Databáze Hot News 2019 May - 2019 January  February  March  April  May  June  July  August  September  October  November  December


31.5.2019

Bugtraq

 

Malware

 

Phishing

 

Vulnerebility

Microsoft Windows Remote Desktop Services CVE-2019-0708 Remote Code Execution Vulnerability
2019-05-31
http://www.securityfocus.com/bid/108273

RETIRED: Google Android Broadcom Wi-Fi Driver CVE-2017-0509 Privilege Escalation Vulnerability
2019-05-30
http://www.securityfocus.com/bid/96797

Huawei Smart Phone P9 and Google Android Broadcom Driver Wi-FI Driver Buffer Overflow Vulnerability
2019-05-30
http://www.securityfocus.com/bid/94943

Multiple VMware Products CVE-2019-5515 Out-Of-Bounds Write Local Code Execution Vulnerability
2019-05-30
http://www.securityfocus.com/bid/107634

Fuji Electric Alpha7 PC Loader Out-of-Bounds Read Denial of Service Vulnerability
2019-05-30
http://www.securityfocus.com/bid/108359

Apache Hadoop CVE-2018-8029 Remote Privilege Escalation Vulnerability
2019-05-30
http://www.securityfocus.com/bid/108518

ISC BIND CVE-2019-6469 Remote Denial of Service Vulnerability
2019-05-30
http://www.securityfocus.com/bid/108517

Exploint

Microsoft Windows Remote Desktop - 'BlueKeep' Denial of Service

30.5.2019

Bugtraq

 

Malware

 

Phishing

 

Vulnerebility

Fuji Electric Alpha7 PC Loader Out-of-Bounds Read Denial of Service Vulnerability
2019-05-30
http://www.securityfocus.com/bid/108359

Exploint

Microsoft Windows 8.1/ Server 2012 - 'Win32k.sys' Local Privilege Escalation (MS14-058)

29.5.2019

Bugtraq

 

Malware

 

Phishing

 

Vulnerebility

Oracle VM VirtualBox Mulltiple Local Security Vulnerabilities
2019-05-29
http://www.securityfocus.com/bid/107960

WebKit Information Disclosure and Multiple Memory Corruption Vulnerabilities
2019-05-28
http://www.securityfocus.com/bid/108497

WAGO Series 750-88x and 750-87x ICSA-19-106-02 Remote Security Vulnerability
2019-05-28
http://www.securityfocus.com/bid/108482

Exploint

Oracle Application Testing Suite - WebLogic Server Administration Console War Deployment (Metasploit)

Qualcomm Android - Kernel Use-After-Free via Incorrect set_page_dirty() in KGSL

Spidermonkey - IonMonkey Unexpected ObjectGroup in ObjectGroupDispatch Operation

Spidermonkey - IonMonkey Leaks JS_OPTIMIZED_OUT Magic Value to Script

28.5.2019

Bugtraq

 

Malware

Exp.CVE-2019-0752

Phishing

 

Vulnerebility

WAGO Series 750-88x and 750-87x ICSA-19-106-02 Remote Security Vulnerability
2019-05-28
http://www.securityfocus.com/bid/108482

Zoho ManageEngine Applications Manager '/auditLogAction.do' Module SQL Injection Vulnerability
2019-05-27
http://www.securityfocus.com/bid/108470

Linux Kernel CVE-2019-12379 Denial of Service Vulnerability
2019-05-27
http://www.securityfocus.com/bid/108478

Linux Kernel CVE-2019-12378 Denial of Service Vulnerability
2019-05-27
http://www.securityfocus.com/bid/108475

Linux Kernel CVE-2019-12382 Denial of Service Vulnerability
2019-05-27
http://www.securityfocus.com/bid/108474

Linux Kernel CVE-2019-12381 Denial of Service Vulnerability
2019-05-27
http://www.securityfocus.com/bid/108473

Exploint

Phraseanet < 4.0.7 - Cross-Site Scripting

Petraware pTransformer ADC < 2.1.7.22827 - Login Bypass

EquityPandit 1.0 - Password Disclosure

27.5.2019

Bugtraq

 

