Portcullis Security Advisory - Portcullis consultants have discovered that by manipulating the values of certain variables used during report selection in the Bottomline Webseries Payment Application, it was possible to cause the application to download and execute arbitrary reports from any machine on the network capable of supporting Windows shares.
Portcullis Security Advisory - Portcullis consultants have discovered that by manipulating the values of certain variables used during report selection in the Bottomline Webseries Payment Application, it was possible to cause the application to download and execute arbitrary reports from any machine on the network capable of supporting Windows shares.