[Full-disclosure] Axis VoIP Manager v2.1.5.7 - Multiple Web Vulnerabilities

2012-09-18 Thread Vulnerability Lab
Title: == Axis VoIP Manager v2.1.5.7 - Multiple Web Vulnerabilities Date: = 2012-09-09 References: === http://www.vulnerability-lab.com/get_content.php?id=686 VL-ID: = 686 Common Vulnerability Scoring System: 2.3 Introduction:

[Full-disclosure] Fortigate UTM WAF Appliance - Cross Site Vulnerabilities

2012-09-18 Thread Vulnerability Lab
Title: == Fortigate UTM WAF Appliance - Cross Site Vulnerabilities Date: = 2012-09-07 References: === http://www.vulnerability-lab.com/get_content.php?id=559 VL-ID: = 559 Common Vulnerability Scoring System: 3.5 Introduction:

[Full-disclosure] SonicWALL EMail Security 7.3.5 - Multiple Vulnerabilities

2012-09-18 Thread Vulnerability Lab
Title: == SonicWALL EMail Security 7.3.5 - Multiple Vulnerabilities Date: = 2012-08-14 References: === http://www.vulnerability-lab.com/get_content.php?id=543 VL-ID: = 543 Common Vulnerability Scoring System: 3.5 Introduction:

[Full-disclosure] Anyone can log into Virgin Mobile USA accounts, read/write customer data

2012-09-18 Thread Kevin Burke
Virgin USA requires customers to use a 6-digit PIN on their account, and the phone number for a login. Once an attacker knows your PIN, they can take any action on your account with no restraint. They can also determine whether a phone number is a Virgin Mobile USA number, based on the login

[Full-disclosure] List Charter

2012-09-18 Thread John Cartwright
[Full-Disclosure] Mailing List Charter John Cartwright jo...@grok.org.uk - Introduction Purpose - This document serves as a charter for the [Full-Disclosure] mailing list hosted at lists.grok.org.uk. The list was created on 9th July 2002 by Len Rose, and is primarily concerned with

[Full-disclosure] [SECURITY] [DSA 2550-1] asterisk security update

2012-09-18 Thread Moritz Muehlenhoff
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-2550-1 secur...@debian.org http://www.debian.org/security/Moritz Muehlenhoff September 18, 2012

Re: [Full-disclosure] Full-Disclosure Digest, Vol 91, Issue 23

2012-09-18 Thread James
Unsubscribe Sent from my iPad On 18/09/2012, at 10:47 PM, full-disclosure-requ...@lists.grok.org.uk wrote: Send Full-Disclosure mailing list submissions to full-disclosure@lists.grok.org.uk To subscribe or unsubscribe via the World Wide Web, visit

Re: [Full-disclosure] Adobe Flash UpdateInstalls Other Warez without Consent

2012-09-18 Thread Nick Boyce
On Mon, Sep 17, 2012 at 6:39 PM, Christian Sciberras uuf6...@gmail.com wrote: On Thu, Sep 6, 2012 at 2:09 PM, Jeffrey Walton noloa...@gmail.com wrote: [snip] Adobe now includes additional warez in their updates without consent. The warez includes a browser and tools bar. The attached image