[FD] [CVE-2018-12999]Zoho manageengine Desktop Central Arbitrary File Deletion

2018-07-20 Thread xiaotian.wang
This issue has been reported to the vendor who has already published patches for this issue. == Advisory: Zoho manageengine Desktop Central Arbitrary File Deletion Author: M3 From DBAppSecurity Affected Products:Desktop Central == Proof of Concep

[FD] [CVE-2018-12997]Zoho manageengine Arbitrary File Read in multiple Products

2018-07-20 Thread xiaotian.wang
This issue has been reported to the vendor who has already published patches for this issue. http://opmanager.helpdocsonline.com/read-me == Advisory:Zoho manageengine Arbitrary File Read in multiple Products Author: M3 From DBAppSecurity Affected Products: Netflow Analyze

[FD] [CVE-2018-12996] Zoho manageengine Applications Manager Reflected XSS

2018-07-20 Thread xiaotian.wang
This issue has been reported to the vendor who has already published patches for this issue. https://www.manageengine.com/products/applications_manager/issues.html == Advisory:Zoho manageengine Applications Manager Reflected XSSVulnerability Author: M3 From DBAppSecurity

[FD] NUUO NVRmini2 / NVRsolo Arbitrary File Upload Vulnerability

2018-05-28 Thread xiaotian.wang
NUUO NVRmini2 / NVRsolo Arbitrary File Upload Vulnerability == Advisory: NUUO NVRmini2 / NVRsolo Arbitrary File Upload Vulnerability Author: M3@pandas From DBAppSecurity Affected Version: All == Vulnerability Description ==