Databáze Hot News 2014 January - 2014 January February March April May June July August September October November December
31.1.2014
Bugtraq
Ektron CMS Take Over - Hijacking Accounts 2014-01-30
Mark Litchfield (mark securatary com)
SimplyShare v1.4 iOS - Multiple Web Vulnerabilities 2014-01-29
Vulnerability Lab (research vulnerability-lab com)
Malware
Phishing
MINT | 30th January 2014 |
Lloyds Group | 30th January 2014 |
Halifax | 30th January 2014 |
NatWest Credit Card Online | 30th January 2014 |
NatWest Credit Card Online | 30th January 2014 |
Barclays | 30th January 2014 |
Vulnerebility
PHP OpenSSL Extension 'openssl_x509_parse()' Remote Memory Corruption Vulnerability
2014-01-31
http://www.securityfocus.com/bid/64225
Pidgin CVE-2013-6486 Incomplete Fix Remote Code Execution Vulnerability
2014-01-31
http://www.securityfocus.com/bid/65189
Cisco Identity Services Engine HTTP Control Interface for NAC Web Cross Site Scripting Vulnerability
2014-01-31
http://www.securityfocus.com/bid/65227
Cisco Identity Services Engine Report Page HTML Injection Vulnerability
2014-01-31
http://www.securityfocus.com/bid/65183
OTRS Customer Web Interface Cross Site Request Forgery Vulnerability
2014-01-31
http://www.securityfocus.com/bid/65217
Oracle Multiple SPARC Products CVE-2012-3206 Local Security Vulnerability
2014-01-31
http://www.securityfocus.com/bid/56023
Ruby Phusion Passenger 'server instance directory' Insecure Temporary File Creation Vulnerability
2014-01-31
http://www.securityfocus.com/bid/65207
ISC BIND 9 DNS64 Remote Denial of Service Vulnerability
2014-01-31
http://www.securityfocus.com/bid/56817
ISC BIND NSEC3 Signed Zones Queries Handling Remote Denial of Service Vulnerability
2014-01-31
http://www.securityfocus.com/bid/64801
ISC BIND 9 DNS RDATA Handling CVE-2013-4854 Remote Denial of Service Vulnerability
2014-01-31
http://www.securityfocus.com/bid/61479
ISC BIND 9 DNS64 CVE-2012-5689 Remote Denial of Service Vulnerability
2014-01-31
http://www.securityfocus.com/bid/57556
ISC BIND 9 'libdns' Remote Denial of Service Vulnerability
2014-01-31
http://www.securityfocus.com/bid/58736
ISC BIND CVE-2013-3919 Remote Denial of Service Vulnerability
2014-01-31
http://www.securityfocus.com/bid/60338
ISC BIND 9 DNS RDATA Handling CVE-2012-5166 Remote Denial of Service Vulnerability
2014-01-31
http://www.securityfocus.com/bid/55852
Simple E-Document 'upload.php' Arbitrary File Upload Vulnerability
2014-01-31
http://www.securityfocus.com/bid/65175
Xen CVE-2013-4494 Denial of Service Vulnerability
2014-01-31
http://www.securityfocus.com/bid/63494
Cisco WebEx Meetings Server CVE-2014-0682 Security Bypass Vulnerability
2014-01-31
http://www.securityfocus.com/bid/65198
libvirt CVE-2014-1447 Denial of Service Vulnerability
2014-01-31
http://www.securityfocus.com/bid/64945
libvirt 'virDomainBlockStats()' Denial of Service Vulnerability
2014-01-31
http://www.securityfocus.com/bid/64723
HPLIP 'pkit.py' Insecure Temporary File Creation Vulnerability
2014-01-31
http://www.securityfocus.com/bid/63959
NVIDIA Graphics Driver GPU Access Local Privilege Escalation Vulnerability
2014-01-31
http://www.securityfocus.com/bid/64525
HP Application Information Optimizer 'oasoa.exe' Remote Code Execution Vulnerability
2014-01-31
http://www.securityfocus.com/bid/64557
WordPress 'press-this.php' Remote Security Bypass Vulnerability
2014-01-31
http://www.securityfocus.com/bid/47598
NTP 'ntp_request.c' Remote Denial of Service Vulnerability
2014-01-31
http://www.securityfocus.com/bid/64692
Oracle Java SE CVE-2013-5884 Remote Security Vulnerability
2014-01-31
http://www.securityfocus.com/bid/64924
Oracle Java SE CVE-2014-0373 Remote Security Vulnerability
2014-01-31
http://www.securityfocus.com/bid/64922
Network Security Services 'ssl_Do1stHandshake()' Function Information Disclosure Vulnerability
2014-01-31
http://www.securityfocus.com/bid/64944
Cisco RVS4000/WRVS4400N/WAP4410N Devices Test Interface Remote Privilege Escalation Vulnerability
2014-01-31
http://www.securityfocus.com/bid/64776
Oracle Java SE CVE-2014-0428 Remote Security Vulnerability
2014-01-31
http://www.securityfocus.com/bid/64935
Oracle Java SE CVE-2014-0416 Remote Security Vulnerability
2014-01-31
http://www.securityfocus.com/bid/64937
Exploit
Linux 3.4+ recvmmsg x32 compat Proof of Concept
30.1.2014
Bugtraq
SiteCore XML Control Script Insertion 2014-01-29
Mark Litchfield (mark securatary com)
[slackware-security] mozilla-nss (SSA:2014-028-02) 2014-01-28
Slackware Security Team (security slackware com)
Vulnerabilities within Mura CMS / Sitecore MCS / SmarterMail 2014-01-28
Mark Litchfield (mark securatary com)
Malware
Phishing
American Express | 29th January 2014 |
Chase | 29th January 2014 |
PayPal | 29th January 2014 |
Barclays Bank | 29th January 2014 |
Vulnerebility
ISC BIND NSEC3 Signed Zones Queries Handling Remote Denial of Service Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64801
ISC BIND 9 DNS RDATA Handling CVE-2013-4854 Remote Denial of Service Vulnerability
2014-01-30
http://www.securityfocus.com/bid/61479
ISC BIND 9 DNS64 CVE-2012-5689 Remote Denial of Service Vulnerability
2014-01-30
http://www.securityfocus.com/bid/57556
ISC BIND 9 'libdns' Remote Denial of Service Vulnerability
2014-01-30
http://www.securityfocus.com/bid/58736
ISC BIND CVE-2013-3919 Remote Denial of Service Vulnerability
2014-01-30
http://www.securityfocus.com/bid/60338
ISC BIND 9 DNS RDATA Handling CVE-2012-5166 Remote Denial of Service Vulnerability
2014-01-30
http://www.securityfocus.com/bid/55852
Simple E-Document 'upload.php' Arbitrary File Upload Vulnerability
2014-01-30
http://www.securityfocus.com/bid/65175
Xen CVE-2013-4494 Denial of Service Vulnerability
2014-01-30
http://www.securityfocus.com/bid/63494
Cisco WebEx Meetings Server CVE-2014-0682 Security Bypass Vulnerability
2014-01-30
http://www.securityfocus.com/bid/65198
libvirt CVE-2014-1447 Denial of Service Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64945
libvirt 'virDomainBlockStats()' Denial of Service Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64723
HPLIP 'pkit.py' Insecure Temporary File Creation Vulnerability
2014-01-30
http://www.securityfocus.com/bid/63959
NVIDIA Graphics Driver GPU Access Local Privilege Escalation Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64525
HP Application Information Optimizer 'oasoa.exe' Remote Code Execution Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64557
WordPress 'press-this.php' Remote Security Bypass Vulnerability
2014-01-30
http://www.securityfocus.com/bid/47598
NTP 'ntp_request.c' Remote Denial of Service Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64692
