Mail Thread Index
- [FD] Microsoft PlayReady white-box cryptography weakness,
Security Explorations
- [FD] Live2D Cubism refusing to fix validation issue leading to heap corruption.,
PT via Fulldisclosure
- [FD] Microsoft PlayReady toolkit - codes release,
Security Explorations
- [FD] OXAS-ADV-2024-0002: OX App Suite Security Advisory,
Martin Heiland via Fulldisclosure
- [FD] secuvera-SA-2024-02: Multiple Persistent Cross-Site Scritping (XSS) flaws in Drupal-Wiki,
Simon Bieber via Fulldisclosure
- [FD] Microsoft PlayReady - complete client identity compromise,
Security Explorations
- [FD] [KIS-2024-04] Cacti <= 1.2.26 (import.php) Remote Code Execution Vulnerability,
Egidio Romano
- [FD] HNS-2024-07 - HN Security Advisory - Multiple vulnerabilities in RIOT OS,
Marco Ivaldi
- [FD] APPLE-SA-05-08-2024-1 iTunes 12.13.2 for Windows,
Apple Product Security via Fulldisclosure
- [FD] APPLE-SA-05-13-2024-1 Safari 17.5,
Apple Product Security via Fulldisclosure
- [FD] APPLE-SA-05-13-2024-2 iOS 17.5 and iPadOS 17.5,
Apple Product Security via Fulldisclosure
- [FD] APPLE-SA-05-13-2024-3 iOS 16.7.8 and iPadOS 16.7.8,
Apple Product Security via Fulldisclosure
- [FD] APPLE-SA-05-13-2024-4 macOS Sonoma 14.5,
Apple Product Security via Fulldisclosure
- [FD] APPLE-SA-05-13-2024-5 macOS Ventura 13.6.7,
Apple Product Security via Fulldisclosure
- [FD] APPLE-SA-05-13-2024-6 macOS Monterey 12.7.5,
Apple Product Security via Fulldisclosure
- [FD] Research about consistency of CVSSv4,
Julia Wunder
- [FD] APPLE-SA-05-13-2024-7 watchOS 10.5,
Apple Product Security via Fulldisclosure
- [FD] APPLE-SA-05-13-2024-8 tvOS 17.5,
Apple Product Security via Fulldisclosure
- [FD] RansomLord v3 / Anti-Ransomware Exploit Tool Released,
malvuln
- [FD] Panel.Amadey.d.c C2 / Cross Site Scripting (XSS),
malvuln
- [FD] Panel.SmokeLoader C2 / Cross Site Scripting (XSS),
malvuln
- [FD] Panel.SmokeLoader / Cross Site Request Forgery (CSRF),
malvuln
- [FD] BACKDOOR.WIN32.ASYNCRAT / Arbitrary Code Execution,
malvuln
- [FD] TROJANSPY.WIN64.EMOTET.A / Arbitrary Code Execution,
malvuln
- [FD] SEC Consult SA-20240513-0 :: Tolerating Self-Signed Certificates in SAP® Cloud Connector,
SEC Consult Vulnerability Lab via Fulldisclosure
- [FD] CVE-2024-34058: Nethserver 7 & 8 stored cross-site scripting (XSS) in WebTop package,
Andrea Intilangelo
- [FD] asterisk release 18.23.1,
Asterisk Development Team via Fulldisclosure
- [FD] asterisk release 21.3.1,
Asterisk Development Team via Fulldisclosure
- [FD] asterisk release 20.8.1,
Asterisk Development Team via Fulldisclosure
- [FD] [CFP] Security BSides Ljubljana 0x7E8 | September 27, 2024,
Andraz Sraka
- [FD] SEC Consult SA-20240522-0 :: Broken access control & API Information Exposure in 4BRO App,
SEC Consult Vulnerability Lab via Fulldisclosure
- [FD] SEC Consult SA-20240524-0 :: Exposed Serial Shell on multiple PLCs in Siemens CP-XXXX Series,
SEC Consult Vulnerability Lab via Fulldisclosure
- [FD] SEC Consult SA-20240527-0 :: Multiple vulnerabilities in HAWKI didactic interface,
SEC Consult Vulnerability Lab via Fulldisclosure
- [FD] HNS-2024-06 - HN Security Advisory - Multiple vulnerabilities in Eclipse ThreadX,
Marco Ivaldi
- [FD] CyberDanube Security Research 20240528-0 | Multiple Vulnerabilities in ORing IAP-420,
Thomas Weber via Fulldisclosure
Mail converted by MHonArc