Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Onur Alanbel

#17858of 53,635
15Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2015-5926
5.0
2015-04-03
Citrix · Citrix Netscaler · CVE-2015-2841
**Name of the Vulnerable Software and Affected Versions** Citrix NetScaler versions 10.5 **Description** The issue allows remote attackers to bypass intended firewall restrictions by using a crafted Content-Type header. This can be achieved with specific Content-Types, such as `application/octet-stream` and `text/xml`. **Recommendations** For version 10.5, consider restricting or validating the Content-Type header to prevent bypassing of firewall restrictions. As a temporary workaround, restrict access to sensitive areas of the application protected by the NetScaler AppFirewall until a more permanent solution is available.
PT-2013-2173
10
2013-01-31
Miniupnp · Miniupnpd · CVE-2013-0230
**Name of the Vulnerable Software and Affected Versions** MiniUPnPd version 1.0 **Description** The issue is related to a stack-based buffer overflow in the ExecuteSoapAction function, which is part of the SOAPAction handler in the HTTP service. This allows remote attackers to execute arbitrary code by sending a long quoted method. **Recommendations** For MiniUPnPd version 1.0, consider disabling the ExecuteSoapAction function as a temporary workaround until a patch is available. Restrict access to the SOAPAction handler in the HTTP service to minimize the risk of exploitation.