Full Disclosure: by author

75 messages starting May 09 16 and ending May 13 16
Date index | Thread index | Author index


0x3d5157636b525761 iddqd

WheresMyDroid Android App issues 0x3d5157636b525761 iddqd (May 09)

Abraham Aranguren

OWTF 2.0a "Tikka Masala" released! Abraham Aranguren (May 17)

Advisories Advisories

MSA-2016-01: PowerFolder Remote Code Execution Vulnerability Advisories Advisories (May 24)

Ajin Abraham

Mobile Security Framework (MobSF) v0.9.2 Released Ajin Abraham (May 03)

Aleksandra Woźniak

CONFidence - May, 19-20th, Krakow - join the biggest hacker meeting in Poland! Aleksandra Woźniak (May 03)

Apple Product Security

APPLE-SA-2016-05-16-5 Safari 9.1.1 Apple Product Security (May 17)
APPLE-SA-2016-05-16-4 OS X El Capitan 10.11.5 and Security Update 2016-003 Apple Product Security (May 17)
APPLE-SA-2016-05-16-3 watchOS 2.2.1 Apple Product Security (May 17)
APPLE-SA-2016-05-03-1 Xcode 7.3.1 Apple Product Security (May 06)
APPLE-SA-2016-05-16-6 iTunes 12.4 Apple Product Security (May 17)
APPLE-SA-2016-05-16-2 iOS 9.3.2 Apple Product Security (May 17)
APPLE-SA-2016-05-16-1 tvOS 9.2.1 Apple Product Security (May 17)

Bhadresh Patel

NetCommWireless HSPA 3G10WVE Wireless Router – Multiple vulnerabilities Bhadresh Patel (May 06)
Re: NetCommWireless HSPA 3G10WVE Wireless Router – Multiple vulnerabilities Bhadresh Patel (May 06)

Bipin Gautam

poisoning / hijacking DNS locally of a third party domain: in shared and custom web hosting and in ISP, in automated /custom control panel software Bipin Gautam (May 23)

Black Arch

New BlackArch Linux ISOs (2016.04.28) and Installer released Black Arch (May 03)

Bogner Florian

Huawei Mobile Broadband HL Service Local Privilege Escalation Bogner Florian (May 12)

Danny Kopping

Skype Phishing Attack Danny Kopping (May 12)
Re: Skype Phishing Attack Danny Kopping (May 18)

David Spector

MediaLink router MWN-WAPR300N - Several Vulnerabilities David Spector (May 23)

Dawid Golunski

CakePHP Framework <= 3.2.4 IP Spoofing Vulnerability Dawid Golunski (May 12)

Denis Andzakovic

Nfdump Nfcapd 1.6.14 Multiple Vulnerabilities Denis Andzakovic (May 10)

Dolev Farhi

Observium Commercial - CSRF & Authenticated Code Execution Dolev Farhi (May 03)

Elar Lang

CVE-2016-4803 dotCMS - Email Header Injection Elar Lang (May 25)

ERPScan inc

[ERPSCAN-16-011] SAP NetWeaver AS JAVA – SQL injection vulnerability ERPScan inc (May 23)
[ERPSCAN-16-009] SAP xMII - directory traversal vulnerability ERPScan inc (May 17)
[ERPSCAN-16-010] SAP NetWeaver AS JAVA – information disclosure vulnerability ERPScan inc (May 23)
[ERPSCAN-16-008] SAP NetWeaver AS JAVA - XSS vulnerability in ProxyServer servlet ERPScan inc (May 17)

Etnies

WSO2 SOA Enablement Server - Reflected Cross-Site Scripting Etnies (May 17)

flanker

Re: CVE-2015-3854 Battery permission leakage in Android flanker (May 26)
CVE-2015-3854 Battery permission leakage in Android flanker (May 26)

Francisco Amato

Give a warm welcome to Faraday v1.0.19! New GTK interface, Custom Reports & Bug fixing Francisco Amato (May 06)

Gavrill Klimov

real dangers of gsm setups Gavrill Klimov (May 03)

Hans Jerry Illikainen

CVE-2016-3078: php: integer overflow in ZipArchive::getFrom* Hans Jerry Illikainen (May 03)

Julien Ahrens

[RCESEC-2016-001] Postfix Admin v2.93 Generic POST Cross-Site Request Forgeries Julien Ahrens (May 23)
[RCESEC-2016-002] XenAPI v1.4.1 for XenForo Multiple Unauthenticated SQL Injections Julien Ahrens (May 25)
Swagger Editor v2.9.9 "description" Key DOM-based Cross-Site Scripting Julien Ahrens (May 06)

Karn Ganeshen

Moxa MiiNePort - Multiple Vulnerabilities Karn Ganeshen (May 03)
[ICS] Meteocontrol WEB’log Multiple Vulnerabilities Karn Ganeshen (May 17)

