Full Disclosure: by author

28 messages starting May 29 23 and ending May 11 23
Date index | Thread index | Author index


Apple Product Security via Fulldisclosure

APPLE-SA-2023-03-27-2 iOS 15.7.4 and iPadOS 15.7.4 Apple Product Security via Fulldisclosure (May 29)
APPLE-SA-2023-05-18-4 macOS Monterey 12.6.6 Apple Product Security via Fulldisclosure (May 29)
APPLE-SA-2023-05-18-7 watchOS 9.5 Apple Product Security via Fulldisclosure (May 29)
APPLE-SA-2023-05-18-6 tvOS 16.5 Apple Product Security via Fulldisclosure (May 29)
APPLE-SA-2023-05-18-8 Safari 16.5 Apple Product Security via Fulldisclosure (May 29)
APPLE-SA-2023-05-03-1 AirPods Firmware Update 5E133 and Beats Firmware Update 5B66 Apple Product Security via Fulldisclosure (May 04)
APPLE-SA-2023-05-18-1 iOS 16.5 and iPadOS 16.5 Apple Product Security via Fulldisclosure (May 29)
APPLE-SA-2023-05-18-2 iOS 15.7.6 and iPadOS 15.7.6 Apple Product Security via Fulldisclosure (May 29)
APPLE-SA-2023-05-18-3 macOS Ventura 13.4 Apple Product Security via Fulldisclosure (May 29)
APPLE-SA-2023-05-18-5 macOS Big Sur 11.7.7 Apple Product Security via Fulldisclosure (May 29)

Cyber Intel Security

CVE-2022-48331 - Buffer Overflow in Widevine Trustlet (drm_save_keys @ 0x69b0) Cyber Intel Security (May 30)
CVE-2022-48333 - Buffer Overflow in Widevine Trustlet (drm_verify_keys @ 0x730c) Cyber Intel Security (May 30)
CVE-2022-48336 - Buffer Overflow in Widevine Trustlet (PRDiagParseAndStoreData @ 0x5cc8) Cyber Intel Security (May 30)
CVE-2022-48334 - Buffer Overflow in Widevine Trustlet (drm_verify_keys @ 0x7370) Cyber Intel Security (May 30)
CVE-2022-48335 - Buffer Overflow in Widevine Trustlet (PRDiagVerifyProvisioning @ 0x5f90) Cyber Intel Security (May 30)
CVE-2022-48332 - Buffer Overflow in Widevine Trustlet (drm_save_keys @ 0x6a18) Cyber Intel Security (May 30)

Eldar Marcussen

Printerlogic multiple vulnerabilities Eldar Marcussen (May 29)

Lennert Preuth via Fulldisclosure

SCHUTZWERK-SA-2023-001: SQL Injection in Spryker Commerce OS Lennert Preuth via Fulldisclosure (May 08)
SCHUTZWERK-SA-2022-001: Cross-Site-Scripting in Papaya Medical Viewer Lennert Preuth via Fulldisclosure (May 30)

Martin Heiland via Fulldisclosure

OXAS-ADV-2023-0001: OX App Suite Security Advisory Martin Heiland via Fulldisclosure (May 08)

RedTeam Pentesting GmbH

[RT-SA-2023-003] Pydio Cells: Unauthorised Role Assignments RedTeam Pentesting GmbH (May 30)
[RT-SA-2023-005] Pydio Cells: Server-Side Request Forgery RedTeam Pentesting GmbH (May 30)
[RT-SA-2023-004] Pydio Cells: Cross-Site Scripting via File Download RedTeam Pentesting GmbH (May 30)

SEC Consult Vulnerability Lab, Research via Fulldisclosure

SEC Consult SA-20230502-0 :: Bypassing cluster isolation through insecure defaults and shared storage in Databricks Platform SEC Consult Vulnerability Lab, Research via Fulldisclosure (May 02)
SEC Consult SA-20230515-0 :: Multiple Vulnerabilities in Kiddoware Kids Place Parental Control Android App SEC Consult Vulnerability Lab, Research via Fulldisclosure (May 15)
SEC Consult SA-20230517-0 :: Stored XSS vulnerability in rename functionality in Wekan (Open-Source kanban) SEC Consult Vulnerability Lab, Research via Fulldisclosure (May 29)
SEC Consult SA-20230516-0 :: Multiple Vulnerabilities in Serenity and StartSharp Software SEC Consult Vulnerability Lab, Research via Fulldisclosure (May 29)

Thomas Weber

CyberDanube Security Research 20230511-0 | Multiple Vulnerabilities in Advantech EKI-15XX Series Thomas Weber (May 11)