Oracle Java SE CVE-2013-5884 Remote Security Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64924
Oracle Java SE CVE-2014-0373 Remote Security Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64922
Network Security Services 'ssl_Do1stHandshake()' Function Information Disclosure Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64944
Cisco RVS4000/WRVS4400N/WAP4410N Devices Test Interface Remote Privilege Escalation Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64776
Oracle Java SE CVE-2014-0428 Remote Security Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64935
Oracle Java SE CVE-2014-0416 Remote Security Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64937
Oracle Java SE CVE-2013-5910 Remote Security Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64933
Oracle Java SE CVE-2013-5878 Remote Security Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64927
Oracle Java SE CVE-2014-0422 Remote Security Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64921
Oracle Java SE CVE-2014-0368 Remote Security Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64930
Oracle Java SE CVE-2014-0423 Remote Security Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64914
Oracle Java SE CVE-2013-5896 Remote Security Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64926
Oracle Java SE CVE-2014-0411 Remote Security Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64918
Oracle Java SE CVE-2014-0376 Remote Security Vulnerability
2014-01-30
http://www.securityfocus.com/bid/64907
Exploit
Oracle Forms and Reports 11.1 - Remote Exploit
Simple E-Document Arbitrary File Upload
SimplyShare 1.4 iOS - Multiple Vulnerabilities
A10 Networks Loadbalancer - Directory Traversal
ManageEngine Support Center Plus 7916 - Directory Traversal
pfSense 2.1 build 20130911-1816 - Directory Traversal
29.1.2014
Bugtraq
Mozilla Bug Bounty #5 - WireTap Remote Web Vulnerability 2014-01-27
Vulnerability Lab (research vulnerability-lab com)
DC4420 - London DEFCON - January meet - Tuesday 28th January 2014 2014-01-27
Major Malfunction (majormal pirate-radio org)
Multiple Vulnerabilities in Eventum 2014-01-27
High-Tech Bridge Security Research (advisory htbridge com)
Malware
Phishing
Chase | 28th January 2014 |
RBS | 28th January 2014 |
NATWEST | 28th January 2014 |
RBS | 28th January 2014 |
YOUR LATEST STATEMENT FOR | |
PayPal | 28th January 2014 |
Vulnerebility
libvirt CVE-2014-1447 Denial of Service Vulnerability
2014-01-29
http://www.securityfocus.com/bid/64945
libvirt 'virDomainBlockStats()' Denial of Service Vulnerability
2014-01-29
http://www.securityfocus.com/bid/64723
Linux Kernel 'net_ctl_permissions()' Function Local Security Bypass Vulnerability
2014-01-29
http://www.securityfocus.com/bid/64471
Linux Kernel CVE-2013-2929 Local Privilege Escalation Vulnerability
2014-01-29
http://www.securityfocus.com/bid/64111
Linux Kernel CVE-2013-6378 Local Denial of Service Vulnerability
2014-01-29
http://www.securityfocus.com/bid/63886
Linux Kernel 'perf_trace_event_perm()' Function Local Security Bypass Vulnerability
2014-01-29
http://www.securityfocus.com/bid/64318
Linux Kernel CVE-2013-4470 Multiple Local Memory Corruption Vulnerabilities
2014-01-29
http://www.securityfocus.com/bid/63359
Linux Kernel CVE-2013-6431 NULL Pointer Dereference Local Denial of Service Vulnerability
2014-01-29
http://www.securityfocus.com/bid/64137
Linux Kernel AACRAID Driver Compat IOCTL Local Security Bypass Vulnerability
2014-01-29
http://www.securityfocus.com/bid/63888
Oracle Java SE CVE-2013-2431 Remote Java Runtime Environment Vulnerability
2014-01-29
http://www.securityfocus.com/bid/59165
Oracle Java SE CVE-2014-0373 Remote Security Vulnerability
2014-01-29
http://www.securityfocus.com/bid/64922
Oracle Java SE CVE-2013-5850 Remote Security Vulnerability
2014-01-29
http://www.securityfocus.com/bid/63153
Oracle Java SE CVE-2013-5789 Remote Security Vulnerability
2014-01-29
http://www.securityfocus.com/bid/63156
Oracle Java SE CVE-2013-5783 Remote Security Vulnerability
2014-01-29
http://www.securityfocus.com/bid/63154
Oracle Java SE CVE-2013-2400 Remote Security Vulnerability
2014-01-29
http://www.securityfocus.com/bid/60621
Oracle Java SE CVE-2013-2407 Remote Security Vulnerability
2014-01-29
http://www.securityfocus.com/bid/60653
Oracle Java SE CVE-2013-2430 Remote Java Runtime Environment Vulnerability
2014-01-29
http://www.securityfocus.com/bid/59243
Oracle Java SE CVE-2013-2412 Remote Security Vulnerability
2014-01-29
http://www.securityfocus.com/bid/60618
Oracle Java SE CVE-2013-2422 Remote Java Runtime Environment Vulnerability
2014-01-29
http://www.securityfocus.com/bid/59228
Oracle Java SE CVE-2013-2414 Remote Java Runtime Environment Vulnerability
2014-01-29
http://www.securityfocus.com/bid/59234
Oracle Java SE CVE-2013-2433 Remote Java Runtime Environment Vulnerability
2014-01-29
http://www.securityfocus.com/bid/59220
Oracle Java SE CVE-2013-2415 Remote Java Runtime Environment Vulnerability
2014-01-29
http://www.securityfocus.com/bid/59212
Oracle Java SE CVE-2013-5823 Remote Security Vulnerability
2014-01-29
http://www.securityfocus.com/bid/63110
Oracle Java SE CVE-2012-5075 Remote Java Runtime Environment Vulnerability
2014-01-29
http://www.securityfocus.com/bid/56081
Oracle Java SE CVE-2013-2426 Multiple Remote Code Execution Vulnerabilities
2014-01-29
http://www.securityfocus.com/bid/59206
Oracle Java SE CVE-2013-2417 Remote Java Runtime Environment Vulnerability
2014-01-29
http://www.securityfocus.com/bid/59187
Oracle Java SE CVE-2013-2425 Remote Java Runtime Environment Vulnerability
2014-01-29
http://www.securityfocus.com/bid/59191
Oracle Java SE CVE-2013-2429 Remote Java Runtime Environment Vulnerability
2014-01-29
http://www.securityfocus.com/bid/59184
Oracle Java SE CVE-2013-2428 Remote Code Execution Vulnerability
2014-01-29
http://www.securityfocus.com/bid/59175
Oracle Java SE CVE-2013-2420 Integer Overflow Vulnerability
2014-01-29
http://www.securityfocus.com/bid/59167
Exploit
28.1.2014
Bugtraq
Malware
Phishing
PayPal | 28th January 2014 |
PayPal | 27th January 2014 |
Natwest Bank Plc | 27th January 2014 |
service@paypal.co.uk | 27th January 2014 |
Vulnerebility
WordPress Pretty Photo Plugin 'hashrel' Paramater Cross Site Scripting Vulnerability
2014-01-28
http://www.securityfocus.com/bid/63839
Augeas Multiple Insecure Temporary File Creation Vulnerabilities
2014-01-28
http://www.securityfocus.com/bid/63861
HPLIP 'pkit.py' Insecure Temporary File Creation Vulnerability
2014-01-28
http://www.securityfocus.com/bid/63959
HPLIP CVE-2013-6427 Insecure Auto Update Feature Man in The Middle Vulnerability
2014-01-28
http://www.securityfocus.com/bid/64131
Oracle Outside In Technology CVE-2013-5791 Stack Buffer Overflow Vulnerability
