Full Disclosure: by author

277 messages starting Oct 21 12 and ending Oct 21 12
Date index | Thread index | Author index


アドリアンヘンドリック

Re: vOlk Botnet Framework v4.0 - Multiple Web Vulnerabilities アドリアンヘンドリック (Oct 21)

Abhijeet Patil

Last reminder for ClubHack 2012 : Call for Papers Abhijeet Patil (Oct 10)
Reminder: ClubHack2012 Call for Papers Closing Soon Abhijeet Patil (Oct 01)

adam

Re: Microsoft Windows Help program (WinHlp32.exe) memory corruption adam (Oct 27)

Adam Laurie

ANNOUNCE: RFIDIOt v1.0d released and code migration Adam Laurie (Oct 03)

advisories

Cybsec Advisory#2012-1029 Multiple Persistent XSS in Endpoint Protector]] advisories (Oct 30)

Aftermath

Your account could be at risk of state-sponsored attacks Aftermath (Oct 05)
Re: Your account could be at risk of state-sponsored attacks Aftermath (Oct 06)

Alexander Georgiev

Re: Is it OK to hold credit card numbers in cookies? Santander? Alexander Georgiev (Oct 16)

alien DC4420

DC4420 - London DEFCON - October meet - tomorrow, Tuesday 23rd October. alien DC4420 (Oct 22)

Andrea Fabrizi

Visual Tools DVR multiple vulnerabilities Andrea Fabrizi (Oct 15)

Antony widmal

Re: Microsoft Paint 5.1 memory corruption Antony widmal (Oct 29)
Re: Microsoft Office Excel 2010 memory corruption Antony widmal (Oct 29)
Re: Microsoft Paint 5.1 memory corruption Antony widmal (Oct 29)
Re: RealPlayer 15.0.6.14(.3g2) WriteAV Vulnerability Antony widmal (Oct 30)

Are You Likeme Now

Grandstream GXP1405 Executive IP Phone Persistent XSS Are You Likeme Now (Oct 24)

auto62098873

Is it OK to hold credit card numbers in cookies? Santander? auto62098873 (Oct 15)

Benji

Re: Cookie stealing and XSS vulnerable in Zenphoto version 1.4.3.2 Benji (Oct 02)
Re: Microsoft Office Excel 2010 memory corruption Benji (Oct 29)
Re: Paypal BugBounty #9 - Persistent Web Vulnerabilities Benji (Oct 02)
Re: Microsoft Windows Help program (WinHlp32.exe) memory corruption Benji (Oct 27)
Re: vOlk Botnet Framework v4.0 - Multiple Web Vulnerabilities Benji (Oct 21)

boardnerd

Re: Google Numbers Search boardnerd (Oct 24)

Carlo Di Dato

Aladdin Knowledge System Ltd. PrivAgent ActiveX Control 2.0 Multiple Remote Vulnerabilities Carlo Di Dato (Oct 26)

Christian Rost

Re: Is_it_OK_to_hold_credit_card_numbers_ in_cookies?_Santander? Christian Rost (Oct 16)

Christian Sciberras

Re: Is it OK to hold credit card numbers in cookies? Santander? Christian Sciberras (Oct 16)

Cisco Systems Product Security Incident Response Team

Cisco Security Advisory: Multiple Vulnerabilities in Cisco Firewall Services Module Cisco Systems Product Security Incident Response Team (Oct 10)
Cisco Security Advisory: Cisco Prime Data Center Network Manager Remote Command Execution Vulnerability Cisco Systems Product Security Incident Response Team (Oct 31)
Cisco Security Advisory: Multiple Vulnerabilities in Cisco Unified MeetingPlace Web Conferencing Cisco Systems Product Security Incident Response Team (Oct 31)
Cisco Security Advisory: Multiple Vulnerabilities in the Cisco WebEx Recording Format Player Cisco Systems Product Security Incident Response Team (Oct 10)
Cisco Security Advisory: Multiple Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances and Cisco Catalyst 6500 Series ASA Services Module Cisco Systems Product Security Incident Response Team (Oct 10)

