Databáze Hot News 2017 July - 2017 January February March April May June July August September October November December
31.7.2017
Bugtraq
Malware
Trojan.Ismagent
Trojan.Karagany.B
Phishing
Vulnerebility
Oracle MySQL Server CVE-2017-3653 Remote Security Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99810
Oracle MySQL Server CVE-2017-3641 Remote Security Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99767
Oracle MySQL Connectors/MySQL Server CVE-2017-3635 Remote Security Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99730
Oracle MySQL Server CVE-2017-3652 Remote Security Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99805
Oracle MySQL Server CVE-2017-3636 Local Security Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99736
Oracle MySQL Server CVE-2017-3648 Remote Security Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99789
Oracle MySQL Server CVE-2017-3651 Remote Security Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99802
Linux kernel CVE-2017-9077 Local Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/98583
Linux Kernel CVE-2017-1000363 Integer Overflow Vulnerability
2017-07-31
http://www.securityfocus.com/bid/98651
Linux Kernel 'sound/core/timer.c' Local Information Disclosure Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99121
Linux Kernel CVE-2017-7273 Local Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/97190
Linux Kernel 'btrfs/ctree.c' Local Privilege Escalation Vulnerability
2017-07-31
http://www.securityfocus.com/bid/73308
Linux Kernel 'sk_dst_get()' Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/72435
Linux Kernel 'fs/udf/inode.c' Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/74963
Linux Kernel 'iov_iter_init()' Function Security Bypass Vulnerability
2017-07-31
http://www.securityfocus.com/bid/73286
FreeRADIUS 'modules/proto_dhcp/dhcp.c' Out-of-Bounds Read Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99970
FreeRADIUS 'src/lib/radius.c' Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99968
FreeRADIUS CVE-2017-10986 Out-of-Bounds Read Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99971
FreeRADIUS CVE-2017-10983 Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99915
FreeRADIUS CVE-2017-10981 Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99898
FreeRADIUS CVE-2017-10982 Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99912
FreeRADIUS CVE-2017-10979 Out-Of-Bounds Write Remote Code Execution Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99901
FreeRADIUS CVE-2017-10978 Out-of-Bounds Read/Write Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99893
FreeRADIUS CVE-2017-10980 Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99905
FreeRADIUS CVE-2017-10984 Out-Of-Bounds Write Remote Code Execution Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99876
Apache HTTP Server CVE-2017-9788 Memory Corruption Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99569
Apache Tomcat CVE-2017-5648 Information Disclosure Vulnerability
2017-07-31
http://www.securityfocus.com/bid/97530
Apache Tomcat CVE-2017-5664 Security Bypass Vulnerability
2017-07-31
http://www.securityfocus.com/bid/98888
Linux Kernel Local Security Bypass Vulnerability
2017-07-31
http://www.securityfocus.com/bid/92659
C-ares CVE-2017-1000381 Out of Bounds Read Information Disclosure Vulnerability
2017-07-28
http://www.securityfocus.com/bid/99148
SANS News
Threatpost
Microsoft Releases Outlook and Office Click-to-Run Patches
Exploit
VehicleWorkshop - SQL Injection
Jenkins < 1.650 - Java Deserialization
DiskBoss Enterprise 8.2.14 - Buffer Overflow
VehicleWorkshop - SQL Injection
30.7.2017
Bugtraq
FortiOS <= 5.6.0 Multiple XSS Vulnerabilities 2017-07-28
msg patrykbogdan com
[security bulletin] HPESBHF03765 rev.1 - HPE ConvergedSystem 700 Solution with Comware v7 Switches using OpenSSL, Remote Denial of Service (DoS) and Disclosure of Sensitive Information 2017-07-26
HPE Product Security Response Team (security-alert hpe com)
[SECURITY] [DSA 3919-1] openjdk-8 security update 2017-07-25
Moritz Muehlenhoff (jmm debian org)
[SECURITY] [DSA 3920-1] qemu security update 2017-07-25
Moritz Muehlenhoff (jmm debian org)
[slackware-security] tcpdump (SSA:2017-205-01) 2017-07-24
Slackware Security Team (security slackware com)
SEC Consult SA-20170724-0 :: Cross-Site Scripting (XSS) issue in multiple Ubiquiti Networks products 2017-07-24
SEC Consult Vulnerability Lab (research sec-consult com)
Malware
Phishing
RBS | 28th July 2017 |
Tesco Bank | 27th July 2017 |
27th July 2017 | |
Email Terminates in 2days, Add |
Vulnerebility
C-ares CVE-2017-1000381 Out of Bounds Read Information Disclosure Vulnerability
2017-07-28
http://www.securityfocus.com/bid/99148
Node.js CVE-2017-11499 Denial of Service Vulnerability
2017-07-28
http://www.securityfocus.com/bid/99959
Microsoft Windows LNK CVE-2017-8464 Remote Code Execution Vulnerability
2017-07-28
http://www.securityfocus.com/bid/98818
Cloud Foundry Cloud Controller API CVE-2017-8036 Incomplete Fix Remote Code Execution Vulnerability
2017-07-28
http://www.securityfocus.com/bid/100002
Ghostscript GhostXPS CVE-2017-9618 Denial of Service Vulnerability
2017-07-28
http://www.securityfocus.com/bid/99993
Cisco StarOS CVE-2017-6729 Remote Denial of Service Vulnerability
2017-07-28
http://www.securityfocus.com/bid/100015
VMware vCenter Server CVE-2017-4922 Local Information Disclosure Vulnerability
2017-07-28
http://www.securityfocus.com/bid/100012
Linux kernel CVE-2017-11473 Local Buffer Overflow Vulnerability
2017-07-28
http://www.securityfocus.com/bid/100010
FortiOS Multiple Cross Site Scripting Vulnerabilities
2017-07-28
http://www.securityfocus.com/bid/100009
Multiple IBM Products CVE-2017-1386 Security Bypass Vulnerability
2017-07-28
http://www.securityfocus.com/bid/100008
Oracle Java SE CVE-2017-10081 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99853
Oracle Java SE CVE-2017-10193 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99854
Oracle Java SE and JRockit CVE-2017-10109 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99847
Oracle Java SE and JRockit CVE-2017-10135 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99839
Oracle Java SE and JRockit CVE-2017-10053 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99842
Oracle Java SE and JRockit CVE-2017-10108 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99846
Oracle Java SE and JRockit CVE-2017-10198 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99818
Oracle Java SE and JRockit CVE-2017-10243 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99827
Oracle Java SE and JRockit CVE-2017-10118 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99782
Oracle Java SE and JRockit CVE-2017-10176 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99788
Oracle Java SE and JRockit CVE-2017-10115 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99774
Oracle Java SE and JRockit CVE-2017-10116 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99734
Oracle Java SE CVE-2017-10078 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99752
Oracle Java SE CVE-2017-10087 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99703
Oracle Java SE CVE-2017-10102 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99712
Oracle Java SE CVE-2017-10089 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99659
Oracle Java SE CVE-2017-10090 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99706
Oracle Java SE CVE-2017-10110 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99643
Oracle Java SE CVE-2017-10111 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99707
Oracle Java SE CVE-2017-10067 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99756
SANS News
Static Analysis of Emotet Maldoc
Threatpost
Shorting-For-Profit Viable Business Model For Security Community
Exploit
Joomla! Component CCNewsLetter 2.1.9 - 'sbid' Parameter SQL Injection
FortiOS < 5.6.0 - Cross-Site Scripting
SoundTouch 1.9.2 - Multiple Vulnerabilities
LAME 3.99.5 - Multiple Vulnerabilities
libjpeg-turbo 1.5.1 - Denial of Service
28.7.2017
Bugtraq
[security bulletin] HPESBHF03765 rev.1 - HPE ConvergedSystem 700 Solution with Comware v7 Switches using OpenSSL, Remote Denial of Service (DoS) and Disclosure of Sensitive Information 2017-07-26
HPE Product Security Response Team (security-alert hpe com)
[SECURITY] [DSA 3919-1] openjdk-8 security update 2017-07-25
Moritz Muehlenhoff (jmm debian org)
[SECURITY] [DSA 3920-1] qemu security update 2017-07-25
Moritz Muehlenhoff (jmm debian org)
[slackware-security] tcpdump (SSA:2017-205-01) 2017-07-24
Slackware Security Team (security slackware com)
Malware
Phishing
Tesco Bank | 27th July 2017 |
27th July 2017 | |
Email Terminates in 2days, Add |
Vulnerebility
Oracle Java SE CVE-2017-10081 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99853
Oracle Java SE CVE-2017-10193 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99854
Oracle Java SE and JRockit CVE-2017-10109 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99847
Oracle Java SE and JRockit CVE-2017-10135 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99839
Oracle Java SE and JRockit CVE-2017-10053 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99842
Oracle Java SE and JRockit CVE-2017-10108 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99846
Oracle Java SE and JRockit CVE-2017-10198 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99818
Oracle Java SE and JRockit CVE-2017-10243 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99827
Oracle Java SE and JRockit CVE-2017-10118 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99782
Oracle Java SE and JRockit CVE-2017-10176 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99788
Oracle Java SE and JRockit CVE-2017-10115 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99774
Oracle Java SE and JRockit CVE-2017-10116 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99734
Oracle Java SE CVE-2017-10078 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99752
Oracle Java SE CVE-2017-10087 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99703
Oracle Java SE CVE-2017-10102 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99712
Oracle Java SE CVE-2017-10089 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99659
Oracle Java SE CVE-2017-10090 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99706
Oracle Java SE CVE-2017-10110 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99643
Oracle Java SE CVE-2017-10111 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99707
Oracle Java SE CVE-2017-10067 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99756
Oracle Java SE CVE-2017-10107 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99719
Oracle Java SE CVE-2017-10096 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99670
Oracle Java SE CVE-2017-10074 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99731
Oracle Java SE CVE-2017-10101 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99674
PHP 'zend_ini_do_op()' Function Stack Buffer Overflow Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99489
ImageMagick CVE-2017-11640 Denial of Service Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99989
Hashtopus CVE-2017-11679 Cross Site Request Forgery Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99984
Hashtopus CVE-2017-11678 SQL Injection Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99982
Libav CVE-2017-11684 Denail of Service Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99980
Hashtopus CVE-2017-11677 Cross Site Scripting Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99974
SANS News
Threatpost
Android Spyware Still Collects PII Despite Outcry
Google Study Quantifies Ransomware Profits
Attack Uses Docker Containers To Hide, Persist, Plant Malware
Exploit
Friends in War Make or Break 1.7 - Cross-Site Request Forgery (Change Admin...
MediaCoder 0.8.48.5888 - Local Buffer Overflow (SEH)
AudioCoder 0.8.46 - Local Buffer Overflow (SEH)
27.7.2017
Bugtraq
[security bulletin] HPESBHF03765 rev.1 - HPE ConvergedSystem 700 Solution with Comware v7 Switches using OpenSSL, Remote Denial of Service (DoS) and Disclosure of Sensitive Information 2017-07-26
HPE Product Security Response Team (security-alert hpe com)
[SECURITY] [DSA 3919-1] openjdk-8 security update 2017-07-25
Moritz Muehlenhoff (jmm debian org)
[SECURITY] [DSA 3920-1] qemu security update 2017-07-25
Moritz Muehlenhoff (jmm debian org)
[slackware-security] tcpdump (SSA:2017-205-01) 2017-07-24
Slackware Security Team (security slackware com)
SEC Consult SA-20170724-0 :: Cross-Site Scripting (XSS) issue in multiple Ubiquiti Networks products 2017-07-24
SEC Consult Vulnerability Lab (research sec-consult com)
SEC Consult SA-20170724-1 :: Open Redirect issue in multiple Ubiquiti Networks products 2017-07-24
SEC Consult Vulnerability Lab (research sec-consult com)
[RT-SA-2017-006] Arbitrary File Disclosure with root Privileges via RdxEngine-API in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2017-008] Unauthenticated Access to Diagnostic Functions in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2017-005] Unauthenticated Extraction of Session-IDs in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2017-009] Remote Command Execution as root in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2017-003] Cross-Site Scripting in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)
Malware
Phishing
EUROMILLION INTERNATIONAL | 26th July 2017 |
National | 26th July 2017 |
Vulnerebility
Oracle Java SE CVE-2017-10081 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99853
Oracle Java SE CVE-2017-10193 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99854
Oracle Java SE and JRockit CVE-2017-10109 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99847
Oracle Java SE and JRockit CVE-2017-10135 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99839
Oracle Java SE and JRockit CVE-2017-10053 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99842
Oracle Java SE and JRockit CVE-2017-10108 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99846
Oracle Java SE and JRockit CVE-2017-10198 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99818
Oracle Java SE and JRockit CVE-2017-10243 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99827
Oracle Java SE and JRockit CVE-2017-10118 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99782
Oracle Java SE and JRockit CVE-2017-10176 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99788
Oracle Java SE and JRockit CVE-2017-10115 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99774
Oracle Java SE and JRockit CVE-2017-10116 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99734
Oracle Java SE CVE-2017-10078 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99752
Oracle Java SE CVE-2017-10087 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99703
Oracle Java SE CVE-2017-10102 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99712
Oracle Java SE CVE-2017-10089 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99659
Oracle Java SE CVE-2017-10090 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99706
Oracle Java SE CVE-2017-10110 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99643
Oracle Java SE CVE-2017-10111 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99707
Oracle Java SE CVE-2017-10067 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99756
Oracle Java SE CVE-2017-10107 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99719
Oracle Java SE CVE-2017-10096 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99670
Oracle Java SE CVE-2017-10074 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99731
Oracle Java SE CVE-2017-10101 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99674
PHP 'zend_ini_do_op()' Function Stack Buffer Overflow Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99489
Hashtopus CVE-2017-11679 Cross Site Request Forgery Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99984
Hashtopus CVE-2017-11678 SQL Injection Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99982
Libav CVE-2017-11684 Denail of Service Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99980
Hashtopus CVE-2017-11677 Cross Site Scripting Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99974
GNU libiberty CVE-2016-6131 Stack Based Buffer Overflow Vulnerability
2017-07-26
http://www.securityfocus.com/bid/91519
SANS News
Threatpost
Academia’s Role in Security Skills Gap Examined
Vulnerable Radiation Monitoring Devices Won’t Be Patched
Android Sypware Still Collects PII Despite Outcry
Friends in War Make or Break 1.7 - Cross-Site Request Forgery (Change Admin...
