secuvera-SA-2017-04: SQL-Injection Vulnerability in OCS Inventory NG ocsreports Web application

2018-04-10 Thread Simon Bieber
per replied proposing fix 2018/03/28 Developer contacted us to announce the upcoming release 2018/04/05 OCS Version 2.4.1 was released 2018/08/09 Release of the security advisory Credits Simon Bieber, secuvera GmbH sbie...@secuvera.de https://www.secuvera.de Thanks to: Mi

secuvera-SA-2017-03: Reflected Cross-Site-Scripting Vulnerabilities in OCS Inventory NG ocsreports Web application

2018-04-10 Thread Simon Bieber
ng fix 2018/03/28 Developer contacted us to announce the upcoming release 2018/04/05 OCS Version 2.4.1 was released 2018/08/09 Release of the security advisory Credits Simon Bieber, secuvera GmbH sbie...@secuvera.de https://www.secuvera.de Thanks to: Michael He

TC-SA-2013-01: Reflected Cross-Site-Scripting (XSS) vulnerability in e107 CMS v1.0.2

2013-04-03 Thread Simon Bieber
2013/03/04 proposed fix by vendor 2013/03/08 second proposed fix by vendor 2013/03/13 fix confirmed 2013/03/14 vendor released update 1.0.3 2013/04/03 Public disclosure Credits Simon Bieber (sbie...@tele-consulting.com) Tele-Consulting security networking training GmbH