Bugtraq: by date

67 messages starting Jun 03 18 and ending Jun 28 18
Date index | Thread index | Author index


Sunday, 03 June

CVE-2018-11552 AXON PBX 2.02 Cross Site Scripting Vulnerability mehta . himanshu21
MachForm Multiple Vulnerabilities CVE-2018-6409/CVE-2018-6410/CVE-2018-6411 Amine Taouirsa
APPLE-SA-2018-06-01-6 tvOS 11.4 Apple Product Security
APPLE-SA-2018-06-01-7 iTunes 12.7.5 for Windows Apple Product Security
APPLE-SA-2018-06-01-1 macOS High Sierra 10.13.5, Security Update 2018-003 Sierra, Security Update 2018-003 El Capitan Apple Product Security
[SECURITY] [DSA 4191-2] redmine regression update Salvatore Bonaccorso
APPLE-SA-2018-06-01-5 watchOS 4.3.1 Apple Product Security
[slackware-security] git (SSA:2018-152-01) Slackware Security Team
APPLE-SA-2018-06-01-2 Safari 11.1.1 Apple Product Security
[SECURITY] [DSA 4215-1] batik security update Sebastien Delafond
APPLE-SA-2018-06-01-4 iOS 11.4 Apple Product Security
[CORE-2018-0004] - Quest KACE System Management Appliance Multiple Vulnerabilities Core Security Advisories Team
[SECURITY] [DSA 4217-1] wireshark security update Moritz Muehlenhoff
APPLE-SA-2018-06-01-3 iCloud for Windows 7.5 Apple Product Security
[SECURITY] [DSA 4214-1] zookeeper security update Moritz Muehlenhoff
[CORE-2018-0002] - Quest DR Series Disk Backup Multiple Vulnerabilities Core Security Advisories Team
[SECURITY] [DSA 4216-1] prosody security update Salvatore Bonaccorso

Wednesday, 06 June

Ignite Realtime Openfire Version 3.7.1 Reflected Cross Site Scripting (CVE-2018-11688) yavuz atlas
[SECURITY] [DSA 4218-1] memcached security update Salvatore Bonaccorso
[slackware-security] mozilla-firefox (SSA:2018-157-01) Slackware Security Team

Thursday, 07 June

DefenseCode ThunderScan SAST Advisory: WordPress Contact Form Maker Plugin Multiple Security Vulnerabilities Defense Code
DefenseCode ThunderScan SAST Advisory: WordPress Form Maker Plugin Multiple Security Vulnerabilities Defense Code

Friday, 08 June

[SECURITY] [DSA 4219-1] jruby security update Sebastien Delafond

Monday, 11 June

Gridbox extension for Joomla! <= 2.4.0 Reflected Cross Site Scripting (XSS) yavuz atlas
[SECURITY] [DSA 4222-1] gnupg2 security update Salvatore Bonaccorso
SensioLabs Symfony version 3.3.6 - Cross-Site Scripting (Reflect) ch . sangsakul
[SECURITY] [DSA 4224-1] gnupg security update Salvatore Bonaccorso
[SECURITY] [DSA 4220-1] firefox-esr security update Moritz Muehlenhoff
[SECURITY] [DSA 4223-1] gnupg1 security update Salvatore Bonaccorso
[slackware-security] gnupg2 (SSA:2018-159-01) Slackware Security Team
[SECURITY] [DSA 4221-1] libvncserver security update Moritz Muehlenhoff
[SECURITY] [DSA 4225-1] openjdk-7 security update Moritz Muehlenhoff
[SRP-2018-01] Reverse engineering tools for ST DVB chipsets (public release) Security Explorations

Tuesday, 12 June

AST-2018-007: Infinite loop when reading iostreams Asterisk Security Team
AST-2018-008: PJSIP endpoint presence disclosure when using ACL Asterisk Security Team
[SECURITY] [DSA 4226-1] perl security update Salvatore Bonaccorso
DefenseCode ThunderScan SAST Advisory: WordPress Ultimate Form Builder Lite Plugin Multiple Vulnerabilities (XSS and SQLi) Defense Code
DefenseCode ThunderScan SAST Advisory: WordPress WP Google Map Plugin Multiple SQL injection Security Vulnerabilities Defense Code
[SECURITY] [DSA 4227-1] plexus-archiver security update Salvatore Bonaccorso

Wednesday, 13 June

CSNC-2018-021 - Vert.x - HTTP Header Injection Advisories
Samsung Web Viewer for Samsung DVR Reflected Cross Site Scripting (XSS) CVE-2018-11689 yavuz atlas
Multiple Security Issues in Ecos Secure Boot Stick (SBS) Michael Rossberg

Thursday, 14 June

APPLE-SA-2018-06-13-01 Xcode 9.4.1 Apple Product Security
[SECURITY] [DSA 4228-1] spip security update Sebastien Delafond
WebKitGTK+ and WPE WebKit Security Advisory WSA-2018-0005 Michael Catanzaro
CALL FOR PAPERS - INTEL SECURITY CONFERENCE (iSecCon) 2018 Branco, Rodrigo
CA20180614-01: Security Notice for CA Privileged Access Manager Williams, Ken

Sunday, 17 June

[security bulletin] MFSBGN03809 rev.1 - Universal CMDB, Deserialization Java Objects and CSRF cyber-psrt
[SECURITY] [DSA 4231-1] libgcrypt20 security update Salvatore Bonaccorso
[SECURITY] [DSA 4230-1] redis security update Moritz Muehlenhoff
[security bulletin] MFSBGN03810 rev.1 - Universal CMDB, Deserialization Java Objects and CSRF cyber-psrt
[SECURITY] [DSA 4229-1] strongswan security update Yves-Alexis Perez

Thursday, 21 June

XSS in Canopy login page RYT
[slackware-security] gnupg (SSA:2018-170-01) Slackware Security Team
[SECURITY] [DSA 4232-1] xen security update Moritz Muehlenhoff
FreeBSD Security Advisory FreeBSD-SA-18:07.lazyfpu FreeBSD Security Advisories

Monday, 25 June

[SECURITY] [DSA 4233-1] bouncycastle security update Moritz Muehlenhoff
[SECURITY] [DSA 4234-1] lava-server security update Moritz Muehlenhoff
KL-001-2018-008 : HPE VAN SDN Unauthenticated Remote Root Vulnerability KoreLogic Disclosures
[slackware-security] mozilla-firefox (SSA:2018-176-01) Slackware Security Team

Tuesday, 26 June

PRTG < 18.2.39 Command Injection Josh Berry

Thursday, 28 June

TP-Link TL-WR841N v13: CSRF (CVE-2018-12574) Tim Coen
TP-Link TL-WR841N v13: Broken Authentication (CVE-2018-12575) Tim Coen
[SECURITY] [DSA 4236-1] xen security update Moritz Muehlenhoff
APPLE-SA-2018-06-27-1 SwiftNIO 1.8.0 Apple Product Security
[SECURITY] [DSA 4235-1] firefox-esr security update Moritz Muehlenhoff
TP-Link TL-WR841N v13: Authenticated Blind Command Injection (CVE-2018-12577) Tim Coen