[FD] Facebook Messenger (iOS) Certificate Validation Vulnerability

2016-03-23 Thread Sean Wright
Date published: Tuesday, March 22, 2016 CVE: Not assigned CVSS v2 base score: 5.8 Date of last update: Tuesday, March 22, 2016 Vendors contacted: Facebook, Inc. Release mode: Coordinated Discovered by: Sean Wright, Dell SecureWorks Summary The Facebook social networking service includes a

[FD] CVE-2014-9510 - TP-Link TL-WR840N Configuration Import Cross-Site Request Forgery (CSRF)

2015-01-07 Thread Sean Wright
by: Sean Wright, Dell SecureWorks Summary: TP-Link is a primary provider of networking equipment and wireless products for small and home offices as well as for small to midsized businesses. TL-WR840N is a combination

[FD] CVE-2014-7180 - ElectricCommander Local Privilege Escalation

2014-10-23 Thread Sean Wright
: Sean Wright, Dell SecureWorks ## Summary ElectricCommander is a toolset that facilitates remote deployment of environment configurations from a centralized server to attached agents. Due to excessive file system