WebApp Sec mailing list archives

Vulnerabilities within Mura CMS / Sitecore MCS / SmarterMail


From: Mark Litchfield <mark () securatary com>
Date: Tue, 28 Jan 2014 15:07:29 -0800

These vulnerabilities allow for a complete take over giving full administrative access as well as remote shells on the servers that they are installed on.

Each of these suffer from Insecure Direct Object Reference Vulnerabilities.

Due to the details of the attack and screen shots, they can be found at http://www.securatary.com/vulnerabilities

All the best

Mark Litchfield




This list is sponsored by Cenzic
--------------------------------------
Let Us Hack You. Before Hackers Do!
It's Finally Here - The Cenzic Website HealthCheck. FREE.
Request Yours Now! http://www.cenzic.com/2009HClaunch_Securityfocus
--------------------------------------


Current thread: