Databáze Hot News - Rok - Úvod 2018 2017 2016 2015 2014 2013 - 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 List - 2018 2017 2016 2015 2014 2013
Poslední aktualizace v 08.10.2016 14:19:38
21.7.2015
Bugtraq
[security bulletin] HPSBMU03377 rev.1 - HP Release Control running RC4, Remote Disclosure of Information 2015-07-20
security-alert hp com
[security bulletin] HPSBUX03379 SSRT101976 rev.1 - HP-UX Running BIND, Remote Denial of Service (DoS) 2015-07-20
security-alert hp com
[SECURITY] [DSA 3311-1] mariadb-10.0 security update 2015-07-20
Salvatore Bonaccorso (carnil debian org)
[SECURITY] [DSA 3310-1] freexl security update 2015-07-19
Moritz Muehlenhoff (jmm debian org)
[SECURITY] [DSA 3309-1] tidy security update 2015-07-18
Alessandro Ghedini (ghedo debian org)
[SECURITY] [DSA 3308-1] mysql-5.5 security update 2015-07-18
Salvatore Bonaccorso (carnil debian org)
Malware
TrojanSpy:Win32/BrobanMos.A
TrojanDownloader:Win32/Banload.BBL
TrojanDownloader:Win32/Banload.BBN
TrojanDownloader:Win32/Banload.BBM
Adware:MSIL/Bawswerps
TrojanSpy:MSIL/Keylogger.BP
TrojanDownloader:Win32/Inexsmar.A
TrojanSpy:Win32/Aneatop.A
TrojanDropper:MSIL/Golbla.C
TrojanDownloader:Win32/Nefhop.A
Phishing
Vulnerebility
redcarpet CVE-2015-5147 Stack Buffer Overflow Vulnerability
2015-07-30
http://www.securityfocus.com/bid/75508
Novius OS 'tab' parameter Local File Include Vulnerability
2015-07-29
http://www.securityfocus.com/bid/75533
Oracle Java SE CVE-2015-0403 Local Java SE Vulnerability
2015-07-21
http://www.securityfocus.com/bid/72148
Oracle Java SE CVE-2014-6591 Remote Java SE Vulnerability
2015-07-21
http://www.securityfocus.com/bid/72175
Oracle Java SE CVE-2015-0421 Local Java SE Vulnerability
2015-07-21
http://www.securityfocus.com/bid/72150
Oracle Java SE CVE-2015-0408 Remote Java SE Vulnerability
2015-07-21
http://www.securityfocus.com/bid/72140
Oracle Java SE CVE-2015-0412 Remote Java SE Vulnerability
2015-07-21
http://www.securityfocus.com/bid/72136
Oracle Java SE CVE-2014-6585 Remote Java SE Vulnerability
2015-07-21
http://www.securityfocus.com/bid/72173
Oracle MySQL Server CVE-2015-0499 Remote Security Vulnerability
2015-07-21
http://www.securityfocus.com/bid/74115
Oracle MySQL Server CVE-2015-0505 Remote Security Vulnerability
2015-07-21
http://www.securityfocus.com/bid/74112
Oracle MySQL Server CVE-2015-0441 Remote Security Vulnerability
2015-07-21
http://www.securityfocus.com/bid/74103
Oracle MySQL Server CVE-2015-0433 Remote Security Vulnerability
2015-07-21
http://www.securityfocus.com/bid/74089
Oracle MySQL Server CVE-2015-2571 Remote Security Vulnerability
2015-07-21
http://www.securityfocus.com/bid/74095
Oracle MySQL Server CVE-2015-2573 Remote Security Vulnerability
2015-07-21
http://www.securityfocus.com/bid/74078
Oracle MySQL Server CVE-2015-2568 Remote Security Vulnerability
2015-07-21
http://www.securityfocus.com/bid/74073
Oracle MySQL Server CVE-2015-0501 Remote Security Vulnerability
2015-07-21
http://www.securityfocus.com/bid/74070
Oracle MySQL Server CVE-2015-2648 Remote Security Vulnerability
2015-07-21
http://www.securityfocus.com/bid/75822
SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2015-07-21
http://www.securityfocus.com/bid/73684
Oracle Java SE CVE-2015-0413 Local Java SE Vulnerability
2015-07-21
http://www.securityfocus.com/bid/72176
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-07-21
http://www.securityfocus.com/bid/72169
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-07-21
http://www.securityfocus.com/bid/72165
ISC BIND 'isselfsigned()' Function Remote Denial of Service Vulnerability
2015-07-21
http://www.securityfocus.com/bid/75588
ISC BIND CVE-2015-1349 Remote Denial of Service Vulnerability
2015-07-21
http://www.securityfocus.com/bid/72673
Oracle Java SE CVE-2015-0407 Remote Java SE Vulnerability
2015-07-21
http://www.securityfocus.com/bid/72162
Oracle Java SE CVE-2014-6587 Local Java SE Vulnerability
2015-07-21
http://www.securityfocus.com/bid/72168
Oracle Java SE CVE-2015-0400 Remote Java SE Vulnerability
2015-07-21
http://www.securityfocus.com/bid/72159
Oracle Java SE CVE-2015-0383 Local Java SE, Java SE Embedded, JRockit Vulnerability
2015-07-21
http://www.securityfocus.com/bid/72155
Oracle Java SE CVE-2015-0406 Remote Java SE Vulnerability
2015-07-21
http://www.securityfocus.com/bid/72154
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-07-21
http://www.securityfocus.com/bid/70574
Oracle Java SE CVE-2015-0395 Remote Java SE Vulnerability
2015-07-21
http://www.securityfocus.com/bid/72142
SANS News
Special Microsoft Bulletin Patching Remote Code Execution Flaw in OpenType Font Drivers
Exploit
Microsoft Word Local Machine Zone Remote Code Execution Vulnerability
TcpDump rpki_rtr_pdu_print Out-of-Bounds Denial of Service
20.7.2015
Bugtraq
AirDroid ID - Client Side JSONP Callback Vulnerability 2015-07-17
Vulnerability Lab (research vulnerability-lab com)
FoxyCart Bug Bounty #1 - Filter Bypass & Persistent Vulnerability 2015-07-17
Vulnerability Lab (research vulnerability-lab com)
UDID+ v2.5 iOS - Mail Command Inject Vulnerability 2015-07-17
Vulnerability Lab (research vulnerability-lab com)
Oracle E-Business Suite Servlet URL Redirection Vulnerability 2015-07-17
owais md khan gmail com
Novell GroupWise 2014 WebAccess vulnerable to XSS attacks 2015-07-17
adrian vollmer syss de
Malware
Phishing
METROBANKDIRECT | 19th July 2015 |
Navy Federal | 19th July 2015 |
Vulnerebility
Microsoft Internet Explorer CVE-2015-2412 Information Disclosure Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75687
Adobe Reader and Acrobat JavaScript API Execution Multiple Security Bypass Vulnerabilities
2015-07-20
http://www.securityfocus.com/bid/75737
Adobe Acrobat and Reader Use-After-Free Multiple Remote Code Execution Vulnerabilities
2015-07-20
http://www.securityfocus.com/bid/75739
Adobe Acrobat and Reader APSB15-15 Multiple Memory Corruption Vulnerabilities
2015-07-20
http://www.securityfocus.com/bid/75740
SSL/TLS LogJam Man in the Middle Security Bypass Vulnerability
2015-07-20
http://www.securityfocus.com/bid/74733
Oracle Java SE CVE-2015-4731 Remote Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75812
Oracle Java SE CVE-2015-4733 Remote Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75832
Oracle Java SE CVE-2015-4749 Remote Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75890
Oracle Java SE CVE-2015-4748 Remote Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75854
Oracle Java SE CVE-2015-4760 Remote Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75784
Oracle Java SE CVE-2015-4732 Remote Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75823
SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2015-07-20
http://www.securityfocus.com/bid/73684
Oracle Java SE CVE-2015-2664 Local Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75857
Oracle Java SE CVE-2015-2627 Remote Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75893
Oracle Java SE CVE-2015-2638 Remote Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75833
Oracle Java SE CVE-2015-2632 Remote Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75861
Oracle Java SE CVE-2015-2601 Remote Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75867
Oracle Java SE CVE-2015-2625 Remote Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75895
Oracle Java SE CVE-2015-2637 Remote Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75883
Oracle Java SE CVE-2015-2621 Remote Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75874
Oracle Java SE CVE-2015-2628 Remote Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75796
Adobe Reader and Acrobat CVE-2015-5093 Remote Buffer Overflow Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75748
Oracle Java SE CVE-2015-2590 Remote Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75818
Adobe Acrobat and Reader CVE-2015-5091 Security Bypass Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75738
Adobe Acrobat and Reader Multiple Security Bypass Vulnerabilities
2015-07-20
http://www.securityfocus.com/bid/75743
Oracle Java SE CVE-2015-2596 Remote Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75887
Oracle Java SE CVE-2015-2659 Remote Security Vulnerability
2015-07-20
http://www.securityfocus.com/bid/75877
Adobe Acrobat and Reader Multiple Remote Integer Overflow Vulnerabilities
2015-07-20
http://www.securityfocus.com/bid/75741
SANS News
The Value a "Fresh Set Of Eyes" (FSOE)
Exploit
19.7.2015
Bugtraq
Oracle E-Business Suite Servlet URL Redirection Vulnerability 2015-07-17
owais md khan gmail com
Novell GroupWise 2014 WebAccess vulnerable to XSS attacks 2015-07-17
adrian vollmer syss de
SEC Consult SA-20150716-0 :: Permanent Cross-Site Scripting in Oracle Application Express 2015-07-16
SEC Consult Vulnerability Lab (research sec-consult com)
Elasticsearch CVE-2015-5531 2015-07-16
Kevin Kluge (kevin elastic co)
Elasticsearch CVE-2015-5377 2015-07-16
Kevin Kluge (kevin elastic co)
Malware
Phishing
Dropbox | 18th July 2015 |
LateNightFriend | 18th July 2015 |
USAA | 17th July 2015 |
Vulnerebility
redcarpet CVE-2015-5147 Stack Buffer Overflow Vulnerability
2015-07-30
http://www.securityfocus.com/bid/75508
Novius OS 'tab' parameter Local File Include Vulnerability
2015-07-29
http://www.securityfocus.com/bid/75533
Microsoft Internet Explorer CVE-2015-2412 Information Disclosure Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75687
Adobe Reader and Acrobat JavaScript API Execution Multiple Security Bypass Vulnerabilities
2015-07-19
http://www.securityfocus.com/bid/75737
Adobe Acrobat and Reader Use-After-Free Multiple Remote Code Execution Vulnerabilities
2015-07-19
http://www.securityfocus.com/bid/75739
Adobe Acrobat and Reader APSB15-15 Multiple Memory Corruption Vulnerabilities
2015-07-19
http://www.securityfocus.com/bid/75740
SSL/TLS LogJam Man in the Middle Security Bypass Vulnerability
2015-07-19
http://www.securityfocus.com/bid/74733
Oracle Java SE CVE-2015-4731 Remote Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75812
Oracle Java SE CVE-2015-4733 Remote Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75832
Oracle Java SE CVE-2015-4749 Remote Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75890
Oracle Java SE CVE-2015-4748 Remote Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75854
Oracle Java SE CVE-2015-4760 Remote Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75784
Oracle Java SE CVE-2015-4732 Remote Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75823
SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2015-07-19
http://www.securityfocus.com/bid/73684
Oracle Java SE CVE-2015-2664 Local Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75857
Oracle Java SE CVE-2015-2627 Remote Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75893
Oracle Java SE CVE-2015-2638 Remote Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75833
Oracle Java SE CVE-2015-2632 Remote Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75861
Oracle Java SE CVE-2015-2601 Remote Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75867
Oracle Java SE CVE-2015-2625 Remote Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75895
Oracle Java SE CVE-2015-2637 Remote Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75883
Oracle Java SE CVE-2015-2621 Remote Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75874
Oracle Java SE CVE-2015-2628 Remote Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75796
Adobe Reader and Acrobat CVE-2015-5093 Remote Buffer Overflow Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75748
Oracle Java SE CVE-2015-2590 Remote Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75818
Adobe Acrobat and Reader CVE-2015-5091 Security Bypass Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75738
Adobe Acrobat and Reader Multiple Security Bypass Vulnerabilities
2015-07-19
http://www.securityfocus.com/bid/75743
Oracle Java SE CVE-2015-2596 Remote Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75887
Oracle Java SE CVE-2015-2659 Remote Security Vulnerability
2015-07-19
http://www.securityfocus.com/bid/75877
Adobe Acrobat and Reader Multiple Remote Integer Overflow Vulnerabilities
2015-07-19
http://www.securityfocus.com/bid/75741
SANS News
Exploit
18.7.2015
Bugtraq
Oracle E-Business Suite Servlet URL Redirection Vulnerability 2015-07-17
owais md khan gmail com
Novell GroupWise 2014 WebAccess vulnerable to XSS attacks 2015-07-17
adrian vollmer syss de
SEC Consult SA-20150716-0 :: Permanent Cross-Site Scripting in Oracle Application Express 2015-07-16
SEC Consult Vulnerability Lab (research sec-consult com)
Elasticsearch CVE-2015-5531 2015-07-16
Kevin Kluge (kevin elastic co)
Elasticsearch CVE-2015-5377 2015-07-16
Kevin Kluge (kevin elastic co)
ESA-2015-123: EMC Documentum WebTop Open Redirect Vulnerability 2015-07-16
Security Alert (Security_Alert emc com)
ESA-2015-122: EMC Documentum CenterStage Cross-site Scripting Vulnerability 2015-07-16
Security Alert (Security_Alert emc com)
[CVE-2015-3253] Apache Groovy Zero-Day Vulnerability Disclosure 2015-07-16
Cédric Champeau (cedric champeau gmail com)
Malware
Phishing
USAA | 17th July 2015 |
Royal Bank Support | 17th July 2015 |
Vulnerebility
Microsoft Internet Explorer CVE-2015-2412 Information Disclosure Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75687
Adobe Reader and Acrobat JavaScript API Execution Multiple Security Bypass Vulnerabilities
2015-07-18
http://www.securityfocus.com/bid/75737
Adobe Acrobat and Reader Use-After-Free Multiple Remote Code Execution Vulnerabilities
2015-07-18
http://www.securityfocus.com/bid/75739
Adobe Acrobat and Reader APSB15-15 Multiple Memory Corruption Vulnerabilities
2015-07-18
http://www.securityfocus.com/bid/75740
SSL/TLS LogJam Man in the Middle Security Bypass Vulnerability
2015-07-18
http://www.securityfocus.com/bid/74733
Oracle Java SE CVE-2015-4731 Remote Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75812
Oracle Java SE CVE-2015-4733 Remote Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75832
Oracle Java SE CVE-2015-4749 Remote Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75890
Oracle Java SE CVE-2015-4748 Remote Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75854
Oracle Java SE CVE-2015-4760 Remote Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75784
Oracle Java SE CVE-2015-4732 Remote Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75823
SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2015-07-18
http://www.securityfocus.com/bid/73684
Oracle Java SE CVE-2015-2664 Local Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75857
Oracle Java SE CVE-2015-2627 Remote Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75893
Oracle Java SE CVE-2015-2638 Remote Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75833
Oracle Java SE CVE-2015-2632 Remote Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75861
Oracle Java SE CVE-2015-2601 Remote Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75867
Oracle Java SE CVE-2015-2625 Remote Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75895
Oracle Java SE CVE-2015-2637 Remote Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75883
Oracle Java SE CVE-2015-2621 Remote Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75874
Oracle Java SE CVE-2015-2628 Remote Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75796
Adobe Reader and Acrobat CVE-2015-5093 Remote Buffer Overflow Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75748
Oracle Java SE CVE-2015-2590 Remote Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75818
Adobe Acrobat and Reader CVE-2015-5091 Security Bypass Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75738
Adobe Acrobat and Reader Multiple Security Bypass Vulnerabilities
2015-07-18
http://www.securityfocus.com/bid/75743
Oracle Java SE CVE-2015-2596 Remote Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75887
Oracle Java SE CVE-2015-2659 Remote Security Vulnerability
2015-07-18
http://www.securityfocus.com/bid/75877
Adobe Acrobat and Reader Multiple Remote Integer Overflow Vulnerabilities
2015-07-18
http://www.securityfocus.com/bid/75741
SANS News
Exploit
D-Link Cookie Command Execution
WordPress BuddyPress Activity Plus Plugin 1.5 - CSRF Vulnerability
17.7.2015
Bugtraq
SEC Consult SA-20150716-0 :: Permanent Cross-Site Scripting in Oracle Application Express 2015-07-16
SEC Consult Vulnerability Lab (research sec-consult com)
Elasticsearch CVE-2015-5531 2015-07-16
Kevin Kluge (kevin elastic co)
Elasticsearch CVE-2015-5377 2015-07-16
Kevin Kluge (kevin elastic co)
ESA-2015-123: EMC Documentum WebTop Open Redirect Vulnerability 2015-07-16
Security Alert (Security_Alert emc com)
ESA-2015-122: EMC Documentum CenterStage Cross-site Scripting Vulnerability 2015-07-16
Security Alert (Security_Alert emc com)
[CVE-2015-3253] Apache Groovy Zero-Day Vulnerability Disclosure 2015-07-16
Cédric Champeau (cedric champeau gmail com)
Malware
TrojanDownloader:Win32/Upatre.BR
TrojanDropper:Win32/Plimrost.A
TrojanProxy:Win32/Poindampa.A
TrojanDropper:AutoIt/Jenxcus
Backdoor:Win32/Zegost.DV
TrojanDownloader:Win32/Zegost.C
Worm:Win32/Imafly.B
TrojanDownloader:MSIL/Prardrukat.A
Backdoor:Win32/Venik.I
Backdoor:Win32/Venik.J
Phishing
Metrobankdirect | 16th July 2015 |
Vulnerebility
Oracle Java SE CVE-2015-4731 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/75812
Adobe Flash Player CVE-2015-5122 Use After Free Remote Memory Corruption Vulnerability
2015-07-17
http://www.securityfocus.com/bid/75712
Adobe Flash Player ActionScript 3 BitmapData Use After Free Remote Memory Corruption Vulnerability
2015-07-17
http://www.securityfocus.com/bid/75710
Oracle Java SE CVE-2015-4749 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/75890
Oracle Java SE CVE-2015-2625 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/75895
Oracle Java SE CVE-2015-2621 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/75874
Oracle Java SE CVE-2015-2632 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/75861
Oracle Java SE CVE-2015-2601 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/75867
Oracle Java SE CVE-2015-4748 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/75854
Oracle Java SE CVE-2015-4732 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/75823
Oracle Java SE CVE-2015-2628 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/75796
SSL/TLS LogJam Man in the Middle Security Bypass Vulnerability
2015-07-17
http://www.securityfocus.com/bid/74733
Oracle Java SE CVE-2015-4733 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/75832
Oracle Java SE CVE-2015-2590 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/75818
SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2015-07-17
http://www.securityfocus.com/bid/73684
Oracle Java SE CVE-2015-4760 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/75784
Linux Kernel CVE-2015-2922 Denial of Service Vulnerability
2015-07-17
http://www.securityfocus.com/bid/74315
Linux Kernel CVE-2015-3636 Local Privilege Escalation Vulnerability
2015-07-17
http://www.securityfocus.com/bid/74450
Oracle Java SE CVE-2015-2659 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/75877
Oracle MySQL Server CVE-2015-0511 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/74130
Oracle MySQL Server CVE-2015-0498 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/74133
Oracle MySQL Server CVE-2015-0507 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/74121
Oracle MySQL Server CVE-2015-2566 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/74126
Oracle MySQL Server CVE-2015-2567 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/74123
Oracle MySQL Server CVE-2015-0405 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/74110
Oracle MySQL Server CVE-2015-0506 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/74120
Oracle MySQL Server CVE-2015-0423 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/74091
Oracle MySQL Server CVE-2015-0433 Remote Security Vulnerability
2015-07-17
http://www.securityfocus.com/bid/74089
SANS News
Exploit
15 TOTOLINK Router Models - Multiple RCE Vulnerabilities
4 TOTOLINK Router Models - CSRF and XSS Vulnerabilities
4 TOTOLINK Router Models - Backdoor Credentials
8 TOTOLINK Router Models - Backdoor and RCE
16.7.2015
Bugtraq
Backdoor credentials found in 4 TOTOLINK router models 2015-07-15
Pierre Kim (pierre kim sec gmail com)
4 TOTOLINK router models vulnerable to CSRF and XSS attacks 2015-07-15
Pierre Kim (pierre kim sec gmail com)
15 TOTOLINK router models vulnerable to multiple RCEs 2015-07-15
Pierre Kim (pierre kim sec gmail com)
Cisco Security Advisory: Cisco Videoscape Delivery System Denial of Service Vulnerability 2015-07-15
Cisco Systems Product Security Incident Response Team (psirt cisco com)
XSS, Code Execution, DOS, Password Leak, Weak Authentication in GetSimpleCMS 3.3.5 2015-07-15
Tim Coen (tc coen gmail com)
XSS vulnerability in OFBiz forms 2015-07-15
lilian_iatco yahoo com
Malware
TrojanDownloader:MSIL/Prardrukat.A
Backdoor:Win32/Venik.I
Backdoor:Win32/Venik.J
Phishing
Lloyds Bank | 15th July 2015 |
Storage Limit | 15th July 2015 |
howiem@bigfoot.com Mailbox |
Vulnerebility
redcarpet CVE-2015-5147 Stack Buffer Overflow Vulnerability
2015-07-30
http://www.securityfocus.com/bid/75508
Novius OS 'tab' parameter Local File Include Vulnerability
2015-07-29
http://www.securityfocus.com/bid/75533
Linux Kernel CVE-2015-3636 Local Privilege Escalation Vulnerability
2015-07-16
http://www.securityfocus.com/bid/74450
Oracle MySQL Server CVE-2015-0511 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/74130
Oracle MySQL Server CVE-2015-0498 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/74133
Oracle MySQL Server CVE-2015-0507 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/74121
Oracle MySQL Server CVE-2015-2566 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/74126
Oracle MySQL Server CVE-2015-2567 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/74123
Oracle Java SE CVE-2015-4749 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/75890
Oracle Java SE CVE-2015-2625 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/75895
Oracle Java SE CVE-2015-2632 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/75861
Oracle Java SE CVE-2015-2621 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/75874
Oracle Java SE CVE-2015-2601 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/75867
Oracle Java SE CVE-2015-4748 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/75854
Oracle Java SE CVE-2015-4732 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/75823
Oracle Java SE CVE-2015-4733 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/75832
Oracle Java SE CVE-2015-2590 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/75818
Oracle Java SE CVE-2015-2628 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/75796
Oracle Java SE CVE-2015-4731 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/75812
Oracle Java SE CVE-2015-4760 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/75784
SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2015-07-16
http://www.securityfocus.com/bid/73684
Oracle MySQL Server CVE-2015-0405 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/74110
Oracle MySQL Server CVE-2015-0506 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/74120
Oracle MySQL Server CVE-2015-0423 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/74091
Oracle MySQL Server CVE-2015-0433 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/74089
Oracle MySQL Server CVE-2015-2571 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/74095
Oracle MySQL Server CVE-2015-0503 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/74102
Oracle MySQL Server CVE-2015-0441 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/74103
Oracle MySQL Server CVE-2015-0505 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/74112
Oracle MySQL Server CVE-2015-0438 Remote Security Vulnerability
2015-07-16
http://www.securityfocus.com/bid/74098
SANS News
After Flash, what will exploit kits focus on next?
Exploit
Kaseya Virtual System Administrator - Multiple Vulnerabilities
Joomla DOCman Component - Multiple Vulnerabilities
15.7.2015
Bugtraq
Malware
TrojanDropper:MSIL/Golbla.B
VirTool:MSIL/Injector.EW
TrojanSpy:Win32/Nivdort.BO
TrojanSpy:Win32/Nivdort.BN
Trojan:Win32/Kovter.C!reg
TrojanSpy:Win32/Bradop.E
TrojanDownloader:Win32/Travalork.A
TrojanSpy:Win32/Bradop.G
Trojan:Win32/Apmit.A!plock
Trojan:Win32/Banload.E
Phishing
Storage Limit | 15th July 2015 |
howiem@bigfoot.com Mailbox |
Vulnerebility
OpenSSL Session Ticket Memory Leak Remote Denial of Service Vulnerability
2015-07-15
http://www.securityfocus.com/bid/70586
MIT Kerberos 5 1.7.x Checksum Multiple Remote Security Bypass Vulnerabilities
2015-07-15
http://www.securityfocus.com/bid/45116
GNU glibc CVE-2015-0235 Remote Heap Buffer Overflow Vulnerability
2015-07-15
http://www.securityfocus.com/bid/72325
OpenSSL CVE-2014-3570 Unspecified Security Weakness
2015-07-15
http://www.securityfocus.com/bid/71939
ModSecurity 'mod_headers' module Security Bypass Vulnerability
2015-07-15
http://www.securityfocus.com/bid/66550
X.Org X Server 'xkb/xkb.c' Information Disclosure Vulnerability
2015-07-15
http://www.securityfocus.com/bid/72578
Apache Tomcat CVE-2014-0227 Chunk Request Remote Denial Of Service Vulnerability
2015-07-15
http://www.securityfocus.com/bid/72717
RETIRED: Oracle E-Business Suite CVE-2014-3571 Remote Security Vulnerability
2015-07-15
http://www.securityfocus.com/bid/75769
X.Org X Server CVE-2014-8102 Out of Bounds Denial of Service Vulnerability
2015-07-15
http://www.securityfocus.com/bid/71608
OpenSSL 'dtls1_get_record()' Function NULL Pointer Dereference Denial of Service Vulnerability
2015-07-15
http://www.securityfocus.com/bid/71937
OpenSSL 'ASN1_TYPE_cmp()' Function Denial of Service Vulnerability
2015-07-15
http://www.securityfocus.com/bid/73225
X.Org libXfont 'bitmap/bdfread.c' Local Denial of Service Vulnerability
2015-07-15
http://www.securityfocus.com/bid/73280
Mozilla Network Security Services CVE-2014-1568 Security Bypass Vulnerability
2015-07-15
http://www.securityfocus.com/bid/70116
Apache Tomcat CVE-2014-0230 Denial of Service Vulnerability
2015-07-15
http://www.securityfocus.com/bid/74475
SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2015-07-15
http://www.securityfocus.com/bid/73684
Apache Struts CVE-2013-2251 Multiple Remote Command Execution Vulnerabilities
2015-07-15
http://www.securityfocus.com/bid/61189
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-07-15
http://www.securityfocus.com/bid/70574
Apache Struts CVE-2014-7809 Security Bypass Vulnerability
2015-07-15
http://www.securityfocus.com/bid/71548
SSL/TLS LogJam Man in the Middle Security Bypass Vulnerability
2015-07-15
http://www.securityfocus.com/bid/74733
Apache Commons FileUpload 'DiskFileItem' Class Null Byte Arbitrary File Write Vulnerability
2015-07-15
http://www.securityfocus.com/bid/63174
Mozilla Network Security Services CVE-2014-1569 Security Bypass Vulnerability
2015-07-15
http://www.securityfocus.com/bid/71675
cURL/libcURL Remote Input Validation Vulnerability
2015-07-15
http://www.securityfocus.com/bid/51665
QEMU 'hw/block/fdc.c' VENOM Remote Memory Corruption Vulnerability
2015-07-15
http://www.securityfocus.com/bid/74640
Microsoft Windows Adobe Font Driver 'atmfd.dll' Remote Privilege Escalation Vulnerability
2015-07-15
http://www.securityfocus.com/bid/75587
Oracle MySQL Server CVE-2015-0498 Remote Security Vulnerability
2015-07-15
http://www.securityfocus.com/bid/74133
Oracle MySQL Server CVE-2015-2566 Remote Security Vulnerability
2015-07-15
http://www.securityfocus.com/bid/74126
Oracle MySQL Server CVE-2015-0511 Remote Security Vulnerability
2015-07-15
http://www.securityfocus.com/bid/74130
Oracle MySQL Server CVE-2015-0499 Remote Security Vulnerability
2015-07-15
http://www.securityfocus.com/bid/74115
SANS News
July 2015 Microsoft Patch Tuesday
Adobe Updates Flash Player, Shockwave and PDF Reader
OPENSSL update fixes Certificate Verification issue
Cisco PSIRT reporting Customers affected by ASA VPN DoS attacks
Detecting Random - Finding Algorithmically chosen DNS names (DGA)
SSL, SSL - Where Art Thou SSL?
BizCN gate actor changes from Fiesta to Nuclear exploit kit
Another example of Angler exploit kit pushing CryptoWall 3.0
Exploit
Impero Education Pro - SYSTEM Remote Command Execution
Pimcore CMS Build 3450 - Directory Traversal
Internet Download Manager - (.ief) Crash PoC
Internet Download Manager - (Find Download) Crash PoC
ZOC Terminal Emulator 7 - (Quick Connection) Crash PoC
14.7.2015
Bugtraq
Malware
Phishing
USAA | 14th July 2015 |
Paypal service | 12th July 2015 |
Mail User | 11th July 2015 |
Virgin Money UK | 11th July 2015 |
PayPal | 11th July 2015 |
WE'RE INVESTIGATING A PAYPAI | |
Chase | 10th July 2015 |
Vulnerebility
redcarpet CVE-2015-5147 Stack Buffer Overflow Vulnerability
2015-07-30
http://www.securityfocus.com/bid/75508
Novius OS 'tab' parameter Local File Include Vulnerability
2015-07-29
http://www.securityfocus.com/bid/75533
OpenSSL CVE-2014-3511 Man in the Middle Security Bypass Vulnerability
2015-07-10
http://www.securityfocus.com/bid/69079
OpenSSL CVE-2014-3509 Remote Denial of Service Vulnerability
2015-07-10
http://www.securityfocus.com/bid/69084
OpenSSL NULL Pointer Dereference CVE-2014-5139 Local Denial of Service Vulnerability
2015-07-10
http://www.securityfocus.com/bid/69077
OpenSSL 'no-ssl3' Build Option Security Bypass Vulnerability
2015-07-10
http://www.securityfocus.com/bid/70585
Multiple PowerDNS Products CVE-2015-1868 Remote Denial of Service Vulnerability
2015-07-10
http://www.securityfocus.com/bid/74306
OpenSSL CVE-2015-1793 Certificate Verification Security Bypass Vulnerability
2015-07-10
http://www.securityfocus.com/bid/75652
OpenSSL CVE-2014-3508 Information Disclosure Vulnerability
2015-07-10
http://www.securityfocus.com/bid/69075
WordPress ReFlex Gallery Plugin 'php.php' Arbitrary File Upload Vulnerability
2015-07-10
http://www.securityfocus.com/bid/57100
SSL/TLS LogJam Man in the Middle Security Bypass Vulnerability
2015-07-10
http://www.securityfocus.com/bid/74733
Oracle Java SE CVE-2015-0478 Remote Security Vulnerability
2015-07-10
http://www.securityfocus.com/bid/74147
PHP CVE-2015-4599 Remote Memory Corruption Vulnerability
2015-07-10
http://www.securityfocus.com/bid/75251
PHP 'exception::getTraceAsString' CVE-2015-4603 Remote Security Vulnerability
2015-07-10
http://www.securityfocus.com/bid/75252
PHP 'incomplete_class.c' Memory Corruption Vulnerability
2015-07-10
http://www.securityfocus.com/bid/75249
PHP NULL Character CVE-2015-3412 Multiple Security Bypass Vulnerabilities
2015-07-10
http://www.securityfocus.com/bid/75250
PHP CVE-2015-3411 Null Character Security Bypass Vulnerability
2015-07-10
http://www.securityfocus.com/bid/75255
PHP CVE-2015-4601 Multiple Memory Corruption Vulnerabilities
2015-07-10
http://www.securityfocus.com/bid/75246
PHP CVE-2015-3329 Buffer Overflow Vulnerability
2015-07-10
http://www.securityfocus.com/bid/74240
PHP 'do_soap_call()' Function Type Confusion Information Disclosure Vulnerability
2015-07-10
http://www.securityfocus.com/bid/75103
PHP 'pcnt_exec()' Function Null Character Security Bypass Vulnerability
2015-07-10
http://www.securityfocus.com/bid/75056
PHP PHAR 'phar_tar_process_metadata()' Function Heap Memory Corruption Vulnerability
2015-07-10
http://www.securityfocus.com/bid/74703
PHP 'ftp_genlist()' Function Integer Overflow Vulnerability
2015-07-10
http://www.securityfocus.com/bid/74902
PHP CVE-2015-4598 Multiple Security Bypass Vulnerabilities
2015-07-10
http://www.securityfocus.com/bid/75244
PHP 'unserialize()' Function Information Disclosure and Remote Code Execution Vulnerabilities
2015-07-10
http://www.securityfocus.com/bid/74413
PHP PHAR 'phar_parse_tarfile()' Function Remote Memory Corruption Vulnerability
2015-07-10
http://www.securityfocus.com/bid/74700
PHP 'main/rfc1867.c' Remote Denial Of Service Vulnerability
2015-07-10
http://www.securityfocus.com/bid/74903
PHP LibGD Extension 'gd_gif_in.c' Stack Buffer Overflow Vulnerability
2015-07-10
http://www.securityfocus.com/bid/73306
PHP 'ext/phar/phar_object.c' Double Free Denial of Service Vulnerability
2015-07-10
http://www.securityfocus.com/bid/73037
PHP CVE-2014-9425 Double Free Denial of Service Vulnerability
2015-07-10
http://www.securityfocus.com/bid/71800
SANS News
Exploit
Accellion FTA getStatus verify_oauth_token Command Execution
VNC Keyboard Remote Code Execution
Adobe Flash opaqueBackground Use After Free
Western Digital Arkeia Remote Code Execution
phpSQLiteCMS - Multiple Vulnerabilities
Arab Portal 3 - SQL Injection Vulnerability
phpVibe - Aribtrary File Disclosure ArticleFR 3.0.6 - Multiple Vulnerabilities
WordPress Swim Team Plugin 1.44.10777 - Arbitrary File Download
ZenPhoto 1.4.8 - Multiple Vulnerabilities
Full Player 8.2.1 - Memory Corruption PoC
2.7.2015
Bugtraq
iTunes 12.2 and QuickTime 7.7.7 for Windows: still outdated and VULNERABLE 3rd party libraries, still UNQUOTED and VULNERABLE pathnames C:\Program Files\... 2015-07-01
Stefan Kanthak (stefan kanthak nexgo de)
Exploit Code for ipTIME firmwares < 9.58 (root RCE against 127 router models) 2015-07-01
Pierre Kim (pierre kim sec gmail com)
ESA-2015-112: EMC Isilon OneFS Command Injection Vulnerability 2015-07-01
Security Alert (Security_Alert emc com)
Path Traversal in BlackCat CMS 2015-07-01
High-Tech Bridge Security Research (advisory htbridge ch)
Blueberry Express v5.9.x - SEH Buffer Overflow Vulnerability 2015-07-01
Vulnerability Lab (research vulnerability-lab com)
ESA-2015-108: EMC Documentum D2 Multiple DQL Injection Vulnerabilities 2015-07-01
Security Alert (Security_Alert emc com)
ESA-2015-111: EMC Documentum WebTop Client Products Multiple Vulnerabilities 2015-07-01
Security Alert (Security_Alert emc com)
FCS Scanner v1.0 & v1.4 - Command Inject Vulnerability 2015-07-01
Vulnerability Lab (research vulnerability-lab com)
Ebay Magento Bug Bounty #14 - Persistent Description Vulnerability 2015-07-01
Vulnerability Lab (research vulnerability-lab com)
Pinterest Bug Bounty #1 - Persistent contact_name Vulnerability 2015-07-01
Vulnerability Lab (research vulnerability-lab com)
Malware
Phishing
Apple | 1st July 2015 |
Mail User | 30th June 2015 |
iTunes | 30th June 2015 |
Dear Valued Member | 30th June 2015 |
Mr. Martin | 30th June 2015 |
Microsoft | 29th June 2015 |
Vulnerebility
Exploit
D-Link DSP-W w110 v1.05b01 - Multiple Vulnerabilities
McAfee SiteAdvisor 3.7.2 (firefox) Use After Free PoC
1.7.2015
Bugtraq
APPLE-SA-2015-06-30-3 Mac EFI Security Update 2015-001 2015-06-30
Apple Product Security (product-security-noreply lists apple com)
APPLE-SA-2015-06-30-4 Safari 8.0.7, Safari 7.1.7, and Safari 6.2.7 2015-06-30
Apple Product Security (product-security-noreply lists apple com)
APPLE-SA-2015-06-30-2 OS X Yosemite v10.10.4 and Security Update 2015-005 2015-06-30
Apple Product Security (product-security-noreply lists apple com)
APPLE-SA-2015-06-30-1 iOS 8.4 2015-06-30
Apple Product Security (product-security-noreply lists apple com)
Google Chrome Address Spoofing (Request For Comment) 2015-06-30
David Leo (david leo deusen co uk)
CVE-2015-4674 - TimeDoctor autoupdate over plain-HTTP 2015-06-29
Fernando Muñoz (fernando null-life com)
Malware
Phishing
Mail User | 30th June 2015 |
iTunes | 30th June 2015 |
Dear Valued Member | 30th June 2015 |
Mr. Martin | 30th June 2015 |
Microsoft | 29th June 2015 |
Vulnerebility
Exploit
30.6.2015
Bugtraq
[SECURITY] [DSA 3297-1] unattended-upgrades security update 2015-06-29
Alessandro Ghedini (ghedo debian org)
