Databáze Hot News 2017 July - 2017 January February March April May June July August September October November December


31.7.2017

Bugtraq

 

Malware

Trojan.Ismagent
Trojan.Karagany.B

Trojan.Heriplor

Phishing

 

Vulnerebility

Oracle MySQL Server CVE-2017-3653 Remote Security Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99810

Oracle MySQL Server CVE-2017-3641 Remote Security Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99767

Oracle MySQL Connectors/MySQL Server CVE-2017-3635 Remote Security Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99730

Oracle MySQL Server CVE-2017-3652 Remote Security Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99805

Oracle MySQL Server CVE-2017-3636 Local Security Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99736

Oracle MySQL Server CVE-2017-3648 Remote Security Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99789

Oracle MySQL Server CVE-2017-3651 Remote Security Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99802

Linux kernel CVE-2017-9077 Local Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/98583

Linux Kernel CVE-2017-1000363 Integer Overflow Vulnerability
2017-07-31
http://www.securityfocus.com/bid/98651

Linux Kernel 'sound/core/timer.c' Local Information Disclosure Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99121

Linux Kernel CVE-2017-7273 Local Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/97190

Linux Kernel 'btrfs/ctree.c' Local Privilege Escalation Vulnerability
2017-07-31
http://www.securityfocus.com/bid/73308

Linux Kernel 'sk_dst_get()' Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/72435

Linux Kernel 'fs/udf/inode.c' Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/74963

Linux Kernel 'iov_iter_init()' Function Security Bypass Vulnerability
2017-07-31
http://www.securityfocus.com/bid/73286

FreeRADIUS 'modules/proto_dhcp/dhcp.c' Out-of-Bounds Read Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99970

FreeRADIUS 'src/lib/radius.c' Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99968

FreeRADIUS CVE-2017-10986 Out-of-Bounds Read Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99971

FreeRADIUS CVE-2017-10983 Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99915

FreeRADIUS CVE-2017-10981 Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99898

FreeRADIUS CVE-2017-10982 Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99912

FreeRADIUS CVE-2017-10979 Out-Of-Bounds Write Remote Code Execution Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99901

FreeRADIUS CVE-2017-10978 Out-of-Bounds Read/Write Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99893

FreeRADIUS CVE-2017-10980 Denial of Service Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99905

FreeRADIUS CVE-2017-10984 Out-Of-Bounds Write Remote Code Execution Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99876

Apache HTTP Server CVE-2017-9788 Memory Corruption Vulnerability
2017-07-31
http://www.securityfocus.com/bid/99569

Apache Tomcat CVE-2017-5648 Information Disclosure Vulnerability
2017-07-31
http://www.securityfocus.com/bid/97530

Apache Tomcat CVE-2017-5664 Security Bypass Vulnerability
2017-07-31
http://www.securityfocus.com/bid/98888

Linux Kernel Local Security Bypass Vulnerability
2017-07-31
http://www.securityfocus.com/bid/92659

C-ares CVE-2017-1000381 Out of Bounds Read Information Disclosure Vulnerability
2017-07-28
http://www.securityfocus.com/bid/99148

SANS News

Text Banking Scams

Threatpost

Microsoft Releases Outlook and Office Click-to-Run Patches

Exploit

VehicleWorkshop - SQL Injection

Jenkins < 1.650 - Java Deserialization

DiskBoss Enterprise 8.2.14 - Buffer Overflow

VehicleWorkshop - SQL Injection

30.7.2017

Bugtraq

FortiOS <= 5.6.0 Multiple XSS Vulnerabilities 2017-07-28
msg patrykbogdan com

[security bulletin] HPESBHF03765 rev.1 - HPE ConvergedSystem 700 Solution with Comware v7 Switches using OpenSSL, Remote Denial of Service (DoS) and Disclosure of Sensitive Information 2017-07-26
HPE Product Security Response Team (security-alert hpe com)

[SECURITY] [DSA 3919-1] openjdk-8 security update 2017-07-25
Moritz Muehlenhoff (jmm debian org)

[SECURITY] [DSA 3920-1] qemu security update 2017-07-25
Moritz Muehlenhoff (jmm debian org)

[slackware-security] tcpdump (SSA:2017-205-01) 2017-07-24
Slackware Security Team (security slackware com)

SEC Consult SA-20170724-0 :: Cross-Site Scripting (XSS) issue in multiple Ubiquiti Networks products 2017-07-24
SEC Consult Vulnerability Lab (research sec-consult com)

Malware

Trojan.Ismagent

Phishing

RBS

28th July 2017

Friday Update

Tesco Bank

27th July 2017

:Tesco new security features

Email

27th July 2017

Email Terminates in 2days, Add
Recovery Phone No To Avoid
Account Loss!!

Vulnerebility

C-ares CVE-2017-1000381 Out of Bounds Read Information Disclosure Vulnerability
2017-07-28
http://www.securityfocus.com/bid/99148

Node.js CVE-2017-11499 Denial of Service Vulnerability
2017-07-28
http://www.securityfocus.com/bid/99959

Microsoft Windows LNK CVE-2017-8464 Remote Code Execution Vulnerability
2017-07-28
http://www.securityfocus.com/bid/98818

Cloud Foundry Cloud Controller API CVE-2017-8036 Incomplete Fix Remote Code Execution Vulnerability
2017-07-28
http://www.securityfocus.com/bid/100002

Ghostscript GhostXPS CVE-2017-9618 Denial of Service Vulnerability
2017-07-28
http://www.securityfocus.com/bid/99993

Cisco StarOS CVE-2017-6729 Remote Denial of Service Vulnerability
2017-07-28
http://www.securityfocus.com/bid/100015

VMware vCenter Server CVE-2017-4922 Local Information Disclosure Vulnerability
2017-07-28
http://www.securityfocus.com/bid/100012

Linux kernel CVE-2017-11473 Local Buffer Overflow Vulnerability
2017-07-28
http://www.securityfocus.com/bid/100010

FortiOS Multiple Cross Site Scripting Vulnerabilities
2017-07-28
http://www.securityfocus.com/bid/100009

Multiple IBM Products CVE-2017-1386 Security Bypass Vulnerability
2017-07-28
http://www.securityfocus.com/bid/100008

Oracle Java SE CVE-2017-10081 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99853

Oracle Java SE CVE-2017-10193 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99854

Oracle Java SE and JRockit CVE-2017-10109 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99847

Oracle Java SE and JRockit CVE-2017-10135 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99839

Oracle Java SE and JRockit CVE-2017-10053 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99842

Oracle Java SE and JRockit CVE-2017-10108 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99846

Oracle Java SE and JRockit CVE-2017-10198 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99818

Oracle Java SE and JRockit CVE-2017-10243 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99827

Oracle Java SE and JRockit CVE-2017-10118 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99782

Oracle Java SE and JRockit CVE-2017-10176 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99788

Oracle Java SE and JRockit CVE-2017-10115 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99774

Oracle Java SE and JRockit CVE-2017-10116 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99734

Oracle Java SE CVE-2017-10078 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99752

Oracle Java SE CVE-2017-10087 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99703

Oracle Java SE CVE-2017-10102 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99712

Oracle Java SE CVE-2017-10089 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99659

Oracle Java SE CVE-2017-10090 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99706

Oracle Java SE CVE-2017-10110 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99643

Oracle Java SE CVE-2017-10111 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99707

Oracle Java SE CVE-2017-10067 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99756

SANS News

Static Analysis of Emotet Maldoc

Threatpost

Shorting-For-Profit Viable Business Model For Security Community

Exploit

Joomla! Component CCNewsLetter 2.1.9 - 'sbid' Parameter SQL Injection

FortiOS < 5.6.0 - Cross-Site Scripting

SoundTouch 1.9.2 - Multiple Vulnerabilities

LAME 3.99.5 - Multiple Vulnerabilities

libjpeg-turbo 1.5.1 - Denial of Service

28.7.2017

Bugtraq

[security bulletin] HPESBHF03765 rev.1 - HPE ConvergedSystem 700 Solution with Comware v7 Switches using OpenSSL, Remote Denial of Service (DoS) and Disclosure of Sensitive Information 2017-07-26
HPE Product Security Response Team (security-alert hpe com)

[SECURITY] [DSA 3919-1] openjdk-8 security update 2017-07-25
Moritz Muehlenhoff (jmm debian org)

[SECURITY] [DSA 3920-1] qemu security update 2017-07-25
Moritz Muehlenhoff (jmm debian org)

[slackware-security] tcpdump (SSA:2017-205-01) 2017-07-24
Slackware Security Team (security slackware com)

Malware

 

Phishing

Tesco Bank

27th July 2017

:Tesco new security features

Email

27th July 2017

Email Terminates in 2days, Add
Recovery Phone No To Avoid
Account Loss!!

Vulnerebility

Oracle Java SE CVE-2017-10081 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99853

Oracle Java SE CVE-2017-10193 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99854

Oracle Java SE and JRockit CVE-2017-10109 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99847

Oracle Java SE and JRockit CVE-2017-10135 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99839

Oracle Java SE and JRockit CVE-2017-10053 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99842

Oracle Java SE and JRockit CVE-2017-10108 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99846

Oracle Java SE and JRockit CVE-2017-10198 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99818

Oracle Java SE and JRockit CVE-2017-10243 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99827

Oracle Java SE and JRockit CVE-2017-10118 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99782

Oracle Java SE and JRockit CVE-2017-10176 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99788

Oracle Java SE and JRockit CVE-2017-10115 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99774

Oracle Java SE and JRockit CVE-2017-10116 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99734

Oracle Java SE CVE-2017-10078 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99752

Oracle Java SE CVE-2017-10087 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99703

Oracle Java SE CVE-2017-10102 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99712

Oracle Java SE CVE-2017-10089 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99659

Oracle Java SE CVE-2017-10090 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99706

Oracle Java SE CVE-2017-10110 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99643

Oracle Java SE CVE-2017-10111 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99707

Oracle Java SE CVE-2017-10067 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99756

Oracle Java SE CVE-2017-10107 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99719

Oracle Java SE CVE-2017-10096 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99670

Oracle Java SE CVE-2017-10074 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99731

Oracle Java SE CVE-2017-10101 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99674

PHP 'zend_ini_do_op()' Function Stack Buffer Overflow Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99489

ImageMagick CVE-2017-11640 Denial of Service Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99989

Hashtopus CVE-2017-11679 Cross Site Request Forgery Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99984

Hashtopus CVE-2017-11678 SQL Injection Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99982

Libav CVE-2017-11684 Denail of Service Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99980

Hashtopus CVE-2017-11677 Cross Site Scripting Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99974

SANS News

TinyPot, My Small Honeypot

Threatpost

Android Spyware Still Collects PII Despite Outcry

Google Study Quantifies Ransomware Profits

Attack Uses Docker Containers To Hide, Persist, Plant Malware

Exploit

Friends in War Make or Break 1.7 - Cross-Site Request Forgery (Change Admin...

MediaCoder 0.8.48.5888 - Local Buffer Overflow (SEH)

AudioCoder 0.8.46 - Local Buffer Overflow (SEH)

27.7.2017

Bugtraq

[security bulletin] HPESBHF03765 rev.1 - HPE ConvergedSystem 700 Solution with Comware v7 Switches using OpenSSL, Remote Denial of Service (DoS) and Disclosure of Sensitive Information 2017-07-26
HPE Product Security Response Team (security-alert hpe com)

[SECURITY] [DSA 3919-1] openjdk-8 security update 2017-07-25
Moritz Muehlenhoff (jmm debian org)

[SECURITY] [DSA 3920-1] qemu security update 2017-07-25
Moritz Muehlenhoff (jmm debian org)

[slackware-security] tcpdump (SSA:2017-205-01) 2017-07-24
Slackware Security Team (security slackware com)

SEC Consult SA-20170724-0 :: Cross-Site Scripting (XSS) issue in multiple Ubiquiti Networks products 2017-07-24
SEC Consult Vulnerability Lab (research sec-consult com)

SEC Consult SA-20170724-1 :: Open Redirect issue in multiple Ubiquiti Networks products 2017-07-24
SEC Consult Vulnerability Lab (research sec-consult com)

[RT-SA-2017-006] Arbitrary File Disclosure with root Privileges via RdxEngine-API in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2017-008] Unauthenticated Access to Diagnostic Functions in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2017-005] Unauthenticated Extraction of Session-IDs in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2017-009] Remote Command Execution as root in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2017-003] Cross-Site Scripting in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)

Malware

Backdoor.Krad

Ransom.Reyptson

Phishing

EUROMILLION INTERNATIONAL

26th July 2017

Congratulations: you have won
in Euromillions

National

26th July 2017

Notification : Update your
account to get back to
watching.

