Mail Index
- Re: Xaraya <= 1.0.0 RC4 D.O.S / file corruption
- Re: WebCalendar Multiple Vulnerabilities
- Re: DNS query spam
- Re: DNS query spam
- [SECURITY] [DSA 912-1] New centericq packages fix denial of service
- Re: DNS query spam
- Gallery 2.x Security Advisory
- Opera 8.50 DoS with simple java applet
- Re: WebCalendar Multiple Vulnerabilities
- Re: DNS query spam
- MDKSA-2005:219 - Updated kernel packages fix numerous vulnerabilities
- From: Mandriva Security Team
- MDKSA-2005:218 - Updated kernel packages fix numerous vulnerabilities
- From: Mandriva Security Team
- Re: Opera 8.50 DoS with simple java applet
- MDKSA-2005:217 - Updated netpbm packages fix pnmtopng vulnerabilities
- From: Mandriva Security Team
- Re: Re: Xaraya <= 1.0.0 RC4 D.O.S / file corruption
- MDKSA-2005:220 - Updated kernel packages fix numerous vulnerabilities
- From: Mandriva Security Team
- Re: DNS query spam
- Re: - Cisco IOS HTTP Server code injection/execution vulnerability-
- Re: What is wrong with these people?
- PhpX <= 3.5.9 SQL Injection -> login bypass -> remote command/code execution
- Re: WebCalendar Multiple Vulnerabilities
- Sunbelt set to acquire Kerio Personal Firewall
- Re: DNS query spam
- Re: Opera 8.50 DoS with simple java applet
- From: Yngve N. Pettersen (Developer Opera Software ASA)
- [security bulletin] SSRT4787 Revised - HP Systems Insight Manager (SIM) for HP-UX Remote Denial of Service (DoS)
- WebCalendar Multiple Vulnerabilities.
- Microsoft Windows CreateRemoteThread Exploit
- [SECURITY] [DSA 914-1] New horde2 packages fix cross-site scripting
- [DRUPAL-SA-2005-008] Drupal 4.6.4 / 4.5.6 fixes XSS and HTTP header injection issue
- [DRUPAL-SA-2005-007] Drupal 4.6.4 / 4.5.6 fixes XSS issue
- Edgewall Trac SQL Injection Vulnerability
- [USN-220-1] w3c-libwww vulnerability
- Perl format string integer wrap vulnerability
- [SECURITY] [DSA 913-1] New gdk-pixbuf packages fix several vulnerabilities
- [DRUPAL-SA-2005-009] Drupal 4.6.4 / 4.5.6 fixes minor access control issue
- Cisco Security Advisory: IOS HTTP Server Command Injection Vulnerability
- From: Cisco Systems Product Security Incident Response Team
- [SECURITY] [DSA 915-1] New helix-player packages fix arbitrary code execution
- phpMyChat Multiple XSS vulnerabilities.
- Re: Sunbelt set to acquire Kerio Personal Firewall
- Re: Microsoft Windows CreateRemoteThread Exploit
- RE: Microsoft Windows CreateRemoteThread Exploit
- SEC Consult SA-20051202-1 :: GMX Webmail XSS
- From: Sec Consult Research
- SEC Consult SA-20050212-1 :: A Word on Webmail Security and Browser related XSS Bugs
- From: Sec Consult Research
- SEC Consult SA-XXXXXXXXXXX
- 22nd CCC conference in Berlin
- [xfocus-SD-051202]openMotif libUil Multiple vulnerability
- Format String Vulnerabilities in Perl Programs
- [USN-221-1] racoon vulnerability
- [USN-222-1] Perl vulnerability
- WinEggDropShell Multiple Remote Stack Overflow
- Re: - Cisco IOS HTTP Server code injection/execution vulnerability-
- MDKSA-2005:223 - Updated webmin package fixes format string vulnerability
- From: Mandriva Security Team
- [OpenPKG-SA-2005.026] OpenPKG Security Advisory (lynx)
- MDKSA-2005:221 - Updated spamassassin packages fixes vulnerability
- From: Mandriva Security Team
- Re: Re: Microsoft Windows CreateRemoteThread Exploit
- eXtreme Styles mod <= 2.2.1 Multiple Vulnerabilities
- [OpenPKG-SA-2005.025] OpenPKG Security Advisory (perl)
- Alisveristr E-Commerce Admin Login SQL İnjection
- Re: WebCalendar
- MDKSA-2005:222 - Updated mailman packages fix various vulnerabilities
- From: Mandriva Security Team
- [Updated] [FLSA-2005:166943] Updated php packages fix security issues
- QNX 4.25 suided dhcp.client binary
- DMA[2005-1202a] - 'sobexsrv - Scripting/Secure OBEX Server format string vulnerability'
- [OpenPKG-SA-2005.027] OpenPKG Security Advisory (php)
- PHP-Fusion v6.00.109 SQL Injection and Info. Disclosure
- Zen-Cart <= 1.2.6d blind SQL injection / remote commands execution:
- eXtreme Styles mod <= 2.2.1 Multiple Vulnerabilities
- more MD5 colliding examples
- [USN-223-1] Inkscape vulnerability
- [scip_Advisory] e107 v0.6 rate.php manipulation
- have you ever been BluePIMped?
