Our public security advisories

Path traversal in TP-LINK WR740 and possibly others

TP-Link WR740 routers are vulnerable to a path traversal vulnerability on the web administration interface. Unauthenticated users are able to read any file from the device.

Posted on Jun 18, 2012 

Read full advisory»

Debugging shell with root privileges in routers TP-Link WR740

There is a hidden debugging shell with root privileges in routers TP-Link WR740.

Posted on Jun 18, 2012 

Read full advisory»

Huawei HG866 authentication bypass

The web management interface of Huawei HG688 routers has several pages which fail to validate the user's session. This allows an attacker to bypass the authentication both locally and remotely.

Posted on Jun 15, 2012 

Read full advisory»

Netgear Information Disclosure

Several NETGEAR devices are vulnerable to information disclosure via the web interface.

Posted on May 28, 2012 

Read full advisory»

PHP Self Cross Site Scripting in MantisBT 1.2.x

MantisBT installations 1.2.x up to 1.2.7 are vulnerable to Cross Site Scripting attacks due to lack of sanitation of the variable $_SERVER["PHP_SELF"]

Posted on Sep 13, 2011 

Read full advisory»

RSS Feed

Stay up to date on the latest security advisories released by Websec

Latest Blog Entries

Panoptic
An overview of Panoptic, an open source penetration testing tool that automates the process of search and retrieval of common log and config files through LFI vulnerabilities.
Posted in panoptic python tool lfi

Special discount code for "Nmap 6: Network Exploration and Security Auditing Cookbook"
PacktPub created a special discount code for our friends from HackerHalted
Posted in Nmap Hacker Halted nmap cookbook

Mac2WepKey HHG5xx for iPhone
The famous app to obtain the default WiFi passwords for Huawei routers is now available for the iPhone iOS 5.
Posted in HHG5xx iPhone huawei mac2wepkey passwords generator

Latest News

Oct 12, 2012
Websec at Hacker Halted USA 2012
Hacker Halted USA 2012 will reunite information security specialists from around the world to show the latest and most innovating research in the field of information security.

Sep 27, 2012
Nmap 6: Network Exploration and Security Auditing Cookbook is now on pre-sale!
The book "Nmap 6: Network Exploration and Security Auditing Cookbook" by Paulino Calderón is now on pre-sale and will be available soon.