Vulnerebility

Oracle Java SE CVE-2017-10081 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99853

Oracle Java SE CVE-2017-10193 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99854

Oracle Java SE and JRockit CVE-2017-10109 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99847

Oracle Java SE and JRockit CVE-2017-10135 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99839

Oracle Java SE and JRockit CVE-2017-10053 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99842

Oracle Java SE and JRockit CVE-2017-10108 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99846

Oracle Java SE and JRockit CVE-2017-10198 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99818

Oracle Java SE and JRockit CVE-2017-10243 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99827

Oracle Java SE and JRockit CVE-2017-10118 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99782

Oracle Java SE and JRockit CVE-2017-10176 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99788

Oracle Java SE and JRockit CVE-2017-10115 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99774

Oracle Java SE and JRockit CVE-2017-10116 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99734

Oracle Java SE CVE-2017-10078 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99752

Oracle Java SE CVE-2017-10087 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99703

Oracle Java SE CVE-2017-10102 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99712

Oracle Java SE CVE-2017-10089 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99659

Oracle Java SE CVE-2017-10090 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99706

Oracle Java SE CVE-2017-10110 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99643

Oracle Java SE CVE-2017-10111 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99707

Oracle Java SE CVE-2017-10067 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99756

Oracle Java SE CVE-2017-10107 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99719

Oracle Java SE CVE-2017-10096 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99670

Oracle Java SE CVE-2017-10074 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99731

Oracle Java SE CVE-2017-10101 Remote Security Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99674

PHP 'zend_ini_do_op()' Function Stack Buffer Overflow Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99489

Hashtopus CVE-2017-11679 Cross Site Request Forgery Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99984

Hashtopus CVE-2017-11678 SQL Injection Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99982

Libav CVE-2017-11684 Denail of Service Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99980

Hashtopus CVE-2017-11677 Cross Site Scripting Vulnerability
2017-07-27
http://www.securityfocus.com/bid/99974

GNU libiberty CVE-2016-6131 Stack Based Buffer Overflow Vulnerability
2017-07-26
http://www.securityfocus.com/bid/91519

SANS News

TinyPot, My Small Honeypot

Threatpost

Academia’s Role in Security Skills Gap Examined

Vulnerable Radiation Monitoring Devices Won’t Be Patched

Android Sypware Still Collects PII Despite Outcry
 

Friends in War Make or Break 1.7 - Cross-Site Request Forgery (Change Admin...

Friends in War Make or Break 1.7 - Authentication Bypass

Friends in War Make or Break 1.7 - SQL Injection

Exploit

Friends in War Make or Break 1.7 - Authentication Bypass

Friends in War Make or Break 1.7 - SQL Injection

Microsoft Windows - LNK Shortcut File Code Execution (Metasploit)

26.7.2017

Bugtraq

[SECURITY] [DSA 3919-1] openjdk-8 security update 2017-07-25
Moritz Muehlenhoff (jmm debian org)

[SECURITY] [DSA 3920-1] qemu security update 2017-07-25
Moritz Muehlenhoff (jmm debian org)

[slackware-security] tcpdump (SSA:2017-205-01) 2017-07-24
Slackware Security Team (security slackware com)

SEC Consult SA-20170724-0 :: Cross-Site Scripting (XSS) issue in multiple Ubiquiti Networks products 2017-07-24
SEC Consult Vulnerability Lab (research sec-consult com)

SEC Consult SA-20170724-1 :: Open Redirect issue in multiple Ubiquiti Networks products 2017-07-24
SEC Consult Vulnerability Lab (research sec-consult com)

[RT-SA-2017-006] Arbitrary File Disclosure with root Privileges via RdxEngine-API in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2017-008] Unauthenticated Access to Diagnostic Functions in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2017-005] Unauthenticated Extraction of Session-IDs in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2017-009] Remote Command Execution as root in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2017-003] Cross-Site Scripting in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)

Malware

 

Phishing

service@paypal-support.co.uk

25th July 2017

New Message

Apple Store

24th July 2017

Apple Notification

Eve

24th July 2017

[Action Required]Unrecognized
Account Access Notification

Vulnerebility

Ruby TclTkIp 'ip_cancel_eval()' Function Type Confusion Remote Code Execution Vulnerability
2017-07-26
http://www.securityfocus.com/bid/91233

Ruby 'dl/handle.c' Security Bypass Vulnerability
2017-07-26
http://www.securityfocus.com/bid/76060

Ruby CVE-2015-1855 Security Bypass Vulnerability
2017-07-26
http://www.securityfocus.com/bid/74446

Ruby 'initialize()' Function Heap Buffer Overflow Vulnerability
2017-07-26
http://www.securityfocus.com/bid/91234

Ruby OpenSSL Security Bypass Vulnerability
2017-07-26
http://www.securityfocus.com/bid/93031

Mozilla Firefox CVE-2017-5470 Multiple Unspecified Memory Corruption Vulnerabilities
2017-07-26
http://www.securityfocus.com/bid/99041

Mozilla Firefox Multiple Security Vulnerabilities
2017-07-26
http://www.securityfocus.com/bid/99057

Mozilla Firefox CVE-2017-5472 Use After Free Denial of Service Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99040

Oracle Java SE and JRockit CVE-2017-10108 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99846

Oracle Java SE CVE-2017-10193 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99854

Oracle Java SE CVE-2017-10074 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99731

Oracle Java SE CVE-2017-10101 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99674

Oracle Java SE and JRockit CVE-2017-10135 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99839

Oracle Java SE CVE-2017-10111 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99707

Oracle Java SE and JRockit CVE-2017-10109 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99847

Oracle Java SE and JRockit CVE-2017-10176 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99788

Oracle Java SE and JRockit CVE-2017-10118 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99782

Oracle Java SE and JRockit CVE-2017-10198 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99818

Oracle Java SE CVE-2017-10102 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99712

Oracle Java SE and JRockit CVE-2017-10053 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99842

Oracle Java SE and JRockit CVE-2017-10115 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99774

Oracle Java SE CVE-2017-10067 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99756

Oracle Java SE CVE-2017-10078 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99752

Oracle Java SE CVE-2017-10081 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99853

Oracle Java SE and JRockit CVE-2017-10116 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99734

Oracle Java SE CVE-2017-10110 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99643

Oracle Java SE CVE-2017-10090 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99706

Oracle Java SE CVE-2017-10096 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99670

Oracle Java SE CVE-2017-10107 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99719

Oracle Java SE CVE-2017-10089 Remote Security Vulnerability
2017-07-26
http://www.securityfocus.com/bid/99659

SANS News

Malspam pushing Emotet malware

Threatpost

Hacker Admits to Mirai Attack Against Deutsche Telekom

Black Hat USA 2017 Preview

Novel Attack Tricks Servers to Cache, Expose Personal Data

Academia’s Role in Security Skills Gap Examined

Exploit

WebKit JSC - 'JSObject::putInlineSlow and JSValue::putToPrimitive' Universal...

WebKit JSC - 'DFG::ByteCodeParser::flush(InlineStackEntry* inlineStackEntry)'...

WebKit JSC - 'arrayProtoFuncSplice' Uninitialized Memory Reference

WebKit JSC - 'JSArray::appendMemcpy' Uninitialized Memory Copy

WebKit JSC - 'ArgumentsEliminationPhase::transform' Incorrect LoadVarargs Handling

WebKit JSC - 'ObjectPatternNode::appendEntry' Stack Use-After-Free

25.7.2017

Bugtraq

[slackware-security] tcpdump (SSA:2017-205-01) 2017-07-24
Slackware Security Team (security slackware com)

SEC Consult SA-20170724-0 :: Cross-Site Scripting (XSS) issue in multiple Ubiquiti Networks products 2017-07-24
SEC Consult Vulnerability Lab (research sec-consult com)

SEC Consult SA-20170724-1 :: Open Redirect issue in multiple Ubiquiti Networks products 2017-07-24
SEC Consult Vulnerability Lab (research sec-consult com)

[RT-SA-2017-006] Arbitrary File Disclosure with root Privileges via RdxEngine-API in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2017-008] Unauthenticated Access to Diagnostic Functions in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2017-005] Unauthenticated Extraction of Session-IDs in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2017-009] Remote Command Execution as root in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2017-003] Cross-Site Scripting in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2017-007] Undocumented Administrative Service Account in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2017-004] Unauthenticated Arbitrary File Disclosure in REDDOXX Appliance 2017-07-24
RedTeam Pentesting GmbH (release redteam-pentesting de)

[SECURITY] [DSA 3917-1] catdoc security update 2017-07-23
Salvatore Bonaccorso (carnil debian org)

Malware

Trojan.Ismdoor.B

Phishing

 

Vulnerebility

X.Org X Server CVE-2017-10971 Stack Buffer Overflow Vulnerability
2017-07-25
http://www.securityfocus.com/bid/99546

X.Org X Server CVE-2017-10972 Information Disclosure Vulnerability
2017-07-25
http://www.securityfocus.com/bid/99543

X.org X Server Local Multiple Security Vulnerabilities
2017-07-25
http://www.securityfocus.com/bid/96480

QEMU 'hw/9pfs/9p-local.c' Privilege Escalation Vulnerability
2017-07-25
http://www.securityfocus.com/bid/98574

Google Android Kernel Trace Subsystem CVE-2017-0605 Privilege Escalation Vulnerability
2017-07-24
http://www.securityfocus.com/bid/98152

Samba CVE-2017-7494 Remote Code Execution Vulnerability
2017-07-24
http://www.securityfocus.com/bid/98636

Adobe Flash Player APSB17-17 Multiple Use After Free Remote Code Execution Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/99023

Evince Comic Book Backend CVE-2017-1000083 Command Injection Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99597

Mozilla Firefox CVE-2017-5472 Use After Free Denial of Service Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99040

Mozilla Firefox CVE-2017-5470 Multiple Unspecified Memory Corruption Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/99041

ISC BIND CVE-2017-3143 Security Bypass Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99337

ISC BIND CVE-2017-3142 Security Bypass Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99339

Linux Kernel CVE-2017-7895 Multiple Security Bypass Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/98085

Linux Kernel CVE-2017-7477 Heap Buffer Overflow Vulnerability
2017-07-24
http://www.securityfocus.com/bid/98014

Linux Kernel CVE-2017-2583 Privilege Escalation Vulnerability
2017-07-24
http://www.securityfocus.com/bid/95673

Apache HTTP Server CVE-2016-8743 Security Bypass Vulnerability
2017-07-24
http://www.securityfocus.com/bid/95077

QEMU CVE-2017-9524 Denial of Service Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99011

Linux Kernel CVE-2017-6214 Remote Denial of Service Vulnerability
2017-07-24
http://www.securityfocus.com/bid/96421

Mozilla Firefox Multiple Security Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/99057

GNU glibc CVE-2017-1000366 Local Memory Corruption Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99127

Sudo CVE-2017-1000368 Incomplete Fix Local Privilege Escalation Vulnerability
2017-07-24
http://www.securityfocus.com/bid/98838

Linux Kernel CVE-2017-1000364 Local Memory Corruption Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99130

FreeRADIUS TLS CVE-2017-9148 Authentication Bypass Vulnerability
2017-07-24
http://www.securityfocus.com/bid/98734

Mercurial CVE-2017-9462 Remote Code Execution Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99123

Linux Kernel CVE-2017-7645 Multiple Denial of Service Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/97950

ImageMagick CVE-2017-11525 Denial of Service Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99931

ImageMagick CVE-2017-11540 Heap Buffer Overflow Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99929

Phamm CVE-2017-0378 Cross Site Scripting Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99927

gnome-exe-thumbnailer CVE-2017-11421 Local Code Injection Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99922

Debian CVE-2017-11565 Security Bypass Vulnerability
2017-07-23
http://www.securityfocus.com/bid/99933

SANS News

Uber drivers new threat: the "passenger"

Threatpost

Hacker Admits to Mirai Attack Against Deutsche Telekom

Exploit

Microsoft Internet Explorer - 'mshtml.dll' Remote Code Execution (MS17-007)

IPFire < 2.19 Update Core 110 - Remote Code Execution (Metasploit)

VICIdial 2.9 RC 1 to 2.13 RC1 - user_authorization Unauthenticated Command...

ManageEngine Desktop Central 10 Build 100087 - Remote Code Execution (Metasploit)

PaulShop - SQL Injection / Cross-Site Scripting

REDDOXX Appliance Build 2032 / 2.0.625 - Remote Command Execution

REDDOXX Appliance Build 2032 / 2.0.625 - Arbitrary File Disclosure

MAWK 1.3.3-17 - Local Buffer Overflow

Razer Synapse 2.20.15.1104 - rzpnk.sys ZwOpenProcess (Metasploit)

WebKit - 'WebCore::AccessibilityNodeObject::textUnderElement' Use-After-Free

WebKit - 'WebCore::AccessibilityRenderObject::handleAriaExpandedChanged' Use-After-Free

WebKit - 'WebCore::Node::nextSibling' Use-After-Free

WebKit - 'WebCore::RenderSearchField::addSearchResult' Heap Buffer Overflow

WebKit - 'WebCore::InputType::element' Use-After-Free

WebKit - 'WebCore::RenderObject' with Accessibility Enabled Use-After-Free

WebKit - 'WebCore::Node::getFlag' Use-After-Free

WebKit - 'WebCore::getCachedWrapper' Use-After-Free

24.7.2017

Bugtraq

[SECURITY] [DSA 3917-1] catdoc security update 2017-07-23
Salvatore Bonaccorso (carnil debian org)

[slackware-security] seamonkey (SSA:2017-202-01) 2017-07-21
Slackware Security Team (security slackware com)

[security bulletin] HPESBHF03745 rev.3 - HPE Intelligent Management Center (iMC) PLAT, Remote Code Execution 2017-07-21
security-alert hpe com

[security bulletin] HPESBHF03766 rev.1 - HPE ConvergedSystem 700 Solution with Comware v5 Switches using NTP, Remote Denial of Service (DoS), Unauthorized Modification and Local Denial of Service (DoS) 2017-07-20
security-alert hpe com

File Upload in Integration Gateway (PSIGW) 2017-07-20
ERPScan inc (erpscan online gmail com)

Malware

 

Phishing

Apple

24th July 2017

Apple just sent you $3,543.00
USD with Paypal. Paypal
recommends to withdraw it now.

