Full Disclosure: by date

27 messages starting Mar 02 23 and ending Mar 30 23
Date index | Thread index | Author index


Thursday, 02 March

NetBSD overflow Erg Noor
SRP on Windows 11 Andy Ful
SEC Consult SA-20230228-0 :: OS Command Injectionin Barracuda CloudGen WAN SEC Consult Vulnerability Lab, Research via Fulldisclosure

Monday, 06 March

OpenBSD overflow Erg Noor
SEC Consult SA-20230306-0 :: Multiple Vulnerabilities in Arris DG3450 Cable Gateway SEC Consult Vulnerability Lab, Research via Fulldisclosure
[CVE-2023-25355/25356] No fix available - vulnerabilities in CoreDial sipXcom sipXopenfire Systems Research Group via Fulldisclosure

Saturday, 11 March

Full Disclosure - Shopify Application Andrey Stoykov
Full Disclosure - Fastly Andrey Stoykov

Thursday, 16 March

[CFP] Security BSides Ljubljana 0x7E7 | June 16, 2023 Andraz Sraka
Defense in depth -- the Microsoft way (part 83): instead to fix even their most stupid mistaskes, they spill barrels of snakeoil to cover them (or just leave them as-is) Stefan Kanthak

Tuesday, 21 March

Re: Microsoft PlayReady security research Security Explorations
Re: Defense in depth -- the Microsoft way (part 83): instead to fix even their most stupid mistaskes, they spill barrels of snakeoil to cover them (or just leave them as-is) Arik Seils
Re: Microsoft PlayReady security research Adam Gowdiak
Insecure python cgi documentation and tutorials are vulnerable to XSS. Georgi Guninski
Invitation to the World Cryptologic Competition 2023 Competition Administrator

Friday, 24 March

Defense in depth -- the Microsoft way (part 84): (no) fun with %COMSPEC% Stefan Kanthak

Monday, 27 March

RSA NetWitness Platform EDR / Incorrect Access Control - Code Execution hyp3rlinx
APPLE-SA-2023-03-27-3 macOS Ventura 13.3 Apple Product Security via Fulldisclosure
APPLE-SA-2023-03-27-4 macOS Monterey 12.6.4 Apple Product Security via Fulldisclosure
APPLE-SA-2023-03-27-1 iOS 16.4 and iPadOS 16.4 Apple Product Security via Fulldisclosure
APPLE-SA-2023-03-27-2 iOS 15.7.4 and iPadOS 15.7.4 Apple Product Security via Fulldisclosure
APPLE-SA-2023-03-27-5 macOS Big Sur 11.7.5 Apple Product Security via Fulldisclosure
APPLE-SA-2023-03-27-6 tvOS 16.4 Apple Product Security via Fulldisclosure
APPLE-SA-2023-03-27-8 Safari 16.4 Apple Product Security via Fulldisclosure
APPLE-SA-2023-03-27-9 Studio Display Firmware Update 16.4 Apple Product Security via Fulldisclosure
APPLE-SA-2023-03-27-7 watchOS 9.4 Apple Product Security via Fulldisclosure

Thursday, 30 March

RSA NetWitness EDR Agent / Incorrect Access Control - Code Execution / CVE-2022-47529 hyp3rlinx