<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
<title>IT Security Solutions</title>
<link>http://www.itsecuritysolutions.org/</link>
<description>IT security tools and research.</description>
<language>en-us</language>
<pubDate>Thu, 23 Feb 2012 06:47:43 GMT</pubDate>
<generator>IT Security Solutions</generator>
<item>
<title>Privilege escalation and remote inter-protocol exploitation with EXTRACT 0.5.1</title>
<link>http://www.itsecuritysolutions.org/2011-12-16-Privilege-escalation-and-remote-inter-protocol-exploitation-with-EXTRACT-0.5.1/</link>
<description><p>Howdy folks. Today I'll be introducing you to the EXTRAnet Collaboration Tool (EXTRACT) 0.5.1. We'll explore leveraging EXTRACT to escalate privileges with a 0day bug. I'll also show you how you can enjoy some remote shell goodness thanks to inter-protocol exploitation (with some luck and a little user interaction).</p></description>
<pubDate>Fri, 16 Dec 2011 01:37:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-12-16-Privilege-escalation-and-remote-inter-protocol-exploitation-with-EXTRACT-0.5.1/</guid>
</item>
<item>
<title>Abusing browser news URL handlers</title>
<link>http://www.itsecuritysolutions.org/2011-09-18-Abusing-browser-news-URL-handlers/</link>
<description><p>Time for some more fun with browser URL handlers! This time we'll take a look into abusing the handlers for news/snews/nntp.</p></description>
<pubDate>Sun, 18 Sep 2011 11:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-09-18-Abusing-browser-news-URL-handlers/</guid>
</item>
<item>
<title>ActivDesk 3.0 multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2011-06-24-ActivDesk-3.0-multiple-security-vulnerabilities/</link>
<description><p>There are multiple security vulnerabilities in ActivDesk 3.0 which may allow an attacker to take control of the software.</p></description>
<pubDate>Fri, 24 Jun 2011 03:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-06-24-ActivDesk-3.0-multiple-security-vulnerabilities/</guid>
</item>
<item>
<title>iSupport 1.8 SQL Injection Vulnerability</title>
<link>http://www.itsecuritysolutions.org/2011-06-23-iSupport-1.8-SQL-Injection-Vulnerability/</link>
<description><p>There is a SQL Injection vulnerability in iSupport 1.8 which may allow an attacker to take control of the software.</p></description>
<pubDate>Thu, 23 Jun 2011 15:50:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-06-23-iSupport-1.8-SQL-Injection-Vulnerability/</guid>
</item>
<item>
<title>BrewBlogger 2.3.2 multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2011-06-23_BrewBlogger_2.3.2_multiple_security_vulnerabilities/</link>
<description><p>There are multiple security vulnerabilities in BrewBlogger 2.3.2 which may allow an attacker to take control of the software.</p></description>
<pubDate>Thu, 23 Jun 2011 09:30:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-06-23_BrewBlogger_2.3.2_multiple_security_vulnerabilities/</guid>
</item>
<item>
<title>iGiveTest 2.1.0 SQL Injection Vulnerability</title>
<link>http://www.itsecuritysolutions.org/2011-06-22-iGiveTest-2.1.0-SQL-Injection-Vulnerability/</link>
<description><p>There is an SQL Injection vulnerability in iGiveTest 2.1.0 which may allow an attacker to take control of the software.</p></description>
<pubDate>Wed, 22 Jun 2011 03:50:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-06-22-iGiveTest-2.1.0-SQL-Injection-Vulnerability/</guid>
</item>
<item>
<title>Bitcoin - fun, profit and anonymity on the wire - part 1</title>
<link>http://www.itsecuritysolutions.org/2011-05-20-Bitcoin-fun-profit-and-anonymity-on-the-wire-part-1/</link>
<description><p>Bitcoin - fun, profit and anonymity on the wire. A brief analysis of the BitCoin network.</p></description>
<pubDate>Fri, 20 May 2011 20:48:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-05-20-Bitcoin-fun-profit-and-anonymity-on-the-wire-part-1/</guid>
</item>
<item>
<title>DoceboLMS 4.0.4 multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2011-03-27_DoceboLMS_4.0.4_multiple_security_vulnerabilities/</link>
<description><p>There is a reflected Cross Site Scripting (XSS) vulnerability in DoceboLMS 4.0.4 which may allow an attacker to take control of the software. There are also numerous Full Path Disclosure vulnerabilities. Previous versions may also be affected.</p></description>
<pubDate>Sun, 27 Mar 2011 19:15:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-03-27_DoceboLMS_4.0.4_multiple_security_vulnerabilities/</guid>
</item>
<item>
<title>PHP Login 1.12 multiple vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2011-03-24_PHP_Login_1.12_multiple_vulnerabilities/</link>
<description><p>There are multiple Cross-Site Scripting (XSS) and Cross-Site Request Forgery (CSRF) vulnerabilities in PHP Event Calendar 1.4 which may allow an attacker to take control of the software if a user with admin privileges browses a malicious page while authorized.</p></description>
<pubDate>Thu, 24 Mar 2011 17:50:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-03-24_PHP_Login_1.12_multiple_vulnerabilities/</guid>
</item>
<item>