novius-os.5.0.1 Persistent XSS, LFI & Open Redirect Vulnerabilities 2015-06-29
apparitionsec gmail com
Malware
Phishing
Mail User | 30th June 2015 |
iTunes | 30th June 2015 |
Dear Valued Member | 30th June 2015 |
Mr. Martin | 30th June 2015 |
Microsoft | 29th June 2015 |
Vodafone | 28th June 2015 |
Vulnerebility
Exploit
Adobe Flash Player Drawing Fill Shader Memory Corruption
Watchguard XCS <=10.0 - Multiple Vulnerabilities
Novius 5.0.1 - Multiple Vulnerabilities
WedgeOS <= 4.0.4 - Multiple Vulnerabilities
CollabNet Subversion Edge Management 4.0.11 - Local File Inclusion
Fiyo CMS 2.0_1.9.1 - SQL Injection
C2Box 4.0.0(r19171) - CSRF Vulnerability
Polycom RealPresence Resource Manager < 8.4 - Multiple Vulnerabilities
encoded 64 bit execve shellcode
Novius 5.0.1 - Multiple Vulnerabilities
29.6.2015
Bugtraq
novius-os.5.0.1 Persistent XSS, LFI & Open Redirect Vulnerabilities 2015-06-29
apparitionsec gmail com
CollabNet Subversion Edge indes local file inclusion 2015-06-28
Oliver-Tobias Ripka (otr bockcay de)
CollabNet Subversion Edge missing single login restriction 2015-06-28
Oliver-Tobias Ripka (otr bockcay de)
CollabNet Subversion Edge weak password storage mechanism 2015-06-28
Oliver-Tobias Ripka (otr bockcay de)
CollabNet Subversion Edge missing XSRF protection 2015-06-28
Oliver-Tobias Ripka (otr bockcay de)
CollabNet Subversion Edge weak password policy 2015-06-28
Oliver-Tobias Ripka (otr bockcay de)
Malware
Phishing
Microsoft | 29th June 2015 |
Vodafone | 28th June 2015 |
Vulnerebility
Exploit
27.6.2015
Bugtraq
Malware
Phishing
Bank Of America | 27th June 2015 |
* IMPORTANT * Ensure The Safty | |
iTunes | 26th June 2015 |
PayPal Service | 26th June 2015 |
Bank of Scotland | 25th June 2015 |
Vulnerebility
Exploit
Thycotic Secret Server 8.8.000004 - Stored XSS
ManageEngine Asset Explorer 6.1 - Stored XSS
26.6.2015
Bugtraq
Cisco Security Advisory: Multiple Default SSH Keys Vulnerabilities in Cisco Virtual WSA, ESA, and SMA 2015-06-25
Cisco System
Cisco Security Advisory: Multiple Default SSH Keys Vulnerabilities in Cisco Virtual WSA, ESA, and SMA 2015-06-25
Cisco Systems Product Security Incident Response Team (psirt cisco com)
ESA-2015-102: EMC Unisphere for VMAX Remote Code Execution Vulnerability 2015-06-25
Security Alert (Security_Alert emc com)
Netgear Prosafe VPN Firewalls - Multiple vulnerabilities 2015-06-25
post encripto no
[ERPSCAN-15-011] SAP Mobile Platform 3.0 - XXE 2015-06-25
Darya Maenkova (d maenkova erpscan com)
[ERPSCAN-15-008] SAP Afaria 7 XcListener - DoS in the module XeClient.Dll 2015-06-25
Darya Maenkova (d maenkova erpscan com)
[ERPSCAN-15-010] SYBASE SQL Anywhere 12 and 16 - DoS 2015-06-25
Darya Maenkova (d maenkova erpscan com)
[ERPSCAN-15-009] SAP Afaria 7 XcListener - Missing authorization check 2015-06-25
Darya Maenkova (d maenkova erpscan com)
[ERPSCAN-15-007] SAP Management Console ReadProfile Parameters - Information disclosure 2015-06-25
Darya Maenkova (d maenkova erpscan com)
[ERPSCAN-15-005] SAP Mobile Platform - XXE 2015-06-25
Darya Maenkova (d maenkova erpscan com)
[ERPSCAN-15-006] SAP NetWeaver Portal ReportXmlViewer - XXE 2015-06-25
Darya Maenkova (d maenkova erpscan com)
[ERPSCAN-15-004] SAP NetWeaver Portal XMLValidationComponent - XXE 2015-06-25
Darya Maenkova (d maenkova erpscan com)
[ERPSCAN-15-003] SAP NetWeaver Dispatcher Buffer Overflow - RCE, DoS 2015-06-25
Darya Maenkova (d maenkova erpscan com)
[SECURITY] [DSA 3295-1] cacti security update 2015-06-24
Salvatore Bonaccorso (carnil debian org)
s Product Security Incident Response Team (psirt cisco com)
ESA-2015-102: EMC Unisphere for VMAX Remote Code Execution Vulnerability 2015-06-25
Security Alert (Security_Alert emc com)
Netgear Prosafe VPN Firewalls - Multiple vulnerabilities 2015-06-25
post encripto no
[ERPSCAN-15-011] SAP Mobile Platform 3.0 - XXE 2015-06-25
Darya Maenkova (d maenkova erpscan com)
[ERPSCAN-15-008] SAP Afaria 7 XcListener - DoS in the module XeClient.Dll 2015-06-25
Darya Maenkova (d maenkova erpscan com)
[ERPSCAN-15-010] SYBASE SQL Anywhere 12 and 16 - DoS 2015-06-25
Darya Maenkova (d maenkova erpscan com)
[ERPSCAN-15-009] SAP Afaria 7 XcListener - Missing authorization check 2015-06-25
Darya Maenkova (d maenkova erpscan com)
[ERPSCAN-15-007] SAP Management Console ReadProfile Parameters - Information disclosure 2015-06-25
Darya Maenkova (d maenkova erpscan com)
[ERPSCAN-15-005] SAP Mobile Platform - XXE 2015-06-25
Darya Maenkova (d maenkova erpscan com)
[ERPSCAN-15-006] SAP NetWeaver Portal ReportXmlViewer - XXE 2015-06-25
Darya Maenkova (d maenkova erpscan com)
[ERPSCAN-15-004] SAP NetWeaver Portal XMLValidationComponent - XXE 2015-06-25
Darya Maenkova (d maenkova erpscan com)
[ERPSCAN-15-003] SAP NetWeaver Dispatcher Buffer Overflow - RCE, DoS 2015-06-25
Darya Maenkova (d maenkova erpscan com)
Malware
Phishing
PayPal Service | 26th June 2015 |
Bank of Scotland | 25th June 2015 |
System Notification | 24th June 2015 |
Barclays Bank | 24th June 2015 |
Apple | 24th June 2015 |
USAA | 24th June 2015 |
Vulnerebility
Exploit
Koha <= 3.20.1 - Multiple SQL Injections
Koha <= 3.20.1 - Path Traversal
Koha <= 3.20.1 - Multiple XSS and XSRF Vulnerabilities
Linux/x86 - chmod('/etc/passwd',0777) shellcode (42 bytes)
Linux/x86 - chmod('/etc/gshadow') shellcode (37 bytes)
Linux/x86 chmod('/etc/shadow','0777') shellcode (42 bytes)
25.6.2015
Bugtraq
[SECURITY] [DSA 3295-1] cacti security update 2015-06-24
Salvatore Bonaccorso (carnil debian org)
CVE-2015-4464 Insufficient Authorization Checks Request Handling Remote Authentication Bypass for Kguard Digital Video Recorders 2015-06-24
Federick Joe P Fajardo (fjpfajardo ph ibm com)
CVE-2015-3443 XSS in Thycotic Secret Server version 8.6.000000 to 8.8.000004 2015-06-24
Marco Delai (Marco Delai csnc ch)
[SECURITY] [DSA 3294-1] wireshark security update 2015-06-23
Moritz Muehlenhoff (jmm debian org)
Malware
Phishing
System Notification | 24th June 2015 |
Barclays Bank | 24th June 2015 |
Apple | 24th June 2015 |
USAA | 24th June 2015 |
Dropbox_notification | 23rd June 2015 |
PayPal | 23rd June 2015 |
Vulnerebility
Exploit
Adobe Flash Player ShaderJob Buffer Overflow
GeniXCMS 0.0.3 - XSS Vulnerabilities
WordPress Huge-IT Slider 2.7.5 - Multiple Vulnerabilities
GeniXCMS 0.0.3 - register.php SQL Injection Vulnerabilities
Joomla SimpleImageUpload - Arbitrary File Upload
Vesta Control Panel 0.9.8 - OS Command Injection
Windows ClientCopyImage Win32k Exploit
Linux/x86 - mkdir HACK & chmod 777 and exit(0) - 29 Bytes
Linux/x86 - Netcat BindShell Port 5555 - 60 bytes
linux/x86-64 execve(/bin/sh) 30 bytes
24.6.2015
Bugtraq
ESA-2015-110: EMC Documentum Thumbnail Server Directory Traversal Vulnerability 2015-06-23
Security Alert (Security_Alert emc com)
ESA-2015-109: EMC Documentum D2 Cross-Site Scripting 2015-06-23
Security Alert (Security_Alert emc com)
KMPlayer 3.9.1.136 Capture Unicode Buffer Overflow (ASLR Bypass) 2015-06-23
n4ser farhadi gmail com
The "localhosed" attack - stealing IE local machine cookies and exposing its internal IP address 2015-06-22
Amit Klein (aksecurity gmail com)
ManageEngine Asset Explorer v6.1 - Persistent Vulnerability 2015-06-22
Vulnerability Lab (research vulnerability-lab com)
Malware
Win32 / TrojanDownloader.Rottentu.A
Phishing
Apple | 24th June 2015 |
USAA | 24th June 2015 |
Dropbox_notification | 23rd June 2015 |
PayPal | 23rd June 2015 |
Barclays | 22nd June 2015 |
Vulnerebility
Exploit
23.6.2015
Bugtraq
KMPlayer 3.9.1.136 Capture Unicode Buffer Overflow (ASLR Bypass) 2015-06-23
n4ser farhadi gmail com
The "localhosed" attack - stealing IE local machine cookies and exposing its internal IP address 2015-06-22
Amit Klein (aksecurity gmail com)
ManageEngine Asset Explorer v6.1 - Persistent Vulnerability 2015-06-22
Vulnerability Lab (research vulnerability-lab com)
[oCERT-2015-008] FreeRADIUS insufficent CRL application 2015-06-22
Andrea Barisani (lcars ocert org)
mysql-lite-administrator XSS vulnerabilities 2015-06-21
apparitionsec gmail com
mysql-lite-administrator XSS vulnerabilities 2015-06-21
apparitionsec gmail com
[security bulletin] HPSBMU03356 rev.1 - HP Business Service Automation Essentials (BSAE) running TLS, Remote Disclosure of Information 2015-06-22
security-alert hp com
GeniXCMS XSS Vulnerabilities 2015-06-22
apparitionsec gmail com
[SECURITY] [DSA 3293-1] pyjwt security update 2015-06-20
Alessandro Ghedini (ghedo debian org)
[CVE-2015-3188] Apache Storm remote code execution vulnerability 2015-06-20
P. Taylor Goetz (ptgoetz apache org)
Malware
Phishing
PayPal | 23rd June 2015 |
Barclays | 22nd June 2015 |
USAA | 22nd June 2015 |
Wells Fargo | 22nd June 2015 |
Vulnerebility
CUPS < 2.0.3 - Multiple Vulnerabilities
Photoshop CC2014 and Bridge CC 2014 PDF Parsing Memory Corruption Vulnerabilities
Photoshop CC2014 and Bridge CC 2014 PNG Parsing Memory Corruption Vulnerabilities
Photoshop CC2014 and Bridge CC 2014 Gif Parsing Memory Corruption Vulnerabilities
Paintshop Pro X7 GIF Conversion Heap Memory Corruption Vulnerabilities (LZWMinimumCodeSize)
Exploit
CUPS < 2.0.3 - Multiple Vulnerabilities
Photoshop CC2014 and Bridge CC 2014 PDF Parsing Memory Corruption Vulnerabilities
Photoshop CC2014 and Bridge CC 2014 PNG Parsing Memory Corruption Vulnerabilities
Photoshop CC2014 and Bridge CC 2014 Gif Parsing Memory Corruption Vulnerabilities
Paintshop Pro X7 GIF Conversion Heap Memory Corruption Vulnerabilities (LZWMinimumCodeSize)
22.6.2015
Bugtraq
Ebay Magento Bug Bounty #17 - Client Side Cross Site Scripting Web Vulnerability 2015-06-19
Vulnerability Lab (research vulnerability-lab com)
Ebay Magento Bug Bounty #10 - Persistent Filename Vulnerability 2015-06-19
Vulnerability Lab (research vulnerability-lab com)
Ebay Magento Bug Bounty #12 - Cross Site Request Forgery Web Vulnerability 2015-06-19
Vulnerability Lab (research vulnerability-lab com)
ZTE ZXV10 W300 v3.1.0c_DR0 - UI Session Delete Vulnerability 2015-06-19
Vulnerability Lab (research vulnerability-lab com)
ManageEngine SupportCenter Plus 7.90 - Multiple Vulnerabilities 2015-06-19
Vulnerability Lab (research vulnerability-lab com)
[SECURITY] [DSA 3292-1] cinder security update 2015-06-19
Sebastien Delafond (seb debian org)
DUO Security push Timing Attack 2015-06-18
jpierini paysw com
[SECURITY] [DSA 3291-1] drupal7 security update 2015-06-18
Sebastien Delafond (seb debian org)
[SECURITY] [DSA 3290-1] linux security update 2015-06-18
Ben Hutchings (benh debian org)
Malware
Phishing
USAA | 22nd June 2015 |
Wells Fargo | 22nd June 2015 |
iTunes Service | 21st June 2015 |
PayPal support | 21st June 2015 |
PayPal Inc ✔ | 21st June 2015 |
PayPal Service | 21st June 2015 |
PayPal | 20th June 2015 |
Vulnerebility
OpenSSL CVE-2015-0204 Man in the Middle Security Bypass Vulnerability
2015-06-18
http://www.securityfocus.com/bid/71936
Oracle Java SE CVE-2015-0469 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74072
Oracle Java SE CVE-2015-0486 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74145
Oracle Java SE CVE-2015-0488 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74111
PHP libmagick 'libmagic/softmagic.c' Denial of Service Vulnerability
2015-06-18
http://www.securityfocus.com/bid/75241
OpenSSL CVE-2015-0293 Denial of Service Vulnerability
2015-06-18
http://www.securityfocus.com/bid/73232
OpenSSL '/evp/encode.c' Remote Memory Corruption Vulnerability
2015-06-18
http://www.securityfocus.com/bid/73228
OpenSSL Certificate Fingerprints CVE-2014-8275 Local Security Bypass Vulnerability
2015-06-18
http://www.securityfocus.com/bid/71935
OpenSSL CVE-2015-0288 Denial of Service Vulnerability
2015-06-18