Friends in War Make or Break 1.7 - Authentication Bypass
Friends in War Make or Break 1.7 - SQL Injection
Exploit
Friends in War Make or Break 1.7 - Authentication Bypass
Friends in War Make or Break 1.7 - SQL Injection
Microsoft Windows - LNK Shortcut File Code Execution (Metasploit)
26.7.2017
Bugtraq
[SECURITY] [DSA 3919-1] openjdk-8 security update 2017-07-25
Moritz Muehlenhoff (jmm debian org)
[SECURITY] [DSA 3920-1] qemu security update 2017-07-25
Moritz Muehlenhoff (jmm debian org)
[slackware-security] tcpdump (SSA:2017-205-01) 2017-07-24
Slackware Security Team (security slackware com)
SEC Consult SA-20170724-0 :: Cross-Site Scripting (XSS) issue in multiple Ubiquiti Networks products 2017-07-24
SEC Consult Vulnerability Lab (research sec-consult com)
SEC Consult SA-20170724-1 :: Open Redirect issue in multiple Ubiquiti Networks products 2017-07-24
SEC Consult Vulnerability Lab (research sec-consult com)
[RT-SA-2017-006] Arbitrary File Disclosure with root Privileges via RdxEngine-API in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2017-008] Unauthenticated Access to Diagnostic Functions in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2017-005] Unauthenticated Extraction of Session-IDs in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2017-009] Remote Command Execution as root in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2017-003] Cross-Site Scripting in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)
Malware
Phishing
service@paypal-support.co.uk | 25th July 2017 |
Apple Store | 24th July 2017 |
Eve | 24th July 2017 |
Vulnerebility
Ruby TclTkIp 'ip_cancel_eval()' Function Type Confusion Remote Code Execution Vulnerability
2017-07-26
http://www.securityfocus.com/bid/91233
Ruby 'dl/handle.c' Security Bypass Vulnerability
2017-07-26
http://www.securityfocus.com/bid/76060
Ruby CVE-2015-1855 Security Bypass Vulnerability
2017-07-26
http://www.securityfocus.com/bid/74446
Ruby 'initialize()' Function Heap Buffer Overflow Vulnerability
2017-07-26
http://www.securityfocus.com/bid/91234
Ruby OpenSSL Security Bypass Vulnerability
2017-07-26
http://www.securityfocus.com/bid/93031
Mozilla Firefox CVE-2017-5470 Multiple Unspecified Memory Corruption Vulnerabilities
2017-07-26
http://www.securityfocus.com/bid/99041
Mozilla Firefox Multiple Security Vulnerabilities
2017-07-26
http://www.securityfocus.com/bid/99057
Mozilla Firefox CVE-2017-5472 Use After Free Denial of Service Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99040
Oracle Java SE and JRockit CVE-2017-10108 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99846
Oracle Java SE CVE-2017-10193 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99854
Oracle Java SE CVE-2017-10074 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99731
Oracle Java SE CVE-2017-10101 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99674
Oracle Java SE and JRockit CVE-2017-10135 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99839
Oracle Java SE CVE-2017-10111 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99707
Oracle Java SE and JRockit CVE-2017-10109 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99847
Oracle Java SE and JRockit CVE-2017-10176 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99788
Oracle Java SE and JRockit CVE-2017-10118 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99782
Oracle Java SE and JRockit CVE-2017-10198 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99818
Oracle Java SE CVE-2017-10102 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99712
Oracle Java SE and JRockit CVE-2017-10053 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99842
Oracle Java SE and JRockit CVE-2017-10115 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99774
Oracle Java SE CVE-2017-10067 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99756
Oracle Java SE CVE-2017-10078 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99752
Oracle Java SE CVE-2017-10081 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99853
Oracle Java SE and JRockit CVE-2017-10116 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99734
Oracle Java SE CVE-2017-10110 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99643
Oracle Java SE CVE-2017-10090 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99706
Oracle Java SE CVE-2017-10096 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99670
Oracle Java SE CVE-2017-10107 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99719
Oracle Java SE CVE-2017-10089 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99659
SANS News
Malspam pushing Emotet malware
Threatpost
Hacker Admits to Mirai Attack Against Deutsche Telekom
Novel Attack Tricks Servers to Cache, Expose Personal Data
Academia’s Role in Security Skills Gap Examined
Exploit
WebKit JSC - 'JSObject::putInlineSlow and JSValue::putToPrimitive' Universal...
WebKit JSC - 'DFG::ByteCodeParser::flush(InlineStackEntry* inlineStackEntry)'...
WebKit JSC - 'arrayProtoFuncSplice' Uninitialized Memory Reference
WebKit JSC - 'JSArray::appendMemcpy' Uninitialized Memory Copy
WebKit JSC - 'ArgumentsEliminationPhase::transform' Incorrect LoadVarargs Handling
WebKit JSC - 'ObjectPatternNode::appendEntry' Stack Use-After-Free
25.7.2017
Bugtraq
[slackware-security] tcpdump (SSA:2017-205-01) 2017-07-24
Slackware Security Team (security slackware com)
SEC Consult SA-20170724-0 :: Cross-Site Scripting (XSS) issue in multiple Ubiquiti Networks products 2017-07-24
SEC Consult Vulnerability Lab (research sec-consult com)
SEC Consult SA-20170724-1 :: Open Redirect issue in multiple Ubiquiti Networks products 2017-07-24
SEC Consult Vulnerability Lab (research sec-consult com)
[RT-SA-2017-006] Arbitrary File Disclosure with root Privileges via RdxEngine-API in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2017-008] Unauthenticated Access to Diagnostic Functions in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2017-005] Unauthenticated Extraction of Session-IDs in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2017-009] Remote Command Execution as root in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2017-003] Cross-Site Scripting in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2017-007] Undocumented Administrative Service Account in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2017-004] Unauthenticated Arbitrary File Disclosure in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)
[SECURITY] [DSA 3917-1] catdoc security update 2017-07-23
Salvatore Bonaccorso (carnil debian org)
Malware
Phishing
Vulnerebility
X.Org X Server CVE-2017-10971 Stack Buffer Overflow Vulnerability
2017-07-25
http://www.securityfocus.com/bid/99546
X.Org X Server CVE-2017-10972 Information Disclosure Vulnerability
2017-07-25
http://www.securityfocus.com/bid/99543
X.org X Server Local Multiple Security Vulnerabilities
2017-07-25
http://www.securityfocus.com/bid/96480
QEMU 'hw/9pfs/9p-local.c' Privilege Escalation Vulnerability
2017-07-25
http://www.securityfocus.com/bid/98574
Google Android Kernel Trace Subsystem CVE-2017-0605 Privilege Escalation Vulnerability
2017-07-24
http://www.securityfocus.com/bid/98152
Samba CVE-2017-7494 Remote Code Execution Vulnerability
2017-07-24
http://www.securityfocus.com/bid/98636
Adobe Flash Player APSB17-17 Multiple Use After Free Remote Code Execution Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/99023
Evince Comic Book Backend CVE-2017-1000083 Command Injection Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99597
Mozilla Firefox CVE-2017-5472 Use After Free Denial of Service Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99040
Mozilla Firefox CVE-2017-5470 Multiple Unspecified Memory Corruption Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/99041
ISC BIND CVE-2017-3143 Security Bypass Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99337
ISC BIND CVE-2017-3142 Security Bypass Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99339
Linux Kernel CVE-2017-7895 Multiple Security Bypass Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/98085
Linux Kernel CVE-2017-7477 Heap Buffer Overflow Vulnerability
2017-07-24
http://www.securityfocus.com/bid/98014
Linux Kernel CVE-2017-2583 Privilege Escalation Vulnerability
2017-07-24
http://www.securityfocus.com/bid/95673
Apache HTTP Server CVE-2016-8743 Security Bypass Vulnerability
2017-07-24
http://www.securityfocus.com/bid/95077
QEMU CVE-2017-9524 Denial of Service Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99011
Linux Kernel CVE-2017-6214 Remote Denial of Service Vulnerability
2017-07-24
http://www.securityfocus.com/bid/96421
Mozilla Firefox Multiple Security Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/99057
GNU glibc CVE-2017-1000366 Local Memory Corruption Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99127
Sudo CVE-2017-1000368 Incomplete Fix Local Privilege Escalation Vulnerability
2017-07-24
http://www.securityfocus.com/bid/98838
Linux Kernel CVE-2017-1000364 Local Memory Corruption Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99130
FreeRADIUS TLS CVE-2017-9148 Authentication Bypass Vulnerability
2017-07-24
http://www.securityfocus.com/bid/98734
Mercurial CVE-2017-9462 Remote Code Execution Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99123
Linux Kernel CVE-2017-7645 Multiple Denial of Service Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/97950
ImageMagick CVE-2017-11525 Denial of Service Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99931
ImageMagick CVE-2017-11540 Heap Buffer Overflow Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99929
Phamm CVE-2017-0378 Cross Site Scripting Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99927
gnome-exe-thumbnailer CVE-2017-11421 Local Code Injection Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99922
Debian CVE-2017-11565 Security Bypass Vulnerability
2017-07-23
http://www.securityfocus.com/bid/99933
SANS News
Uber drivers new threat: the "passenger"
Threatpost
Hacker Admits to Mirai Attack Against Deutsche Telekom
Exploit
Microsoft Internet Explorer - 'mshtml.dll' Remote Code Execution (MS17-007)
IPFire < 2.19 Update Core 110 - Remote Code Execution (Metasploit)
VICIdial 2.9 RC 1 to 2.13 RC1 - user_authorization Unauthenticated Command...