Vulnerebility

Mozilla Firefox CVE-2017-5472 Use After Free Denial of Service Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99040

Mozilla Firefox CVE-2017-5470 Multiple Unspecified Memory Corruption Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/99041

ISC BIND CVE-2017-3143 Security Bypass Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99337

ISC BIND CVE-2017-3142 Security Bypass Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99339

Linux Kernel CVE-2017-7895 Multiple Security Bypass Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/98085

Linux Kernel CVE-2017-7477 Heap Buffer Overflow Vulnerability
2017-07-24
http://www.securityfocus.com/bid/98014

Linux Kernel CVE-2017-2583 Privilege Escalation Vulnerability
2017-07-24
http://www.securityfocus.com/bid/95673

Apache HTTP Server CVE-2016-8743 Security Bypass Vulnerability
2017-07-24
http://www.securityfocus.com/bid/95077

QEMU CVE-2017-9524 Denial of Service Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99011

Linux Kernel CVE-2017-6214 Remote Denial of Service Vulnerability
2017-07-24
http://www.securityfocus.com/bid/96421

Mozilla Firefox Multiple Security Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/99057

GNU glibc CVE-2017-1000366 Local Memory Corruption Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99127

Sudo CVE-2017-1000368 Incomplete Fix Local Privilege Escalation Vulnerability
2017-07-24
http://www.securityfocus.com/bid/98838

Linux Kernel CVE-2017-1000364 Local Memory Corruption Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99130

FreeRADIUS TLS CVE-2017-9148 Authentication Bypass Vulnerability
2017-07-24
http://www.securityfocus.com/bid/98734

Mercurial CVE-2017-9462 Remote Code Execution Vulnerability
2017-07-24
http://www.securityfocus.com/bid/99123

Linux Kernel CVE-2017-7645 Multiple Denial of Service Vulnerabilities
2017-07-24
http://www.securityfocus.com/bid/97950

Irssi CVE-2017-9469 Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99043

ICU CVE-2016-6293 Out of Bounds Read Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92127

PHP 'ftp_genlist()' Function Integer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/74902

PHP NULL Character CVE-2015-4025 Incomplete Fix Multiple Security Bypass Vulnerabilities
2017-07-21
http://www.securityfocus.com/bid/74904

PHP 'main/rfc1867.c' Remote Denial Of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/74903

PHP PHAR 'phar_parse_tarfile()' Function Remote Memory Corruption Vulnerability
2017-07-21
http://www.securityfocus.com/bid/74700

PHP '/xmlrpc/libxmlrpc/simplestring.c' Heap Buffer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92095

PHP 'zip_stream.c' Integer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92099

PHP wdsl Extension CVE-2013-6501 Security Weakness
2017-07-21
http://www.securityfocus.com/bid/72530

PHP 'snmp.c' Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92094

PHP 'zend_virtual_cwd.c' Integer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92074

PHP CVE-2016-6294 Local Information Disclosure Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92115

PHP 'exif.c' NULL Pointer Dereference Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92078

SANS News

Another .lnk File

Uber drivers new threat: the "passenger"

Threatpost

 

Exploit

Microsoft Internet Explorer - 'mshtml.dll' Remote Code Execution (MS17-007)

ManageEngine Desktop Central 10 Build 100087 - Remote Code Execution (Metasploit)

PaulShop - Sql Injection / Cross-Site Scripting

MAWK 1.3.3-17 - Local Buffer Overflow

23.7.2017

Bugtraq

[security bulletin] HPESBHF03766 rev.1 - HPE ConvergedSystem 700 Solution with Comware v5 Switches using NTP, Remote Denial of Service (DoS), Unauthorized Modification and Local Denial of Service (DoS) 2017-07-20
security-alert hpe com

File Upload in Integration Gateway (PSIGW) 2017-07-20
ERPScan inc (erpscan online gmail com)

Multiple XSS (POST request) Vulnerabilities in TestServlet (PeopleSoft) 2017-07-20
ERPScan inc (erpscan online gmail com)

Directory Traversal vulnerability in Integration Gateway (PSIGW) 2017-07-20
ERPScan inc (erpscan online gmail com)

APPLE-SA-2017-07-19-7 iCloud for Windows 6.2.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-07-19-5 Safari 10.1.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)

Malware

 

Phishing

 

Vulnerebility

Mozilla Firefox CVE-2017-5472 Use After Free Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99040

Mozilla Firefox CVE-2017-5470 Multiple Unspecified Memory Corruption Vulnerabilities
2017-07-21
http://www.securityfocus.com/bid/99041

Irssi CVE-2017-9469 Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99043

ICU CVE-2016-6293 Out of Bounds Read Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92127

PHP 'ftp_genlist()' Function Integer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/74902

PHP NULL Character CVE-2015-4025 Incomplete Fix Multiple Security Bypass Vulnerabilities
2017-07-21
http://www.securityfocus.com/bid/74904

PHP 'main/rfc1867.c' Remote Denial Of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/74903

PHP PHAR 'phar_parse_tarfile()' Function Remote Memory Corruption Vulnerability
2017-07-21
http://www.securityfocus.com/bid/74700

PHP '/xmlrpc/libxmlrpc/simplestring.c' Heap Buffer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92095

PHP 'zip_stream.c' Integer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92099

PHP wdsl Extension CVE-2013-6501 Security Weakness
2017-07-21
http://www.securityfocus.com/bid/72530

PHP 'snmp.c' Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92094

PHP 'zend_virtual_cwd.c' Integer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92074

PHP CVE-2016-6294 Local Information Disclosure Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92115

PHP 'exif.c' NULL Pointer Dereference Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92078

PHP 'php_url_prase_ex()' Function Memory Corruption Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92111

Mozilla Firefox CVE-2017-5426 Security Bypass Vulnerability
2017-07-21
http://www.securityfocus.com/bid/96694

Mozilla Firefox and Thunderbird Multiple Security Vulnerabilities
2017-07-21
http://www.securityfocus.com/bid/96693

Mozilla Firefox CVE-2017-5403 Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/96691

Graphviz 'agerr()' Function Remote Format String Vulnerability
2017-07-21
http://www.securityfocus.com/bid/71283

Graphviz 'yyerror()' Function Stack Buffer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/64674

libpng NULL pointer Dereference 'png_set_text_2()' Function Remote Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/95157

Irssi CVE-2017-9468 Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99015

Irssi Multiple Memory Corruption Vulnerabilities
2017-07-21
http://www.securityfocus.com/bid/95310

Mozilla Firefox Multiple Security Vulnerabilities
2017-07-21
http://www.securityfocus.com/bid/99057

Mozilla Firefox MFSA 2017-05 Multiple Security Vulnerabilities
2017-07-21
http://www.securityfocus.com/bid/96692

PHP 'ext/wddx/wddx.c' Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/94846

NVIDIA GPU Driver CVE-2017-0350 Local Privilege Escalation Vulnerability
2017-07-21
http://www.securityfocus.com/bid/98490

PHP 'pcnt_exec()' Function Null Character Security Bypass Vulnerability
2017-07-21
http://www.securityfocus.com/bid/75056

PHP 'session.c' Use After Free Remote Code Execution Vulnerability
2017-07-21
http://www.securityfocus.com/bid/92097

SANS News

Black Hat is coming and with it a good reason to update your "Broadcom-based" devices

Malicious .iso Attachments

Threatpost

Trickbot Malware Now Targets US Banks


Motivation Mystery Behind WannaCry, ExPetr

Exploit

NEC UNIVERGE UM4730 < 11.8 - SQL Injection

21.7.2017

Bugtraq

[security bulletin] HPESBHF03766 rev.1 - HPE ConvergedSystem 700 Solution with Comware v5 Switches using NTP, Remote Denial of Service (DoS), Unauthorized Modification and Local Denial of Service (DoS) 2017-07-20
security-alert hpe com

File Upload in Integration Gateway (PSIGW) 2017-07-20
ERPScan inc (erpscan online gmail com)

Multiple XSS (POST request) Vulnerabilities in TestServlet (PeopleSoft) 2017-07-20
ERPScan inc (erpscan online gmail com)

Directory Traversal vulnerability in Integration Gateway (PSIGW) 2017-07-20
ERPScan inc (erpscan online gmail com)

APPLE-SA-2017-07-19-7 iCloud for Windows 6.2.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-07-19-5 Safari 10.1.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-07-19-2 macOS 10.12.6 2017-07-19
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-07-19-3 watchOS 3.2.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-07-19-1 iOS 10.3.3 2017-07-19
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-07-19-6 iTunes 12.6.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-07-19-4 tvOS 10.2.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)

[SECURITY] [DSA 3914-1] imagemagick security update 2017-07-18
Moritz Muehlenhoff (jmm debian org)

Malware

Backdoor.Rurtar

Phishing

 

Vulnerebility

ISC BIND CVE-2017-3142 Security Bypass Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99339

Sudo CVE-2017-1000368 Incomplete Fix Local Privilege Escalation Vulnerability
2017-07-21
http://www.securityfocus.com/bid/98838

ISC BIND CVE-2017-3143 Security Bypass Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99337

Linux Kernel CVE-2017-7477 Heap Buffer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/98014

Linux Kernel CVE-2017-1000364 Local Memory Corruption Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99130

Linux Kernel CVE-2017-7645 Multiple Denial of Service Vulnerabilities
2017-07-21
http://www.securityfocus.com/bid/97950

GNU glibc CVE-2017-1000366 Local Memory Corruption Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99127

FreeRADIUS CVE-2017-10981 Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99898

AlienVault Unified Security Management Heap Based Buffer Overflow Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99897

QEMU CVE-2017-11334 Out of Bounds Read and Write Denial of Service Vulnerability
2017-07-21
http://www.securityfocus.com/bid/99895

Palo Alto Networks PAN-OS CVE-2017-9467 Cross Site Scripting Vulnerability
2017-07-20
http://www.securityfocus.com/bid/99907

Palo Alto Networks PAN-OS CVE-2017-9459 HTML Injection Vulnerability
2017-07-20
http://www.securityfocus.com/bid/99902

Multiple CorelDRAW Products Multiple Remote Code Execution Vulnerabilities
2017-07-20
http://www.securityfocus.com/bid/99900

Inmarsat AmosConnect 8 VU#586501 Security Bypass and SQL Injection Vulnerabilities
2017-07-20
http://www.securityfocus.com/bid/99899

Apple iOS and Safari Multiple Security Vulnerabilities
2017-07-20
http://www.securityfocus.com/bid/99887

Apple iOS/TvOS/Safari Multiple Security Vulnerabilities
2017-07-20
http://www.securityfocus.com/bid/99886

WebKit Multiple Memory Corruption Vulnerabilities
2017-07-20
http://www.securityfocus.com/bid/99885

Apple iTunes CVE-2017-7053 Arbitray Code Execution Vulnerability
2017-07-20
http://www.securityfocus.com/bid/99884

Apple macOS APPLE-SA-2017-07-19-2 Multiple Security Vulnerabilities
2017-07-20
http://www.securityfocus.com/bid/99882

Genivia gSOAP CVE-2017-9765 Stack Based Buffer Overflow Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99868

Multiple Intel Products CVE-2017-5689 Privilege Escalation Vulnerability
2017-07-19
http://www.securityfocus.com/bid/98269

OpenSSL CVE-2017-3732 Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/95814

OpenSSL Padding Oracle Incomplete Fix Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/89760

SAP Netweaver Dynpro Engine Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96874

SAP NetWeaver Visual Composer Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96865

SAP NetWeaver ABAP CVE-2017-9843 Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96900

Oracle Java Advanced Management Console CVE-2017-10104 Remote Security Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99797

Apple iOS APPLE-SA-2017-07-19-1 Multiple Security Vulnerabilities
2017-07-19
http://www.securityfocus.com/bid/99891

Apple iTunes/iCloud/Safari/iOS Multiple Security Vulnerabilities
2017-07-19
http://www.securityfocus.com/bid/99890

Apple iOS/iCloud/iTunes/macOS/TvOS CVE-2017-7010 Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99889

SANS News

 

Threatpost

Senator Calls For Use Of DMARC To Curb Phishing

US, European Law Enforcement Shutter Massive AlphaBay Market

Exploit

Joomla! Component JoomRecipe 1.0.4 - 'search_author' Parameter SQL Injection

WordPress Plugin IBPS Online Exam 1.0 - SQL Injection / Cross-Site Scripting

20.7.2017

Bugtraq

File Upload in Integration Gateway (PSIGW) 2017-07-20
ERPScan inc (erpscan online gmail com)

Multiple XSS (POST request) Vulnerabilities in TestServlet (PeopleSoft) 2017-07-20
ERPScan inc (erpscan online gmail com)

Directory Traversal vulnerability in Integration Gateway (PSIGW) 2017-07-20
ERPScan inc (erpscan online gmail com)

APPLE-SA-2017-07-19-7 iCloud for Windows 6.2.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-07-19-5 Safari 10.1.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-07-19-2 macOS 10.12.6 2017-07-19
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-07-19-3 watchOS 3.2.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-07-19-1 iOS 10.3.3 2017-07-19
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-07-19-6 iTunes 12.6.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-07-19-4 tvOS 10.2.2 2017-07-19
Apple Product Security (product-security-noreply lists apple com)

[SECURITY] [DSA 3914-1] imagemagick security update 2017-07-18
Moritz Muehlenhoff (jmm debian org)

Malware

 

Phishing

Natwest Bank

18th July 2017

LATE PAYMENT

CapitalOne

17th July 2017

Customer support

Vulnerebility

Apple macOS APPLE-SA-2017-07-19-2 Multiple Security Vulnerabilities
2017-07-20
http://www.securityfocus.com/bid/99882

Genivia gSOAP CVE-2017-9765 Stack Based Buffer Overflow Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99868

Multiple Intel Products CVE-2017-5689 Privilege Escalation Vulnerability
2017-07-19
http://www.securityfocus.com/bid/98269

OpenSSL CVE-2017-3732 Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/95814

OpenSSL Padding Oracle Incomplete Fix Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/89760

SAP Netweaver Dynpro Engine Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96874

SAP NetWeaver Visual Composer Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96865

SAP NetWeaver ABAP CVE-2017-9843 Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96900

Oracle Java Advanced Management Console CVE-2017-10104 Remote Security Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99797

Apple iOS/watchOS CVE-2017-7063 Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99881

