Time |
Event |
4:44a |
|
4:18p |
|
4:19p |
|
4:22p |
|
4:23p |
Red Hat CloudForms Management Engine 5.1 miq_policy/explorer SQL Injection http://packetstormsecurity.com/files/124609/cfme_manageiq_evm_pass_reset.rb.txt This Metasploit module exploits a SQL injection vulnerability in the "explorer" action of "miq_policy" controller of the Red Hat CloudForms Management Engine 5.1 (ManageIQ Enterprise Virtualization Manager 5.0 and earlier) by changing the password of the target account to the specified password. |
4:26p |
IBM Web Content Manager XPath Injection http://packetstormsecurity.com/files/124611/SA-20131227-0.txt IBM Web Content Manager versions 6.x, 7.x, and 8.x suffer from blind XPath injection attacks. This allows an attacker to get current application configuration, enumerate nodes, and extract other valuable information from vulnerable installations of Web Content Manager. |
4:32p |
|
5:33p |
|