<title>PHP Event Calendar 1.4 multiple vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2011-03-24_PHP_Event_Calendar_1.4_multiple_vulnerabilities/</link>
<description><p>There are multiple Cross-Site Scripting (XSS) and Cross-Site Request Forgery (CSRF) vulnerabilities in PHP Event Calendar 1.4 which may allow an attacker to take control of the software if a user with admin privileges browses a malicious page while authorized.</p></description>
<pubDate>Thu, 24 Mar 2011 17:50:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-03-24_PHP_Event_Calendar_1.4_multiple_vulnerabilities/</guid>
</item>
<item>
<title>Cachelogic Expired Domains Script 1.0 multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2011-03-24_Cachelogic_Expired_Domains_Script_1.0_multiple_security_vulnerabilities/</link>
<description><p>There are multiple security vulnerabilities in Cachelogic Expired Domains Script 1.0 which may allow a remote attacker to take control of the software.</p></description>
<pubDate>Thu, 24 Mar 2011 17:18:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-03-24_Cachelogic_Expired_Domains_Script_1.0_multiple_security_vulnerabilities/</guid>
</item>
<item>
<title>KSearch 1.5b multiple Cross-Site Scripting Vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2011-03-20_KSearch_1.5b_multiple_Cross-Site_Scripting_Vulnerabilities/</link>
<description><p>There are two reflected Cross Site Scripting (XSS) vulnerabilities in KSearch 1.5b. Prior versions are presumably affected however only version 1.4 has been tested.</p></description>
<pubDate>Sun, 20 Mar 2011 22:50:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-03-20_KSearch_1.5b_multiple_Cross-Site_Scripting_Vulnerabilities/</guid>
</item>
<item>
<title>Webbased PEAR Package Manager 0.7.5 (Beta) multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2011-03-20_Webbased_PEAR_Package_Manager_0.7.5_(Beta)_multiple_security_vulnerabilities/</link>
<description><p>There are multiple security vulnerabilities in Webbased PEAR Package Manager 0.7.5 (Beta) which may allow an attacker to take control of the software if an authorized user browses a malicious page during an authorized session.</p></description>
<pubDate>Sun, 20 Mar 2011 01:43:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-03-20_Webbased_PEAR_Package_Manager_0.7.5_(Beta)_multiple_security_vulnerabilities/</guid>
</item>
<item>
<title>Rapidleech v2.3 Final (Update v42 SVN 322) multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2011-02-14_Rapidleech_v2.3_Final_(Update_v42_SVN_322)_multiple_security_vulnerabilities/</link>
<description><p>There are multiple Full Path Disclosure (FPD) vulnerabilities and a reflected Cross Site Scripting (XSS) vulnerability in Rapidleech v2.3 Final (Update v42 SVN 322)</p></description>
<pubDate>Mon, 14 Feb 2011 23:45:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-02-14_Rapidleech_v2.3_Final_(Update_v42_SVN_322)_multiple_security_vulnerabilities/</guid>
</item>
<item>
<title>isiAJAX 1.0 multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2011-02-12_isiAJAX_1.0_multiple_security_vulnerabilities/</link>
<description><p>There are multiple Cross Site Scripting (XSS) vulnerabilities in the demo pages which are provided with isiAJAX 1.0 by default.</p></description>
<pubDate>Sat, 12 Feb 2011 02:33:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-02-12_isiAJAX_1.0_multiple_security_vulnerabilities/</guid>
</item>
<item>
<title>YOURLS 1.5 multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2011-01-31_YOURLS_1.5_multiple_security_vulnerabilities/</link>
<description><p>There are multiple security vulnerabilities in YOURLS &amp;lt;= 1.5 sample pages and plugins which may allow an unauthorized user to take control of the software.</p></description>
<pubDate>Mon, 31 Jan 2011 18:28:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-01-31_YOURLS_1.5_multiple_security_vulnerabilities/</guid>
</item>
<item>
<title>Flyr multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2011-01-19_Flyr_multiple_security_vulnerabilities/</link>
<description><p>There are multiple Full Path Disclosure (FPD) and reflected Cross-Site Scripting (XSS) vulnerabilities in Flyr.</p></description>
<pubDate>Wed, 19 Jan 2011 10:05:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-01-19_Flyr_multiple_security_vulnerabilities/</guid>
</item>
<item>
<title>Abusing the &amp;quot;data&amp;quot; Protocol to Patsy Third Parties</title>
<link>http://www.itsecuritysolutions.org/2011-01-19_Abusing_the_data_Protocol_to_Patsy_Third_Parties/</link>
<description><p>It is possible to send traffic to a third-party website without leaking the referer. With this knowledge it is possible to &amp;quot;patsy&amp;quot; a third party by forcing their browser to submit &amp;quot;evil&amp;quot; requests to a target server.</p></description>
<pubDate>Wed, 19 Jan 2011 07:40:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2011-01-19_Abusing_the_data_Protocol_to_Patsy_Third_Parties/</guid>
</item>
<item>
<title>rightscripts.com PHP Website Content Monitor Persistent Cross-Site Scripting (XSS) Vulnerability</title>
