Full Disclosure: by author

280 messages starting Dec 21 12 and ending Dec 07 12
Date index | Thread index | Author index


aditya

Re: "Topera" The new IPv6 TCP port scanner invisible to SNORT... aditya (Dec 21)

Alan J. Wylie

Re: Removing seless email addresses (on FD list) Alan J. Wylie (Dec 12)

Alexander Georgiev

Re: Local root exploit for Centrify Deployment Manager < v2.1.0.283 local root Alexander Georgiev (Dec 20)

Alexander Heid

HackMiami 2013 Hackers Conference in Miami, FL Alexander Heid (Dec 20)

Almaz

Competitively priced drop box for pentesters Almaz (Dec 21)

andfarm

Re: EasyPHP 12.1 - Remote code execution of any php/js on local PC andfarm (Dec 03)

Andres Riancho

Re: MySQL Local/Remote FAST Account Password Cracking Andres Riancho (Dec 05)

Andrew Horton

New Tool: Username Anarchy Andrew Horton (Dec 22)

Aris Adamantiadis

Re: FreeFTPD Remote Authentication Bypass Zeroday Exploit (Stuxnet technique) Aris Adamantiadis (Dec 02)
Re: FreeFTPD Remote Authentication Bypass Zeroday Exploit (Stuxnet technique) Aris Adamantiadis (Dec 01)

auto59190641

Re: EasyPHP 12.1 - Remote code execution of any php/js on local PC auto59190641 (Dec 02)

Benji

Re: Selling Exploit on Deep Web Benji (Dec 21)
Re: Selling Exploit on Deep Web Benji (Dec 21)
Re: Selling Exploit on Deep Web Benji (Dec 21)
Re: Selling Exploit on Deep Web Benji (Dec 21)
Re: Google's robots.txt handling Benji (Dec 11)

bl4kjeebus121

Re: ZDI Anything bl4kjeebus121 (Dec 21)

blackhatz

Re: dyne_bolic hacked? blackhatz (Dec 25)
dyne_bolic hacked? blackhatz (Dec 23)

Cartel

RA005: Persistent XSS Injection Vulnerability in Kaseya 6.2 Cartel (Dec 02)
RA004: Multiple vulnerabilities in ManageEngine MSPCentral 9 Cartel (Dec 04)
RA001: Multiple vulnerabilities in Ncentral versions 8.0.x - 8.2.0-1152 Cartel (Dec 02)

Chris C. Russo

Re: FreeSSHD Remote Authentication Bypass Zeroday Exploit Chris C. Russo (Dec 01)

Christian Sciberras

Re: Google's robot.txt handling Christian Sciberras (Dec 11)
Re: Question regarding script vulnerabilities Christian Sciberras (Dec 20)
Removing seless email addresses (on FD list) Christian Sciberras (Dec 11)

Christopher Emerson

WordPress 3.4.2: Sessions Not Terminated Upon Explicit User Logout [CVE-2012-5868] Christopher Emerson (Dec 20)

Christoph Gruber

Re: Google's robots.txt handling Christoph Gruber (Dec 12)

Daniel Preussker

Merry Christmas Daniel Preussker (Dec 25)

Darius Freamon

Buffalo LinkStation LS-WTGL Default Admin Account & Guest Access Information Darius Freamon (Dec 05)

ddivulnalert

DDIVRT-2012-48 VMware View Connection Server Directory Traversal (CVE-2012-5978) ddivulnalert (Dec 16)

Denis McMahon

Re: Google's robots.txt handling Denis McMahon (Dec 11)

Dragos Ruiu

CanSecWest13 CFP Open Until December 14 2012, Conf March 7-9 2013, Vancouver Dragos Ruiu (Dec 06)

Emmanuel FARCY

XSS vulnerability on laposte.fr Emmanuel FARCY (Dec 05)
SQL injection Emmanuel FARCY (Dec 05)

Enno Rey

Recruiting Troopers - Call for Papers, March 13-14 2013 Enno Rey (Dec 22)