2014-01-28
http://www.securityfocus.com/bid/63076
Oracle Java SE CVE-2013-5825 Remote Security Vulnerability
2014-01-28
http://www.securityfocus.com/bid/63101
IBM Integration Bus XML4J Parser Entity Expansion Denial of Service Vulnerability
2014-01-28
http://www.securityfocus.com/bid/63224
Oracle Java SE CVE-2013-5802 Remote Security Vulnerability
2014-01-28
http://www.securityfocus.com/bid/63135
Oracle Java SE CVE-2013-5809 Remote Security Vulnerability
2014-01-28
http://www.securityfocus.com/bid/63118
Microsoft Bing for Android Unspecified Arbitrary Code Execution Vulnerability
2014-01-28
http://www.securityfocus.com/bid/65128
Dell Kace 1000 Systems Management Appliance DS-2014-001 Multiple SQL Injection Vulnerabilities
2014-01-28
http://www.securityfocus.com/bid/65029
Multiple Generel Electric Products 'gefebt.exe' Shell Upload Vulnerability
2014-01-28
http://www.securityfocus.com/bid/65124
CS-Cart Multiple Cross Site Scripting Vulnerabilities
2014-01-28
http://www.securityfocus.com/bid/65115
IBM Java CVE-2013-4002 Denial of Service Vulnerability
2014-01-28
http://www.securityfocus.com/bid/61310
GitLab HTML Injection Vulnerability
2014-01-28
http://www.securityfocus.com/bid/64490
IBM Sterling B2B Integrator and IBM Sterling File Gateway CVE-2013-5409 SQL-Injection Vulnerability
2014-01-28
http://www.securityfocus.com/bid/64442
IBM Sterling B2B Integrator and Sterling File Gateway Unspecified Cross Site Scripting Vulnerability
2014-01-28
http://www.securityfocus.com/bid/64443
IBM Sterling B2B Integrator and Sterling File Gateway CVE-2013-5413 Security Bypass Vulnerabilty
2014-01-28
http://www.securityfocus.com/bid/64448
IBM Sterling B2B Integrator and Sterling File Gateway Unspecified Frame Injection Vulnerability
2014-01-28
http://www.securityfocus.com/bid/64449
IBM Sterling B2B Integrator and Sterling File Gateway CVE-2013-5411 Link Injection Vulnerability
2014-01-28
http://www.securityfocus.com/bid/64447
IBM Sterling B2B Integrator and Sterling File Gateway Cross Site Scripting Vulnerability
2014-01-28
http://www.securityfocus.com/bid/64446
Oracle Outside In Technology CVE-2013-5763 Stack Buffer Overflow Vulnerability
2014-01-28
http://www.securityfocus.com/bid/63741
WordPress Newsletter Manager Plugin Multiple Cross Site Scripting Vulnerabilities
2014-01-28
http://www.securityfocus.com/bid/53523
Oracle Java SE CVE-2013-5803 Remote Security Vulnerability
2014-01-28
http://www.securityfocus.com/bid/63082
Oracle Java SE CVE-2013-5780 Remote Security Vulnerability
2014-01-28
http://www.securityfocus.com/bid/63115
Media Library Categories Multiple Cross Site Scripting Vulnerabilities
2014-01-28
http://www.securityfocus.com/bid/53524
WordPress Soundcloud Is Gold 'width' Parameter Cross Site Scripting Vulnerability
2014-01-28
http://www.securityfocus.com/bid/53537
Emerson Network Power Avocent MergePoint Unity 2016 KVM Directory Traversal Vulnerability
2014-01-28
http://www.securityfocus.com/bid/65105
Cisco TelePresence System Arbitrary Command Execution Vulnerability
2014-01-28
http://www.securityfocus.com/bid/65071
CPAN 'Proc::Daemon' Module Insecure File Permissions Vulnerability
2014-01-28
http://www.securityfocus.com/bid/64372
Exploit
27.1.2014
Bugtraq
Malware
Phishing
service@paypal.co.uk | 26th January 2014 |
PayPal | 26th January 2014 |
NATWEST PLC | 26th January 2014 |
NatWest Bank | 26th January 2014 |
RBS | 26th January 2014 |
Natwest | 26th January 2014 |
RBS | 26th January 2014 |
NatWest Bank | 25th January 2014 |
Bank of America | 25th January 2014 |
Vulnerebility
Linux Kernel 'x25_parse_facilities()' Remote Denial of Service Vulnerability
2014-01-27
http://www.securityfocus.com/bid/44642
Linux Kernel 'IFF_TX_SKB_SHARING' Local Denial of Service Vulnerability
2014-01-27
http://www.securityfocus.com/bid/50756
Apache HTTP Server CVE-2011-3192 Denial Of Service Vulnerability
2014-01-27
http://www.securityfocus.com/bid/49303
Linux Kernel 'net/ieee802154/dgram.c' Local Information Disclosure Vulnerability
2014-01-27
http://www.securityfocus.com/bid/64747
Linux Kernel iptables '--syn' Rules Security Bypass Vulnerability
2014-01-27
http://www.securityfocus.com/bid/53733
Linux Kernel '/proc/interrupts' Password Length Local Information Disclosure Weakness
2014-01-27
http://www.securityfocus.com/bid/50573
Oracle Java SE CVE-2013-5848 Remote Security Vulnerability
2014-01-27
http://www.securityfocus.com/bid/63124
Linux Kernel 'SNDRV_HDSP_IOCTL_GET_CONFIG_INFO' IOCTL Local Information Disclosure Vulnerability
2014-01-27
http://www.securityfocus.com/bid/45058
Oracle Java SE CVE-2013-5812 Remote Security Vulnerability
2014-01-27
http://www.securityfocus.com/bid/63126
HP Performance Insight Multiple Unspecified Security Vulnerabilities
2014-01-27
http://www.securityfocus.com/bid/53415
Linux Kernel CIFS NULL Pointer Dereference Denial of Service Vulnerability
2014-01-27
http://www.securityfocus.com/bid/59064
Oracle Java SE CVE-2013-2439 Remote Java Runtime Environment Vulnerability
2014-01-27
http://www.securityfocus.com/bid/59178
QEMU KVM 'virtio-blk' Driver Local Privilege Escalation Vulnerability
2014-01-27
http://www.securityfocus.com/bid/47546
Oracle Java SE CVE-2013-5818 Remote Security Vulnerability
2014-01-27
http://www.securityfocus.com/bid/63157
Linux Kernel 'apparmor_setprocattr()' Local Denial of Service Vulnerability
2014-01-27
http://www.securityfocus.com/bid/50172
Oracle Java SE CVE-2013-2455 Remote Code Execution Vulnerability
2014-01-27
http://www.securityfocus.com/bid/60619
Linux Kernel CVE-2013-4470 Multiple Local Memory Corruption Vulnerabilities
2014-01-27
http://www.securityfocus.com/bid/63359
Oracle Java SE and Java for Business CVE-2010-3570 Remote Deployment Toolkit Vulnerability
2014-01-27
http://www.securityfocus.com/bid/44020
Oracle Java SE CVE-2013-2454 Remote Security Vulnerability
2014-01-27
http://www.securityfocus.com/bid/60650
Linux Kernel 'SG_IO IOCTL' SCSI Request Local Privilege Escalation Vulnerability
2014-01-27
http://www.securityfocus.com/bid/51176
HP Network Node Manager i CVE-2012-3275 Remote Unspecified Unauthorized Access Vulnerability
2014-01-27
http://www.securityfocus.com/bid/56822
Oracle Java SE and Java for Business CVE-2010-3556 Remote 2D Vulnerability
2014-01-27
http://www.securityfocus.com/bid/43971
RETIRED: HP Printers and HP Digital Sender Firmware Update Remote Code Execution Vulnerability
2014-01-27
http://www.securityfocus.com/bid/51324
Linux Kernel 'ext4_ext_insert_extent()' Local Denial of Service Vulnerability
2014-01-27
http://www.securityfocus.com/bid/50322
ISC BIND 9 Recursive Queries Remote Denial of Service Vulnerability
2014-01-27
http://www.securityfocus.com/bid/50690
