pdirl PHP Directory Listing 1.0.4 - Cross Site Scripting Web Vulnerabilities

2013-11-03 Thread Vulnerability Lab
Document Title: === pdirl PHP Directory Listing 1.0.4 - Cross Site Scripting Web Vulnerabilities References (Source): http://www.vulnerability-lab.com/get_content.php?id=1130 Release Date: = 2013-11-01 Vulnerability Laboratory ID (VL-ID):

[security bulletin] HPSBMU02931 rev.2 - HP Service Manager, Injection of Arbitrary Code, Remote Privilege Elevation, Remote Disclosure of Privileged Information and Cross Site Scripting (XSS)

2013-11-03 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Note: the current version of the following document is available here: https://h20564.www2.hp.com/portal/site/hpsc/public/kb/ docDisplay?docId=emr_na-c03960916 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c03960916 Version: 2 HPSBMU02931

[SECURITY] [DSA 2790-1] nss security update

2013-11-03 Thread Salvatore Bonaccorso
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian Security Advisory DSA-2790-1 secur...@debian.org http://www.debian.org/security/ Salvatore Bonaccorso November 02, 2013

[slackware-security] mozilla-thunderbird (SSA:2013-307-01)

2013-11-03 Thread Slackware Security Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 [slackware-security] mozilla-thunderbird (SSA:2013-307-01) New mozilla-thunderbird packages are available for Slackware 13.37, 14.0, and -current to fix security issues. Here are the details from the Slackware 14.0 ChangeLog:

XSS and CSRF Horde Groupware Web mail Edition

2013-11-03 Thread m . benetrix
# Exploit Title : XSS and CSRF Horde Groupware Web mail Edition Author:Marcela Benetrix Date: 10/28/13 version: 5.1.2 software link:http://www.horde.org/apps/webmail # GroupWare Web mail Edition Horde Groupware Webmail Edition is a free,

CSRF Horde Groupware Web mail Edition

2013-11-03 Thread m . benetrix
# Exploit Title : CSRF Horde Groupware Web mail Edition Author:Marcela Benetrix Date: 10/28/13 version: 5.1.2 software link:http://www.horde.org/apps/webmail # GroupWare Web mail Edition Horde Groupware Webmail Edition is a free, enterprise

XADV-2013003 Linux Kernel eCryptfs write_tag_3_packet Heap Buffer Overflow Vulnerability

2013-11-03 Thread geinblues
++ | XADV-2013003 Linux Kernel eCryptfs write_tag_3_packet Heap Buffer Overflow Vulnerability | ++

[SECURITY] [DSA 2791-1] tryton-client security update

2013-11-03 Thread Florian Weimer
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-2791-1 secur...@debian.org http://www.debian.org/security/Florian Weimer November 04, 2013