Mail Index
- OlateDownload 3.4.0 Multiple Vulnerabilities
- setSlice exploited in the wild - massively
- [SECURITY] [DSA 1187-1] New migrationtools packages fix denial of service
- [SECURITY] [DSA 1186-1] New cscope packages fix arbitrary code execution
- Yblog => Cross Site Scripting
- phpBB XS <= 0.58 (phpbb_root_path) Remote File Include Vulnerability(2)
- ZERT patch for setSlice()
- Advisory 07/2006: phpMyAdmin Multiple CSRF Vulnerabilities
- zero-day flaws in Firefox: about 30 unpatched Firefox flaws
- phpMyWebmin 1.0 <= (target) Remote File Include Vulnerability
- [OpenPKG-SA-2006.022] OpenPKG Security Advisory (openssh)
- 0day in Firefox from ToorCon '06
- Layered Defense Advisory: TrendMicro OfficesScan Corporate Edition Format String Vulnerability
- EasyBannerFree (functions.php) Remote File Include Exploit
- IBM Informix Dynamic Server V10.0 File Clobbering during Install
- Kerio Multiple insufficient argument validation of hooked SSDT function Vulnerability
- Pebble 2.0.0 RC[1,2] XSS vulnerability
- "POC 2006" by Korean hackers
- Dayfox Blog v2.0 Remote file include
- [security bulletin] HPSBUX02157 SSRT061220 rev.1 HP-UX Running Ignite-UX Server, Remote Unauthorized Access and Privilege Elevation
- IE UXSS (Universal XSS in IE, was Re: Microsoft Internet Information Services UTF-7 XSS Vulnerability [MS06-053])
- [USN-355-1] openssh vulnerabilities
- [USN-356-1] gdb vulnerability
- digishop v 4.0.0 Xss Vuln.
- Re: [Full-disclosure] IE UXSS (Universal XSS in IE, was Re: Microsoft Internet Information Services UTF-7 XSS Vulnerability [MS06-053])
- [USN-354-1] Firefox vulnerabilities
- Security contact for Myspace/Fox?
- Microsoft Internet Information Services UTF-7 XSS Vulnerability [MS06-053]
- Portable shell-exploit for buffer-overflow bugs
- From: Roman Medina-Heigl Hernandez
- Re: WebCalendar-1.0.3 reading of any files
- Re: net2ftp: a web based FTP client :) <= Remote File Inclusion
- FreeBSD Security Advisory FreeBSD-SA-06:22.openssh
- From: FreeBSD Security Advisories
- [security bulletin] HPSBUX02129 SSRT061149 rev.1 - HP-UX running SLP, Remote Unauthorized Access
- [SECURITY] [DSA 1185-2] New openssl packages fix arbitrary code execution
- [ MDKSA-2006:172-1 ] - Updated openssl packages fix vulnerabilities
- [ MDKSA-2006:177 ] - Updated MySQL packages rebuilt against updated openssl.
- Re: [Full-disclosure] IE UXSS (Universal XSS in IE, was Re: Microsoft Internet Information Services UTF-7 XSS Vulnerability [MS06-053])
- [ MDKSA-2006:178 ] - Updated ntp packages rebuilt against updated openssl.
- Re: WebspotBlogging => 3.0 Remote File Include Vulnerabilities
- Security flaw in IBM Client Security Password Manager
- Re: [Full-disclosure] IE UXSS (Universal XSS in IE, was Re: Microsoft Internet Information Services UTF-7 XSS Vulnerability [MS06-053])
- PacSec 2006 Papers announcement and EUSecWest Call For Papers
- iDefense Security Advisory 10.02.06: Novell GroupWise Messenger nmma.exe DoS Vulnerability
- phpMyProfiler remote file include
- [CAID 34661]: CA Unicenter WSDM File System Read Access Vulnerability
- Advisory 08/2006: PHP open_basedir Race Condition Vulnerability
- [ MDKSA-2006:179 ] - Updated openssh packages fix DoS vulnerabilities
- [SECURITY] [DSA 1188-1] New mailman packages fix several problems
- Directory Traversal Vulnerability in Goop Gallery 2.0.2
- Yener Haber Script v2.0 SQL injection
- Technical Paper on the ZERT Patch and VML [was: Re: ZERT patch for setSlice()]
- Re: [funsec] Technical Paper on the ZERT Patch and VML [was: Re: ZERT patch for setSlice()]
- [USN-358-1] ffmpeg, xine-lib vulnerabilities
- [USN-353-2] OpenSSL vulnerability
- [USN-357-1] Mono vulnerability
- Invision Power Board Multiple Vulnerabilities
- [ GLSA 200610-01 ] Mozilla Thunderbird: Multiple vulnerabilities
- [SECURITY] [DSA 1189-1] New openssh-krb5 packages fix denial of service and potential execution of arbitrary code
- [SECURITY] [DSA 1190-1] New maxdb-7.5.00 packages fix execution of arbitrary code
- [ GLSA 200610-02 ] Adobe Flash Player: Arbitrary code execution
- Vulnerability Type Distributions in CVE
- WikyBlog <= v1.4 (WN_BASEDIR) Remote File Inclusion Exploit
- Re: Concurrency-related vulnerabilities in browsers - expect problems
- [SECURITY] [DSA 1191-1] New Mozilla Thunderbird packages fix several vulnerabilities
- iDefense Security Advisory 10.05.06: Symantec AntiVirus IOCTL Kernel Privilege Escalation Vulnerability
