnetic WebSite XSS vulnerability through HTTP Referer header - => Author: Ory Segal - Sanctum inc. http://www.sanctuminc.com/ => Release date: 09/12/2002 => Vendor: Deerfield ( http://www.deer

cPanel Malicious HTML Tags Injection Vulnerability

2003-07-07 Thread Ory Segal
--- -[ cPanel Malicious HTML Tags Injection Vulnerability --- --[ Author: Ory Segal, Sanctum inc. http://www.SanctumInc.com --[ Discovery Date