Full Disclosure: by date

17 messages starting Feb 14 23 and ending Feb 27 23
Date index | Thread index | Author index


Tuesday, 14 February

[CVE-Request] Multiple vulnerabilities in BMC Control-M before 9.0.20.214 Benjamin Mar-Conrad
[CVE-2023-0292] Quiz And Survey Master <= 8.0.8 - Cross-Site Request Forgery to Arbitrary Media Deletion Julien Ahrens (RCE Security)
[CVE-2023-0291] Quiz And Survey Master <= 8.0.8 - Unauthenticated Arbitrary Media Deletion Julien Ahrens (RCE Security)
OXAS-ADV-2022-0002: OX App Suite Security Advisory Martin Heiland via Fulldisclosure
APPLE-SA-2023-02-13-1 iOS 16.3.1 and iPadOS 16.3.1 Apple Product Security via Fulldisclosure
APPLE-SA-2023-02-13-2 macOS Ventura 13.2.1 Apple Product Security via Fulldisclosure
APPLE-SA-2023-02-13-3 Safari 16.3.1 Apple Product Security via Fulldisclosure
SEC Consult SA-20230214-0 :: Multiple XSS Vulnerabilities in B&R Systems Diagnostics Manager SEC Consult Vulnerability Lab, Research via Fulldisclosure
Defense in depth -- the Microsoft way (part 81): enabling UTF-8 support breaks existing code Stefan Kanthak
CyberDanube Security Research 20230213-0 | Multiple Vulnerabilities in JetWave Series Thomas Weber

Thursday, 16 February

Remote Code Execution in Kardex MLOG Patrick Hener

Wednesday, 22 February

Sumo Logic keep api credentials on endpoints dammitjosie--- via Fulldisclosure
Multiple vulnerabilities in Audiocodes Device Manager Express Eric Flokstra
Defense in depth -- the Microsoft way (part 82): INVALID/BOGUS AppLocker rules disable SAFER on Windows 11 22H2 Stefan Kanthak

Monday, 27 February

Microsoft Windows Contact File / Remote Code Execution (Resurrected) CVE-2022-44666 hyp3rlinx
[NetworkSEC NWSSA] CVE-2023-26602: ASUS ASMB8 iKVM RCE and SSH Root Access Peter Ohm
[NetworkSEC NWSSA] CVE-2023-26609: ABUS Security Camera LFI, RCE and SSH Root Peter Ohm