Eren Yağdıran

Re: MySQL (Linux) Database Privilege Elevation Zeroday Exploit Eren Yağdıran (Dec 04)

Facundo M. de la Cruz

Cisco DPC2420 Multiples Vulnerabilities Facundo M. de la Cruz (Dec 10)

Fernando Gont

Network Reconnaissance in IPv6 Networks (errata) Fernando Gont (Dec 12)
IPv6 Neighbor Discovery security (new documents) Fernando Gont (Dec 17)
Network Reconnaissance in IPv6 Networks Fernando Gont (Dec 12)

Florian Weimer

[SECURITY] [DSA 2588-1] icedove security update Florian Weimer (Dec 16)
[SECURITY] [DSA 2589-1] tiff security update Florian Weimer (Dec 16)
[SECURITY] [DSA 2585-1] bogofilter security update Florian Weimer (Dec 11)
[SECURITY] [DSA 2587-1] libcgi-pm-perl security update Florian Weimer (Dec 11)
[SECURITY] [DSA 2586-1] perl security update Florian Weimer (Dec 11)

Frederick Townes

Re: Wordpress Remote Exploit - W3 Total Cache Frederick Townes (Dec 28)

g () 1337 io

Re: ZDI Anything g () 1337 io (Dec 21)

Gage Bystrom

Re: Competitively priced drop box for pentesters Gage Bystrom (Dec 21)

Gaurang Pandya

Nokia phone forcing traffic through proxy Gaurang Pandya (Dec 07)

George Clark

Foswiki Security Alert CVE-2012-6329, CVE-2012-6330 Remote code execution and other vulnerabilities in MAKETEXT macro George Clark (Dec 16)

Gildseth, Tommy

Re: Google's robots.txt handling Gildseth, Tommy (Dec 11)

gold flake

Re: DPI evasion gold flake (Dec 17)

Grandma Eubanks

Re: Wordpress Remote Exploit - W3 Total Cache Grandma Eubanks (Dec 24)

gremlin

Re: DPI evasion gremlin (Dec 17)
Re: DPI evasion gremlin (Dec 20)

Gynvael Coldwind

Re: Google's robots.txt handling Gynvael Coldwind (Dec 10)

HTTPCS

[HTTPCS] phpMyNewsletter Multiple Vulnerabilities HTTPCS (Dec 02)
[HTTPCS] 2 Vulnerab​ilities in OurWebFTP HTTPCS (Dec 02)

Hurgel Bumpf

Buffalo Technology LinkStation: Admin Password Reset as Guest User Hurgel Bumpf (Dec 05)
Re: Google's robot.txt handling Hurgel Bumpf (Dec 11)
Google's robots.txt handling Hurgel Bumpf (Dec 10)

Huzaifa Sidhpurwala

Re: [oss-security] Re: MySQL (Linux) Stack based buffer overrun PoC Zeroday Huzaifa Sidhpurwala (Dec 02)

Ian

smoke loader Ian (Dec 20)

illwill

Re: Selling Exploit on Deep Web illwill (Dec 11)

Jakub Zoczek

Poczta.WP Multiple vulnerabilities - full disclosure Jakub Zoczek (Dec 04)

James Lay

Re: Google's robots.txt handling James Lay (Dec 10)

Jason A. Donenfeld

Re: Wordpress Remote Exploit - W3 Total Cache Jason A. Donenfeld (Dec 24)
Re: Wordpress Remote Exploit - W3 Total Cache Jason A. Donenfeld (Dec 24)
Wordpress Remote Exploit - W3 Total Cache Jason A. Donenfeld (Dec 23)