Collin Mulliner

Call for Papers: DIMVA 2013 Collin Mulliner (Oct 29)

Context IS - Disclosure

Context IS Advisory - Citrix XenServer Hypervisor Privilege Escalation Context IS - Disclosure (Oct 30)

Core Security Advisories Team

[CORE-2012-0613] - Cisco WebEx .wrf Memory Corruption Vulnerability Core Security Advisories Team (Oct 11)

CYBSEC Labs

Cybsec Advisory#2012-1029 Multiple Persistent XSS in Endpoint Protector]]]]]] CYBSEC Labs (Oct 30)

Daniel Sichel

stealing ssh keys Daniel Sichel (Oct 23)

debug

favicon debug (Oct 19)

DefenseCode

JSON-RPC Cross-Site Request Forgery little exploitation trick DefenseCode (Oct 08)

Dex

Re: [Full-disclosure] [Security-news] SA-CORE-2012-003 - Drupal core - Arbitrary PHP code execution and Information disclosure Dex (Oct 18)

Florian Weimer

[SECURITY] [DSA 2565-1] iceweasel security update Florian Weimer (Oct 23)
[SECURITY] [DSA 2560-1] bind9 security update Florian Weimer (Oct 20)
[SECURITY] [DSA 2568-1] rtfm security update Florian Weimer (Oct 26)
[SECURITY] [DSA 2569-1] icedove security update Florian Weimer (Oct 29)
[SECURITY] [DSA 2567-1] request-tracker3.8 security update Florian Weimer (Oct 26)

Gage Bystrom

Re: Multiple 0-days in Dark Comet RAT Gage Bystrom (Oct 11)

Gary Driggs

Re: F5 FirePass SSL VPN 4xxx Series | Arbitrary URL Redirection Gary Driggs (Oct 21)

Georgi Guninski

[OT] How much a million facebook passwords would cost? Georgi Guninski (Oct 31)

gold flake

Re: stealing ssh keys gold flake (Oct 29)

Gynvael Coldwind

Re: Microsoft Windows Help program (WinHlp32.exe) memory corruption Gynvael Coldwind (Oct 27)

halfdog

binfmt_script kernel stack data disclosure during exec halfdog (Oct 10)

Henri Salo

Re: Cookie stealing and XSS vulnerable in Zenphoto version 1.4.3.2 Henri Salo (Oct 11)
Re: Cookie stealing and XSS vulnerable in Zenphoto version 1.4.3.2 Henri Salo (Oct 08)

Hertz, Jesse

Multiple 0-days in Dark Comet RAT Hertz, Jesse (Oct 09)
Re: Multiple 0-days in Dark Comet RAT Hertz, Jesse (Oct 17)
Re: Multiple 0-days in Dark Comet RAT Hertz, Jesse (Oct 14)

HTTPCS

[HTTPCS] Handshakes Professional 'frm_id' Remote SQL Injection Vulnerability HTTPCS (Oct 02)
[HTTPCS] 52 Vulnerabilities in Dolibarr HTTPCS (Oct 19)

Ivaylo Hubanov

Re: stealing ssh keys Ivaylo Hubanov (Oct 26)

Jacopo Cappellato

[ANNOUNCE] Apache OFBiz 10.04.03 released Jacopo Cappellato (Oct 22)

Jacqui Caren

Re: stealing ssh keys Jacqui Caren (Oct 24)

Janek Vind

[waraxe-2012-SA#092] - Multiple Vulnerabilities in Wordpress Slideshow Plugin Janek Vind (Oct 17)
[waraxe-2012-SA#093] - Multiple Vulnerabilities in Wordpress Social Discussions Plugin Janek Vind (Oct 17)
[waraxe-2012-SA#091] - Multiple Vulnerabilities in phpMyBitTorrent 2.04 Janek Vind (Oct 03)
[waraxe-2012-SA#094] - Multiple Vulnerabilities in Wordpress GRAND Flash Album Gallery Plugin Janek Vind (Oct 26)
[waraxe-2012-SA#095] - Multiple Vulnerabilities in Wordpress FoxyPress Plugin Janek Vind (Oct 30)