Malware

Backdoor.Whisperer

Backdoor.Tavroigu

Phishing

 

Vulnerebility

Zoho ManageEngine Applications Manager '/auditLogAction.do' Module SQL Injection Vulnerability
2019-05-27
http://www.securityfocus.com/bid/108470

Exploint

Typora 0.9.9.24.6 - Directory Traversal

Deltek Maconomy 2.2.5 - Local File Inclusion

Pidgin 2.13.0 - Denial of Service (PoC)

26.5.2019

Bugtraq

 

Malware

 

Phishing

ANZ

25th May 2019

Successful BPAY Payment
Advice.

FEDEX 03675743634137@036757436

25th May 2019

kaminanga, The package
THLBT-222034-LRHA could not be
delivered

Vulnerebility

Adobe Flash Player CVE-2019-7837 Use After Free Arbitrary Code Execution Vulnerability
2019-05-24
http://www.securityfocus.com/bid/108312

Multiple F-Secure Windows Endpoint Protection Products Local Code Execution Vulnerability
2019-05-24
http://www.securityfocus.com/bid/108443

Multiple VMware Products CVE-2019-5519 Local Code Execution Vulnerability
2019-05-24
http://www.securityfocus.com/bid/107535

Exploint

 

24.5.2019

Bugtraq

 

Malware

 

Phishing

 

Vulnerebility

Adobe Flash Player CVE-2019-7837 Use After Free Arbitrary Code Execution Vulnerability
2019-05-24
http://www.securityfocus.com/bid/108312

Multiple F-Secure Windows Endpoint Protection Products Local Code Execution Vulnerability
2019-05-24
http://www.securityfocus.com/bid/108443

Multiple VMware Products CVE-2019-5519 Local Code Execution Vulnerability
2019-05-24
http://www.securityfocus.com/bid/107535

Atlassian Bitbucket Server CVE-2019-3397 Directory Traversal Vulnerability
2019-05-23
http://www.securityfocus.com/bid/108447

Exploint

Microsoft Internet Explorer Windows 10 1809 17763.316 - Scripting Engine Memory Corruption

Cyberoam General Authentication Client 2.1.2.7 - 'Server Address' Denial of Service (PoC)

Cyberoam Transparent Authentication Suite 2.1.2.5 - 'NetBIOS Name' Denial of Service (PoC)

Cyberoam Transparent Authentication Suite 2.1.2.5 - 'Fully Qualified Domain Name' Denial of Service (PoC)

Cyberoam SSLVPN Client 1.3.1.30 - 'HTTP Proxy' Denial of Service (PoC)

Cyberoam SSLVPN Client 1.3.1.30 - 'Connect To Server' Denial of Service (PoC)

Axessh 4.2 - 'Log file name' Local Stack-based Buffer Overflow

Opencart 3.0.3.2 - 'extension/feed/google_base' Denial of Service PoC

Fast AVI MPEG Joiner - 'License Name' Denial of Service (PoC)

Microsoft Windows 7/2003/2008 RDP - Remote Code Execution

Horde Webmail 5.2.22 - Multiple Vulnerabilities

TapinRadio 2.11.6 - 'Uername' Denial of Service (PoC)

TapinRadio 2.11.6 - 'Address' Denial of Service (PoC)

RarmaRadio 2.72.3 - 'Username' Denial of Service (PoC)

RarmaRadio 2.72.3 - 'Server' Denial of Service (PoC)

Carel pCOWeb < B1.2.1 - Credentials Disclosure

Carel pCOWeb < B1.2.1 - Cross-Site Scripting

AUO Solar Data Recorder < 1.3.0 - 'addr' Cross-Site Scripting

Zoho ManageEngine ServiceDesk Plus 9.3 - Cross-Site Scripting

Zoho ManageEngine ServiceDesk Plus < 10.5 - Improper Access Restrictions

BlueStacks 4.80.0.1060 - Denial of Service (PoC)

21.5.2019

Bugtraq

 

Malware

 