Jeffrey Walton

Re: [btrfs] is vulnerable to a hash-DoS attack Jeffrey Walton (Dec 14)
Re: Removing seless email addresses (on FD list) Jeffrey Walton (Dec 11)
Re: MySQL 5.1/5.5 WiNDOWS REMOTE R00T (mysqljackpot) Jeffrey Walton (Dec 07)
Re: Local root exploit for Centrify Deployment Manager < v2.1.0.283 local root Jeffrey Walton (Dec 18)
Re: Nokia phone forcing traffic through proxy Jeffrey Walton (Dec 07)
Re: MySQL (Linux) Stack based buffer overrun PoC Zeroday Jeffrey Walton (Dec 01)
Re: Google's robots.txt handling Jeffrey Walton (Dec 13)
Re: MySQL Local/Remote FAST Account Password Cracking Jeffrey Walton (Dec 04)
Re: MySQL (Linux) Heap Based Overrun PoC Zeroday Jeffrey Walton (Dec 02)
Re: Google's robot.txt handling Jeffrey Walton (Dec 11)
Re: MySQL (Linux) Heap Based Overrun PoC Zeroday Jeffrey Walton (Dec 01)
Re: FreeFTPD Remote Authentication Bypass Zeroday Exploit (Stuxnet technique) Jeffrey Walton (Dec 01)
Re: MySQL 5.1/5.5 WiNDOWS REMOTE R00T (mysqljackpot) Jeffrey Walton (Dec 05)
Re: Google's robot.txt handling Jeffrey Walton (Dec 11)
Re: EasyPHP 12.1 - Remote code execution of any php/js on local PC Jeffrey Walton (Dec 03)

Jerry Bell

Re: Question regarding script vulnerabilities Jerry Bell (Dec 21)

Jessica S

CactusCon 2013 CFP Jessica S (Dec 17)

John Cartwright

List Charter John Cartwright (Dec 08)
Re: Removing seless email addresses (on FD list) John Cartwright (Dec 12)

Jonathan Rudenberg

Twitter Vulnerable to SMS Spoofing Jonathan Rudenberg (Dec 04)

Jonathan Wiltshire

[SECURITY] [DSA 2596-1] mediawiki-extensions security update Jonathan Wiltshire (Dec 31)

Julius Kivimäki

BF, CSRF, and IAA vulnerabilities in websecurity.com.ua Julius Kivimäki (Dec 31)
Re: Selling Exploit on Deep Web Julius Kivimäki (Dec 22)
Re: dyne_bolic hacked? Julius Kivimäki (Dec 24)
Re: Google's robots.txt handling Julius Kivimäki (Dec 14)
Re: New Ajax SQL Injection Exploit? Julius Kivimäki (Dec 02)
Re: Multiple vulnerabilities in RocketTheme themes for WordPress Julius Kivimäki (Dec 30)

kai

Re: MySQL (Linux) Database Privilege Elevation Zeroday Exploit kai (Dec 05)
Re: DPI evasion kai (Dec 17)
DPI evasion kai (Dec 17)

kaveh ghaemmaghami

Opera Web Browser 12.11 WriteAV Vulnerability kaveh ghaemmaghami (Dec 03)
VLC media player 2.0.4 BOF POC kaveh ghaemmaghami (Dec 07)

Kim Henriksen

Re: Nokia phone forcing traffic through proxy Kim Henriksen (Dec 13)

