Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Vladimir Kochetkov

Pesquisador dePositive Technologies Research Team
#20413de 53,635
12.5CVSS total
Vulnerabilidades · 2
Média
1
Alta
1
PT-2012-4451
7.5
2012-09-18
Siemens · Webnavigator · CVE-2012-3032
**Name of the Vulnerable Software and Affected Versions** Siemens WinCC versions 7.0 SP3 and earlier **Description** A SQL injection issue allows remote attackers to execute arbitrary SQL commands via a crafted SOAP message. This affects products that use WebNavigator in Siemens WinCC, such as SIMATIC PCS7. **Recommendations** For versions 7.0 SP3 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2012-2024
5.0
2012-07-26
Nginx · Nginx · CVE-2011-4963
**Name of the Vulnerable Software and Affected Versions** nginx/Windows versions 1.2.x through 1.2.0 and versions 1.3.x through 1.3.0 **Description** The issue allows remote attackers to bypass intended access restrictions and access restricted files. This can be achieved via a trailing . (dot) or certain "$index allocation" sequences in a request. **Recommendations** For versions 1.2.x through 1.2.0, update to version 1.2.1 or later. For versions 1.3.x through 1.3.0, update to version 1.3.1 or later.