Websec.ca - Information Security Solutions https://www.websec.ca/rss es-ES Command Execution and Backdoor in Zhone GPON-2520 http://www.websec.ca/publication/Advisories/Zhone-GPON-2520-remote-root-shell-backdoor Thu, 18 Dec 2014 00:00:00 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/Zhone-GPON-2520-remote-root-shell-backdoor Huawei HG8245 / HG8247 WPA Generator http://www.websec.ca/publication/Advisories/Huawei-HG8245-and-HG8247-WPA-Generator Thu, 22 May 2014 23:49:29 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/Huawei-HG8245-and-HG8247-WPA-Generator Arbitrary Command Execution in Alcatel-Lucent I-240W-Q http://www.websec.ca/publication/Advisories/command-execution-in-Alcatel-Lucent-I-240W-Q Thu, 19 Dec 2013 16:54:48 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/command-execution-in-Alcatel-Lucent-I-240W-Q Huawei HG8245 backdoor and remote access http://www.websec.ca/publication/Advisories/Huawei-web-backdoor-and-remote-access Mon, 09 Dec 2013 21:21:57 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/Huawei-web-backdoor-and-remote-access Multiple vulnerabilities in ZPanel 10.0.1 http://www.websec.ca/publication/Advisories/multiple-vulnerabilities-zpanel-10.0.1 Fri, 18 Jan 2013 14:42:53 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/multiple-vulnerabilities-zpanel-10.0.1 Debugging shell with root privileges in routers TP-Link WR740 http://www.websec.ca/publication/Advisories/root-shell-tplink-wdr740 Mon, 18 Jun 2012 17:23:24 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/root-shell-tplink-wdr740 Path traversal in TP-LINK WR740 and possibly others http://www.websec.ca/publication/Advisories/path-traversal-vulnerability-tplink-wdr740 Sun, 17 Jun 2012 10:46:45 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/path-traversal-vulnerability-tplink-wdr740 Huawei HG866 authentication bypass http://www.websec.ca/publication/Advisories/Authentication_bypass_Huawei_HG866 Thu, 14 Jun 2012 13:20:50 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/Authentication_bypass_Huawei_HG866 Netgear Information Disclosure http://www.websec.ca/publication/Advisories/Netgear_information_disclosure Several NETGEAR devices are vulnerable to information disclosure via the web interface.

]]>
Sat, 26 May 2012 22:18:04 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/Netgear_information_disclosure
PHP Self Cross Site Scripting in MantisBT 1.2.x http://www.websec.ca/publication/Advisories/xss-vulnerabilities-mantisbt-1.2.x Tue, 13 Sep 2011 04:42:56 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/xss-vulnerabilities-mantisbt-1.2.x Anti-CSRF Filter Bypass SMF 2.0 / 1.1.14 http://www.websec.ca/publication/Advisories/SMF_CSRF_Filter_Bypass Tue, 23 Aug 2011 22:53:50 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/SMF_CSRF_Filter_Bypass Huawei EchoLife HG520 Remote Management CSRF http://www.websec.ca/publication/Advisories/WS10-12 Sat, 29 May 2010 17:22:53 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/WS10-12 Huawei EchoLife HG520c Information Disclosure http://www.websec.ca/publication/Advisories/Huawei-HG520c-3.10.18.x-information-disclosure Sun, 16 May 2010 22:01:43 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/Huawei-HG520c-3.10.18.x-information-disclosure Huawei EchoLife HG520 Remote Information Disclosure http://www.websec.ca/publication/Advisories/huawei-hg520-3.10.18.x-information-disclosure Thu, 13 May 2010 16:04:17 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/huawei-hg520-3.10.18.x-information-disclosure Huawei EchoLife HG520c Denial of Service & Unauthorized Factory Reset http://www.websec.ca/publication/Advisories/Huawei-HG520c-3.10.18.x-dos-and-device-reset Thu, 13 May 2010 15:51:05 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/Huawei-HG520c-3.10.18.x-dos-and-device-reset Croogo CMS 1.3 'Contact' and 'User' Module HTML Injection http://www.websec.ca/publication/Advisories/ws10-08-croogo_cms_1.3_xss_vulnerabilities Mon, 10 May 2010 10:24:41 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/ws10-08-croogo_cms_1.3_xss_vulnerabilities Croogo CMS 1.2 Cross Site Scripting Vulnerabilities http://www.websec.ca/publication/Advisories/Croogo_CMS_1.2_XSS_vulnerabilities.html Sat, 27 Feb 2010 21:23:35 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/Croogo_CMS_1.2_XSS_vulnerabilities.html OPENCONF CE 3.41 MULTIPLE XSS AND SQL http://www.websec.ca/publication/Advisories/openconf-ce-3.41-xss-sql Thu, 26 Nov 2009 22:09:47 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/openconf-ce-3.41-xss-sql ZenCart 1.3.8a Multiple XSS in Admin Interface http://www.websec.ca/publication/Advisories/zencart-1.3.8a-xss-vulnerabilities.html Mon, 16 Nov 2009 14:07:59 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/zencart-1.3.8a-xss-vulnerabilities.html D-Link WBR-1310 Cross-Site Scripting http://www.websec.ca/publication/Advisories/D-Link_WBR-1310_XSS_vulnerabilities.html Sun, 15 Nov 2009 17:09:43 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/D-Link_WBR-1310_XSS_vulnerabilities.html 2Wire Remote Denial of Service http://www.websec.ca/publication/Advisories/2wire_remote_denial_of_service.html Sun, 01 Nov 2009 13:03:14 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/2wire_remote_denial_of_service.html Commonspot CMS 5.1.0.x Cross Site Scripting vulnerabilities http://www.websec.ca/publication/Advisories/commonspot-5.1.0.x-xss-vulnerabilities.html Tue, 13 Oct 2009 17:29:24 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/commonspot-5.1.0.x-xss-vulnerabilities.html 2Wire Authentication Bypass and Unauthorized Password Reset http://www.websec.ca/publication/Advisories/2wire_auth_bypass_password_reset.html Mon, 12 Oct 2009 15:26:39 +0000 [email protected] (Websec) http://www.websec.ca/publication/Advisories/2wire_auth_bypass_password_reset.html