king cope

Re: MySQL 5.1/5.5 WiNDOWS REMOTE R00T (mysqljackpot) king cope (Dec 03)
MySQL 5.1/5.5 WiNDOWS REMOTE R00T (mysqljackpot) king cope (Dec 01)
MySQL Local/Remote FAST Account Password Cracking king cope (Dec 03)
Re: MySQL 5.1/5.5 WiNDOWS REMOTE R00T (mysqljackpot) king cope (Dec 02)
MySQL (Linux) Heap Based Overrun PoC Zeroday king cope (Dec 01)
Re: MySQL Windows Remote System Level Exploit (Stuxnet technique) 0day king cope (Dec 01)
IBM System Director Remote System Level Exploit (CVE-2009-0880 extended zeroday) king cope (Dec 01)
Re: MySQL (Linux) Heap Based Overrun PoC Zeroday king cope (Dec 02)
Re: [oss-security] Re: MySQL (Linux) Stack based buffer overrun PoC Zeroday king cope (Dec 03)
FreeSSHD Remote Authentication Bypass Zeroday Exploit king cope (Dec 01)
SSH.com Communications SSH Tectia Authentication Bypass Remote Zeroday Exploit king cope (Dec 01)
Re: [oss-security] Re: MySQL (Linux) Stack based buffer overrun PoC Zeroday king cope (Dec 03)
FreeFTPD Remote Authentication Bypass Zeroday Exploit (Stuxnet technique) king cope (Dec 01)
MySQL (Linux) Database Privilege Elevation Zeroday Exploit king cope (Dec 01)
Telnet Encrypt Key ID Priv8 Scanner king cope (Dec 02)
MySQL Windows Remote System Level Exploit (Stuxnet technique) 0day king cope (Dec 01)
MySQL Remote Preauth User Enumeration Zeroday king cope (Dec 01)
MySQL Denial of Service Zeroday PoC king cope (Dec 01)
Re: [oss-security] Re: MySQL (Linux) Stack based buffer overrun PoC Zeroday king cope (Dec 03)
MySQL (Linux) Stack based buffer overrun PoC Zeroday king cope (Dec 01)

Kotas, Kevin J

CA20121205-01: Security Notice for CA XCOM Data Transport on Unix and Linux Kotas, Kevin J (Dec 05)

Krzysztof Kotowicz

Re: Paypal Core Bug Bounty #3 - Persistent Web Vulnerability Krzysztof Kotowicz (Dec 20)

Kurt Seifried

Re: MySQL Denial of Service Zeroday PoC Kurt Seifried (Dec 02)
Re: Wordpress Remote Exploit - W3 Total Cache Kurt Seifried (Dec 28)
Re: MySQL (Linux) Heap Based Overrun PoC Zeroday Kurt Seifried (Dec 02)
Re: MySQL Remote Preauth User Enumeration Zeroday Kurt Seifried (Dec 02)
Re: MySQL (Linux) Heap Based Overrun PoC Zeroday Kurt Seifried (Dec 02)
Re: MySQL (Linux) Database Privilege Elevation Zeroday Exploit Kurt Seifried (Dec 02)
Re: MySQL 5.1/5.5 WiNDOWS REMOTE R00T (mysqljackpot) Kurt Seifried (Dec 02)
Re: MySQL (Linux) Stack based buffer overrun PoC Zeroday Kurt Seifried (Dec 02)

larry Cashdollar

Centrify Deployment Manager v2.1.0.283 local root larry Cashdollar (Dec 07)
Re: Centrify Deployment Manager v2.1.0.283 /tmp insecure file handling larry Cashdollar (Dec 04)
Centrify Deployment Manager v2.1.0.283 /tmp insecure file handling larry Cashdollar (Dec 03)

Larry W. Cashdollar

Re: Local root exploit for Centrify Deployment Manager < v2.1.0.283 local root Larry W. Cashdollar (Dec 18)
Local root exploit for Centrify Deployment Manager < v2.1.0.283 local root Larry W. Cashdollar (Dec 18)

laurent gaffie

Re: [Security-news] SA-CORE-2012-004 - Drupal core - Multiple vulnerabilities laurent gaffie (Dec 19)

Lehman, Jim

Re: Google's robots.txt handling Lehman, Jim (Dec 13)
Re: Google's robots.txt handling Lehman, Jim (Dec 12)

Levent Kayan

nullsec-net-crypter.pdf Levent Kayan (Dec 13)

Luis Santana

Re: Selling Exploit on Deep Web Luis Santana (Dec 22)
Re: Selling Exploit on Deep Web Luis Santana (Dec 21)
Re: Selling Exploit on Deep Web Luis Santana (Dec 21)
Re: Selling Exploit on Deep Web Luis Santana (Dec 21)

Major Malfunction

DC4420 - London DEFCON - Christmas 2012 meet! Tuesday 11th December 2012 Major Malfunction (Dec 04)

Mario Vilas

Re: Google's robots.txt handling Mario Vilas (Dec 13)
Re: Google's robot.txt handling Mario Vilas (Dec 11)

