New User, Welcome!     Login

Asia Pacific

Security-Assessment.com WhitePaper/Addendum: Cross Context Scripting with Firefox & Exploiting Cross Context Scripting vulnerabilities in Firefox

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom.


-- 
Roberto Suggi Liverani

Yoono Firefox Extension - Privileged Code Injection

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom.





Multiple Adobe Products - XML External Entity And XML Injection Vulnerabilities

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom.

Roberto Suggi Liverani



Security-Assessment.com Advisory: Oracle JRE - java.net.URLConnection class - Same-of-Origin (SOP) Policy Bypass

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom.

Roberto Suggi Liverani



Security-Assessment.com Advisory: BroadWorks Call Detail Record Disclosure Vulnerability

Security-Assessment.com is a New Zealand based world leader in web
application testing,
network security and penetration testing. Security-Assessment.com
services organisations
across New Zealand, Australia, Asia Pacific, the United States and the
United Kingdom.





Feed Sidebar Firefox Extension - Privileged Code Injection

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom.





Update Scanner - Firefox Extension - Chrome Privileged Code Injection

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom. 

Roberto Suggi Liverani



WizzRSS Firefox Extension - Privileged Code Injection

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom.



ChemViewX v1.9.5 ActiveX Control Mutliple Stack Overflows

This advisory is also available from our website:
http://www.security-assessment.com/files/advisories/2010-02-11_ChemviewX_Activex.pdf

Security-Assessment.com is a New Zealand based world leader in web application testing, network security
and penetration testing. Security-Assessment.com works with organisations across New Zealand, Australia,
Asia Pacific, the United States and the United Kingdom.


CoolPreviews - Firefox Extension - Chrome Privileged Code Injection

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom.

Roberto Suggi Liverani



ScribeFire Firefox Extension - Privileged Code Injection

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom.



Cart32 Arbitrary File Download Vulnerability

== About Security-Assessment.com ==

Security-Assessment.com is Australasia's leading team of Information 
Security consultants specialising in providing high quality Information 
Security services to clients throughout the Asia Pacific region. Our 
clients include some of the largest globally recognised companies in 
areas such as finance, telecommunications, broadcasting, legal and 
government. Our aim is to provide the very best independent advice and 
a high level of technical expertise while creating long and lasting 
professional relationships with our clients.

Security-Assessment.com Advisory: Destination Search Admin Console Access Control Bypass

|About Security-Assessment.com|
+-----------------------------+

Security-Assessment.com is Australasia's leading team of Information
Security consultants specialising in providing high quality Information
Security services to clients throughout the Asia Pacific region. Our
clients include some of the largest globally recognised companies in
areas such as finance, telecommunications, broadcasting, legal and
government. Our aim is to provide the very best independent advice and a
high level of technical expertise while creating long and lasting
professional relationships with our clients.

SugarCRM Community Edition Local File Disclosure Vulnerability

== About Security-Assessment.com ==

Security-Assessment.com is Australasia's leading team of Information 
Security consultants specialising in providing high quality Information 
Security services to clients throughout the Asia Pacific region. Our 
clients include some of the largest globally recognised companies in 
areas such as finance, telecommunications, broadcasting, legal and 
government. Our aim is to provide the very best independent advice and 
a high level of technical expertise while creating long and lasting 
professional relationships with our clients.

Multiple Flash Authoring Heap Overflows - Malformed SWF Files

======================== About Security-Assessment.com =================

Security-Assessment.com is Australasia's leading team of Information Security consultants
specialising in providing high quality Information Security services to clients throughout
the Asia Pacific region. Our clients include some of the largest globally recognised
companies in areas such as finance, telecommunications, broadcasting, legal and government.
Our aim is to provide the very best independent advice and a high level of technical
expertise while creating long and lasting professional relationships with our clients.

Security-Assessment.com is committed to security research and development, and its team

Malformed Acrobat Distiller 8 .joboptions

== About Security-Assessment.com ==
Security-Assessment.com is New Zealand's leading team of Information 
security consultants specialising in providing high quality Information
and
Security services to clients throughout the Asia Pacific region.
Our clients include some of the largest globally recognised companies in
areas such as finance, telecommunications, broadcasting, legal and
government. Our aim is to provide the best independent advice
and a high level of technical expertise while creating long and lasting
professional relationships with our clients.

OWASP ZAP 1.4.0 released

And a load of bugfixes!

For more information and to download this release please visit the ZAP
homepage: https://www.owasp.org/index.php/ZAP

I will also be talking about ZAP at the OWASP AppSec Asia Pacific
conference on Saturday 14th April:
https://www.owasp.org/index.php/AppSecAsiaPac2012#Track_Session_Speakers
- please come over and say hi!

Many thanks to everyone who has contributed code, language files,

Malformed Acrobat Distiller 8 .joboptions

== About Security-Assessment.com ==
Security-Assessment.com is New Zealand's leading team of Information 
security consultants specialising in providing high quality Information
and
Security services to clients throughout the Asia Pacific region.
Our clients include some of the largest globally recognised companies in
areas such as finance, telecommunications, broadcasting, legal and
government. Our aim is to provide the best independent advice
and a high level of technical expertise while creating long and lasting
professional relationships with our clients.



Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!