Get a Pentest and security assessment of your IT network.

News

German researcher found remote code execution flaw on EBay subdomain

German security researcher David Vieira-Kurz discovered a critical vulnerability in the official Ebay website in particular in its sub domain http://sea.ebay.com that allows an attacker a remote code execution. The flaw seems to affect the server side and the way it casts a static GET parameter that could be exploited to provide any array values. The vulnerability was fixed by the Ebay Security Team that fixed it this week. The researcher published a POC video to demonstrate how to exploit the vulnerability.”]

Source: https://securityaffairs.co/wordpress/20461/hacking/ebay-remote-code-execution.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Botnet authors use Evernote account as C&C Server

News

UK NCSC warns of cyber attacks powered by Russia against the political system