http://www.securityfocus.com/bid/73237
OpenSSL 'pk7_doit.c' NULL Pointer Dereference Denial of Service Vulnerability
2015-06-18
http://www.securityfocus.com/bid/73231
OpenSSL 'tasn_dec.c' Remote Memory Corruption Vulnerability
2015-06-18
http://www.securityfocus.com/bid/73227
PHP CVE-2015-4599 Remote Memory Corruption Vulnerability
2015-06-18
http://www.securityfocus.com/bid/75251
PHP 'exception::getTraceAsString' CVE-2015-4603 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/75252
PHP 'incomplete_class.c' Memory Corruption Vulnerability
2015-06-18
http://www.securityfocus.com/bid/75249
PHP CVE-2015-4601 Multiple Memory Corruption Vulnerabilities
2015-06-18
http://www.securityfocus.com/bid/75246
PHP CVE-2015-4598 Multiple Security Bypass Vulnerabilities
2015-06-18
http://www.securityfocus.com/bid/75244
Oracle Java SE CVE-2015-0480 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74104
Oracle Java SE CVE-2015-0460 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74097
Oracle Java SE CVE-2015-0459 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74083
Oracle Java SE CVE-2015-0458 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74141
Oracle Java SE CVE-2015-0477 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74119
Oracle Java SE CVE-2015-0492 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74129
Oracle Java SE CVE-2015-0484 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74135
Oracle Java SE CVE-2015-0491 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74094
Oracle Java SE CVE-2015-0478 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74147
Oracle Java SE CVE-2015-0470 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74149
Linux Kernel 'fs/pipe.c' Multiple Local Memory Corruption Vulnerabilities
2015-06-18
http://www.securityfocus.com/bid/74951
CUPS cupsRasterReadPixels Buffer Overflow Vulnerability
2015-06-18
http://www.securityfocus.com/bid/72594
CUPS CVE-2015-1159 Cross Site Scripting Vulnerability
2015-06-18
http://www.securityfocus.com/bid/75106
Exploit
18.6.2015
Bugtraq
[SECURITY] [DSA 3291-1] drupal7 security update 2015-06-18
Sebastien Delafond (seb debian org)
[SECURITY] [DSA 3290-1] linux security update 2015-06-18
Ben Hutchings (benh debian org)
[security bulletin] HPSBGN03338 rev.1 - HP Service Manager running RC4, Remote Disclosure of Information 2015-06-17
security-alert hp com
Malware
Phishing
Lloyds | 18th June 2015 |
PayPal Service | 18th June 2015 |
Chase | 17th June 2015 |
paypal | 17th June 2015 |
Michelle | 17th June 2015 |
PayPal Service | 17th June 2015 |
Vulnerebility
OpenSSL CVE-2015-0204 Man in the Middle Security Bypass Vulnerability
2015-06-18
http://www.securityfocus.com/bid/71936
Oracle Java SE CVE-2015-0469 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74072
Oracle Java SE CVE-2015-0486 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74145
Oracle Java SE CVE-2015-0488 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74111
PHP libmagick 'libmagic/softmagic.c' Denial of Service Vulnerability
2015-06-18
http://www.securityfocus.com/bid/75241
OpenSSL CVE-2015-0293 Denial of Service Vulnerability
2015-06-18
http://www.securityfocus.com/bid/73232
OpenSSL '/evp/encode.c' Remote Memory Corruption Vulnerability
2015-06-18
http://www.securityfocus.com/bid/73228
OpenSSL Certificate Fingerprints CVE-2014-8275 Local Security Bypass Vulnerability
2015-06-18
http://www.securityfocus.com/bid/71935
OpenSSL CVE-2015-0288 Denial of Service Vulnerability
2015-06-18
http://www.securityfocus.com/bid/73237
OpenSSL 'pk7_doit.c' NULL Pointer Dereference Denial of Service Vulnerability
2015-06-18
http://www.securityfocus.com/bid/73231
OpenSSL 'tasn_dec.c' Remote Memory Corruption Vulnerability
2015-06-18
http://www.securityfocus.com/bid/73227
PHP CVE-2015-4599 Remote Memory Corruption Vulnerability
2015-06-18
http://www.securityfocus.com/bid/75251
PHP 'exception::getTraceAsString' CVE-2015-4603 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/75252
PHP 'incomplete_class.c' Memory Corruption Vulnerability
2015-06-18
http://www.securityfocus.com/bid/75249
PHP CVE-2015-4601 Multiple Memory Corruption Vulnerabilities
2015-06-18
http://www.securityfocus.com/bid/75246
PHP CVE-2015-4598 Multiple Security Bypass Vulnerabilities
2015-06-18
http://www.securityfocus.com/bid/75244
Oracle Java SE CVE-2015-0480 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74104
Oracle Java SE CVE-2015-0460 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74097
Oracle Java SE CVE-2015-0459 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74083
Oracle Java SE CVE-2015-0458 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74141
Oracle Java SE CVE-2015-0477 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74119
Oracle Java SE CVE-2015-0492 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74129
Oracle Java SE CVE-2015-0484 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74135
Oracle Java SE CVE-2015-0491 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74094
Oracle Java SE CVE-2015-0478 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74147
Oracle Java SE CVE-2015-0470 Remote Security Vulnerability
2015-06-18
http://www.securityfocus.com/bid/74149
Linux Kernel 'fs/pipe.c' Multiple Local Memory Corruption Vulnerabilities
2015-06-18
http://www.securityfocus.com/bid/74951
CUPS cupsRasterReadPixels Buffer Overflow Vulnerability
2015-06-18
http://www.securityfocus.com/bid/72594
CUPS CVE-2015-1159 Cross Site Scripting Vulnerability
2015-06-18
http://www.securityfocus.com/bid/75106
Exploit
ManageEngine SupportCenter Plus 7.90 - Multiple Vulnerabilities
ZTE ZXV10 W300 v3.1.0c_DR0 - UI Session Delete Vulnerability
WinylPlayer 3.0.3 Memory Corruption PoC
HansoPlayer 3.4.0 Memory Corruption PoC
18.6.2015
Bugtraq
[security bulletin] HPSBGN03338 rev.1 - HP Service Manager running RC4, Remote Disclosure of Information 2015-06-17
security-alert hp com
[security bulletin] HPSBGN03350 rev.1 - HP SiteScope Using RC4, Remote Disclosure of Information 2015-06-17
security-alert hp com
VCE3570: VCE Vision(TM) Intelligent Operations Cryptographic and Cleartext Vulnerabilities 2015-06-17
VCE - PSIRT (VCEPSIRT vce com)
Reflected Cross-Site Scripting (XSS) in SearchBlox 2015-06-17
High-Tech Bridge Security Research (advisory htbridge ch)
OS Command Injection in Vesta Control Panel 2015-06-17
High-Tech Bridge Security Research (advisory htbridge ch)
ESA-2015-043: RSA® Validation Manager Security Update for Multiple Vulnerabilities 2015-06-16
Security Alert (Security_Alert emc com)
ESA-2015-106: EMC Unified Infrastructure Manager/Provisioning (UIM/P) Authentication Bypass Vulnerability 2015-06-16
Security Alert (Security_Alert emc com)
BlackCat CMS v1.1.1 Arbitrary File Download Vulnerability 2015-06-16
d4rkr0id gmail com
Malware
Phishing
PayPal Service | 18th June 2015 |
Chase | 17th June 2015 |
paypal | 17th June 2015 |
Michelle | 17th June 2015 |
PayPal Service | 17th June 2015 |
PayPal Service | 16th June 2015 |
Vulnerebility
Exploit
BlackCat CMS 1.1.1 Arbitrary File Download
16.6.2015
Bugtraq
[SECURITY] [DSA 3289-1] p7zip security update 2015-06-15
Ben Hutchings (benh debian org)
WebdesignJiNi Cms Sql Injection Vulnerability 2015-06-14
iedb team gmail com
Productsurf Cms Sql Injection Vulnerability 2015-06-14
iedb team gmail com
[SECURITY] [DSA 3252-2] sqlite3 security update 2015-06-14
Alessandro Ghedini (ghedo debian org)
[RT-SA-2015-002] SQL Injection in TYPO3 Extension Akronymmanager 2015-06-15
RedTeam Pentesting GmbH (release redteam-pentesting de)
Malware
Phishing
EARTHLINK | 16th June 2015 |
Chase | 16th June 2015 |
Amazon UK | 15th June 2015 |
Apple | 15th June 2015 |
google help desk | 15th June 2015 |
YOU HAVE A PENDING INCOMING |
Vulnerebility
Exploit
Cisco AnyConnect Secure Mobility 2.x, 3.x, 4.x - Client DoS PoC
Ektron CMS 9.10 SP1 (Build 9.1.0.184.1.114) - CSRF Vulnerability
E-Detective Lawful Interception System - Multiple Vulnerabilities
TYPO3 Akronymmanager Extension 0.5.0 - SQL Injection
Apexis IP CAM - Information Disclosure
Linux/x86 - /etc/passwd Reader (58 bytes)
Ubuntu 12.04, 14.04, 14.10, 15.04 - overlayfs Local Root (Shell)
Ektron CMS 9.10 SP1 (Build 9.1.0.184.1.114) - CSRF Vulnerability
Ubuntu 12.04, 14.04, 14.10, 15.04 - overlayfs Local Root (Shadow File)
Filezilla 3.11.0.2 - SFTP Module Denial of Service Vulnerability
Putty 0.64 - Denial of Service Vulnerability
15.6.2015
Bugtraq
[RT-SA-2015-002] SQL Injection in TYPO3 Extension Akronymmanager 2015-06-15
RedTeam Pentesting GmbH (release redteam-pentesting de)
[SECURITY] [DSA 3287-1] openssl security update 2015-06-13
Alessandro Ghedini (ghedo debian org)
[SECURITY] [DSA 3288-1] libav security update 2015-06-13
Moritz Muehlenhoff (jmm debian org)
Buffer Overflow in My Wifi Router Software 2015-06-13
sudson08 gmail com
[SECURITY] [DSA 3286-1] xen security update 2015-06-13
Moritz Muehlenhoff (jmm debian org)
[SECURITY] [DSA 3285-1] qemu-kvm security update 2015-06-12
Salvatore Bonaccorso (carnil debian org)
[slackware-security] openssl (SSA:2015-162-01) 2015-06-11
Slackware Security Team (security slackware com)
Malware
Phishing
Apple | 15th June 2015 |
google help desk | 15th June 2015 |
YOU HAVE A PENDING INCOMING | |
iTunes | 14th June 2015 |
EARTHLINK | 14th June 2015 |
Support | 14th June 2015 |
Pay Pal | 14th June 2015 |
PayPal Security Team | 14th June 2015 |
REMINDER - ACTION REQUIRED: |
Vulnerebility
Multiple Cisco Products CVE-2015-0744 Denial of Service Vulnerability
2015-06-29
http://www.securityfocus.com/bid/74916
QEMU 'hw/block/fdc.c' VENOM Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74640
Stunnel CVE-2014-0016 PRNG Initialization Weakness
2015-06-09
http://www.securityfocus.com/bid/65964
Oracle Java SE CVE-2015-0460 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74097
Oracle Java SE CVE-2015-0469 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74072
Oracle Java SE CVE-2015-0480 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74104
Oracle Java SE CVE-2015-0478 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74147
Oracle Java SE CVE-2015-0477 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74119
Oracle Java SE CVE-2015-0488 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74111
Sun J2SE Software Development Kit Java Archive Tool Directory Traversal Vulnerability
2015-06-09
http://www.securityfocus.com/bid/13083
Microsoft Internet Explorer CVE-2015-1712 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74515
Module::Signature Multiple Remote Command Execution and Security Bypass Vulnerabilities
2015-06-09
http://www.securityfocus.com/bid/73935
Microsoft Internet Explorer CVE-2015-1704 Remote Privilege Escalation Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74521
Module::Signature 'Signature.pm' Security Bypass Vulnerability
2015-06-09
http://www.securityfocus.com/bid/73937
Microsoft Internet Explorer CVE-2015-1692 Clipboard Information Disclosure Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74517
Microsoft Internet Explorer CVE-2015-1705 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74509
Microsoft Internet Explorer CVE-2015-1706 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74510
Microsoft Internet Explorer CVE-2015-1694 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74508
Microsoft Windows GDI+ CVE-2015-1671 TrueType Font Handling Remote Code Execution Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74490
Microsoft Internet Explorer CVE-2015-1710 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74513