ManageEngine Desktop Central 10 Build 100087 - Remote Code Execution (Metasploit)
PaulShop - SQL Injection / Cross-Site Scripting
REDDOXX Appliance Build 2032 / 2.0.625 - Remote Command Execution
REDDOXX Appliance Build 2032 / 2.0.625 - Arbitrary File Disclosure
MAWK 1.3.3-17 - Local Buffer Overflow
Razer Synapse 2.20.15.1104 - rzpnk.sys ZwOpenProcess (Metasploit)
WebKit - 'WebCore::AccessibilityNodeObject::textUnderElement' Use-After-Free
WebKit - 'WebCore::AccessibilityRenderObject::handleAriaExpandedChanged' Use-After-Free
WebKit - 'WebCore::Node::nextSibling' Use-After-Free
WebKit - 'WebCore::RenderSearchField::addSearchResult' Heap Buffer Overflow
WebKit - 'WebCore::InputType::element' Use-After-Free
WebKit - 'WebCore::RenderObject' with Accessibility Enabled Use-After-Free
WebKit - 'WebCore::Node::getFlag' Use-After-Free
WebKit - 'WebCore::getCachedWrapper' Use-After-Free
24.7.2017
Bugtraq
[SECURITY] [DSA 3917-1] catdoc security update 2017-07-23
Salvatore Bonaccorso (carnil debian org)
[slackware-security] seamonkey (SSA:2017-202-01) 2017-07-21
Slackware Security Team (security slackware com)
[security bulletin] HPESBHF03745 rev.3 - HPE Intelligent Management Center (iMC) PLAT, Remote Code Execution 2017-07-21
security-alert hpe com
[security bulletin] HPESBHF03766 rev.1 - HPE ConvergedSystem 700 Solution with Comware v5 Switches using NTP, Remote Denial of Service (DoS), Unauthorized Modification and Local Denial of Service (DoS) 2017-07-20
security-alert hpe com
File Upload in Integration Gateway (PSIGW) 2017-07-20
ERPScan inc (erpscan online gmail com)
Malware
Phishing
Apple | 24th July 2017 |
Apple just sent you $3,543.00 |
Vulnerebility
Mozilla Firefox CVE-2017-5472 Use After Free Denial of Service Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99040
Mozilla Firefox CVE-2017-5470 Multiple Unspecified Memory Corruption Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/99041
ISC BIND CVE-2017-3143 Security Bypass Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99337
ISC BIND CVE-2017-3142 Security Bypass Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99339
Linux Kernel CVE-2017-7895 Multiple Security Bypass Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/98085
Linux Kernel CVE-2017-7477 Heap Buffer Overflow Vulnerability
2017-07-24
http://www.securityfocus.com/bid/98014
Linux Kernel CVE-2017-2583 Privilege Escalation Vulnerability
2017-07-24
http://www.securityfocus.com/bid/95673
Apache HTTP Server CVE-2016-8743 Security Bypass Vulnerability
2017-07-24
http://www.securityfocus.com/bid/95077
QEMU CVE-2017-9524 Denial of Service Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99011
Linux Kernel CVE-2017-6214 Remote Denial of Service Vulnerability
2017-07-24
http://www.securityfocus.com/bid/96421
Mozilla Firefox Multiple Security Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/99057
GNU glibc CVE-2017-1000366 Local Memory Corruption Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99127
Sudo CVE-2017-1000368 Incomplete Fix Local Privilege Escalation Vulnerability
2017-07-24
http://www.securityfocus.com/bid/98838
Linux Kernel CVE-2017-1000364 Local Memory Corruption Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99130
FreeRADIUS TLS CVE-2017-9148 Authentication Bypass Vulnerability
2017-07-24
http://www.securityfocus.com/bid/98734
Mercurial CVE-2017-9462 Remote Code Execution Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99123
Linux Kernel CVE-2017-7645 Multiple Denial of Service Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/97950
Irssi CVE-2017-9469 Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99043
ICU CVE-2016-6293 Out of Bounds Read Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92127
PHP 'ftp_genlist()' Function Integer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/74902
PHP NULL Character CVE-2015-4025 Incomplete Fix Multiple Security Bypass Vulnerabilities
2017-07-21
http://www.securityfocus.com/bid/74904
PHP 'main/rfc1867.c' Remote Denial Of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/74903
PHP PHAR 'phar_parse_tarfile()' Function Remote Memory Corruption Vulnerability
2017-07-21
http://www.securityfocus.com/bid/74700
PHP '/xmlrpc/libxmlrpc/simplestring.c' Heap Buffer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92095
PHP 'zip_stream.c' Integer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92099
PHP wdsl Extension CVE-2013-6501 Security Weakness
2017-07-21
http://www.securityfocus.com/bid/72530
PHP 'snmp.c' Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92094
PHP 'zend_virtual_cwd.c' Integer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92074
PHP CVE-2016-6294 Local Information Disclosure Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92115
PHP 'exif.c' NULL Pointer Dereference Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92078
SANS News
Threatpost
Exploit
Microsoft Internet Explorer - 'mshtml.dll' Remote Code Execution (MS17-007)
ManageEngine Desktop Central 10 Build 100087 - Remote Code Execution (Metasploit)
PaulShop - Sql Injection / Cross-Site Scripting
MAWK 1.3.3-17 - Local Buffer Overflow
23.7.2017
Bugtraq
[security bulletin] HPESBHF03766 rev.1 - HPE ConvergedSystem 700 Solution with Comware v5 Switches using NTP, Remote Denial of Service (DoS), Unauthorized Modification and Local Denial of Service (DoS) 2017-07-20
security-alert hpe com
File Upload in Integration Gateway (PSIGW) 2017-07-20
ERPScan inc (erpscan online gmail com)
Multiple XSS (POST request) Vulnerabilities in TestServlet (PeopleSoft) 2017-07-20
ERPScan inc (erpscan online gmail com)
Directory Traversal vulnerability in Integration Gateway (PSIGW) 2017-07-20
ERPScan inc (erpscan online gmail com)
APPLE-SA-2017-07-19-7 iCloud for Windows 6.2.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)
APPLE-SA-2017-07-19-5 Safari 10.1.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)
Malware
Phishing
Vulnerebility
Mozilla Firefox CVE-2017-5472 Use After Free Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99040
Mozilla Firefox CVE-2017-5470 Multiple Unspecified Memory Corruption Vulnerabilities
2017-07-21
http://www.securityfocus.com/bid/99041
Irssi CVE-2017-9469 Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99043
ICU CVE-2016-6293 Out of Bounds Read Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92127
PHP 'ftp_genlist()' Function Integer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/74902
PHP NULL Character CVE-2015-4025 Incomplete Fix Multiple Security Bypass Vulnerabilities
2017-07-21
http://www.securityfocus.com/bid/74904
PHP 'main/rfc1867.c' Remote Denial Of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/74903
PHP PHAR 'phar_parse_tarfile()' Function Remote Memory Corruption Vulnerability
2017-07-21
http://www.securityfocus.com/bid/74700
PHP '/xmlrpc/libxmlrpc/simplestring.c' Heap Buffer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92095
PHP 'zip_stream.c' Integer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92099
PHP wdsl Extension CVE-2013-6501 Security Weakness
2017-07-21
http://www.securityfocus.com/bid/72530
PHP 'snmp.c' Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92094
PHP 'zend_virtual_cwd.c' Integer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92074
PHP CVE-2016-6294 Local Information Disclosure Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92115
PHP 'exif.c' NULL Pointer Dereference Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92078
PHP 'php_url_prase_ex()' Function Memory Corruption Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92111
Mozilla Firefox CVE-2017-5426 Security Bypass Vulnerability
2017-07-21
http://www.securityfocus.com/bid/96694
Mozilla Firefox and Thunderbird Multiple Security Vulnerabilities
2017-07-21
http://www.securityfocus.com/bid/96693
Mozilla Firefox CVE-2017-5403 Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/96691
Graphviz 'agerr()' Function Remote Format String Vulnerability
2017-07-21
http://www.securityfocus.com/bid/71283
Graphviz 'yyerror()' Function Stack Buffer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/64674
libpng NULL pointer Dereference 'png_set_text_2()' Function Remote Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/95157
Irssi CVE-2017-9468 Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99015
Irssi Multiple Memory Corruption Vulnerabilities
2017-07-21
http://www.securityfocus.com/bid/95310
Mozilla Firefox Multiple Security Vulnerabilities
2017-07-21
http://www.securityfocus.com/bid/99057
Mozilla Firefox MFSA 2017-05 Multiple Security Vulnerabilities
2017-07-21
http://www.securityfocus.com/bid/96692
PHP 'ext/wddx/wddx.c' Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/94846
NVIDIA GPU Driver CVE-2017-0350 Local Privilege Escalation Vulnerability
2017-07-21
http://www.securityfocus.com/bid/98490
PHP 'pcnt_exec()' Function Null Character Security Bypass Vulnerability
2017-07-21
http://www.securityfocus.com/bid/75056
PHP 'session.c' Use After Free Remote Code Execution Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92097
SANS News
Threatpost
Trickbot Malware Now Targets US Banks
Motivation Mystery Behind WannaCry, ExPetr
Exploit
NEC UNIVERGE UM4730 < 11.8 - SQL Injection
21.7.2017
Bugtraq
[security bulletin] HPESBHF03766 rev.1 - HPE ConvergedSystem 700 Solution with Comware v5 Switches using NTP, Remote Denial of Service (DoS), Unauthorized Modification and Local Denial of Service (DoS) 2017-07-20
security-alert hpe com
File Upload in Integration Gateway (PSIGW) 2017-07-20
ERPScan inc (erpscan online gmail com)
Multiple XSS (POST request) Vulnerabilities in TestServlet (PeopleSoft) 2017-07-20
ERPScan inc (erpscan online gmail com)
Directory Traversal vulnerability in Integration Gateway (PSIGW) 2017-07-20
ERPScan inc (erpscan online gmail com)
APPLE-SA-2017-07-19-7 iCloud for Windows 6.2.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)
APPLE-SA-2017-07-19-5 Safari 10.1.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)
APPLE-SA-2017-07-19-2 macOS 10.12.6 2017-07-19
Apple Product Security (product-security-noreply lists apple com)
APPLE-SA-2017-07-19-3 watchOS 3.2.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)
APPLE-SA-2017-07-19-1 iOS 10.3.3 2017-07-19
Apple Product Security (product-security-noreply lists apple com)
APPLE-SA-2017-07-19-6 iTunes 12.6.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)
APPLE-SA-2017-07-19-4 tvOS 10.2.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)
[SECURITY] [DSA 3914-1] imagemagick security update 2017-07-18
Moritz Muehlenhoff (jmm debian org)
Malware
Phishing
Vulnerebility
ISC BIND CVE-2017-3142 Security Bypass Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99339
Sudo CVE-2017-1000368 Incomplete Fix Local Privilege Escalation Vulnerability
2017-07-21
http://www.securityfocus.com/bid/98838
ISC BIND CVE-2017-3143 Security Bypass Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99337
Linux Kernel CVE-2017-7477 Heap Buffer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/98014
Linux Kernel CVE-2017-1000364 Local Memory Corruption Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99130
Linux Kernel CVE-2017-7645 Multiple Denial of Service Vulnerabilities
2017-07-21
http://www.securityfocus.com/bid/97950
GNU glibc CVE-2017-1000366 Local Memory Corruption Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99127
FreeRADIUS CVE-2017-10981 Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99898
AlienVault Unified Security Management Heap Based Buffer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99897
QEMU CVE-2017-11334 Out of Bounds Read and Write Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99895
Palo Alto Networks PAN-OS CVE-2017-9467 Cross Site Scripting Vulnerability
2017-07-20
http://www.securityfocus.com/bid/99907
Palo Alto Networks PAN-OS CVE-2017-9459 HTML Injection Vulnerability
2017-07-20
http://www.securityfocus.com/bid/99902
Multiple CorelDRAW Products Multiple Remote Code Execution Vulnerabilities
2017-07-20
http://www.securityfocus.com/bid/99900
Inmarsat AmosConnect 8 VU#586501 Security Bypass and SQL Injection Vulnerabilities
2017-07-20
http://www.securityfocus.com/bid/99899
Apple iOS and Safari Multiple Security Vulnerabilities
2017-07-20
http://www.securityfocus.com/bid/99887
Apple iOS/TvOS/Safari Multiple Security Vulnerabilities
2017-07-20
http://www.securityfocus.com/bid/99886
WebKit Multiple Memory Corruption Vulnerabilities
2017-07-20
http://www.securityfocus.com/bid/99885
Apple iTunes CVE-2017-7053 Arbitray Code Execution Vulnerability
2017-07-20
http://www.securityfocus.com/bid/99884
Apple macOS APPLE-SA-2017-07-19-2 Multiple Security Vulnerabilities
2017-07-20
http://www.securityfocus.com/bid/99882
Genivia gSOAP CVE-2017-9765 Stack Based Buffer Overflow Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99868
Multiple Intel Products CVE-2017-5689 Privilege Escalation Vulnerability
2017-07-19
http://www.securityfocus.com/bid/98269
OpenSSL CVE-2017-3732 Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/95814
OpenSSL Padding Oracle Incomplete Fix Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/89760
SAP Netweaver Dynpro Engine Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96874
SAP NetWeaver Visual Composer Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96865
