Wiki source code of Applications

Version 29.1 by Nicolas Gregoire on 2012/01/23 12:26

Hide last authors
Nicolas Gregoire 26.1 1 {{toc/}}
Nicolas Gregoire 1.1 2
Nicolas Gregoire 26.1 3 = Web (client side) =
4
Nicolas Gregoire 13.1 5 |=Application|=XSLT Engine |=Vulnerabilities
Nicolas Gregoire 25.1 6 |[[Webkit>>Application_Webkit]]|[[libxslt>>Engine_libxslt]]|File creation ([[CVE-2011-1774>>http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1774||rel="__blank" title="CVE-2011-1774"]])
Nicolas Gregoire 27.1 7 |[[Firefox>>Application_Firefox]]|[[Transformiix>>Engine_Transformiix]]|\\
Nicolas Gregoire 13.1 8 |Opera |[[Presto>>Engine_Presto]]|\\
9 |Internet Explorer|[[MS XML>>Engine_MSXML]]|\\
Nicolas Gregoire 1.1 10
Nicolas Gregoire 26.1 11 = Web (server side) =
Nicolas Gregoire 1.1 12
Nicolas Gregoire 9.1 13 |=Application|=XSLT Engine |=Vulnerabilities
Nicolas Gregoire 18.1 14 |[[Liferay>>Application_Liferay]]|[[Xalan-J>>Engine_XalanJ]] |File disclosure ([[CVE-2011-1502>>http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1502||rel="__blank" title="CVE-2011-1502"]] and [[CVE-2011-1503>>http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1503||rel="__blank" title="CVE-2011-1503"]])
15 Code execution ([[CVE-2011-1571>>http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1571||rel="__blank" title="CVE-2011-1571"]])
Nicolas Gregoire 28.1 16 |[[PHP 5>>Application_PHP5]]|[[libxslt>>Engine_libxslt]]|Arbitrary file creation ([[CVE-2012-0057>>http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-0057||rel="__blank" title="CVE-2012-0057"]], corrected in v5.3.9)
Nicolas Gregoire 17.1 17 |Sharepoint |[[MS XML>>Engine_MSXML]]|File disclosure ([[CVE-2011-1892>>http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1892||rel="__blank" title="CVE-2011-1892"]] aka MS11-074)
Nicolas Gregoire 15.1 18 |DotNetNuke|[[MS XML>>Engine_MSXML]]|File disclosure (No CVE, patched in v06.00.00 of the XML module)
Nicolas Gregoire 28.2 19 |MoinMoin|[[4Suite>>Engine_4Suite]]|...
Nicolas Gregoire 1.1 20
Nicolas Gregoire 26.1 21 = Online services =
Nicolas Gregoire 5.1 22
Nicolas Gregoire 21.1 23 |=Application |=XSLT engine
24 | [[W3C XSLT Gateway>>http://www.w3.org/2005/08/online_xslt/]] | [[Saxon>>Engine_Saxon]]
25 | [[Online Toolz>>http://online-toolz.com/tools/xslt-transformation.php]]|[[ libxslt>>Engine_libxslt]]
26 | [[Shell Tools>>http://www.shell-tools.net/index.php?op=xslt]]| [[libxslt>>Engine_libxslt]]
27 | [[XSLT Java applet>>http://unindented.org/projects/xslt-tester-applet/]]| XSLTC from [[Xalan-J>>Engine_XalanJ]]
28
Nicolas Gregoire 26.1 29 = Office software =
Nicolas Gregoire 1.1 30
Nicolas Gregoire 11.1 31 |=Application|=XSLT Engine |=Vulnerabilities
Nicolas Gregoire 14.1 32 |Adobe Reader|Modified [[Sablotron>>Engine_Sablotron]] |Memory corruption (Linux only)
33 |Lifera|[[libxslt>>Engine_libxslt]]|File creation
34 |OpenOffice|[[libxslt>>Engine_libxslt]]|\\
Nicolas Gregoire 11.1 35
Nicolas Gregoire 26.1 36 = Security =
Nicolas Gregoire 2.1 37
Nicolas Gregoire 12.1 38 |=Application|=XSLT Engine |=Vulnerabilities
Nicolas Gregoire 20.1 39 |[[xmlsec>>Application_xmlsec]]|[[libxslt>>Engine_libxslt]]|File creation ([[CVE-2011-1425>>http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1425||rel="__blank" title="CVE-2011-1425"]])
Nicolas Gregoire 19.1 40 |Lasso|[[libxslt>>Engine_libxslt]]|\\
41 |Unnamed application verifying XML-DSig signatures|[[Xalan-J>>Engine_XalanJ]]|Remote code execution