Lab I-Tracing

CVE-2016-2784: CMS Made Simple < 2.1.3 & < 1.12.2 Web server Cache Poisoning Lab I-Tracing (May 06)

LSE-Advisories

LSE Leading Security Experts GmbH - LSE-2016-02-03 - OXID eShop Path Traversal Vulnerability LSE-Advisories (May 03)

Nick Boyce

Re: Code Execution Vulnerabilities In 7zip Nick Boyce (May 17)
Code Execution Vulnerabilities In 7zip Nick Boyce (May 17)

Niemand Nie

Multiple Reflected XSS vulnerabilities in Infobae Website Niemand Nie (May 23)

Onur Yilmaz

BulletProof Security 53.3 - Security Advisory - Multiple XSS Vulnerabilities Onur Yilmaz (May 10)

Osama Khalid

Linknat VOS2009/VOS3000 SQL injection Osama Khalid (May 23)

Per Thorsheim

CFP: Passwords 2016, Ruhr-University Bochum, Germany, Dec 5-7 Per Thorsheim (May 10)

Peter Kok

Re: Teampass v2.1.26 - Stored Cross Site Scripting Vulnerability Peter Kok (May 26)

RedTeam Pentesting GmbH

[RT-SA-2015-012] XML External Entity Expansion in Paessler PRTG Network Monitor RedTeam Pentesting GmbH (May 31)
[RT-SA-2016-005] Unauthenticated File Upload in Relay Ajax Directory Manager may Lead to Remote Command Execution RedTeam Pentesting GmbH (May 31)
[RT-SA-2016-004] Websockify: Remote Code Execution via Buffer Overflow RedTeam Pentesting GmbH (May 31)

Reindl Harald

Re: Skype Phishing Attack Reindl Harald (May 13)

Saif El-Sherei

CVE Request for ManageEngine Applications Manager Build No: 12700 Information Disclosure and Un-Authenticated SQL injection. Saif El-Sherei (May 06)
Re: CVE Request for ManageEngine Applications Manager Build No: 12700 Information Disclosure and Un-Authenticated SQL injection. Saif El-Sherei (May 09)

Sandeep Kamble

Garage4hackers Ranchoddas Webcast Series CTF Challenge Sandeep Kamble (May 03)

Savio Bot

Webshell for IIS Savio Bot (May 13)

Sebastian

Re: Skype Phishing Attack Sebastian (May 17)

Simon Lees

CVE-2016-3627 CVE-2016-3705: libxml2: stack overflow in xml validator (parser) Simon Lees (May 03)

Stefan Kanthak

Mozilla doesn't care for upstream security fixes, and doesn't bother to send own security fixes upstream Stefan Kanthak (May 03)

Sven Blumenstein

Aruba ArubaOS/Aruba Instant/AirWave Management - Multiple Vulnerabilities (CVE-2016-2031, CVE-2016-2032) Sven Blumenstein (May 06)

Thegrideon Software

Intuit QuickBooks 2007 - 2016 Arbitrary Code Execution Thegrideon Software (May 10)

Timo Juhani Lindfors

CVE-2016-4338: Zabbix Agent 3.0.1 mysql.size shell command injection Timo Juhani Lindfors (May 03)

Tomi Tuominen

t2'16: Call For Papers 2016 (Helsinki, Finland) Tomi Tuominen (May 09)

Ulisses Montenegro

Re: Teampass v2.1.26 - Stored Cross Site Scripting Vulnerability Ulisses Montenegro (May 25)

Vulnerability Lab

Bugcrowd Bug Bounty #7 - Persistent Web Vulnerability Vulnerability Lab (May 25)
Trend Micro Direct Pass - Filter Bypass & Cross Site Scripting Vulnerability Vulnerability Lab (May 10)
Stanford University - Multiple SQL Injection Vulnerabilities Vulnerability Lab (May 10)
Wordpress Truemag Theme - Client Side Cross Site Scripting Web Vulnerability Vulnerability Lab (May 10)
Skype Manager - (Email Change) Filter Bypass Vulnerability Vulnerability Lab (May 10)
Notes v4.5 iOS - Arbitrary File Upload Vulnerability Vulnerability Lab (May 10)
Teampass v2.1.25 - Unauthenticated Access Vulnerability Vulnerability Lab (May 25)
Teampass v2.1.25 - Arbitrary File Download Vulnerability Vulnerability Lab (May 25)
Bashi v1.6 iOS - Persistent Mail Encoding Vulnerability Vulnerability Lab (May 25)
Teampass v2.1.26 - Stored Cross Site Scripting Vulnerability Vulnerability Lab (May 25)

Wim Remes

Re: Skype Phishing Attack Wim Remes (May 13)