Apple iOS/macOS/tvOS CVE-2017-7008 Memory Corruption Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99880

libxml2 CVE-2017-7013 XML External Entity Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99879

Cisco Prime Collaboration Provisioning Tool CVE-2017-6755 Cross Site Scripting Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99878

Cisco AsyncOS Software CVE-2017-6746 Command Injection Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99877

Cisco Web Security Appliance CVE-2017-6749 HTML Injection Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99875

IBM InfoSphere Master Data Management Server Local Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99872

Apache Sling API CVE-2016-5394 Cross Site Scripting Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99870

Oracle BI Publisher CVE-2017-10041 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99742

Oracle Java SE CVE-2017-10102 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99712

Oracle Java SE CVE-2017-10096 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99670

PHPMailer CVE-2016-10045 Incomplete Fix Remote Code Execution Vulnerability
2017-07-18
http://www.securityfocus.com/bid/95130

RETIRED: Linux Kernel 'saa7164-bus.c' Local Privilege Escalation Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99175

Apache Sling XSS Protection API CVE-2016-6798 XML External Entity Injection Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99873

Oracle Database Server CVE-2017-10120 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99867

Oracle FLEXCUBE Universal Banking CVE-2017-10071 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99866

Oracle Database Server CVE-2017-10202 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99865

Oracle FLEXCUBE Private Banking CVE-2017-10022 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99864

Oracle Hospitality Applications CVE-2017-10213 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99863

Oracle FLEXCUBE Private Banking CVE-2017-10012 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99862

Oracle Hospitality Applications CVE-2017-10220 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99861

SANS News

 

Threatpost

Tor Project Opens Bounty Program To All Researchers

Modified Versions of Nukebot in Wild Since Source Code Leak

Senator Calls For Use Of DMARC To Curb Phishing

Exploit

Sonicwall Secure Remote Access 8.1.0.2-14sv - Command Injection

Sonicwall < 8.1.0.6-21sv - 'gencsr.cgi' Command Injection (Metasploit)

Netscaler SD-WAN 9.1.2.26.561201 - Command Injection (Metasploit)

Sonicwall < 8.1.0.2-14sv - 'sitecustomization.cgi' Command Injection (Metasploit)

Citrix CloudBridge - 'CAKEPHP' Cookie Command Injection

Linux/x86_64 - Reverse Shell (192.168.1.8:4444) Shellcode (104 bytes)

19.7.2017

Bugtraq

[SECURITY] [DSA 3914-1] imagemagick security update 2017-07-18
Moritz Muehlenhoff (jmm debian org)

[CVE-2017-7728] - Authentication Bypass allows alarm's commands execution in iSmartAlarm 2017-07-13
ilia shnaidman bullguard com

CVE-2017-7684 - Apache OpenMeetings - Insecure File Upload 2017-07-13
Maxim Solodovnik (solomax apache org)

CVE-2017-7663 - Apache OpenMeetings - XSS in chat 2017-07-13
Maxim Solodovnik (solomax apache org)

Malware

SHELLBIND

Phishing

Natwest Bank

18th July 2017

LATE PAYMENT

CapitalOne

17th July 2017

Customer support

Bank of Scotland

16th July 2017

RBS Important Message

Vulnerebility

Multiple Intel Products CVE-2017-5689 Privilege Escalation Vulnerability
2017-07-19
http://www.securityfocus.com/bid/98269

OpenSSL CVE-2017-3732 Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/95814

OpenSSL Padding Oracle Incomplete Fix Information Disclosure Vulnerability
2017-07-19
http://www.securityfocus.com/bid/89760

SAP Netweaver Dynpro Engine Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96874

SAP NetWeaver Visual Composer Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96865

SAP NetWeaver ABAP CVE-2017-9843 Denial of Service Vulnerability
2017-07-19
http://www.securityfocus.com/bid/96900

Oracle Java Advanced Management Console CVE-2017-10104 Remote Security Vulnerability
2017-07-19
http://www.securityfocus.com/bid/99797

Oracle BI Publisher CVE-2017-10041 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99742

Oracle Java SE CVE-2017-10102 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99712

Oracle Java SE CVE-2017-10096 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99670

PHPMailer CVE-2016-10045 Incomplete Fix Remote Code Execution Vulnerability
2017-07-18
http://www.securityfocus.com/bid/95130

RETIRED: Linux Kernel 'saa7164-bus.c' Local Privilege Escalation Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99175

Genivia gSOAP CVE-2017-9765 Stack Based Buffer Overflow Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99868

Oracle Database Server CVE-2017-10120 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99867

Oracle FLEXCUBE Universal Banking CVE-2017-10071 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99866

Oracle Database Server CVE-2017-10202 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99865

Oracle FLEXCUBE Private Banking CVE-2017-10022 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99864

Oracle Hospitality Applications CVE-2017-10213 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99863

Oracle FLEXCUBE Private Banking CVE-2017-10012 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99862

Oracle Hospitality Applications CVE-2017-10220 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99861

Oracle FLEXCUBE Universal Banking CVE-2017-10072 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99860

Oracle Solaris Cluster CVE-2017-10234 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99859

Oracle Hospitality Applications CVE-2017-10200 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99858

Oracle Solaris CVE-2017-3632 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99857

Oracle FLEXCUBE Universal Banking CVE-2017-10098 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99856

Oracle Sun ZFS Storage Appliance Kit CVE-2017-10016 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99855

Oracle Java SE CVE-2017-10193 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99854

Oracle Java SE CVE-2017-10081 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99853

Oracle Solaris CVE-2017-10122 Local Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99852

Oracle Java SE CVE-2017-10105 Remote Security Vulnerability
2017-07-18
http://www.securityfocus.com/bid/99851

SANS News

Bots Searching for Keys & Config Files

Threatpost

Botnet Tweeting, Spamming Porn Shut Down

Privacy Activists Suffer Legal Setback In National Security Letter Case

CoinDash Hacked During its ICO

Oracle Releases Biggest Update Ever: 308 Vulnerabilities Patched

Exploit

Microsoft Internet Explorer 11.0.9600.18617 - 'CMarkup::DestroySplayTree' Memory...

Microsoft Internet Explorer 11.1066.14393.0 - VBScript Arithmetic Functions Type...

Microsoft Windows Kernel - 'IOCTL 0x120007 (NsiGetParameter)' nsiproxy/netio Pool...

Hashicorp vagrant-vmware-fusion <= 4.0.20 - Local root Privilege Esclation

PEGA Platform <= 7.2 ML0 - Missing Access Control / Cross-Site Scripting

18.7.2017

Bugtraq

 

Malware

Ransom.Shifr

Phishing

CapitalOne

17th July 2017

Customer support

Bank of Scotland

16th July 2017

RBS Important Message

MRS. CARMAN LAPOINTE

16th July 2017

UNITED NATIONS OFFICE OF
INTERNATIONAL OVERSIGHT
SERVICES

Vulnerebility

Apache Struts Spring AOP Functionality Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99562

QEMU CVE-2017-9503 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99010

QEMU 'hw/usb/hcd-xhci.c' Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98915

QEMU CVE-2017-9373 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98921

QEMU CVE-2017-9374 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98905

QEMU CVE-2017-8379 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98277

QEMU 'megasas_mmio_write()' Function Out-of-Bounds Read Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98303

QEMU CVE-2017-8309 Denial of Service Vulnerability

SANS News

Investigation of BitTorrent Sync (v.2.0) as a P2P Cloud Service (Part 4 ? Windows Thumbnail Cache, Registry, Prefetch Files, and Link Files artefacts)

Threatpost

FreeRADIUS Update Patches Bugs Static Analysis Tools Missed

Cisco Patches Another Critical Ormandy Bug in WebEx Extension

Botnet Tweeting, Spamming Porn Shut Down

Exploit

Belkin NetCam F7D7601 - Multiple Vulnerabilities

Sophos Web Appliance 4.3.0.2 - 'trafficType' Remote Command Injection (Metasploit)

Barracuda Load Balancer Firmware <= 6.0.1.006 - Remote Command Injection...

17.7.2017

Bugtraq

 

Malware

 

Phishing

Bank of Scotland

16th July 2017

RBS Important Message

MRS. CARMAN LAPOINTE

16th July 2017

UNITED NATIONS OFFICE OF
INTERNATIONAL OVERSIGHT
SERVICES

Chase

16th July 2017

Request to update your details
with Chase Today!

Vulnerebility

Apache Struts Spring AOP Functionality Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99562

QEMU CVE-2017-9503 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99010

QEMU 'hw/usb/hcd-xhci.c' Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98915

QEMU CVE-2017-9373 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98921

QEMU CVE-2017-9374 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98905

QEMU CVE-2017-8379 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98277

QEMU 'megasas_mmio_write()' Function Out-of-Bounds Read Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98303

QEMU CVE-2017-8309 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98302

Qemu 'hw/display/cirrus_vga.c' Remote Code Execution Vulnerability
2017-07-17
http://www.securityfocus.com/bid/97955

QEMU 'hw/9pfs/9p-local.c' Privilege Escalation Vulnerability
2017-07-17
http://www.securityfocus.com/bid/97970

QEMU CVE-2017-8086 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98012

QEMU 'hw/9pfs/9p.c' Multiple Denial of Service Vulnerabilities
2017-07-17
http://www.securityfocus.com/bid/97319

QEMU 'hw/sd/sdhci.c' Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/96263

QEMU 'hw/usb/hcd-ohci.c' Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/96611

QEMU CVE-2017-8112 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/98015

QEMU 'hw/display/cirrus_vga_rop.h' Multiple Memory Corruption Vulnerabilities
2017-07-17
http://www.securityfocus.com/bid/97957

QEMU CVE-2016-9603 Heap Buffer Overflow Vulnerability
2017-07-17
http://www.securityfocus.com/bid/96893

QEMU 'hw/usb/hcd-xhci.c' Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/96220

QEMU CVE-2016-9602 Privilege Escalation Vulnerability
2017-07-17
http://www.securityfocus.com/bid/95461

QEMU CVE-2017-5579 Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/95780

Heimdal CVE-2017-11103 Man in the Middle Security Bypass Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99551

phpCAS CVE-2017-1000071 Authentication Bypass Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99609

radare2 CVE-2017-10929 Heap Buffer Overflow Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99608

Moodle CVE-2017-2642 Information Disclosure Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99606

ImageMagick 'coders/rle.c' Incomplete Fix Denial of Service Vulnerability
2017-07-17
http://www.securityfocus.com/bid/99600

Rpcbind CVE-2017-8779 Remote Denial of Service Vulnerability
2017-07-16
http://www.securityfocus.com/bid/98325

ATutor Multiple Security Vulnerabilities
2017-07-16
http://www.securityfocus.com/bid/99599

Microsoft Windows COM CVE-2017-0298 Local Privilege Escalation Vulnerability
2017-07-14
http://www.securityfocus.com/bid/98841

PHPMailer CVE-2016-10045 Incomplete Fix Remote Code Execution Vulnerability
2017-07-14
http://www.securityfocus.com/bid/95130

Knot DNS CVE-2017-11104 Authentication Bypass Vulnerability
2017-07-14
http://www.securityfocus.com/bid/99598

SANS News

SMS Phishing induces victims to photograph its own token card

Threatpost

 

Exploit

FTPGetter 5.89.0.85 - Buffer Overflow (SEH)

Orangescrum 1.6.1 - Multiple Vulnerabilities

16.7.2017

Bugtraq

[CVE-2017-7728] - Authentication Bypass allows alarm's commands execution in iSmartAlarm 2017-07-13
ilia shnaidman bullguard com

CVE-2017-7684 - Apache OpenMeetings - Insecure File Upload 2017-07-13
Maxim Solodovnik (solomax apache org)

CVE-2017-7663 - Apache OpenMeetings - XSS in chat 2017-07-13
Maxim Solodovnik (solomax apache org)

CVE-2017-7688 - Apache OpenMeetings - Insecure Password Update 2017-07-13
Maxim Solodovnik (solomax apache org)

CVE-2017-7664 - Apache OpenMeetings - Missing XML Validation 2017-07-13
Maxim Solodovnik (solomax666 gmail com)

CVE-2017-9788: Uninitialized memory reflection in mod_auth_digest 2017-07-13
William A Rowe Jr (wrowe apache org)

CVE-2017-9789: Apache httpd 2.4 Read after free in mod_http2 2017-07-13
William A Rowe Jr (wrowe apache org)

[SECURITY] [DSA 3908-1] nginx security update 2017-07-12
Moritz Muehlenhoff (jmm debian org)

Malware

 

Phishing

Bank of Scotland

16th July 2017

RBS Important Message

MRS. CARMAN LAPOINTE

16th July 2017

UNITED NATIONS OFFICE OF
INTERNATIONAL OVERSIGHT
SERVICES

Chase

16th July 2017

Request to update your details
with Chase Today!

Chase

14th July 2017

Help us protect your Chase
Account

Microsoft

14th July 2017

Important Message From BB
PADDING-TOP: 10px;
PADDING-LEFT: 10px;
PADDING-RIGHT: 10px">

MR. IBRAHIM CISSOKO

14th July 2017

Re: Partnership Request

eBay

14th July 2017

This eBay member has a
question regarding your item
for sale.