Phishing

 

Vulnerebility

 

Exploint

GetSimpleCMS - Unauthenticated Remote Code Execution (Metasploit)

macOS < 10.14.5 / iOS < 12.3 XNU - 'in6_pcbdetach' Stale Pointer Use-After-Free

macOS < 10.14.5 / iOS < 12.3 XNU - Wild-read due to bad cast in stf_ioctl

macOS < 10.14.5 / iOS < 12.3 JavaScriptCore - AIR Optimization Incorrectly Removes Assignment to Register

macOS < 10.14.5 / iOS < 12.3 JavaScriptCore - Loop-Invariant Code Motion (LICM) in DFG JIT Leaves Stack Variable Uninitialized

macOS < 10.14.5 / iOS < 12.3 DFG JIT Compiler - 'HasIndexedProperty' Use-After-Free

Brocade Network Advisor 14.4.1 - Unauthenticated Remote Code Execution

WordPress Plugin WPGraphQL 0.2.3 - Multiple Vulnerabilities

Oracle CTI Web Service - 'EBS_ASSET_HISTORY_OPERATIONS' XML Entity Injection

Deluge 1.3.15 - 'Webseeds' Denial of Service (PoC)

Deluge 1.3.15 - 'URL' Denial of Service (PoC)

TP-LINK TL-WR840N v5 00000005 - Cross-Site Scripting

Moodle Jmol Filter 6.1 - Directory Traversal / Cross-Site Scripting

20.5.2019

Bugtraq

 

Malware

 

Phishing

 

Vulnerebility

 

Exploint

Solaris 7/8/9 (SPARC) - 'dtprintinfo' Local Privilege Escalation (2)

Solaris 7/8/9 (SPARC) - 'dtprintinfo' Local Privilege Escalation (1)

Solaris 10 1/13 (Intel) - 'dtprintinfo' Local Privilege Escalation

BulletProof FTP Server 2019.0.0.50 - 'Storage-Path' Denial of Service (PoC)

BulletProof FTP Server 2019.0.0.50 - 'DNS Address' Denial of Service (PoC)

AbsoluteTelnet 10.16 - 'License name' Denial of Service (PoC)

docPrint Pro 8.0 - Denial of Service (PoC)

PCL Converter 2.7 - Denial of Service (PoC)

Encrypt PDF 2.3 - Denial of Service (PoC)

eLabFTW 1.8.5 - Arbitrary File Upload / Remote Code Execution

Huawei eSpace 1.1.11.103 - 'ContactsCtrl.dll' / 'eSpaceStatusCtrl.dll' ActiveX Heap Overflow

Huawei eSpace 1.1.11.103 - Image File Format Handling Buffer Overflow

Huawei eSpace 1.1.11.103 - DLL Hijacking

Huawei eSpace Meeting 1.1.11.103 - 'cenwpoll.dll' SEH Buffer Overflow (Unicode)

16.5.2019

Bugtraq

 

Malware

W32.Bulehero

Ransom.Robbinhood

Phishing

 

Vulnerebility

Symantec Messaging Gateway CVE-2019-9699 Information Disclosure Vulnerability
2019-05-16
http://www.securityfocus.com/bid/108303

Exploint

VMware Workstation 15.1.0 - DLL Hijacking

SEL AcSELerator Architect 2.2.24 - CPU Exhaustion Denial of Service

Axessh 4.2 - 'Log file name' Denial of Service (PoC)

ZOC Terminal v7.23.4 - 'Shell' Denial of Service (PoC)

ZOC Terminal v7.23.4 - 'Private key file' Denial of Service (PoC)

ZOC Terminal 7.23.4 - 'Script' Denial of Service (PoC)

JetAudio jetCast Server 2.0 - 'Log Directory' Local SEH Alphanumeric Encoded Buffer Overflow

WeChat for Android 7.0.4 - 'vcodec2_hls_filter' Denial of Service

DeepSound 1.0.4 - SQL Injection

15.5.2019

Bugtraq

 

Malware

 

Phishing

 