Jeffrey Walton

Re: stealing ssh keys Jeffrey Walton (Oct 26)
Re: Microsoft Office Excel 2010 memory corruption Jeffrey Walton (Oct 29)
Re: stealing ssh keys Jeffrey Walton (Oct 29)
Re: Microsoft Office Excel 2010 memory corruption Jeffrey Walton (Oct 29)
Re: SEC Consult Vulnerability Lab Study - "Application Security of Core Banking Systems - A first reality check" Jeffrey Walton (Oct 24)
Before We Knew It Jeffrey Walton (Oct 18)

John Cartwright

List Charter John Cartwright (Oct 10)

Joseph Sheridan

Realplayer Watchfolders Long Filepath Overflow Joseph Sheridan (Oct 26)
XnView JLS File Decompression Heap Overflow Joseph Sheridan (Oct 04)
Layton Helpbox 4.4.0 Multiple Security Issues Joseph Sheridan (Oct 26)

Julius Kivimäki

Re: Multiple 0-days in Dark Comet RAT Julius Kivimäki (Oct 11)
Re: Microsoft Office Excel 2010 memory corruption Julius Kivimäki (Oct 29)
Re: Microsoft Office Excel 2010 memory corruption Julius Kivimäki (Oct 29)

kaveh ghaemmaghami

Re: Microsoft Paint 5.1 memory corruption kaveh ghaemmaghami (Oct 29)
Re: Microsoft Office Excel 2010 memory corruption kaveh ghaemmaghami (Oct 29)
Microsoft Office Picture Manager 2010 memory corruption kaveh ghaemmaghami (Oct 24)
Microsoft Office Excel 2010 memory corruption kaveh ghaemmaghami (Oct 28)
Re: Microsoft Windows Help program (WinHlp32.exe) memory corruption kaveh ghaemmaghami (Oct 27)
Re: Multiple 0-days in Dark Comet RAT kaveh ghaemmaghami (Oct 18)
Re: Microsoft Office Excel 2010 memory corruption kaveh ghaemmaghami (Oct 29)
Re: RealPlayer 15.0.6.14(.3g2) WriteAV Vulnerability kaveh ghaemmaghami (Oct 30)
Re: Microsoft Paint 5.1 memory corruption kaveh ghaemmaghami (Oct 29)
Adobe reader 10.1.4 memory corruption kaveh ghaemmaghami (Oct 20)
Microsoft Office Publisher 2010 memory corruption kaveh ghaemmaghami (Oct 27)
Microsoft Office Word 2010 Stack Overflow kaveh ghaemmaghami (Oct 24)
RealPlayer suffers from Arbitrary Code Execution kaveh ghaemmaghami (Oct 18)
RealPlayer 15.0.6.14(.3g2) WriteAV Vulnerability kaveh ghaemmaghami (Oct 30)
Re: Microsoft Office Word 2010 Stack Overflow kaveh ghaemmaghami (Oct 27)
Re: Microsoft Windows Help program (WinHlp32.exe) memory corruption kaveh ghaemmaghami (Oct 27)
Re: Microsoft Office Excel 2010 memory corruption kaveh ghaemmaghami (Oct 28)
Re: Microsoft Paint 5.1 memory corruption kaveh ghaemmaghami (Oct 30)
Microsoft Paint 5.1 memory corruption kaveh ghaemmaghami (Oct 27)
Re: Microsoft Office Excel 2010 memory corruption kaveh ghaemmaghami (Oct 29)
Microsoft Windows Help program (WinHlp32.exe) memory corruption kaveh ghaemmaghami (Oct 27)
Re: Microsoft Office Excel 2010 memory corruption kaveh ghaemmaghami (Oct 29)
Re: Microsoft Office Word 2010 Stack Overflow kaveh ghaemmaghami (Oct 27)