- [ MDKSA-2006:180 ] - Updated php packages fix integer overflow vulnerability
- Vulnerable function in newest PowerPoint case (MS Advisory #925984)
- Hazir Site v2.0 Admin SQL Injection
- SUSE Security Summary Report SUSE-SR:2006:024
- [SECURITY] [DSA 1192-1] New Mozilla packages fix several vulnerabilities
- TSLSA-2006-0055 - multi
- From: Trustix Security Advisor
- TorrentFlux User-Agent XSS Vulnerability
- Re: Concurrency-related vulnerabilities in browsers - expect problems
- [USN-359-1] Python vulnerability
- Re: Concurrency-related vulnerabilities in browsers - expect problems
- phpMyTeam v2.0 <= (smileys_dir) Remote File Include Vulnerability
- ackerTodo 4.2 SQL Injection Vulnerability
- ZDI-06-030: CA Multiple Product Discovery Service Remote Buffer Overflow Vulnerability
- ZDI-06-031: CA Multiple Product Message Engine RPC Server Code Execution Vulnerability
- [Reversemode Advisory] Symantec Antivirus Engine Privilege Escalation
- [CAID 34693, 34694]: CA BrightStor ARCserve Backup Multiple Buffer Overflow Vulnerabilities
- TSRT-06-12: CA BrightStor Discovery Service Mailslot Buffer Overflow Vulnerability
- rPSA-2006-0183-1 nss_ldap
- From: rPath Update Announcements
- rPSA-2006-0185-1 gnome-ssh-askpass openssh openssh-client openssh-server
- From: rPath Update Announcements
- TSRT-06-11: CA Multiple Product DBASVR RPC Server Multiple Buffer Overflow Vulnerabilities
- rPSA-2006-0182-1 php php-mysql php-pgsql
- From: rPath Update Announcements
- FreeWPS File Upload Command Execution
- Details of Lotus Notes Java Applet vulnerabilities
- Re: WikyBlog <= v1.4 (WN_BASEDIR) Remote File Inclusion Exploit
- Emek Portal v2.1 SQL Injection
- phponline <= (LangFile) Remote File Inclusion Exploit
- [ GLSA 200610-03 ] ncompress: Buffer Underflow
- Re: net2ftp Remote File Inclusion - bogus report
- LS-20060330 - CA BrightStor ARCserve Backup Remote Buffer Overflow Vulnerability
- Vulnerability in Btitracker
- LS-20060220 - CA BrightStor ARCserve Backup Remote Buffer Overflow Vulnerability
- FreeForum 0.9.7 (fpath) Remote File Include Vulnerability
- phpBB User Viewed Posts Tracker Version <= 1.0 [phpbb_root_path] File Include Vulnerability
- LS-20060313 - CA BrightStor ARCserve Backup Remote Buffer Overflow Vulnerability
- Cahier de textes 2.0 Remote SQL injection Exploit
- Sorry....My Message With Out Live Site....
- Re: Invision Power Board Multiple Vulnerabilities
- Observations on Mandatory Integrity Control (MIC) in Windows Vista
- Re: Security contact for Myspace/Fox?
- RE: Informing Companies about security vulnerabilities...
- PHP Live! <= 3.1 help.php Remote File Inclusion vulnerability
- RE: Informing Companies about security vulnerabilities...
- Re: zero-day flaws in Firefox: about 30 unpatched Firefox flaws
- From: Mailinglists Address
- RE: Informing Companies about security vulnerabilities...
- JavaScript Spider (code that can traverse the web)
- The latest version of iSearch is V2.16 <= (index.php) Remote File Inclusion Exploit
- Re: [funsec] Technical Paper on the ZERT Patch and VML [was: Re: ZERT patch for setSlice()]
- [ECHO_ADV_49$2006]OpenDock Easy Doc <=1.4 (doc_directory) Multiple Remote File Inclusion Vulnerability
- [ECHO_ADV_50$2006]OpenDock Easy Blog <=1.4 (doc_directory) Multiple Remote File Inclusion Vulnerability
- Advanced Poll v2.02 :) <= Remote File Inclusion
- [ECHO_ADV_51$2006] docmint <= 2.0 (MY_ENV[BASE_ENGINE_LOC]) Remote File Inclusion Vulnerability
- Advisory 09/2006: PHP unserialize() Array Creation Integer Overflow
- PHPMyNews 1.4 <= (cfg_include_dir) Remote File Include Vulnerability
- [ECHO_ADV_48$2006] WebYep <= 1.1.9 (webyep_sIncludePath) Multiple Remote File Inclusion Vulnerability
- XSS IN paFileDB 3.1
- PHP open_basedir with symlink() function Race Condition PoC exploit
- Freenews v1.1 <= (chemin) Remote File Include Vulnerability
- SQL injection - 4images
- SQL injection - moodle
- HITBSecConf2006 CTF Source code and daemons
- Re: [Full-disclosure] SQL injection - moodle
- From: scsantos@unigranrio com br
- SUSE Security Announcement: php4,php5 (SUSE-SA:2006:059)
- Cisco Security Advisory: Limitations in Cisco Secure Desktop
- From: Cisco Systems Product Security Incident Response Team
- [ECHO_ADV_52$2006]OpenDock Easy Gallery <=1.4 (doc_directory) Multiple Remote File Inclusion Vulnerability
- yet another OpenSSH timing leak?