Linux Kernel 'irda_bind()' Null Pointer Dereference Vulnerability
2014-01-27
http://www.securityfocus.com/bid/42900
Perl CVE-2013-1667 Input Rehashing Denial of Service Vulnerability
2014-01-27
http://www.securityfocus.com/bid/58311
Linux Kernel Rose Protocol 'srose_ndigis' Heap Memory Corruption Vulnerability
2014-01-27
http://www.securityfocus.com/bid/43368
Linux Kernel epoll Subsystem 'eventpoll.c' Multiple Local Denial of Service Vulnerabilities
2014-01-27
http://www.securityfocus.com/bid/46630
Oracle Java SE CVE-2013-5777 Remote Security Vulnerability
2014-01-27
http://www.securityfocus.com/bid/63140
Exploit
Ability Mail Server 2013 - Password Reset CSRF from Stored XSS (Web UI)
Oracle Outside In MDB File Parsing Stack Based Buffer Overflow PoC
Mozilla Thunderbird 17.0.6 - Input Validation Filter Bypass
25.1.2014
Bugtraq
Security Vulnerabilities in Apache Cordova / PhoneGap 2014-01-24
mgeorgiev utexas edu
[CTF] nullcon HackIM 2014 will start at 24-01-2014, when the clock will strike at 11:59 (+5:30 GMT) 2014-01-24
nullcon (nullcon nullcon net)
[CVE-2014-1664] GoToMeeting Information Disclosure via Logging Output (Android) 2014-01-24
cjlacayo gmail com
Malware
Phishing
Bank of America | 25th January 2014 |
Natwest | 24th January 2014 |
NatWest | 24th January 2014 |
Vulnerebility
Oracle Java SE CVE-2013-2464 Memory Corruption Vulnerability
2014-01-25
http://www.securityfocus.com/bid/60631
Linux Kernel 'agp_ioctl()' Local Privilege Escalation Vulnerability
2014-01-25
http://www.securityfocus.com/bid/47843
Linux Kernel DRM 'drivers/gpu/drm/crm_crtc.c' IOCTL Local Privilege Escalation Vulnerability
2014-01-25
http://www.securityfocus.com/bid/51371
Oracle Java SE CVE-2013-2461 Remote Security Vulnerability
2014-01-25
http://www.securityfocus.com/bid/60645
Linux Kernel 'nfs-utils' Remote Unauthorized Access Vulnerability
2014-01-25
http://www.securityfocus.com/bid/48465
Oracle Java SE and Java for Business CVE-2010-3567 Remote 2D Vulnerability
2014-01-25
http://www.securityfocus.com/bid/43992
Oracle Java SE CVE-2013-1569 Stack Buffer Overflow Vulnerability
2014-01-25
http://www.securityfocus.com/bid/59166
Linux Kernel 'drivers/scsi/bfa/bfa_core.c' Denial of Service Vulnerability
2014-01-25
http://www.securityfocus.com/bid/45262
Linux Kernel Headroom Check 'udp6_ufo_fragment()' Remote Denial of Service Vulnerability
2014-01-25
http://www.securityfocus.com/bid/50751
Linux Kernel 'agp_ioctl()' Local Privilege Escalation Vulnerability
2014-01-25
http://www.securityfocus.com/bid/47534
Linux Kernel 'drivers/media/radio/si4713-i2c.c' Remote Buffer Overflow Vulnerability
2014-01-25
http://www.securityfocus.com/bid/48804
Linux Kernel CVE-2013-3236 Local Information Disclosure Vulnerability
2014-01-25
http://www.securityfocus.com/bid/59391
Oracle Java SE and Java for Business CVE-2010-3565 JPEGImageWriter.writeImage Vulnerability
2014-01-25
http://www.securityfocus.com/bid/43985
Oracle Java SE CVE-2013-5830 Remote Security Vulnerability
2014-01-25
http://www.securityfocus.com/bid/63121
Linux Kernel 'PKT_CTRL_CMD_STATUS' Invalid Pointer Dereference Denial of Service Vulnerability
2014-01-25
http://www.securityfocus.com/bid/43551
Linux Kernel 'net/ipx/af_ipx.c' Local Information Disclosure Vulnerability
2014-01-25
http://www.securityfocus.com/bid/64741
Linux Kernel '/proc/PID/io' Local Information Disclosure Vulnerability
2014-01-25
http://www.securityfocus.com/bid/49408
Oracle Java SE CVE-2013-5802 Remote Security Vulnerability
2014-01-25
http://www.securityfocus.com/bid/63135
Oracle Java SE CVE-2013-2448 Remote Code Execution Vulnerability
2014-01-25
http://www.securityfocus.com/bid/60640
Linux Kernel CVE-2013-0313 NULL Pointer Dereference Denial of Service Vulnerability
2014-01-25
http://www.securityfocus.com/bid/58071
Linux Kernel 'setup_arg_pages()' Denial of Service Vulnerability
2014-01-25
http://www.securityfocus.com/bid/44301
Linux Kernel 'drivers/isdn/mISDN/socket.c' Local Information Disclosure Vulnerability
2014-01-25
http://www.securityfocus.com/bid/64743
Linux Kernel Alpha Specific Commands Memory Corruption and Information Disclosure Vulnerabilities
2014-01-25
http://www.securityfocus.com/bid/48254
Oracle Java SE and Java for Business CVE-2010-3553 Remote Swing Vulnerability
2014-01-25
http://www.securityfocus.com/bid/44035
Oracle Java SE CVE-2013-5774 Remote Security Vulnerability
2014-01-25
http://www.securityfocus.com/bid/63128
Linux Kernel 'dns_key.c' NULL Pointer Dereference Denial of Service Vulnerability
2014-01-25
http://www.securityfocus.com/bid/46732
Linux Kernel Network Bridge NULL Pointer Dereference Denial of Service Vulnerability
2014-01-25
http://www.securityfocus.com/bid/50417
Linux Kernel 'i.MX' Clock Infrastructure Remote Denial of Service Vulnerability
2014-01-25
http://www.securityfocus.com/bid/55258
Oracle Java SE CVE-2013-2459 Remote Security Vulnerability
2014-01-25
http://www.securityfocus.com/bid/60647
Linux Kernel 'l2tp_ip_sendmsg()' and 'pppol2tp_sendmsg()' Denial of Service Vulnerability
2014-01-25
http://www.securityfocus.com/bid/44762
Exploit
24.1.2014
Bugtraq
Cross-Site Scripting (XSS) in Komento Joomla Extension 2014-01-23
High-Tech Bridge Security Research (advisory htbridge com)
SQL Injection in JV Comment Joomla Extension 2014-01-23
High-Tech Bridge Security Research (advisory htbridge com)
Reflected cross-site scripting (XSS) vulnerability in Mediatrix Web Management Interface login page 2014-01-23
tudor enache helpag com
Malware
Phishing
NatWest Card | 23rd January 2014 |
NatWest | 23rd January 2014 |
Vulnerebility
DenyHosts 'regex.py' Remote Denial of Service Vulnerability
2014-01-24
http://www.securityfocus.com/bid/64478
Cubic CMS Multiple Security Vulnerabilities
2014-01-24
http://www.securityfocus.com/bid/64660
WordPress WP Forum Server Plugin SQL Injection and Cross Site Scripting Vulnerabilities
2014-01-24
http://www.securityfocus.com/bid/53530
Hiox Guest Book 'add.php' Multiple Cross Site Scripting Vulnerabilities
2014-01-24
http://www.securityfocus.com/bid/64683
Cisco NX-OS Software TACACS+ Server Local Privilege Escalation Vulnerability
2014-01-24
http://www.securityfocus.com/bid/65083
OpenStack Heat ReST API Validation Privilage Escalation Vulnerability
2014-01-24
http://www.securityfocus.com/bid/64257
OpenStack Heat CFN Policy CVE-2013-6426 Security Bypass Vulnerability
2014-01-24
http://www.securityfocus.com/bid/64243
Command School Student Management System Multiple Security Vulnerabilities
2014-01-24
http://www.securityfocus.com/bid/64707
UAEPD Shopping Cart Script Multiple SQL Injection Vulnerabilities
2014-01-24
http://www.securityfocus.com/bid/64734
Apache Struts CVE-2013-2251 Multiple Remote Command Execution Vulnerabilities