Kelvin White

Re: Microsoft Office Excel 2010 memory corruption Kelvin White (Oct 30)

king cope

-== MySQL Brute Force Account Scanner ==- king cope (Oct 05)

klondike

Last minute CFP: FSCONS (Göteborg, Sweden) Security related topics track klondike (Oct 16)
Re: Is it OK to hold credit card numbers in cookies? Santander? klondike (Oct 15)

Kotas, Kevin J

CA20121018-01: Security Notice for CA ARCserve Backup Kotas, Kevin J (Oct 18)

Kurt Grutzmacher

HP/H3C and Huawei SNMP Weak Access to Critical Data Kurt Grutzmacher (Oct 23)

Levent Kayan

rubilyn-0.0.1.tar.gz - Mac OS X rootkit Levent Kayan (Oct 06)

Lists

FileBound - Privilege Escalation Vulnerability - Security Advisory - SOS-12-010 Lists (Oct 10)

Malte Müller

Re: Cookie stealing and XSS vulnerable in Zenphoto version 1.4.3.2 Malte Müller (Oct 10)

Marc Heuse

thc-ipv6 v2.0 Marc Heuse (Oct 10)

Mario Vilas

Re: Microsoft Office Word 2010 Stack Overflow Mario Vilas (Oct 24)
Re: Microsoft Windows Help program (WinHlp32.exe) memory corruption Mario Vilas (Oct 27)
Re: Full-Disclosure Digest, Vol 92, Issue 34 - 1. Microsoft Windows Help program (WinHlp32.exe) memory Mario Vilas (Oct 30)

Mark Maunder

Re: XSS and IAA vulnerabilities in Wordfence Security for WordPress Mark Maunder (Oct 21)

Marshall Whittaker

Google Numbers Search Marshall Whittaker (Oct 22)

Matan Azugi

[BUGTRAQ]Security Advisory - TP-LINK TL-WR841N LFI - [UPDATE] Matan Azugi (Oct 31)
=| Security Advisory - TP-LINK TL-WR841N LFI |= Matan Azugi (Oct 29)

Memory Vandal

Re: [OT] How much a million facebook passwords would cost? Memory Vandal (Oct 31)

Michael Simpson

Re: Microsoft Office Excel 2010 memory corruption Michael Simpson (Oct 30)
Re: Microsoft Office Excel 2010 memory corruption Michael Simpson (Oct 30)

Mikhail A. Utin

Re: Full-Disclosure Digest, Vol 92, Issue 34 - 1. Microsoft Windows Help program (WinHlp32.exe) memory Mikhail A. Utin (Oct 30)

Milan Berger

Re: favicon Milan Berger (Oct 19)

Moritz Muehlenhoff

[SECURITY] [DSA 2555-1] libxslt security update Moritz Muehlenhoff (Oct 05)
[SECURITY] [DSA 2561-1] tiff security update Moritz Muehlenhoff (Oct 21)

MustLive

Multiple vulnerabilities in Megapolis.Portal Manager MustLive (Oct 07)
Content Spoofing and Cross-Site Scripting vulnerabilities in Bitrix Site Manager MustLive (Oct 22)
Cross-Site Scripting vulnerability in CorePlayer MustLive (Oct 28)
Re: XSS and IAA vulnerabilities in Wordfence Security for WordPress MustLive (Oct 26)
XSS and IAA vulnerabilities in Wordfence Security for WordPress MustLive (Oct 19)
BF, XSS, CSRF and Redirector vulnerabilities in IBM Lotus Notes Traveler MustLive (Oct 01)

Nate Theis

Re: how to steal openssh private key Nate Theis (Oct 22)