Vulnerebility

Microsoft Windows COM CVE-2017-0298 Local Privilege Escalation Vulnerability
2017-07-14
http://www.securityfocus.com/bid/98841

PHPMailer CVE-2016-10045 Incomplete Fix Remote Code Execution Vulnerability
2017-07-14
http://www.securityfocus.com/bid/95130

Juniper ScreenOS Multiple HTML Injection Vulnerabilities
2017-07-14
http://www.securityfocus.com/bid/99590

Apache OpenMeetings CVE-2017-7684 Denial of Service Vulnerability
2017-07-14
http://www.securityfocus.com/bid/99584

Oracle July 2017 Critical Patch Update Multiple Vulnerabilities
2017-07-14
http://www.securityfocus.com/bid/99579

NTP CVE-2017-6462 Local Buffer Overflow Vulnerability
2017-07-13
http://www.securityfocus.com/bid/97045

NTP CVE-2017-6451 Local Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/97058

NTP CVE-2017-6464 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/97050

NTP CVE-2017-6458 Buffer Overflow Vulnerability
2017-07-13
http://www.securityfocus.com/bid/97051

Microsoft Windows CVE-2014-4114 OLE Package Manager Remote Code Execution Vulnerability
2017-07-13
http://www.securityfocus.com/bid/70419

Microsoft Office CVE-2015-1641 Memory Corruption Vulnerability
2017-07-13
http://www.securityfocus.com/bid/73995

Microsoft Windows Kernel 'Win32k.sys' CVE-2016-7255 Local Privilege Escalation Vulnerability
2017-07-13
http://www.securityfocus.com/bid/94064

Heimdal CVE-2017-11103 Man in the Middle Security Bypass Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99551

Microsoft Windows CVE-2017-0170 XML External Entity Local Information Disclosure Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99398

Apache OpenMeetings CVE-2017-7673 Security Bypass Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99587

Apache OpenMeetings CVE-2017-7688 Security Bypass Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99586

ImageMagick CVE-2017-11310 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99585

Siemens SIMATIC WinCC Sm@rtClient for Android ICSA-17-194-03 Multiple Security Vulnerabilities
2017-07-13
http://www.securityfocus.com/bid/99582

GE Communicator CVE-2017-7908 Heap Based Buffer Overflow Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99580

Siemens SiPass integrated ICSA-17-194-01 Multiple Security Vulnerabilities
2017-07-13
http://www.securityfocus.com/bid/99578

Apache OpenMeetings CVE-2017-7663 Cross Site Scripting Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99577

Apache OpenMeetings CVE-2017-7664 XML External Entity Injection Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99576

Jenkins Subversion Plugin CVE-2017-1000085 Cross Site Request Forgery Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99574

GNU Binutils CVE-2017-9955 Multiple Heap Based Buffer Overflow Vulnerabilities
2017-07-13
http://www.securityfocus.com/bid/99573

Jenkins Pipeline: Groovy Plugin CVE-2017-1000096 Remote Code Execution Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99571

Trend Micro Deep Discovery Director Multiple Security Vulnerabilities
2017-07-13
http://www.securityfocus.com/bid/99570

Apache HTTP Server CVE-2017-9789 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99568

Juniper Junos CVE-2017-2345 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99567

Apache Struts CVE-2017-7672 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99563

Apache Struts Spring AOP Functionality Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99562

SANS News

Office maldoc + .lnk

Threatpost

Experts Warn Too Often AWS S3 Buckets Are Misconfigured, Leak Data

Cisco Patches Publicly Disclosed SNMP Vulnerabilities in IOS, IOS XE

Siemens Patches Authentication Bypass Flaw in SiPass Server

NemucodAES Ransomware, Kovter Click-Fraud Malware Spreading in Same Campaigns

Exploit

Firefox 50.0.1 - ASM.JS JIT-Spray Remote Code Execution

Apache Struts 2.3.x Showcase - Remote Code Execution (PoC)

WDTV Live SMP 2.03.20 - Remote Password Reset

Counter Strike: Condition Zero - '.BSP' Map File Code Execution

13.7.2017

Bugtraq

[CVE-2017-7728] - Authentication Bypass allows alarm's commands execution in iSmartAlarm 2017-07-13
ilia shnaidman bullguard com

CVE-2017-7684 - Apache OpenMeetings - Insecure File Upload 2017-07-13
Maxim Solodovnik (solomax apache org)

CVE-2017-7663 - Apache OpenMeetings - XSS in chat 2017-07-13
Maxim Solodovnik (solomax apache org)

CVE-2017-7688 - Apache OpenMeetings - Insecure Password Update 2017-07-13
Maxim Solodovnik (solomax apache org)

CVE-2017-7664 - Apache OpenMeetings - Missing XML Validation 2017-07-13
Maxim Solodovnik (solomax666 gmail com)

CVE-2017-9788: Uninitialized memory reflection in mod_auth_digest 2017-07-13
William A Rowe Jr (wrowe apache org)

CVE-2017-9789: Apache httpd 2.4 Read after free in mod_http2 2017-07-13
William A Rowe Jr (wrowe apache org)

[SECURITY] [DSA 3908-1] nginx security update 2017-07-12
Moritz Muehlenhoff (jmm debian org)

Malware

 

Phishing

eBay

14th July 2017

This eBay member has a
question regarding your item
for sale.

U.S. Bank

13th July 2017

REQUEST TO UPDATE YOUR U.S.
BANK ACCOUNT INFORMATION!

CapitalOne

13th July 2017

Customer support

Vulnerebility

Microsoft Windows COM CVE-2017-0298 Local Privilege Escalation Vulnerability
2017-07-14
http://www.securityfocus.com/bid/98841

PHPMailer CVE-2016-10045 Incomplete Fix Remote Code Execution Vulnerability
2017-07-14
http://www.securityfocus.com/bid/95130

Juniper ScreenOS Multiple HTML Injection Vulnerabilities
2017-07-14
http://www.securityfocus.com/bid/99590

Apache OpenMeetings CVE-2017-7684 Denial of Service Vulnerability
2017-07-14
http://www.securityfocus.com/bid/99584

Oracle July 2017 Critical Patch Update Multiple Vulnerabilities
2017-07-14
http://www.securityfocus.com/bid/99579

NTP CVE-2017-6462 Local Buffer Overflow Vulnerability
2017-07-13
http://www.securityfocus.com/bid/97045

NTP CVE-2017-6451 Local Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/97058

NTP CVE-2017-6464 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/97050

NTP CVE-2017-6458 Buffer Overflow Vulnerability
2017-07-13
http://www.securityfocus.com/bid/97051

Microsoft Windows CVE-2014-4114 OLE Package Manager Remote Code Execution Vulnerability
2017-07-13
http://www.securityfocus.com/bid/70419

Microsoft Office CVE-2015-1641 Memory Corruption Vulnerability
2017-07-13
http://www.securityfocus.com/bid/73995

Microsoft Windows Kernel 'Win32k.sys' CVE-2016-7255 Local Privilege Escalation Vulnerability
2017-07-13
http://www.securityfocus.com/bid/94064

Heimdal CVE-2017-11103 Man in the Middle Security Bypass Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99551

Microsoft Windows CVE-2017-0170 XML External Entity Local Information Disclosure Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99398

Apache OpenMeetings CVE-2017-7673 Security Bypass Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99587

Apache OpenMeetings CVE-2017-7688 Security Bypass Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99586

ImageMagick CVE-2017-11310 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99585

Siemens SIMATIC WinCC Sm@rtClient for Android ICSA-17-194-03 Multiple Security Vulnerabilities
2017-07-13
http://www.securityfocus.com/bid/99582

GE Communicator CVE-2017-7908 Heap Based Buffer Overflow Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99580

Siemens SiPass integrated ICSA-17-194-01 Multiple Security Vulnerabilities
2017-07-13
http://www.securityfocus.com/bid/99578

Apache OpenMeetings CVE-2017-7663 Cross Site Scripting Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99577

Apache OpenMeetings CVE-2017-7664 XML External Entity Injection Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99576

Jenkins Subversion Plugin CVE-2017-1000085 Cross Site Request Forgery Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99574

GNU Binutils CVE-2017-9955 Multiple Heap Based Buffer Overflow Vulnerabilities
2017-07-13
http://www.securityfocus.com/bid/99573

Jenkins Pipeline: Groovy Plugin CVE-2017-1000096 Remote Code Execution Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99571

Trend Micro Deep Discovery Director Multiple Security Vulnerabilities
2017-07-13
http://www.securityfocus.com/bid/99570

Apache HTTP Server CVE-2017-9789 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99568

Juniper Junos CVE-2017-2345 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99567

Apache Struts CVE-2017-7672 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99563

Apache Struts Spring AOP Functionality Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99562

SANS News

NemucodAES and the malspam that distributes it

Threatpost

Google Changes How it Analyzes Misbehaving Mobile Apps

Attackers Using Automated Scans to Takeover WordPress Installs

Scanner Shows EternalBlue Vulnerability Unpatched on Thousands of Machines

Exploit

Dasan Networks GPON ONT WiFi Router H64X Series - Authentication Bypass

Dasan Networks GPON ONT WiFi Router H64X Series - Cross-Site Request Forgery

Dasan Networks GPON ONT WiFi Router H64X Series - Privilege Escalation

Dasan Networks GPON ONT WiFi Router H64X Series - Configuration Download

13.7.2017

Bugtraq

CVE-2017-9788: Uninitialized memory reflection in mod_auth_digest 2017-07-13
William A Rowe Jr (wrowe apache org)

CVE-2017-9789: Apache httpd 2.4 Read after free in mod_http2 2017-07-13
William A Rowe Jr (wrowe apache org)

[SECURITY] [DSA 3908-1] nginx security update 2017-07-12
Moritz Muehlenhoff (jmm debian org)

SEC Consult SA-20170712-0 :: Multiple critical vulnerabilities in AGFEO smart home ES 5xx/6xx products 2017-07-12
SEC Consult Vulnerability Lab (research sec-consult com)

[CVE request]linux kernel xfrm migrate out-of-bound access 2017-07-11
bo Zhang (zhangbo5891001 gmail com)

[RT-SA-2017-011] Remote Command Execution in PDNS Manager 2017-07-11
RedTeam Pentesting GmbH (release redteam-pentesting de)

Malware

Ransom.Karo

Infostealer.Neupos

Backdoor.Goodor

Backdoor.Dorshel

Phishing

CapitalOne

13th July 2017

Customer support

noreply

12th July 2017

UPDATE YOUR ACCOUNT.

Natwest

12th July 2017

IMPORTANT INFORMATION FROM
NATWEST

Vulnerebility

Microsoft Windows CVE-2014-4114 OLE Package Manager Remote Code Execution Vulnerability
2017-07-13
http://www.securityfocus.com/bid/70419

Microsoft Office CVE-2015-1641 Memory Corruption Vulnerability
2017-07-13
http://www.securityfocus.com/bid/73995

Microsoft Windows Kernel 'Win32k.sys' CVE-2016-7255 Local Privilege Escalation Vulnerability
2017-07-13
http://www.securityfocus.com/bid/94064

Heimdal CVE-2017-11103 Man in the Middle Security Bypass Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99551

Microsoft Windows CVE-2017-0170 XML External Entity Local Information Disclosure Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99398

Apache HTTP Server CVE-2017-9789 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99568

Juniper Junos CVE-2017-2345 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99567

Apache Struts CVE-2017-7672 Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99563

Apache Struts Spring AOP Functionality Denial of Service Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99562

McAfee Advanced Threat Defense CVE-2017-4053 Command Injection Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99560

Juniper Junos CVE-2017-2344 Local Buffer Overflow Vulnerability
2017-07-13
http://www.securityfocus.com/bid/99556

Microsoft Office OLE Feature Remote Code Execution Vulnerability
2017-07-12
http://www.securityfocus.com/bid/97498

Microsoft Office CVE-2017-0262 Remote Code Execution Vulnerability
2017-07-12
http://www.securityfocus.com/bid/98279

Microsoft Windows Kernel 'Win32k.sys' CVE-2017-0263 Local Privilege Escalation Vulnerability
2017-07-12
http://www.securityfocus.com/bid/98258

X.Org X Server CVE-2017-10972 Information Disclosure Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99543

Adobe Flash Player CVE-2017-3100 Information Disclosure Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99523

Adobe Flash Player CVE-2017-3099 Remote Memory Corruption Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99520

Adobe Flash Player CVE-2017-3080 Information Disclosure Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99519

SAP NetWeaver Unspecified Security Bypass Vulnerability
2017-07-12
http://www.securityfocus.com/bid/96875

ImageMagick CVE-2017-11188 Denial of Service Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99566

IBM Daeja ViewONE CVE-2017-1308 Arbitrary File Download Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99549

Multiple IBM Products CVE-2016-8964 Brute Force Authentication Bypass Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99548

IBM Emptoris Sourcing Multiple Cross Site Scripting and Open Redirection Vulnerabilities
2017-07-12
http://www.securityfocus.com/bid/99545

IBM Emptoris Spend Analysis Multiple Cross Site Scripting Vulnerabilities
2017-07-12
http://www.securityfocus.com/bid/99541

Microsoft Windows Kernel CVE-2016-3305 Local Privilege Escalation Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92812

Microsoft Windows Search CVE-2017-8589 Remote Code Execution Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99425

Siemens EN100 Ethernet Module CVE-2016-7113 Denial of Service Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92748

Multiple Siemens SIPROTEC Products EN100 Module CVE-2015-5374 Denial of Service Vulnerability
2017-07-11
http://www.securityfocus.com/bid/75948

Siemens EN100 Ethernet Module CVE-2016-7114 Authentication Bypass Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92745

Siemens EN100 Ethernet Module CVE-2016-7112 Authentication Bypass Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92747

SANS News

Investigation of BitTorrent Sync (v.2.0) as a P2P Cloud Service (Part 3 ? Physical Memory artefacts)

Threatpost

SAP Patches High-Risk Flaws in SAP POS, Host Agent

Uber Patches Authentication Bypass Vulnerability on Custom SSO Solution

New Point-of-Sale Malware LockPoS Hitches Ride with FlokiBot

Third Party Exposes 14 Million Verizon Customer Records

Exploit

Skype for Business 2016 - Cross-Site Scripting

Dasan Networks GPON ONT WiFi Router H64X Series - Authentication Bypass

Dasan Networks GPON ONT WiFi Router H64X Series - Cross-Site Request Forgery

Dasan Networks GPON ONT WiFi Router H64X Series - Privilege Escalation

Dasan Networks GPON ONT WiFi Router H64X Series - Configuration Download

12.7.2017

Bugtraq

SEC Consult SA-20170712-0 :: Multiple critical vulnerabilities in AGFEO smart home ES 5xx/6xx products 2017-07-12
SEC Consult Vulnerability Lab (research sec-consult com)

[CVE request]linux kernel xfrm migrate out-of-bound access 2017-07-11
bo Zhang (zhangbo5891001 gmail com)

[RT-SA-2017-011] Remote Command Execution in PDNS Manager 2017-07-11
RedTeam Pentesting GmbH (release redteam-pentesting de)

CVE-2017-4918: Code Injection in VMware Horizonâ??s macOS Client 2017-07-10
Florian Bogner (florian bogner sh)

[security bulletin] HPESBGN03763 rev.1 - HPE SiteScope, Disclosure of Sensitive Information, Bypass Security Restriction, Remote Arbitrary Code Execution 2017-07-10
HPE Product Security Response Team (security-alert hpe com)

[security bulletin] HPESBGN03762 rev.1 - HPE Network Node Manager i (NNMi) Software, Remote Bypass Security Restrictions, Cross-Site Scripting (XSS), URL Redirection 2017-07-10
HPE Product Security Response Team (security-alert hpe com)

Malware

 

Phishing

noreply

12th July 2017

UPDATE YOUR ACCOUNT.