- [SECURITY] [DSA 1194-1] New libwmf packages fix arbitrary code execution
- Re: net2ftp: a web based FTP client :) <= Remote File Inclusion
- [USN-361-1] Mozilla vulnerabilities
- [USN-360-1] awstats vulnerabilities
- 7 php scripts File Inclusion / Source disclosure Vuln
- [ECHO_ADV_54$2006]vtiger CRM <=4.2 (calpath) Multiple Remote File Inclusion Vulnerability
- MS Windows DRM software Memory Corruption
- phpWebSite 0.10.2 Remote File Include Vulnerabilities
- MHL-2006-001 Public Advisory: "Eazy Cart" Multiple Security Issues
- From: Mayhemic Labs Security
- Re: The latest version of iSearch is V2.16 <= (index.php) Remote File Inclusion Exploit
- eXpBlog <= 0.3.5 Cross Site Scripting Vulnerabilities
- Re: yet another OpenSSH timing leak?
- [security bulletin] HPSBUX02087 SSRT4728 rev.4 - HP-UX running TCP/IP Remote Denial of Service (DoS)
- ZDI-06-033: Microsoft Office Excel File Format DATETIME Record Parsing Vulnerability
- ZDI-06-032: Microsoft Office PowerPoint Malformed Slide Notes Rebuilding Vulnerability
- ZDI-06-034: Microsoft Office Word Malformed Chart Code Execution Vulnerability
- [USN-362-1] PHP vulnerabilities
- [Fedora] libtool-ltdl uses relative paths to resolve and load libraries
- Re: yet another OpenSSH timing leak?
- [SECURITY] [DSA 1195-1] new openssl096 packages fix denial of service
- PHPLibrary <= 1.5.3 Remote File Inclusion
- tagit2b -- Remote File Inclusion
- claroline <= 180rc1 Remote File Inclusion
- blueshoes <= 4.6_public Remote File Inclusion
- pacsec hype security team: 7 words of warning about Macromedia Flash Player 9+
- iDefense Security Advisory 10.10.06: FreeBSD ptrace PT_LWPINFO Denial of Service Vulnerability
- [ MDKSA-2006:181 ] - Updated python packages fix vulnerability
- Re: The latest version of iSearch is V2.16 <= (index.php) Remote File Inclusion Exploit
- rPSA-2006-0187-1 idle python
- From: rPath Update Announcements
- Directory Traversal Vulnerability in Goop Gallery 2.0.2
- ShmooCon 2006 CFP Announcement
- Microsoft Office Malformed Record Memory Corruption Vulnerability
- MysqlDumper Version 1.21 b6 Xss Vulnerability
- Secunia Research: Microsoft Windows Object Packager Dialog Spoofing
- [USN-363-1] libmusicbrainz vulnerability
- Jinzora <= 2.1 Remote File Inclusion
- gcards (languagefile) <= Remote File Include
- Noah's Classifieds Cross Site Scripting Vulnerability
- New tool release today - "wyd" - password profiling
- Re: phpWebSite 0.10.2 Remote File Include Vulnerabilities
- Re: gcards (languagefile) <= Remote File Include
- CommunityPortals <= 1.0 Remote File Include Vulnerability
- AlberT-EasySite <= 1.0.a5 Remote File Inclusion
- [ MDKSA-2006:182 ] - Updated kernel packages fix multiple vulnerabilities and bugs
- zenphoto Multiple Path Disclosure and Cross Site Scripting Vulnerabilities
- iDefense Security Advisory 10.11.06: AOL YGPPDownload SetAlbumName ActiveX Control Buffer Overflow Vulnerability
- new version of phplist fix XSS vulnerability
- iDefense Security Advisory 10.11.06: Sun Microsystems Solaris NSPR Library Arbitrary File Creation Vulnerability
- MS06-060 Microsoft Word Memmove Code Execution
- SecureWorks Research Client Advisory: Multiple Vendor Bluetooth Memory Stack Corruption Vulnerability
- MHL-2006-002 Public Advisory: "Call-Center-Software" Multiple Security Issues
- From: Mayhemic Labs Security
- XeoPort <= 0.81 SQL Injection Vulnerability
- Xeobook <= 0.93 Multiple SQL Injection Vulnerabilities
- [security bulletin] HPSBMA02158 SSRT061251 rev.1 - HP Version Control Agent, Remote Unauthorized Access and Possible Elevation of Privilege