Netsparker Advisories

XSS and SQL Injection Vulnerabilities in DotProject Netsparker Advisories (Oct 19)
XSS Vulnerabilities in bloofoxCMS Netsparker Advisories (Oct 31)
XSS Vulnerabilities in phpFreeChat Netsparker Advisories (Oct 02)
XSS Vulnerabilities in CMSMini Netsparker Advisories (Oct 19)
XSS Vulnerabilities in TaskFreak Netsparker Advisories (Oct 19)
XSS Vulnerabilities in ClipBucket Netsparker Advisories (Oct 19)

Nick Boyce

Re: Your account could be at risk of state-sponsored attacks Nick Boyce (Oct 05)

Nico Golde

[SECURITY] [DSA 2566-1] exim4 security update Nico Golde (Oct 26)
[SECURITY] [DSA 2557-1] hostapd security update Nico Golde (Oct 08)
[SECURITY] [DSA 2556-1] icedove security update Nico Golde (Oct 08)

nothacking

how to steal openssh private key nothacking (Oct 22)

nullcon

nullcon Goa 2013 Final Call For Papers/Events and First Round of Speakers nullcon (Oct 20)

Nursyafiq Mohamad

P1 WiMAX modems port 80 open with default login Nursyafiq Mohamad (Oct 14)

Oliver Goebel

[IMF 2013] 3rd Call for Papers: Deadline Extended Oliver Goebel (Oct 17)

Pascal Ernster

Re: Multiple 0-days in Dark Comet RAT Pascal Ernster (Oct 11)

paul . szabo

utempter allows fake host setting paul . szabo (Oct 06)

Peter Dawson

Re: Full-Disclosure Digest, Vol 92, Issue 34 - 1. Microsoft Windows Help program (WinHlp32.exe) memory Peter Dawson (Oct 30)
Re: Your account could be at risk of state-sponsored attacks Peter Dawson (Oct 05)

Peter Ferrie

Re: Microsoft Windows Help program (WinHlp32.exe) memory corruption Peter Ferrie (Oct 30)
Re: Microsoft Windows Help program (WinHlp32.exe) memory corruption Peter Ferrie (Oct 27)
Re: Microsoft Office Word 2010 Stack Overflow Peter Ferrie (Oct 27)
Re: Microsoft Paint 5.1 memory corruption Peter Ferrie (Oct 30)
Re: Microsoft Office Excel 2010 memory corruption Peter Ferrie (Oct 29)
Re: Microsoft Office Excel 2010 memory corruption Peter Ferrie (Oct 29)
Re: Microsoft Office Publisher 2010 memory corruption Peter Ferrie (Oct 28)

PHD

Positive Hack Days III — Call For Papers Has Started PHD (Oct 29)

Philip Whitehouse

Re: Multiple 0-days in Dark Comet RAT Philip Whitehouse (Oct 10)
Re: XSS and IAA vulnerabilities in Wordfence Security for WordPress Philip Whitehouse (Oct 21)

Piotr Chmylkowski

Novell Sentinel Log Manager <= 1.2.0.2 retention policy vulnerability Piotr Chmylkowski (Oct 03)

pr

RANDOM NUMBER SECURITY IN PYTHON pr (Oct 26)

QUAKER DOOMER

winAUTOPWN v3.2 Released QUAKER DOOMER (Oct 03)

Rainer Duffner

Re: Is it OK to hold credit card numbers in cookies? Santander? Rainer Duffner (Oct 15)

Raj Mathur (राज माथुर)

Re: stealing ssh keys Raj Mathur (राज माथुर) (Oct 24)
Re: stealing ssh keys Raj Mathur (राज माथुर) (Oct 26)

Raphael Geissert

[SECURITY] [DSA 2558-1] bacula security update Raphael Geissert (Oct 08)

ReVuln

Critical issues affecting Steam users ReVuln (Oct 16)

Richard Miles

Re: Microsoft Office Excel 2010 memory corruption Richard Miles (Oct 30)
Re: Microsoft Windows Help program (WinHlp32.exe) memory corruption Richard Miles (Oct 29)
Re: Microsoft Windows Help program (WinHlp32.exe) memory corruption Richard Miles (Oct 30)

Sai

Google Maps pseudonym disclosure vulnerability via Google Places reviews Sai (Oct 02)
Re: Google Maps pseudonym disclosure vulnerability via Google Places reviews Sai (Oct 21)

Scott Herbert

Re: Cookie stealing and XSS vulnerable in Zenphoto version 1.4.3.2 Scott Herbert (Oct 02)
Cookie stealing and XSS vulnerable in Zenphoto version 1.4.3.2 Scott Herbert (Oct 02)
Wordpress plugin abtest vulnerable to a directory traversal attack Scott Herbert (Oct 11)
Re: Cookie stealing and XSS vulnerable in Zenphoto version 1.4.3.2 Scott Herbert (Oct 08)

scriptjunkie

Re: Multiple 0-days in Dark Comet RAT scriptjunkie (Oct 18)

SEC Consult Vulnerability Lab

SEC Consult SA-20121017-0 :: ModSecurity multipart/invalid part ruleset bypass SEC Consult Vulnerability Lab (Oct 17)
SEC Consult SA-20121017-2 :: Multiple vulnerabilities in Oracle WebCenter Sites (former FatWire Content Server) SEC Consult Vulnerability Lab (Oct 17)
SEC Consult SA-20121017-1 :: Unirgy uStoreLocator SQL Injection - Magento extension SEC Consult Vulnerability Lab (Oct 17)
SEC Consult Vulnerability Lab Study - "Application Security of Core Banking Systems - A first reality check" SEC Consult Vulnerability Lab (Oct 24)

security

[ MDVSA-2012:162 ] bind security (Oct 10)
[ MDVSA-2012:152-1 ] bind security (Oct 02)
[ MDVSA-2012:163 ] firefox security (Oct 11)
[ MDVSA-2012:151-1 ] ghostscript security (Oct 05)
[ MDVSA-2012:166 ] bacula security (Oct 12)
[ MDVSA-2012:161 ] html2ps security (Oct 06)
[ MDVSA-2012:164 ] libxslt security (Oct 11)
[ MDVSA-2012:156 ] inn security (Oct 02)
[ MDVSA-2012:168 ] hostapd security (Oct 22)
[ MDVSA-2012:159 ] freeradius security (Oct 03)
[ MDVSA-2012:167 ] firefox security (Oct 13)
[ MDVSA-2012:155-1 ] xinetd security (Oct 02)
[ MDVSA-2012:153-1 ] dhcp security (Oct 02)
[ MDVSA-2012:158 ] gc security (Oct 03)
[ MDVSA-2012:165 ] graphicsmagick security (Oct 12)
[ MDVSA-2012:157 ] openjpeg security (Oct 03)
[ MDVSA-2012:160 ] imagemagick security (Oct 05)
[ MDVSA-2012:154-1 ] apache security (Oct 01)
[ MDVSA-2012:150-1 ] java-1.6.0-openjdk security (Oct 05)

Security Explorations

[SE-2012-01] Challenging Oracle (in a different way) Security Explorations (Oct 22)

security-news

[Security-news] SA-CONTRIB-2012-154 - Basic webmail - Multiple vulnerabilities security-news (Oct 10)
[Security-news] SA-CONTRIB-2012-149 - Hostip - Cross Site Scripting (XSS) security-news (Oct 03)
[Security-news] SA-CONTRIB-2012-159 - Password policy - Information leakage of hashed passwords security-news (Oct 31)
[Security-news] SA-CONTRIB-2012-156 - Search API - Cross Site Request Forgery (CSRF) security-news (Oct 17)
[Security-news] SA-CONTRIB-2012-157 - Time Spent - Multiple Vulnerabilities - (unsupported) security-news (Oct 24)
[Security-news] SA-CONTRIB-2012-152 - Feeds - Access bypass security-news (Oct 10)
[Security-news] SA-CORE-2012-003 - Drupal core - Arbitrary PHP code execution and Information disclosure security-news (Oct 17)
[Security-news] SA-CONTRIB-2012-158 - MailChimp - Cross Site Scripting (XSS) security-news (Oct 24)
[Security-news] SA-CONTRIB-2012-151 - Commerce Extra Panes - Cross Site Request Forgery security-news (Oct 03)
[Security-news] SA-CONTRIB-2012-150 - Twitter Pull - Cross Site Scripting (XSS) security-news (Oct 03)
[Security-news] SA-CONTRIB-2012-153 - Mandrill - Information Disclosure security-news (Oct 10)
[Security-news] SA-CONTRIB-2012-155 - ShareThis - Cross Site Scripting (XSS) security-news (Oct 10)

Shatter

Team SHATTER Security Advisory: Multiple SQL Injection in Oracle Enterprise Manager (SQL Tunning Sets components) Shatter (Oct 04)
Team SHATTER Security Advisory: XML file disclosure vulnerability via GET_WRAP_CFG_C and GET_WRAP_CFG_C2 Shatter (Oct 04)
Team SHATTER Security Advisory: Java Operating System command execution Shatter (Oct 04)
Team SHATTER Security Advisory: Elevated roles through DBCC Shatter (Oct 04)
Team SHATTER Security Advisory: JAR file overwrite vulnerability via SQLJ.DB2_INSTALL_JAR system stored Shatter (Oct 04)

sihame

Hack In Paris CFP 2013 sihame (Oct 30)

Stefan Kanthak

Vulnerable MSVC++ 2008 runtime libraries distributed with and installed by Ogg DirectShow filters Stefan Kanthak (Oct 04)

sxpert

Credentials leaks in Legrand-003598 / Bticino-F454 SCS Web Gateway sxpert (Oct 17)

Thijs Kinkhorst

[SECURITY] [DSA 2563-1] viewvc security update Thijs Kinkhorst (Oct 24)
[SECURITY] [DSA 2564-1] tinyproxy security update Thijs Kinkhorst (Oct 24)
[SECURITY] [DSA 2562-1] cups-pk-helper security update Thijs Kinkhorst (Oct 24)

Thomas Richards

Gramophone v0.01b1 'rs' XSS Thomas Richards (Oct 26)
Allscripts Homecare Client Local Memory Corruption table_info.ff2 Thomas Richards (Oct 26)
Inventory 1.0 Multiple XSS Vulnerabilities Thomas Richards (Oct 26)
Inventory 1.0 Multiple SQL Vulnerabilities Thomas Richards (Oct 26)

Thor (Hammer of God)

Re: Microsoft Office Excel 2010 memory corruption Thor (Hammer of God) (Oct 29)
Re: stealing ssh keys Thor (Hammer of God) (Oct 26)
Re: Multiple 0-days in Dark Comet RAT Thor (Hammer of God) (Oct 10)
Re: stealing ssh keys Thor (Hammer of God) (Oct 24)

tig3rhack

PrezziPazzi.com vulnerable to XSS tig3rhack (Oct 02)

Tim Brown

Google Talk s2s SSL configuration Tim Brown (Oct 02)
Medium risk security flaws in Konqueror Tim Brown (Oct 31)
Medium severity flaw with Perl 5 Tim Brown (Oct 26)

Timo Warns

[PRE-SA-2012-07] hostapd: Missing EAP-TLS message length validation Timo Warns (Oct 08)

Troy Rose

Re: XSS and IAA vulnerabilities in Wordfence Security for WordPress Troy Rose (Oct 24)

Valdis . Kletnieks

Re: Multiple 0-days in Dark Comet RAT Valdis . Kletnieks (Oct 11)
Re: how to steal openssh private key Valdis . Kletnieks (Oct 26)
Re: Multiple 0-days in Dark Comet RAT Valdis . Kletnieks (Oct 15)
Re: Multiple 0-days in Dark Comet RAT Valdis . Kletnieks (Oct 18)

Vic Vandal

CarolinaCon-9 - March 2013 - Call for Presenters/Speakers/Papers/Demos Vic Vandal (Oct 01)