Vulnerebility

Dnsmasq VU#973527 Multiple Security Vulnerabilities
2019-05-15
http://www.securityfocus.com/bid/101085

RETIRED: Multiple Siemens SCALANCE Products Multiple Security Vulnerabilities
2019-05-15
http://www.securityfocus.com/bid/101977

Mozilla Firefox ESR CVE-2017-7843 Security Bypass Vulnerability
2019-05-15
http://www.securityfocus.com/bid/102112

Mozilla Firefox MFSA2017-27 Multiple Security Vulnerabilities
2019-05-15
http://www.securityfocus.com/bid/102039

RETIRED: libssh2 'src/kex.c' Security Bypass Vulnerability
2019-05-15
http://www.securityfocus.com/bid/82514

Drupal Novalnet Payment Module- Ubercart Module SQL Injection Vulnerability
2019-05-15
http://www.securityfocus.com/bid/75039

RETIRED: Drupal Novalnet Payment Module SQL Injection Vulnerability
2019-05-15
http://www.securityfocus.com/bid/75040

QNAP QTAP Qualcomm components Multiple Unspecified Security Vulnerabilities
2019-05-15
http://www.securityfocus.com/bid/97072

Qemu 'hw/display/cirrus_vga.c' Remote Code Execution Vulnerability
2019-05-15
http://www.securityfocus.com/bid/97955

RETIRED: Citrix XenServer Multiple Security Vulnerabilities
2019-05-15
http://www.securityfocus.com/bid/102129

Google Android Multiple Qualcomm Components Multiple Security Vulnerabilities

Microsoft Office Access Connectivity Engine CVE-2019-0945 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108192

Adobe Acrobat and Reader APSB19-18 Multiple Information Disclosure Vulnerabilities
2019-05-14
http://www.securityfocus.com/bid/108326

Adobe Acrobat and Reader APSB19-18 Multiple Arbitrary Code Execution Vulnerabilities
2019-05-14
http://www.securityfocus.com/bid/108325

SAP Solution Manager CVE-2019-0293 Remote Authorization Bypass Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108324

Adobe Acrobat and Reader CVE-2019-7824 Arbitrary Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108323

Adobe Acrobat and Reader APSB19-18 Multiple Arbitrary Code Execution Vulnerabilities
2019-05-14
http://www.securityfocus.com/bid/108322

Adobe Acrobat and Reader CVE-2019-7784 Arbitrary Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108321

Adobe Acrobat and Reader Use After Free Multiple Arbitrary Code Execution Vulnerabilities
2019-05-14
http://www.securityfocus.com/bid/108320

Adobe Acrobat and Reader CVE-2019-7779 Arbitrary Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108319

Adobe Media Encoder CVE-2019-7844 Out of Bounds Read Information Disclosure Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108318

Adobe Media Encoder CVE-2019-7842 Use After Free Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108317

SAP BusinessObjects Business Intelligence CVE-2019-0287 Information Disclosure Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108316

Adobe Acrobat and Reader CVE-2019-7820 Arbitrary Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108315

SAP E-Commerce CVE-2019-0298 Cross Site Scripting Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108314

SAP Solution Manager CVE-2019-0291 Local Information Disclosure Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108313

Adobe Flash Player CVE-2019-7837 Use After Free Arbitrary Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108312

SAP BusinessObjects Business Intelligence CVE-2019-0289 Information Disclosure Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108311

Microsoft Internet Explorer CVE-2019-0995 Security Bypass Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108310

Microsoft Dynamics On-Premise CVE-2019-1008 Security Bypass Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108309

Microsoft Azure Active Directory Connect CVE-2019-1000 Remote Privilege Escalation Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108308

SAP Treasury and Risk Management CVE-2019-0280 Unauthorized Access Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108307

SAP Identity Management CVE-2019-0301 Remote Privilege Escalation Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108306

Microsoft Internet Explorer and Edge CVE-2019-0940 Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108278

Microsoft Edge CVE-2019-0938 Remote Privilege Escalation Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108276

Microsoft Internet Explorer CVE-2019-0930 Information Disclosure Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108275