Natwest

12th July 2017

IMPORTANT INFORMATION FROM
NATWEST

Vulnerebility

Microsoft Office OLE Feature Remote Code Execution Vulnerability
2017-07-12
http://www.securityfocus.com/bid/97498

Microsoft Office CVE-2017-0262 Remote Code Execution Vulnerability
2017-07-12
http://www.securityfocus.com/bid/98279

Microsoft Windows Kernel 'Win32k.sys' CVE-2017-0263 Local Privilege Escalation Vulnerability
2017-07-12
http://www.securityfocus.com/bid/98258

X.Org X Server CVE-2017-10972 Information Disclosure Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99543

Adobe Flash Player CVE-2017-3100 Information Disclosure Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99523

Adobe Flash Player CVE-2017-3099 Remote Memory Corruption Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99520

Adobe Flash Player CVE-2017-3080 Information Disclosure Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99519

SAP NetWeaver Unspecified Security Bypass Vulnerability
2017-07-12
http://www.securityfocus.com/bid/96875

Heimdal CVE-2017-11103 Man in the Middle Security Bypass Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99551

IBM Daeja ViewONE CVE-2017-1308 Arbitrary File Download Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99549

Multiple IBM Products CVE-2016-8964 Brute Force Authentication Bypass Vulnerability
2017-07-12
http://www.securityfocus.com/bid/99548

IBM Emptoris Sourcing Multiple Cross Site Scripting and Open Redirection Vulnerabilities
2017-07-12
http://www.securityfocus.com/bid/99545

Microsoft Windows Kernel CVE-2016-3305 Local Privilege Escalation Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92812

Microsoft Windows Search CVE-2017-8589 Remote Code Execution Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99425

Siemens EN100 Ethernet Module CVE-2016-7113 Denial of Service Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92748

Multiple Siemens SIPROTEC Products EN100 Module CVE-2015-5374 Denial of Service Vulnerability
2017-07-11
http://www.securityfocus.com/bid/75948

Siemens EN100 Ethernet Module CVE-2016-7114 Authentication Bypass Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92745

Siemens EN100 Ethernet Module CVE-2016-7112 Authentication Bypass Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92747

Multiple Siemens SIPROTEC Products ICSA-16-140-02 Information Disclosure Vulnerabilities
2017-07-11
http://www.securityfocus.com/bid/90773

Fuji Electric V-Server CVE-2017-9639 Memory Corruption Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99544

OSIsoft PI Coresight CVE-2017-9641 Cross Site Request Forgery Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99540

Siemens SIMATIC Logon CVE-2017-9938 Out of Bounds Write Denial of Service Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99539

Schweitzer Engineering Laboratories SEL-3620/3622 CVE-2017-7928 Unauthorized Access Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99536

Nginx CVE-2017-7529 Remote Integer Overflow Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99534

Microsoft Exchange Server CVE-2017-8621 Open Redirection Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99533

SAP Customer Relationship Management (CRM) Cross Site Scripting Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99532

SAP Point of Sale (POS) Retail Xpress Server Authentication Bypass Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99531

SAP BusinessObjects Enterprise Information Disclosure Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99530

SAP Netweaver Data Orchestration Engine Unspecified Information Disclosure Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99529

SAP Host Agent Unspecified Denial of Service Vulnerability
2017-07-11
http://www.securityfocus.com/bid/99528

SANS News

July's Microsoft Patch Tuesday

Backup Scripts, the FIM of the Poor

Threatpost

Adobe Fixes Six Vulnerabilities in Flash, Connect with July Update

Microsoft Addresses NTLM Bugs That Facilitate Credential Relay Attacks

Microsoft Patch Tuesday Update Fixes 19 Critical Vulnerabilities

Exploit

 

11.7.2017

Bugtraq

[security bulletin] HPESBGN03763 rev.1 - HPE SiteScope, Disclosure of Sensitive Information, Bypass Security Restriction, Remote Arbitrary Code Execution 2017-07-10
HPE Product Security Response Team (security-alert hpe com)

[security bulletin] HPESBGN03762 rev.1 - HPE Network Node Manager i (NNMi) Software, Remote Bypass Security Restrictions, Cross-Site Scripting (XSS), URL Redirection 2017-07-10
HPE Product Security Response Team (security-alert hpe com)

[security bulletin] HPESBHF03745 rev.2 - HPE Intelligent Management Center (iMC) PLAT, Remote Code Execution 2017-07-10
HPE Product Security Response Team (security-alert hpe com)

[security bulletin] HPESBNS03755 rev.1 - HPE NonStop Server using Samba, Multiple Remote Vulnerabilities 2017-07-10
HPE Product Security Response Team (security-alert hpe com)

CVE-2017-5640 Apache Impala (incubating) Information Disclosure 2017-07-10
Sailesh Mukil (sailesh apache org)

[SECURITY] CVE-2017-5652 Apache Impala (incubating) Information Disclosure 2017-07-10
Sailesh Mukil (sailesh apache org)

ToorCon 19 Call For Papers Closing This Week! 2017-07-10
h1kari toorcon org

Malware

Ransom:Win32/Enestaller 
Ransom:Win32/Enestedel 

Trojan.Listrix

SoftwareBundler:Win32/FileTour

Phishing

 

Vulnerebility

Siemens EN100 Ethernet Module CVE-2016-7113 Denial of Service Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92748

Multiple Siemens SIPROTEC Products EN100 Module CVE-2015-5374 Denial of Service Vulnerability
2017-07-11
http://www.securityfocus.com/bid/75948

Siemens EN100 Ethernet Module CVE-2016-7114 Authentication Bypass Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92745

Siemens EN100 Ethernet Module CVE-2016-7112 Authentication Bypass Vulnerability
2017-07-11
http://www.securityfocus.com/bid/92747

Multiple Siemens SIPROTEC Products ICSA-16-140-02 Information Disclosure Vulnerabilities
2017-07-11
http://www.securityfocus.com/bid/90773

RETIRED:Siemens EN100 Ethernet Modules for Reyrolle ICSA-17-187-02 Multiple Security Vulnerabilities
2017-07-10
http://www.securityfocus.com/bid/99471

Apache Struts CVE-2017-9791 Remote Code Execution Vulnerability
2017-07-10
http://www.securityfocus.com/bid/99484

VLAN VLC CVE-2017-8313 Denial of Service Vulnerability
2017-07-10
http://www.securityfocus.com/bid/98633

VLAN VLC CVE-2017-8310 Denial of Service Vulnerability
2017-07-10
http://www.securityfocus.com/bid/98638

VideoLAN VLC CVE-2017-8311 Heap Based Buffer Overflow Vulnerability
2017-07-10
http://www.securityfocus.com/bid/98634

VideoLAN VLC CVE-2017-8312 Information Disclosure Vulnerability
2017-07-10
http://www.securityfocus.com/bid/98631

RoundCube Webmail CVE-2017-8114 Multiple Privilege Escalation Vulnerabilities
2017-07-10
http://www.securityfocus.com/bid/98445

Ubuntu Vivid CVE-2015-1336 Local Privilege Escalation Vulnerability
2017-07-10
http://www.securityfocus.com/bid/79723

WordPress Shortcodes Ultimate Plugin CVE-2017-2245 Directory Traversal Vulnerability
2017-07-10
http://www.securityfocus.com/bid/99495

PHP 'gd_gif_in.c' Memory Corruption Vulnerability
2017-07-10
http://www.securityfocus.com/bid/99492

PHP 'finish_nested_data()' Function Heap Buffer Overflow Vulnerability
2017-07-10
http://www.securityfocus.com/bid/99490

PHP 'zend_ini_do_op()' Function Stack Buffer Overflow Vulnerability
2017-07-10
http://www.securityfocus.com/bid/99489

ImageMagick CVE-2017-11141 Denial of Service Vulnerability
2017-07-09
http://www.securityfocus.com/bid/99506

GraphicsMagick CVE-2017-11139 Multiple Denial of Service Vulnerabilities
2017-07-09
http://www.securityfocus.com/bid/99504

GraphicsMagick 'coders/jpeg.c' Denial of Service Vulnerability
2017-07-09
http://www.securityfocus.com/bid/99503

SQLite CVE-2017-10989 Heap Buffer Overflow Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99502

GraphicsMagick 'coders/png.c' Denial of Service Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99498

Poppler PDF Library Multiple Heap Buffer Overflow and Integer Overflow Vulnerabilities
2017-07-07
http://www.securityfocus.com/bid/99497

ImageMagick CVE-2017-10995 Heap Buffer Overflow Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99496

Apache Solr CVE-2017-7660 Security Bypass Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99485

QEMU CVE-2017-10806 Stack Buffer Overflow Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99475

Qualcomm Closed-Source Components Multiple Unspecified Vulnerabilities
2017-07-07
http://www.securityfocus.com/bid/99467

WordPress Responsive Lightbox Plugin CVE-2017-2243 Cross Site Scripting Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99463

NTP CVE-2017-6458 Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97051

NTP CVE-2016-9042 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97046

SANS News

Basic Office maldoc analysis

Threatpost

Google to Fully Distrust WoSign/StartCom SSL Certs in Chrome 61

Energy, Nuclear Targeted with Template Injection Attacks

Telcos Singled Out for Prioritizing Government Requests for Data Over Privacy

Micro Market Vendor Warns of Bankcard And Biometric Data Breach

Exploit

Microsoft Windows Windows 7/8.1/2008 R2/2012 R2/2016 R2 - 'EternalBlue' SMB Remote...

NfSen < 1.3.7 / AlienVault OSSIM < 5.3.6 - Privilege Escalation

NfSen <= 1.3.7 / AlienVault OSSIM 5.3.4 - Command Injection

Pelco Sarix/Spectra Cameras - Cross-Site Request Forgery / Cross-Site Scripting

Pelco Sarix/Spectra Cameras - Remote Code Execution

Pelco VideoXpert 1.12.105 - Information Disclosure

Pelco VideoXpert 1.12.105 - Directory Traversal

Pelco VideoXpert 1.12.105 - Privilege Escalation

Pelco Sarix/Spectra Cameras - Cross-Site Request Forgery (Enable SSH Root Access)

10.7.2017

Bugtraq

[slackware-security] irssi (SSA:2017-190-01) 2017-07-09
Slackware Security Team (security slackware com)

[SECURITY] [DSA 3905-1] xorg-server security update 2017-07-09
Moritz Muehlenhoff (jmm debian org)

[SECURITY] [DSA 3904-1] bind9 security update 2017-07-08
Yves-Alexis Perez (corsac debian org)

[slackware-security] php (SSA:2017-188-01) 2017-07-08
Slackware Security Team (security slackware com)

CVE-2017-10974 Yaws Web Server v1.91 Unauthenticated Remote File Disclosure 2017-07-08
apparitionsec gmail com (hyp3rlinx)

[ANNOUNCE] [SECURITY] CVE-2017-7660: Security Vulnerability in secure inter-node communication in Apache Solr 2017-07-07
Shalin Shekhar Mangar (shalin apache org)

[SYSS-2017-011] Office 365: Insufficient Session Expiration (CWE-613) 2017-07-07
Micha Borrmann (micha borrmann syss de)

Firefox v54.0.1 Denial Of Service 2017-07-07
apparitionsec gmail com

KL-001-2017-015 : Solarwinds LEM Hardcoded Credentials 2017-07-06
KoreLogic Disclosures (disclosures korelogic com)

KL-001-2017-014 : Barracuda WAF Support Tunnel Hijack 2017-07-06
KoreLogic Disclosures (disclosures korelogic com)

Malware

 

Phishing

 

Vulnerebility

Apache Struts CVE-2017-9791 Remote Code Execution Vulnerability
2017-07-10
http://www.securityfocus.com/bid/99484

VLAN VLC CVE-2017-8313 Denial of Service Vulnerability
2017-07-10
http://www.securityfocus.com/bid/98633

VLAN VLC CVE-2017-8310 Denial of Service Vulnerability
2017-07-10
http://www.securityfocus.com/bid/98638

VideoLAN VLC CVE-2017-8311 Heap Based Buffer Overflow Vulnerability
2017-07-10
http://www.securityfocus.com/bid/98634

VideoLAN VLC CVE-2017-8312 Information Disclosure Vulnerability
2017-07-10
http://www.securityfocus.com/bid/98631

RoundCube Webmail CVE-2017-8114 Multiple Privilege Escalation Vulnerabilities
2017-07-10
http://www.securityfocus.com/bid/98445