Mark Stanislav

'portable-phpMyAdmin (WordPress Plugin)' Authentication Bypass (CVE-2012-5469) Mark Stanislav (Dec 13)

Mark Thomas

CVE-2012-4534 Apache Tomcat denial of service Mark Thomas (Dec 04)
CVE-2012-4431 Apache Tomcat Bypass of CSRF prevention filter Mark Thomas (Dec 04)
CVE-2012-3546 Apache Tomcat Bypass of security constraints Mark Thomas (Dec 04)

Michael Rash

Re: "Topera" The new IPv6 TCP port scanner invisible to SNORT... Michael Rash (Dec 21)

Michael Wood

Re: MySQL (Linux) Database Privilege Elevation Zeroday Exploit Michael Wood (Dec 01)

Moritz Muehlenhoff

[SECURITY] [DSA 2590-1] wireshark security update Moritz Muehlenhoff (Dec 26)
[SECURITY] [DSA 2593-1] moin security update Moritz Muehlenhoff (Dec 29)
[SECURITY] [DSA 2580-1] libxml security update Moritz Muehlenhoff (Dec 02)
[SECURITY] [DSA 2595-1] ghostscript security update Moritz Muehlenhoff (Dec 30)
[SECURITY] [DSA 2592-1] elinks security update Moritz Muehlenhoff (Dec 27)
[SECURITY] [DSA 2591-1] mahara security update Moritz Muehlenhoff (Dec 27)
[SECURITY] [DSA 2594-1] virtualbox-ose security update Moritz Muehlenhoff (Dec 30)

MustLive

Re: XSS vulnerability in web applications with swfupload: AionWeb, Magento, Liferay Portal, SurgeMail, symfony MustLive (Dec 07)
BF, CSRF, AoF and IAA vulnerabilities in MODx Revolution MustLive (Dec 27)
XSS and CS vulnerabilities in BuddyPress for WordPress MustLive (Dec 20)
Persistent XSS vulnerability in WP-UserOnline MustLive (Dec 24)
Multiple vulnerabilities in multiple themes for WordPress MustLive (Dec 22)
Cross-Site Scripting in Liberated Syndication MustLive (Dec 01)
TinyBrowser Upload Shell Vulnerability MustLive (Dec 14)
DoS vulnerabilities in Internet Explorer 7 (access violation) MustLive (Dec 05)
Multiple vulnerabilities in RokBox for WordPress MustLive (Dec 15)
Multiple vulnerabilities in RocketTheme themes for WordPress MustLive (Dec 29)

Nelson Brito

[TOOL RELEASE] SQL Fingerprint powered by ENG++ Technology [Version 1.33.23-170308] Nelson Brito (Dec 24)

Nick FitzGerald

Re: Question regarding script vulnerabilities Nick FitzGerald (Dec 20)

Patrick Webster

Re: Google's robots.txt handling Patrick Webster (Dec 12)

Paul van Bavel

MySQL Local/Remote FAST Account Password Cracking Paul van Bavel (Dec 05)

Peter Lustlos

Any.Do sends passwords in plaintext Peter Lustlos (Dec 10)

Peter Thoeny

Security Alert CVE-2012-6329: TWiki MAKETEXT Variable Allows Arbitrary Shell Command Execution Peter Thoeny (Dec 14)

Peter WS

Exploit for NVidia nvvsvc.exe Peter WS (Dec 26)

PHD

Hacking Competition PHDAYS CTF Quals 2012 Starts On December 15 PHD (Dec 13)

Philip Whitehouse

Re: Nokia phone forcing traffic through proxy Philip Whitehouse (Dec 08)
Re: Google's robots.txt handling Philip Whitehouse (Dec 13)
Re: Google's robots.txt handling Philip Whitehouse (Dec 11)
Re: Question regarding script vulnerabilities Philip Whitehouse (Dec 20)
Re: Google's robots.txt handling Philip Whitehouse (Dec 11)
Re: Question regarding script vulnerabilities Philip Whitehouse (Dec 20)

