Published Vulnerabilities

Mon
31
Mar

Dell SonicWALL Email Security 7.4.5 Cross-Site Scripting Vulnerability (ES746)

Dell SonicWALL Email Security version 7.4.5 cross-site scripting vulnerability

Multiple persistent input validation web vulnerabilities has been discovered in the official Dell SonicWall EMail Security Appliance v7.4.6 Web-Application.

Sun
06
Oct

Apple iOS 7.0.1 & 7.0.2 - Sim Lock Screen Display Bypass

Since the new iOS v7.0 got discovered, our team already discovered in january a secound local pass code bypass vulnerability in the iOS 6.1 & 6.2. This month we discover a new issue in the iOS v7.0.1 & v7.0.2 vulnerability. The issue affects the screen display mode when the sim card is locked by the iPhone or iPad device. At the end was able to bypass the locked screen display which is regular disabled.

The security vulnerability allows local attackers to bypass a restricted section of the phone application. The vulnerability is located in the iOS v7.0.1 & v7.0.2 when the `sim locked` mode is activated. The local attacker can redirect to the regular standard unlocked mode by using restricted functions with an unlock/ok popup box, calender hyper link + shutdown & home button.

Pages

Subscribe to RSS - Published Vulnerabilities