Ubuntu Vivid CVE-2015-1336 Local Privilege Escalation Vulnerability
2017-07-10
http://www.securityfocus.com/bid/79723

PHP 'gd_gif_in.c' Memory Corruption Vulnerability
2017-07-10
http://www.securityfocus.com/bid/99492

PHP 'zend_ini_do_op()' Function Stack Buffer Overflow Vulnerability
2017-07-10
http://www.securityfocus.com/bid/99489

Apache Solr CVE-2017-7660 Security Bypass Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99485

QEMU CVE-2017-10806 Stack Buffer Overflow Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99475

Qualcomm Closed-Source Components Multiple Unspecified Vulnerabilities
2017-07-07
http://www.securityfocus.com/bid/99467

WordPress Responsive Lightbox Plugin CVE-2017-2243 Cross Site Scripting Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99463

NTP CVE-2017-6458 Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97051

NTP CVE-2016-9042 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97046

NTP CVE-2016-9310 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94452

NTP CVE-2016-2519 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/88204

NTP CVE-2016-7431 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94454

NTP CVE-2016-7433 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94455

NTP CVE-2016-7427 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94447

NTP CVE-2017-6460 Stack Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97052

NTP CVE-2017-6463 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97049

NTP CVE-2016-7426 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94451

NTP CVE-2016-7429 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94453

NTP CVE-2016-7428 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94446

NTP CVE-2017-6462 Local Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97045

NTP CVE-2016-9311 NULL Pointer Dereference Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94444

NTP CVE-2016-7434 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94448

NTP CVE-2017-6464 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97050

LibTIFF 'tif_dirwrite.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99359

SANS News

 

Threatpost

 

Exploit

 

9.7.2017

Bugtraq

[ANNOUNCE] [SECURITY] CVE-2017-7660: Security Vulnerability in secure inter-node communication in Apache Solr 2017-07-07
Shalin Shekhar Mangar (shalin apache org)

[SYSS-2017-011] Office 365: Insufficient Session Expiration (CWE-613) 2017-07-07
Micha Borrmann (micha borrmann syss de)

Malware

 

Phishing

 

Vulnerebility

Apache Solr CVE-2017-7660 Security Bypass Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99485

Apache Struts CVE-2017-9791 Remote Code Execution Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99484

QEMU CVE-2017-10806 Stack Buffer Overflow Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99475

Qualcomm Closed-Source Components Multiple Unspecified Vulnerabilities
2017-07-07
http://www.securityfocus.com/bid/99467

WordPress Responsive Lightbox Plugin CVE-2017-2243 Cross Site Scripting Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99463

NTP CVE-2017-6458 Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97051

SANS News

A VBScript with Obfuscated Base64 Data

Adversary hunting with SOF-ELK

Threatpost

Hard Rock, Loews Hotels Among Sabre Corp Hospitality Breach Victims

Exploit

Easy File Sharing Web Server 7.2 - GET HTTP Request 'PassWD' Buffer Overflow (DEP...

7.7.2017

Bugtraq

[ANNOUNCE] [SECURITY] CVE-2017-7660: Security Vulnerability in secure inter-node communication in Apache Solr 2017-07-07
Shalin Shekhar Mangar (shalin apache org)

[SYSS-2017-011] Office 365: Insufficient Session Expiration (CWE-613) 2017-07-07
Micha Borrmann (micha borrmann syss de)

Firefox v54.0.1 Denial Of Service 2017-07-07
apparitionsec gmail com

KL-001-2017-015 : Solarwinds LEM Hardcoded Credentials 2017-07-06
KoreLogic Disclosures (disclosures korelogic com)

KL-001-2017-014 : Barracuda WAF Support Tunnel Hijack 2017-07-06
KoreLogic Disclosures (disclosures korelogic com)

KL-001-2017-012 : Barracuda WAF Grub Password Complexity 2017-07-06
KoreLogic Disclosures (disclosures korelogic com)

KL-001-2017-011 : Barracuda WAF Internal Development Credential Disclosure 2017-07-06
KoreLogic Disclosures (disclosures korelogic com)

[SECURITY] [DSA 3903-1] tiff security update 2017-07-05
Moritz Muehlenhoff (jmm debian org)

[SECURITY] [DSA 3902-1] jabberd2 security update 2017-07-05
Salvatore Bonaccorso (carnil debian org)

[security bulletin] HPSBMU02933 rev.3 - HPE SiteScope, issueSiebelCmd and loadFileContents SOAP Requests, Remote Code Execution, Arbitrary File download, Denial of Service (DoS) 2017-07-05
HPE Product Security Response Team (security-alert hpe com)

[slackware-security] Slackware 14.0 kernel (SSA:2017-184-01) 2017-07-03
Slackware Security Team (security slackware com)

Malware

 

Phishing

Amazon

6th July 2017

Payment Refund Order
#D01-9294635-404748

Amazon

6th July 2017

Revision to Your Amazon.co.uk
Account

AppIe Support

5th July 2017

UPDATE YOUR ACCOUNT ID

Amazon-Store-Card

4th July 2017

Important-Information about
your
Amazon-Store-Card(5494753),
Customer ID: lemcool2

Vulnerebility

Qualcomm Closed-Source Components Multiple Unspecified Vulnerabilities
2017-07-07
http://www.securityfocus.com/bid/99467

WordPress Responsive Lightbox Plugin CVE-2017-2243 Cross Site Scripting Vulnerability
2017-07-07
http://www.securityfocus.com/bid/99463

NTP CVE-2017-6458 Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97051

NTP CVE-2016-9042 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97046

NTP CVE-2016-9310 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94452

NTP CVE-2016-2519 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/88204

NTP CVE-2016-7431 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94454

NTP CVE-2016-7433 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94455

NTP CVE-2016-7427 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94447

NTP CVE-2017-6460 Stack Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97052

NTP CVE-2017-6463 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97049

NTP CVE-2016-7426 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94451

NTP CVE-2016-7429 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94453

NTP CVE-2016-7428 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94446

NTP CVE-2017-6462 Local Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97045

NTP CVE-2016-9311 NULL Pointer Dereference Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94444

NTP CVE-2016-7434 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94448

NTP CVE-2017-6464 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97050

LibTIFF 'tif_dirwrite.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99359

LibTIFF CVE-2016-10095 Stack Based Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/95178

LibTIFF 'tif_jbig.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99300

LibTIFF 'tif_dir.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/98594

Schneider Electric Ampla MES ICSA-17-187-05 Multiple Local Security Vulnerabilities
2017-07-06
http://www.securityfocus.com/bid/99469

Google Android Qualcomm Components Multiple Security Vulnerabilities
2017-07-06
http://www.securityfocus.com/bid/99465

Cisco Identity Services Engine (ISE) Software CVE-2017-6734 Cross Site Scripting Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99459

Xen 'xen/arch/arm/vgic.c' Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99160

Xen 'xen/arch/arm/gic.c' Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99159

Xen XSA-222 Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99161

Xen 'xen/arch/x86/irq.c' NULL pointer Dereference Remote Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99157

Xen XSA-220 Information Disclosure Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99167

SANS News

 

Threatpost

CopyCat Malware Infected 14M Android Devices, Rooted 8M, in 2016

Let’s Encrypt to Offer Wildcard Certificates in 2018

Decryption Key to Original Petya Ransomware Released


Leaky WWE Database Exposes Personal Data of 3M Wrestling Fans

Exploit

Firefox 54.0.1 - Denial of Service

LibTIFF - 'tif_dirwrite.c' Denial of Service

LibTIFF - 'tif_jbig.c' Denial of Service

LibTIFF - '_TIFFVGetField (tiffsplit)' Out-of-Bounds Read

6.7.2017

Bugtraq

NTP CVE-2017-6458 Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97051

NTP CVE-2016-9042 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97046

NTP CVE-2016-9310 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94452

NTP CVE-2016-2519 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/88204

NTP CVE-2016-7431 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94454

NTP CVE-2016-7433 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94455

NTP CVE-2016-7427 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94447

NTP CVE-2017-6460 Stack Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97052

NTP CVE-2017-6463 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97049

NTP CVE-2016-7426 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94451

NTP CVE-2016-7429 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94453

NTP CVE-2016-7428 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94446

NTP CVE-2017-6462 Local Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97045

NTP CVE-2016-9311 NULL Pointer Dereference Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94444

NTP CVE-2016-7434 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94448

NTP CVE-2017-6464 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97050

LibTIFF 'tif_dirwrite.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99359

LibTIFF CVE-2016-10095 Stack Based Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/95178

LibTIFF 'tif_jbig.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99300

LibTIFF 'tif_dir.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/98594

Cisco Identity Services Engine (ISE) Software CVE-2017-6734 Cross Site Scripting Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99459

Xen 'xen/arch/arm/vgic.c' Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99160

Xen 'xen/arch/arm/gic.c' Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99159

Xen XSA-222 Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99161

Xen 'xen/arch/x86/irq.c' NULL pointer Dereference Remote Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99157

Xen XSA-220 Information Disclosure Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99167

Xen 'shadow/common.c' Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99174

Xen Page Transfer 'xen/arch/x86/mm.c' Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99158

Xen 'blkif' Response Information Disclosure Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99162

Resteasy CVE-2016-9606 Remote Code Execution Vulnerability
2017-07-05
http://www.securityfocus.com/bid/94940

Malware

SoftwareBundler:MSIL/Wizrem 
Ransom.Fakecry

VBS.Vlerli

Phishing

Amazon

6th July 2017

Revision to Your Amazon.co.uk
Account

AppIe Support

5th July 2017

UPDATE YOUR ACCOUNT ID

Amazon-Store-Card

4th July 2017

Important-Information about
your
Amazon-Store-Card(5494753),
Customer ID: lemcool2

Vulnerebility

NTP CVE-2017-6458 Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97051

NTP CVE-2016-9042 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97046

NTP CVE-2016-9310 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94452

NTP CVE-2016-2519 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/88204

NTP CVE-2016-7431 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94454

NTP CVE-2016-7433 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94455

NTP CVE-2016-7427 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94447

NTP CVE-2017-6460 Stack Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97052

NTP CVE-2017-6463 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97049

NTP CVE-2016-7426 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94451

NTP CVE-2016-7429 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94453

NTP CVE-2016-7428 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94446

NTP CVE-2017-6462 Local Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97045

NTP CVE-2016-9311 NULL Pointer Dereference Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94444

NTP CVE-2016-7434 Local Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/94448

NTP CVE-2017-6464 Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/97050

LibTIFF 'tif_dirwrite.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99359

LibTIFF CVE-2016-10095 Stack Based Buffer Overflow Vulnerability
2017-07-06
http://www.securityfocus.com/bid/95178

LibTIFF 'tif_jbig.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/99300

LibTIFF 'tif_dir.c' Denial of Service Vulnerability
2017-07-06
http://www.securityfocus.com/bid/98594

Xen 'xen/arch/arm/vgic.c' Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99160

Xen 'xen/arch/arm/gic.c' Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99159

Xen XSA-222 Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99161

Xen 'xen/arch/x86/irq.c' NULL pointer Dereference Remote Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99157

Xen XSA-220 Information Disclosure Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99167

Xen 'shadow/common.c' Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99174

Xen Page Transfer 'xen/arch/x86/mm.c' Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99158

Xen 'blkif' Response Information Disclosure Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99162

Resteasy CVE-2016-9606 Remote Code Execution Vulnerability
2017-07-05
http://www.securityfocus.com/bid/94940

RedHat RESTEasy CVE-2016-6346 Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/92744

SANS News

Investigation of BitTorrent Sync (v.2.0) as a P2P Cloud Service (Part 2 ? Log Files artefacts)

Selecting domains with random names

Threatpost

Threat Actors Target Chinese Language News Sites

Exploit

GoAutoDial 3.3 - Authentication Bypass / Command Injection (Metasploit)

Lepide Auditor Suite - 'createdb()' Web Console Database Injection Remote Code...

