Ivanti Workspace Control Application Whitelist bypass via PowerGrid /SEE command line argument

2018-10-01 Thread Securify B.V.
Ivanti Workspace Control Application Whitelist bypass via PowerGrid /SEE command line argument Yorick Koster, August 2018

Ivanti Workspace Control local privilege escalation via Named Pipe

2018-10-01 Thread Securify B.V.
Ivanti Workspace Control local privilege escalation via Named Pipe Yorick Koster, August 2018

Ivanti Workspace Control Data Security bypass via localhost UNC path

2018-10-01 Thread Securify B.V.
Ivanti Workspace Control Data Security bypass via localhost UNC path Yorick Koster, August 2018

Ivanti Workspace Control Application Whitelist bypass via PowerGrid /RWS command line argument

2018-10-01 Thread Securify B.V.
Ivanti Workspace Control Application Whitelist bypass via PowerGrid /RWS command line argument Yorick Koster, August 2018

Stored credentials Ivanti Workspace Control can be retrieved from Registry

2018-10-01 Thread Securify B.V.
Stored credentials Ivanti Workspace Control can be retrieved from Registry Yorick Koster, August 2018

[SECURITY] [DSA 4308-1] linux security update

2018-10-01 Thread Salvatore Bonaccorso
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian Security Advisory DSA-4308-1 secur...@debian.org https://www.debian.org/security/ Salvatore Bonaccorso October 01, 2018

e2 Security GmbH Advisory 2018-01: MensaMax Android app / Unencrypted transmission and usage of hardcoded encryption key

2018-10-01 Thread Stefan Pietsch
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 ## e2 Security GmbH Advisory 2018-01 ## ### Unencrypted transmission and usage of hardcoded encryption key ~~ Overview Advisory ID:

[SECURITY] [DSA 4307-1] python3.5 security update

2018-10-01 Thread Moritz Muehlenhoff
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian Security Advisory DSA-4307-1 secur...@debian.org https://www.debian.org/security/ Moritz Muehlenhoff September 28, 2018

WebKitGTK+ and WPE WebKit Security Advisory WSA-2018-0007

2018-10-01 Thread Michael Catanzaro
--- WebKitGTK+ and WPE WebKit Security AdvisoryWSA-2018-0007 Date reported : September 26, 2018 Advisory ID :

[SYSS-2018-014] Bestwebsoft PDF & Print - Cross-Site Scripting

2018-10-01 Thread Robin . Trost
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Advisory ID: SYSS-2018-014 Product: PDF & Print Manufacturer: Bestwebsoft Affected Version: 2.0.2 Tested Version: 2.0.2 Vulnerability Type: Cross-Site-Scripting (CWE-79) Risk Level: Medium Solution Status: Fixed Manufacturer Notification: 2018-08-24