<link>http://www.itsecuritysolutions.org/2010-12-27_rightscripts.com_PHP_website_content_monitor_Persistent_Cross-Site_Scripting_Vulnerability/</link>
<description><p>There is a Persistent Cross-Site Scripting (XSS) vulnerability in rightscripts.com PHP Website Content Monitor which may allow an attacker to take control of the software.</p></description>
<pubDate>Mon, 27 Dec 2010 07:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-12-27_rightscripts.com_PHP_website_content_monitor_Persistent_Cross-Site_Scripting_Vulnerability/</guid>
</item>
<item>
<title>rightscripts.com I Visit You Reflected Cross-Site Scripting (XSS) Vulnerability</title>
<link>http://www.itsecuritysolutions.org/2010-12-27_rightscripts.com_I_Visit_You_Reflected_Cross-Site_Scripting_Vulnerability/</link>
<description><p>There is a Reflected Cross-Site Scripting (XSS) vulnerability in rightscripts.com I Visit You which may allow an attacker to take control of the software if a user browses a malicious page during an authorized session.</p></description>
<pubDate>Mon, 27 Dec 2010 07:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-12-27_rightscripts.com_I_Visit_You_Reflected_Cross-Site_Scripting_Vulnerability/</guid>
</item>
<item>
<title>rightscripts.com Extract Website Script Local File Inclusion Vulnerability</title>
<link>http://www.itsecuritysolutions.org/2010-12-27_rightscripts.com_Extract_Website_Script_Local_File_Inclusion_Vulnerability/</link>
<description><p>There is a Local File Inclusion (LFI) vulnerability in rightscripts.com Extract Website Script which may allow an attacker to take control of the web-server.</p></description>
<pubDate>Mon, 27 Dec 2010 07:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-12-27_rightscripts.com_Extract_Website_Script_Local_File_Inclusion_Vulnerability/</guid>
</item>
<item>
<title>Google Dance Tool Cross-Site Scripting Vulnerability</title>
<link>http://www.itsecuritysolutions.org/2010-12-27_Google_Dance_Tool_Cross-Site_Scripting_Vulnerability/</link>
<description><p>There is a Cross Site Scripting (XSS) vulnerability in Google Dance Tool.</p></description>
<pubDate>Mon, 27 Dec 2010 07:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-12-27_Google_Dance_Tool_Cross-Site_Scripting_Vulnerability/</guid>
</item>
<item>
<title>rToTalMaTch 1.2a Cross-Site Scripting (XSS) vulnerability</title>
<link>http://www.itsecuritysolutions.org/2010-12-27_rToTalMaTch_1.2a_Cross-Site_Scripting_vulnerability/</link>
<description><p>There is a Cross-Site Scripting (XSS) vulnerability in ToTalMaTch 1.2a which may allow an unauthorized user to take control of the software if an authenticated user browses a malicious page.</p></description>
<pubDate>Mon, 27 Dec 2010 07:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-12-27_rToTalMaTch_1.2a_Cross-Site_Scripting_vulnerability/</guid>
</item>
<item>
<title>InDoors Software InDoorsLogger 7.7 multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-12-27_InDoors_Software_InDoorsLogger_7.7_multiple_security_vulnerabilities/</link>
<description><p>There are multiple security vulnerabilities in InDoorsLogger (IDLogger) version 7.7 which may allow an attacker to take control of the software.</p></description>
<pubDate>Mon, 27 Dec 2010 07:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-12-27_InDoors_Software_InDoorsLogger_7.7_multiple_security_vulnerabilities/</guid>
</item>
<item>
<title>phpRechnung 1.6 RC2 multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-12-17_phpRechnung_1.6_RC2_multiple_security_vulnerabilities/</link>
<description><p>There are multiple security vulnerabilities in phpRechnung 1.6 RC2 which allow an unauthorized user to take control of the software.</p></description>
<pubDate>Fri, 17 Dec 2010 11:55:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-12-17_phpRechnung_1.6_RC2_multiple_security_vulnerabilities/</guid>
</item>
<item>
<title>thERP multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-11-23_thERP_multiple_security_vulnerabilities/</link>
<description><p>There are multiple security vulnerabilities in thERP which allow an unauthorized user to take control of the software.</p></description>
<pubDate>Tue, 23 Nov 2010 03:20:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-23_thERP_multiple_security_vulnerabilities/</guid>
</item>
<item>
<title>newswall 1.05 multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-11-22_newswall_1.05_multiple_security_vulnerabilities/</link>
<description><p>There are multiple security vulnerabilities in newswall which may allow an attacker to compromise the web server.</p></description>
<pubDate>Mon, 22 Nov 2010 17:20:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-22_newswall_1.05_multiple_security_vulnerabilities/</guid>
</item>
<item>
<title>CodeCharge Studio 4.3 scripts Cross-Site Request Forgery vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-11-22_CodeCharge_Studio_4.3_scripts_Cross-Site_Request_Forgery_vulnerabilities/</link>