Microsoft Windows Remote Desktop Services CVE-2019-0708 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108273

Microsoft Windows JET Database Engine CVE-2019-0902 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108272

Microsoft Windows JET Database Engine CVE-2019-0901 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108271

Microsoft Windows JET Database Engine CVE-2019-0900 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108270

Microsoft Windows JET Database Engine CVE-2019-0899 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108269

Microsoft Windows JET Database Engine CVE-2019-0898 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108268

Microsoft Windows JET Database Engine CVE-2019-0897 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108267

Microsoft Windows JET Database Engine CVE-2019-0896 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108266

Microsoft Windows JET Database Engine CVE-2019-0895 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108265

Microsoft Windows JET Database Engine CVE-2019-0894 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108264

Microsoft Windows JET Database Engine CVE-2019-0893 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108263

Microsoft Windows JET Database Engine CVE-2019-0891 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108262

Microsoft Windows JET Database Engine CVE-2019-0890 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108261

Microsoft Windows JET Database Engine CVE-2019-0889 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108260

Microsoft Internet Explorer CVE-2019-0929 Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108259

Microsoft Edge Chakra Scripting Engine CVE-2019-0937 Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108258

Microsoft Edge Chakra Scripting Engine CVE-2019-0933 Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108257

Microsoft Windows Defender Application Control CVE-2019-0733 Local Security Bypass Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108256

Microsoft Edge Chakra Scripting Engine CVE-2019-0927 Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108254

Microsoft Edge CVE-2019-0926 Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108253

Microsoft Windows CVE-2019-0734 Local Privilege Escalation Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108252

Microsoft Edge Chakra Scripting Engine CVE-2019-0925 Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108251

Microsoft Edge Chakra Scripting Engine CVE-2019-0924 Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108250

Microsoft SQL Server CVE-2019-0819 Information Disclosure Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108249

Microsoft Edge Chakra Scripting Engine CVE-2019-0923 Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108248

Microsoft Edge Chakra Scripting Engine CVE-2019-0922 Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108246

Microsoft .NET CVE-2019-0820 Denial of Service Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108245

Microsoft Internet Explorer CVE-2019-0921 Spoofing Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108244

Microsoft Windows Error Reporting CVE-2019-0863 Local Privilege Escalation Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108243

Microsoft Internet Explorer Scripting Engine CVE-2019-0918 Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108242

Microsoft .NET CVE-2019-0864 Denial of Service Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108241

Microsoft Azure DevOps Server and Team Foundation Server Cross Site Scripting Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108239

Microsoft Edge Chakra Scripting Engine CVE-2019-0917 Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108238

Microsoft Edge Chakra Scripting Engine CVE-2019-0916 Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108237

Microsoft Edge Chakra Scripting Engine CVE-2019-0915 Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108236

Microsoft Edge Chakra Scripting Engine CVE-2019-0914 Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108235

Microsoft Windows Kernel CVE-2019-0881 Remote Privilege Escalation Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108234

Microsoft Edge Chakra Scripting Engine CVE-2019-0913 Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108233

Microsoft ASP.NET Core CVE-2019-0980 Denial of Service Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108232

Microsoft Windows GDI Component CVE-2019-0882 Information Disclosure Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108231

Microsoft Windows OLE CVE-2019-0885 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108230

Microsoft Edge Chakra Scripting Engine CVE-2019-0912 Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108229

Microsoft Windows Hyper-V CVE-2019-0886 Local Information Disclosure Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108228

Microsoft Internet Explorer and Edge Scripting Engine Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108227

Microsoft Windows GDI Component CVE-2019-0758 Information Disclosure Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108226

Microsoft Windows Diagnostics Hub CVE-2019-0727 Local Privilege Escalation Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108225

Microsoft Windows DHCP Server CVE-2019-0725 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108224

Microsoft Internet Explorer and Edge Scripting Engine Remote Memory Corruption Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108223

Microsoft Windows Win32k CVE-2019-0892 Local Privilege Escalation Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108222

Microsoft Windows NDIS CVE-2019-0707 Local Privilege Escalation Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108221

Microsoft Skype for Android CVE-2019-0932 Information Disclosure Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108220