Rafa Sanchez

"Topera" The new IPv6 TCP port scanner invisible to SNORT... Rafa Sanchez (Dec 20)

Rajesh Malepati

Re: MySQL 5.1/5.5 WiNDOWS REMOTE R00T (mysqljackpot) Rajesh Malepati (Dec 08)

Rand McRanderson

Question regarding script vulnerabilities Rand McRanderson (Dec 20)

researching vulnerabilties

Command Execution Vulnerability on Paypal researching vulnerabilties (Dec 12)

Roberto Suggi Liverani

Multiple critical vulnerabilities in Maxthon and Avant browsers Roberto Suggi Liverani (Dec 06)

Samuel.Lavitt

Re: SSH.com Communications SSH Tectia Authentication Bypass Remote Zeroday Exploit (king cope) Samuel.Lavitt (Dec 04)

Scott

Re: MySQL (Linux) Database Privilege Elevation Zeroday Exploit Scott (Dec 05)

Scott Ferguson

Re: Google's robots.txt handling Scott Ferguson (Dec 11)
Re: Google's robot.txt handling Scott Ferguson (Dec 11)

Sean Jenkins

Re: CubeCart 5.0.7 and lower versions | Insecure Backup File Handling Sean Jenkins (Dec 30)

SEC Consult Vulnerability Lab

SEC Consult SA-20121220-0 :: Multiple vulnerabilities in ELBA Electronic Banking application SEC Consult Vulnerability Lab (Dec 20)
SEC Consult SA-20121203-0 :: F5 FirePass SSL VPN Unauthenticated local file inclusion SEC Consult Vulnerability Lab (Dec 03)

security

[ MDVSA-2012:181 ] python-django security (Dec 19)
[ MDVSA-2012:179 ] cups security (Dec 12)
[ MDVSA-2012:180 ] perl-CGI security (Dec 17)
[ MDVSA-2012:184 ] libtiff security (Dec 27)
[ MDVSA-2012:182 ] apache-mod_security security (Dec 23)
[ MDVSA-2012:178 ] mysql security (Dec 09)
[ MDVSA-2012:183 ] apache-mod_security security (Dec 23)
[ MDVSA-2012:176 ] libxml2 security (Dec 02)
[ MDVSA-2012:177 ] bind security (Dec 05)

Security Advent Calendar

Security Advent Calendar Security Advent Calendar (Dec 05)

security curmudgeon

Re: [OSVDB Mods] Fwd: Internet Explorer Stack Exhaustion -> Flag [MSIE9] (fwd) security curmudgeon (Dec 21)

security-news

[Security-news] SA-CONTRIB-2012-174 - Context - Information Disclosure security-news (Dec 19)
[Security-news] SA-CORE-2012-004 - Drupal core - Multiple vulnerabilities security-news (Dec 19)
[Security-news] SA-CONTRIB-2012-173 - Nodewords: Information disclosure security-news (Dec 05)

Sergei Golubchik

Re: MySQL 5.1/5.5 WiNDOWS REMOTE R00T (mysqljackpot) Sergei Golubchik (Dec 02)
Re: [oss-security] Re: MySQL (Linux) Stack based buffer overrun PoC Zeroday Sergei Golubchik (Dec 03)
Re: [oss-security] Re: MySQL (Linux) Stack based buffer overrun PoC Zeroday Sergei Golubchik (Dec 02)
Re: [oss-security] Re: MySQL (Linux) Stack based buffer overrun PoC Zeroday Sergei Golubchik (Dec 03)

Seth Arnold

Re: EasyPHP 12.1 - Remote code execution of any php/js on local PC Seth Arnold (Dec 03)

Stefan Edwards

Re: Google's robots.txt handling Stefan Edwards (Dec 11)

Sullo

RVAsec 2013 CFP Now Open Sullo (Dec 12)

Swair Mehta

Re: Google's robots.txt handling Swair Mehta (Dec 11)

temp66 () gmail com

Nagios Core 3.4.3: Stack based buffer overflow in web interface temp66 () gmail com (Dec 10)