SAP NetWeaver ABAP CVE-2017-9843 Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96900
Oracle Java Advanced Management Console CVE-2017-10104 Remote Security Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99797
Apple iOS APPLE-SA-2017-07-19-1 Multiple Security Vulnerabilities
2017-07-19
http://www.securityfocus.com/bid/99891
Apple iTunes/iCloud/Safari/iOS Multiple Security Vulnerabilities
2017-07-19
http://www.securityfocus.com/bid/99890
Apple iOS/iCloud/iTunes/macOS/TvOS CVE-2017-7010 Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99889
SANS News
Threatpost
Senator Calls For Use Of DMARC To Curb Phishing
US, European Law Enforcement Shutter Massive AlphaBay Market
Exploit
Joomla! Component JoomRecipe 1.0.4 - 'search_author' Parameter SQL Injection
WordPress Plugin IBPS Online Exam 1.0 - SQL Injection / Cross-Site Scripting
20.7.2017
Bugtraq
File Upload in Integration Gateway (PSIGW) 2017-07-20
ERPScan inc (erpscan online gmail com)
Multiple XSS (POST request) Vulnerabilities in TestServlet (PeopleSoft) 2017-07-20
ERPScan inc (erpscan online gmail com)
Directory Traversal vulnerability in Integration Gateway (PSIGW) 2017-07-20
ERPScan inc (erpscan online gmail com)
APPLE-SA-2017-07-19-7 iCloud for Windows 6.2.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)
APPLE-SA-2017-07-19-5 Safari 10.1.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)
APPLE-SA-2017-07-19-2 macOS 10.12.6 2017-07-19
Apple Product Security (product-security-noreply lists apple com)
APPLE-SA-2017-07-19-3 watchOS 3.2.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)
APPLE-SA-2017-07-19-1 iOS 10.3.3 2017-07-19
Apple Product Security (product-security-noreply lists apple com)
APPLE-SA-2017-07-19-6 iTunes 12.6.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)
APPLE-SA-2017-07-19-4 tvOS 10.2.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)
[SECURITY] [DSA 3914-1] imagemagick security update 2017-07-18
Moritz Muehlenhoff (jmm debian org)
Malware
Phishing
Natwest Bank | 18th July 2017 |
CapitalOne | 17th July 2017 |
Vulnerebility
Apple macOS APPLE-SA-2017-07-19-2 Multiple Security Vulnerabilities
2017-07-20
http://www.securityfocus.com/bid/99882
Genivia gSOAP CVE-2017-9765 Stack Based Buffer Overflow Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99868
Multiple Intel Products CVE-2017-5689 Privilege Escalation Vulnerability
2017-07-19
http://www.securityfocus.com/bid/98269
OpenSSL CVE-2017-3732 Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/95814
OpenSSL Padding Oracle Incomplete Fix Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/89760
SAP Netweaver Dynpro Engine Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96874
SAP NetWeaver Visual Composer Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96865
SAP NetWeaver ABAP CVE-2017-9843 Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96900
Oracle Java Advanced Management Console CVE-2017-10104 Remote Security Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99797
Apple iOS/watchOS CVE-2017-7063 Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99881
Apple iOS/macOS/tvOS CVE-2017-7008 Memory Corruption Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99880
libxml2 CVE-2017-7013 XML External Entity Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99879
Cisco Prime Collaboration Provisioning Tool CVE-2017-6755 Cross Site Scripting Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99878
Cisco AsyncOS Software CVE-2017-6746 Command Injection Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99877
Cisco Web Security Appliance CVE-2017-6749 HTML Injection Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99875
IBM InfoSphere Master Data Management Server Local Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99872
Apache Sling API CVE-2016-5394 Cross Site Scripting Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99870
Oracle BI Publisher CVE-2017-10041 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99742
Oracle Java SE CVE-2017-10102 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99712
Oracle Java SE CVE-2017-10096 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99670
PHPMailer CVE-2016-10045 Incomplete Fix Remote Code Execution Vulnerability
2017-07-18
http://www.securityfocus.com/bid/95130
RETIRED: Linux Kernel 'saa7164-bus.c' Local Privilege Escalation Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99175
Apache Sling XSS Protection API CVE-2016-6798 XML External Entity Injection Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99873
Oracle Database Server CVE-2017-10120 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99867
Oracle FLEXCUBE Universal Banking CVE-2017-10071 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99866
Oracle Database Server CVE-2017-10202 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99865
Oracle FLEXCUBE Private Banking CVE-2017-10022 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99864
Oracle Hospitality Applications CVE-2017-10213 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99863
Oracle FLEXCUBE Private Banking CVE-2017-10012 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99862
Oracle Hospitality Applications CVE-2017-10220 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99861
SANS News
Threatpost
Tor Project Opens Bounty Program To All Researchers
Modified Versions of Nukebot in Wild Since Source Code Leak
Senator Calls For Use Of DMARC To Curb Phishing
Exploit
Sonicwall Secure Remote Access 8.1.0.2-14sv - Command Injection
Sonicwall < 8.1.0.6-21sv - 'gencsr.cgi' Command Injection (Metasploit)
Netscaler SD-WAN 9.1.2.26.561201 - Command Injection (Metasploit)
Sonicwall < 8.1.0.2-14sv - 'sitecustomization.cgi' Command Injection (Metasploit)
Citrix CloudBridge - 'CAKEPHP' Cookie Command Injection
Linux/x86_64 - Reverse Shell (192.168.1.8:4444) Shellcode (104 bytes)
19.7.2017
Bugtraq
[SECURITY] [DSA 3914-1] imagemagick security update 2017-07-18
Moritz Muehlenhoff (jmm debian org)
[CVE-2017-7728] - Authentication Bypass allows alarm's commands execution in iSmartAlarm 2017-07-13
ilia shnaidman bullguard com
CVE-2017-7684 - Apache OpenMeetings - Insecure File Upload 2017-07-13
Maxim Solodovnik (solomax apache org)
CVE-2017-7663 - Apache OpenMeetings - XSS in chat 2017-07-13
Maxim Solodovnik (solomax apache org)
Malware
Phishing
Natwest Bank | 18th July 2017 |
CapitalOne | 17th July 2017 |
Bank of Scotland | 16th July 2017 |
Vulnerebility
Multiple Intel Products CVE-2017-5689 Privilege Escalation Vulnerability
2017-07-19
http://www.securityfocus.com/bid/98269
OpenSSL CVE-2017-3732 Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/95814
OpenSSL Padding Oracle Incomplete Fix Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/89760
SAP Netweaver Dynpro Engine Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96874
SAP NetWeaver Visual Composer Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96865
SAP NetWeaver ABAP CVE-2017-9843 Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96900
Oracle Java Advanced Management Console CVE-2017-10104 Remote Security Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99797
Oracle BI Publisher CVE-2017-10041 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99742
Oracle Java SE CVE-2017-10102 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99712
Oracle Java SE CVE-2017-10096 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99670
PHPMailer CVE-2016-10045 Incomplete Fix Remote Code Execution Vulnerability
2017-07-18
http://www.securityfocus.com/bid/95130
RETIRED: Linux Kernel 'saa7164-bus.c' Local Privilege Escalation Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99175
Genivia gSOAP CVE-2017-9765 Stack Based Buffer Overflow Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99868
Oracle Database Server CVE-2017-10120 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99867
Oracle FLEXCUBE Universal Banking CVE-2017-10071 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99866
Oracle Database Server CVE-2017-10202 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99865
Oracle FLEXCUBE Private Banking CVE-2017-10022 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99864
Oracle Hospitality Applications CVE-2017-10213 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99863
Oracle FLEXCUBE Private Banking CVE-2017-10012 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99862
Oracle Hospitality Applications CVE-2017-10220 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99861
Oracle FLEXCUBE Universal Banking CVE-2017-10072 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99860
Oracle Solaris Cluster CVE-2017-10234 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99859
Oracle Hospitality Applications CVE-2017-10200 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99858
Oracle Solaris CVE-2017-3632 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99857
Oracle FLEXCUBE Universal Banking CVE-2017-10098 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99856
Oracle Sun ZFS Storage Appliance Kit CVE-2017-10016 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99855
Oracle Java SE CVE-2017-10193 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99854
Oracle Java SE CVE-2017-10081 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99853
Oracle Solaris CVE-2017-10122 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99852
Oracle Java SE CVE-2017-10105 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99851
SANS News
Bots Searching for Keys & Config Files
Threatpost
Botnet Tweeting, Spamming Porn Shut Down
Privacy Activists Suffer Legal Setback In National Security Letter Case
CoinDash Hacked During its ICO
Oracle Releases Biggest Update Ever: 308 Vulnerabilities Patched
Exploit
Microsoft Internet Explorer 11.0.9600.18617 - 'CMarkup::DestroySplayTree' Memory...
Microsoft Internet Explorer 11.1066.14393.0 - VBScript Arithmetic Functions Type...
Microsoft Windows Kernel - 'IOCTL 0x120007 (NsiGetParameter)' nsiproxy/netio Pool...
Hashicorp vagrant-vmware-fusion <= 4.0.20 - Local root Privilege Esclation
PEGA Platform <= 7.2 ML0 - Missing Access Control / Cross-Site Scripting
18.7.2017
Bugtraq
Malware
Phishing
CapitalOne | 17th July 2017 |
Bank of Scotland | 16th July 2017 |
MRS. CARMAN LAPOINTE | 16th July 2017 |
Vulnerebility
Apache Struts Spring AOP Functionality Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99562
QEMU CVE-2017-9503 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99010
QEMU 'hw/usb/hcd-xhci.c' Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98915
QEMU CVE-2017-9373 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98921
QEMU CVE-2017-9374 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98905
QEMU CVE-2017-8379 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98277
QEMU 'megasas_mmio_write()' Function Out-of-Bounds Read Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98303
QEMU CVE-2017-8309 Denial of Service Vulnerability
SANS News
Threatpost
FreeRADIUS Update Patches Bugs Static Analysis Tools Missed
Cisco Patches Another Critical Ormandy Bug in WebEx Extension
Botnet Tweeting, Spamming Porn Shut Down
Exploit
Belkin NetCam F7D7601 - Multiple Vulnerabilities
Sophos Web Appliance 4.3.0.2 - 'trafficType' Remote Command Injection (Metasploit)
Barracuda Load Balancer Firmware <= 6.0.1.006 - Remote Command Injection...
17.7.2017
Bugtraq
Malware
Phishing
Bank of Scotland | 16th July 2017 |
MRS. CARMAN LAPOINTE | 16th July 2017 |
Chase | 16th July 2017 |
Vulnerebility
Apache Struts Spring AOP Functionality Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99562
QEMU CVE-2017-9503 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99010
QEMU 'hw/usb/hcd-xhci.c' Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98915
QEMU CVE-2017-9373 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98921
QEMU CVE-2017-9374 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98905
QEMU CVE-2017-8379 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98277
QEMU 'megasas_mmio_write()' Function Out-of-Bounds Read Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98303
QEMU CVE-2017-8309 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98302
Qemu 'hw/display/cirrus_vga.c' Remote Code Execution Vulnerability
2017-07-17
http://www.securityfocus.com/bid/97955
QEMU 'hw/9pfs/9p-local.c' Privilege Escalation Vulnerability
2017-07-17
http://www.securityfocus.com/bid/97970
QEMU CVE-2017-8086 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98012
QEMU 'hw/9pfs/9p.c' Multiple Denial of Service Vulnerabilities
2017-07-17
http://www.securityfocus.com/bid/97319
QEMU 'hw/sd/sdhci.c' Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/96263
QEMU 'hw/usb/hcd-ohci.c' Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/96611
QEMU CVE-2017-8112 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98015
QEMU 'hw/display/cirrus_vga_rop.h' Multiple Memory Corruption Vulnerabilities
2017-07-17
http://www.securityfocus.com/bid/97957
QEMU CVE-2016-9603 Heap Buffer Overflow Vulnerability
2017-07-17
http://www.securityfocus.com/bid/96893
QEMU 'hw/usb/hcd-xhci.c' Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/96220
QEMU CVE-2016-9602 Privilege Escalation Vulnerability
2017-07-17
http://www.securityfocus.com/bid/95461
