[FD] Metasploit Pro Includes a 4 year old Java Runtime with 223 vulnerabilities 53 being critical

2019-10-01 Thread Anthony Cicalla
t;https://10.213.213.1:3780/vulnerability/yui-dt1-href-lastScanDate> Exceptions Vulnerable Version - - /opt/metasploitpro/java/lib/rt.jar Vulnerable software installed: Oracle JRE 1.8.0.60 (/opt/metasploitpro/java/lib/rt.jar) Sep 28th, 2019 Sincerely, Anthony Cicalla, CEH, CISSP, G

[FD] AxxonSoft Axxon Next - AxxonSoft Client Directory Traversal via an initial /css//..%2f substring in a URI. CVE-2018-7467

2018-02-27 Thread Anthony Cicalla
Title AxxonSoft Axxon Next - AxxonSoft Client Directory Traversal via an initial /css//..%2f substring in a URI. CVE-2018-7467 [Vulnerability Type] Directory Traversal via an initial /css//..%2f substring in a URI [Vendor of Product] AxxonSoft Client [Affected Product Code Base] Axxon Next