Oracle Solaris CVE-2015-2577 Local Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74122
Microsoft Internet Explorer CVE-2015-1718 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74607
Microsoft Internet Explorer CVE-2015-1713 Remote Privilege Escalation Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74518
Microsoft Internet Explorer CVE-2015-1691 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74507
libFLAC 'src/libFLAC/stream_decoder.c' Heap Buffer Overflow Vulnerability
2015-06-09
http://www.securityfocus.com/bid/71282
Microsoft Internet Explorer CVE-2015-1711 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74514
Microsoft Windows GDI+ CVE-2015-1670 OpenType Font Parsing Information Disclosure Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74485
Microsoft .NET Framework CVE-2015-1672 Remote Denial of Service Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74482
Microsoft VBScript and JScript CVE-2015-1686 ASLR Security Bypass Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74530
Microsoft .NET Framework CVE-2015-1673 Remote Privilege Escalation Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74487
Exploit
Milw0rm Clone Script 1.0 - (Auth Bypass) SQL Injection Vulnerability
Filezilla 3.11.0.2 - SFTP Module Denial of Service Vulnerability
Putty 0.64 - Denial of Service Vulnerability
13.6.2015
Bugtraq
[slackware-security] openssl (SSA:2015-162-01) 2015-06-11
Slackware Security Team (security slackware com)
FreeBSD Security Advisory FreeBSD-SA-15:10.openssl 2015-06-12
FreeBSD Security Advisories (security-advisories freebsd org)
[SYSS-2015-020] ZENWorks Mobile Management - Cross-Site Scripting 2015-06-12
ludwig stage syss de
ZCMS SQL Injection & Persistent XSS 2015-06-12
apparitionsec gmail com
[slackware-security] php (SSA:2015-162-02) 2015-06-11
Slackware Security Team (security slackware com)
Nakid-CMS CSRF, Persistent XSS & LFI 2015-06-11
apparitionsec gmail com
[KIS-2015-03] Concrete5 <= 5.7.4 (Access.php) SQL Injection Vulnerability 2015-06-11
Egidio Romano (research karmainsecurity com)
Malware
Phishing
USAA | 13th June 2015 |
American Express | 13th June 2015 |
PayPal Security Team | 12th June 2015 |
REMINDER - ACTION REQUIRED: | |
Mercantile | 11th June 2015 |
Vulnerebility
Exploit
ClickHeat <= 1.14 Change Admin Password CSRF
Nakid CMS - Multiple Vulnerabilities
Opsview <= 4.6.2 - Multiple XSS Vulnerabilities
ZCMS 1.1 - Multiple Vulnerabilities
WordPress SE HTML5 Album Audio Player 1.1.0 - Directory Traversal
WordPress Aviary Image Editor Add On For Gravity Forms 3.0 Beta Shell Upload
12.6.2015
Bugtraq
[KIS-2015-03] Concrete5 <= 5.7.4 (Access.php) SQL Injection Vulnerability 2015-06-11
Egidio Romano (research karmainsecurity com)
[KIS-2015-02] Concrete5 <= 5.7.3.1 Multiple Reflected Cross-Site Scripting Vulnerabilities 2015-06-11
Egidio Romano (research karmainsecurity com)
[KIS-2015-01] Concrete5 <= 5.7.3.1 (sendmail) Remote Code Execution Vulnerability 2015-06-11
Egidio Romano (research karmainsecurity com)
Remote file upload vulnerability in aviary-image-editor-add-on-for-gravity-forms v3.0beta Wordpress plugin 2015-06-10
Larry W. Cashdollar (larry0 me com)
Cisco Security Advisory: Cisco IOS XR Software Crafted IPv6 Packet Denial of Service Vulnerability 2015-06-11
Cisco Systems Product Security Incident Response Team (psirt cisco com)
D-Link DSP-W110 - multiple vulnerabilities 2015-06-11
Peter Adkins (peter adkins kernelpicnic net)
[security bulletin] HPSBUX03337 SSRT102066 rev.1 - HP-UX Apache Web Server Suite running Apache Web Server, Tomcat v6.x, or PHP v5.4.x, Remote Denial of Service (DoS) and Other Vulnerabilities 2015-06-11
security-alert hp com
Malware
Win32 / TrojanDownloader.Wauchos.AK
Phishing
Mercantile | 11th June 2015 |
PayPal | 11th June 2015 |
Vulnerebility
Multiple Cisco Products CVE-2015-0744 Denial of Service Vulnerability
2015-06-29
http://www.securityfocus.com/bid/74916
QEMU 'hw/block/fdc.c' VENOM Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74640
Stunnel CVE-2014-0016 PRNG Initialization Weakness
2015-06-09
http://www.securityfocus.com/bid/65964
Oracle Java SE CVE-2015-0460 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74097
Oracle Java SE CVE-2015-0469 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74072
Oracle Java SE CVE-2015-0480 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74104
Oracle Java SE CVE-2015-0478 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74147
Sun J2SE Software Development Kit Java Archive Tool Directory Traversal Vulnerability
2015-06-09
http://www.securityfocus.com/bid/13083
Module::Signature Multiple Remote Command Execution and Security Bypass Vulnerabilities
2015-06-09
http://www.securityfocus.com/bid/73935
Module::Signature 'Signature.pm' Security Bypass Vulnerability
2015-06-09
http://www.securityfocus.com/bid/73937
Oracle Java SE CVE-2015-0488 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74111
Oracle Java SE CVE-2015-0477 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74119
Oracle Solaris CVE-2015-2577 Local Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74122
Microsoft Windows GDI+ CVE-2015-1671 TrueType Font Handling Remote Code Execution Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74490
Microsoft Internet Explorer CVE-2015-1694 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74508
Microsoft Internet Explorer CVE-2015-1705 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74509
Microsoft Internet Explorer CVE-2015-1706 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74510
Microsoft Internet Explorer CVE-2015-1710 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74513
Microsoft Internet Explorer CVE-2015-1712 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74515
Microsoft Internet Explorer CVE-2015-1692 Clipboard Information Disclosure Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74517
Microsoft Internet Explorer CVE-2015-1704 Remote Privilege Escalation Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74521
libFLAC 'src/libFLAC/stream_decoder.c' Heap Buffer Overflow Vulnerability
2015-06-09
http://www.securityfocus.com/bid/71282
Microsoft .NET Framework CVE-2015-1672 Remote Denial of Service Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74482
Microsoft Windows GDI+ CVE-2015-1670 OpenType Font Parsing Information Disclosure Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74485
Microsoft .NET Framework CVE-2015-1673 Remote Privilege Escalation Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74487
Microsoft Internet Explorer CVE-2015-1691 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74507
Microsoft Internet Explorer CVE-2015-1711 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74514
Microsoft Internet Explorer CVE-2015-1713 Remote Privilege Escalation Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74518
Microsoft VBScript and JScript CVE-2015-1686 ASLR Security Bypass Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74530
Microsoft Internet Explorer CVE-2015-1718 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74607
Exploit
OSSEC 2.7 <= 2.8.1 - Local Root Escalation
11.6.2015
Bugtraq
Heroku Bug Bounty #2 - (API) Re Auth Session Bypass Vulnerability 2015-06-10
Vulnerability Lab (research vulnerability-lab com)
Use-After-Free in PHP 2015-06-10
High-Tech Bridge Security Research (advisory htbridge ch)
Multiple Vulnerabilities in ISPConfig 2015-06-10
High-Tech Bridge Security Research (advisory htbridge ch)
Arbitrary File Disclosure and Open Redirect in Bonita BPM 2015-06-10
High-Tech Bridge Security Research (advisory htbridge ch)
[RT-SA-2015-004] Alcatel-Lucent OmniSwitch Web Interface Cross-Site Request Forgery 2015-06-10
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2015-003] Alcatel-Lucent OmniSwitch Web Interface Weak Session ID 2015-06-10
RedTeam Pentesting GmbH (release redteam-pentesting de)
[security bulletin] HPSBUX03341 SSRT102068 rev.1 - HP-UX Apache Tomcat v7.x, Remote Denial of Service (DoS) and Other Vulnerabilities 2015-06-09
security-alert hp com
Malware
Backdoor:MSIL/Bladabindi.BG
Worm:Win32/Rebhip.Y
Worm:Win32/Rebhip.Z
Backdoor:Win32/Zegost.THD
Backdoor:Win32/Zegost.THD
TrojanDownloader:Win32/Redosdru.C
Phishing
PayPal | 11th June 2015 |
Receipt for your PayPal | |
Жанна Сергеевна | 10th June 2015 |
楼凤å°?å§è‰¯å®¶å…¼èŒä¿¡æ¯ | 10th June 2015 |
EARTHLINK | 10th June 2015 |
Vulnerebility
Multiple Cisco Products CVE-2015-0744 Denial of Service Vulnerability
2015-06-29
http://www.securityfocus.com/bid/74916
QEMU 'hw/block/fdc.c' VENOM Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74640
Stunnel CVE-2014-0016 PRNG Initialization Weakness
2015-06-09
http://www.securityfocus.com/bid/65964
Oracle Java SE CVE-2015-0460 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74097
Oracle Java SE CVE-2015-0469 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74072
Oracle Java SE CVE-2015-0480 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74104
Oracle Java SE CVE-2015-0478 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74147
Sun J2SE Software Development Kit Java Archive Tool Directory Traversal Vulnerability
2015-06-09
http://www.securityfocus.com/bid/13083
Module::Signature Multiple Remote Command Execution and Security Bypass Vulnerabilities
2015-06-09
http://www.securityfocus.com/bid/73935
Module::Signature 'Signature.pm' Security Bypass Vulnerability
2015-06-09
http://www.securityfocus.com/bid/73937
Oracle Java SE CVE-2015-0488 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74111
Oracle Java SE CVE-2015-0477 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74119
Oracle Solaris CVE-2015-2577 Local Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74122
Microsoft Windows GDI+ CVE-2015-1671 TrueType Font Handling Remote Code Execution Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74490
Microsoft Internet Explorer CVE-2015-1694 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74508
Microsoft Internet Explorer CVE-2015-1705 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74509
Microsoft Internet Explorer CVE-2015-1706 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74510
Microsoft Internet Explorer CVE-2015-1710 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74513
Microsoft Internet Explorer CVE-2015-1712 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74515
Microsoft Internet Explorer CVE-2015-1692 Clipboard Information Disclosure Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74517
Microsoft Internet Explorer CVE-2015-1704 Remote Privilege Escalation Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74521
libFLAC 'src/libFLAC/stream_decoder.c' Heap Buffer Overflow Vulnerability
2015-06-09
http://www.securityfocus.com/bid/71282
Microsoft .NET Framework CVE-2015-1672 Remote Denial of Service Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74482
Microsoft Windows GDI+ CVE-2015-1670 OpenType Font Parsing Information Disclosure Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74485
Microsoft .NET Framework CVE-2015-1673 Remote Privilege Escalation Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74487
Microsoft Internet Explorer CVE-2015-1691 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74507
Microsoft Internet Explorer CVE-2015-1711 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74514
Microsoft Internet Explorer CVE-2015-1713 Remote Privilege Escalation Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74518
Microsoft VBScript and JScript CVE-2015-1686 ASLR Security Bypass Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74530
