Full Disclosure: by author

41 messages starting Apr 16 19 and ending Apr 04 19
Date index | Thread index | Author index


aaron bishop

CVE-2019-9955 Refelected XSS on Zyxel Login page aaron bishop (Apr 16)

Abdel Adim `smaury` Oisfi

Nagios XI 5.5.10: XSS to root RCE (CVE-2019-9164, 9165, 9166, 9167, 9202, 9203, 9204) Abdel Adim `smaury` Oisfi (Apr 13)

Aki Tuomi via Fulldisclosure

Multiple vulnerabilities in Dovecot 2.3 Aki Tuomi via Fulldisclosure (Apr 30)

Bhavesh Naik via Fulldisclosure

Obtaining location using Google maps & JavaScript Bhavesh Naik via Fulldisclosure (Apr 18)

bo0od

Re: Microsoft Internet Explorer v11 / XML External Entity Injection 0day bo0od (Apr 16)

Colin Snover

[CVE-2019-9826] phpBB Native Fulltext Search denial of service Colin Snover (Apr 30)

Dan Fabian

Various vulnerabilities in Lupusec XT2 Plus home alarm system Dan Fabian (Apr 04)

Daniel dos Santos

EasyIO 30P: CVE-2018-15820 (Stored XSS) and CVE-2018-15819 (Authentication bypass) Daniel dos Santos (Apr 09)
Loytec LGATE-902: Multiple Vulnerabilities (XSS, Path traversal and File Deletion) Daniel dos Santos (Apr 09)

gionreale

Re: GAT-Ship Web Module [All versions before 1.40] - Unrestricted File Upload gionreale (Apr 26)
Uniqkey Password Manager 1.14 - Remote Denial Of Service [CVE-2019-10845] gionreale (Apr 05)
GAT-Ship Web Module [All versions before 1.40] - Unrestricted File Upload gionreale (Apr 09)
Uniqkey Password Manager 1.14 - Remote Credential Disclosure gionreale (Apr 04)

Harley A.W. Lorenzo via Fulldisclosure

Arris Touchstone TG1672 Administrative Login Vulnerabilities Harley A.W. Lorenzo via Fulldisclosure (Apr 05)
Security Analysis of the TP-Link Archer C50 Router Harley A.W. Lorenzo via Fulldisclosure (Apr 13)

Henri Salo

Re: WordPress Plugin Form Maker by WD [CSRF → LFI] Henri Salo (Apr 30)
Re: WordPress Plugin Contact Form Builder [CSRF → LFI] Henri Salo (Apr 30)
Re: WordPress plugin Contact Form by WD [CSRF → LFI] Henri Salo (Apr 30)

hyp3rlinx

Re: Microsoft Internet Explorer v11 / XML External Entity Injection 0day hyp3rlinx (Apr 18)
Microsoft Internet Explorer v11 / XML External Entity Injection 0day hyp3rlinx (Apr 13)

Jens Müller via Fulldisclosure

OpenPGP and S/MIME signature forgery attacks in multiple email clients Jens Müller via Fulldisclosure (Apr 30)

Kurt H Maier

Re: Redhat/CentOS root through network-scripts Kurt H Maier (Apr 18)

Matteo Beccati via Fulldisclosure

[REVIVE-SA-2019-001] Revive Adserver - Multiple vulnerabilities Matteo Beccati via Fulldisclosure (Apr 30)

Open-Xchange GmbH via Fulldisclosure

Open-Xchange Security Advisory 2019-04-01 Open-Xchange GmbH via Fulldisclosure (Apr 04)

Panagiotis Vagenas

WordPress Plugin Contact Form Builder [CSRF → LFI] Panagiotis Vagenas (Apr 23)
WordPress Plugin Form Maker by WD [CSRF → LFI] Panagiotis Vagenas (Apr 05)
WordPress plugin Contact Form by WD [CSRF → LFI] Panagiotis Vagenas (Apr 05)

Prajwal Panchmahalkar

c0c0n XII | The cy0ps c0n - Call For Papers & Call For Workshops Prajwal Panchmahalkar (Apr 04)

Red Timmy Sec -

CVE-2019-7727 - JMX/RMI Nice ENGAGE <= 6.5 Remote Command Execution Red Timmy Sec - (Apr 04)
CVE-2018-2879 - anniversary Red Timmy Sec - (Apr 18)

Reed Black

Re: Obtaining location using Google maps & JavaScript Reed Black (Apr 23)

Rodrigo Rubira Branco (BSDaemon)

CALL FOR PAPERS - Hackers 2 Hackers Conference 16th edition Rodrigo Rubira Branco (BSDaemon) (Apr 09)

Sachin Wagh

HD Pan/Tilt Wi-Fi Camera NC450 Hard-Coded Credential Vulnerability Sachin Wagh (Apr 09)
SphereFTP 2.0 Denial Of Service Sachin Wagh (Apr 04)

secure

DSA-2019-031: Dell EMC IsilonSD Management Server Cross-Site Scripting (XSS) Vulnerabilities secure (Apr 09)
DSA-2019-031: Dell EMC IsilonSD Management Server Cross-Site Scripting (XSS) Vulnerabilities secure (Apr 04)

Security Explorations

[SE-2019-01] Gemalto SIM card applet loading vulnerability Security Explorations (Apr 14)

Victor Angelier CCX

Redhat/CentOS root through network-scripts Victor Angelier CCX (Apr 16)
Re: Redhat/CentOS root through network-scripts Victor Angelier CCX (Apr 18)

xen1thLabs

Multiple vulnerabilities in Sony Smart TVs xen1thLabs (Apr 23)

Yuliya Pliavaka

hardwear.io 2019 Call For Papers is Open - USA & Netherlands Yuliya Pliavaka (Apr 04)