|
Prev week |
Colapse all |
Post message
HTB22846: SQL Injection in IWantOneButton wordpress plugin 2011-02-24 advisory htbridge ch Vulnerability ID: HTB22846 Reference: http://www.htbridge.ch/advisory/sql_injection_in_iwantonebutton_wordpres s_plugin.html Product: IWantOneButton wordpress plugin Vendor: Daniel Sands ( http://www.danielsands.co.cc/ ) Vulnerable Version: 3.0.1 Vendor Notification: 10 February 2011 Vulnerability [ more ] [ reply ] ZDI-11-093: CA Internet Security Suite HIPS XML Security Database Parser Class Remote Code Execution Vulnerability 2011-02-23 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-093: CA Internet Security Suite HIPS XML Security Database Parser Class Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-093 February 23, 2011 -- CVE ID: CVE-2011-1036 -- CVSS: 9.3, (AV:N/AC:M/Au:N/C:C/I:C/A:C) -- Affected Vendors: CA -- Affected Pr [ more ] [ reply ] ZDI-11-092: (0day) Cisco Secure Desktop CSDWebInstaller ActiveX Control Cleaner.cab Remote Code Execution Vulnerability 2011-02-23 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-092: (0day) Cisco Secure Desktop CSDWebInstaller ActiveX Control Cleaner.cab Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-092 February 23, 2011 -- CVE ID: CVE-2011-0925 -- CVSS: 8.3, (AV:N/AC:M/Au:N/C:P/I:P/A:C) -- Affected Vendors: Cisco -- Aff [ more ] [ reply ] ZDI-11-091: (0day) Cisco Secure Desktop CSDWebInstaller Remote Code Execution Vulnerability 2011-02-23 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-091: (0day) Cisco Secure Desktop CSDWebInstaller Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-091 February 23, 2011 -- CVE ID: CVE-2011-0926 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Cisco -- Affected Products: Cisco Secure D [ more ] [ reply ] WordPress Uploadify Plugin 1.0 Remote File Upload 2011-02-23 Leonardo Rota Botelho (me leonardobotelho com) GotGeek Labs http://www.gotgeek.com.br/ WordPress Uploadify Plugin 1.0 Remote File Upload [+] Description Adds a shortcode to embed the necessary elements to use Uploadify in a page or post which will give your website visitors the ability to upload large files. By default the files will be upl [ more ] [ reply ] ZDI-11-090: Novell Netware RPC XNFS xdrDecodeString Remote Code Execution Vulnerability 2011-02-23 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-090: Novell Netware RPC XNFS xdrDecodeString Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-090 February 18, 2011 -- CVE ID: CVE-2010-4227 -- CVSS: 10, (AV:N/AC:L/Au:N/C:C/I:C/A:C) -- Affected Vendors: Novell -- Affected Products: Novell Netware [ more ] [ reply ] [USN-1070-1] Bind vulnerability 2011-02-23 Marc Deslauriers (marc deslauriers canonical com) =========================================================== Ubuntu Security Notice USN-1070-1 February 23, 2011 bind9 vulnerability CVE-2011-0414 =========================================================== A security issue affects the following Ubuntu releases: Ubuntu 10.10 This advisory [ more ] [ reply ] Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Manager 2011-02-23 Cisco Systems Product Security Incident Response Team (psirt cisco com) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Manager Advisory ID: cisco-sa-20110223-telepresence-ctsman Revision 1.0 For Public Release 2011 February 23 +----------------------------------------------------- Summary ==== [ more ] [ reply ] Cisco Security Advisory: Cisco Firewall Services Module Skinny Client Control Protocol Inspection Denial of Service Vulnerability 2011-02-23 Cisco Systems Product Security Incident Response Team (psirt cisco com) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Cisco Security Advisory: Cisco Firewall Services Module Skinny Client Control Protocol Inspection Denial of Service Vulnerability Document ID: 112893 Advisory ID: cisco-sa-20110223-fwsm Revision 1.0 For Public Release 2011 February 23 1600 UTC (GM [ more ] [ reply ] Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Endpoint Devices 2011-02-23 Cisco Systems Product Security Incident Response Team (psirt cisco com) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Endpoint Devices Advisory ID: cisco-sa-20110223-telepresence-cts Revision 1.0 For Public Release 2011 February 23 1600 +-------------------------------------------------------- [ more ] [ reply ] Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Recording Server 2011-02-23 Cisco Systems Product Security Incident Response Team (psirt cisco com) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Recording Server Advisory ID: cisco-sa-20110223-telepresence-ctrs Revision 1.0 For Public Release 2011 February 23 1600 UTC (GMT) +-------------------------------------------- [ more ] [ reply ] Cisco Security Advisory: Multiple Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances 2011-02-23 Cisco Systems Product Security Incident Response Team (psirt cisco com) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Cisco Security Advisory: Multiple Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances Advisory ID: cisco-sa-20110223-asa Revision 1.0 For Public Release 2011 February 23 1600 UTC (GMT) +------------------------------------------- [ more ] [ reply ] Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Multipoint Switch 2011-02-23 Cisco Systems Product Security Incident Response Team (psirt