[FD] Maldrone for drones.

2015-02-03 Thread Rahul Sasi
I wrote a blog post last week regarding a small project I was working on my free time "Learning about Drones and security issues" . And a youtube demo video titled "Maldrone first malware for drones". The blog is a preview of few things I would be presenting at my upcoming talk at Nullcon

[FD] My Little Forum Multiple XSS Security Vulnerabilities

2015-02-03 Thread Jing Wang
*My Little Forum Multiple XSS Security Vulnerabilities* Exploit Title: My Little Forum Multiple XSS Security Vulnerabilities Vendor: My Little Forum Product: My Little Forum Vulnerable Versions: 2.3.3 2.2 1.7 Tested Version: 2.3.3 2.2 1.7 Advisory Publication: Feb 2, 2015 Latest Update: Feb

[FD] MSA-2015-02: Hewlett-Packard UCMDB - JMX-Console Authentication Bypass

2015-02-03 Thread Advisories
Mogwai Security Advisory MSA-2015-02 -- Title: Hewlett-Packard UCMDB - JMX-Console Authentication Bypass CVE-ID: CVE-2014-7883 Product:Hewlett-Packard Universal CMDB (UCMDB) Aff

[FD] Capstone disassembly engine 3.0.1 released!

2015-02-03 Thread Nguyen Anh Quynh
Greetings, We are happy & excited to release version 3.0.1 of Capstone disassembly framework! This stable version brings some important bugfixes for X86, Arm, Arm64, PowerPC architectures. Several memory leaking issues in Python/Cython bindings have been addressed, too. Since this release, our P

[FD] SQL injection vulnerability in Pragyan CMS v.3.0

2015-02-03 Thread Steffen Rösemann
Advisory: SQL injection vulnerability in Pragyan CMS v.3.0 Advisory ID: SROEADV-2015-11 Author: Steffen Rösemann Affected Software: Pragyan CMS v.3 Vendor URL: https://github.com/delta/pragyan, http://delta.nitt.edu/ Vendor Status: vendor did not respond after initial communication CVE-ID: - =