[FD] [KIS-2015-10] Piwik <= 2.14.3 (DisplayTopKeywords) PHP Object Injection Vulnerability

2015-11-04 Thread Egidio Romano
--- Piwik <= 2.14.3 (DisplayTopKeywords) PHP Object Injection Vulnerability --- [-] Software Link: https://piwik.org/ [-] Affected Versions: Version 2.14.3 a

[FD] [KIS-2015-09] Piwik <= 2.14.3 (viewDataTable) Autoloaded File Inclusion Vulnerability

2015-11-04 Thread Egidio Romano
--- Piwik <= 2.14.3 (viewDataTable) Autoloaded File Inclusion Vulnerability --- [-] Software Link: https://piwik.org/ [-] Affected Versions: Version 2.14.3 a

[FD] [KIS-2015-08] ATutor <= 2.2 (edit_marks.php) PHP Code Injection Vulnerability

2015-11-04 Thread Egidio Romano
--- ATutor <= 2.2 (edit_marks.php) PHP Code Injection Vulnerability --- [-] Software Link: http://www.atutor.ca/ [-] Affected Versions: Version 2.2 and prior versions.

[FD] [KIS-2015-07] ATutor <= 2.2 (popuphelp.php) Reflected Cross-Site Scripting Vulnerability

2015-11-04 Thread Egidio Romano
-- ATutor <= 2.2 (popuphelp.php) Reflected Cross-Site Scripting Vulnerability -- [-] Software Link: http://www.atutor.ca/ [-] Affected Versions: Vers

[FD] [KIS-2015-06] ATutor <= 2.2 (confirm.php) Session Variable Overloading Vulnerability

2015-11-04 Thread Egidio Romano
-- ATutor <= 2.2 (confirm.php) Session Variable Overloading Vulnerability -- [-] Software Link: http://www.atutor.ca/ [-] Affected Versions: Version 2.2 and

[FD] [KIS-2015-05] ATutor <= 2.2 (Custom Course Icon) Unrestricted File Upload Vulnerability

2015-11-04 Thread Egidio Romano
- ATutor <= 2.2 (Custom Course Icon) Unrestricted File Upload Vulnerability - [-] Software Link: http://www.atutor.ca/ [-] Affected Versions: Version