cisco com) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Multipoint Switch Advisory ID: cisco-sa-20110223-telepresence-ctms Revision 1.0 For Public Release 2011 February 23 +---------------------------------------------------------- [ more ] [ reply ] [PRE-SA-2011-01] Multiple Linux kernel vulnerabilities in partition handling code of LDM and MAC partition tables 2011-02-23 Timo Warns (warns pre-sense de) [USN-1069-1] Mailman vulnerabilities 2011-02-22 Marc Deslauriers (marc deslauriers canonical com) =========================================================== Ubuntu Security Notice USN-1069-1 February 22, 2011 mailman vulnerabilities CVE-2010-3089, CVE-2011-0707 =========================================================== A security issue affects the following Ubuntu releases: Ubuntu 6. [ more ] [ reply ] Vanilla Forums 2.0.17.1 ~ 2.0.17.5 <= Cross Site Scripting Vulnerability 2011-02-22 YGN Ethical Hacker Group (lists yehg net) 1. OVERVIEW The Vanilla Forums 2.0.17.1 till 2.0.17.5 were vulnerable to Cross Site Scripting. 2. BACKGROUND Vanilla Forums are open-source, standards-compliant, customizable discussion forums. It is specially made to help small communities grow larger through SEO mojo, totally customizable soc [ more ] [ reply ] HTB22839: SQL Injection in Z-Vote wordpress plugin 2011-02-22 advisory htbridge ch Vulnerability ID: HTB22839 Reference: http://www.htbridge.ch/advisory/sql_injection_in_z_vote_wordpress_plugin .html Product: Z-Vote wordpress plugin Vendor: 140hours ( http://wordpress.org/extend/plugins/z-vote/ ) Vulnerable Version: 1.1 Vendor Notification: 08 February 2011 Vulnerability Type: SQ [ more ] [ reply ] HTB22838: Path disclosure in Vote It Up wordpress plugin 2011-02-22 advisory htbridge ch Vulnerability ID: HTB22838 Reference: http://www.htbridge.ch/advisory/path_disclosure_in_vote_it_up_wordpress_ plugin.html Product: Vote It Up wordpress plugin Vendor: Nicholas Kwan (multippt) ( http://www.onfry.com/ ) Vulnerable Version: 1.2.2 Vendor Notification: 08 February 2011 Vulnerability Ty [ more ] [ reply ] HTB22841: SQL Injection in Comment Rating wordpress plugin 2011-02-22 advisory htbridge ch Vulnerability ID: HTB22841 Reference: http://www.htbridge.ch/advisory/sql_injection_in_comment_rating_wordpres s_plugin.html Product: Comment Rating wordpress plugin Vendor: Bob King ( http://wealthynetizen.com/ ) Vulnerable Version: 2.9.23 Vendor Notification: 08 February 2011 Vulnerability Type: [ more ] [ reply ] HTB22840: Path disclosure in Starbox Voting wordpress plugin 2011-02-22 advisory htbridge ch Vulnerability ID: HTB22840 Reference: http://www.htbridge.ch/advisory/path_disclosure_in_starbox_voting_wordpr ess_plugin.html Product: Starbox Voting wordpress plugin Vendor: jigen.he ( http://www.sealedbox.cn/ ) Vulnerable Version: 2.0.4 Vendor Notification: 08 February 2011 Vulnerability Type: [ more ] [ reply ] HTB22844: XSS in GD Star Rating wordpress plugin 2011-02-22 advisory htbridge ch Vulnerability ID: HTB22844 Reference: http://www.htbridge.ch/advisory/xss_in_gd_star_rating_wordpress_plugin.h tml Product: GD Star Rating wordpress plugin Vendor: Milan Petrovic ( http://www.gdstarrating.com/ ) Vulnerable Version: 1.9.7 Vendor Notification: 08 February 2011 Vulnerability Type: XS [ more ] [ reply ] [USN-1068-1] Aptdaemon vulnerability 2011-02-22 Marc Deslauriers (marc deslauriers canonical com) =========================================================== Ubuntu Security Notice USN-1068-1 February 22, 2011 aptdaemon vulnerability CVE-2011-0725 =========================================================== A security issue affects the following Ubuntu releases: Ubuntu 10.10 This advis [ more ] [ reply ] HTB22845: SQL Injection in cdnvote wordpress plugin 2011-02-22 advisory htbridge ch Vulnerability ID: HTB22845 Reference: http://www.htbridge.ch/advisory/sql_injection_in_cdnvote_wordpress_plugi n.html Product: cdnvote wordpress plugin Vendor: Nakahira ( http://www.crossdrive.net/ ) Vulnerable Version: 0.4.1 Vendor Notification: 08 February 2011 Vulnerability Type: SQL Injection R [ more ] [ reply ] AST-2011-002: Multiple array overflow and crash vulnerabilities in UDPTL code 2011-02-21 Asterisk Security Team (security asterisk org) HTB22843: Path disclosure in GD Star Rating wordpress plugin 2011-02-22 advisory htbridge ch Vulnerability ID: HTB22843 Reference: http://www.htbridge.ch/advisory/path_disclosure_in_gd_star_rating_wordpr ess_plugin.html Product: GD Star Rating wordpress plugin Vendor: Milan Petrovic ( http://www.gdstarrating.com/ ) Vulnerable Version: 1.9.7 Vendor Notification: 08 February 2011 Vulnerabil [ more ] [ reply ] HTB22842: Path disclosure in Comment Rating wordpress plugin 2011-02-22 advisory htbridge ch Vulnerability ID: HTB22842 Reference: http://www.htbridge.ch/advisory/path_disclosure_in_comment_rating_wordpr ess_plugin.html Product: Comment Rating wordpress plugin Vendor: Bob King ( http://wealthynetizen.com/ ) Vulnerable Version: 2.9.23 Vendor Notification: 08 February 2011 Vulnerability Typ [ more ] [ reply ] |
|
Privacy Statement |
Reference: http://www.htbridge.ch/advisory/xss_in_iwantonebutton_wordpress_plugin.h
tml
Product: IWantOneButton wordpress plugin
Vendor: Daniel Sands ( http://www.danielsands.co.cc/ )
Vulnerable Version: 3.0.1
Vendor Notification: 10 February 2011
Vulnerability Type: XSS
[ more ] [ reply ]