Thierry Zoller

Re: [Security-news] SA-CORE-2012-004 - Drupal core - Multiple vulnerabilities Thierry Zoller (Dec 19)

Thomas Behrend

Re: Google's robot.txt handling Thomas Behrend (Dec 11)

tig3rhack

Re: Selling Exploit on Deep Web tig3rhack (Dec 22)
Selling Exploit on Deep Web tig3rhack (Dec 10)
Re: Selling Exploit on Deep Web tig3rhack (Dec 22)

Tim Brown

Low severity flaw in RIM BlackBerry PlayBook OS browser Tim Brown (Dec 02)

Troy Korjuslommi

Re: Buffalo Technology LinkStation Information Disclosure And Privilege Escalation Troy Korjuslommi (Dec 01)

Ulises2k

Re: MySQL Local/Remote FAST Account Password Cracking Ulises2k (Dec 05)

Ulisses Montenegro

Re: Google's robots.txt handling Ulisses Montenegro (Dec 11)

VMware Security Response Center

VMSA-2012-0018 VMware security updates for vCSA and ESXi VMware Security Response Center (Dec 20)

Vulnerability Lab

Paypal Bug Bounty #34 - Redirect Web Vulnerability Vulnerability Lab (Dec 14)
FortiGate FortiDB 2kB 1kC & 400B - Cross Site Vulnerability Vulnerability Lab (Dec 02)
SonicWall SonicOS 5.8.1.8 WAF - POST Inject Vulnerability Vulnerability Lab (Dec 20)
SonicWall Email Security Appliance v7.4.1.7429 - Persistent Web Vulnerability Vulnerability Lab (Dec 28)
Log Analyzer 3.6.0 - Cross Site Scripting Vulnerability Vulnerability Lab (Dec 28)
Paypal Core Bug Bounty #3 - Persistent Web Vulnerability Vulnerability Lab (Dec 14)
Re: Apple WGT Dictionnaire 1.3 - Script Code Inject Vulnerability Vulnerability Lab (Dec 03)
Re: Apple WGT Dictionnaire 1.3 - Script Code Inject Vulnerability Vulnerability Lab (Dec 02)
Re: Paypal Core Bug Bounty #3 - Persistent Web Vulnerability Vulnerability Lab (Dec 21)
FortiWeb 4kC, 3kC, 1kC & VA - Cross Site Vulnerabilities Vulnerability Lab (Dec 02)

Williams, James K

CA20121220-01: Security Notice for CA IdentityMinder Williams, James K (Dec 20)

winsoc

Re: Multiple vulnerabilities in RocketTheme themes for WordPress winsoc (Dec 30)

YGN Ethical Hacker Group

CubeCart 5.0.7 and lower versions | Insecure Backup File Handling YGN Ethical Hacker Group (Dec 28)
CubeCart 4.4.6 and lower | Open URL Redirection Vulnerability YGN Ethical Hacker Group (Dec 24)
Open-Realty CMS 3.x | Cross Site Request Forgery (CSRF) Vulnerability YGN Ethical Hacker Group (Dec 25)
CubeCart 4.x/5.x | Setup Re-installation Privilege Escalation Vulnerability YGN Ethical Hacker Group (Dec 24)
CubeCart 3.0.20 (3.0.x) and lower | Multiple SQL Injection Vulnerabilities YGN Ethical Hacker Group (Dec 23)
CubeCart 3.0.20 (3.0.x) and lower | Arbitrary File Upload YGN Ethical Hacker Group (Dec 22)
CubeCart 4.4.6 and lower | Multiple Cross Site Scripting Vulnerabilities YGN Ethical Hacker Group (Dec 24)
CubeCart 3.0.20 (3.0.x) and lower | Multiple Cross Site Scripting Vulnerabilities YGN Ethical Hacker Group (Dec 22)
CubeCart 4.4.6 and lower | Multiple SQL Injection Vulnerabilities YGN Ethical Hacker Group (Dec 24)
CubeCart 4.4.6 and lower | Cross Site Request Forgery (CSRF) Vulnerability YGN Ethical Hacker Group (Dec 24)
Open-Realty CMS 3.x | Persistent Cross Site Scripting (XSS) Vulnerability YGN Ethical Hacker Group (Dec 25)
CubeCart 5.0.7 and lower | Open URL Redirection Vulnerability YGN Ethical Hacker Group (Dec 24)
CubeCart 4.4.6 and lower | Local File Inclusion Vulnerability YGN Ethical Hacker Group (Dec 24)

