BugTraq Mode:
(Page 15 of 1562)  < Prev  10 11 12 13 14 15 16 17 18 19 20  Next >
[ MDVSA-2014:155 ] kernel 2014-08-07
security mandriva com
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

_______________________________________________________________________

Mandriva Linux Security Advisory MDVSA-2014:155
http://www.mandriva.com/en/support/security/
___________________________________________________________

[ more ]  [ reply ]
(CVE-2014-3501/2/3) Apache Cordova for Android - Multiple Vulnerabilities 2014-08-07
David Kaplan (davidkaps outlook com)
Hi,

We have recently discovered a severe Cross-Application Scripting (XAS) vulnerability in Apache Cordova for Android. This vulnerability enables theft of sensitive information from Crodova-based apps both locally by malware and also remotely by using drive-by exploitation techniques.

In addition

[ more ]  [ reply ]
nullcon CFP is open 2014-08-06
nullcon (nullcon nullcon net)
Dear Security Gurus,

6th year | CFP opens on 6th Aug 2014 | conference on 6th Feb 2015.

Welcome to nullcon 666! Bring out the beast in you.
http://en.wikipedia.org/wiki/666_(number)

we are happy to open the CFP. Time to tickle your gray cells and
submit your research.
Training: 4th-5th Feb 2015
C

[ more ]  [ reply ]
[ MDVSA-2014:150 ] tor 2014-08-06
security mandriva com
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

_______________________________________________________________________

Mandriva Linux Security Advisory MDVSA-2014:150
http://www.mandriva.com/en/support/security/
___________________________________________________________

[ more ]  [ reply ]
PhotoSync v2.2 iOS - Command Inject Web Vulnerability 2014-08-06
Vulnerability Lab (research vulnerability-lab com)
Document Title:
===============
PhotoSync v2.2 iOS - Command Inject Web Vulnerability

References (Source):
====================
http://www.vulnerability-lab.com/get_content.php?id=1290

Release Date:
=============
2014-08-05

Vulnerability Laboratory ID (VL-ID):
=================================

[ more ]  [ reply ]
[ MDVSA-2014:149 ] php 2014-08-06
security mandriva com
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

_______________________________________________________________________

Mandriva Linux Security Advisory MDVSA-2014:149
http://www.mandriva.com/en/support/security/
___________________________________________________________

[ more ]  [ reply ]
[security bulletin] HPSBMU03085 rev.1 - HP Application Lifecycle Management / Quality Center, Elevation of Privilege 2014-08-05
security-alert hp com
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Note: the current version of the following document is available here:
https://h20564.www2.hp.com/portal/site/hpsc/public/kb/
docDisplay?docId=emr_na-c04394553

SUPPORT COMMUNICATION - SECURITY BULLETIN

Document ID: c04394553
Version: 1

HPSBMU03085 re

[ more ]  [ reply ]
PhotoSync Wifi & Bluetooth v1.0 - File Include Vulnerability 2014-08-06
Vulnerability Lab (research vulnerability-lab com)
Document Title:
===============
PhotoSync Wifi & Bluetooth v1.0 - File Include Vulnerability

References (Source):
====================
http://www.vulnerability-lab.com/get_content.php?id=1289

Release Date:
=============
2014-08-04

Vulnerability Laboratory ID (VL-ID):
==========================

[ more ]  [ reply ]
[SECURITY] [DSA 2997-1] reportbug security update 2014-08-05
Salvatore Bonaccorso (carnil debian org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- ------------------------------------------------------------------------
-
Debian Security Advisory DSA-2997-1 security (at) debian (dot) org [email concealed]
http://www.debian.org/security/ Salvatore Bonaccorso
August 05, 2014

[ more ]  [ reply ]
CVE-2014-5075 MitM Vulnerability in the Smack XMPP Library for Java 2014-08-05
Georg Lukas (lukas rt-solutions de)
CVE-2014-5075 MitM Vulnerability in the Smack XMPP Library for Java
===================================================================

