[FD] APPLE-SA-2022-01-12-1 iOS 15.2.1 and iPadOS 15.2.1

2022-01-12 Thread Apple Product Security via Fulldisclosure
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 APPLE-SA-2022-01-12-1 iOS 15.2.1 and iPadOS 15.2.1 iOS 15.2.1 and iPadOS 15.2.1 addresses the following issues. Information about the security content is also available at https://support.apple.com/HT213043. HomeKit Available for: iPhone 6s and

[FD] Reprise License Manager 14.2 - Reflected Cross-Site Scripting

2022-01-12 Thread Gionathan Reale via Fulldisclosure
# Product:  RLM 14.2 # Vendor:   Reprise Software # CVE ID:   CVE-2021-45422 # Vulnerability Title: Reflected Cross-Site Scripting # Severity: Medium # Author(s): Giulia Melotti Garibaldi # Date: 2022-01-11 # # Introduction: An issue

[FD] [RT-SA-2021-009] Credential Disclosure in Web Interface of Crestron Device

2022-01-12 Thread RedTeam Pentesting GmbH
Advisory: Credential Disclosure in Web Interface of Crestron Device When the administrative web interface of the Crestron HDMI switcher is accessed unauthenticated, user credentials are disclosed which are valid to authenticate to the web interface. Details === Product: Crestron