- [USN-180-2] MySQL 4.1 vulnerability
- [security bulletin] HPSBUX01059 SSRT4704 Revised - HP-UX Running wu-ftpd Local Unauthorized Access
- Blog System v1.2 Multiple SQL Injection Vulnerabilities
- Outpost24 Public Security Note: Linux/Elxbot
- Buffer Overflow in MultiTech VoIP Implementations
- From: SecurityLab Research
- SUSE Security Announcement: kernel various security and bugfixes (SUSE-SA:2005:067)
- Horde IMP Webmail Client XSS all versions
- iDefense Security Advisory 12.05.05: Multiple Vendor xpdf DCTStream Baseline Heap Overflow Vulnerability
- iDefense Security Advisory 12.05.05: Multiple Vendor xpdf DCTStream Progressive Heap Overflow
- iDefense Security Advisory 12.05.05: Multiple Vendor xpdf JPX Stream Reader Heap Overflow Vulnerability
- iDefense Security Advisory 12.05.05: Multiple Vendor xpdf StreamPredictor Heap Overflow Vulnerability
- [USN-224-1] Kerberos vulnerabilities
- [USN-225-1] Apache 2 vulnerability
- Critical Myspace.com Vulnerabilites
- [KAPDA::#15] - ThWboard multiple vulnerabilities
- SimpleBBS <= v1.1 remote commands execution in c by: unitedasia security crew
- SugarSuite Open Source <= 4.0beta Remote code execution
- [SECURITY] [DSA 916-1] New Inkscape packages fix arbitrary code execution
- Advisory 25/2005: phpMyAdmin Variables Overwrite Vulnerability
- Advisory 24/2005: libcurl URL parsing vulnerability
- Mobile Antivirus Researchers Assoc. Call for White Papers
- From: contact . removethis
- DRZES HMS XSS and SQL Injection Vulnerabilities
- Journal of Computer Virology-Call for Papers
- [security bulletin] SSRT4884 HP-UX TCP/IP Remote Denial of Service (DoS)
- [KDE Security Advisory] multiple buffer overflows in kpdf/koffice
- [ GLSA 200512-02 ] Webmin, Usermin: Format string vulnerability
- From: Sune Kloppenborg Jeppesen
- [ GLSA 200512-01 ] Perl: Format string errors can lead to code execution
- From: Sune Kloppenborg Jeppesen
- [security bulletin] SSRT5954 Revised - HP-UX TCP/IP Remote Denial of Service (DoS)
- [security bulletin] SSRT051037 HP-UX Running IPSec Remote Unauthorized Access
- iDefense Security Advisory 12.07.05: Dell TrueMobile 2300 Wireless Broadband Router Authentication Bypass Vulnerability
- From: labs-no-reply@xxxxxxxxxxxx
- Airscanner Mobile Security Advisory: Remote Hard Reset Data Wipe and DoS of Pocket Controller v5.0 (#AS05080401)
- From: contact . removethis
- -Exploiting Freelist[0] On Windows XP Service Pack 2-
- [SECURITY] [DSA 917-1] New courier packages fix unauthorised access
- 3com product security hole
- Website Baker <=2.6.0 SQL Injection -> Login bypass -> remote code execution