Microsoft Windows Storage Service CVE-2019-0931 Local Privilege Escalation Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108219

Microsoft SharePoint Server CVE-2019-0963 Cross Site Scripting Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108218

Microsoft Windows CVE-2019-0936 Local Privilege Escalation Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108217

Microsoft SharePoint Server CVE-2019-0958 Remote Privilege Escalation Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108216

Microsoft SharePoint Server CVE-2019-0957 Remote Privilege Escalation Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108215

Microsoft Windows Unified Write Filter CVE-2019-0942 Local Privilege Escalation Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108214

Microsoft SharePoint Server CVE-2019-0956 Information Disclosure Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108213

Microsoft Windows GDI+ Component CVE-2019-0903 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108212

Microsoft Word CVE-2019-0953 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108211

Microsoft NuGet Package Manager CVE-2019-0976 Tampering Security Bypass Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108210

Microsoft SharePoint Server CVE-2019-0952 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108209

Microsoft ASP.NET Core CVE-2019-0982 Denial of Service Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108208

Microsoft ASP.NET Core CVE-2019-0981 Denial of Service Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108207

Microsoft Azure DevOps Server and Team Foundation Server Cross Site Scripting Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108206

Microsoft Azure DevOps Server and Team Foundation Server Information Disclosure Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108205

Microsoft SharePoint Server CVE-2019-0951 Spoofing Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108203

Microsoft SharePoint Server CVE-2019-0950 Spoofing Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108201

Microsoft Windows GDI Component CVE-2019-0961 Information Disclosure Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108199

Microsoft SharePoint Server CVE-2019-0949 Spoofing Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108198

Microsoft Office Access Connectivity Engine CVE-2019-0947 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108194

Microsoft Office Access Connectivity Engine CVE-2019-0946 Remote Code Execution Vulnerability
2019-05-14
http://www.securityfocus.com/bid/108193

Exploint

Legrand BTicino Driver Manager F454 1.0.51 - Cross-Site Request Forgery / Cross-Site Scripting

CommSy 8.6.5 - SQL injection

Tomabo MP4 Converter 3.25.22 - Denial of Service (PoC)

PasteShr 1.6 - Multiple SQL Injection

Schneider Electric U.Motion Builder 1.3.4 - 'track_import_export.php object_id' Unauthenticated Command Injection

TwistedBrush Pro Studio 24.06 - '.srp' Denial of Service (PoC)

TwistedBrush Pro Studio 24.06 - 'Script Recorder' Denial of Service (PoC)

TwistedBrush Pro Studio 24.06 - 'Resize Image' Denial of Service (PoC)

Selfie Studio 2.17 - 'Resize Image' Denial of Service (PoC)

D-Link DWL-2600AP - Multiple OS Command Injection

Sales ERP 8.1 - Multiple SQL Injection

PHP-Fusion 9.03.00 - 'Edit Profile' Remote Code Execution (Metasploit)

14.5.2019

Bugtraq

 

Malware

Ransom.Ryuk

Phishing

 

Vulnerebility

 

Exploint

TwistedBrush Pro Studio 24.06 - '.srp' Denial of Service (PoC)

TwistedBrush Pro Studio 24.06 - 'Script Recorder' Denial of Service (PoC)

TwistedBrush Pro Studio 24.06 - 'Resize Image' Denial of Service (PoC)

Selfie Studio 2.17 - 'Resize Image' Denial of Service (PoC)

D-Link DWL-2600AP - Multiple OS Command Injection

Sales ERP 8.1 - Multiple SQL Injection

PHP-Fusion 9.03.00 - 'Edit Profile' Remote Code Execution (Metasploit)

13.5.2019

Bugtraq

 

Malware

 

Phishing

 

Vulnerebility

 

Exploint

OpenProject 5.0.0 - 8.3.1 - SQL Injection

Google Chrome V8 - Turbofan JSCallReducer::ReduceArrayIndexOfIncludes Out-of-Bounds Read/Write

XOOPS 2.5.9 - SQL Injection

SOCA Access Control System 180612 - Cross-Site Request Forgery (Add Admin)

