ICNA

Iranian Cyber News Agency

Vulnerability

ICSG Discover WP External Links XSS Bug

Iranian Cyber Security Group -ICSG- have find XSS bug in WordPress plugin: WP External Links v1.80 – Cross Site Scripting Details is here and here XSS -Cross Site Scripting- is type of computer security vulnerability found in web applications enable attackers to inject client-sides…

Blackwolf_Iran expose CMS vulnerabilities

Blackwolf_Iran from iranonymous have found SQL injection vulnerabilities in iReadyWeb and Elevel It CMS Vulnerability allow attacker to by pass admin login and upload shell or edit home page For details see here and here Blackwolf_Iran thank Hacker Khan – Mr.Khatar – R4DIC4L

Milad Hacking Find WordPress Theme Reflected XSS

Hacker Milad Hacking Of FullSecurity Team have discover vulnerability: WordPress Goodnews Themes Reflected Cross Site Scripting XSS -Cross Site Scripting- is type of computer security vulnerability found in web applications enable attackers to inject client-sides script into web pages viewed by other users…

Ehsan Hosseini Find RozBlog And SamenBlog CSRF/XSS Bugs

Hacker And security researcher Ehsan Hosseini of Ashiyane Digital Security Team have discover proof of concept -poc- bugs in RozBlog And SamenBlog: RozBlog Weblog Service – Authentication Bypass / Cross Site Request Forgery / Cross Site Scripting SamenBlog Weblog Service…

Azerbaijan Cyber Army Find Russia Hospitals CMS SQLi Bug

Hackers of Azerbaijan Cyber Army -ACA- have made discover of SQL injection bug in CMS: Russian Hospitals Cms SQL Injection SQLi -SQL injection- is code injection technique used to attack data application have malicious SQL statements is inserted into entry fields for executions to dump database content…

Iran Cyber Security Group Find Auth Bypass Bug

New bug in authorization have been bypassed discover by hacker L3gi0N of Iran Cyber Security Group MAXSITE 1.10 Authorization Bypass Vulnerability Vulnerability details is here All bug finds of Iran Cyber Security Group is here Iran Cyber Security Group home is: http://www.iran-cyber.net/

Ehsan Hosseini Find More Vulnerabilities

Ehsan Hosseini of Ashiyane Digital Security Team discover XSS vulnerabilities on github  and also XSS-CSRF vulnerabilities on PivotX CMS and Mihalism Multi host   For details see here   Ehsan Hosseini have website Contact: [email protected]

FullSecurity Team Find WordPress Remote File Upload Bug

Iranian security researcher And hacker Milad Hacking of Full Security Team have find bug in WordPress: WordPress Smallbiz Themes Remote File Uploads Vulnerability Remote file upload vulnerability is vulnerability where applications use users input to fetch remote files from Internet server…

Milad_Inj3ct0r Discover sabaisp CMS SQLi Bug

Iranian hacker Milad_Inj3ct0r of White Hat Security Group have made SQL injection discover: sabaisp Cms Sql Injection Vulnerability SQLi -SQL injection- is code injection technique used to attack data application have malicious SQL statements is inserted into entry fields for executions to dump database content to…

ALIREZA_PROMIS Find WordPress CSRF Bug

Hacker ALIREZA_PROMIS of Iran Security Group have discover vulnerability in WordPress: WordPress simple add pages or posts CSRF Vulnerability CSRF -Cross-Site Request Forgery- is attack type occur when malicious web sites or communications applications program make user browser act in unwanted…