Skip to content
Klikki Oy
Search for:
X
Search for:
X

WordPress comment exploit published

The Russian blog Habrahabr has published (translation) a proof of concept exploit for the WordPress bug reported by Klikki on November 20. The blog also reports

Read More

December 1, 2014February 3, 2023 klikki
security wordpress

WordPress 3 core unauthenticated stored XSS

Overview A security flaw in WordPress 3 allows injection of JavaScript into certain text fields. In particular, the problem affects comment boxes

Read More

November 20, 2014February 3, 2023 klikki
security wordpress

Kaikki yleisesti käytössä olevat WordPress-versiot haavoittuvia

Klikki Oy on havainnut WordPress-sisällönhallintajärjestelmässä haavoittuvuuden, joka mahdollistaa ulkopuoliselle ohjelmakoodin syöttämisen WordPress-blogikirjoituksiin ja -sivuihin. Ainakin ohjelmiston kaikki 3-versiot, joita asennuksista on noin

Read More

November 3, 2014February 3, 2023 klikki
security wordpress

Facebook fb:silverlight stored XSS

Overview Facebook is a free-access social networking website with over 100 million active users. Facebook allows anyone to develop web applications to

Read More

July 19, 2008February 3, 2023 klikki
security

Facebook stored XSS vulnerabilities

This is a summary of various Facebook security issues (script injection, persistent XSS) found and reported since June 16, 2008. As of

Read More

July 3, 2008February 3, 2023 klikki
security

Lotus Notes Java Applet vulnerabilities

Overview Lotus Notes is a groupware/e-mail system developed by Lotus Software. Due to its security and collaboration features it’s used particularly by

Read More

October 6, 2006February 3, 2023 klikki
security

Java Web Start argument injection vulnerability

Overview Java Web Start is a technology for easy client-side deployment of Java applications. “Using Java Web Start technology, standalone Java software

Read More

March 18, 2005February 3, 2023 klikki
security

Internet Explorer security zone spoofing with encoded URLs

Overview The method used for Windows security zone evaluation fails when characters in the URL are encoded in a certain way. Internet

Read More

February 8, 2005February 3, 2023 klikki
security

Java Plugin arbitrary package access vulnerability

Overview Sun Microsystem’s Java Plugin connects the Java technology to web browsers and allows the use of Java Applets. Java Plugin technology

Read More

November 23, 2004February 3, 2023 klikki
security

Microsoft Help and Support Center argument injection vulnerability

Overview “Help and Support Center (HSC) is a feature in Windows that provides help on a variety of topics” (from www.microsoft.com). It

Read More

April 13, 2004February 3, 2023 klikki
security

Posts navigation

Previous 1 … 3 4 5 Next
  • media
  • security
  • Kiekko.tk
  • TyperA
Powered by WordPress

All rights reserved © Klikki Fast Press Theme by Seos Themes