Foxit MobilePDF v4.4.0 iOS - Multiple Web Vulnerabilities

2015-01-13 Thread Vulnerability Lab
Document Title: === Foxit MobilePDF v4.4.0 iOS - Multiple Web Vulnerabilities References (Source): http://www.vulnerability-lab.com/get_content.php?id=1400 Release Date: = 2015-01-12 Vulnerability Laboratory ID (VL-ID):

Sitefinity Enterprise v7.2.53 - Persistent Vulnerability

2015-01-13 Thread Vulnerability Lab
Document Title: === Sitefinity Enterprise v7.2.53 - Persistent Vulnerability References (Source): http://www.vulnerability-lab.com/get_content.php?id=1369 Release Date: = 2015-01-06 Vulnerability Laboratory ID (VL-ID):

[SECURITY] [DSA 3123-2] binutils-mingw-w64 security update

2015-01-13 Thread Thijs Kinkhorst
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-3123-2 secur...@debian.org http://www.debian.org/security/ Thijs Kinkhorst January 13, 2015

SEC Consult SA-20150113-0 :: Multiple critical vulnerabilities in all snom desktop IP phones

2015-01-13 Thread SEC Consult Vulnerability Lab
SEC Consult Vulnerability Lab Security Advisory 20150113-0 === title: Multiple critical vulnerabilities product: snom IP phones vulnerable version: all firmware versions 8.7.5.15, all firmware branches

CVE-2015-0203: Apache Qpid's qpidd can be crashed by authenticated user

2015-01-13 Thread Gordon Sim
Apache Software Foundation - Security Advisory Apache Qpid's qpidd can be crashed by authenticated user CVE-2015-0203 CVS: 5.2 Severity: Moderate Vendor: The Apache Software Foundation Versions Affected: Apache Qpid's qpidd up to and including version 0.30 Description: Certain

SEC Consult SA-20150113-1 :: Privilege Escalation XSS Missing Authentication in Ansible Tower

2015-01-13 Thread SEC Consult Vulnerability Lab
SEC Consult Vulnerability Lab Security Advisory 20150113-1 === title: Privilege Escalation XSS Missing Authentication product: Ansible Tower vulnerable version: =2.0.2 fixed version: =2.0.5

SEC Consult SA-20150113-2 :: Cross-Site Request Forgery in XBMC / Kodi

2015-01-13 Thread SEC Consult Vulnerability Lab
SEC Consult Vulnerability Lab Security Advisory 20150113-2 === title: Cross-Site Request Forgery product: Kodi/XBMC vulnerable version: XBMC/Kodi =14 fixed version: no fixed version available

[security bulletin] HPSBMU03230 rev.1 - HP Insight Control server deployment Remote Disclosure of Information

2015-01-13 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Note: the current version of the following document is available here: https://h20564.www2.hp.com/portal/site/hpsc/public/kb/ docDisplay?docId=emr_na-c04537915 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c04537915 Version: 1 HPSBMU03230

[security bulletin] HPSBGN03233 rev.1 - HP OneView running OpenSSL, Remote Denial of Service (DoS), Unauthorized Access, and Disclosure of Information

2015-01-13 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Note: the current version of the following document is available here: https://h20564.www2.hp.com/portal/site/hpsc/public/kb/ docDisplay?docId=emr_na-c04540692 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c04540692 Version: 1 HPSBGN03233