- ExtCalThai_Component <= 0.9.1 Remote File Inclusion
- Cisco Security Advisory: Default Password in Wireless Location Appliance
- From: Cisco Systems Product Security Incident Response Team
- Journals System <= 1.0.2 [RC2] Remote File Include Vulnerability
- Admin User Viewed Posts Tracker Remote File Include Vulnerability
- Iono all version fullpath disclosure
- Security Suite IP Logger Remote File Inclusion
- Download-Engine Remote File Include
- Black Hat CFP, Registration, and Announcements for October
- Phpbb insert mod Remote file include
- Google Earth (kml & kmz files) buffer overflow
- Open Conference Systems <= 1.1.3 Remote File Inclusion
- Mcafee Network Agent (mcnasvc.exe) Remote DoS
- CMS contenido Remote File Inclusion
- [security bulletin] HPSBST02160 SSRT061254 rev.1 - Storage Management Appliance (SMA), Microsoft Patch Applicability MS06-055
- [security bulletin] HPSBST02134 SSRT061187 rev.2 - Storage Management Appliance (SMA), Microsoft Patch Applicability MS06-052, MS06-053 and MS06-054
- RamaCMS (adodb.inc.php) Remote File Inclue Vulnerability
- PacSec Hype Security Team: CGI.pm param injection
- Morcego CMS <= 0.9.6 Remote File Inclue Vulnerability
- CMS contenido Path Disclosure
- SpamBlockerMODv <= 1.0.2 Remote File Include Vulnerability
- ISOI II - a DA Workshop (announcement and CFP)
- Download-Engine Remote File İnclude
- phpBB PlusXL 2.x <= biuld 272 Remote File Include Vulnerability
- PHP Cards <= 1.3 Remote File Inclue Vulnerability
- Utimaco Safeguard Easy vulnerability
- Bloq 0.5.4 Remote File İnclude
- phpBB Security <= 1.0.1 Remote File Include Vulnerability
- PHPht Topsites Remote File İnclude
- news7 <= (news.php) Remote File Inclusion Exploit
- Jax Newspage Remote File include
- TorrentFlux startpop.php torrent Script Insertion
- [SECURITY] [DSA 1166-2] New cheesetraceker packages fix buffer overflow
- pbpbb archive for search engines Remote File Include Vulnerability
- Jax LinkLists Remote File include
- MNews <= 2.0 (noticias.php) Remote File Inclue Vulnerability
- phpMyConferences <= 8.0.2 Remote File Inclusion
- phpBB Add Name Remote File Include Vulnerability
- SpamOborona PHPBB Plugin Remote File Include Vulnerability
- maluinfo version 206.2.38l Remote File Include Vulnerability
- AMAZONIA MOD Remote File Include Vulnerability
- news defilante horizontale <= 4.1.1 Remote File Include Vulnerability
- phpBB lat2cyr <= 1.0.1 Remote File Include Vulnerability
- RPG Events 1.0.0 Remote File Include Vulnerability
- PhpBB Prillian French Remote File Include Vulnerability
- PHP Top webs (config.php) Remote File Inclue Vulnerability
- Buzlas <= v2006-1 Full Remote File Include Vulnerability
- iDefense Security Advisory 10.13.06: Apache HTTP Server mod_tcl set_var Format String Vulnerability
- @lex Guestbook <=(ModeliXe.php) Remote File Inclusion Exploit
- EXlor 1.0 (/fonctions/template.php) Remote File Include Vulnerability
- Re: iDefense Security Advisory 10.11.06: Sun Microsystems Solaris NSPR Library Arbitrary File Creation Vulnerability
- Multiple XSS Vulnerability in Gcontact
- Re: DanPHPSupport => 0.5 Cross Site Scripting Vulnerabilities
- Re: Secunia Research: Microsoft Windows Object Packager Dialog Spoofing
- Re: Jax LinkLists Remote File include
- WDT:- osTicket File Include all V
- Re: Multiple XSS Vulnerabilities in Zen Cart 1.3.5
- Jinzora 2.6 - Remote File Include Vulnerabilities
- Spoofing security dialog in object packager - 2
- Re: yet another OpenSSH timing leak?