2014-01-24
http://www.securityfocus.com/bid/61189
b2ePMS 'verify_user.php' SQL Injection and Authentication Bypass Vulnerabilities
2014-01-24
http://www.securityfocus.com/bid/53505
Horde Kronolith Multiple Cross Site Scripting Vulnerabilities
2014-01-24
http://www.securityfocus.com/bid/53731
GetSimple CMS Multiple HTML Injection and Cross Site Scripting Vulnerabilities
2014-01-24
http://www.securityfocus.com/bid/53501
Oracle Java SE CVE-2013-5843 Remote Security Vulnerability
2014-01-24
http://www.securityfocus.com/bid/63151
Oracle Outside In Technology CVE-2013-5791 Stack Buffer Overflow Vulnerability
2014-01-24
http://www.securityfocus.com/bid/63076
Joomla! JV Comment Extension 'id' Parameter SQL Injection Vulnerability
2014-01-24
http://www.securityfocus.com/bid/64661
OpenStack Neutron and Nova CVE-2013-6419 Information Disclosure Vulnerability
2014-01-24
http://www.securityfocus.com/bid/64250
XWork 'ParameterInterceptor' Class OGNL (CVE-2010-1870) Security Bypass Vulnerability
2014-01-24
http://www.securityfocus.com/bid/41592
OpenStack Keystone EC2-style Tokens Validation Privilage Escalation Vulnerability
2014-01-24
http://www.securityfocus.com/bid/64253
Network Security Services 'ssl_Do1stHandshake()' Function Information Disclosure Vulnerability
2014-01-24
http://www.securityfocus.com/bid/64944
Mozilla Netscape Portable Runtime CVE-2013-5607 Integer Overflow Vulnerability
2014-01-24
http://www.securityfocus.com/bid/63802
Oracle MySQL Server CVE-2014-0386 Remote Security Vulnerability
2014-01-24
http://www.securityfocus.com/bid/64904
Oracle MySQL Server CVE-2013-5908 Remote Security Vulnerability
2014-01-24
http://www.securityfocus.com/bid/64896
Oracle MySQL Server CVE-2014-0402 Remote Security Vulnerability
2014-01-24
http://www.securityfocus.com/bid/64908
Oracle MySQL Server CVE-2014-0401 Remote Security Vulnerability
2014-01-24
http://www.securityfocus.com/bid/64898
Oracle MySQL Server CVE-2013-5891 Remote Security Vulnerability
2014-01-24
http://www.securityfocus.com/bid/64891
Oracle MySQL Server CVE-2014-0420 Remote Security Vulnerability
2014-01-24
http://www.securityfocus.com/bid/64888
Oracle MySQL Server CVE-2014-0412 Remote Security Vulnerability
2014-01-24
http://www.securityfocus.com/bid/64880
Oracle MySQL Server CVE-2014-0393 Remote Security Vulnerability
2014-01-24
http://www.securityfocus.com/bid/64877
Oracle MySQL Server CVE-2014-0437 Remote Security Vulnerability
2014-01-24
http://www.securityfocus.com/bid/64849
Exploit
NCH Software Express Burn Plus 4.68 (.EBP) Project File Buffer Overflow
Daum Game 1.1.0.5 ActiveX (IconCreate Method) - Stack Buffer Overflow
HP Data Protector Backup Client Service Directory Traversal
Ammyy Admin 3.2 - Authentication Bypass
MW6 Technologies Aztec ActiveX (Data param) - Buffer Overflow
MW6 Technologies DataMatrix ActiveX (Data param) - Buffer Overflow
MW6 Technologies MaxiCode ActiveX (Data param) - Buffer Overflow
23.1.2014
Bugtraq
[ MDVSA-2014:020 ] x11-server 2014-01-22
security mandriva com
Cisco Security Advisory: Cisco TelePresence System Software Command Execution Vulnerability 2014-01-22
Cisco Systems Product Security Incident Response Team (psirt cisco com)
Cisco Security Advisory: Cisco TelePresence ISDN Gateway D-Channel Denial of Service Vulnerability 2014-01-22
Cisco Systems Product Security Incident Response Team (psirt cisco com)
Cisco Security Advisory: Cisco TelePresence Video Communication Server SIP Denial of Service Vulnerability 2014-01-22
Cisco Systems Product Security Incident Response Team (psirt cisco com)
Malware
Phishing
Vulnerebility
VMware vCloud Director Cross Site Request Forgery Vulnerabilities
2014-01-23
http://www.securityfocus.com/bid/64993
Multiple VMWare Products Local Denial Of Service Vulnerability
2014-01-23
http://www.securityfocus.com/bid/64994
VMware ESXi and ESX NFC NULL Pointer Dereference Denial of Service Vulnerability
2014-01-23
http://www.securityfocus.com/bid/64995
Apple Mac OS X Text Tracks CVE-2013-1024 Remote Code Execution Vulnerability
2014-01-23
http://www.securityfocus.com/bid/60368
Linux Kernel Multiple Local Information Disclosure Vulnerabilities
2014-01-23
http://www.securityfocus.com/bid/60254
Linux Kernel KVM 'apic_get_tmcct()' Function Denial of Service Vulnerability
2014-01-23
http://www.securityfocus.com/bid/64270
Linux Kernel CVE-2013-6368 Local Privilege Escalation Vulnerability
2014-01-23
http://www.securityfocus.com/bid/64291
Linux Kernel CVE-2013-4470 Multiple Local Memory Corruption Vulnerabilities
2014-01-23
http://www.securityfocus.com/bid/63359
Zabbix CVE-2013-6824 Remote Command Execution Vulnerability
2014-01-23
http://www.securityfocus.com/bid/64311
Google Chrome Prior to 21.0.1180.89 Multiple Security Vulnerabilities
2014-01-23
http://www.securityfocus.com/bid/55331
Google Chrome Prior to 20.0.1132.43 Multiple Security Vulnerabilities
2014-01-23
http://www.securityfocus.com/bid/54203
Google Chrome Prior to 23.0.1271.91 Multiple Security Vulnerabilities
2014-01-23
http://www.securityfocus.com/bid/56684
libxml2 CVE-2012-2807 Multiple Integer Overflow Vulnerabilities
2014-01-23
http://www.securityfocus.com/bid/54718
libxml2 Hash Collision Denial Of Service Vulnerability
2014-01-23
http://www.securityfocus.com/bid/52107
Google Chrome Prior to 19 Multiple Security Vulnerabilities
2014-01-23
http://www.securityfocus.com/bid/53540
WebKit CVE-2013-5128 Unspecified Memory Corruption Vulnerability
2014-01-23
http://www.securityfocus.com/bid/62569
WebKit CVE-2013-5127 Unspecified Memory Corruption Vulnerability
2014-01-23
http://www.securityfocus.com/bid/62568
Google Chrome Prior to 27.0.1453.93 CVE-2013-2842 Use-After-Free Remote Code Execution Vulnerability
2014-01-23
http://www.securityfocus.com/bid/60067
WebKit CVE-2013-5125 Unspecified Memory Corruption Vulnerability
2014-01-23
http://www.securityfocus.com/bid/62560
WebKit CVE-2013-5126 Unspecified Memory Corruption Vulnerability
2014-01-23
http://www.securityfocus.com/bid/62567
WebKit CVE-2013-1047 Unspecified Memory Corruption Vulnerability
2014-01-23
http://www.securityfocus.com/bid/62563
WebKit CVE-2013-1045 Unspecified Memory Corruption Vulnerability
2014-01-23
http://www.securityfocus.com/bid/62558
WebKit CVE-2013-1046 Unspecified Memory Corruption Vulnerability
2014-01-23
http://www.securityfocus.com/bid/62559
WebKit CVE-2013-1044 Unspecified Memory Corruption Vulnerability
2014-01-23
http://www.securityfocus.com/bid/62571
WebKit CVE-2013-1041 Unspecified Memory Corruption Vulnerability
2014-01-23
http://www.securityfocus.com/bid/62556
WebKit CVE-2013-1038 Unspecified Memory Corruption Vulnerability
2014-01-23
http://www.securityfocus.com/bid/62565
