[FD] [SYSS-2019-035]: Microsoft Surface Mouse - Insufficient Protection of Code (Firmware) and Data (Cryptographic Key)

2019-10-11 Thread Matthias Deeg
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Advisory ID: SYSS-2019-035 Product: Surface Mouse Manufacturer: Microsoft Affected Version(s): WS3-2 Tested Version(s): WS3-2 Vulnerability Type: Insufficient Protection of Code (Firmware) and Data (Cryptographic Key)

[FD] [SYSS-2019-034]: Microsoft Surface Keyboard - Insufficient Protection of Code (Firmware) and Data (Cryptographic Key)

2019-10-11 Thread Matthias Deeg
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Advisory ID: SYSS-2019-034 Product: Surface Keyboard Manufacturer: Microsoft Affected Version(s): WS2-5 Tested Version(s): WS2-5 Vulnerability Type: Insufficient Protection of Code (Firmware) and Data (Cryptographic Key)

[FD] [SYSS-2019-033]: Microsoft Designer Bluetooth Desktop - Insufficient Protection of Code (Firmware) and Data (Cryptographic Key)

2019-10-11 Thread Matthias Deeg
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Advisory ID: SYSS-2019-033 Product: Designer Bluetooth Desktop Manufacturer: Microsoft Affected Version(s): n/a Tested Version(s): n/a Vulnerability Type: Insufficient Protection of Code (Firmware) and Data (Cryptographic Key)

[FD] Open-Xchange Security Advisory 2019-10-09

2019-10-11 Thread Martin Heiland via Fulldisclosure
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Dear subscribers, we're sharing our latest advisory with you and like to thank everyone who contributed in finding and solving those vulnerabilities. Feel free to join our bug bounty programs (appsuite, dovecot, powerdns) at HackerOne. Yours

[FD] Multiple Cross-site Scripting Vulnerabilities in Openfire 4.4.1

2019-10-11 Thread Daniel Bishtawi
Hello, We are informing you about the vulnerabilities in Openfire 4.4.1. Here are the details: Information Advisory by Netsparker Name: Multiple Cross-site Scripting Vulnerabilities in Openfire 4.4.1 Affected Software: Openfire Affected Versions: 4.4.1 Vendor Homepage: