Full Disclosure: by author

72 messages starting Jul 23 21 and ending Jul 14 21
Date index | Thread index | Author index


Andrea Simonca

CFP for Hardwear.io Netherlands 2021 Andrea Simonca (Jul 23)

Apple Product Security via Fulldisclosure

APPLE-SA-2021-07-21-4 Security Update 2021-005 Mojave Apple Product Security via Fulldisclosure (Jul 23)
APPLE-SA-2021-07-21-1 iOS 14.7 and iPadOS 14.7 Apple Product Security via Fulldisclosure (Jul 23)
APPLE-SA-2021-07-21-7 Safari 14.1.2 Apple Product Security via Fulldisclosure (Jul 23)
APPLE-SA-2021-07-21-5 watchOS 7.6 Apple Product Security via Fulldisclosure (Jul 23)
APPLE-SA-2021-07-21-2 macOS Big Sur 11.5 Apple Product Security via Fulldisclosure (Jul 23)
APPLE-SA-2021-07-21-3 Security Update 2021-004 Catalina Apple Product Security via Fulldisclosure (Jul 23)
APPLE-SA-2021-07-21-6 tvOS 14.7 Apple Product Security via Fulldisclosure (Jul 23)

Asterisk Security Team

AST-2021-008: Remote crash when using IAX2 channel driver Asterisk Security Team (Jul 22)
AST-2021-007: Remote Crash Vulnerability in PJSIP channel driver Asterisk Security Team (Jul 22)
AST-2021-009: pjproject/pjsip: crash when SSL socket destroyed during handshake Asterisk Security Team (Jul 22)

Atlassian

ATLASSIAN - CVE-2020-36239 - Jira Data Center and Jira Service Management Data Center Atlassian (Jul 26)

Daniel Bishtawi via Fulldisclosure

Cross-site Scripting vulnerability in Ampache 4.4.2 Daniel Bishtawi via Fulldisclosure (Jul 23)

Dariusz G

Novus Managment System Vulnerabilities (CVE-2021-34820, CVE-2021-38421) Dariusz G (Jul 09)

Egidio Romano

[KIS-2021-05] Concrete5 <= 8.5.5 (Logging Settings) Phar Deserialization Vulnerability Egidio Romano (Jul 19)

Georgi Guninski

ipython3 may execute code from the current working directory Georgi Guninski (Jul 23)
Potential symlink attack in python3 __pycache__ Georgi Guninski (Jul 26)

houjingyi

VMware ThinApp DLL hijacking vulnerability houjingyi (Jul 16)