WebKit CVE-2013-1042 Unspecified Memory Corruption Vulnerability
2014-01-23
http://www.securityfocus.com/bid/62557
WebKit CVE-2013-1043 Unspecified Memory Corruption Vulnerability
2014-01-23
http://www.securityfocus.com/bid/62570
WebKit CVE-2013-1037 Unspecified Memory Corruption Vulnerability
2014-01-23
http://www.securityfocus.com/bid/62551
WebKit CVE-2013-1040 Unspecified Memory Corruption Vulnerability
2014-01-23
http://www.securityfocus.com/bid/62554
Exploit
iTechClassifieds 3.03.057 - SQL Injection
godontologico 5 - SQL Injection (0day)
Simple e-document 1.31 - Login bypass
PizzaInn_Project - SQL Injection
mySeatXT 0.2134 - SQL Injection
Easy POS System - SQL Injection (login.php)
Cells Blog 3.3 - XSS Reflected & Blind SQLite Injection
Adult Webmaster PHP - Password Disclosure
22.1.2014
Bugtraq
[ MDVSA-2014:017 ] net-snmp 2014-01-22
security mandriva com
[ MDVSA-2014:016 ] spice 2014-01-22
security mandriva com
[ MDVSA-2014:015 ] cups 2014-01-22
security mandriva com
SEC Consult SA-20140122-0 :: Critical vulnerabilities in T-Mobile HOME NET Router LTE (Huawei B593u-12) 2014-01-22
SEC Consult Vulnerability Lab (research sec-consult com)
[FFRRA-20131213] Crafted ICMP ECHO REQUEST can cause denial of service on Juniper SSG20 2014-01-22
research-feedback ffri jp
[ MDVSA-2014:014 ] php 2014-01-21
security mandriva com
[ MDVSA-2014:013 ] libxfont 2014-01-21
security mandriva com
[SECURITY] [DSA 2847-1] drupal7 security update 2014-01-20
Salvatore Bonaccorso (carnil debian org)
[ MDVSA-2014:012 ] nss 2014-01-20
security mandriva com
[ MDVSA-2014:011 ] java-1.7.0-openjdk 2014-01-20
security mandriva com
Secunia Research: OpenPNE PHP Object Injection Vulnerability 2014-01-20
Secunia Research (remove-vuln secunia com)
Malware
Phishing
service@paypal.co.uk | 21st January 2014 |
Barclays Bank | 21st January 2014 |
Google Docs noreply@google.com | 21st January 2014 |
Vulnerebility
Oracle Java SE CVE-2013-5789 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/63156
Oracle Java SE CVE-2014-0418 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/64917
Oracle Java SE CVE-2014-0375 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/64916
Oracle Java SE CVE-2013-5784 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/63098
Oracle Java SE CVE-2013-5830 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/63121
Oracle Java SE CVE-2013-5843 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/63151
Oracle Java SE CVE-2013-5802 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/63135
X.Org X Server 'dixfonts.c' Use-After-Free Remote Memory Corruption Vulnerability
2014-01-22
http://www.securityfocus.com/bid/62892
X.Org X Server CVE-2013-6424 Local Denial of Service Vulnerability
2014-01-22
http://www.securityfocus.com/bid/64127
Oracle Java SE CVE-2013-5790 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/63102
Juniper Networks ScreenOS CVE-2013-6958 Unspecified Denial of Service Vulnerability
2014-01-22
http://www.securityfocus.com/bid/64260
Oracle MySQL Server CVE-2013-5891 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/64891
Oracle Java SE CVE-2013-5831 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/63129
Oracle Java SE CVE-2013-5778 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/63134
Oracle Java SE CVE-2013-5832 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/63158
IBM Java CVE-2013-5458 Unspecified Arbitrary Code Execution Vulnerability
2014-01-22
http://www.securityfocus.com/bid/63620
Oracle Java SE CVE-2013-5809 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/63118
Oracle Java SE CVE-2013-5818 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/63157
Oracle Java SE CVE-2013-5817 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/63146
Oracle Java SE CVE-2014-0422 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/64921
Oracle Java SE and JavaFX CVE-2013-5870 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/64929
HPLIP CVE-2013-6427 Insecure Auto Update Feature Man in The Middle Vulnerability
2014-01-22
http://www.securityfocus.com/bid/64131
Net-SNMP SNMPD AgentX Subagent Timeout Denial of Service Vulnerability
2014-01-22
http://www.securityfocus.com/bid/64048
Gnome GMIME_UUENCODE_LEN() Macro Buffer Overflow Vulnerability
2014-01-22
http://www.securityfocus.com/bid/38078
HPLIP 'pkit.py' Insecure Temporary File Creation Vulnerability
2014-01-22
http://www.securityfocus.com/bid/63959
Oracle Java SE CVE-2014-0424 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/64919
Oracle Java SE CVE-2014-0416 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/64937
Oracle Java SE CVE-2014-0408 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/64910
Oracle Java SE CVE-2013-5904 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/64890
Oracle Java SE CVE-2013-5896 Remote Security Vulnerability
2014-01-22
http://www.securityfocus.com/bid/64926
Exploit
21.1.2014
Bugtraq
Malware
Phishing
Vulnerebility
HP Storage Data Protector Multiple Remote Code Execution Vulnerabilities
2014-01-21
http://www.securityfocus.com/bid/64647
RETIRED: Oracle January 2014 Critical Patch Update Multiple Vulnerabilities
2014-01-21
http://www.securityfocus.com/bid/64758
Network Security Services 'ssl_Do1stHandshake()' Function Information Disclosure Vulnerability
2014-01-21
http://www.securityfocus.com/bid/64944
Moodle 'profile' Fields Multiple Cross Site Request Forgery Vulnerabilities
2014-01-21
http://www.securityfocus.com/bid/65021
Starbucks CVE-2014-0647 Information Disclosure Vulnerability
2014-01-21
http://www.securityfocus.com/bid/64942
IBM Tivoli Federated Identity Manager Business Gateway Security Bypass Vulnerability
2014-01-21
http://www.securityfocus.com/bid/64999
OpenSSL TLS Handshake Null Pointer Dereference Denial Of Service Vulnerability
2014-01-21
http://www.securityfocus.com/bid/64691
Cxxtools CVE-2013-7298 Infinite Loop Denial of Service Vulnerability
2014-01-21
http://www.securityfocus.com/bid/65020
Drupal Ubercart Module Session Fixation Vulnerability
2014-01-21
http://www.securityfocus.com/bid/64436
Drupal Anonymous Posting Module HTML Injection Vulnerability
2014-01-21
http://www.securityfocus.com/bid/64969
cURL/libcURL 'Curl_sasl_create_digest_md5_message()' Stack Buffer Overflow Vulnerability
2014-01-20
http://www.securityfocus.com/bid/57842
cURL/libcURL 'tailmatch()' Function Information Disclosure Vulnerability
2014-01-20
http://www.securityfocus.com/bid/59058
cURL/libcURL SSL Certificate Host Name Validation Security Bypass Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64431
cURL/libcURL 'curl_easy_unescape()' Heap Memory Corruption Vulnerability
2014-01-20
http://www.securityfocus.com/bid/60737
