exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 1 of 1 RSS Feed

Files

VMware Security Advisory 2010-0012
Posted Jul 20, 2010
Authored by VMware | Site vmware.com

VMware Security Advisory - The default version of the Jetty Web server in Update Manager is version 6.1.6 for which the following relevant vulnerabilities are reported. A directory traversal vulnerability in Jetty allows for obtaining files from the system where Update Manager is installed by a remote, unauthenticated attacker. The attacker would need to be on the same network as the system where Update Manager is installed. A cross-site scripting vulnerability in Jetty allows for running JavaScript in the browser of the user who clicks a URL containing a malicious request to Update Manager. For an attack to be successful the attacker would need to lure the user into clicking the malicious URL.

tags | advisory, remote, web, javascript, vulnerability, xss
advisories | CVE-2009-1523, CVE-2009-1524
SHA-256 | 71229e8375725c682b9b8bc4687d11565e6aad277b5be549585f83274690850b
Page 1 of 1
Back1Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Dozens Of Popular Minecraft Mods Found Infected With Fracturiser Malware
Posted Jun 8, 2023

tags | headline, hacker, malware, microsoft, backdoor
VMware Discloses Trio Of High Severity Bugs In Network Monitoring Tool
Posted Jun 8, 2023

tags | headline, flaw
Hacker Attempts To Exploit Old And New Bugs Up 55%
Posted Jun 8, 2023

tags | headline, hacker, flaw
People Are Pirating GPT-4 By Scraping Exposed API Keys
Posted Jun 8, 2023

tags | headline, hacker, cybercrime, data loss, botnet, fraud, password, pirate
Deepfakes Of Victims Used In Sextortion Attacks Spike, FBI Warns
Posted Jun 7, 2023

tags | headline, privacy, cybercrime, fraud, fbi
BBC, BA, And Boots Issued With Ultimatum By Cyber Gang Clop
Posted Jun 7, 2023

tags | headline, hacker, malware, britain, data loss, cryptography
What's Really Changed 10 Years After The Snowden Revelations
Posted Jun 7, 2023

tags | headline, government, usa, russia, data loss, spyware, backdoor, nsa
ByteDance Accused Of Helping China Spy On Hong Kong Activists
Posted Jun 7, 2023

tags | headline, government, china, spyware, social
Crypto Catastrophe Stikes Some Atomic Wallet Users, Over $35 Million Thought Stolen
Posted Jun 6, 2023

tags | headline, hacker, bank, data loss, fraud, cryptography
Microsoft To Pay $20m For Child Privacy Violations
Posted Jun 6, 2023

tags | headline, government, privacy, microsoft, usa
View More News →
packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close