<description><p>All scripts generated by CodeCharge Studio 4.3 contain Cross-Site Request Forgery (CSRF) vulnerabilities which may allow an attacker to take control of the software if an authorized user browses a malicious page while authorized.</p></description>
<pubDate>Mon, 22 Nov 2010 04:25:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-22_CodeCharge_Studio_4.3_scripts_Cross-Site_Request_Forgery_vulnerabilities/</guid>
</item>
<item>
<title>MonoQL 0.1a multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-11-22_MonoQL_0.1a_multiple_security_vulnerabilities/</link>
<description><p>There are multiple security vulnerabilities in MonoQL 0.1a which may allow an attacker to take control of the software.</p></description>
<pubDate>Mon, 22 Nov 2010 03:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-22_MonoQL_0.1a_multiple_security_vulnerabilities/</guid>
</item>
<item>
<title>WSN Software 6.0.6 multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-11-21_WSN_Software_6.0.6_multiple_vulnerabilities/</link>
<description><p>There are multiple Cross-Site Scripting (XSS) and Full Path Disclosure vulnerabilities in the WSN product line which may allow an attacker to take control of the software if a user with admin privileges browses a malicious page while logged in.</p></description>
<pubDate>Sun, 21 Nov 2010 23:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-21_WSN_Software_6.0.6_multiple_vulnerabilities/</guid>
</item>
<item>
<title>Dolibarr ERP CRM 3.0.0-alpha multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-11-21_Dolibarr_ERP_CRM_3.0.0-alpha_multiple_security_vulnerabilities/</link>
<description><p>There are multiple security vulnerabilities in Dolibarr ERP CRM 3.0.0-alpha which may allow an attacker to take control of the software.</p></description>
<pubDate>Sun, 21 Nov 2010 21:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-21_Dolibarr_ERP_CRM_3.0.0-alpha_multiple_security_vulnerabilities/</guid>
</item>
<item>
<title>SavSys - A Flashback to Microsoft Word Macro Worms</title>
<link>http://www.itsecuritysolutions.org/2010-11-21_SavSys-A_Flashback_to_Microsoft_Word_Macro_Worms/</link>
<description><p>I recently noticed brief mentions of "SAVSys" in the rogue security tool <a href="http://www.bleepingcomputer.com/virus-removal/remove-security-antivirus">Security Antivirus</a> in use by the <a href="http://www.pandasecurity.com/homeusers/security-info/211918/Koobface.EA">Koobface</a> worm.</p><p>Back in 2002 I put together a macro worm targeting Microsoft Word 97 under the name "SavSys". It was more an experiment than anything - using very little stealth and mostly well known techniques circa 1995-2001. I never released the code.</p><p><a href="http://www.securelist.com/en/glossary?glossid=189267795">Macro worms appeared in 1995</a> and were still fairly new to anti-virus in 2002. Some macros spread enough to gain media attention, such as Melissa and ILOVEYOU aka LoveBug.</p></description>
<pubDate>Sun, 21 Nov 2010 06:15:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-21_SavSys-A_Flashback_to_Microsoft_Word_Macro_Worms/</guid>
</item>
<item>
<title>Trade Expert 2.2 build 11 two Reflected Cross-Site Scripting vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-11-17_Trade_Expert_2.2_build_11_two_Reflected_Cross-Site_Scripting_vulnerabilities/</link>
<description><p>There are two Cross-Site Scripting vulnerabilities in Trade Expert 2.2 build 11 which may allow an attacker to take control of the software if an authorized user browses a malicious page while authenticated.</p></description>
<pubDate>Wed, 17 Nov 2010 00:20:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-17_Trade_Expert_2.2_build_11_two_Reflected_Cross-Site_Scripting_vulnerabilities/</guid>
</item>
<item>
<title>SmartCJ Pro 1.45 multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-11-17_SmartCJ_Pro_1.45_multiple_security_vulnerabilities/</link>
<description><p>There are multiple security vulnerabilities in SmartCJ Pro 1.45 which may allow an attacker to take control of the software if an authorized user browses a malicious page while authenticated.</p></description>
<pubDate>Wed, 17 Nov 2010 00:10:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-17_SmartCJ_Pro_1.45_multiple_security_vulnerabilities/</guid>
</item>
<item>
<title>Easy Niche Store Script two Cross-Site Scripting vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-11-16_Easy_Niche_Store_Script_two_Cross-Site_Scripting_vulnerabilities/</link>
<description><p>There are two Cross-Site Scripting vulnerabilities in the latest version of Easy Niche Store Script as at 2010-11-09 11:45PM.</p></description>
<pubDate>Tue, 16 Nov 2010 00:10:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-16_Easy_Niche_Store_Script_two_Cross-Site_Scripting_vulnerabilities/</guid>
</item>
<item>
<title>KMleague 2.1.2 multiple Cross-Site Scripting vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-11-15_KMleague_2.1.2_multiple_Cross-Site_Scripting_vulnerabilities/</link>
<description><p>There are multiple Cross-Site Scripting (XSS) vulnerabilities in KMleague 2.1.2 which may allow an attacker to take control of the software if an authorized user browses a malicious page while logged in.</p></description>
