[FD] DSA-2019-025: RSA Archer GRC Platform Multiple Vulnerabilities

2019-03-01 Thread secure
Restricted - Confidential -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 DSA-2019-025: RSA Archer GRC Platform Multiple Vulnerabilities Dell EMC Identifier: DSA-2019-025 CVE Identifier: CVE-2019-3705, CVE-2019-3706 Severity Rating: See below for scores of individual CVEs Affected

[FD] [CVE-2019-9206, CVE-2019-9207] Cross Site Scripting in PRTG Network Monitor v7.1.3.3378

2019-03-01 Thread Rafael Pedrero
In 2009... ___ Sent through the Full Disclosure mailing list https://nmap.org/mailman/listinfo/fulldisclosure Web Archives & RSS: http://seclists.org/fulldisclosure/

[FD] Apache UNO API RCE

2019-03-01 Thread Axel Boesenach
Dear reader, I am not sure if I am contacting through the right email address but someone said I should e-mail you guys. I found an RCE functionality in the Apache UNO API which could give an attacker control over a machine, or use a machine already compromised in the network to exfiltrate

[FD] SHAREit for Android Authentication Bypass and Remote File Download

2019-03-01 Thread RedForce Advisory
RedForce Advisory https://redforce.io ## ِAdvisory Information Title: SHAREit For Android <= 4.0.38 Multiple Vulnerabilities Advisory URL: https://blog.redforce.io/shareit-vulnerabilities-enable-unrestricted-access-to-adjacent-devices-files/ Date published: 2019-02-25 Date of last update:

[FD] [CORE-2018-0012] - Cisco WebEx Meetings Elevation of Privilege Vulnerability Version 2

2019-03-01 Thread advisories
SecureAuth - SecureAuth Labs Advisory http://www.secureauth.com/ Cisco WebEx Meetings Elevation of Privilege Vulnerability Version 2 1. *Advisory Information* Title: Cisco WebEx Meetings Elevation of Privilege Vulnerability Version 2 Advisory ID: CORE-2018-0012 Advisory URL: