Full Disclosure: by date

51 messages starting Nov 01 17 and ending Nov 28 17
Date index | Thread index | Author index


Wednesday, 01 November

APPLE-SA-2017-10-31-1 iOS 11.1 Apple Product Security
APPLE-SA-2017-10-31-2 macOS High Sierra 10.13.1, Security Update 2017-001 Sierra, Security Update 2017-004 El Capitan Apple Product Security
APPLE-SA-2017-10-31-3 tvOS 11.1 Apple Product Security
APPLE-SA-2017-10-31-4 watchOS 4.1 Apple Product Security
APPLE-SA-2017-10-31-5 Safari 11.1 Apple Product Security
APPLE-SA-2017-10-31-6 iTunes 12.7.1 for Windows Apple Product Security
APPLE-SA-2017-10-31-7 iCloud for Windows 7.1 Apple Product Security
APPLE-SA-2017-10-31-8 Additional information for APPLE-SA-2017-09-25-1 macOS High Sierra 10.13 Apple Product Security
APPLE-SA-2017-10-31-9 Additional information for APPLE-SA-2017-09-19-1 iOS 11 Apple Product Security
APPLE-SA-2017-10-31-10 Additional information for APPLE-SA-2017-09-20-2 watchOS 4 Apple Product Security
APPLE-SA-2017-10-31-11 Additional information for APPLE-SA-2017-09-20-3 tvOS 11 Apple Product Security
APPLE-SA-2017-10-31-12 Additional information for APPLE-SA-2017-09-25-9 macOS Server 5.4 Apple Product Security
CVE-2017-15918: Sera 1.2 local root privesc and password disclosure Mark Wadham
SSD Advisory – GraphicsMagick Multiple Vulnerabilities Maor Shwartz
SSD Advisory – Cisco UCS Platform Emulator Remote Code Execution Maor Shwartz

Friday, 03 November

[RT-SA-2016-008] XML External Entity Expansion in Ladon Webservice RedTeam Pentesting GmbH
KL-001-2017-022 : Splunk Local Privilege Escalation KoreLogic Disclosures

Sunday, 05 November

CVE-2017-12969 Avaya OfficeScan IPO Remote ActiveX Buffer Overflow hyp3rlinx
CVE-2017-12969 Avaya OfficeScan IPO Remote ActiveX Buffer Overflow hyp3rlinx

Monday, 06 November

mkvalidator libebml2 mkclean multiple vulnerabilities qflb.wu

Wednesday, 08 November

AST-2017-009: Buffer overflow in pjproject header parsing can cause crash in Asterisk Asterisk Security Team
AST-2017-010: Buffer overflow in CDR's set user Asterisk Security Team
AST-2017-011: Memory leak in pjsip session resource Asterisk Security Team

Friday, 10 November

Re: An anti theft system allowing attackers to kill remotely the engine in electric scooters made by by INOKIM/MyWay, affected model - model Quick 3 pop shark

Monday, 13 November

[SE-2011-01] Some ideas regarding security of ST DVB chipsets Security Explorations

Tuesday, 14 November

SEC Consult SA-20171114-0 :: Authentication bypass, cross-site scripting & code execution in Siemens SICAM RTUs SM-2556 COM Modules SEC Consult Vulnerability Lab
Advisory X41-2017-006: Multiple Vulnerabilities in PSFTPd Windows FTP Server X41 D-Sec GmbH Advisories
Symantec Endpoint Protection (SEP) v12.1 Tamper-protection Bypass CVE-2017-6331 hyp3rlinx
Faraday v2.7: Collaborative Penetration Test & Vulnerability Management Platform Francisco Amato
Getting Local Admin by Abusing the Anti-Virus Quarantine #AVGater Florian Bogner
CA20171114-01: Security Notice for CA Identity Governance Kotas, Kevin J
Vivotek IP Cameras - Remote Stack Overflow bashis

Thursday, 16 November

SEC Consult SA-20171116-0 :: Broken access control & LINQ injection in Progress Sitefinity SEC Consult Vulnerability Lab

Tuesday, 21 November

SSD Advisory – DblTek Multiple Vulnerabilities Maor Shwartz
ESA-2017-152: RSA® Authentication Manager Software Stored Cross-Site Scripting Vulnerability EMC Product Security Response Center
ESA-2017-094: EMC ScaleIO Multiple Vulnerabilities EMC Product Security Response Center

Wednesday, 22 November

Clickjacking vulnerability in CSRF error page pfSense Securify B.V. via Fulldisclosure
bugtraq () securityfocus com Securify B.V. via Fulldisclosure

Thursday, 23 November

Edward Snowden free speech at JBFone - Future, Data Security & Privacy Vulnerability Lab

Friday, 24 November

SSD Advisory – Cambium Multiple Vulnerabilities Maor Shwartz
SSD Advisory – Linux Kernel XFRM Privilege Escalation Maor Shwartz
CSC-Cart RCE - CVE-2017-15673 oric one

Tuesday, 28 November

New BlackArch Linux ISOs (2017.11.24) with over 1900 tools released! Black Arch
CVE-2017-14953 - Hikvision Wi-Fi IP Cameras associate to a default unencrypted rogue SSIDs in a wired configuration IOT Sec
Re: CSC-Cart RCE - CVE-2017-15673 jericho
SSD Advisory – Synology StorageManager smart.cgi Remote Command Execution Maor Shwartz
SSD Advisory – ZTE ZXDSL Configuration Reset Maor Shwartz
ESA-2017-145: RSA® Authentication Agent for Web for Apache Web Server Authentication Bypass Vulnerability EMC Product Security Response Center
ESA-2017-146: RSA® Authentication Agent SDK for C Error Handling Vulnerability EMC Product Security Response Center
Multiple Issues in CMS Made Simple Ziyahan Albeniz
Re: CSC-Cart RCE - CVE-2017-15673 oric one