[Suspected Spam] eSyndiCat Pro v2.4.1 - Multiple Web Vulnerabilities

2012-06-15 Thread Research
Title: == eSyndiCat Pro v2.4.1 - Multiple Web Vulnerabilities Date: = 2012-05-19 References: === http://www.vulnerability-lab.com/get_content.php?id=575 VL-ID: = 575 Common Vulnerability Scoring System: 7.1 Introduction:

Boonex Dolphin v7.0.9 CMS Mobile App - Multiple Web Vulnerabilities

2012-06-15 Thread Research
Title: == Boonex Dolphin v7.0.9 CMS - Multiple Web Vulnerabilities Date: = 2012-05-18 References: === http://www.vulnerability-lab.com/get_content.php?id=565 http://www.vulnerability-lab.com/get_content.php?id=566 ID: Changeset 16256 VL-ID: = 565 Common Vulnerability

QuickBlog v0.8 CMS - Multiple Web Vulnerabilities

2012-06-15 Thread Research
Title: == QuickBlog v0.8 CMS - Multiple Web Vulnerabilities Date: = 2012-05-12 References: === http://www.vulnerability-lab.com/get_content.php?id=567 VL-ID: = 567 Common Vulnerability Scoring System: 6.5 Introduction:

ADICO CMS v1.1 - Blind SQL Injection Vulnerability

2012-06-15 Thread Research
Title: == ADICO CMS v1.1 - Blind SQL Injection Vulnerability Date: = 2012-05-29 References: === http://www.vulnerability-lab.com/get_content.php?id=582 VL-ID: = 582 Common Vulnerability Scoring System: 8.3 Introduction:

iScripts EasyCreate CMS v2.0 - Multiple Web Vulnerabilites

2012-06-15 Thread Research
Title: == iScripts EasyCreate CMS v2.0 - Multiple Web Vulnerabilites Date: = 2012-06-02 References: === http://www.vulnerability-lab.com/get_content.php?id=588 VL-ID: = 588 Common Vulnerability Scoring System: 8.3 Introduction:

Nuked Klan SP CMS v4.5 - SQL injection Vulnerability

2012-06-15 Thread Research
Title: == Nuked Klan SP CMS v4.5 - SQL injection Vulnerability Date: = 2012-06-09 References: === http://www.vulnerability-lab.com/get_content.php?id=610 VL-ID: = 610 Common Vulnerability Scoring System: 8 Introduction:

VMSA-2012-0011 VMware hosted products and ESXi and ESX patches address security issues

2012-06-15 Thread VMware Security Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 --- VMware Security Advisory Advisory ID: VMSA-2012-0011 Synopsis:VMware hosted products and ESXi and ESX patches address security issues Issue

[ MDVSA-2012:090 ] openoffice.org

2012-06-15 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2012:090 http://www.mandriva.com/security/

[ MDVSA-2012:091 ] libreoffice

2012-06-15 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2012:091 http://www.mandriva.com/security/

[security bulletin] HPSBOV02774 SSRT100684 rev.1 - HP TCP/IP Services for OpenVMS, BIND 9 Resolver, Remote Denial of Service (DoS)

2012-06-15 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Note: the current version of the following document is available here: https://h20566.www2.hp.com/portal/site/hpsc/public/kb/ docDisplay?docId=emr_na-c03312535 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c03312535 Version: 1 HPSBOV02774

Re: Bugtraq ID# 53694 is invalid/fake

2012-06-15 Thread Information Booth
This is in regards to: http://www.securityfocus.com/bid/53694 This is an uncoordinated release, the author did not make any attempt to notify us either by email or the public forum. The non-working exploit seems to have been copied and pasted with RIPS source code analyzer and the author didn't

[SECURITY] [DSA 2494-1] ffmpeg security update

2012-06-15 Thread Florian Weimer
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-2494-1 secur...@debian.org http://www.debian.org/security/Florian Weimer June 14, 2012

[slackware-security] mozilla-firefox (SSA:2012-166-02)

2012-06-15 Thread Slackware Security Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 [slackware-security] mozilla-firefox (SSA:2012-166-02) New mozilla-firefox packages are available for Slackware 13.37, and -current to fix security issues. Here are the details from the Slackware 13.37 ChangeLog: +--+

[slackware-security] seamonkey (SSA:2012-166-04)

2012-06-15 Thread Slackware Security Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 [slackware-security] seamonkey (SSA:2012-166-04) New seamonkey packages are available for Slackware 13.37, and -current to fix security issues. Here are the details from the Slackware 13.37 ChangeLog: +--+ This update

[slackware-security] bind (SSA:2012-166-01)

2012-06-15 Thread Slackware Security Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 [slackware-security] bind (SSA:2012-166-01) New bind packages are available for Slackware 8.1, 9.0, 9.1, 10.0, 10.1, 10.2, 11.0, 12.0, 12.1, 12.2, 13.0, 13.1, 13.37, and -current to fix security issues. Here are the details from the Slackware

