A buffer overflow was found in the MikroTik RouterOS SMB service when processing NetBIOS session request messages. Remote attackers with access to the service can exploit this vulnerability and gain code execution on the system. The overflow occurs before authentication takes place, so it is possible for an unauthenticated remote attacker to exploit it.
f596977ec0c838a1e24c8e7b3ba40756d8c45733524c4820e426799d27f008d3
Apache OFBiz versions 10.04.05 and below and 11.04.01 and below suffer from a reflected cross site scripting vulnerability. Full exploitation details provided.
de3b53f54188361189213bbc769aa0b03d6bdceb3374bb700d55cbda2a8f3328
Apache OFBiz versions 11.04.01 and 10.04.04 suffer from reflective cross site scripting vulnerabilities.
3c9f6192cc77dba64d6b0b5e7c44426c420c4b521505da89f12f97bfba4f3b24