SOCA Access Control System 180612 - SQL Injection

SOCA Access Control System 180612 - Information Disclosure

DNSS 2.1.8 - Denial of Service (PoC)

SpotMSN 2.4.6 - Denial of Service (PoC)

10.5.2019

Bugtraq

 

Malware

 

Phishing

Service.Team

10th May 2019

[Important] : Your account has
been temporarily restricted

Vulnerebility

Multiple VMware Products CVE-2019-5518 Out of Bounds Read Write Local Code Execution Vulnerability
2019-05-10
http://www.securityfocus.com/bid/107541

Exploint

PHPRunner 10.1 - Denial of Service (PoC)

ASPRunner.NET 10.1 - Denial of Service (PoC)

SpotPaltalk 1.1.5 - Denial of Service (PoC)

SpotIM 2.2 - Denial of Service (PoC)

TheHive Project Cortex < 1.15.2 - Server-Side Request Forgery

jetCast Server 2.0 - Denial of Service (PoC)

9.5.2019

Bugtraq

 

Malware

 

Phishing

 

Vulnerebility

 

Exploint

Convert Video jetAudio 8.1.7 - Denial of Service (PoC)

Lyric Maker 2.0.1.0 - Denial of Service (PoC)

Lyric Video Creator 2.1 - '.mp3' Denial of Service (PoC)

Zoho ManageEngine ADSelfService Plus 5.7 < 5702 build - Cross-Site Scripting

Oracle Weblogic Server - 'AsyncResponseService' Deserialization Remote Code Execution (Metasploit)

PostgreSQL 9.3 - COPY FROM PROGRAM Command Execution (Metasploit)

Google Chrome 72.0.3626.119 - 'FileReader' Use-After-Free (Metasploit)

Lotus Domino 8.5.3 - 'EXAMINE' Stack Buffer Overflow DEP/ASLR Bypass (NSA's EMPHASISMINE)

8.5.2019

Bugtraq

 

Malware

Ransom.MegaCortex

Phishing

 

Vulnerebility

Multiple F5 BIG-IP Products CVE-2019-6619 Denial of Service Vulnerability
2019-05-08
http://www.securityfocus.com/bid/108190

Symantec AV Engine CVE-2019-9698 Arbitrary File Deletion Vulnerability
2019-05-08
http://www.securityfocus.com/bid/108128

Cisco Firepower Threat Defense Software CVE-2019-1703 Denial of Service Vulnerability
2019-05-07
http://www.securityfocus.com/bid/108170

Jenkins Multiple Security Vulnerabilities
2019-05-07
http://www.securityfocus.com/bid/108159

Linux Kernel CVE-2018-20836 Race Condition Vulnerability
2019-05-07
http://www.securityfocus.com/bid/108196

Cisco Elastic Services Controller CVE-2019-1867 Authentication Bypass Vulnerability
2019-05-07
http://www.securityfocus.com/bid/108184

Exploint

7.5.2019

Bugtraq

 

Malware

 

Phishing

 

Vulnerebility

Jenkins Multiple Security Vulnerabilities
2019-05-07
http://www.securityfocus.com/bid/108159

Apache Karaf CVE-2019-0226 Arbitrary File Overwrite Vulnerability
2019-05-06
http://www.securityfocus.com/bid/108174

Exploint

Easy Chat Server 3.1 - 'message' Denial of Service (PoC)

Admin Express 1.2.5.485 - 'Folder Path' Local SEH Alphanumeric Encoded Buffer Overflow

Prinect Archive System 2015 Release 2.6 - Cross-Site Scripting

6.5.2019

Bugtraq

 

Malware

 

Phishing

 

Vulnerebility

 

Exploint

iOS 12.1.3 - 'cfprefsd' Memory Corruption

NSClient++ 0.5.2.35 - Privilege Escalation

microASP (Portal+) CMS - 'pagina.phtml?explode_tree' SQL Injection

PHPads 2.0 - 'click.php3?bannerID' SQL Injection

Xitami Web Server 2.5 - Remote Buffer Overflow (SEH + Egghunter)

