exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 14 of 14 RSS Feed

Files from Martin Braun

Email addressmartin.braun at open-xchange.com
First Active2013-03-14
Last Active2014-04-08
Open-Xchange AppSuite 7.4.2 XSS / Disclosure
Posted Apr 8, 2014
Authored by Martin Braun

Open-Xchange AppSuite versions 7.4.2 and below suffer from multiple password disclosure and cross site scripting vulnerabilities.

tags | advisory, vulnerability, xss, info disclosure
advisories | CVE-2014-2391, CVE-2014-2392, CVE-2014-2393
SHA-256 | 348cc4505b3feff5407c50da62d97a957b38975a969613b4950953a41d048bcb
Open-Xchange AppSuite 7.4.1 / 7.4.2 Cross Site Scripting
Posted Mar 18, 2014
Authored by Martin Braun

Open-Xchange AppSuite versions 7.4.1 and 7.4.2 suffer from a cross site scripting vulnerability.

tags | advisory, xss
advisories | CVE-2014-2077
SHA-256 | fa92825ba91c0472654c533544c6b2eb942b65f4321430779dddde151bb3a5a1
Open-Xchange 7.4.1 Script Insertion
Posted Feb 11, 2014
Authored by joernchen, Martin Braun

Open-Xchange AppSuite version 7.4.1 fails to properly neutralize javascript inserted at the header of an SVG image file.

tags | advisory, javascript
advisories | CVE-2014-1679
SHA-256 | 902503927eb1161ffb0b2ded9523ac54b5ca2dc0ca6eb132a17f1234f1998415
Open-Xchange AppSuite 7.4.1 XSS / Traversal
Posted Jan 17, 2014
Authored by Martin Braun

Open-Xchange AppSuite versions 7.4.1 and below suffer from script insertion and traversal vulnerabilities.

tags | advisory, vulnerability, xss, file inclusion
advisories | CVE-2013-7141, CVE-2013-7142, CVE-2013-7140, CVE-2013-7143
SHA-256 | f64894541784a5965d5e8dd55defafbccab9ab8f246cce119db4b1e2c9d56811
Open-Xchange AppSuite 7.4.0 Improper Neutralization
Posted Jan 6, 2014
Authored by Martin Braun

Open-Xchange AppSuite versions 7.4.0 and below suffer from script insertion vulnerabilities.

tags | advisory, vulnerability, xss
advisories | CVE-2013-6997
SHA-256 | dbc4c1995cb822c7610a9c9e1ecd9db78466216fdd80599d38483517d0e1dfff
Open-Xchange frontend6 6.22.4 / backend 7.4.0 Cross Site Scripting
Posted Nov 26, 2013
Authored by Martin Braun

Open-Xchange frontend6 and backend components suffer from cross site scripting vulnerabilities.

tags | advisory, vulnerability, xss
advisories | CVE-2013-6242
SHA-256 | 2ba2cbc9a883832dff4e72cc423bdd151e4c15a2909a181acd3f69ebb3b75e51
Open-Xchange AppSuite Script Insertion
Posted Nov 6, 2013
Authored by Martin Braun

Open-Xchange AppSuite versions prior to 7.4.0 fail to properly neutralize script code embedded within SVG files and also suffer from an information exposure vulnerability.

tags | advisory, xss
advisories | CVE-2013-6074, CVE-2013-6241
SHA-256 | 39e0180e7166549e3f32416ad6dcba8d15a526692b1b27889998d45ebd1eefe2
Open-Xchange AppSuite 7.x Cross Site Scripting
Posted Sep 30, 2013
Authored by Martin Braun

Open-Xchange AppSuite versions prior to 7.2.2 suffer from multiple script insertion vulnerabilities.

tags | advisory, vulnerability, xss
advisories | CVE-2013-5690
SHA-256 | 2aba5dc117224326084b059611da7da81490ea0864a710e358a670e17e8c5326
Open-Xchange AppSuite 7.2.2 Improper Authentication / Information Disclosure
Posted Sep 10, 2013
Authored by Martin Braun

Open-Xchange AppSuite versions 7.0.0 through 7.2.2 suffer from configuration issues, improper authentication, and information exposure vulnerabilities.

tags | exploit, vulnerability
advisories | CVE-2013-5200
SHA-256 | 393084afb3f746ac92087e7fb8bea6c43ddf19add07b5f609d261fad8e20ab06
Open-Xchange AppSuite 7.2.2 Race Condition
Posted Aug 16, 2013
Authored by Martin Braun

Open-Xchange AppSuite version 7.2.2 suffers from a race condition vulnerability.

tags | advisory
advisories | CVE-2013-5035
SHA-256 | 29dc634c735488b15be5d3c5505557afe8bba7b4881bed94b6d11caad980cbda
Open-Xchange AppSuite 7.2.2 Phishing / Data Injection
Posted Aug 1, 2013
Authored by Martin Braun

Open-Xchange AppSuite versions 7.2.2 and below suffer from phishing and data injection vulnerabilities.

tags | exploit, vulnerability
advisories | CVE-2013-4790
SHA-256 | 27b6927eddb258978d90051d0b1651046597ac49ff00741bc39f4c2130f9a7d4
Open-Xchange Server 6 Cross Site Scripting
Posted Jun 3, 2013
Authored by Martin Braun

Multiple cross site scripting vulnerabilities have been addressed in Open-Xchange Server 6.

tags | advisory, vulnerability, xss
advisories | CVE-2013-3106
SHA-256 | 38f5d840701796b2a31696211c071436c988be8266dff7c81100c20207b476a2
Open-Xchange 6 / OX AppSuite Cross Site Scripting
Posted Apr 17, 2013
Authored by Martin Braun

Multiple security issues for Open-Xchange Server 6 and OX AppSuite have been discovered and fixed. These range from cross site scripting to header injection.

tags | advisory, xss
advisories | CVE-2013-2582, CVE-2013-2583
SHA-256 | e2706921a9718e5f1888014c099073f64e4fae60be06edb06264c9b991a2542e
Open-Xchange 6 XSS / LFI / SSRF / Hashing
Posted Mar 14, 2013
Authored by Martin Braun

Open-Xchange version 6 suffers from cross site scripting, local file inclusion, HTTP header injection / response splitting, missing SSL enforcement, server-side request forging, insecure password hashing, and file permission vulnerabilities.

tags | exploit, web, local, vulnerability, xss, file inclusion
advisories | CVE-2013-1645, CVE-2013-1646, CVE-2013-1647, CVE-2013-1648, CVE-2013-1649, CVE-2013-1650, CVE-2013-1651
SHA-256 | 8be9974c5b91f42a1ca77eb417301430aea4147dc0179c425ee43fbe9ef5c36e
Page 1 of 1
Back1Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close