Microsoft Internet Explorer CVE-2015-1718 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74607
Exploit
ProFTPD 1.3.5 Mod_Copy Command Execution
Paypal Currencucy Converter Basic For Woocommerce File Read
Wordpress History Collection <=1.1.1 Arbitrary File Download
Pandora FMS 5.0, 5.1 - Authentication Bypass
Wordpress RobotCPA Plugin V5 - Local File Inclusion
HP WebInspect <= 10.4 XML External Entity Injection
Heroku Bug Bounty #2 - (API) Re Auth Session Bypass Vulnerability
Libmimedir VCF Memory Corruption PoC
FiverrScript CSRF Vulnerability (Add New Admin)
GeoVision (GeoHttpServer) Webcams Remote File Disclosure Exploit
ISPConfig 3.0.5.4p6 - Multiple Vulnerabilities
Bonita BPM 6.5.1 - Multiple Vulnerabilities
Alcatel-Lucent OmniSwitch - CSRF Vulnerability
AnimaGallery 2.6 - Local File Inclusion
WordPress Encrypted Contact Form Plugin 1.0.4 - CSRF Vulnerability
10.6.2015
Bugtraq
Heroku Bug Bounty #2 - (API) Re Auth Session Bypass Vulnerability 2015-06-10
Vulnerability Lab (research vulnerability-lab com)
Use-After-Free in PHP 2015-06-10
High-Tech Bridge Security Research (advisory htbridge ch)
Multiple Vulnerabilities in ISPConfig 2015-06-10
High-Tech Bridge Security Research (advisory htbridge ch)
Arbitrary File Disclosure and Open Redirect in Bonita BPM 2015-06-10
High-Tech Bridge Security Research (advisory htbridge ch)
[RT-SA-2015-004] Alcatel-Lucent OmniSwitch Web Interface Cross-Site Request Forgery 2015-06-10
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2015-003] Alcatel-Lucent OmniSwitch Web Interface Weak Session ID 2015-06-10
RedTeam Pentesting GmbH (release redteam-pentesting de)
[security bulletin] HPSBUX03341 SSRT102068 rev.1 - HP-UX Apache Tomcat v7.x, Remote Denial of Service (DoS) and Other Vulnerabilities 2015-06-09
security-alert hp com
Elasticsearch vulnerability CVE-2015-4165 2015-06-09
Kevin Kluge (kevin elastic co)
Malware
Phishing
楼凤å°?å§è‰¯å®¶å…¼èŒä¿¡æ¯ | 10th June 2015 |
EARTHLINK | 10th June 2015 |
EARTHLINK | 9th June 2015 |
iTunes | 9th June 2015 |
Apple | 8th June 2015 |
PayPal | 8th June 2015 |
Chase | 8th June 2015 |
Vulnerebility
Multiple Cisco Products CVE-2015-0744 Denial of Service Vulnerability
2015-06-29
http://www.securityfocus.com/bid/74916
QEMU 'hw/block/fdc.c' VENOM Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74640
Stunnel CVE-2014-0016 PRNG Initialization Weakness
2015-06-09
http://www.securityfocus.com/bid/65964
Oracle Java SE CVE-2015-0460 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74097
Oracle Java SE CVE-2015-0469 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74072
Oracle Java SE CVE-2015-0480 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74104
Oracle Java SE CVE-2015-0478 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74147
Sun J2SE Software Development Kit Java Archive Tool Directory Traversal Vulnerability
2015-06-09
http://www.securityfocus.com/bid/13083
Module::Signature Multiple Remote Command Execution and Security Bypass Vulnerabilities
2015-06-09
http://www.securityfocus.com/bid/73935
Module::Signature 'Signature.pm' Security Bypass Vulnerability
2015-06-09
http://www.securityfocus.com/bid/73937
Oracle Java SE CVE-2015-0488 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74111
Oracle Java SE CVE-2015-0477 Remote Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74119
Oracle Solaris CVE-2015-2577 Local Security Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74122
Microsoft Windows GDI+ CVE-2015-1671 TrueType Font Handling Remote Code Execution Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74490
Microsoft Internet Explorer CVE-2015-1694 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74508
Microsoft Internet Explorer CVE-2015-1705 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74509
Microsoft Internet Explorer CVE-2015-1706 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74510
Microsoft Internet Explorer CVE-2015-1710 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74513
Microsoft Internet Explorer CVE-2015-1712 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74515
Microsoft Internet Explorer CVE-2015-1692 Clipboard Information Disclosure Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74517
Microsoft Internet Explorer CVE-2015-1704 Remote Privilege Escalation Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74521
libFLAC 'src/libFLAC/stream_decoder.c' Heap Buffer Overflow Vulnerability
2015-06-09
http://www.securityfocus.com/bid/71282
Microsoft .NET Framework CVE-2015-1672 Remote Denial of Service Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74482
Microsoft Windows GDI+ CVE-2015-1670 OpenType Font Parsing Information Disclosure Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74485
Microsoft .NET Framework CVE-2015-1673 Remote Privilege Escalation Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74487
Microsoft Internet Explorer CVE-2015-1691 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74507
Microsoft Internet Explorer CVE-2015-1711 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74514
Microsoft Internet Explorer CVE-2015-1713 Remote Privilege Escalation Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74518
Microsoft VBScript and JScript CVE-2015-1686 ASLR Security Bypass Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74530
Microsoft Internet Explorer CVE-2015-1718 Remote Memory Corruption Vulnerability
2015-06-09
http://www.securityfocus.com/bid/74607
Exploit
SV: Milw0rm Clone Script v1.0 - (time based) SQLi
9.6.2015
Bugtraq
[SECURITY] [DSA 3282-1] strongswan security update 2015-06-08
Yves-Alexis Perez (corsac debian org)
Symphony CMS XSS Vulnerability 2015-06-08
apparitionsec gmail com
AnimaGallery 2.6 (theme and lang cookie parameter) Local File Include Vulnerability 2015-06-08
d4rkr0id gmail com
[SECURITY] [DSA 3281-1] Debian Security Team PGP/GPG key change notice 2015-06-07
Thijs Kinkhorst (thijs debian org)
[SECURITY] [DSA 3280-1] php5 security update 2015-06-07
Moritz Muehlenhoff (jmm debian org)
Malware
Backdoor:MSIL/NetWiredRC.A
TrojanDropper:Win32/Plugx.J
TrojanDownloader:MSIL/Dowector.A
BrowserModifier:Win32/IminentSProtection
BrowserModifier:Win32/AskToolbarNotifier
Phishing
Apple | 8th June 2015 |
PayPal | 8th June 2015 |
Chase | 8th June 2015 |
КÑениÑ? Глебовна | 7th June 2015 |
PayPal | 6th June 2015 |
[Notice] : Update Your Account |
Vulnerebility
Multiple Cisco Products CVE-2015-0744 Denial of Service Vulnerability
2015-06-29
http://www.securityfocus.com/bid/74916
Linux Kernel 'fs/pipe.c' Multiple Local Memory Corruption Vulnerabilities
2015-06-04
http://www.securityfocus.com/bid/74951
Apache Tomcat 'mod_jk' CVE-2014-8111 Information Disclosure Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74265
Cisco AnyConnect Secure Mobility Client CVE-2015-0761 Local Privilege Escalation Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74954
Attic 'attic/archiver.py' Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74821
WordPress wp-smiley Plugin HTML Injection and Cross Site Request Forgery Vulnerabilities
2015-06-04
http://www.securityfocus.com/bid/74914
PHP 'SoapClient's __call()' Function Type Confusion Remote Code Execution Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73357
Oracle Java SE CVE-2015-0383 Local Java SE, Java SE Embedded, JRockit Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72155
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72165
NTP 'ntp_crypto.c' Information Disclosure Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72583
NTP 'ntp_io.c' Authentication Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72584
OpenSSL 'ASN1_TYPE_cmp()' Function Denial of Service Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73225
OpenSSL 'tasn_dec.c' Remote Memory Corruption Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73227
OpenSSL 'pk7_doit.c' NULL Pointer Dereference Denial of Service Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73231
OpenSSL CVE-2015-0293 Denial of Service Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73232
OpenSSL CVE-2015-0288 Denial of Service Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73237
OpenSSL CVE-2015-0209 Remote Memory Corruption Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73239
IBM Security Directory Server CVE-2015-0138 Man in the Middle Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73326
cURL/libcURL NTLM connection CVE-2015-3143 Remote Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74299
cURL/libcURL CVE-2015-3148 Remote Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74301
cURL/libcURL CVE-2015-3153 Information Disclosure Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74408
OpenSSL CVE-2015-0204 Man in the Middle Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/71936
OpenSSL CVE-2014-3570 Unspecified Security Weakness
2015-06-04
http://www.securityfocus.com/bid/71939
Oracle Java SE CVE-2015-0412 Remote Java SE Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72136
Oracle Java SE CVE-2015-0408 Remote Java SE Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72140
Oracle Java SE CVE-2015-0437 Remote Java SE Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72146
Oracle Java SE CVE-2015-0403 Local Java SE Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72148
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72169
Oracle Java SE CVE-2015-0459 Remote Security Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74083
Oracle Java SE CVE-2015-0480 Remote Security Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74104
Exploit
Wordpress Plugin 'WP Mobile Edition' - LFI Vulnerability
8.6.2015
Bugtraq
Symphony CMS XSS Vulnerability 2015-06-08
apparitionsec gmail com
AnimaGallery 2.6 (theme and lang cookie parameter) Local File Include Vulnerability 2015-06-08
d4rkr0id gmail com
[SECURITY] [DSA 3281-1] Debian Security Team PGP/GPG key change notice 2015-06-07
Thijs Kinkhorst (thijs debian org)
[SECURITY] [DSA 3280-1] php5 security update 2015-06-07
Moritz Muehlenhoff (jmm debian org)
Hardcoded AES 256 bit key used in Kankun IoT/Smart socket and its mobile App 2015-06-06
Payatu Research (research payatu com)
[SECURITY] [DSA 3279-1] redis security update 2015-06-06
Alessandro Ghedini (ghedo debian org)
Symphony CMS 2.6.2 2015-06-06
apparitionsec gmail com
CVE-2015-4010 - Cross-site Request Forgery & Cross-site Scripting in Encrypted Contact Form Wordpress Plugin v1.0.4 2015-06-06
venkatesh nitin gmail com
Xloner v3.1.2 wordpress plugin authenticated command execution and XSS 2015-06-05
Larry W. Cashdollar (larry0 me com)
Expedia Product Security Advisory: Cruise Ship Centers Information Disclosure 2015-06-05
Mike Sheward (msheward expedia com)
CVE-2015-4109 - WordPress Users Ultra Plugin [SQL injection] 2015-06-05
pan vagenas gmail com
1 Click Extract Audio v2.3.6 - Activex Buffer Overflow 2015-06-05
Vulnerability Lab (research vulnerability-lab com)
1 Click Audio Converter v2.3.6 - Activex Buffer Overflow 2015-06-05
Vulnerability Lab (research vulnerability-lab com)
1 Click Audio Converter v2.3.6 - Activex Buffer Overflow 2015-06-05
Vulnerability Lab (research vulnerability-lab com)
Wing FTP Server Remote Code Execution vulnerability 2015-06-05
alex_haynes outlook com
Malware
TrojanDownloader:Win32/Noucti.A
Phishing
КÑениÑ? Глебовна | 7th June 2015 |
PayPal | 6th June 2015 |
[Notice] : Update Your Account | |
PayPal Service ✔ | 6th June 2015 |
PayPal Service | 6th June 2015 |
Vulnerebility
Multiple Cisco Products CVE-2015-0744 Denial of Service Vulnerability
2015-06-29
http://www.securityfocus.com/bid/74916
