[FD] Siemens, Climatix BACnet/IP communication module, Vulnerabilities

2015-06-30 Thread Fran
I. VULNERABILITIES - 1. Reflected XSS Attack vulnerability in Climatix BACnet/IP communication module from Siemens 2. Unrestricted upload of files II. BACKGROUND - BACnet/IP communication modules help to integrate controller types POL6XX of the C

[FD] [CVE-2014-2577] XSS on Transform Foundation Server 4.3.1 and 5.2 from Bottomline Technologies

2014-06-03 Thread Fran
I. VULNERABILITY - Reflected XSS Attacks vulnerabilities in Transform Foundation server 4.3.1 and 5.2 from Bottomline Technologies II. BACKGROUND - Bottomline offers powerful, next-generation electronic document solutions for formatting, personali