- = 1.2.6d blind SQL injection / remote commands execution:
- [security bulletin] SSRT051069 - HP Tru64 Unix Secure Web Server (SWS 6.4.1 and earlier) PHP/XMLRPC Remote Unauthorized Execution of Arbitrary Code
- [TKPN2005-12-001] Multiple critical vulnerabilities in MyBB
- Re: 3com product security hole
- [KAPDA::#16] - SMF SQL Injection
- Milliscript 1.4 Multiple Vulnerabilities
- [USN-226-1] Courier vulnerability
- MDKSA-2005:224 - Updated curl package fixes format string vulnerability
- From: Mandriva Security Team
- [SECURITY] [DSA 918-1] New osh packages fix privilege escalation
- iDefense Security Advisory 12.09.05: Ethereal OSPF Protocol Dissector Buffer Overflow Vulnerability
- From: labs-no-reply@xxxxxxxxxxxx
- TSLSA-2005-0070 - multi
- From: Trustix Security Advisor
- MDKSA-2005:225 - Updated perl package fixes format string vulnerability
- From: Mandriva Security Team
- Motorola SB5100E Cable Modem DoS
- Re: 3com product security hole
- PGP Wipe Free Space, Lyris ListManager Flaws, Windows Timestamps, Sam Juicer
- Apani Network Response to ISAKMP cert-fi:7710 Alert
- Re: [KAPDA::#16] - SMF SQL Injection
- Flatnuke 2.5.6 privilege escalation / remote commands execution exploit
- MDKSA-2005:206-1 - Updated openvpn packages fix multiple vulnerabilities
- From: Mandriva Security Team
- DEFCON London group - DC4420 - inaugural meeting and Christmas Drinks!
- Torrential 1.2 Directory Traversal
- [SECURITY] [DSA 919-1] New curl packages fix potential security problem
- BTGrup Admin WebController Script SQL injection
- IMOEL CMS Sql password discovery
- [ GLSA 200512-03 ] phpMyAdmin: Multiple vulnerabilities
- From: Sune Kloppenborg Jeppesen
- Guestserver guestbook system vulnerabilities
- Re: [Full-disclosure] [scip_Advisory] NetGear RP114 Flooding Denial ofService
- Re: Re: [KAPDA::#16] - SMF SQL Injection
- oracle not only offeder - researchers NOT responsible?
- Re: Re: [KAPDA::#16] - SMF SQL Injection
- [USN-227-1] xpdf vulnerabilities
- iDEFENSE Security Advisory 12.12.05: SCO Unixware Setuid 'uidadmin' Scheme Buffer Overflow Vulnerability
- From: labs-no-reply@xxxxxxxxxxxx
- SEC Consult SA-20051211-0 :: Several XSS issues in Horde Framework, Kronolith Calendar, Mnemo Notes, Nag Tasks and Turba Addressbook
- [ GLSA 200512-04 ] Openswan, IPsec-Tools: Vulnerabilities in ISAKMP Protocol implementation
- Re: Re: [Full-disclosure] Kerio Personal Firewall and Kerio Server Firewall FWDRV driver Local Denial of Service
- Re: [DCG] DEFCON London group - DC4420 - inaugural meeting and Christmas Drinks!