ReadyAPI 2.5.0 / 2.6.0 - Remote Code Execution

LG Supersign EZ CMS - Remote Code Execution (Metasploit)

5.5.2019

Bugtraq

 

Malware

 

Phishing

 

Vulnerebility

 

Exploint

Wordpress Plugin Social Warfare < 3.5.3 - Remote Code Execution

SolarWinds DameWare Mini Remote Control 10.0 - Denial of Service

Blue Angel Software Suite - Command Execution

Windows PowerShell ISE - Remote Code Execution

Zotonic < 0.47.0 mod_admin - Cross-Site Scripting

Instagram Auto Follow - Authentication Bypass

Crestron AM/Barco wePresent WiPG/Extron ShareLink/Teq AV IT/SHARP PN-L703WA/Optoma WPS-Pro/Blackbox HD WPS/InFocus LiteShow - Remote Command Injection

2.5.2019

Bugtraq

 

Malware

 

Phishing

 

Vulnerebility

Oracle WebLogic Server Deserialization Remote Command Execution Vulnerability
2019-05-02
http://www.securityfocus.com/bid/108074

Microsoft Visual Studio 'asm' Remote Memory Corruption Vulnerability
2019-05-02
http://www.securityfocus.com/bid/108122

Eclipse OpenJ9 CVE-2019-10245 Denial of Service Vulnerability
2019-05-01
http://www.securityfocus.com/bid/108094

Exploint

Ruby On Rails - DoubleTap Development Mode secret_key_base Remote Code Execution (Metasploit)

1.5.2019

Bugtraq

 

Malware

 

Phishing

 

Vulnerebility

Eclipse OpenJ9 CVE-2019-10245 Denial of Service Vulnerability
2019-05-01
http://www.securityfocus.com/bid/108094

Linux Kernel CVE-2019-11599 Local Race Condition Vulnerability
2019-05-01
http://www.securityfocus.com/bid/108113

Microsoft Visual Studio 'asm' Remote Memory Corruption Vulnerability
2019-04-30
http://www.securityfocus.com/bid/108122

Philips Tasy EMR CVE-2019-6562 Cross Site Scripting Vulnerability
2019-04-30
http://www.securityfocus.com/bid/108120

Rockwell Automation ControlLogix ICSA-19-120-01 Multiple Buffer Overflow Vulnerabilities
2019-04-30
http://www.securityfocus.com/bid/108118

ImageMagick CVE-2019-10131 Denial of Service Vulnerability
2019-04-30
http://www.securityfocus.com/bid/108117

Citrix SD-WAN CVE-2019-11550 Information Disclosure Vulnerability
2019-04-30
http://www.securityfocus.com/bid/108114

Exploint

CentOS Web Panel 0.9.8.793 (Free) / v0.9.8.753 (Pro) / 0.9.8.807 (Pro) - Domain Field (Add DNS Zone) Cross-Site Scripting

Pimcore < 5.71 - Unserialize RCE (Metasploit)

AIS logistics ESEL-Server - Unauth SQL Injection RCE (Metasploit)

Linux - Missing Locking Between ELF coredump code and userfaultfd VMA Modification

Oracle Weblogic 10.3.6.0.0 / 12.1.3.0.0 - Remote Code Execution

DeviceViewer 3.12.0.1 - 'user' SEH Overflow

SpotAuditor 5.2.6 - 'Name' Denial of Service (PoC)

Agent Tesla Botnet - Information Disclosure

Hyvikk Fleet Manager - Shell Upload

Moodle 3.6.3 - 'Install Plugin' Remote Command Execution (Metasploit)

Joomla! Component JiFile 2.3.1 - Arbitrary File Download

Domoticz 4.10577 - Unauthenticated Remote Command Execution

Spring Cloud Config 2.1.x - Path Traversal (Metasploit)

HumHub 1.3.12 - Cross-Site Scripting

Intelbras IWR 3000N 1.5.0 - Cross-Site Request Forgery