QEMU CVE-2017-5579 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/95780
Heimdal CVE-2017-11103 Man in the Middle Security Bypass Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99551
phpCAS CVE-2017-1000071 Authentication Bypass Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99609
radare2 CVE-2017-10929 Heap Buffer Overflow Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99608
Moodle CVE-2017-2642 Information Disclosure Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99606
ImageMagick 'coders/rle.c' Incomplete Fix Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99600
Rpcbind CVE-2017-8779 Remote Denial of Service Vulnerability
2017-07-16
http://www.securityfocus.com/bid/98325
ATutor Multiple Security Vulnerabilities
2017-07-16
http://www.securityfocus.com/bid/99599
Microsoft Windows COM CVE-2017-0298 Local Privilege Escalation Vulnerability
2017-07-14
http://www.securityfocus.com/bid/98841
PHPMailer CVE-2016-10045 Incomplete Fix Remote Code Execution Vulnerability
2017-07-14
http://www.securityfocus.com/bid/95130
Knot DNS CVE-2017-11104 Authentication Bypass Vulnerability
2017-07-14
http://www.securityfocus.com/bid/99598
SANS News
SMS Phishing induces victims to photograph its own token card
Threatpost
Exploit
FTPGetter 5.89.0.85 - Buffer Overflow (SEH)
Orangescrum 1.6.1 - Multiple Vulnerabilities
16.7.2017
Bugtraq
[CVE-2017-7728] - Authentication Bypass allows alarm's commands execution in iSmartAlarm 2017-07-13
ilia shnaidman bullguard com
CVE-2017-7684 - Apache OpenMeetings - Insecure File Upload 2017-07-13
Maxim Solodovnik (solomax apache org)
CVE-2017-7663 - Apache OpenMeetings - XSS in chat 2017-07-13
Maxim Solodovnik (solomax apache org)
CVE-2017-7688 - Apache OpenMeetings - Insecure Password Update 2017-07-13
Maxim Solodovnik (solomax apache org)
CVE-2017-7664 - Apache OpenMeetings - Missing XML Validation 2017-07-13
Maxim Solodovnik (solomax666 gmail com)
CVE-2017-9788: Uninitialized memory reflection in mod_auth_digest 2017-07-13
William A Rowe Jr (wrowe apache org)
CVE-2017-9789: Apache httpd 2.4 Read after free in mod_http2 2017-07-13
William A Rowe Jr (wrowe apache org)
[SECURITY] [DSA 3908-1] nginx security update 2017-07-12
Moritz Muehlenhoff (jmm debian org)
Malware
Phishing
Bank of Scotland | 16th July 2017 |
MRS. CARMAN LAPOINTE | 16th July 2017 |
Chase | 16th July 2017 |
Chase | 14th July 2017 |
Microsoft | 14th July 2017 |
Important Message From BB | |
MR. IBRAHIM CISSOKO | 14th July 2017 |
eBay | 14th July 2017 |
Vulnerebility
Microsoft Windows COM CVE-2017-0298 Local Privilege Escalation Vulnerability
2017-07-14
http://www.securityfocus.com/bid/98841
PHPMailer CVE-2016-10045 Incomplete Fix Remote Code Execution Vulnerability
2017-07-14
http://www.securityfocus.com/bid/95130
Juniper ScreenOS Multiple HTML Injection Vulnerabilities
2017-07-14
http://www.securityfocus.com/bid/99590
Apache OpenMeetings CVE-2017-7684 Denial of Service Vulnerability
2017-07-14
http://www.securityfocus.com/bid/99584
Oracle July 2017 Critical Patch Update Multiple Vulnerabilities
2017-07-14
http://www.securityfocus.com/bid/99579
NTP CVE-2017-6462 Local Buffer Overflow Vulnerability
2017-07-13
http://www.securityfocus.com/bid/97045
NTP CVE-2017-6451 Local Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/97058
NTP CVE-2017-6464 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/97050
NTP CVE-2017-6458 Buffer Overflow Vulnerability
2017-07-13
http://www.securityfocus.com/bid/97051
Microsoft Windows CVE-2014-4114 OLE Package Manager Remote Code Execution Vulnerability
2017-07-13
http://www.securityfocus.com/bid/70419
Microsoft Office CVE-2015-1641 Memory Corruption Vulnerability
2017-07-13
http://www.securityfocus.com/bid/73995
Microsoft Windows Kernel 'Win32k.sys' CVE-2016-7255 Local Privilege Escalation Vulnerability
2017-07-13
http://www.securityfocus.com/bid/94064
Heimdal CVE-2017-11103 Man in the Middle Security Bypass Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99551
Microsoft Windows CVE-2017-0170 XML External Entity Local Information Disclosure Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99398
Apache OpenMeetings CVE-2017-7673 Security Bypass Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99587
Apache OpenMeetings CVE-2017-7688 Security Bypass Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99586
ImageMagick CVE-2017-11310 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99585
Siemens SIMATIC WinCC Sm@rtClient for Android ICSA-17-194-03 Multiple Security Vulnerabilities
2017-07-13
http://www.securityfocus.com/bid/99582
GE Communicator CVE-2017-7908 Heap Based Buffer Overflow Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99580
Siemens SiPass integrated ICSA-17-194-01 Multiple Security Vulnerabilities
2017-07-13
http://www.securityfocus.com/bid/99578
Apache OpenMeetings CVE-2017-7663 Cross Site Scripting Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99577
Apache OpenMeetings CVE-2017-7664 XML External Entity Injection Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99576
Jenkins Subversion Plugin CVE-2017-1000085 Cross Site Request Forgery Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99574
GNU Binutils CVE-2017-9955 Multiple Heap Based Buffer Overflow Vulnerabilities
2017-07-13
http://www.securityfocus.com/bid/99573
Jenkins Pipeline: Groovy Plugin CVE-2017-1000096 Remote Code Execution Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99571
Trend Micro Deep Discovery Director Multiple Security Vulnerabilities
2017-07-13
http://www.securityfocus.com/bid/99570
Apache HTTP Server CVE-2017-9789 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99568
Juniper Junos CVE-2017-2345 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99567
Apache Struts CVE-2017-7672 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99563
Apache Struts Spring AOP Functionality Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99562
SANS News
Threatpost
Experts Warn Too Often AWS S3 Buckets Are Misconfigured, Leak Data
Cisco Patches Publicly Disclosed SNMP Vulnerabilities in IOS, IOS XE
Siemens Patches Authentication Bypass Flaw in SiPass Server
NemucodAES Ransomware, Kovter Click-Fraud Malware Spreading in Same Campaigns
Exploit
Firefox 50.0.1 - ASM.JS JIT-Spray Remote Code Execution
Apache Struts 2.3.x Showcase - Remote Code Execution (PoC)
WDTV Live SMP 2.03.20 - Remote Password Reset
Counter Strike: Condition Zero - '.BSP' Map File Code Execution
13.7.2017
Bugtraq
[CVE-2017-7728] - Authentication Bypass allows alarm's commands execution in iSmartAlarm 2017-07-13
ilia shnaidman bullguard com
CVE-2017-7684 - Apache OpenMeetings - Insecure File Upload 2017-07-13
Maxim Solodovnik (solomax apache org)
CVE-2017-7663 - Apache OpenMeetings - XSS in chat 2017-07-13
Maxim Solodovnik (solomax apache org)
CVE-2017-7688 - Apache OpenMeetings - Insecure Password Update 2017-07-13
Maxim Solodovnik (solomax apache org)
CVE-2017-7664 - Apache OpenMeetings - Missing XML Validation 2017-07-13
Maxim Solodovnik (solomax666 gmail com)
CVE-2017-9788: Uninitialized memory reflection in mod_auth_digest 2017-07-13
William A Rowe Jr (wrowe apache org)
CVE-2017-9789: Apache httpd 2.4 Read after free in mod_http2 2017-07-13
William A Rowe Jr (wrowe apache org)
[SECURITY] [DSA 3908-1] nginx security update 2017-07-12
Moritz Muehlenhoff (jmm debian org)
Malware
Phishing
eBay | 14th July 2017 |
U.S. Bank | 13th July 2017 |
CapitalOne | 13th July 2017 |
Vulnerebility
Microsoft Windows COM CVE-2017-0298 Local Privilege Escalation Vulnerability
2017-07-14
http://www.securityfocus.com/bid/98841
PHPMailer CVE-2016-10045 Incomplete Fix Remote Code Execution Vulnerability
2017-07-14
http://www.securityfocus.com/bid/95130
Juniper ScreenOS Multiple HTML Injection Vulnerabilities
2017-07-14
http://www.securityfocus.com/bid/99590
Apache OpenMeetings CVE-2017-7684 Denial of Service Vulnerability
2017-07-14
http://www.securityfocus.com/bid/99584
Oracle July 2017 Critical Patch Update Multiple Vulnerabilities
2017-07-14
http://www.securityfocus.com/bid/99579
NTP CVE-2017-6462 Local Buffer Overflow Vulnerability
2017-07-13
http://www.securityfocus.com/bid/97045
NTP CVE-2017-6451 Local Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/97058
NTP CVE-2017-6464 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/97050
NTP CVE-2017-6458 Buffer Overflow Vulnerability
2017-07-13
http://www.securityfocus.com/bid/97051
Microsoft Windows CVE-2014-4114 OLE Package Manager Remote Code Execution Vulnerability
2017-07-13
http://www.securityfocus.com/bid/70419
Microsoft Office CVE-2015-1641 Memory Corruption Vulnerability
2017-07-13
http://www.securityfocus.com/bid/73995
Microsoft Windows Kernel 'Win32k.sys' CVE-2016-7255 Local Privilege Escalation Vulnerability
2017-07-13
http://www.securityfocus.com/bid/94064
Heimdal CVE-2017-11103 Man in the Middle Security Bypass Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99551
Microsoft Windows CVE-2017-0170 XML External Entity Local Information Disclosure Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99398
Apache OpenMeetings CVE-2017-7673 Security Bypass Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99587
Apache OpenMeetings CVE-2017-7688 Security Bypass Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99586
ImageMagick CVE-2017-11310 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99585
Siemens SIMATIC WinCC Sm@rtClient for Android ICSA-17-194-03 Multiple Security Vulnerabilities
2017-07-13
http://www.securityfocus.com/bid/99582
GE Communicator CVE-2017-7908 Heap Based Buffer Overflow Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99580
Siemens SiPass integrated ICSA-17-194-01 Multiple Security Vulnerabilities
2017-07-13
http://www.securityfocus.com/bid/99578
Apache OpenMeetings CVE-2017-7663 Cross Site Scripting Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99577
Apache OpenMeetings CVE-2017-7664 XML External Entity Injection Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99576
Jenkins Subversion Plugin CVE-2017-1000085 Cross Site Request Forgery Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99574
GNU Binutils CVE-2017-9955 Multiple Heap Based Buffer Overflow Vulnerabilities
2017-07-13
http://www.securityfocus.com/bid/99573
Jenkins Pipeline: Groovy Plugin CVE-2017-1000096 Remote Code Execution Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99571
Trend Micro Deep Discovery Director Multiple Security Vulnerabilities
2017-07-13
http://www.securityfocus.com/bid/99570
Apache HTTP Server CVE-2017-9789 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99568
Juniper Junos CVE-2017-2345 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99567
Apache Struts CVE-2017-7672 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99563
Apache Struts Spring AOP Functionality Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99562
SANS News
NemucodAES and the malspam that distributes it
Threatpost
Google Changes How it Analyzes Misbehaving Mobile Apps
Attackers Using Automated Scans to Takeover WordPress Installs
Scanner Shows EternalBlue Vulnerability Unpatched on Thousands of Machines
Exploit
Dasan Networks GPON ONT WiFi Router H64X Series - Authentication Bypass
Dasan Networks GPON ONT WiFi Router H64X Series - Cross-Site Request Forgery
Dasan Networks GPON ONT WiFi Router H64X Series - Privilege Escalation
Dasan Networks GPON ONT WiFi Router H64X Series - Configuration Download
13.7.2017
Bugtraq
CVE-2017-9788: Uninitialized memory reflection in mod_auth_digest 2017-07-13
William A Rowe Jr (wrowe apache org)
CVE-2017-9789: Apache httpd 2.4 Read after free in mod_http2 2017-07-13
William A Rowe Jr (wrowe apache org)
[SECURITY] [DSA 3908-1] nginx security update 2017-07-12
Moritz Muehlenhoff (jmm debian org)
SEC Consult SA-20170712-0 :: Multiple critical vulnerabilities in AGFEO smart home ES 5xx/6xx products 2017-07-12
SEC Consult Vulnerability Lab (research sec-consult com)
[CVE request]linux kernel xfrm migrate out-of-bound access 2017-07-11
bo Zhang (zhangbo5891001 gmail com)
[RT-SA-2017-011] Remote Command Execution in PDNS Manager 2017-07-11
RedTeam Pentesting GmbH (release redteam-pentesting de)
Malware
Phishing
CapitalOne | 13th July 2017 |
noreply | 12th July 2017 |
Natwest | 12th July 2017 |
Vulnerebility
Microsoft Windows CVE-2014-4114 OLE Package Manager Remote Code Execution Vulnerability
2017-07-13
http://www.securityfocus.com/bid/70419
Microsoft Office CVE-2015-1641 Memory Corruption Vulnerability
2017-07-13
http://www.securityfocus.com/bid/73995
Microsoft Windows Kernel 'Win32k.sys' CVE-2016-7255 Local Privilege Escalation Vulnerability
2017-07-13
http://www.securityfocus.com/bid/94064
Heimdal CVE-2017-11103 Man in the Middle Security Bypass Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99551
Microsoft Windows CVE-2017-0170 XML External Entity Local Information Disclosure Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99398
Apache HTTP Server CVE-2017-9789 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99568
Juniper Junos CVE-2017-2345 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99567
Apache Struts CVE-2017-7672 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99563
Apache Struts Spring AOP Functionality Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99562