- SEC Consult SA-20051211-0 :: Nortel SSL VPN Cross Site Scripting/Command Execution
- From: SEC Consult Research
- Re: Website Baker <=2.6.0 SQL Injection -> Login bypass -> remote code execution
- Arab Portal v2 Beta2 SQL Injections
- Re: [KAPDA::#16] - SMF SQL Injection
- [PHP-CHECKER] 99 potential SQL injection vulnerabilities
- Status on PGP NTFS File Wipe issue, 11 Dec 2005
- [OpenPKG-SA-2005.028] OpenPKG Security Advisory (curl)
- [USN-228-1] curl library vulnerability
- [scip_Advisory] NetGear RP114 Flooding Denial of Service
- Re: Re: [KAPDA::#16] - SMF SQL Injection
- [USN-222-2] Perl vulnerability
- [USN-229-1] Zope vulnerability
- [EEYEB-20050523] Windows Kernel APC Data-Free Local Privilege Escalation Vulnerability
- phpCOIN 1.2.2 multiple vulnerabilities
- MDKSA-2005:226 - Updated mozilla-thunderbird package fix vulnerability in enigmail
- From: Mandriva Security Team
- Re: [ GLSA 200512-04 ] Openswan, IPsec-Tools: Vulnerabilities in ISAK MP Protocol implementation
- Secunia Research: Internet Explorer Suppressed "Download Dialog" Vulnerability
- [SECURITY] [DSA 920-1] New ethereal packages fix arbitrary code execution
- ADP Forum 2.0,ADP Forum 2.0.1,ADP Forum 2.0.2,ADP Forum 2.0.3 versiyon user md5 hash bug
- RE: [Full-disclosure] [EEYEB-20050523] Windows Kernel APC Data-FreeLocal Privilege Escalation Vulnerability
- LIMBO CMS <= v1.0.4.2 _SERVER[] array overwrite / remote code execution
- Re: [Full-disclosure] Re: [EEYEB-20050523] Windows Kernel APC Data-FreeLocal Privilege Escalation Vulnerability
- iDefense Security Advisory 12.14.05: Trend Micro ServerProtect isaNVWRequest.dll Chunked Overflow
- From: labs-no-reply@xxxxxxxxxxxx
- Re: [Full-disclosure] [EEYEB-20050523] Windows Kernel APC Data-Free Local Privilege Escalation Vulnerability
- iDefense Security Advisory 12.14.05: Trend Micro ServerProtect relay.dll Chunked Overflow Vulnerability
- From: labs-no-reply@xxxxxxxxxxxx
- Re: [scip_Advisory] NetGear RP114 Flooding Denial of Service
- iDefense Security Advisory 12.14.05: Trend Micro ServerProtect EarthAgent Remote DoS Vulnerability
- From: labs-no-reply@xxxxxxxxxxxx
- [PHP-CHECKER] 99 potential SQL injection vulnerabilities
- [OpenPKG-SA-2005.029] OpenPKG Security Advisory (apache)
- Re: [PHP-CHECKER] 99 potential SQL injection vulnerabilities
- Disclosure timelines from vendors - a promising practice?
- Bypass XSS filter in PHPNUKE 7.9=>x
- iDefense Security Advisory 12.14.05: Trend Micro ServerProtect Crystal Reports ReportServer File Disclosure
- From: labs-no-reply@xxxxxxxxxxxx
- DIMVA 2006 - 2nd Call for Papers
- Re: IMOEL CMS Sql password discovery
- SUSE Security Announcement: php4, php5 (SUSE-SA:2005:069)
- [ GLSA 200512-05 ] Xmail: Privilege escalation through sendmail
- [SECURITY] [DSA 921-1] New Linux 2.4.27 packages fix several vulnerabilities
- Re: [ GLSA 200512-04 ] Openswan, IPsec-Tools: Vulnerabilities in ISAK MP Protocol implementation
- Business Objects WebIntelligence 6.5x Account Lockout and System DoS
- RLA ("Remote LanD Attack")
- SUSE Security Announcement: kernel various security and bugfixes (SUSE-SA:2005:068)
- CodeCon submission deadline reminder
- [USN-230-1] ffmpeg vulnerability
- Secunia Research: Microsoft Internet Explorer Keyboard Shortcut Processing Vulnerability
- Re: Re: Re: [KAPDA::#16] - SMF SQL Injection
- Re: [ GLSA 200512-04 ] Openswan, IPsec-Tools: Vulnerabilities in ISAKMP Protocol implementation
- [ GLSA 200512-06 ] Ethereal: Buffer overflow in OSPF protocol dissector
- Re: Countering Trusting Trust through Diverse Double-Compiling
- [SECURITY] [DSA 922-1] New Linux 2.6.8 packages fix several vulnerabilities