VMware Security Team

VMSA-2012-0014 VMware vCenter Operations, CapacityIQ, and Movie Decoder security updates VMware Security Team (Oct 04)

Vulnerability Lab

Paypal BugBounty #9 - Persistent Web Vulnerabilities [FULL] Vulnerability Lab (Oct 02)
NetCat CMS v5.0.1 - Multiple Web Vulnerabilities Vulnerability Lab (Oct 31)
vOlk Botnet Framework v4.0 - Multiple Web Vulnerabilities Vulnerability Lab (Oct 11)
Paypal BugBounty #9 - Persistent Web Vulnerabilities Vulnerability Lab (Oct 02)
Omnistar Document Manager v8.0 - Multiple Vulnerabilities Vulnerability Lab (Oct 11)
CMSQLITE v1.3.2 - Multiple Web Vulnerabiltiies Vulnerability Lab (Oct 19)
Switchvox Asterisk v5.1.2 - Multiple Web Vulnerabilities Vulnerability Lab (Oct 02)
GTA UTM Firewall GB 6.0.3 - Multiple Web Vulnerabilities Vulnerability Lab (Oct 02)
PG Dating Pro v1.0 CMS - Multiple Web Vulnerabilities Vulnerability Lab (Oct 31)
VaM Shop v1.69 - Multiple Web Vulnerabilities Vulnerability Lab (Oct 31)
Paypal BugBounty #5 - Persistent Web Vulnerability Vulnerability Lab (Oct 08)
Omnistar Mailer v7.2 - Multiple Web Vulnerabilities Vulnerability Lab (Oct 03)
Interspire Email Marketer v6.0.1 - Multiple Vulnerabilites Vulnerability Lab (Oct 08)
Paypal BugBounty #9 - Persistent Web Vulnerabilities [FULL DETAILS] Vulnerability Lab (Oct 03)
Switchvox Asterisk v5.1.2 - Multiple Web Vulnerabilities Vulnerability Lab (Oct 02)
Endpoint Protector v4.0.4.0 - Multiple Web Vulnerabilities Vulnerability Lab (Oct 08)
OPlayer v2.0.05 iOS - Multiple Web Vulnerabilities Vulnerability Lab (Oct 02)
GTA UTM Firewall GB 6.0.3 - Multiple Web Vulnerabilities Vulnerability Lab (Oct 08)

Walied Assar

Virtual PC 2007 BUG Walied Assar (Oct 31)

warning

LiveChatInc.com breached warning (Oct 26)

Williams, James K

CA20121001-01: Security Notice for CA License Williams, James K (Oct 01)

WooYun

IE8 xss filter breaked WooYun (Oct 29)

YGN Ethical Hacker Group

SilverStripe CMS 2.4.7 <= Persistent Cross Site Scripting Vulnerability YGN Ethical Hacker Group (Oct 15)
SilverStripe CMS 2.4.7 <= Arbitrary URL Redirection YGN Ethical Hacker Group (Oct 15)
F5 FirePass SSL VPN 4xxx Series | Arbitrary URL Redirection YGN Ethical Hacker Group (Oct 21)

Yuhong Bao

Re: Microsoft Office Publisher 2010 memory corruption Yuhong Bao (Oct 29)
Re: Microsoft Paint 5.1 memory corruption Yuhong Bao (Oct 29)
Re: Microsoft Office Excel 2010 memory corruption Yuhong Bao (Oct 29)
Re: Microsoft Office Excel 2010 memory corruption Yuhong Bao (Oct 29)
Re: Microsoft Office Excel 2010 memory corruption Yuhong Bao (Oct 29)

Yves-Alexis Perez

[SECURITY] [DSA 2559-1] libexif security update Yves-Alexis Perez (Oct 18)

ZeroDay.JP

Re: vOlk Botnet Framework v4.0 - Multiple Web Vulnerabilities ZeroDay.JP (Oct 21)