Tag: Cross-site request forgery
You are here: Home \ Cross-site request forgery
The bugs include a reflected cross-site scripting glitch and a cross-site request forgery vulnerability.
Default configuration of WD’s My Cloud storage device keeps port open for unprivileged data exfiltration within a network.
ASUS updated the firmware in March of a number of its RT routers to address vulnerabilities found within the device’s native web interface.
Researchers at SEC Consult disclosed a command injection vulnerability in Ubiquiti Networks gear for ISPs after a private disclosure to the vendor in November went unresolved.
WordPress released version 4.7.3 which patches six vulnerabilities including one that could be chained with the REST API Endpoint vulnerability.
WordPress released version 4.7.3 which patches six vulnerabilities including one that could be chained with the REST API Endpoint vulnerability.
A vulnerability in Cisco’s meeting server software allows a remote attacker to masquerade as legit user.
A number of publicly disclosed vulnerabilities in Moxa networking gear won’t be patched until August, if at all, according to an alert published on Friday by the Industrial Control System Cyber Emergency Response Team (ICS-CERT). Researcher Joakim Kennedy of Rapid7 disclosed in March some details affecting critical flaws in Moxa NPort 6110 Modbus/TCP to serial...