<pubDate>Mon, 15 Nov 2010 16:20:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-15_KMleague_2.1.2_multiple_Cross-Site_Scripting_vulnerabilities/</guid>
</item>
<item>
<title>SocketTimesheet 3.0 multiple Cross-Site Scripting vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-11-15_SocketTimesheet_3.0_multiple_Cross-Site_Scripting_vulnerabilities/</link>
<description><p>There are multiple Cross-Site Scripting vulnerabilities in SocketTimesheet 3.0 which may allow an attacker to take control of the software if an authenticated user browses a malicious page.</p></description>
<pubDate>Mon, 15 Nov 2010 16:20:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-15_SocketTimesheet_3.0_multiple_Cross-Site_Scripting_vulnerabilities/</guid>
</item>
<item>
<title>Online Attendance System: Lite Edition 1.0 multiple Cross-Site Scripting (XSS) vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-11-15_Online_Attendance_System_Lite_Edition_1.0_multiple_Cross-Site_Scripting_vulnerabilities/</link>
<description><p>There are multiple Cross-Site Scripting (XSS) vulnerabilities in Online Attendance System: Lite Edition 1.0 which may allow an attacker to take control of the software.</p></description>
<pubDate>Mon, 15 Nov 2010 16:20:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-15_Online_Attendance_System_Lite_Edition_1.0_multiple_Cross-Site_Scripting_vulnerabilities/</guid>
</item>
<item>
<title>Webmedia Explorer 6.13.2 multiple security vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-11-13_Webmedia_Explorer_6.13.2_multiple_security_vulnerabilities/</link>
<description><p>There are multiple Cross-Site Scripting (XSS) and Cross-Site Request Forgery (CSRF) vulnerabilities in Webmedia Explorer 6.13.2 which may allow an attacker to take control of the software if a user with admin privileges browses a malicious page.</p></description>
<pubDate>Sat, 13 Nov 2010 20:30:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-13_Webmedia_Explorer_6.13.2_multiple_security_vulnerabilities/</guid>
</item>
<item>
<title>Truworth Flip Photo Album 1.1 Cross-Site Scripting vulnerability</title>
<link>http://www.itsecuritysolutions.org//2010-11-13_Truworth_Flip_Photo_Album_1.1_Cross-Site_Scripting_vulnerability/</link>
<description><p>There is a Cross-Site Scripting vulnerability in Truworth Flip Photo Album 1.1 which may allow an attacker to take control of the software if an authorized user browses a malicious page while logged in.</p></description>
<pubDate>Sat, 13 Nov 2010 20:20:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org//2010-11-13_Truworth_Flip_Photo_Album_1.1_Cross-Site_Scripting_vulnerability/</guid>
</item>
<item>
<title>Truworth SEO Ecommerce Software 2.1 Full Path Disclosure vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-11-13_Truworth_SEO_Ecommerce_Software_2.1_Full_Path_Disclosure/</link>
<description><p>There are two Full Path Disclosure vulnerabilities in Truworth SEO Ecommerce Software 2.1.</p></description>
<pubDate>Sat, 13 Nov 2010 20:20:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-13_Truworth_SEO_Ecommerce_Software_2.1_Full_Path_Disclosure/</guid>
</item>
<item>
<title>Truworth PHP Invoice Software 2.1 multiple vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-11-13_Truworth_PHP_Invoice_Software_2.1_multiple_vulnerabilities/</link>
<description><p>There are multiple security vulnerabilities in Truworth PHP Invoice Software 2.1 which allow an attacker to remotely compromise the software.</p></description>
<pubDate>Sat, 13 Nov 2010 20:20:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-13_Truworth_PHP_Invoice_Software_2.1_multiple_vulnerabilities/</guid>
</item>
<item>
<title>Truworth Online Time Sheet 2.1 Authentication Bypass vulnerability</title>
<link>http://www.itsecuritysolutions.org/2010-11-13_Truworth_Online_Time_Sheet_2.1_Authentication_Bypass_vulnerability/</link>
<description><p>There is an authentication bypass vulnerability in Truworth Online Time Sheet 2.1 due to the application failing to properly sanitize user-supplied input during authentication. Exploitation of this vulnerability would permit unauthorized access with admin privilages.</p></description>
<pubDate>Sat, 13 Nov 2010 20:20:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-13_Truworth_Online_Time_Sheet_2.1_Authentication_Bypass_vulnerability/</guid>
</item>
<item>
<title>Online Knowledge Base System: Lite Edition 1.0 multiple Cross-Site Scripting (XSS) vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-11-13_Online_Knowledge_Base_System_Lite_Edition_1.0_multiple_Cross-Site_Scripting_vulnerabilities/</link>
<description><p>There are multiple Cross-Site Scripting (XSS) vulnerabilities in Online Knowledge Base System: Lite Edition 1.0 which may allow an attacker to take control of the software.</p></description>
<pubDate>Sat, 13 Nov 2010 18:40:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-13_Online_Knowledge_Base_System_Lite_Edition_1.0_multiple_Cross-Site_Scripting_vulnerabilities/</guid>
