Anti-Phishing Research, Tombstones

Sunday, December 11, 2011

SSO, XSS, CVE-2011-4745, PSA v10.3.1_build1013110726.09 os_RedHat el6, Billing Manager, CVE-2011-4746, CVE-2011-4747, CVE-2009-3555, CVE-2011-4748, CVE-2011-4749

CVE Assignment for SSO XSS and other vulns in PSA, Plesk Control Panel v10.3.1_build1013110726.09 os_RedHat el6, Billing Manager

http://xss.cx/examples/plesk-reports/plesk-parallels-controlpanel-psa.v.10.3.1_build1013110726.09.os_RedHat.el6-billing-system-plugin-javascript-injection-example-poc-report.html


Cross Site Scripting
CVE-2011-4745
CVE-2011-4746

SSL 2.0 deprecated protocol
CVE-2011-4746

SSL weak ciphers
CVE-2011-4747

TLS1/SSLv3 Renegotiation Vulnerability
CVE-2009-3555

Email address found
CVE-2011-4748

Password type input with autocomplete enabled
CVE-2011-4749

No comments:

Post a Comment