Linux Kernel 'hamradio/yam.c' Local Information Disclosure Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64954
Linux Kernel 'fpu-internal.h' Local Denial of Service Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64781
Drupal Entity API Module Multiple Access Bypass Vulnerabilities
2014-01-20
http://www.securityfocus.com/bid/64729
ISC BIND NSEC3 Signed Zones Queries Handling Remote Denial of Service Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64801
RETIRED: Microsoft November 2013 Advance Notification Multiple Vulnerabilities
2014-01-20
http://www.securityfocus.com/bid/63604
RETIRED: Microsoft December 2013 Advance Notification Multiple Vulnerabilities
2014-01-20
http://www.securityfocus.com/bid/64083
RETIRED: Adobe Reader and Acrobat APSB14-01 Prenotification Multiple Vulnerabilities
2014-01-20
http://www.securityfocus.com/bid/64763
RETIRED: Microsoft January 2014 Advance Notification Multiple Vulnerabilities
2014-01-20
http://www.securityfocus.com/bid/64757
Oracle VM VirtualBox CVE-2014-0407 Local Security Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64913
Oracle VM VirtualBox CVE-2014-0405 Local Security Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64900
Oracle VM VirtualBox CVE-2014-0406 Local Security Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64905
Oracle VM VirtualBox CVE-2014-0404 Local Security Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64911
Oracle VM VirtualBox CVE-2013-5892 Local Security Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64909
Oracle Oracle VM Virtual Box CVE-2012-3221 Local Security Vulnerability
2014-01-20
http://www.securityfocus.com/bid/56045
Plone 'in_portal.py' CVE-2013-4200 Session Hijacking Vulnerability
2014-01-20
http://www.securityfocus.com/bid/61964
Poppler 'JBIG2Stream::readSegments()' Method Denial of Service Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64636
Exploit
MuPDF 1.3 - Stack-based Buffer Overflow in xps_parse_color()
Doodle4Gift - Multiple Vulnerabilities
AfterLogic Pro and Lite 7.1.1.1 - Stored XSS
Teracom Modem T2-B-Gawv1.4U10Y-BI - Stored XSS Vulnerability
BLUE COM Router 5360/52018 - Password Reset Exploit
20.1.2014
Bugtraq
Malware
Phishing
ebilling@bt.com | 20th January 2014 |
PayPal.com | 20th January 2014 |
Bank of America Alert | 20th January 2014 |
Bank of America Alert: Thats | |
Mint Credit card | 19th January 2014 |
Natwest | 19th January 2014 |
Tesco | 19th January 2014 |
Google Drive | 18th January 2014 |
Vulnerebility
cURL/libcURL 'Curl_sasl_create_digest_md5_message()' Stack Buffer Overflow Vulnerability
2014-01-20
http://www.securityfocus.com/bid/57842
cURL/libcURL 'tailmatch()' Function Information Disclosure Vulnerability
2014-01-20
http://www.securityfocus.com/bid/59058
cURL/libcURL SSL Certificate Host Name Validation Security Bypass Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64431
cURL/libcURL 'curl_easy_unescape()' Heap Memory Corruption Vulnerability
2014-01-20
http://www.securityfocus.com/bid/60737
Linux Kernel 'hamradio/yam.c' Local Information Disclosure Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64954
Linux Kernel 'fpu-internal.h' Local Denial of Service Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64781
Drupal Entity API Module Multiple Access Bypass Vulnerabilities
2014-01-20
http://www.securityfocus.com/bid/64729
ISC BIND NSEC3 Signed Zones Queries Handling Remote Denial of Service Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64801
RETIRED: Microsoft November 2013 Advance Notification Multiple Vulnerabilities
2014-01-20
http://www.securityfocus.com/bid/63604
RETIRED: Microsoft December 2013 Advance Notification Multiple Vulnerabilities
2014-01-20
http://www.securityfocus.com/bid/64083
RETIRED: Adobe Reader and Acrobat APSB14-01 Prenotification Multiple Vulnerabilities
2014-01-20
http://www.securityfocus.com/bid/64763
RETIRED: Microsoft January 2014 Advance Notification Multiple Vulnerabilities
2014-01-20
http://www.securityfocus.com/bid/64757
Oracle VM VirtualBox CVE-2014-0407 Local Security Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64913
Oracle VM VirtualBox CVE-2014-0405 Local Security Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64900
Oracle VM VirtualBox CVE-2014-0406 Local Security Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64905
Oracle VM VirtualBox CVE-2014-0404 Local Security Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64911
Oracle VM VirtualBox CVE-2013-5892 Local Security Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64909
Oracle Oracle VM Virtual Box CVE-2012-3221 Local Security Vulnerability
2014-01-20
http://www.securityfocus.com/bid/56045
Plone 'in_portal.py' CVE-2013-4200 Session Hijacking Vulnerability
2014-01-20
http://www.securityfocus.com/bid/61964
Poppler 'JBIG2Stream::readSegments()' Method Denial of Service Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64636
gdomap Multiple Local Information Disclosure Vulnerabilities
2014-01-20
http://www.securityfocus.com/bid/40005
gdomap Arbitrary Configuration File Line Count 'load_iface()' Integer Overflow Vulnerability
2014-01-20
http://www.securityfocus.com/bid/40062
libexif Multiple Remote Vulnerabilities
2014-01-20
http://www.securityfocus.com/bid/54437
Perl CVE-2013-1667 Input Rehashing Denial of Service Vulnerability
2014-01-20
http://www.securityfocus.com/bid/58311
Perl CVE-2012-5195 Heap-Based Memory Corruption Vulnerability
2014-01-20
http://www.securityfocus.com/bid/56287
Perl 'decode_xs()' and 'File::Glob::bsd_glob()' Remote Code Execution Vulnerabilities
2014-01-20
http://www.securityfocus.com/bid/49858
Openswan CVE-2013-2053 DNS TXT Record Buffer Overflow Vulnerability
2014-01-20
http://www.securityfocus.com/bid/59838
Oracle Java SE CVE-2014-0411 Remote Security Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64918
Cisco Secure Access Control System RMI Interface Authorization Bypass Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64983
Oracle Java SE CVE-2014-0417 Remote Security Vulnerability
2014-01-20
http://www.securityfocus.com/bid/64932
Exploit
17.1.2014
Bugtraq
Malware
Phishing
Citi Cards | 17th January 2014 |
Natwest | 16th January 2014 |
NatWest ; | 16th January 2014 |
Natwest | 16th January 2014 |
Pay Pal | 15th January 2014 |
Paypal | 15th January 2014 |
eBilling@bt.com | 15th January 2014 |
Vodafone | 15th January 2014 |
Royal Bank of Scotland | 15th January 2014 |
Apple | 14th January 2014 |
Barclays Internet Banking | 14th January 2014 |
BARCLAYS BANK - THIS MONTH'S | |
Career | 14th January 2014 |
Lloyds | 14th January 2014 |
Vulnerebility
Oracle Siebel Core CVE-2014-0369 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64832