- iDefense Security Advisory 12.14.05: Trend Micro PC-Cillin Internet Security Insecure File Permission Vulnerability
- From: labs-no-reply@xxxxxxxxxxxx
- MDKSA-2005:227 - Updated ethereal packages fix vulnerability
- From: Mandriva Security Team
- Re: Countering Trusting Trust through Diverse Double-Compiling
- MDKSA-2005:228 - Updated xine-lib packages fix buffer overflow vulnerability
- From: Mandriva Security Team
- MDKSA-2005:229 - Updated xmovie packages fix buffer overflow vulnerability
- From: Mandriva Security Team
- MDKSA-2005:230 - Updated mplayer packages fix buffer overflow vulnerability
- From: Mandriva Security Team
- MDKSA-2005:231 - Updated ffmpeg packages fix buffer overflow vulnerability
- From: Mandriva Security Team
- MDKSA-2005:232 - Updated gstreamer-ffmpeg packages fix buffer overflow vulnerability
- From: Mandriva Security Team
- Patches available for IBM AIX flaws
- From: NGSSoftware Insight Security Research
- Notacon Call for Proposals open
- Metasploit Framework v3.0 Alpha Release 1
- CYBSEC - Security Advisory: Watchfire AppScan QA Remote Code Execution
- From: Mariano Nuñez Di Croce
- MarmaraWeb E-commerce Remote Command Exucetion
- MarmaraWeb E-commerce Script Cross Site Scripting
- Re: RLA ("Remote LanD Attack")
- Re: RLA ("Remote LanD Attack")
- [security bulletin] SSRT4728 rev.1 - HP-UX running TCP/IP Remote Denial of Service (DoS)
- AIX Heap Overflow paper
- RE: RLA ("Remote LanD Attack")
- Re: [Full-disclosure] [EEYEB-20050523] Windows Kernel APC Data-Free Local Privilege Escalation Vulnerability
- Re: [Full-disclosure] iDEFENSE Security Advisory 12.06.05: Ipswitch Collaboration Suite SMTP Format String Vulnerability
- Bios Information Leakage
- Countering Trusting Trust through Diverse Double-Compiling
- [ GLSA 200512-09 ] cURL: Off-by-one errors in URL handling
- From: Sune Kloppenborg Jeppesen
- Re: Patches available for IBM AIX flaws
- [ GLSA 200512-08 ] Xpdf, GPdf, CUPS, Poppler: Multiple vulnerabilities
- From: Sune Kloppenborg Jeppesen
- [ GLSA 200512-07 ] OpenLDAP, Gauche: RUNPATH issues
- phpCOIN-1.2.2-Full-2005 SQL Injection
- ZRCSA-200505: libremail - "pop.c" Format String Vulnerability
- Re: Patches available for IBM AIX flaws
- DMA[2005-1214a] - 'Widcomm BTW - Bluetooth for Windows Remote Audio Eavesdropping'
- [USN-230-2] ffmpeg/xine-lib vulnerability
- DoS in Cisco Clean Access
- iDefense Security Advisory 12.16.05: Citrix Program Neighborhood Name Heap Corruption Vulnerability
- From: labs-no-reply@xxxxxxxxxxxx
- Advisory: XSS in WebCal (v1.11-v3.04)
- Re: Bios Information Leakage
- exploit (html) for Advanced Guestbook 2.2
- RE: RLA ("Remote LanD Attack")
- Update on the PGP NTFS File Wipe Issue, 16 Dec 2005
- Bug in HC
- Microsoft IIS Remote Denial of Service (DoS) .DLL Url exploit
- Fullpath disclosure in roundcube webmail
- Re: Bypass XSS filter in PHPNUKE 7.9=>x
- Re: Fullpath disclosure in roundcube webmail
- phpMyAdmin server_privileges.php SQL Injection Vulnerabilities.
- [SECURITY] [DSA 923-1] New dropbear packages fix arbitrary code execution
- [FLSA-2005:152787] Updated redhat-config-nfs package fixes security issue
- [FLSA-2005:152832] Updated lynx package fixes security issues
- [FLSA-2005:152870] Updated a2ps package fixes security issue
- [FLSA-2005:152892] Updated enscript package fixes security issues
- [FLSA-2005:155510] Updated gtk2 packages fixes security issues
- [FLSA-2005:166939] Updated openssl packages fix security issues
- [FLSA-2005:168326] Updated util-linux and mount packages fix security issue
- [ GLSA 200512-10 ] Opera: Command-line URL shell command injection
- Re: phpMyAdmin server_privileges.php SQL Injection Vulnerabilities.
