Re: h2desk helpdesk path disclosure vulnerability

2008-04-29 Thread john
This issue has been resolved. Please download: http://www.heathcosoft.com/h2desk/patches/april-2008-fix.zip Upload databasedump.php to the h2desk installation folder, overwriting the older version.

[ GLSA 200804-30 ] KDE start_kdeinit: Multiple vulnerabilities

2008-04-29 Thread Matthias Geerdsen
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200804-30 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - -

SugarCRM Community Edition Local File Disclosure Vulnerability

2008-04-29 Thread roberto . suggi
= SugarCRM Community Edition Local File Disclosure Vulnerability = = Vendor Website: = http://www.sugarcrm.com = = Affected Version: = -- SugarCRM Community Edition 4.5.1 = -- SugarCRM Community Edition 5.0.0 =

rPSA-2008-0151-1 libpng

2008-04-29 Thread rPath Update Announcements
rPath Security Advisory: 2008-0151-1 Published: 2008-04-29 Products: rPath Linux 1 rPath Appliance Platform Linux Service 1 Rating: Major Exposure Level Classification: Indirect User Deterministic Unauthorized Access Updated Versions: [EMAIL PROTECTED]:1/1.2.26-2.1-1 rPath Issue

Re: Yourfreeworld Styleish Text Ads Script

2008-04-29 Thread rohit
We had just came to know about this issue and we had released an updated version of our script. We invite you to test out the updated version and once you are satisfied just close up this thread. Thanks Rohit Seth

XSS Attack

2008-04-29 Thread hadikiamarsi
# Author: Hadi Kiamarsi # Discovered By: Hadi Kiamarsi # Exploited By: Hadi Kiamarsi # E-Mail: [EMAIL PROTECTED] # Web Site: http://ircrash.com ## # CMS: sitexs-0.1.1 # CMS WebSite: http://sitexs.sf.net #

Re: R.I.P. rgod

2008-04-29 Thread Christian Kujau
On Sat, 26 Apr 2008, [EMAIL PROTECTED] wrote: A website in his memory has been opened http://rgod.altervista.org Please see http://seclists.org/fulldisclosure/2008/Apr/0778.html for the other side of the story. C. -- BOFH excuse #139: UBNC (user brain not connected)

[ MDVSA-2008:092 ] - Updated gstreamer-plugins-good packages fix vulnerabilities

2008-04-29 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2008:092 http://www.mandriva.com/security/

[ MDVSA-2008:093 ] - Updated vorbis-tools packages fix vulnerabilities

2008-04-29 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2008:093 http://www.mandriva.com/security/