Smack <http://www.igniterealtime.org/projects/smack/> is an Open Source
XMPP (Jabber) client library for instant messaging and presence written
in Java. Smack prio

[ more ]  [ reply ]
Pro Chat Rooms v8.2.0 - Multiple Vulnerabilities 2014-08-05
mike manzotti dionach com
# Exploit Title: Pro Chat Rooms v8.2.0 - Multiple Vulnerabilities
# Google Dork: intitle:"Powered by Pro Chat Rooms"
# Date: 5 August 2014
# Exploit Author: Mike Manzotti @ Dionach Ltd
# Vendor Homepage: http://prochatrooms.com
# Software Link: http://prochatrooms.com/software.php
# Version: v8.2

[ more ]  [ reply ]
Apache Cordova 3.5.1 2014-08-04
Marcel Kinard (cmarcelk gmail com)
Android Platform Release: 04 Aug 2014

Security issues were discovered in the Android platform of Cordova. We are releasing version 3.5.1 of Cordova Android to address these security issues. We recommend that all Android applications built using Cordova be upgraded to use version 3.5.1 of Cordova An

[ more ]  [ reply ]
[CVE- Requested][Vembu Storegrid - Multiple Critical Vulnerabilities] 2014-08-04
Mike Antcliffe (mikeantcliffe logicallysecure com)
1. Advisory Overview

Multiple vulnerabilities exist in the Vembu Storegrid Backup and Disaster
Recovery solution affecting both the client and server software (see
Additional Information section) include but are not limited to reflected
XSS, source code/sensitive
information disclosure, privilege

[ more ]  [ reply ]
SEC Consult SA-20140805-0 :: Multiple vulnerabilities in Readsoft Invoice Processing and Process Director 2014-08-05
SEC Consult Vulnerability Lab (research sec-consult com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

SEC Consult Vulnerability Lab Security Advisory < 20140805-0 >
=======================================================================
title: Multiple vulnerabilities
product: Readsoft Invoice Processing / Process Director
vul

[ more ]  [ reply ]
[security bulletin] HPSBMU03037 rev.2 - HP Multimedia Service Environment (MSE), (HP Network Interactive Voice Response (NIVR)), Remote Disclosure of Information 2014-08-04
security-alert hp com
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

UPPORT COMMUNICATION - SECURITY BULLETIN

Document ID: c04275280
Version: 2

HPSBMU03037 rev.2 - HP Multimedia Service Environment (MSE), (HP Network
Interactive Voice Response (NIVR)), Remote Disclosure of Information

NOTICE: The information in this S

[ more ]  [ reply ]
CVE-2014-2595 - Authentication Bypass in Barracuda Web Application Firewall 2014-08-04
Portcullis Advisories (advisories portcullis-security com)
Vulnerability title: Authentication Bypass in Barracuda Web Application
Firewall
CVE: CVE-2014-2595
Vendor: Barracuda
Product: Web Application Firewall
Affected version: Firmware v7.8.1.013
Fixed version: N/A
Reported by: Nick Hayes

Details:

It is possible to re-use a link which includes a non-exp

[ more ]  [ reply ]
[security bulletin] HPSBMU03083 rev.1 - HP BladeSystem c-Class Virtual Connect Firmware running OpenSSL, Remote Unauthorized Access or Disclosure of Information 2014-08-04
security-alert hp com
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Note: the current version of the following document is available here:
https://h20564.www2.hp.com/portal/site/hpsc/public/kb/
docDisplay?docId=emr_na-c04392919

SUPPORT COMMUNICATION - SECURITY BULLETIN

Document ID: c04392919
Version: 1

HPSBMU03083 r

[ more ]  [ reply ]
Ebay Inc Magento ProStore CP #4 - Filter Validation Bypass & Persistent (Payment Information) Vulnerability 2014-08-04
Vulnerability Lab (research vulnerability-lab com)
Document Title:
===============
Ebay Inc Magento ProStore CP #4 - Filter Validation Bypass & Persistent
(Payment Information) Vulnerability

References (Source):
====================
http://www.vulnerability-lab.com/get_content.php?id=1265