[ MDVSA-2012:091 ] libreoffice

2012-06-15 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2012:091 http://www.mandriva.com/security/

[ MDVSA-2012:092 ] postgresql

2012-06-15 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2012:092 http://www.mandriva.com/security/

[ MDVSA-2012:093 ] php

2012-06-15 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2012:093 http://www.mandriva.com/security/

IObit Protected Folder Authentication Bypass

2012-06-15 Thread Adam Behnke
From IObit: Protected Folder is designed to password-protect your folders and files from being seen, read or modified in Windows 7, Vista, XP and Server 2008, 2003. It works like a safety box, just drag and drop the folders or files you want to hide or protect into Protected Folder, then no one

Squirrelcart Cart Shop v3.3.4 - Multiple Web Vulnerabilities

2012-06-15 Thread Research
Title: == Squirrelcart Cart Shop v3.3.4 - Multiple Web Vulnerabilities Date: = 2012-06-04 References: === http://www.vulnerability-lab.com/get_content.php?id=592 VL-ID: = 592 Common Vulnerability Scoring System: 3.5 Introduction:

[Suspected Spam] Swoopo Gold Shop CMS v8.4.56 - Multiple Web Vulnerabilities

2012-06-15 Thread Research
Title: == Swoopo Gold Shop CMS v8.4.56 - Multiple Web Vulnerabilities Date: = 2012-05-14 References: === http://www.vulnerability-lab.com/get_content.php?id=515 VL-ID: = 515 Common Vulnerability Scoring System: 8.5 Introduction:

Simple Forum PHP 2.1 - SQL Injection Vulnerabilities

2012-06-15 Thread Research
Title: == Simple Forum PHP 2.1 - SQL Injection Vulnerabilities Date: = 2012-06-10 References: === http://www.vulnerability-lab.com/get_content.php?id=599 VL-ID: = 599 Common Vulnerability Scoring System: 7.5 Introduction:

Jobs Portal v3.0 NetArtMedia - Multiple Web Vulnerabilites

2012-06-15 Thread Research
Title: == Jobs Portal v3.0 NetArtMedia - Multiple Web Vulnerabilites Date: = 2012-06-06 References: === http://www.vulnerability-lab.com/get_content.php?id=595 VL-ID: = 595 Common Vulnerability Scoring System: 8.3 Introduction:

Cells Blog CMS v1.1 - Multiple Web Vulnerabilites

2012-06-15 Thread Research
Title: == Cells Blog CMS v1.1 - Multiple Web Vulnerabilites Date: = 2012-06-05 References: === http://www.vulnerability-lab.com/get_content.php?id=591 VL-ID: = 591 Common Vulnerability Scoring System: 8.3 Introduction:

MYRE Real Estate Mobile 2012|2 - Multiple Vulnerabilities

2012-06-15 Thread Research
Title: == MYRE Real Estate Mobile 2012|2 - Multiple Vulnerabilities Date: = 2012-05-01 References: === http://www.vulnerability-lab.com/get_content.php?id=516 VL-ID: = 516 Common Vulnerability Scoring System: 8.5 Introduction:

[CAL-2012-0015] opera website spoof

2012-06-15 Thread Code Audit Labs
CAL-2012-0015 opera website spoof CVE ID: Opera did not assign ,please c...@mitre.org assign CAL ID: CAL-2012-0015 ref: http://blog.vulnhunt.com/index.php/2012/06/14/cal-2012-0015-opera-website-spoof/ 1 Affected Products = 11.61 and prior 2 Vulnerability Details

CSNC-2012-004 Generic XSS in AdNovum nevisProxy

2012-06-15 Thread Cyrill Brunschwiler
# # # COMPASS SECURITY ADVISORY # http://www.csnc.ch/en/downloads/advisories.html # # # # Product: NevisProxy # Vendor: AdNovum # CVD ID: CSNC-2012-004 # Subject:

AdNovum NevisWeb Security Proxy Vulnerability - Cross-site scripting (XSS) within 302 Redirections

2012-06-15 Thread Ivan Buetler
Hi all, nevisProxy is a Swiss secure reverse proxy with integrated web application firewall (WAF). It acts as a central upstream entry point for web traffic to integrated online applications. nevisProxy controls user access and protects sensitive data, applications, services, and systems from

AST-2012-009: Skinny Channel Driver Remote Crash Vulnerability

2012-06-15 Thread Asterisk Security Team
Asterisk Project Security Advisory - AST-2012-009 Product Asterisk Summary Skinny Channel Driver Remote Crash Vulnerability Nature of Advisory Denial of Service

nullcon Delhi 2012 Final call for Paper/Events (extended to 10th July) and First round of speakers

2012-06-15 Thread nullcon
Hi All, nullcon team is pleased to announce:  - First round of speakers  - Prototype Talks  - Exhibition/Demo Zone  - Job Fair  - Final Call for Events and Call for Papers for Delhi 2012 First round of speakers: 1. Mr. Raghu Raman (CEO NATGRID)  - Keynote 1