- Authenticated EIGRP DoS / Information leak
- From: Andrew A. Vladimirov
- Making unidirectional VLAN and PVLAN jumping bidirectional
- From: Andrew A. Vladimirov
- about phpMyAdmin's server_privileges.php announced vulnerability
- [security bulletin] SSRT051026 rev. 1 - HP-UX running WBEM Services Denial of Service (DoS)
- Re: Making unidirectional VLAN and PVLAN jumping bidirectional
- MDKSA-2005:233 - Updated apache2 packages fix vulnerability in worker MPM
- From: Mandriva Security Team
- Symantec Antivirus Library Remote Heap Overflows
- iDefense Security Advisory 12.20.05: Qualcomm WorldMail IMAP Server String Literal Processing Overflow Vulnerability
- From: labs-no-reply@xxxxxxxxxxxx
- Enterprise Connector v.1.02 Multiple SQL Vulnerabilities and Login Bypass
- iDefense Security Advisory 12.20.05: McAfee Security Center MCINSCTL.DLL ActiveX Control File Overwrite
- From: labs-no-reply@xxxxxxxxxxxx
- [security bulletin] SSRT5983 rev.1 - HP-UX Running Software Distributor (SD) Remote Unauthorized Access
- [ GLSA 200512-11 ] CenterICQ: Multiple vulnerabilities
- Digital Armaments Security Advisory 12.20.2005: WEBsweeper/MIMEsweeper Executable File Content Check bypass Vulnerability
- Re: Unauthenticated EIGRP DoS
- From: Paul Oxman (poxman)
- Acidcat ASP CMS Multiple Vulnerabilities
- PHPGedView <= 3.3.7 remote code execution
- [Overflow.pl] Blender BlenLoader Integer Overflow
- Secunia Research: Pegasus Mail Buffer Overflow and Off-by-One Vulnerabilities
- IRM 014: Sygate Protection Agent 5.0 vulnerability - A low privileged user can disable the security agent
- IRM 013: Ultraapps Issue Manager is vulnerable to Privilege Escalation
- IRM 012: Portfolio Netpublish Server 7 is vulnerable to a Directory Traversal Attack
- MDKSA-2005:234 - Updated sudo packages fix vulnerability
- From: Mandriva Security Team
- Call for Paper - VI National Computer and Information Security Conference - COLOMBIA
- From: Jeimy José Cano Martínez
- [Hat-Squad] Remote Heap Corruption Vulnerability in Interaction SIP Proxy
- Workshop "Dependability Aspects in DWH and Mining applications"Deadline:15-01-06
- security patch for Linux Kernel 2.6
- [ECHO_ADV_24$2005] Full path disclosure on WordPress < 1.5.2
- Re: Symantec Antivirus Library Remote Heap Overflows
- Tolva PHP website system Remote File Include
- [ECHO_ADV_24$2005] Full path disclosure on WordPress < 1.5.2
- [Security-Advisories@acs-inc.com: [Full-disclosure] [ACSSEC-2005-11-25-0x1] VMWare Workstation 5.5.0 <= build-18007 G SX Server Variants And Others]
- mIRC buffer overflow
- From: Crowdat Kurobudetsu
- Vulnerability in Metadot portal server allows users to gain administrative privileges
- [KAPDA::#17] - beehiveforum Script Injection
- Re: XSS bypass in PHPNuke - FIX ?