Oracle PeopleSoft Enterprise PeopleTools CVE-2014-0381 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64892
Oracle PeopleSoft Enterprise PeopleTools CVE-2014-0439 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64884
Oracle PeopleSoft Enterprise PeopleTools CVE-2014-0440 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64881
Oracle PeopleSoft Enterprise PeopleTools CVE-2014-0438 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64887
librsvg XML External Entities CVE-2013-1881 Information Disclosure Vulnerability
2014-01-17
http://www.securityfocus.com/bid/62714
Oracle Java SE CVE-2013-5895 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64906
Oracle Java SE CVE-2014-0403 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64920
Oracle Java SE CVE-2014-0424 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64919
Oracle PeopleSoft Enterprise SCM Services Procurement CVE-2014-0425 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64889
Oracle PeopleSoft Enterprise HRMS Human Resources CVE-2014-0388 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64878
MongoDB 'conn' Mongo Object Remote Code Execution Vulnerability
2014-01-17
http://www.securityfocus.com/bid/61309
OpenSSL DTLS Implementations Man in the Middle Multiple Security Bypass Vulnerabilities
2014-01-17
http://www.securityfocus.com/bid/64618
OpenJPEG CVE-2013-6052 Multiple Out of Bounds Memory Corruption Vulnerabilities
2014-01-17
http://www.securityfocus.com/bid/64118
OpenJPEG CVE-2013-1447 Multiple Denial Of Service Vulnerabilities
2014-01-17
http://www.securityfocus.com/bid/64142
OpenJPEG CVE-2013-6887 Multiple Denial Of Service Vulnerabilities
2014-01-17
http://www.securityfocus.com/bid/64140
OpenJPEG CVE-2013-6045 Multiple Remote Heap Based Buffer Overflow Vulnerabilities
2014-01-17
http://www.securityfocus.com/bid/64109
OpenJPEG CVE-2013-6053 Multiple Out of Bounds Memory Corruption Vulnerabilities
2014-01-17
http://www.securityfocus.com/bid/64121
Oracle PeopleSoft Enterprise PeopleTools CVE-2014-0445 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64867
Oracle PeopleSoft Enterprise PeopleTools CVE-2014-0380 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64865
Oracle PeopleSoft Enterprise HRMS CVE-2014-0392 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64874
Oracle PeopleSoft Enterprise HRMS CVE-2013-5909 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64855
Oracle PeopleSoft Enterprise HRMS CVE-2013-5886 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64858
Oracle PeopleSoft Enterprise PeopleTools CVE-2014-0394 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64848
Oracle PeopleSoft Enterprise PeopleTools CVE-2014-0395 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64852
Oracle MySQL Server CVE-2012-3163 Remote MySQL Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/56036
Oracle PeopleSoft Enterprise PeopleTools CVE-2014-0396 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64841
Oracle PeopleSoft Enterprise PeopleTools CVE-2014-0441 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64839
Oracle Java SE CVE-2014-0415 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64899
Oracle PeopleSoft Enterprise PeopleTools CVE-2014-0443 Remote Security Vulnerability
2014-01-17
http://www.securityfocus.com/bid/64844
Exploit
SoapUI 4.6.3 - Remote Code Execution
SerComm Device Remote Code Execution
vTiger CRM SOAP AddEmailAttachment Arbitrary File Upload
CCProxy 7.3 - Integer Overflow Exploit
haneWIN DNS Server 1.5.3 - Denial of Service
Open-Xchange Security Advisory 2014-01-17 2014-01-17
Martin Braun (martin braun open-xchange com)
[security bulletin] HPSBUX02961 SSRT101420 rev.1 - HP-UX Running BIND, Remote Denial of Service (DoS) 2014-01-17
security-alert hp com
[ MDVSA-2014:004 ] nagios 2014-01-16
security mandriva com
[ MDVSA-2014:006 ] libxslt 2014-01-16
security mandriva com
[ MDVSA-2014:005 ] ejabberd 2014-01-16
security mandriva com
[ MDVSA-2014:003 ] nrpe 2014-01-16
security mandriva com
[ MDVSA-2014:002 ] bind 2014-01-16
security mandriva com
SQL Injection in Sexy Polling Joomla Extension 2014-01-16
High-Tech Bridge Security Research (advisory htbridge com)
[HITB-Announce] #HITB2014AMS Call for Papers - FINAL CALL 2014-01-16
Hafez Kamal (aphesz hackinthebox org)
CVE-2013-4200 - Plone URL redirection / Forwarding of cookie data (session hijack) in certain browsers 2014-01-16
Alexandre Herzog (alexandre herzog csnc ch)
Cisco Security Advisory: Multiple Vulnerabilities in Cisco Secure Access Control System 2014-01-15
Cisco Systems Product Security Incident Response Team (psirt cisco com)
[slackware-security] openssl (SSA:2014-013-02) 2014-01-14
Slackware Security Team (security slackware com)
Online OWASP Security Challenges 2014-01-15
Ivan Buetler (ivan buetler csnc ch)
[SECURITY] [DSA 2844-1] djvulibre security update 2014-01-15
Raphael Geissert (geissert debian org)
FreeBSD Security Advisory FreeBSD-SA-14:01.bsnmpd 2014-01-14
FreeBSD Security Advisories (security-advisories freebsd org)
CVE-2013-6429 Fix for XML External Entity (XXE) injection (CVE-2013-4152) in Spring Framework was incomplete 2014-01-14
Pivotal Security Team (security gopivotal com)
[CVE-2014-1238] Cross Site Scripting(XSS) in q-pulse application 2014-01-14
ali hussein helpag com
FreeBSD Security Advisory FreeBSD-SA-14:02.ntpd 2014-01-14
FreeBSD Security Advisories (security-advisories freebsd org)
FreeBSD Security Advisory FreeBSD-SA-14:04.bind 2014-01-14
FreeBSD Security Advisories (security-advisories freebsd org)
FreeBSD Security Advisory FreeBSD-SA-14:03.openssl 2014-01-14
FreeBSD Security Advisories (security-advisories freebsd org)
CVE-2013-6430 Possible XSS when using Spring MVC 2014-01-14
Pivotal Security Team (security gopivotal com)
[slackware-security] libXfont (SSA:2014-013-01) 2014-01-14
Slackware Security Team (security slackware com)
[slackware-security] samba (SSA:2014-013-04) 2014-01-14
Slackware Security Team (security slackware com)
[slackware-security] php (SSA:2014-013-03) 2014-01-14
Slackware Security Team (security slackware com)
[CVE-2014-0647] Insecure Data Storage of User Data Elements in Starbucks v2.6.1 iOS mobile application 2014-01-14
Daniel Wood (daniel wood owasp org)
[security bulletin] HPSBUX02960 SSRT101419 rev.1 - HP-UX Running NTP, Remote Denial of Service (DoS) 2014-01-13
security-alert hp com
[SECURITY] [DSA 2843-1] graphviz security update 2014-01-13
Salvatore Bonaccorso (carnil debian org)
[SECURITY] [DSA 2842-1] libspring-java security update 2014-01-13
Moritz Muehlenhoff (jmm debian org)
[ MDVSA-2014:001 ] kernel 2014-01-13
security mandriva com
NETGEAR WNR1000v3 Password Recovery Vulnerability 2014-01-12
c1ph04mail gmail com