New security tests, November 15, 2017: Image Resizer Exposure in .NET
Blog post from Detectify
A recent update has introduced a new set of vulnerabilities affecting various platforms, including Sitecore, HashiCorp Consul, and WordPress. The vulnerabilities encompass a range of issues such as information exposure in .NET affecting Sitecore and Episerver, exposure of MySQL and PostgreSQL history files, and several WordPress-specific vulnerabilities like SQL injection, object injection, authentication bypass, cross-site scripting (XSS), and server-side request forgery (SSRF). Specific vulnerabilities include phpMyFAQ XSS, WordPress simple-login-log SQL injection, and authenticated open redirects in BuddyPress, among others. Users are advised to conduct scans to determine if they are susceptible to these vulnerabilities.
No tracked trend matches for this post yet.
Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.