</item>
<item>
<title>Site4 CMS 3.0.1 multiple Cross-Site Scripting (XSS) vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-11-08_Site4_CMS_3.0.1_multiple_Cross-Site_Scripting_vulnerabilities/</link>
<description><p>There are multiple Cross-Site Scripting (XSS) vulnerabilities in Site4 CMS 3.0.1 which may allow an attacker to take control of the software if an authorized user browses a malicious page while logged in.</p></description>
<pubDate>Mon, 08 Nov 2010 13:32:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-11-08_Site4_CMS_3.0.1_multiple_Cross-Site_Scripting_vulnerabilities/</guid>
</item>
<item>
<title>Introduction to Web Application Fingerprinting</title>
<link>http://www.itsecuritysolutions.org/2010-10-23_introduction_to_web_application_fingerprinting/</link>
<description><p>The process of discovering web applications and their current version on a target domain is known as web application fingerprinting. Effective fingerprinting enables a penetration tester to perform targeted exploit delivery as knowing the version is good enough to infer vulnerabilities.</p></description>
<pubDate>Sat, 23 Oct 2010 17:14:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-10-23_introduction_to_web_application_fingerprinting/</guid>
</item>
<item>
<title>nmap_to_services</title>
<link>http://www.itsecuritysolutions.org/2010-10-21_nmap_to_services/</link>
<description><p>nmap_to_services extracts the ip address and associated ports from an nmap log and returns the results in an easy to use format.</p></description>
<pubDate>Thu, 21 Oct 2010 22:35:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-10-21_nmap_to_services/</guid>
</item>
<item>
<title>QNAP TS-239 Firmware 3.3.1 Build 0720T - multiple vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-08-04_QNAP_TS-239_firmware_3.3.1_build_0720T_multiple_vulnerabilities/</link>
<description><p>Multiple security vulnerabilities exist in the QNAP TS-239 Pro network attached storage device which could allow an attacker to take control of the device if a user with administrator privileges browses a malicious web page.</p></description>
<pubDate>Wed, 04 Aug 2010 17:42:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-08-04_QNAP_TS-239_firmware_3.3.1_build_0720T_multiple_vulnerabilities/</guid>
</item>
<item>
<title>Kloxo Single Server 6.0.2083 Stable multiple vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2010-05-25_kloxo_single_server_6.0.2083_stable_multiple_vulnerabilities/</link>
<description><p>Multiple vulnerabilities exist in the Kloxo Single Server webhosting platform which may allow an attack to take control of the software if a user with admin privileges browses a malicious page while logged in.</p></description>
<pubDate>Tue, 25 May 2010 19:27:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-05-25_kloxo_single_server_6.0.2083_stable_multiple_vulnerabilities/</guid>
</item>
<item>
<title>Using HTTP Referrers for Targeted XSS Attacks</title>
<link>http://www.itsecuritysolutions.org/2010-05-06_using_referers_for_targeted_xss_attacks/</link>
<description><p>Using HTTP Referrers for Targeted XSS Attacks</p></description>
<pubDate>Thu, 06 May 2010 18:10:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-05-06_using_referers_for_targeted_xss_attacks/</guid>
</item>
<item>
<title>Wordpress Local Path Disclosure</title>
<link>http://www.itsecuritysolutions.org/2010-05-02_wordpress_local_path_disclosure/</link>
<description><p>There are many files in Wordpress which spit out PHP error messages if accessed directly over HTTP.</p></description>
<pubDate>Sun, 02 May 2010 21:35:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-05-02_wordpress_local_path_disclosure/</guid>
</item>
<item>
<title>Fingerprinting Browsers Using Protocol Handlers</title>
<link>http://www.itsecuritysolutions.org/2010-03-29_fingerprinting_browsers_using_protocol_handlers/</link>
<description><p>If a user is masking their user-agent in Internet Explorer or Mozilla Firefox it is still possible to identify their browser and operating system using protocols which are unique to the browser.</p></description>
<pubDate>Mon, 29 Mar 2010 23:53:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-03-29_fingerprinting_browsers_using_protocol_handlers/</guid>
</item>
<item>
<title>Obfuscating Hacker Defender INI Files</title>
<link>http://www.itsecuritysolutions.org/2010-03-21_obfuscating_hacker_defender_ini_files/</link>
<description><p><a href="http://www.google.com.au/search?q=%22Hacker+Defender+is+one+of+the+most+widely+deployed+rootkits+in+the+wild%22">Hacker Defender is one of the most widely deployed rootkits in the wild</a>. There's plenty of talk about obfuscating binaries to avoid anti-virus detection but you won't find that here. Just shift a few bytes or use a packer - you know the drill. What I want talk about is obfuscating the Hacker Defender INI configuration file to avoid detection by anti-virus programs.</p></description>
<pubDate>Sun, 21 Mar 2010 23:30:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-03-21_obfuscating_hacker_defender_ini_files/</guid>
