Full Disclosure: by author

84 messages starting Jan 06 21 and ending Jan 12 21
Date index | Thread index | Author index


Aki Tuomi

CVE-2020-24386: IMAP hibernation allows accessing other peoples mail Aki Tuomi (Jan 06)
CVE-2020-24386: IMAP hibernation allows accessing other peoples mail Aki Tuomi (Jan 06)

Apple Product Security via Fulldisclosure

APPLE-SA-2021-01-26-1 iOS 14.4 and iPadOS 14.4 Apple Product Security via Fulldisclosure (Jan 26)
APPLE-SA-2021-01-26-4 Xcode 12.4 Apple Product Security via Fulldisclosure (Jan 26)
APPLE-SA-2021-01-26-2 tvOS 14.4 Apple Product Security via Fulldisclosure (Jan 26)
APPLE-SA-2021-01-26-3 watchOS 7.3 Apple Product Security via Fulldisclosure (Jan 26)

Balázs Hambalkó

Files.com - Auth Bypass (Fat Client) Balázs Hambalkó (Jan 06)

Błażej Adamczyk

Multiple vulnerabilities in Gotenberg <= 6.2.0 Błażej Adamczyk (Jan 03)

bo0od

Re: Backdoor.Win32.Xtreme.yvp / Insecure Permissions EoP bo0od (Jan 12)

Cyber Security Research Group via Fulldisclosure

Multiple vulnerabilities found in Rock RMS including RCE and account takeover Cyber Security Research Group via Fulldisclosure (Jan 03)

Egidio Romano

[KIS-2021-01] IPS Community Suite <= 4.5.4 (Downloads REST API) SQL Injection Vulnerability Egidio Romano (Jan 06)
[KIS-2020-11] qdPM <= 9.1 (executeExport) PHP Object Injection Vulnerability Egidio Romano (Jan 03)

Garrett Skjelstad

Re: Constructor.Win32.SMWG.a / Insecure Permissions Garrett Skjelstad (Jan 22)

johnkennedy

Stored XSS In Hyland's Enterprise Search johnkennedy (Jan 03)

malvuln

Backdoor.Win32.Noknok.60 / Insecure Permissions malvuln (Jan 25)
Backdoor.Win32.Verify.f / Missing Authentication malvuln (Jan 22)
Backdoor.Win32.Latinus.b / Remote Buffer Overflow malvuln (Jan 19)
Backdoor.Win32.Ketch.i / SEH Remote Stack Buffer Overflow malvuln (Jan 19)
Backdoor.Win32.Onalf / Missing Authentication malvuln (Jan 22)
TROJAN.WIN32.JORIK.DMSPAMMER.SZ / Remote Memory Corruption malvuln (Jan 03)
Backdoor.Win32.Whirlpool.10 / Remote Stack Buffer Overflow malvuln (Jan 22)
Constructor.Win32.SMWG.a / Insecure Permissions malvuln (Jan 19)
Backdoor.Win32.Ketch.b / Remote Stack Buffer Overflow malvuln (Jan 12)
Backdoor.Win32.Zombam.k / Remote Stack Buffer Overflow malvuln (Jan 06)
Backdoor.Win32.Infexor.b / Remote Buffer Overflow malvuln (Jan 03)
Backdoor.Win32.Hupigon.adef / Remote Stack Buffer Overflow malvuln (Jan 22)
Email-Worm.Win32.Agent.gi / Remote Stack Buffer Overflow - (UDP Datagram) malvuln (Jan 19)
BACKDOOR.WIN32.BNLITE / Remote Heap Corruption malvuln (Jan 03)
Backdoor.Win32.Ncx.bt / Remote Stack Buffer Overflow malvuln (Jan 19)
Backdoor.Win32.Zombam.a / Remote Stack Buffer Overflow malvuln (Jan 12)
Trojan.Win32.Bayrob.cgau / Insecure Permissions EoP (SYSTEM) malvuln (Jan 03)
Backdoor.Win32.Mnets / Remote Stack Buffer Overflow - (UDP Datagram Proto) malvuln (Jan 19)
Backdoor.Win32.Noknok.50 / Insecure Permissions malvuln (Jan 25)
Backdoor.Win32.Xel / Remote Authentication Buffer Overflow malvuln (Jan 22)
BACKDOOR.WIN32.REMOTEMANIPULATOR / Insecure Permissions malvuln (Jan 03)
Backdoor.Win32.Kraimer.11 / Missing Authentication malvuln (Jan 25)
Backdoor.Win32.Nucleroot.t - MaskPE 1.6 / File Based Buffer Overflow malvuln (Jan 19)
Backdoor.Win32.Xtreme.yvp / Insecure Permissions EoP malvuln (Jan 07)
HEUR.RISKTOOL.WIN32.BITMINER.GEN / Remote Memory Corruption malvuln (Jan 03)
Newfuture Trojan V.1.0 BETA 1 / Insecure Permissions malvuln (Jan 19)
Backdoor.Win32.Whgrx / Remote Host Header Stack Buffer Overflow malvuln (Jan 19)
Backdoor.Win32.NinjaSpy.c / Remote Stack Buffer Overflow malvuln (Jan 07)
Backdoor.Win32.Levelone.b / Remote Stack Buffer Overflow malvuln (Jan 12)
Backdoor.Win32.Whisper.b / Remote Stack Corruption malvuln (Jan 22)
Backdoor.Win32.Wollf.16 / Weak Hardcoded Password malvuln (Jan 25)
Backdoor.Win32.Wollf.c / Hardcoded Backdoor Password malvuln (Jan 25)
Constructor.Win32.SMWG.c / Insecure Permissions malvuln (Jan 19)
Phorpiex / Insecure permissions EoP malvuln (Jan 03)
Backdoor.Win32.WinShell.30 / Remote Stack Buffer Overflow / Missing Authentication malvuln (Jan 22)
BACKDOOR.WIN32.KETCH.A / Remote SEH Stack Buffer Overflow malvuln (Jan 19)
WIN32 BACKDOOR - 2019-02-ARTRADOWNLOADER / Remote SEH Buffer Overflow and Insecure Permissions malvuln (Jan 03)
Backdoor.Win32.Zombam.geq / Remote Buffer Overflow malvuln (Jan 22)
Backdoor.Win32.Levelone.a / Remote Stack Buffer Overflow malvuln (Jan 12)
Backdoor.Win32.Zxman / Missing Authentication malvuln (Jan 22)
Threat: Trojan.Win32.Antavka.bz / Insecure Permissions EoP malvuln (Jan 03)
Backdoor.Win32.Agent.dcbh / Insecure Permissions EoP malvuln (Jan 07)
Trojan.Win32.Barjac / Remote Stack Buffer Overflow. malvuln (Jan 03)
Backdoor.Win32.Jokerdoor (TDC Mail Spy 1.0) / Insecure Permissions malvuln (Jan 25)
BACKDOOR.WIN32.KURBADUR.A / Remote Stack Buffer Overflow malvuln (Jan 19)
Backdoor.Win32.Nucleroot.bi - MaskPE 2.0 / File Based Buffer Overflow malvuln (Jan 19)
BACKDOOR.WIN32.ADVERBOT / Remote Stack Corruption malvuln (Jan 03)
Trojan:Win32/Alyak.B / Remote Stack Corruption malvuln (Jan 03)
Backdoor.Win32.Zombam.j / Remote Stack Buffer Overflow malvuln (Jan 03)
Backdoor.Win32.NetBull.11.a / Remote Buffer Overflow malvuln (Jan 19)
Backdoor.Win32.DarkKomet.bhfh / Insecure Permissions malvuln (Jan 25)
Email-Worm.Win32.Zhelatin.ago / Remote Stack Buffer Overflow malvuln (Jan 03)
Trojan.Win32.Xocry.ff / Insecure Permissions malvuln (Jan 25)