5.7.2017

Bugtraq

 

Malware

Ransom.Haknata

Phishing

 

Vulnerebility

Xen 'xen/arch/arm/vgic.c' Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99160

Xen 'xen/arch/arm/gic.c' Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99159

Xen XSA-222 Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99161

Xen 'xen/arch/x86/irq.c' NULL pointer Dereference Remote Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99157

Xen XSA-220 Information Disclosure Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99167

Xen 'shadow/common.c' Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99174

Xen Page Transfer 'xen/arch/x86/mm.c' Privilege Escalation Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99158

Xen 'blkif' Response Information Disclosure Vulnerability
2017-07-05
http://www.securityfocus.com/bid/99162

Resteasy CVE-2016-9606 Remote Code Execution Vulnerability
2017-07-05
http://www.securityfocus.com/bid/94940

RedHat RESTEasy CVE-2016-6346 Denial of Service Vulnerability
2017-07-05
http://www.securityfocus.com/bid/92744

Linux Kernel 'ipv4/udp.c' Remote Code Execution Vulnerability
2017-07-04
http://www.securityfocus.com/bid/97397

ISC BIND CVE-2017-3136 Remote Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/97653

ISC BIND CVE-2017-3135 Remote Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/96150

Linux Kernel 'Ack Challenge' Information Disclosure Vulnerability
2017-07-04
http://www.securityfocus.com/bid/91704

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/93841

OpenVPN CVE-2017-7478 Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98444

OpenVPN Multiple Security Vulnerabilities
2017-07-04
http://www.securityfocus.com/bid/99230

OpenVPN CVE-2017-7479 Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98443

Linux kernel CVE-2017-9075 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98597

Linux kernel CVE-2017-9077 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98583

Linux kernel CVE-2017-9242 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98731

Linux kernel CVE-2017-9076 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98586

Linux Kernel CVE-2017-1000363 Integer Overflow Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98651

Linux Kernel CVE-2017-7374 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/97308

Linux Kernel CVE-2017-8890 Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98562

Linux Kernel CVE-2017-5577 Remote Buffer Overflow Vulnerability
2017-07-04
http://www.securityfocus.com/bid/95765

Linux Kernel CVE-2017-7294 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/97177

Linux kernel CVE-2017-9074 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98577

Libgcrypt CVE-2017-7526 Information Disclosure Vulnerability
2017-07-04
http://www.securityfocus.com/bid/99338

Libgcrypt 'cipher/ecc-eddsa.c' Information Disclosure Vulnerability
2017-07-04
http://www.securityfocus.com/bid/99046

SANS News

Selecting domains with random names

Threatpost

 

Exploit

OpenDreamBox 2.0.0 Plugin WebAdmin - Remote Code Execution

Linux/x86 - Reverse TCP Shellcode (67 bytes)

4.7.2017

Bugtraq

[slackware-security] Slackware 14.0 kernel (SSA:2017-184-01) 2017-07-03
Slackware Security Team (security slackware com)

[SECURITY] [DSA 3901-1] libgcrypt20 security update 2017-07-02
Salvatore Bonaccorso (carnil debian org)

[CVE-2017-9313] Webmin 1.840 Multiple XSS Vulnerabilities 2017-07-02
andys3c gmail com

InsomniaX loader allows loading of arbitrary Kernel Extensions 2017-07-02
Securify B.V. (lists securify nl)

[slackware-security] glibc (SSA:2017-181-01) 2017-06-30
Slackware Security Team (security slackware com)

Malware

Trojan:JS/Jesapi.A!cl 

Phishing

Melissa

4th July 2017

Last Notice, Re: Your Payment
Info

Amazon-Store-Card

4th July 2017

Important-Information about
your
Amazon-Store-Card(5544232),
Customer ID: lemcool2

Amazon-Store-Card

4th July 2017

Important-Information about
your
Amazon-Store-Card(3802887),
Customer ID: lemcool2

Amazon-Store-Card

4th July 2017

Important-Information about
your
Amazon-Store-Card(6679016),
Customer ID: lemcool2

Amazon-Store-Card

3rd July 2017

Important-Information about
your
Amazon-Store-Card(4974043),
Customer ID: lemcool2

Vulnerebility

Linux Kernel 'ipv4/udp.c' Remote Code Execution Vulnerability
2017-07-04
http://www.securityfocus.com/bid/97397

ISC BIND CVE-2017-3136 Remote Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/97653

ISC BIND CVE-2017-3135 Remote Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/96150

Linux Kernel 'Ack Challenge' Information Disclosure Vulnerability
2017-07-04
http://www.securityfocus.com/bid/91704

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/93841

OpenVPN CVE-2017-7478 Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98444

OpenVPN Multiple Security Vulnerabilities
2017-07-04
http://www.securityfocus.com/bid/99230

OpenVPN CVE-2017-7479 Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98443

Linux kernel CVE-2017-9075 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98597

Linux kernel CVE-2017-9077 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98583

Linux kernel CVE-2017-9242 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98731

Linux kernel CVE-2017-9076 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98586

Linux Kernel CVE-2017-1000363 Integer Overflow Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98651

Linux Kernel CVE-2017-7374 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/97308

Linux Kernel CVE-2017-8890 Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98562

Linux Kernel CVE-2017-5577 Remote Buffer Overflow Vulnerability
2017-07-04
http://www.securityfocus.com/bid/95765

Linux Kernel CVE-2017-7294 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/97177

Linux kernel CVE-2017-9074 Local Denial of Service Vulnerability
2017-07-04
http://www.securityfocus.com/bid/98577

Libgcrypt CVE-2017-7526 Information Disclosure Vulnerability
2017-07-04
http://www.securityfocus.com/bid/99338

Libgcrypt 'cipher/ecc-eddsa.c' Information Disclosure Vulnerability
2017-07-04
http://www.securityfocus.com/bid/99046

Drupal Core CVE-2017-6922 Access Bypass Vulnerability
2017-07-03
http://www.securityfocus.com/bid/99219

Drupal Core Overlay Module CVE-2015-7943 Incomplete Fix Open Redirection Vulnerability
2017-07-03
http://www.securityfocus.com/bid/77293

Linux Kernel CVE-2017-7645 Multiple Denial of Service Vulnerabilities
2017-07-03
http://www.securityfocus.com/bid/97950

FreeRADIUS TLS CVE-2017-9148 Authentication Bypass Vulnerability
2017-07-03
http://www.securityfocus.com/bid/98734

ISC BIND CVE-2017-3142 Security Bypass Vulnerability
2017-07-03
http://www.securityfocus.com/bid/99339

ISC BIND CVE-2017-3143 Security Bypass Vulnerability
2017-07-03
http://www.securityfocus.com/bid/99337

Linux Kernel CVE-2017-7895 Multiple Security Bypass Vulnerabilities
2017-07-03
http://www.securityfocus.com/bid/98085

Linux Kernel CVE-2017-7477 Heap Buffer Overflow Vulnerability
2017-07-03
http://www.securityfocus.com/bid/98014

Linux Kernel CVE-2017-6214 Remote Denial of Service Vulnerability
2017-07-03
http://www.securityfocus.com/bid/96421

Linux Kernel CVE-2017-2583 Privilege Escalation Vulnerability
2017-07-03
http://www.securityfocus.com/bid/95673

SANS News

 

Threatpost

Classic Ether Wallet Compromised via Social Engineering

Exploit

OpenDreamBox 2.0.0 Plugin WebAdmin - Remote Code Execution

3.7.2017

Bugtraq

[SECURITY] [DSA 3901-1] libgcrypt20 security update 2017-07-02
Salvatore Bonaccorso (carnil debian org)

[CVE-2017-9313] Webmin 1.840 Multiple XSS Vulnerabilities 2017-07-02
andys3c gmail com

InsomniaX loader allows loading of arbitrary Kernel Extensions 2017-07-02
Securify B.V. (lists securify nl)

[slackware-security] glibc (SSA:2017-181-01) 2017-06-30
Slackware Security Team (security slackware com)

[slackware-security] kernel (SSA:2017-181-02) 2017-06-30
Slackware Security Team (security slackware com)

Malware

 

Phishing

✅ Yahoo! Mail

3rd July 2017

✅De-activation of Your
Yahoo! Email Address.

NatWest.

3rd July 2017

RESTRICTED ACCOUNT ACCESS -
NATWEST PLC.

Amazon-Store-Card

3rd July 2017

Important-Information about
your
Amazon-Store-Card(3811493),
Customer ID: lemcool2

Amazon-Store-Card

3rd July 2017

Important-Information about
your
Amazon-Store-Card(0018019),
Customer ID: lemcool2

spoof

3rd July 2017

On what?

Vulnerebility

Drupal Core CVE-2017-6922 Access Bypass Vulnerability
2017-07-03
http://www.securityfocus.com/bid/99219

Drupal Core Overlay Module CVE-2015-7943 Incomplete Fix Open Redirection Vulnerability
2017-07-03
http://www.securityfocus.com/bid/77293

OpenVPN Multiple Security Vulnerabilities
2017-07-03
http://www.securityfocus.com/bid/99230

OpenVPN CVE-2017-7479 Denial of Service Vulnerability
2017-07-03
http://www.securityfocus.com/bid/98443

Linux Kernel CVE-2017-7645 Multiple Denial of Service Vulnerabilities
2017-07-03
http://www.securityfocus.com/bid/97950

FreeRADIUS TLS CVE-2017-9148 Authentication Bypass Vulnerability
2017-07-03
http://www.securityfocus.com/bid/98734

ISC BIND CVE-2017-3142 Security Bypass Vulnerability
2017-07-03
http://www.securityfocus.com/bid/99339

ISC BIND CVE-2017-3143 Security Bypass Vulnerability
2017-07-03
http://www.securityfocus.com/bid/99337

Linux Kernel CVE-2017-7895 Multiple Security Bypass Vulnerabilities
2017-07-03
http://www.securityfocus.com/bid/98085

Linux Kernel CVE-2017-7477 Heap Buffer Overflow Vulnerability
2017-07-03
http://www.securityfocus.com/bid/98014

Linux Kernel CVE-2017-6214 Remote Denial of Service Vulnerability
2017-07-03
http://www.securityfocus.com/bid/96421

Linux Kernel CVE-2017-2583 Privilege Escalation Vulnerability
2017-07-03
http://www.securityfocus.com/bid/95673

Libgcrypt CVE-2017-7526 Information Disclosure Vulnerability
2017-07-03
http://www.securityfocus.com/bid/99338

GraphicsMagick 'coders/dpx.c' Denial of Service Vulnerability
2017-07-02
http://www.securityfocus.com/bid/99358

GraphicsMagick CVE-2017-10794 Buffer Overflow Vulnerability
2017-07-02
http://www.securityfocus.com/bid/99355

Linux kernel CVE-2017-9074 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98577

Linux kernel CVE-2017-9075 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98597

Linux Kernel CVE-2017-8890 Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98562

Linux Kernel 'drivers/usb/serial/omninet.c' Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98462

Linux Kernel CVE-2017-8924 Local Information Disclosure Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98451

Linux Kernel CVE-2017-8064 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/97975

Linux kernel CVE-2017-9076 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98586

Linux kernel CVE-2017-9077 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98583

Linux Kernel CVE-2017-1000364 Local Memory Corruption Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99130

Linux kernel CVE-2017-9242 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98731

Exim CVE-2017-1000369 Local Privilege Escalation Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99252

GNU glibc CVE-2017-1000366 Local Memory Corruption Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99127

Google Chrome Multiple Security Vulnerabilities
2017-06-30
http://www.securityfocus.com/bid/99096

Irssi CVE-2017-9469 Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99043

Irssi CVE-2017-9468 Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99015

SANS News

PE Section Name Descriptions

Threatpost

Majority of Sites Fail Mozilla’s Comprehensive Security Review

Exploit

eVestigator Forensic PenTester - MITM Remote Code Execution

BestSafe Browser - MITM Remote Code Execution

BOA Web Server 0.94.14rc21 - Arbitrary File Access

2.7.2017

Bugtraq

Microsoft Dynamic CRM 2016 - Cross-Site Scripting vulnerability 2017-06-30
gregory draperi (gregory draperi gmail com)

SEC Consult SA-20170630-0 :: Multiple critical vulnerabilities in OSCI-Transport library 1.2 for German e-Government 2017-06-30
SEC Consult Vulnerability Lab (research sec-consult com)

Malware

 

Phishing

 

Vulnerebility

Linux kernel CVE-2017-9074 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98577

Linux kernel CVE-2017-9075 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98597

Linux Kernel CVE-2017-8890 Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98562

Linux Kernel 'drivers/usb/serial/omninet.c' Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98462

Linux Kernel CVE-2017-7645 Multiple Denial of Service Vulnerabilities
2017-06-30
http://www.securityfocus.com/bid/97950

Linux Kernel CVE-2017-8924 Local Information Disclosure Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98451

Linux Kernel CVE-2017-7895 Multiple Security Bypass Vulnerabilities
2017-06-30
http://www.securityfocus.com/bid/98085

Linux Kernel CVE-2017-8064 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/97975

Linux kernel CVE-2017-9076 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98586

Linux kernel CVE-2017-9077 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98583

Linux Kernel CVE-2017-1000364 Local Memory Corruption Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99130

Linux kernel CVE-2017-9242 Local Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98731

Exim CVE-2017-1000369 Local Privilege Escalation Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99252

GNU glibc CVE-2017-1000366 Local Memory Corruption Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99127

Google Chrome Multiple Security Vulnerabilities
2017-06-30
http://www.securityfocus.com/bid/99096

Irssi CVE-2017-9469 Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99043

Irssi CVE-2017-9468 Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99015

GnuTLS CVE-2017-7507 NULL Pointer Dereference Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99102

Samba CVE-2017-7494 Remote Code Execution Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98636

Samba CVE-2017-2619 Symlink Vulnerability
2017-06-30
http://www.securityfocus.com/bid/97033

Multiple Intel Products CVE-2017-5689 Privilege Escalation Vulnerability
2017-06-30
http://www.securityfocus.com/bid/98269

ISC BIND CVE-2017-3143 Security Bypass Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99337

HP SiteScope Monitors Information Disclosure and Security Bypass Vulnerabilities
2017-06-30
http://www.securityfocus.com/bid/99331

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2017-06-30
http://www.securityfocus.com/bid/93150

Piwigo CVE-2017-10680 Cross-Site Request Forgery Vulnerability
2017-06-30
http://www.securityfocus.com/bid/99349

Schneider Electric U.motion Builder Multiple Security Vulnerabilities
2017-06-30
http://www.securityfocus.com/bid/99344

HP Network Node Manager i (NNMi) Software Multiple Unspecified Security Vulnerabilities
2017-06-30
http://www.securityfocus.com/bid/99342

Biscom Secure File Transfer CVE-2017-5241 Multiple HTML Injection Vulnerabilities
2017-06-30
http://www.securityfocus.com/bid/99341

Cisco IOS and IOS XE Software Multiple Remote Code Execution Vulnerabilities
2017-06-29
http://www.securityfocus.com/bid/99345

Siemens Viewport for Web Office Portal CVE-2017-6869 Remote Security Bypass Vulnerability
2017-06-29
http://www.securityfocus.com/bid/99343
SANS News

Using nmap to scan for MS17-010 (CVE-2017-0143 EternalBlue)

Threatpost

ExPetr Called a Wiper Attack, Not Ransomware

Majority of Sites Fail Mozilla’s Comprehensive Security Review

Siemens Patches Critical Intel AMT Flaw in Industrial Products

Exploit

Google Chrome - Out-of-Bounds Access in RegExp Stubs

Humax HG100R 2.0.6 - Backup File Download

LG MRA58K - 'ASFParser::SetMetaData' Stack Overflow