Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Vladimir Kochetkov

Researcher fromPositive Technologies Research Team
#20452of 53,633
12.5Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2012-4451
7.5
2012-09-18
Siemens · Webnavigator · CVE-2012-3032
**Name of the Vulnerable Software and Affected Versions** Siemens WinCC versions 7.0 SP3 and earlier **Description** A SQL injection issue allows remote attackers to execute arbitrary SQL commands via a crafted SOAP message. This affects products that use WebNavigator in Siemens WinCC, such as SIMATIC PCS7. **Recommendations** For versions 7.0 SP3 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2012-2024
5.0
2012-07-26
Nginx · Nginx · CVE-2011-4963
**Name of the Vulnerable Software and Affected Versions** nginx/Windows versions 1.2.x through 1.2.0 and versions 1.3.x through 1.3.0 **Description** The issue allows remote attackers to bypass intended access restrictions and access restricted files. This can be achieved via a trailing . (dot) or certain "$index allocation" sequences in a request. **Recommendations** For versions 1.2.x through 1.2.0, update to version 1.2.1 or later. For versions 1.3.x through 1.3.0, update to version 1.3.1 or later.