Ebay Inc ID: EIBBP-28091

Video: http://www.vulnerability-

[ more ]  [ reply ]
FreeDisk v1.01 iOS - Multiple Web Vulnerabilities 2014-08-04
Vulnerability Lab (research vulnerability-lab com)
Document Title:
===============
FreeDisk v1.01 iOS - Multiple Web Vulnerabilities

References (Source):
====================
http://www.vulnerability-lab.com/get_content.php?id=1287

Release Date:
=============
2014-08-01

Vulnerability Laboratory ID (VL-ID):
====================================

[ more ]  [ reply ]
ownCloud Unencrypted Private Key Exposure 2014-08-04
Senderek Web Security (support senderek ie) (1 replies)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Senderek Web Security - Security Advisory

ownCloud Unencrypted Private Key Exposure
=========================================

https://senderek.ie/archive/2014/owncloud_unencrypted_private_key_exposu
re.php

Revision: 1.00
Last Updated: 3 A

[ more ]  [ reply ]
Re: ownCloud Unencrypted Private Key Exposure 2014-08-04
Frank Stanek (frank frank-stanek de) (3 replies)
Re: ownCloud Unencrypted Private Key Exposure 2014-08-05
Jack Brennan (mail sourcenix com)
Re: ownCloud Unencrypted Private Key Exposure 2014-08-05
Anthony Dubuissez (anthony dubuissez webera fr)
[SECURITY] [DSA 2996-1] icedove security update 2014-08-03
Moritz Muehlenhoff (jmm debian org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
-
Debian Security Advisory DSA-2996-1 security (at) debian (dot) org [email concealed]
http://www.debian.org/security/ Moritz Muehlenhoff
August 03, 2014

[ more ]  [ reply ]
Video WiFi Transfer 1.01 - Directory Traversal Vulnerability 2014-08-04
Vulnerability Lab (research vulnerability-lab com)
Document Title:
===============
Video WiFi Transfer 1.01 - Directory Traversal Vulnerability

References (Source):
====================
http://www.vulnerability-lab.com/get_content.php?id=1288

Release Date:
=============
2014-08-02

Vulnerability Laboratory ID (VL-ID):
==========================

[ more ]  [ reply ]
[SECURITY] [DSA 2995-1] lzo2 security update 2014-08-03
Salvatore Bonaccorso (carnil debian org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- ------------------------------------------------------------------------
-
Debian Security Advisory DSA-2995-1 security (at) debian (dot) org [email concealed]
http://www.debian.org/security/ Salvatore Bonaccorso
August 03, 2014

[ more ]  [ reply ]
[slackware-security] dhcpcd (SSA:2014-213-02) 2014-08-01
Slackware Security Team (security slackware com)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

[slackware-security] dhcpcd (SSA:2014-213-02)

New dhcpcd packages are available for Slackware 13.1, 13.37, 14.0, 14.1,
and -current to fix a security issue.

Here are the details from the Slackware 14.1 ChangeLog:
+--------------------------+
patche

[ more ]  [ reply ]
[slackware-security] samba (SSA:2014-213-01) 2014-08-01
Slackware Security Team (security slackware com)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

[slackware-security] samba (SSA:2014-213-01)

New samba packages are available for Slackware 14.1 and -current to
fix a security issue.

Here are the details from the Slackware 14.1 ChangeLog:
+--------------------------+
patches/packages/samba-4.1.1

[ more ]  [ reply ]
Microsoft Exchange Multiple Vulnerabilities 2014-08-01
np securitypentest com
Exchange Multiple Internal IP Disclosures
------------------------------------------
Advisory:
http://foofus.net/?p=758
http://www.securitypentest.com/2014/08/exchange-multiple-internal-ip.htm
l

Autodiscover Enumeration Vulnerability
------------------------------------------
Advisory:
http://foofus

[ more ]  [ reply ]
(Page 15 of 1562)  < Prev  10 11 12 13 14 15 16 17 18 19 20  Next >


 

Privacy Statement
Copyright 2010, SecurityFocus