PHPCollab version 2.5 fails to properly block access to data on the system.
bc86a1653dea13519ffa3cf29b1445e8Drupal Ubercart Product Keys third party module version 6.x suffers from an access bypass vulnerability.
6e27f081259391a277539457310e5db4Liferay version 6.1 suffers from a circumvention issue when restricting access to ip blocks. Proof of concept exploit included.
b45af907ccb22997e62ef3d74a4de98fDrupal Contact Forms third party module version 7.x suffers from an access bypass vulnerability.
cbd8adcc321fe8336fceb03ba9576d60Jibberbook version 2.3 suffers from an administrative bypass vulnerability.
f6764be4a1625347d8377e151c6a9d1dA user has discovered a severe security bug in Firefox related to websockets bypassing the SOCKS proxy DNS configuration. This means when connecting to a websocket service, your Firefox will query your local DNS resolver, rather than only communicating through its proxy (Tor) as it is configured to do.
3d0dc16b806e4802155630b7b630bde1Fortinet FortiWeb Web Application Firewall suffers from a policy bypass vulnerability.
61dfdcde6b9e51b01885b9c667f603abWebsense (Triton version 7.6) suffers from an authentication bypass vulnerability in the report management UI.
95c35e7dca133ded811d4ac9798a6f6fDrupal Linkit module version 7.x suffers from an access bypass vulnerability.
9bbe145ed7491ca1fc1927ed288e72abDrupal Spaces module version 6.x suffers from an access bypass vulnerability.
a0e65323a6feb362a5dea6546cb783cdMcAfee Web Gateway and Squid Proxy version 3.1.19 suffers from a bypass vulnerability due to putting trust in Host headers. Proof of concept tool included. Squid is only vulnerable to the attacks if the filtered site is using SSL.
2a72aa39ac2270394d6cad78bd6d074aFingerprint and Proximity Access Control suffers from a direct access bypass vulnerability.
457a7b37d1fa3906e687909a36811f20PHP versions 5.4 and 5.3 suffer from a deprecated eregi() memory_limit bypass vulnerability. Proof of concepts included.
0e2bd88a30f6eb4922b26eb8de7a90dcMcAfee Email and Web Security Appliance versions prior to 5.5 Patch 6, Email and Web Security 5.6 Patch 3, and McAfee Email Gateway 7.0 Patch 1 suffer from an access bypass vulnerability.
c2252b4480902fc219074848b7a2edecThe Drupal Organic Groups module version 6.x suffers from an access bypass vulnerability.
5181545f707dbaad8cabe1a599726bf5The Drupal Ubercart Views module version 6.x suffers from an access bypass vulnerability.
678aa5d5048edf0d6e94afb41bc4b8ebMicrosoft ASP.NET Forms versions 4.0.30319.237 and below suffer from an authentication bypass vulnerability.
74d23f9000afec3f9362934b375bf296Novatel MiFi 2352 suffers from a direct access to backup file vulnerability.
df0311c7a1a5039d0c09d2dee72b2c15Aruba Networks Security Advisory - This file encapsulates two different advisories for Aruba. An OS command injection vulnerability has been discovered in the Aruba Remote Access Point's Diagnostic Web Interface. When running the diagnostic web interface, arbitrary system commands can be executed as the root user on the Remote device by an unauthenticated attacker. An EAP-TLS 802.1X user authentication bypass vulnerability was discovered during standard internal bug reporting procedures in the Aruba Mobility Controller. This vulnerability only affects customers with EAP-TLS 802.1X local termination enabled.
160189ed43f67e75e99520e923033d40The Drupal Slidebox module version 7.x suffers from an access bypass vulnerability.
07f45805d636e668edea93ed22eea79bPrivaWall Antivirus suffers from an Office XML format evasion / bypass vulnerability. Versions 5.6 and below are affected.
7ae5b4e97291837a97f9c7491d82c766OneFileCMS versions up to 1.1.4 suffers from a direct access bypass vulnerability.
cd18254d85bf16061f68cdba50dc4c3aCoffeeCup Mail Testing suffers from an authentication bypass vulnerability.
19511edf10278dbf3d505aa7ad09891aZipCart version 6.x suffers from an access bypass vulnerability.
da0051d73b9160d001bdaafb0d37a99cThe D-Link DSL-2640B ADSL router suffers from a simple authentication bypass vulnerability by spoofing the MAC address of a logged in administrator.
3851cd4f4e001875aa05cb0f9955a4d4