- [SECURITY] [DSA 924-1] New nbd packages fix potential arbitrary code execution
- Cisco Security Response: DoS in Cisco Clean Access
- WinRAR - Processing Filename Incorrectly Vulnerability
- VMware vulnerability in NAT networking
- From: vmware-security-alert
- iDefense Security Advisory 12.21.05: Macromedia JRun 4 Web Server URL Parsing Buffer Overflow Vulnerability
- From: labs-no-reply@xxxxxxxxxxxx
- XSS vulnerabilities in Google.com
- Cisco PIX / CS ACS: Downloadable RADIUS ACLs vulnerability
- MDKSA-2005:235 - Updated kernel packages fix numerous vulnerabilities
- From: Mandriva Security Team
- fetchmail security announcement fetchmail-SA-2005-03 (CVE-2005-4348)
- [SECURITY] [DSA 925-1] New phpbb2 packages fix several vulnerabilities
- CYBSEC - Security Advisory: httprint Multiple Vulnerabilities
- From: Mariano Nuñez Di Croce
- Re: Cisco PIX / CS ACS: Downloadable RADIUS ACLs vulnerability
- Privilege escalation in McAfee VirusScan Enterprise 8.0i (patch 11) and CMA 3.5 (patch 5)
- iDefense Security Advisory 12.22.05: Linux Kernel Socket Buffer Memory Exhaustion DoS Vulnerability
- From: labs-no-reply@xxxxxxxxxxxx
- [USN-231-1] Linux kernel vulnerabilities
- Webwasher CSM Appliance Script Security Restriction Bypass
- XSS&Sql injection attack in PHP-Fusion 6.00.3 Released
- [ GLSA 200512-12 ] Mantis: Multiple vulnerabilities
- RE: Webwasher CSM Appliance Script Security Restriction Bypass
- [TKADV2005-12-001] Multiple SQL Injection vulnerabilities in MyBB
- [SECURITY] [DSA 926-2] New ketm packages fix privilege escalation
- Multiple Network-related Vulnerabilities in Electric Sheep
- Electric Sheep window-id stack overflow
- MDKSA-2005:236 - Updated fetchmail packages fix vulnerability
- From: Mandriva Security Team
- MDKSA-2005:237 - Updated cpio packages fix buffer overflow on x86_64
- From: Mandriva Security Team
- Dev web management system <= 1.5 SQL injection / cross site scripting
- CFP - IT Underground 2006, Prague, Czech Republic
- Found new bug
- [ GLSA 200512-13 ] Dropbear: Privilege escalation
- Airscanner Mobile Security Advisory #0508310 Spb Kiosk Engine Administrator Password & Information Disclosure
- From: contact . removethis
- [SECURITY] [DSA 928-1] New dhis-tools-dns packages fix insecure temporary file creation
- [BuHa-Security] DoS Vulnerability in M$ IE 6 SP2 #1
- [BuHa-Security] DoS Vulnerability in M$ IE 6 SP2 #2
- [BuHa-Security] DoS Vulnerability in M$ IE 6 SP2 #3
- Multiple Translation websites Cross Site Scripting vulnerability: Google, Altavista, IBM, freetranslation, worldlingo, etc
- Obsidis n1 released!
- Cerberus Helpdesk multiple vulnerabilities.
- [ GLSA 200512-15 ] rssh: Privilege escalation
- Secunia Research: IceWarp Web Mail Multiple File Inclusion Vulnerabilities
- [SECURITY] [DSA 927-1] New tkdiff packages fix insecure temporary file creation
- dtSearch DUNZIP32.dll Buffer Overflow Vulnerability
- Malware sample site
- Is this a new exploit?
- MDKSA-2005:238 - Updated php/php-mbstring packages fix mail injection vulnerability
- From: Mandriva Security Team
- Exploitation of Windows WMF on the web
- Re: Is this a new exploit?
- [BUGZILLA] Security advisory for Bugzilla < 2.16.11
- RE: [Full-disclosure] Someone wasted a nice bug on spyware...
- Re: Is this a new exploit?
- Re: Is this a new exploit?
- RE: Is this a new exploit?
- [ GLSA 200512-16 ] OpenMotif, AMD64 x86 emulation X libraries: Buffer overflows in libUil library
- WMF Exploit
- WMF Exploit
- PhpDocumentor <= 1.3.0 rc4 Arbitrary remote/local inclusion
- [SECURITY] [DSA 927-2] New tkdiff packages fix insecure temporary file creation
- RE: WMF Exploit
- RE: [Full-disclosure] Someone wasted a nice bug on spyware...
- WMF exploit
- Airscanner Mobile Security Advisory #05083102 Spb Kiosk Engine Program Bypass
- From: contact . removethis
- Black Hat Federal and Europe Call for Papers
- [ GLSA 200512-17 ] scponly: Multiple privilege escalation issues
- rssh: root privilege escalation flaw
- phpbb2.0.19 fixes security issues
- Secunia Research: TUGZip ARJ Archive Handling Buffer Overflow Vulnerability
- Advisory 26/2005: TinyMCE Compressor Vulnerabilities
- Re: Exploitation of Windows WMF on the web
- WTF??
- RE: WMF Exploit
- Yahoo mail Cross Site Scripting vulnerability
- WMF browser-ish exploit vectors
- RE: WMF Exploit
- [KAPDA::#18] - WebWiz Products SQL Injection
- Re: WMF Exploit
Mail converted by MHonArc 2.6.10