- ISS BlackICE PC Protection Filelock protection bypass Vulnerability
- From: Matousec - Transparent security Research
- Re: @lex Guestbook <=(ModeliXe.php) Remote File Inclusion Exploit
- Re: [Full-disclosure] Kmail <= 1.9.1 (table/frameset) DOS
- Kmail <= 1.9.1 (table/frameset) DOS
- Security Advisory for Bugzilla 2.18.5, 2.20.2, 2.22, and 2.23.2
- vbulletin Exploit Tool Box
- bbsNew ( File Include Vulnerability Exploit )
- SYMSA-2006-010: Directory Traversal in IronWebMail
- Back-end ( File Include Vulnerability Exploit )
- maintain-3.0.0-RC2 - Remote File Include Vulnerabilities
- Full Path Disclosure in PHP-Wyana
- :ShAnKaR: WoltLab Burning Book <=1.1.2 multiple vulnerabilities
- MOStlyCEV454 - Remote File Include Vulnerabilities
- VoMM: Taking browser exploits to the next level
- WebYep-1.1.9 - Remote File Include Vulnerabilities
- [USN-364-1] Xsession vulnerability
- [ GLSA 200610-04 ] Seamonkey: Multiple vulnerabilities
- osprey 1.0 (ListRecords.php) Remote File Include Vulnerability
- From: KaBaRa . HaCk . eGy
- iDefense Security Advisory 10.15.06: Clam AntiVirus ClamAV CHM Chunk Name Length DoS Vulnerability
- Full Path Disclosure in PHP-Wyana (2)
- iDefense Security Advisory 10.15.06: Clam AntiVirus ClamAV rebuildpe Heap Overflow Vulnerability
- patchlodel-0.7.3 - Remote File Include Vulnerabilities
- Rapid7 Advisory R7-0025: Buffer Overflow in NVIDIA Binary Graphics Driver For Linux
- PHP Forge 3b2 (/inc/inc.php) Remote File Include Vulnerability
- Advisory 10/2006: ViewVC Undefined Charset UTF-7 XSS Vulnerability
- About.com contact
- Re: vbulletin Exploit Tool Box
- [Xss] IN phplist v 2.10.2,
- [USN-365-1] libksba vulnerability
- PR06-03b: F5 Firepass 1000 SSL VPN version 5.5 vulnerable to Cross-Site Scripting
- Re: Directory Traversal Vulnerability in Goop Gallery 2.0.2
- TorrentFlux action Script Insertion
- TorrentFlux file Script Insertion
- TorrentFlux user_id Script Insertion
- [OpenPKG-SA-2006.023] OpenPKG Security Advisory (php)
- [ECHO_ADV_55$2006]Phpmybibli <=2.1 Multiple Remote File Inclusion Vulnerability
- Flaw in Firefox 2.0 RC2
- [security bulletin] HPSBUX02155 SSRT061235 rev.2 HP-UX CIFS Server (Samba) Local Unauthorized Access, Elevated Privileges
- Re: Flaw in Firefox 2.0 RC2
- [ GLSA 200610-05 ] CAPI4Hylafax fax receiver: Execution of arbitrary code
- [ GLSA 200610-06 ] Mozilla Network Security Service (NSS): RSA signature forgery
- phpAdsNew include bug!
- rPSA-2006-0194-1 kernel
- From: rPath Update Announcements
- [ GLSA 200610-07 ] Python: Buffer Overflow
- Rapid7 Advisory R7-0026: HTTP Header Injection Vulnerabilities in the Flash Player Plugin
- iDefense Security Advisory 10.17.06: Opera Software Opera Web Browser URL Parsing Heap Overflow Vulnerability
- [ MDKSA-2006:183 ] - Updated libksba packages correct DoS vulnerability
- Re: Flaw in Firefox 2.0 RC2
- Re: Flaw in Firefox 2.0 RC2
- [ MDKSA-2006:184 ] - Updated clamav packages fix vulnerabilities
- [ MDKSA-2006:185 ] - Updated php packages to address multiple vulnerabilities
- Re: phpAdsNew include bug!
- Comdev One Admin 4.1 Remote File Inclusion
- Boonex Dolphin 5.2 Remote File Inclusion
- Simplog 0.9.3.1 SQL Injection
- Re: Flaw in Firefox 2.0 RC2
- zorum_3_5 <=(dbproperty.php) Remote File Inclusion Exploit
- [ECHO_ADV_46$2006] P-Book <= 1.17 (pb_lang) Remote File Inclusion
- Analysis of the Oracle October 2006 Critical Patch Update
- TSLSA-2006-0057 - multi
- From: Trustix Security Advisor
- CS-Forum 0.82 (ajouter.php) Remote File Include Vulnerability
- PhpBB<=2.0.10 (groupcp.php) Remote File Include Vulnerability
- PHPRecipeBook <= 2.35 ((g_rb_basedir)) Remote File Include Exploit
- Call for Papers - First International Workshop on Secure Software Engineering (SecSE 2007)
- Multiple vulnerabilities in Highwall Enterprise and Highwall Endpoint management interface
- Airmagnet management interfaces multiple vulnerabilities
- Re: Utimaco Safeguard Easy vulnerability
- {x0n3-h4ck} DEV Web Manager System <= 1.5 XSS Exploit
- Re: Flaw in Firefox 2.0 RC2
- Secunia Research: Joomla BSQ Sitestats Script Insertion and SQL Injection
- Secunia Research: IBM Lotus Notes Insecure Default Folder Permissions
- Re: Flaw in Firefox 2.0 RC2
- Static fmat exploits with random va
- Security-Assessment.com Advisory: Asterisk remote heap overflow
- Re: PHPRecipeBook <= 2.35 ((g_rb_basedir)) Remote File Include Exploit
- [USN-366-1] binutils vulnerability
- rPSA-2006-0195-1 kdelibs
- From: rPath Update Announcements
- [USN-367-1] Pike vulnerability
- [security bulletin] HPSBST02161 SSRT061264 rev.1 - Storage Management Appliance (SMA), Microsoft Patch Applicability MS06-056 Through MS06-065
- [SECURITY] [DSA 1196-1] New clamav packages fix arbitrary code execution
- [OpenPKG-SA-2006.024] OpenPKG Security Advisory (asterisk)
- Re: Flaw in Firefox 2.0 RC2
- Advisory 11/2006: Serendipity Weblog XSS Vulnerabilities
- [DRUPAL-SA-2006-024] Drupal 4.6.10 / 4.7.4 fixes multiple XSS issues
- [DRUPAL-SA-2006-025] Drupal 4.6.10 / 4.7.4 fixes CRF issue
- [DRUPAL-SA-2006-026] Drupal 4.6.10 / 4.7.4 fixes HTML attribute injection issue
- Re: phpAdsNew include bug!