</item>
<item>
<title>Web browser DoS using javascript protocol in iframe src</title>
<link>http://www.itsecuritysolutions.org/2010-03-10_browser_dos_using_javascript_protocol_in_iframe_src/</link>
<description><p>An issue exists in Firefox, Internet Explorer and Google Chrome which causes the browser to hang due to memory exhaustion when browsing a specially crafted HTML page. An unwary user who does not kill the browser process quickly may have to wait several minutes to recover control and kill the process.</p></description>
<pubDate>Wed, 10 Mar 2010 08:43:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-03-10_browser_dos_using_javascript_protocol_in_iframe_src/</guid>
</item>
<item>
<title>fingerprint-http-cpanel</title>
<link>http://www.itsecuritysolutions.org/2010-02-06_fingerprint-http-cpanel/</link>
<description><p>fingerprint-http-cpanel Determines the URL and version of cpanel on the target server.</p></description>
<pubDate>Sat, 06 Feb 2010 01:13:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2010-02-06_fingerprint-http-cpanel/</guid>
</item>
<item>
<title>Profiling Gamers</title>
<link>http://www.itsecuritysolutions.org/2009-12-05_profiling_gamers/</link>
<description><p>This is a brief article about digging up information on people who play online video games. To begin with you may only have the gamer's username/handle. This is often enough to track down an avid gamer.</p></description>
<pubDate>Sat, 05 Dec 2009 03:45:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2009-12-05_profiling_gamers/</guid>
</item>
<item>
<title>Wordpress 2.7.1 multiple minor vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2009-05-07_wordpress_2.7.1_multiple_minor_vulnerabilities/</link>
<description><p>Multiple vulnerabilities exist in the Wordpress 2.7.1 blogging software however successful exploitation requires admin roles.</p></description>
<pubDate>Thu, 07 May 2009 02:09:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2009-05-07_wordpress_2.7.1_multiple_minor_vulnerabilities/</guid>
</item>
<item>
<title>Belkin Broadband Voice Modem/Router - wireless 4 port - F1PI242EGau multiple vulnerabilities</title>
<link>http://www.itsecuritysolutions.org/2009-05-04_belkin_wireless_F1PI242EGau_iinet_multiple_vulnerabilities/</link>
<description><p>Multiple vulnerabilities exist in the Belkin F1PI242EGau (wireless 4 port) router distributed by Australian ISP iiNet which could allow an attacker complete control over the user's router if the user browses a malicious web page. CSRF and XSS issues in the web administration interface lead to denial of service, information disclosure and DNS Hijacking.</p></description>
<pubDate>Mon, 04 May 2009 01:57:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2009-05-04_belkin_wireless_F1PI242EGau_iinet_multiple_vulnerabilities/</guid>
</item>
<item>
<title>Escalating Wordpress 2.6 search XSS to arbitrary file upload</title>
<link>http://www.itsecuritysolutions.org/2008-08-27_escalating_wordpress_2.6_search_xss_to_arbitrary_file_upload/</link>
<description><p>Escalating Wordpress 2.6 search XSS to Arbitrary File Upload</p></description>
<pubDate>Wed, 27 Aug 2008 00:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2008-08-27_escalating_wordpress_2.6_search_xss_to_arbitrary_file_upload/</guid>
</item>
<item>
<title>Reverse shell with IExpress.exe Win32 Cabinet Self-Extractor</title>
<link>http://www.itsecuritysolutions.org/2008-07-19_reverse_shell_with_iexpress.exe_win32_cabinet_self-extractor/</link>
<description><p>Reverse shell with IExpress.exe Win32 Cabinet Self-Extractor</p></description>
<pubDate>Sat, 19 Jul 2008 00:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2008-07-19_reverse_shell_with_iexpress.exe_win32_cabinet_self-extractor/</guid>
</item>
<item>
<title>Helpful commands (Win32/64)</title>
<link>http://www.itsecuritysolutions.org/2008-04-19_helpful_commands_win32_win64/</link>
<description><p>Helpful commands (Win32/64)</p></description>
<pubDate>Sat, 19 Apr 2008 00:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2008-04-19_helpful_commands_win32_win64/</guid>
</item>
<item>
<title>Exploiting environment variables</title>
<link>http://www.itsecuritysolutions.org/2007-12-07_exploiting_environment_variables/</link>
<description><p>Exploiting environment variables</p></description>
<pubDate>Fri, 07 Dec 2007 00:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2007-12-07_exploiting_environment_variables/</guid>
</item>
<item>
<title>Port forwarding on Cisco 800 Series</title>
<link>http://www.itsecuritysolutions.org/2007-12-02_port_forwarding_on_cisco_800_series/</link>
<description><p>Port forwarding on Cisco 800 Series</p></description>
<pubDate>Sun, 02 Dec 2007 00:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2007-12-02_port_forwarding_on_cisco_800_series/</guid>
</item>
<item>
<title>Exploiting VLANs with Yersinia</title>
<link>http://www.itsecuritysolutions.org/2007-12-01_exploiting_vlans_with_yersinia/</link>
<description><p>Exploiting VLANs with Yersinia</p></description>
