RCE Security
  • Home
  • About
  • Contact Us
  • Services
  • Research
Select Page

Magix Bug Bounty: magix.com (RCE, SQLi) and xara.com (LFI, XSS)

by Julien Ahrens | Saturday, April 26, 2014 | Advisory

The German Magix Software GmbH rewarded me with a Hall of Fame listing and a free Magix Music Maker 2014 Premium license for my reports of several serious security issues in the online infrastructures of magix.com and xara.com, which...

CVE-2014-2087: Free Download Manager CDownloads_Deleted:: UpdateDownload() Remote Code Execution

by Julien Ahrens | Thursday, March 13, 2014 | Advisory, Exploit

I’ve discovered another 0day Remote Code Execution flaw in a CNET.com Top10 software of its category, which has been downloaded more than 6 million times right now. Affected Versions and CVSS I’ve successfully verified the vulnerability in the following...

Mandriva, Netcup, Teamdrive and Wallstreet-Online Fix XSS Vulnerabilities

by Julien Ahrens | Tuesday, January 21, 2014 | Advisory

It’s 2014 and I have to tidy up my discovery archive a bit 😉 . Before joining the Internetwache.org project I have coordinated all found vulnerabilities by myself and these are the last ones which have been fixed in late 2013. All further website-based...

CVE-2013-6356: Avira Secure Backup v1.0.0.1 Buffer Overflow – Anatomy of a Vulnerability

by Julien Ahrens | Saturday, November 16, 2013 | Advisory, Exploit

Hello Followers, Avira is one of the leading Anti-Virus vendors and also the biggest one in Germany. Security is their daily business and they’ve done a quite nice job in hardening their products. But even the toughest software may be broken sometimes ;-). So,...

CVE-2013-5702: Watchguard Server Center v11.7.4 Multiple XSS Vulnerabilities

by Julien Ahrens | Monday, October 21, 2013 | Advisory

Great news from the vulnerability front! I’m happy to see that the quality of vulnerability coordination with Watchguard evolved to my satisfaction during the past few months and the following new vulnerability disclosure proves that. Reported –>...

CVE-2013-5701: Watchguard Server Center v11.7.4 wgpr.dll Local Privileges Escalation Vulnerability

by Julien Ahrens | Sunday, September 8, 2013 | Advisory, Exploit

Hello readers, this is my first article in a series about vulnerabilities in Watchguard products. Watchguard is a self-proclaimed NextGen Security vendor building security appliances for complete network protection. As I am working with Watchguard products for around...
« Older Entries
Next Entries »
  • X
  • RSS

Designed by Elegant Themes | Powered by WordPress