- DigitalHive 2.0 RC2 (base_include.php)File Include
- UltraCMS 0.9 sql injection
- SQL Injection simplog
- KICS CMS sql injection
- Re: PhpBB<=2.0.10 (groupcp.php) Remote File Include Vulnerability
- Multiple XSS Vulnerabilities in KnowledgeBank 1.01
- ERRATA: [ GLSA 200610-07 ] Python: Buffer Overflow
- PHP "exec", "system", "popen" problem
- ATutor 1.5.3.2=> Remote File Include Vulnerability
- Re: PHPRecipeBook <= 2.35 ((g_rb_basedir)) Remote File Include Exploit
- RE: Flaw in Firefox 2.0 RC2
- [Xss] IN SMF 1.1 RC2
- Re: Flaw in Firefox 2.0 RC2
- TORQUE Spool Job Race condition (torque <= 2.0.0p8)
- [ MDKSA-2006:186 ] - Updated kdelibs packages fix KHTML vulnerability
- RE: Flaw in Firefox 2.0 RC2
- From: Aras \"Russ\" Memisyazici
- iDefense Security Advisory 10.19.06: Kaspersky Labs Anti-Virus IOCTL Local Privilege Escalation Vulnerability
- Re: PHP "exec", "system", "popen" (+small POC)
- Re: iDefense Security Advisory 10.19.06: Kaspersky Labs Anti-Virus IOCTL Local Privilege Escalation Vulnerability
- [CAID 34693, 34694]: CA BrightStor ARCserve Backup Multiple Buffer Overflow Vulnerabilities (UPDATED)
- [KAPDA::#60] Mambo V4.6.x vulnerabilities
- HPSBUX02162 SSRT061223 rev.1 - HP-UX Running dtmail, Local Execution of Arbitrary Code
- Simple Machines Forum (SMF) XSS issue
- PHP Classifieds 7.1 - Remote File Include Vulnerability
- [ GLSA 200610-08 ] Cscope: Multiple buffer overflows
- [security bulletin] HPSBTU02163 SSRT061223 rev.1 - HP Tru64 UNIX Running dtmail, Local Execution of Arbitrary Code
- PHP Poll Creator 1.04 (poll_vote.php)File Include
- [Reversemode Advisory] Kaspersky Anti-Virus Privilege Escalation
- Advisory for Oneorzero helpdesk
- PHPLibrary-1.5.3(Description.php) Remote File Include
- Re: Flaw in Firefox 2.0 RC2
- [OpenPKG-SA-2006.025] OpenPKG Security Advisory (drupal)
- Re: Simple Machines Forum (SMF) XSS issue
- Open Meetings Filing Application (PROJECT_ROOT) Remote File Include Vulnerability
- Hustle Labs & MNIN eDirectory Vulnerability
- Virtual Law Office (phpc_root_path) Remote File Include Vulnerability
- Re: iDefense Security Advisory 10.19.06: Kaspersky Labs Anti-Virus IOCTL Local Privilege Escalation Vulnerability
- [USN-368-1] Qt vulnerability
- [ GLSA 200610-09 ] libmusicbrainz: Multiple buffer overflows
- RMSOFT Cross Site Scripting
- trawler <= 1.8.1 Remote File Inclusion
- IPEER Remote file inclusion
- iDefense Security Advisory 10.21.06: Novell eDirectory evtFilteredMonitorEventsRequest Heap Overflow Vulnerability
- iDefense Security Advisory 10.21.06: Novell eDirectory NCP over IP length Heap Overflow Vulnerability
- iDefense Security Advisory 10.21.06: Novell eDirectory evtFilteredMonitorEventsRequest Invalid Free Vulnerability
- XSS in Zwahlen Online Shop
- speedberg <= 1.2beta1 Remote File Inclusion
- WHM 10.8.0 cPanel 10.9.0 R50 CentOS 4.4 i686 WHM X v3.1.0 Xss Vulnerability
- PHP Generator of Object SQL Database (path) Remote File Include Vulnerability
- AROUNDMe 0.6.9 remonte file inclusion
- Re: Simple Machines Forum (SMF) XSS issue
- [SECURITY] [DSA 1197-1] New python2.4 packages fix arbitrary code execution
- -==PHP Nuke <= 7.9 SQL Injection and Bypass SQL Injection Protection vulnerabilities==-
- [PHPADSNEW-SA-2006-002] phpAdsNew and phpPgAds 2.0.8-pr1 fix XSS vulnerability
- D-Link DSL-G624T several vulnerabilities
- Flaw in Firefox 2.0 Final
- Smarty-2.6.1 Remote File Include Vulnerabilities
- SQL Injection Vulnerability in Oracle WWV_FLOW_UTILITIES
- Cross-Site-Scripting Vulnerability in Oracle APEX WWV_FLOW_ITEM_HELP
- http://www.red-database-security.com/advisory/oracle_apex_css_notification_msg.html
- Various Cross-Site-Scripting Vulnerabilities in Oracle Reports
- hack.lu Bluetooth demo
- Modify Data via Inline Views
- SQL Injection in package SYS.DBMS_SQLTUNE_INTERNAL