McAfee Advanced Threat Defense CVE-2017-4053 Command Injection Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99560
Juniper Junos CVE-2017-2344 Local Buffer Overflow Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99556
Microsoft Office OLE Feature Remote Code Execution Vulnerability
2017-07-12
http://www.securityfocus.com/bid/97498
Microsoft Office CVE-2017-0262 Remote Code Execution Vulnerability
2017-07-12
http://www.securityfocus.com/bid/98279
Microsoft Windows Kernel 'Win32k.sys' CVE-2017-0263 Local Privilege Escalation Vulnerability
2017-07-12
http://www.securityfocus.com/bid/98258
X.Org X Server CVE-2017-10972 Information Disclosure Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99543
Adobe Flash Player CVE-2017-3100 Information Disclosure Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99523
Adobe Flash Player CVE-2017-3099 Remote Memory Corruption Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99520
Adobe Flash Player CVE-2017-3080 Information Disclosure Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99519
SAP NetWeaver Unspecified Security Bypass Vulnerability
2017-07-12
http://www.securityfocus.com/bid/96875
ImageMagick CVE-2017-11188 Denial of Service Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99566
IBM Daeja ViewONE CVE-2017-1308 Arbitrary File Download Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99549
Multiple IBM Products CVE-2016-8964 Brute Force Authentication Bypass Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99548
IBM Emptoris Sourcing Multiple Cross Site Scripting and Open Redirection Vulnerabilities
2017-07-12
http://www.securityfocus.com/bid/99545
IBM Emptoris Spend Analysis Multiple Cross Site Scripting Vulnerabilities
2017-07-12
http://www.securityfocus.com/bid/99541
Microsoft Windows Kernel CVE-2016-3305 Local Privilege Escalation Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92812
Microsoft Windows Search CVE-2017-8589 Remote Code Execution Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99425
Siemens EN100 Ethernet Module CVE-2016-7113 Denial of Service Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92748
Multiple Siemens SIPROTEC Products EN100 Module CVE-2015-5374 Denial of Service Vulnerability
2017-07-11
http://www.securityfocus.com/bid/75948
Siemens EN100 Ethernet Module CVE-2016-7114 Authentication Bypass Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92745
Siemens EN100 Ethernet Module CVE-2016-7112 Authentication Bypass Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92747
SANS News
Investigation of BitTorrent Sync (v.2.0) as a P2P Cloud Service (Part 3 ? Physical Memory artefacts)
Threatpost
SAP Patches High-Risk Flaws in SAP POS, Host Agent
Uber Patches Authentication Bypass Vulnerability on Custom SSO Solution
New Point-of-Sale Malware LockPoS Hitches Ride with FlokiBot
Third Party Exposes 14 Million Verizon Customer Records
Exploit
Skype for Business 2016 - Cross-Site Scripting
Dasan Networks GPON ONT WiFi Router H64X Series - Authentication Bypass
Dasan Networks GPON ONT WiFi Router H64X Series - Cross-Site Request Forgery
Dasan Networks GPON ONT WiFi Router H64X Series - Privilege Escalation
Dasan Networks GPON ONT WiFi Router H64X Series - Configuration Download
12.7.2017
Bugtraq
SEC Consult SA-20170712-0 :: Multiple critical vulnerabilities in AGFEO smart home ES 5xx/6xx products 2017-07-12
SEC Consult Vulnerability Lab (research sec-consult com)
[CVE request]linux kernel xfrm migrate out-of-bound access 2017-07-11
bo Zhang (zhangbo5891001 gmail com)
[RT-SA-2017-011] Remote Command Execution in PDNS Manager 2017-07-11
RedTeam Pentesting GmbH (release redteam-pentesting de)
CVE-2017-4918: Code Injection in VMware Horizonâ??s macOS Client 2017-07-10
Florian Bogner (florian bogner sh)
[security bulletin] HPESBGN03763 rev.1 - HPE SiteScope, Disclosure of Sensitive Information, Bypass Security Restriction, Remote Arbitrary Code Execution 2017-07-10
HPE Product Security Response Team (security-alert hpe com)
[security bulletin] HPESBGN03762 rev.1 - HPE Network Node Manager i (NNMi) Software, Remote Bypass Security Restrictions, Cross-Site Scripting (XSS), URL Redirection 2017-07-10
HPE Product Security Response Team (security-alert hpe com)
Malware
Phishing
noreply | 12th July 2017 |
Natwest | 12th July 2017 |
Vulnerebility
Microsoft Office OLE Feature Remote Code Execution Vulnerability
2017-07-12
http://www.securityfocus.com/bid/97498
Microsoft Office CVE-2017-0262 Remote Code Execution Vulnerability
2017-07-12
http://www.securityfocus.com/bid/98279
Microsoft Windows Kernel 'Win32k.sys' CVE-2017-0263 Local Privilege Escalation Vulnerability
2017-07-12
http://www.securityfocus.com/bid/98258
X.Org X Server CVE-2017-10972 Information Disclosure Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99543
Adobe Flash Player CVE-2017-3100 Information Disclosure Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99523
Adobe Flash Player CVE-2017-3099 Remote Memory Corruption Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99520
Adobe Flash Player CVE-2017-3080 Information Disclosure Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99519
SAP NetWeaver Unspecified Security Bypass Vulnerability
2017-07-12
http://www.securityfocus.com/bid/96875
Heimdal CVE-2017-11103 Man in the Middle Security Bypass Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99551
IBM Daeja ViewONE CVE-2017-1308 Arbitrary File Download Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99549
Multiple IBM Products CVE-2016-8964 Brute Force Authentication Bypass Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99548
IBM Emptoris Sourcing Multiple Cross Site Scripting and Open Redirection Vulnerabilities
2017-07-12
http://www.securityfocus.com/bid/99545
Microsoft Windows Kernel CVE-2016-3305 Local Privilege Escalation Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92812
Microsoft Windows Search CVE-2017-8589 Remote Code Execution Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99425
Siemens EN100 Ethernet Module CVE-2016-7113 Denial of Service Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92748
Multiple Siemens SIPROTEC Products EN100 Module CVE-2015-5374 Denial of Service Vulnerability
2017-07-11
http://www.securityfocus.com/bid/75948
Siemens EN100 Ethernet Module CVE-2016-7114 Authentication Bypass Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92745
Siemens EN100 Ethernet Module CVE-2016-7112 Authentication Bypass Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92747
Multiple Siemens SIPROTEC Products ICSA-16-140-02 Information Disclosure Vulnerabilities
2017-07-11
http://www.securityfocus.com/bid/90773
Fuji Electric V-Server CVE-2017-9639 Memory Corruption Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99544
OSIsoft PI Coresight CVE-2017-9641 Cross Site Request Forgery Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99540
Siemens SIMATIC Logon CVE-2017-9938 Out of Bounds Write Denial of Service Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99539
Schweitzer Engineering Laboratories SEL-3620/3622 CVE-2017-7928 Unauthorized Access Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99536
Nginx CVE-2017-7529 Remote Integer Overflow Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99534
Microsoft Exchange Server CVE-2017-8621 Open Redirection Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99533
SAP Customer Relationship Management (CRM) Cross Site Scripting Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99532
SAP Point of Sale (POS) Retail Xpress Server Authentication Bypass Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99531
SAP BusinessObjects Enterprise Information Disclosure Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99530
SAP Netweaver Data Orchestration Engine Unspecified Information Disclosure Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99529
SAP Host Agent Unspecified Denial of Service Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99528
SANS News
Threatpost
Adobe Fixes Six Vulnerabilities in Flash, Connect with July Update
Microsoft Addresses NTLM Bugs That Facilitate Credential Relay Attacks
Microsoft Patch Tuesday Update Fixes 19 Critical Vulnerabilities
Exploit
11.7.2017
Bugtraq
[security bulletin] HPESBGN03763 rev.1 - HPE SiteScope, Disclosure of Sensitive Information, Bypass Security Restriction, Remote Arbitrary Code Execution 2017-07-10
HPE Product Security Response Team (security-alert hpe com)
[security bulletin] HPESBGN03762 rev.1 - HPE Network Node Manager i (NNMi) Software, Remote Bypass Security Restrictions, Cross-Site Scripting (XSS), URL Redirection 2017-07-10
HPE Product Security Response Team (security-alert hpe com)
[security bulletin] HPESBHF03745 rev.2 - HPE Intelligent Management Center (iMC) PLAT, Remote Code Execution 2017-07-10
HPE Product Security Response Team (security-alert hpe com)
[security bulletin] HPESBNS03755 rev.1 - HPE NonStop Server using Samba, Multiple Remote Vulnerabilities 2017-07-10
HPE Product Security Response Team (security-alert hpe com)
CVE-2017-5640 Apache Impala (incubating) Information Disclosure 2017-07-10
Sailesh Mukil (sailesh apache org)
[SECURITY] CVE-2017-5652 Apache Impala (incubating) Information Disclosure 2017-07-10
Sailesh Mukil (sailesh apache org)
ToorCon 19 Call For Papers Closing This Week! 2017-07-10
h1kari toorcon org
Malware
Ransom:Win32/Enestaller
Ransom:Win32/Enestedel
SoftwareBundler:Win32/FileTour
Phishing
Vulnerebility
Siemens EN100 Ethernet Module CVE-2016-7113 Denial of Service Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92748
Multiple Siemens SIPROTEC Products EN100 Module CVE-2015-5374 Denial of Service Vulnerability
2017-07-11
http://www.securityfocus.com/bid/75948
Siemens EN100 Ethernet Module CVE-2016-7114 Authentication Bypass Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92745
Siemens EN100 Ethernet Module CVE-2016-7112 Authentication Bypass Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92747
Multiple Siemens SIPROTEC Products ICSA-16-140-02 Information Disclosure Vulnerabilities
2017-07-11
http://www.securityfocus.com/bid/90773
RETIRED:Siemens EN100 Ethernet Modules for Reyrolle ICSA-17-187-02 Multiple Security Vulnerabilities
2017-07-10
http://www.securityfocus.com/bid/99471
Apache Struts CVE-2017-9791 Remote Code Execution Vulnerability
2017-07-10
http://www.securityfocus.com/bid/99484
VLAN VLC CVE-2017-8313 Denial of Service Vulnerability
2017-07-10
http://www.securityfocus.com/bid/98633
VLAN VLC CVE-2017-8310 Denial of Service Vulnerability
2017-07-10
http://www.securityfocus.com/bid/98638
VideoLAN VLC CVE-2017-8311 Heap Based Buffer Overflow Vulnerability
2017-07-10
http://www.securityfocus.com/bid/98634
VideoLAN VLC CVE-2017-8312 Information Disclosure Vulnerability
2017-07-10
http://www.securityfocus.com/bid/98631
RoundCube Webmail CVE-2017-8114 Multiple Privilege Escalation Vulnerabilities
2017-07-10
http://www.securityfocus.com/bid/98445
Ubuntu Vivid CVE-2015-1336 Local Privilege Escalation Vulnerability
2017-07-10
http://www.securityfocus.com/bid/79723
WordPress Shortcodes Ultimate Plugin CVE-2017-2245 Directory Traversal Vulnerability
2017-07-10
http://www.securityfocus.com/bid/99495
PHP 'gd_gif_in.c' Memory Corruption Vulnerability
2017-07-10
http://www.securityfocus.com/bid/99492
PHP 'finish_nested_data()' Function Heap Buffer Overflow Vulnerability
2017-07-10
http://www.securityfocus.com/bid/99490
PHP 'zend_ini_do_op()' Function Stack Buffer Overflow Vulnerability
2017-07-10
http://www.securityfocus.com/bid/99489
ImageMagick CVE-2017-11141 Denial of Service Vulnerability
2017-07-09
http://www.securityfocus.com/bid/99506
GraphicsMagick CVE-2017-11139 Multiple Denial of Service Vulnerabilities
2017-07-09
http://www.securityfocus.com/bid/99504
GraphicsMagick 'coders/jpeg.c' Denial of Service Vulnerability
2017-07-09
http://www.securityfocus.com/bid/99503
SQLite CVE-2017-10989 Heap Buffer Overflow Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99502
GraphicsMagick 'coders/png.c' Denial of Service Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99498
Poppler PDF Library Multiple Heap Buffer Overflow and Integer Overflow Vulnerabilities
2017-07-07
http://www.securityfocus.com/bid/99497
ImageMagick CVE-2017-10995 Heap Buffer Overflow Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99496
Apache Solr CVE-2017-7660 Security Bypass Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99485
QEMU CVE-2017-10806 Stack Buffer Overflow Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99475
Qualcomm Closed-Source Components Multiple Unspecified Vulnerabilities
2017-07-07
http://www.securityfocus.com/bid/99467
WordPress Responsive Lightbox Plugin CVE-2017-2243 Cross Site Scripting Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99463
NTP CVE-2017-6458 Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97051
NTP CVE-2016-9042 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97046
SANS News
Threatpost
Google to Fully Distrust WoSign/StartCom SSL Certs in Chrome 61
Energy, Nuclear Targeted with Template Injection Attacks
Telcos Singled Out for Prioritizing Government Requests for Data Over Privacy
Micro Market Vendor Warns of Bankcard And Biometric Data Breach
Exploit
Microsoft Windows Windows 7/8.1/2008 R2/2012 R2/2016 R2 - 'EternalBlue' SMB Remote...
NfSen < 1.3.7 / AlienVault OSSIM < 5.3.6 - Privilege Escalation
NfSen <= 1.3.7 / AlienVault OSSIM 5.3.4 - Command Injection
Pelco Sarix/Spectra Cameras - Cross-Site Request Forgery / Cross-Site Scripting
Pelco Sarix/Spectra Cameras - Remote Code Execution
Pelco VideoXpert 1.12.105 - Information Disclosure
Pelco VideoXpert 1.12.105 - Directory Traversal
Pelco VideoXpert 1.12.105 - Privilege Escalation
Pelco Sarix/Spectra Cameras - Cross-Site Request Forgery (Enable SSH Root Access)
10.7.2017
Bugtraq
[slackware-security] irssi (SSA:2017-190-01) 2017-07-09
Slackware Security Team (security slackware com)
[SECURITY] [DSA 3905-1] xorg-server security update 2017-07-09
Moritz Muehlenhoff (jmm debian org)
[SECURITY] [DSA 3904-1] bind9 security update 2017-07-08
Yves-Alexis Perez (corsac debian org)
[slackware-security] php (SSA:2017-188-01) 2017-07-08
Slackware Security Team (security slackware com)
CVE-2017-10974 Yaws Web Server v1.91 Unauthenticated Remote File Disclosure 2017-07-08
apparitionsec gmail com (hyp3rlinx)
[ANNOUNCE] [SECURITY] CVE-2017-7660: Security Vulnerability in secure inter-node communication in Apache Solr 2017-07-07
Shalin Shekhar Mangar (shalin apache org)
[SYSS-2017-011] Office 365: Insufficient Session Expiration (CWE-613) 2017-07-07
Micha Borrmann (micha borrmann syss de)
Firefox v54.0.1 Denial Of Service 2017-07-07
apparitionsec gmail com
KL-001-2017-015 : Solarwinds LEM Hardcoded Credentials 2017-07-06
KoreLogic Disclosures (disclosures korelogic com)
KL-001-2017-014 : Barracuda WAF Support Tunnel Hijack 2017-07-06
KoreLogic Disclosures (disclosures korelogic com)
Malware
Phishing
Vulnerebility
Apache Struts CVE-2017-9791 Remote Code Execution Vulnerability
2017-07-10
http://www.securityfocus.com/bid/99484
VLAN VLC CVE-2017-8313 Denial of Service Vulnerability
2017-07-10
http://www.securityfocus.com/bid/98633
VLAN VLC CVE-2017-8310 Denial of Service Vulnerability
2017-07-10
http://www.securityfocus.com/bid/98638
VideoLAN VLC CVE-2017-8311 Heap Based Buffer Overflow Vulnerability
2017-07-10
http://www.securityfocus.com/bid/98634
VideoLAN VLC CVE-2017-8312 Information Disclosure Vulnerability
2017-07-10
http://www.securityfocus.com/bid/98631
RoundCube Webmail CVE-2017-8114 Multiple Privilege Escalation Vulnerabilities
2017-07-10
http://www.securityfocus.com/bid/98445
Ubuntu Vivid CVE-2015-1336 Local Privilege Escalation Vulnerability
2017-07-10
http://www.securityfocus.com/bid/79723
PHP 'gd_gif_in.c' Memory Corruption Vulnerability
2017-07-10
http://www.securityfocus.com/bid/99492
PHP 'zend_ini_do_op()' Function Stack Buffer Overflow Vulnerability
2017-07-10
http://www.securityfocus.com/bid/99489
Apache Solr CVE-2017-7660 Security Bypass Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99485
QEMU CVE-2017-10806 Stack Buffer Overflow Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99475
Qualcomm Closed-Source Components Multiple Unspecified Vulnerabilities
2017-07-07
http://www.securityfocus.com/bid/99467
WordPress Responsive Lightbox Plugin CVE-2017-2243 Cross Site Scripting Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99463
NTP CVE-2017-6458 Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97051
NTP CVE-2016-9042 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97046
NTP CVE-2016-9310 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94452
NTP CVE-2016-2519 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/88204
NTP CVE-2016-7431 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94454
NTP CVE-2016-7433 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94455
NTP CVE-2016-7427 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94447
NTP CVE-2017-6460 Stack Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97052
NTP CVE-2017-6463 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97049
NTP CVE-2016-7426 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94451
NTP CVE-2016-7429 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94453
NTP CVE-2016-7428 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94446
NTP CVE-2017-6462 Local Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97045
NTP CVE-2016-9311 NULL Pointer Dereference Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94444
NTP CVE-2016-7434 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94448
NTP CVE-2017-6464 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97050
LibTIFF 'tif_dirwrite.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99359
SANS News
Threatpost
Exploit
9.7.2017
Bugtraq
[ANNOUNCE] [SECURITY] CVE-2017-7660: Security Vulnerability in secure inter-node communication in Apache Solr 2017-07-07
Shalin Shekhar Mangar (shalin apache org)
[SYSS-2017-011] Office 365: Insufficient Session Expiration (CWE-613) 2017-07-07
Micha Borrmann (micha borrmann syss de)
Malware
Phishing
Vulnerebility
Apache Solr CVE-2017-7660 Security Bypass Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99485
Apache Struts CVE-2017-9791 Remote Code Execution Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99484
QEMU CVE-2017-10806 Stack Buffer Overflow Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99475
Qualcomm Closed-Source Components Multiple Unspecified Vulnerabilities
2017-07-07
http://www.securityfocus.com/bid/99467
WordPress Responsive Lightbox Plugin CVE-2017-2243 Cross Site Scripting Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99463
NTP CVE-2017-6458 Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97051
SANS News
Threatpost
Hard Rock, Loews Hotels Among Sabre Corp Hospitality Breach Victims
Exploit
Easy File Sharing Web Server 7.2 - GET HTTP Request 'PassWD' Buffer Overflow (DEP...
7.7.2017
Bugtraq
[ANNOUNCE] [SECURITY] CVE-2017-7660: Security Vulnerability in secure inter-node communication in Apache Solr 2017-07-07
Shalin Shekhar Mangar (shalin apache org)
[SYSS-2017-011] Office 365: Insufficient Session Expiration (CWE-613) 2017-07-07
Micha Borrmann (micha borrmann syss de)
Firefox v54.0.1 Denial Of Service 2017-07-07
apparitionsec gmail com
KL-001-2017-015 : Solarwinds LEM Hardcoded Credentials 2017-07-06
KoreLogic Disclosures (disclosures korelogic com)
KL-001-2017-014 : Barracuda WAF Support Tunnel Hijack 2017-07-06
KoreLogic Disclosures (disclosures korelogic com)
KL-001-2017-012 : Barracuda WAF Grub Password Complexity 2017-07-06
KoreLogic Disclosures (disclosures korelogic com)
KL-001-2017-011 : Barracuda WAF Internal Development Credential Disclosure 2017-07-06
KoreLogic Disclosures (disclosures korelogic com)
[SECURITY] [DSA 3903-1] tiff security update 2017-07-05
Moritz Muehlenhoff (jmm debian org)
[SECURITY] [DSA 3902-1] jabberd2 security update 2017-07-05
Salvatore Bonaccorso (carnil debian org)
[security bulletin] HPSBMU02933 rev.3 - HPE SiteScope, issueSiebelCmd and loadFileContents SOAP Requests, Remote Code Execution, Arbitrary File download, Denial of Service (DoS) 2017-07-05
HPE Product Security Response Team (security-alert hpe com)
[slackware-security] Slackware 14.0 kernel (SSA:2017-184-01) 2017-07-03
Slackware Security Team (security slackware com)
Malware
Phishing
Amazon | 6th July 2017 |
Amazon | 6th July 2017 |
AppIe Support | 5th July 2017 |
Amazon-Store-Card | 4th July 2017 |
Important-Information about |
Vulnerebility
Qualcomm Closed-Source Components Multiple Unspecified Vulnerabilities
2017-07-07
http://www.securityfocus.com/bid/99467
WordPress Responsive Lightbox Plugin CVE-2017-2243 Cross Site Scripting Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99463
NTP CVE-2017-6458 Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97051
NTP CVE-2016-9042 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97046
NTP CVE-2016-9310 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94452
NTP CVE-2016-2519 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/88204
NTP CVE-2016-7431 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94454
NTP CVE-2016-7433 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94455
NTP CVE-2016-7427 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94447
NTP CVE-2017-6460 Stack Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97052
NTP CVE-2017-6463 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97049
NTP CVE-2016-7426 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94451
NTP CVE-2016-7429 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94453
NTP CVE-2016-7428 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94446
NTP CVE-2017-6462 Local Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97045
NTP CVE-2016-9311 NULL Pointer Dereference Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94444
NTP CVE-2016-7434 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94448
NTP CVE-2017-6464 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97050
LibTIFF 'tif_dirwrite.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99359
LibTIFF CVE-2016-10095 Stack Based Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/95178
LibTIFF 'tif_jbig.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99300
LibTIFF 'tif_dir.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/98594
Schneider Electric Ampla MES ICSA-17-187-05 Multiple Local Security Vulnerabilities
2017-07-06
http://www.securityfocus.com/bid/99469
Google Android Qualcomm Components Multiple Security Vulnerabilities
2017-07-06
http://www.securityfocus.com/bid/99465
Cisco Identity Services Engine (ISE) Software CVE-2017-6734 Cross Site Scripting Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99459
Xen 'xen/arch/arm/vgic.c' Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99160
Xen 'xen/arch/arm/gic.c' Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99159
Xen XSA-222 Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99161
Xen 'xen/arch/x86/irq.c' NULL pointer Dereference Remote Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99157
Xen XSA-220 Information Disclosure Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99167
SANS News
Threatpost
CopyCat Malware Infected 14M Android Devices, Rooted 8M, in 2016
Let’s Encrypt to Offer Wildcard Certificates in 2018
Decryption Key to Original Petya Ransomware Released
Leaky WWE Database Exposes Personal Data of 3M Wrestling Fans
Exploit
Firefox 54.0.1 - Denial of Service
LibTIFF - 'tif_dirwrite.c' Denial of Service
LibTIFF - 'tif_jbig.c' Denial of Service
LibTIFF - '_TIFFVGetField (tiffsplit)' Out-of-Bounds Read
6.7.2017
Bugtraq
NTP CVE-2017-6458 Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97051
NTP CVE-2016-9042 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97046
NTP CVE-2016-9310 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94452
NTP CVE-2016-2519 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/88204
NTP CVE-2016-7431 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94454
NTP CVE-2016-7433 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94455
NTP CVE-2016-7427 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94447
NTP CVE-2017-6460 Stack Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97052
NTP CVE-2017-6463 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97049
NTP CVE-2016-7426 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94451
NTP CVE-2016-7429 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94453
NTP CVE-2016-7428 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94446
NTP CVE-2017-6462 Local Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97045
NTP CVE-2016-9311 NULL Pointer Dereference Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94444
NTP CVE-2016-7434 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94448
NTP CVE-2017-6464 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97050
LibTIFF 'tif_dirwrite.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99359
LibTIFF CVE-2016-10095 Stack Based Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/95178
LibTIFF 'tif_jbig.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99300
LibTIFF 'tif_dir.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/98594
Cisco Identity Services Engine (ISE) Software CVE-2017-6734 Cross Site Scripting Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99459
Xen 'xen/arch/arm/vgic.c' Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99160
Xen 'xen/arch/arm/gic.c' Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99159
Xen XSA-222 Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99161
Xen 'xen/arch/x86/irq.c' NULL pointer Dereference Remote Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99157
Xen XSA-220 Information Disclosure Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99167
Xen 'shadow/common.c' Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99174
Xen Page Transfer 'xen/arch/x86/mm.c' Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99158
Xen 'blkif' Response Information Disclosure Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99162
Resteasy CVE-2016-9606 Remote Code Execution Vulnerability
2017-07-05
http://www.securityfocus.com/bid/94940
Malware
SoftwareBundler:MSIL/Wizrem
Ransom.Fakecry
Phishing
Amazon | 6th July 2017 |
AppIe Support | 5th July 2017 |
Amazon-Store-Card | 4th July 2017 |
Important-Information about |
Vulnerebility
NTP CVE-2017-6458 Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97051
NTP CVE-2016-9042 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97046
NTP CVE-2016-9310 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94452
NTP CVE-2016-2519 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/88204
NTP CVE-2016-7431 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94454
NTP CVE-2016-7433 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94455
NTP CVE-2016-7427 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94447
NTP CVE-2017-6460 Stack Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97052
NTP CVE-2017-6463 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97049
NTP CVE-2016-7426 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94451
NTP CVE-2016-7429 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94453
NTP CVE-2016-7428 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94446
NTP CVE-2017-6462 Local Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97045
NTP CVE-2016-9311 NULL Pointer Dereference Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94444
NTP CVE-2016-7434 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94448
NTP CVE-2017-6464 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97050
LibTIFF 'tif_dirwrite.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99359
LibTIFF CVE-2016-10095 Stack Based Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/95178
LibTIFF 'tif_jbig.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99300
LibTIFF 'tif_dir.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/98594
Xen 'xen/arch/arm/vgic.c' Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99160
Xen 'xen/arch/arm/gic.c' Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99159
Xen XSA-222 Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99161
Xen 'xen/arch/x86/irq.c' NULL pointer Dereference Remote Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99157
Xen XSA-220 Information Disclosure Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99167
Xen 'shadow/common.c' Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99174
Xen Page Transfer 'xen/arch/x86/mm.c' Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99158
Xen 'blkif' Response Information Disclosure Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99162
Resteasy CVE-2016-9606 Remote Code Execution Vulnerability
2017-07-05
http://www.securityfocus.com/bid/94940
RedHat RESTEasy CVE-2016-6346 Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/92744
SANS News
Threatpost
Threat Actors Target Chinese Language News Sites
Exploit
GoAutoDial 3.3 - Authentication Bypass / Command Injection (Metasploit)
Lepide Auditor Suite - 'createdb()' Web Console Database Injection Remote Code...
5.7.2017
Bugtraq
Malware
Phishing
Vulnerebility
Xen 'xen/arch/arm/vgic.c' Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99160
Xen 'xen/arch/arm/gic.c' Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99159
Xen XSA-222 Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99161
Xen 'xen/arch/x86/irq.c' NULL pointer Dereference Remote Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99157
Xen XSA-220 Information Disclosure Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99167
Xen 'shadow/common.c' Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99174
Xen Page Transfer 'xen/arch/x86/mm.c' Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99158
Xen 'blkif' Response Information Disclosure Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99162
Resteasy CVE-2016-9606 Remote Code Execution Vulnerability
2017-07-05
http://www.securityfocus.com/bid/94940
RedHat RESTEasy CVE-2016-6346 Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/92744
Linux Kernel 'ipv4/udp.c' Remote Code Execution Vulnerability
2017-07-04
http://www.securityfocus.com/bid/97397
ISC BIND CVE-2017-3136 Remote Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/97653
ISC BIND CVE-2017-3135 Remote Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/96150
Linux Kernel 'Ack Challenge' Information Disclosure Vulnerability
2017-07-04
http://www.securityfocus.com/bid/91704
OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/93841
OpenVPN CVE-2017-7478 Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98444
OpenVPN Multiple Security Vulnerabilities
2017-07-04
http://www.securityfocus.com/bid/99230
OpenVPN CVE-2017-7479 Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98443
Linux kernel CVE-2017-9075 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98597
Linux kernel CVE-2017-9077 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98583
Linux kernel CVE-2017-9242 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98731
Linux kernel CVE-2017-9076 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98586
Linux Kernel CVE-2017-1000363 Integer Overflow Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98651
Linux Kernel CVE-2017-7374 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/97308
Linux Kernel CVE-2017-8890 Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98562
Linux Kernel CVE-2017-5577 Remote Buffer Overflow Vulnerability
2017-07-04
http://www.securityfocus.com/bid/95765
Linux Kernel CVE-2017-7294 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/97177
Linux kernel CVE-2017-9074 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98577
Libgcrypt CVE-2017-7526 Information Disclosure Vulnerability
2017-07-04
http://www.securityfocus.com/bid/99338
Libgcrypt 'cipher/ecc-eddsa.c' Information Disclosure Vulnerability
2017-07-04
http://www.securityfocus.com/bid/99046
SANS News
Selecting domains with random names
Threatpost
Exploit
OpenDreamBox 2.0.0 Plugin WebAdmin - Remote Code Execution
Linux/x86 - Reverse TCP Shellcode (67 bytes)
4.7.2017
Bugtraq
[slackware-security] Slackware 14.0 kernel (SSA:2017-184-01) 2017-07-03
Slackware Security Team (security slackware com)
[SECURITY] [DSA 3901-1] libgcrypt20 security update 2017-07-02
Salvatore Bonaccorso (carnil debian org)
[CVE-2017-9313] Webmin 1.840 Multiple XSS Vulnerabilities 2017-07-02
andys3c gmail com
InsomniaX loader allows loading of arbitrary Kernel Extensions 2017-07-02
Securify B.V. (lists securify nl)
[slackware-security] glibc (SSA:2017-181-01) 2017-06-30
Slackware Security Team (security slackware com)
Malware
Phishing
Melissa | 4th July 2017 |
Amazon-Store-Card | 4th July 2017 |
Important-Information about | |
Amazon-Store-Card | 4th July 2017 |
Important-Information about | |
Amazon-Store-Card | 4th July 2017 |
Important-Information about | |
Amazon-Store-Card | 3rd July 2017 |
Important-Information about |
Vulnerebility
Linux Kernel 'ipv4/udp.c' Remote Code Execution Vulnerability
2017-07-04
http://www.securityfocus.com/bid/97397
ISC BIND CVE-2017-3136 Remote Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/97653
ISC BIND CVE-2017-3135 Remote Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/96150
Linux Kernel 'Ack Challenge' Information Disclosure Vulnerability
2017-07-04
http://www.securityfocus.com/bid/91704
OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/93841
OpenVPN CVE-2017-7478 Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98444
OpenVPN Multiple Security Vulnerabilities
2017-07-04
http://www.securityfocus.com/bid/99230
OpenVPN CVE-2017-7479 Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98443
Linux kernel CVE-2017-9075 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98597
Linux kernel CVE-2017-9077 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98583
Linux kernel CVE-2017-9242 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98731
Linux kernel CVE-2017-9076 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98586
Linux Kernel CVE-2017-1000363 Integer Overflow Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98651
Linux Kernel CVE-2017-7374 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/97308
Linux Kernel CVE-2017-8890 Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98562
Linux Kernel CVE-2017-5577 Remote Buffer Overflow Vulnerability
2017-07-04
http://www.securityfocus.com/bid/95765
Linux Kernel CVE-2017-7294 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/97177
Linux kernel CVE-2017-9074 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98577
Libgcrypt CVE-2017-7526 Information Disclosure Vulnerability
2017-07-04
http://www.securityfocus.com/bid/99338
Libgcrypt 'cipher/ecc-eddsa.c' Information Disclosure Vulnerability
2017-07-04
http://www.securityfocus.com/bid/99046
Drupal Core CVE-2017-6922 Access Bypass Vulnerability
2017-07-03
http://www.securityfocus.com/bid/99219
Drupal Core Overlay Module CVE-2015-7943 Incomplete Fix Open Redirection Vulnerability
2017-07-03
http://www.securityfocus.com/bid/77293
Linux Kernel CVE-2017-7645 Multiple Denial of Service Vulnerabilities
2017-07-03
http://www.securityfocus.com/bid/97950
FreeRADIUS TLS CVE-2017-9148 Authentication Bypass Vulnerability
2017-07-03
http://www.securityfocus.com/bid/98734
ISC BIND CVE-2017-3142 Security Bypass Vulnerability
2017-07-03
http://www.securityfocus.com/bid/99339
ISC BIND CVE-2017-3143 Security Bypass Vulnerability
2017-07-03
http://www.securityfocus.com/bid/99337
Linux Kernel CVE-2017-7895 Multiple Security Bypass Vulnerabilities
2017-07-03
http://www.securityfocus.com/bid/98085
Linux Kernel CVE-2017-7477 Heap Buffer Overflow Vulnerability
2017-07-03
http://www.securityfocus.com/bid/98014
Linux Kernel CVE-2017-6214 Remote Denial of Service Vulnerability
2017-07-03
http://www.securityfocus.com/bid/96421
Linux Kernel CVE-2017-2583 Privilege Escalation Vulnerability
2017-07-03
http://www.securityfocus.com/bid/95673
SANS News
Threatpost
Classic Ether Wallet Compromised via Social Engineering
Exploit
OpenDreamBox 2.0.0 Plugin WebAdmin - Remote Code Execution
3.7.2017
Bugtraq
[SECURITY] [DSA 3901-1] libgcrypt20 security update 2017-07-02
Salvatore Bonaccorso (carnil debian org)
[CVE-2017-9313] Webmin 1.840 Multiple XSS Vulnerabilities 2017-07-02
andys3c gmail com
InsomniaX loader allows loading of arbitrary Kernel Extensions 2017-07-02
Securify B.V. (lists securify nl)
[slackware-security] glibc (SSA:2017-181-01) 2017-06-30
Slackware Security Team (security slackware com)
[slackware-security] kernel (SSA:2017-181-02) 2017-06-30
Slackware Security Team (security slackware com)
Malware
Phishing
✅ Yahoo! Mail | 3rd July 2017 |
NatWest. | 3rd July 2017 |
Amazon-Store-Card | 3rd July 2017 |
Important-Information about | |
Amazon-Store-Card | 3rd July 2017 |
Important-Information about | |
spoof | 3rd July 2017 |
Vulnerebility
Drupal Core CVE-2017-6922 Access Bypass Vulnerability
2017-07-03
http://www.securityfocus.com/bid/99219
Drupal Core Overlay Module CVE-2015-7943 Incomplete Fix Open Redirection Vulnerability
2017-07-03
http://www.securityfocus.com/bid/77293
OpenVPN Multiple Security Vulnerabilities
2017-07-03
http://www.securityfocus.com/bid/99230
OpenVPN CVE-2017-7479 Denial of Service Vulnerability
2017-07-03
http://www.securityfocus.com/bid/98443
Linux Kernel CVE-2017-7645 Multiple Denial of Service Vulnerabilities
2017-07-03
http://www.securityfocus.com/bid/97950
FreeRADIUS TLS CVE-2017-9148 Authentication Bypass Vulnerability
2017-07-03
http://www.securityfocus.com/bid/98734
ISC BIND CVE-2017-3142 Security Bypass Vulnerability
2017-07-03
http://www.securityfocus.com/bid/99339
ISC BIND CVE-2017-3143 Security Bypass Vulnerability
2017-07-03
http://www.securityfocus.com/bid/99337
Linux Kernel CVE-2017-7895 Multiple Security Bypass Vulnerabilities
2017-07-03
http://www.securityfocus.com/bid/98085
Linux Kernel CVE-2017-7477 Heap Buffer Overflow Vulnerability
2017-07-03
http://www.securityfocus.com/bid/98014
Linux Kernel CVE-2017-6214 Remote Denial of Service Vulnerability
2017-07-03
http://www.securityfocus.com/bid/96421
Linux Kernel CVE-2017-2583 Privilege Escalation Vulnerability
2017-07-03
http://www.securityfocus.com/bid/95673
Libgcrypt CVE-2017-7526 Information Disclosure Vulnerability
2017-07-03
http://www.securityfocus.com/bid/99338
GraphicsMagick 'coders/dpx.c' Denial of Service Vulnerability
2017-07-02
http://www.securityfocus.com/bid/99358
GraphicsMagick CVE-2017-10794 Buffer Overflow Vulnerability
2017-07-02
http://www.securityfocus.com/bid/99355
Linux kernel CVE-2017-9074 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98577
Linux kernel CVE-2017-9075 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98597
Linux Kernel CVE-2017-8890 Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98562
Linux Kernel 'drivers/usb/serial/omninet.c' Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98462
Linux Kernel CVE-2017-8924 Local Information Disclosure Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98451
Linux Kernel CVE-2017-8064 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/97975
Linux kernel CVE-2017-9076 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98586
Linux kernel CVE-2017-9077 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98583
Linux Kernel CVE-2017-1000364 Local Memory Corruption Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99130
Linux kernel CVE-2017-9242 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98731
Exim CVE-2017-1000369 Local Privilege Escalation Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99252
GNU glibc CVE-2017-1000366 Local Memory Corruption Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99127
Google Chrome Multiple Security Vulnerabilities
2017-06-30
http://www.securityfocus.com/bid/99096
Irssi CVE-2017-9469 Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99043
Irssi CVE-2017-9468 Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99015
SANS News
Threatpost
Majority of Sites Fail Mozilla’s Comprehensive Security Review
Exploit
eVestigator Forensic PenTester - MITM Remote Code Execution
BestSafe Browser - MITM Remote Code Execution
BOA Web Server 0.94.14rc21 - Arbitrary File Access
2.7.2017
Bugtraq
Microsoft Dynamic CRM 2016 - Cross-Site Scripting vulnerability 2017-06-30
gregory draperi (gregory draperi gmail com)
SEC Consult SA-20170630-0 :: Multiple critical vulnerabilities in OSCI-Transport library 1.2 for German e-Government 2017-06-30
SEC Consult Vulnerability Lab (research sec-consult com)
Malware
Phishing
Vulnerebility
Linux kernel CVE-2017-9074 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98577
Linux kernel CVE-2017-9075 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98597
Linux Kernel CVE-2017-8890 Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98562
Linux Kernel 'drivers/usb/serial/omninet.c' Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98462
Linux Kernel CVE-2017-7645 Multiple Denial of Service Vulnerabilities
2017-06-30
http://www.securityfocus.com/bid/97950
Linux Kernel CVE-2017-8924 Local Information Disclosure Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98451
Linux Kernel CVE-2017-7895 Multiple Security Bypass Vulnerabilities
2017-06-30
http://www.securityfocus.com/bid/98085
Linux Kernel CVE-2017-8064 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/97975
Linux kernel CVE-2017-9076 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98586
Linux kernel CVE-2017-9077 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98583
Linux Kernel CVE-2017-1000364 Local Memory Corruption Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99130
Linux kernel CVE-2017-9242 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98731
Exim CVE-2017-1000369 Local Privilege Escalation Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99252
GNU glibc CVE-2017-1000366 Local Memory Corruption Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99127
Google Chrome Multiple Security Vulnerabilities
2017-06-30
http://www.securityfocus.com/bid/99096
Irssi CVE-2017-9469 Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99043
Irssi CVE-2017-9468 Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99015
GnuTLS CVE-2017-7507 NULL Pointer Dereference Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99102
Samba CVE-2017-7494 Remote Code Execution Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98636
Samba CVE-2017-2619 Symlink Vulnerability
2017-06-30
http://www.securityfocus.com/bid/97033
Multiple Intel Products CVE-2017-5689 Privilege Escalation Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98269
ISC BIND CVE-2017-3143 Security Bypass Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99337
HP SiteScope Monitors Information Disclosure and Security Bypass Vulnerabilities
2017-06-30
http://www.securityfocus.com/bid/99331
OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/93150
Piwigo CVE-2017-10680 Cross-Site Request Forgery Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99349
Schneider Electric U.motion Builder Multiple Security Vulnerabilities
2017-06-30
http://www.securityfocus.com/bid/99344
HP Network Node Manager i (NNMi) Software Multiple Unspecified Security Vulnerabilities
2017-06-30
http://www.securityfocus.com/bid/99342
Biscom Secure File Transfer CVE-2017-5241 Multiple HTML Injection Vulnerabilities
2017-06-30
http://www.securityfocus.com/bid/99341
Cisco IOS and IOS XE Software Multiple Remote Code Execution Vulnerabilities
2017-06-29
http://www.securityfocus.com/bid/99345
Siemens Viewport for Web Office Portal CVE-2017-6869 Remote Security Bypass Vulnerability
2017-06-29
http://www.securityfocus.com/bid/99343
SANS News
Using nmap to scan for MS17-010 (CVE-2017-0143 EternalBlue)
Threatpost
ExPetr Called a Wiper Attack, Not Ransomware
Majority of Sites Fail Mozilla’s Comprehensive Security Review
Siemens Patches Critical Intel AMT Flaw in Industrial Products
Exploit
Google Chrome - Out-of-Bounds Access in RegExp Stubs