<pubDate>Sat, 01 Dec 2007 00:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2007-12-01_exploiting_vlans_with_yersinia/</guid>
</item>
<item>
<title>Cracking Cisco service password encryption (type-7)</title>
<link>http://www.itsecuritysolutions.org/2007-12-01_cracking_cisco_service_password_encryption_type_7/</link>
<description><p>Cracking Cisco service password encryption (type-7)</p></description>
<pubDate>Sat, 01 Dec 2007 00:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2007-12-01_cracking_cisco_service_password_encryption_type_7/</guid>
</item>
<item>
<title>Creating backdoors in Cisco IOS using TCL script</title>
<link>http://www.itsecuritysolutions.org/2007-11-30_creating_backdoors_in_cisco_ios_using_tcl_script/</link>
<description><p>This article covers backdooring later versions of Cisco IOS to allow an attacker to maintain access to the device without knowledge of the passwords set by the administrator.</p></description>
<pubDate>Fri, 30 Nov 2007 00:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2007-11-30_creating_backdoors_in_cisco_ios_using_tcl_script/</guid>
</item>
<item>
<title>The importance of file and directory permissions</title>
<link>http://www.itsecuritysolutions.org/2007-11-21_the_importance_of_file_and_directory_permissions/</link>
<description><p>File and directory permissions are very important when discussing security, consider the ramifications if an attacker had write access to system log files, they would be able to modify log entries, to prevent tracing or notification that an attacker had breached the system.</p></description>
<pubDate>Wed, 21 Nov 2007 00:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2007-11-21_the_importance_of_file_and_directory_permissions/</guid>
</item>
<item>
<title>Remote GUI Access on Windows</title>
<link>http://www.itsecuritysolutions.org/2007-11-20_remote_gui_access_on_windows/</link>
<description><p>In this article, I will cover how to remotely control a target windows machine by installing and running a VNC program without the targets knowledge. This is best done when the machine is idle, as interfacing directly with the GUI can be seen on the target&amp;#8217;s monitor. eg; the mouse cursor movements are seen, etc.</p></description>
<pubDate>Tue, 20 Nov 2007 00:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2007-11-20_remote_gui_access_on_windows/</guid>
</item>
<item>
<title>Exploiting hard links</title>
<link>http://www.itsecuritysolutions.org/2007-11-11_exploiting_hard_links/</link>
<description><p>Exploiting hard links on filesystem</p></description>
<pubDate>Sun, 11 Nov 2007 00:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2007-11-11_exploiting_hard_links/</guid>
</item>
<item>
<title>AIX and EtherChannel</title>
<link>http://www.itsecuritysolutions.org/2007-11-11_aix_and_etherchannel/</link>
<description><p>EtherChannel is a network link aggregation technology that allows you to basically create one logical interface combining the bandwidth of multiple physical interfaces. It is a good solution to not only increase bandwidth, but also increase redundancy in your network link.</p></description>
<pubDate>Sun, 11 Nov 2007 00:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2007-11-11_aix_and_etherchannel/</guid>
</item>
<item>
<title>Network Information Services (NIS) on Debian GNULinux</title>
<link>http://www.itsecuritysolutions.org/2007-11-07_network_information_services_on_debian_gnulinux/</link>
<description><p>This short tutorial is focused on how to setup NIS clients &amp;amp; servers on Debian Linux.</p></description>
<pubDate>Wed, 07 Nov 2007 00:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2007-11-07_network_information_services_on_debian_gnulinux/</guid>
</item>
<item>
<title>Solaris 10 and BART (Basic Audit and Reporting Tool)</title>
<link>http://www.itsecuritysolutions.org/2007-11-05_solaris_10_and_bart_basic_audit_and_reporting_tool/</link>
<description><p>Solaris 10 comes prepackaged with BART - a great tool that allows you to compare the contents of an entire filesystem at any two points in time.</p></description>
<pubDate>Mon, 05 Nov 2007 00:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2007-11-05_solaris_10_and_bart_basic_audit_and_reporting_tool/</guid>
</item>
<item>
<title>ARP spoofing/poisoning on switched networks using the dsniff package</title>
<link>http://www.itsecuritysolutions.org/2007-11-04_arp_spoofing_on_switched_networks_using_dsniff/</link>
<description><p>ARP spoofing/poisoning on switched networks using the dsniff package</p></description>
<pubDate>Sun, 04 Nov 2007 00:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2007-11-04_arp_spoofing_on_switched_networks_using_dsniff/</guid>
</item>
<item>
<title>Useful proc security modifications</title>
<link>http://www.itsecuritysolutions.org/2007-11-03_useful_proc_security_modifications/</link>
<description><p>Useful proc security modifications</p></description>
<pubDate>Sat, 03 Nov 2007 00:00:00 GMT</pubDate>
<guid>http://www.itsecuritysolutions.org/2007-11-03_useful_proc_security_modifications/</guid>
</item>
</channel>
</rss>