Manuel Bua

CVE-2020-20269 - Caret Editor v4.0.0-rc21 Remote Code Execution Manuel Bua (Jan 22)

Mark Thomas

Re: [SECURITY] CVE-2013-4444 Remote Code Execution in Apache Tomcat Mark Thomas (Jan 06)

Martin Heiland via Fulldisclosure

Open-Xchange Security Advisory 2021-01-07 Martin Heiland via Fulldisclosure (Jan 07)

Matteo Beccati via Fulldisclosure

[REVIVE-SA-2021-002] Revive Adserver Vulnerabilities Matteo Beccati via Fulldisclosure (Jan 26)
[REVIVE-SA-2021-001] Revive Adserver Vulnerabilities Matteo Beccati via Fulldisclosure (Jan 22)

Matthew Fernandez

Re: Backdoor.Win32.NinjaSpy.c / Remote Stack Buffer Overflow Matthew Fernandez (Jan 12)

network.mp4 via Fulldisclosure

Re: Backdoor.Win32.NinjaSpy.c / Remote Stack Buffer Overflow network.mp4 via Fulldisclosure (Jan 19)
Re: Backdoor.Win32.Xtreme.yvp / Insecure Permissions EoP network.mp4 via Fulldisclosure (Jan 19)

Pierre Kim

Multiple vulnerabilities found in FiberHome HG6245D routers Pierre Kim (Jan 12)

Qualys Security Advisory

Baron Samedit: Heap-based buffer overflow in Sudo (CVE-2021-3156) Qualys Security Advisory (Jan 26)

Rodolfo Augusto do Nascimento Tavares

Envira Gallery - Lite Edition - Version 1.8.3.2 CVE-2020-35581 CVE-2020-35582 Rodolfo Augusto do Nascimento Tavares (Jan 12)

Sandro Gauci

Advisory: ES2021-01 - Loopback access control bypass in coturn by using 0.0.0.0, [::1] or [::] as the peer address Sandro Gauci (Jan 12)

SEC Consult Vulnerability Lab

SEC Consult SA-20210113-1 :: Multiple vulnerabilities in flatCore CMS SEC Consult Vulnerability Lab (Jan 13)
SEC Consult SA-20210113-0 :: Multiple vulnerabilities in Pepperl+Fuchs IO-Link Master Series SEC Consult Vulnerability Lab (Jan 13)

Stefan Pietsch

Re: Trovent Security Advisory 2010-01 [updated] / CVE-2020-28208: Rocket.Chat email address enumeration vulnerability Stefan Pietsch (Jan 19)
Trovent Security Advisory 2010-01 / CVE-2020-28208: Rocket.Chat email address enumeration vulnerability Stefan Pietsch (Jan 07)
Re: Trovent Security Advisory 2010-01 [updated] / CVE-2020-28208: Rocket.Chat email address enumeration vulnerability Stefan Pietsch (Jan 12)