malvuln

Backdoor.Win32.NerTe.a / Unauthenticated Remote Command Execution malvuln (Jul 13)
Backdoor.Win32.IRCBot.gen / Weak Hardcoded Password malvuln (Jul 20)
VirTool.Win32.Afix / Local Stack Buffer Overflow malvuln (Jul 13)
Trojan-Dropper.Win32.Agent.wxl / Insecure Permissions malvuln (Jul 06)
Backdoor.Win32.Hupigon.aiss / Unauthenticated Open Proxy malvuln (Jul 06)
HEUR.Backdoor.Win32.Generic / Unauthenticated Open Proxy malvuln (Jul 20)
Backdoor.Win32.WinShell.40 / Authentication Bypass Command Execution malvuln (Jul 06)
Backdoor.Win32.Surila.j / Port Bounce Scan malvuln (Jul 13)
Trojan-Dropper.Win32.SVB.cz / Authentication Bypass RCE malvuln (Jul 06)
Trojan.Win32.Inject.adwas / Insecure Permissions malvuln (Jul 06)
Trojan-Spy.Win32.SpyEyes.hqd / Insecure Permissions malvuln (Jul 20)
Virus.Win32.Shodi.e / Unauthenticated Remote Command Execution malvuln (Jul 06)
Backdoor.Win32.Nbdd.bgz / Remote Stack Buffer Overflow malvuln (Jul 26)
Trojan.Win32.RASFlooder.b / Hardcoded Plaintext Password malvuln (Jul 13)
Backdoor.Win32.Surila.j / Authentication Bypass malvuln (Jul 13)
Trojan-Proxy.Win32.Ranky.gen / Unauthenticated Open Proxy malvuln (Jul 13)
Backdoor.Win32.NerTe.781 / Unauthenticated Remote Command Execution malvuln (Jul 06)
Backdoor.Win32.Zombam.l / Unauthenticated URL Command Injection malvuln (Jul 06)
Backdoor.IRC.Ataka.a / Insecure Permissions malvuln (Jul 13)
Trojan-Dropper.Win32.SVB.cz / Port Bounce Scan (MITM) malvuln (Jul 06)
Trojan.Win32.VB.bcng / Insecure Permissions malvuln (Jul 06)
Backdoor.Win32.Agent.cu / Port Bounce Scan (MITM) malvuln (Jul 26)
VirTool.Win32.Afix / Local Stack Buffer Overflow malvuln (Jul 13)
Virus.Win32.Shodi.e / Insecure Transit malvuln (Jul 06)
Backdoor.Win32.Bifrose.acci / Local Stack Buffer Overflow malvuln (Jul 26)
HEUR.Trojan.Win32.Generic / Insecure Permissions malvuln (Jul 06)
Virus.Win32.Shodi.e / Heap Corruption malvuln (Jul 06)
Backdoor.Win32.Agent.cu / Authentication Bypass RCE malvuln (Jul 26)
HEUR.Backdoor.Win32.Generic / Unauthenticated Open Proxy malvuln (Jul 20)
Backdoor.Win32.Hupigon.aaur / Unauthenticated Open Proxy malvuln (Jul 26)
Backdoor.Win32.Hupigon.gsy / Unauthenticated Open Proxy malvuln (Jul 06)
Trojan-Spy.Win32.Xspyout.a / Unauthenticated Open Proxy malvuln (Jul 06)
Backdoor.Win32.Surila.j / Remote Denial of Service malvuln (Jul 13)
Backdoor.Win32.Zombam.l / Remote Stack Buffer Overflow malvuln (Jul 06)
Trojan-Proxy.Win32.Ranky.ag / Unauthenticated Open Proxy malvuln (Jul 06)
Trojan-Spy.Win32.SpyEyes.abdb / Insecure Permissions malvuln (Jul 20)
Backdoor.Win32.IRCBot.gen / Unauthenticated Remote Command Execution malvuln (Jul 20)
Backdoor.Win32.NerTe.781 / Authentication Bypass RCE malvuln (Jul 06)
Backdoor.Win32.Agent.cu / Unauthenticated Remote Command Execution malvuln (Jul 26)
Backdoor.Win32.PsyRat.b / Remote Denial of Service malvuln (Jul 26)
Backdoor.Win32.PsyRat.b / Unauthenticated Remote Command Execution malvuln (Jul 26)
Backdoor.Win32.Agent.bjev / Insecure Permissions malvuln (Jul 20)
Backdoor.Win32.Mazben.me / Unauthenticated Open Proxy malvuln (Jul 26)
HEUR.Backdoor.Win32.Agent.gen / Insecure Permissions malvuln (Jul 13)
Backdoor.Win32.NerTe.a / Authentication Bypass RCE malvuln (Jul 13)

Martin Heiland via Fulldisclosure

Open-Xchange Security Advisory 2021-07-19 Martin Heiland via Fulldisclosure (Jul 20)
Open-Xchange Security Advisory 2021-07-15 Martin Heiland via Fulldisclosure (Jul 16)

Pierre Kim

Re: [FD] New Release: UFONet v1.7 - "KRäK!eN"... Pierre Kim (Jul 20)
Multiple vulnerabilities in Dell OpenManage Enterprise Pierre Kim (Jul 20)

psy

New Release: UFONet v1.7 - "KRäK!eN"... psy (Jul 16)
Re: New Release: UFONet v1.7 - "KRäK!eN"... psy (Jul 20)

Q C

Three vulnerabilities found in MikroTik's RouterOS Q C (Jul 06)

Red Timmy Security

IoT/ICS Armageddon: hacking devices like there’s no tomorrow (part 1) Red Timmy Security (Jul 06)

SEC Consult Vulnerability Lab

SEC Consult SA-20210714-0 :: Critical vulnerabilities in Schneider Electric EVlink Charging Stations SEC Consult Vulnerability Lab (Jul 14)