Published Vulnerabilities

Sun
28
May

Stack Buffer Overflow Zero Day Vulnerability uncovered in Microsoft Skype v7.2, v7.35 & v7.36

Stack Buffer Overflow Vulnerability in Skype v7.2, v7.35 & v7.36

Security researchers of the vulnerability laboratory core research team uncovered a critical vulnerability in skype v7.2, v7.35 & v7.36 for microsoft windows. The vulnerability was discovered during a team conference in skype, when a crash occured during an interaction by the usual suspect Benjamin Kunz Mejri. Benjamin is well known for discovering vulnerabilities in skype software. In the last years, his researches on the software mainly stucked and no new public vulnerabilities were uncovered until 2014. The new detected vulnerability has indeed a critical impact to local and remote skype users and is explained as followed.

Thu
10
Nov

Adobe Connect v9.5.6 - (CVE-2016-7851) Persistent Cross Site Vulnerability

Adobe Connect v9.5.6 - (CVE-2016-7851) Persistent Cross Site Vulnerability

About some month ago the pentester and security researcher Benjamin Kunz Mejri was pentesting for the adobe security department the actual upcoming "Connect" web services and web-application. Due to his active researcher the pentester discovered a persistent cross site scripting vulnerability in the Adobe Connect v9.5.6 software client. The issue was reported in april 2016 to Adobe via PSIRT and resolved in november 2016. The "Adobe Connect" web conferencing software service for windows offers immersive online meeting experiences for collaboration, virtual classrooms and large scale webinars.

Pages

Subscribe to RSS - Published Vulnerabilities