Ying Ruang

Re: "Topera" The new IPv6 TCP port scanner invisible to SNORT... Ying Ruang (Dec 20)

Yuhong Bao

Re: Microsoft Windows Help program (WinHlp32.exe) memory corruption Yuhong Bao (Dec 16)

Yves-Alexis Perez

[SECURITY] [DSA 2577-1] libssh security update Yves-Alexis Perez (Dec 02)
[SECURITY] [DSA 2583-1] iceweasel security update Yves-Alexis Perez (Dec 08)
[SECURITY] [DSA 2582-1] xen security update Yves-Alexis Perez (Dec 07)
[SECURITY] [DSA 2584-1] iceape security update Yves-Alexis Perez (Dec 08)
[SECURITY] [DSA 2581-1] mysql-5.1 security update Yves-Alexis Perez (Dec 04)
Re: [oss-security] Re: MySQL (Linux) Stack based buffer overrun PoC Zeroday Yves-Alexis Perez (Dec 03)

ZDI Disclosures

ZDI-12-202 : Oracle Outside In WordPerfect File Processing Remote Code Execution Vulnerability ZDI Disclosures (Dec 21)
ZDI-12-193 : Microsoft Internet Explorer insertAdjacentText Remote Code Execution Vulnerability ZDI Disclosures (Dec 21)
ZDI-12-188 : Microsoft Internet Explorer OnRowsInserted Event Remote Code Execution Vulnerability ZDI Disclosures (Dec 21)
ZDI-12-198 : Microsoft Internet Explorer CMarkup outerText Remote Code Execution Vulnerability ZDI Disclosures (Dec 21)
ZDI-12-197 : Oracle Java java.beans.Statement Remote Code Execution Vulnerability ZDI Disclosures (Dec 21)
ZDI-12-189 : Oracle Java WebStart Changing System Properties Remote Code Execution Vulnerability ZDI Disclosures (Dec 21)
ZDI-12-196 : Novell Groupwise GWIA ber_get_stringa Remote Code Execution Vulnerability ZDI Disclosures (Dec 21)
ZDI-12-203 : Honeywell HMIWeb Browser ActiveX Control RequestDSPLoad Remote Code Execution Vulnerability ZDI Disclosures (Dec 21)
ZDI-12-195 : RealNetworks RealPlayer ATRAC Sample Decoding Remote Code Execution Vulnerability ZDI Disclosures (Dec 21)
ZDI-12-192 : Microsoft Internet Explorer insertRow Remote Code Execution Vulnerability ZDI Disclosures (Dec 21)
ZDI-12-200 : Microsoft Internet Explorer 9 CTreeNode Remote Code Execution Vulnerability ZDI Disclosures (Dec 21)
ZDI-12-190 : Microsoft Internet Explorer Title Element Change Remote Code Execution Vulnerability ZDI Disclosures (Dec 21)
ZDI-12-201 : Microsoft Office Word PAPX Section Remote Code Execution Vulnerability ZDI Disclosures (Dec 21)
ZDI-12-194 : Microsoft Internet Explorer OnBeforeDeactivate Event Remote Code Execution Vulnerability ZDI Disclosures (Dec 21)
ZDI-12-191 : Webkit HTMLMedia Element beforeLoad Remote Code Execution Vulnerability ZDI Disclosures (Dec 21)

מתן אזוגי

=| Security Advisory - TP-LINK TL-WR841N XSS (Cross Site Scripting) |= --update מתן אזוגי (Dec 07)