- SQL Injection in package XDB.DBMS_XDBZ0
- INCA IM-204 Dsl several vulnerabilities
- SQL Injection in package SYS.DBMS_CDC_IMPDP
- SQL Injection in Oracle package MDSYS.SDO_LRS
- Re: [Full-disclosure] hack.lu Bluetooth demo
- Multiple HTTP response splitting vulnerabilities in SHOP-SCRIPT
- Application orders Linux in WebAPP v0.9.9.2.1
- WikiNi Multiple Cross Site Scripting Vulnerabilities
- [SECURITY] [DSA 1198-1] New python2.3 packages fix arbitrary code execution
- Symantec Product Security: Symantec Device Driver Elevation of Privileg
- Re: Smarty-2.6.1 Remote File Include Vulnerabilities
- [ GLSA 200610-10 ] ClamAV: Multiple Vulnerabilities
- [ GLSA 200610-11 ] OpenSSL: Multiple vulnerabilities
- Month of Kernel Bugs and fsfuzzer release (0.6)
- [SECURITY] [DSA 1199-1] New webmin packages fix input validation problems
- ProgSys verion 0.151 XSS vulnerability
- [vuln.sg] CruiseWorks Directory Traversal and Buffer Overflow Vulnerabilities
- Re: Application orders Linux in WebAPP v0.9.9.2.1
- who needs a server ...
- CSLH2.9.9 Remote File Include Vulnerabilities
- adobe php sdk Remote File Include Vulnerabilities
- InteliEditor (sys_path) Remote File Include Vulnerability
- [ GLSA 200610-12 ] Apache mod_tcl: Format string vulnerability
- Re: adobe php sdk Remote File Include Vulnerabilities
- From: Mailinglists Address
- Cisco Security Advisory: Cisco Security Agent for Linux Port Scan Denial of Service
- From: Cisco Systems Product Security Incident Response Team
- Re: Yahoo! Messenger Service 18 Remote Buffer Overflow Vulnerability
- [KAPDA::#61] - PacPoll <= 4.0 Multiple Vulnerabilities
- phpMyConferences_8.0.2 Remote File Inclusion
- [ MDKSA-2006:187 ] - Updated Qt packages fix vulnerability
- iDefense Security Advisory 10.25.06: AOL Nullsoft Winamp Ultravox 'ultravox-max-msg' Header Heap Overflow Vulnerability
- Re: phpMyConferences_8.0.2 Remote File Inclusion
- iDefense Security Advisory 10.25.06: AOL YGPPDownload downloadFileDirectory ActiveX Control Heap Corruption Vulnerability
- Mozilla Firefox JavaScript Handler Race Condition Memory Corruption Vulnerability
- iDefense Security Advisory 10.25.06: AOL YGPPDownload AddPictureNoAlbum ActiveX Control Heap Corruption Vulnerability
- Web-style Wireless IDS attacks
- iDefense Security Advisory 10.25.06: AOL Nullsoft Winamp Ultravox Lyrics3 v2.00 tags Heap Overflow Vulnerability
- [security bulletin] HPSBMA02133 SSRT061201 rev.2 - HP Oracle for OpenView (OfO) Critical Patch Update
- [OpenPKG-SA-2006.026] OpenPKG Security Advisory (screen)
- rPSA-2006-0195-2 kdelibs qt-x11-free
- From: rPath Update Announcements
- rPSA-2006-0198-1 screen
- From: rPath Update Announcements
- IE7 is a Source of Problem - Secunia IE7 Release Incident of October 2006
- TSLSA-2006-0059 - postgresql
- From: Trustix Security Advisor
- MHL-2006-003 Public Advisory: "ezOnlineGallery" Multiple Security Issues
- From: Mayhemic Labs Security
- MiniBILL v2006-10-10 (config[page_dir] Remote File Include Vulnerability
- Insecure storage of passwords in Axalto Protiva
- Joomla extended_registration mod Remote File Include Vulnerabilities
- Directory Traversal in TorrentFlux 2.1
- phpFaber CMS Cross Site Scripting
- iDefense Security Advisory 10.26.06: Multiple Vendor wvWare LVL Count Integer Overflow Vulnerability
- iDefense Security Advisory 10.26.06: Multiple Vendor wvWare LFO Count Integer Overflow Vulnerability
- ZDI-06-035: Novell eDirectory NDS Server Host Header Buffer Overflow Vulnerability
- Re: Mozilla Firefox JavaScript Handler Race Condition Memory Corruption Vulnerability
- [ GLSA 200610-13 ] Cheese Tracker: Buffer Overflow
- vulnerability in Symantec products
- Re: IE7 is a Source of Problem - Secunia IE7 Release Incident of October 2006
