Get a Pentest and security assessment of your IT network.

Cyber Security

Unpatched Bugs in Oracle iPlanet Open Door to Info-Disclosure, Injection

A pair of vulnerabilities in Oracle s iPlanet Web Server have been disclosed that can lead to sensitive data exposure and image injections onto web pages if exploited. The bugs are specifically found in the web administration console of iPlanet version 7, which has reached end-of-life and is no longer supported. No patch is forthcoming for either flaw; all is not lost: Users can implement other controls to mitigate the problem and reduce risk. Oracle pointed the researchers to its EOL statement when the bug report was submitted.

Source: https://threatpost.com/unpatched-bugs-oracle-iplanet/155639/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security