[SECURITY] [DSA 3013-1] s3ql security update

2014-08-28 Thread Florian Weimer
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-3013-1 secur...@debian.org http://www.debian.org/security/Florian Weiemr August 27, 2014

Aerohive Hive Manager and Hive OS Multiple Vulnerabilities

2014-08-28 Thread Disclosure
(, ) (, . '.' ) ('.', ). , ('. ( ) ( (_,) .'), ) _ _, / _/ / _ \ _ \ \==/ /_\ \ _/ ___\/ _ \ / \ / \/ |\\ \__( _ ) Y Y \ /__ /\___|__ / \___ /|__|_| / \/ \/.-.\/ \/:wq

SEC Consult SA-20140828-0 :: F5 BIG-IP Reflected Cross-Site Scripting

2014-08-28 Thread SEC Consult Vulnerability Lab
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 SEC Consult Vulnerability Lab Security Advisory 20140828-0 === title: Reflected Cross-Site Scripting product: F5 BIG-IP vulnerable version: = 11.5.1

[SECURITY] [DSA 3014-1] squid3 security update

2014-08-28 Thread Salvatore Bonaccorso
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian Security Advisory DSA-3014-1 secur...@debian.org http://www.debian.org/security/ Salvatore Bonaccorso August 28, 2014

Re: SaaS Marketing platform Hubspot export vulnerability

2014-08-28 Thread security
We at HubSpot take the concerns of the security community seriously, and continuously work to improve our posture in this ever-changing field. We do have predefined roles in the application which allow our customers to segment users permissions based on their role. These horizontal permissions