- Re: [Full-disclosure] IE7 is a Source of Problem - Secunia IE7 Release Incident of October 2006
- TextPattern <=1.19 Remote File Inclusion Vulnerability
- SMF fgets off-by-one issue and filter size evasion
- IE7 status: 8 days after release, 3 unfixed issues
- UNISOR CMS sql injection
- PHP-Nuke <= 7.9 Search module "author" SQL Injection vulnerability
- ArticleBeach Script <= 2.0 Remote File Inclusion Vulnerability
- GestArt <= vbeta 1 Remote File Include Vulnerabilities
- From: ip . 123 . 456 . 78 . 90
- RFID enabled e-passport skimming proof of concept code released (RFIDIOt)
- PLS-Bannieres 1.21 (bannieres.php) File Include
- phpLedAds 2.0(dir) File Include
- [funsec] Haxdoor: UK Police Count 8, 500 Victims in Data Theft (So Far) (fwd)
- phpAdsNew-2.0.8 <= (adlayer.php) Remote File Include
- Ban v0.1 (bannieres.php) File Include
- Thepeak File Upload v1.3 : Read file vulneability
- Hosting Controller 6.1 Hotfix <= 3.2 Vulnerability
- From: playpacific . emulacaid
- Microsoft .NET request filtering bypass vulnerability
- [ MDKSA-2006:189 ] - Updated xsupplicant fixes possible remote root stack smash vulnerability
- Re: phpAdsNew-2.0.8 <= (adlayer.php) Remote File Include
- [ MDKSA-2006:188 ] - Updated mono packages fix vulnerability
- [ MDKSA-2006:190 ] - Updated mutt packages fix multiple vulnerabilities
- [ MDKSA-2006:192 ] - Updated ruby packages fix DoS vulnerability
- Re: Ban v0.1 (bannieres.php) File Include
- [ MDKSA-2006:191 ] - Updated screen packages fix vulnerability
- [ GLSA 200610-14 ] PHP: Integer overflow
- [SECURITY] [DSA 1200-1] New Qt packages fix integer overflow
- [OpenPKG-SA-2006.027] OpenPKG Security Advisory (wordpress)
- Re: [Full-disclosure] ZDI-06-035: Novell eDirectory NDS Server Host Header Buffer Overflow Vulnerability
- CentiPaid <= 1.4.2 [$class_pwd] Remote File Include
- Exporia => 0.3.0 Remote File Include Vulnerability Exploit
- bbsNew => 2.0.1 Remote File Include Vulnerability Exploit
- Back-end => 0.4.5 Remote File Include Vulnerability Exploit
- SQL in WebWizForum by almaster hacker
- Re: vulnerability in Symantec products
- Re: phpAdsNew-2.0.8 <= (adlayer.php) Remote File Include
- freenews---> fileinclude
- easy notes manager sql injection and authentication bypass
- [MajorSecurity Advisory #29]foresite CMS - Cross Site Scripting Issue
- Re: imageVue16.1 upload vulnerability
- Simple Website Software v0.99 (common.php) Remote File Include
- PHPEasyData Pro 1.4.1 (index.php) Remote SQL Injection Vulnerability
- PHPEasyData Pro 2.2.1 (index.php) Remote SQL Injection Vulnerability
- Nucleus Core v3.23 - Remote File Include
- Punbb <= 1.2.13 Multiple Vulnerabilities
- [ECHO_ADV_53$2006] QnECMS <= 2.5.6 (adminfolderpath) Remote File Inclusion Vulnerability
- opendocman <= 1.2p3 Bypass admin/user Login
- Metasploit Framework 2.7 Released
- [ GLSA 200610-15 ] Asterisk: Multiple vulnerabilities
- CORE FORCE R0.95 released!
- Multiple Remote File Include
- Re: CentiPaid <= 1.4.2 [$class_pwd] Remote File Include
- unreliable vulnerability reports en-masee [was:Re: vulnerability in Symantec products]
- [security bulletin] HPSBMA02138 SSRT061184 rev.2 - HP OpenView Storage Data Protector, Remote Unauthorized Arbitrary Command Execution
- [security bulletin] HPSBMA02121 SSRT061157 rev.3 - HP OpenView Storage Data Protector Remote Unauthorized Arbitrary Command Execution
- [security bulletin] HPSBTU02168 SSRT061237 rev.1 - HP Tru64 UNIX Running gzip, gunzip, and gzcat, Remote Unauthorized Arbitrary Code Execution or Denial of Service (DoS)
- Re: CentiPaid <= 1.4.2 [$class_pwd] Remote File Include
- Re: freenews---> fileinclude
- Re: Nucleus Core v3.23 - Remote File Include
- Re: Free Rainbow Tables.com
- ModSecurity 2.0, A Core Rule Set and Console now available
Mail converted by MHonArc