Linux Kernel 'fs/pipe.c' Multiple Local Memory Corruption Vulnerabilities
2015-06-04
http://www.securityfocus.com/bid/74951
Apache Tomcat 'mod_jk' CVE-2014-8111 Information Disclosure Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74265
Cisco AnyConnect Secure Mobility Client CVE-2015-0761 Local Privilege Escalation Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74954
Attic 'attic/archiver.py' Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74821
WordPress wp-smiley Plugin HTML Injection and Cross Site Request Forgery Vulnerabilities
2015-06-04
http://www.securityfocus.com/bid/74914
PHP 'SoapClient's __call()' Function Type Confusion Remote Code Execution Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73357
Oracle Java SE CVE-2015-0383 Local Java SE, Java SE Embedded, JRockit Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72155
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72165
NTP 'ntp_crypto.c' Information Disclosure Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72583
NTP 'ntp_io.c' Authentication Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72584
OpenSSL 'ASN1_TYPE_cmp()' Function Denial of Service Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73225
OpenSSL 'tasn_dec.c' Remote Memory Corruption Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73227
OpenSSL 'pk7_doit.c' NULL Pointer Dereference Denial of Service Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73231
OpenSSL CVE-2015-0293 Denial of Service Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73232
OpenSSL CVE-2015-0288 Denial of Service Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73237
OpenSSL CVE-2015-0209 Remote Memory Corruption Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73239
IBM Security Directory Server CVE-2015-0138 Man in the Middle Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73326
cURL/libcURL NTLM connection CVE-2015-3143 Remote Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74299
cURL/libcURL CVE-2015-3148 Remote Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74301
cURL/libcURL CVE-2015-3153 Information Disclosure Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74408
OpenSSL CVE-2015-0204 Man in the Middle Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/71936
OpenSSL CVE-2014-3570 Unspecified Security Weakness
2015-06-04
http://www.securityfocus.com/bid/71939
Oracle Java SE CVE-2015-0412 Remote Java SE Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72136
Oracle Java SE CVE-2015-0408 Remote Java SE Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72140
Oracle Java SE CVE-2015-0437 Remote Java SE Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72146
Oracle Java SE CVE-2015-0403 Local Java SE Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72148
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72169
Oracle Java SE CVE-2015-0459 Remote Security Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74083
Oracle Java SE CVE-2015-0480 Remote Security Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74104
Exploit
D-Link DSL-2780B DLink_1.01.14 - Unauthenticated Remote DNS Change
TP-Link ADSL2+ TD-W8950ND - Unauthenticated Remote DNS Change
D-Link DSL-2730B AU_2.01 - Authentication Bypass DNS Change
D-Link DSL-526B ADSL2+ AU_2.01 - Unauthenticated Remote DNS Change
5.6.2015
Bugtraq
1 Click Extract Audio v2.3.6 - Activex Buffer Overflow 2015-06-05
Vulnerability Lab (research vulnerability-lab com)
1 Click Audio Converter v2.3.6 - Activex Buffer Overflow 2015-06-05
Vulnerability Lab (research vulnerability-lab com)
1 Click Audio Converter v2.3.6 - Activex Buffer Overflow 2015-06-05
Vulnerability Lab (research vulnerability-lab com)
Wing FTP Server Remote Code Execution vulnerability 2015-06-05
alex_haynes outlook com
[CVE-2015-4108] Wing FTP Server Cross-site Request Forgery vulnerabilities 2015-06-05
alex_haynes outlook com
CA20150604-01: Security Notice for CA Common Services 2015-06-04
Kotas, Kevin J (Kevin Kotas ca com)
[security bulletin] HPSBGN03343 rev.1 - HP WebInspect, Remote Unauthorized Access 2015-06-04
security-alert hp com
CVE-2015-4153 - WordPress zM Ajax Login & Register Plugin [Local File Inclusion] 2015-06-04
pan vagenas gmail com
Malware
TrojanDownloader:Win32/Noucti.A
Phishing
Verfaction Paypal | 4th June 2015 |
Chase Bank | 3rd June 2015 |
Vulnerebility
Multiple Cisco Products CVE-2015-0744 Denial of Service Vulnerability
2015-06-29
http://www.securityfocus.com/bid/74916
Linux Kernel 'fs/pipe.c' Multiple Local Memory Corruption Vulnerabilities
2015-06-04
http://www.securityfocus.com/bid/74951
Apache Tomcat 'mod_jk' CVE-2014-8111 Information Disclosure Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74265
Cisco AnyConnect Secure Mobility Client CVE-2015-0761 Local Privilege Escalation Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74954
Attic 'attic/archiver.py' Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74821
WordPress wp-smiley Plugin HTML Injection and Cross Site Request Forgery Vulnerabilities
2015-06-04
http://www.securityfocus.com/bid/74914
PHP 'SoapClient's __call()' Function Type Confusion Remote Code Execution Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73357
NTP 'ntp_io.c' Authentication Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72584
NTP 'ntp_crypto.c' Information Disclosure Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72583
cURL/libcURL CVE-2015-3148 Remote Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74301
cURL/libcURL NTLM connection CVE-2015-3143 Remote Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74299
cURL/libcURL CVE-2015-3153 Information Disclosure Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74408
OpenSSL CVE-2015-0209 Remote Memory Corruption Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73239
OpenSSL CVE-2015-0293 Denial of Service Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73232
OpenSSL 'pk7_doit.c' NULL Pointer Dereference Denial of Service Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73231
OpenSSL CVE-2015-0288 Denial of Service Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73237
OpenSSL 'tasn_dec.c' Remote Memory Corruption Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73227
OpenSSL 'ASN1_TYPE_cmp()' Function Denial of Service Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73225
Oracle Java SE CVE-2015-0383 Local Java SE, Java SE Embedded, JRockit Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72155
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72165
IBM Security Directory Server CVE-2015-0138 Man in the Middle Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/73326
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72169
OpenSSL CVE-2015-0204 Man in the Middle Security Bypass Vulnerability
2015-06-04
http://www.securityfocus.com/bid/71936
OpenSSL CVE-2014-3570 Unspecified Security Weakness
2015-06-04
http://www.securityfocus.com/bid/71939
Oracle Java SE CVE-2015-0403 Local Java SE Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72148
Oracle Java SE CVE-2015-0480 Remote Security Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74104
Oracle Java SE CVE-2015-0459 Remote Security Vulnerability
2015-06-04
http://www.securityfocus.com/bid/74083
Oracle Java SE CVE-2015-0412 Remote Java SE Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72136
Oracle Java SE CVE-2015-0408 Remote Java SE Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72140
Oracle Java SE CVE-2015-0437 Remote Java SE Vulnerability
2015-06-04
http://www.securityfocus.com/bid/72146
Exploit
JDownloader 2 Beta - Directory Traversal Vulnerability
Seagate Central 2014.0410.0026-F Remote Root Exploit
Wordpress Really Simple Guest Post <= 1.0.6 - File Include
WordPress zM Ajax Login & Register Plugin 1.0.9 Local File Inclusion
1 Click Audio Converter 2.3.6 - Activex Buffer Overflow
1 Click Extract Audio 2.3.6 - Activex Buffer Overflow
Jildi FTP Client 1.5.6 (SEH) BOF
ZTE AC 3633R USB Modem Multiple Vulnerabilities
4.6.2015
Bugtraq
ESA-2015-091: RSA® Web Threat Detection Cross-Site Request Forgery Vulnerability 2015-06-03
Security Alert (Security_Alert emc com)
Local PHP File Inclusion in ResourceSpace 2015-06-03
High-Tech Bridge Security Research (advisory htbridge ch)
Jildi FTP Client 1.5.2 b1138 - Buffer Overflow Vulnerability 2015-06-03
banana88 inbox com
Safari Address Spoofing - Impact, Code, How It Works, History 2015-06-03
David Leo (david leo deusen co uk)
[SECURITY] [DSA 3249-2] jqueryui security update 2015-06-02
Sebastien Delafond (seb debian org)
Malware
TrojanDownloader:Win32/Upatre.BJ
TrojanDownloader:Win32/Upatre.BG
Ransom:Win32/Roduk.A!dllDefCon
Ransom:PowerShell/Roduk.ADefCon
TrojanDownloader:PowerShell/Roduk.ADefCon
Phishing
Chase Bank | 3rd June 2015 |
Apple | 3rd June 2015 |
Your Apple ID has expired in | |
NatWest | 2nd June 2015 |
Vulnerebility
Exploit
vfront-0.99.2 CSRF & Persistent XSS
WebDrive 12.2 (B4172) - Buffer Overflow Vulnerability
Jildi FTP Client Buffer Overflow PoC
3.6.2015
Bugtraq
[SECURITY] [DSA 3277-1] wireshark security update 2015-06-02
Moritz Muehlenhoff (jmm debian org)
WebDrive 12.2 (B4172) - Buffer Overflow Vulnerability 2015-06-02
Vulnerability Lab (research vulnerability-lab com)
vfront-0.99.2 CSRF & Persistent XSS 2015-06-02
apparitionsec gmail com
Enhanced SQL Portal 5.0.7961 XSS Vulnerability 2015-06-02
apparitionsec gmail com
Freebox OS Web interface 3.0.2 XSS, CSRF 2015-06-01
huyngocbk gmail com
t2'15: Call for Papers 2015 (Helsinki / Finland) 2015-06-01
Tomi Tuominen (tomi tuominen t2 fi)
Malware
Ransom:PowerShell/Polock.A PWS:Win32/OnLineGames.AH
Phishing
Apple | 3rd June 2015 |
Your Apple ID has expired in | |
NatWest | 2nd June 2015 |
limited.services@paypal.com | 2nd June 2015 |
Joey | 1st June 2015 |
Vulnerebility
Exploit
PonyOS <= 3.0 - tty ioctl() Local Kernel Exploit
2.6.2015
Bugtraq
CVE-2015-4039 - WordPress WP Membership plugin [Stored XSS] 2015-06-01
pan vagenas gmail com
CVE-2015-4038 - WordPress WP Membership plugin [Privilege escalation] 2015-06-01
pan vagenas gmail com
WebDrive Buffer OverFlow PoC 2015-06-01
banana88 inbox com
Ektron CMS 9.10 SP1 - XSS Vulnerability 2015-05-31
jerold v00d00sec com
Ektron CMS 9.10 SP1 - CSRF Vulnerability 2015-05-31
jerold v00d00sec com
[SECURITY] [DSA 3276-1] symfony security update 2015-05-31
Moritz Muehlenhoff (jmm debian org)
[SECURITY] [DSA 3269-2] postgresql-9.1 regression update 2015-05-31
Salvatore Bonaccorso (carnil debian org)
[SECURITY] [DSA 3275-1] fusionforge security update 2015-05-30
Salvatore Bonaccorso (carnil debian org)
Malware
Phishing
limited.services@paypal.com | 2nd June 2015 |
Joey | 1st June 2015 |
Ms. Carman L. Lapointe | 1st June 2015 |
Paypal | 1st June 2015 |
iTunes | 1st June 2015 |
Service ✔ | 1st June 2015 |
Vulnerebility
WordPress ReFlex Gallery Plugin 'php.php' Arbitrary File Upload Vulnerability
2015-05-30
http://www.securityfocus.com/bid/57100
Oracle Java SE CVE-2015-0478 Remote Security Vulnerability
2015-05-30
http://www.securityfocus.com/bid/74147
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-05-30
http://www.securityfocus.com/bid/70574
OpenSSL DTLS CVE-2014-3505 Remote Denial of Service Vulnerability
2015-05-30
http://www.securityfocus.com/bid/69081
OpenSSL Session Ticket Memory Leak Remote Denial of Service Vulnerability
2015-05-30
http://www.securityfocus.com/bid/70586
OpenSSL DTLS CVE-2014-3510 Remote Denial of Service Vulnerability
2015-05-30
http://www.securityfocus.com/bid/69082
OpenSSL DTLS CVE-2014-3506 Remote Denial of Service Vulnerability
2015-05-30
http://www.securityfocus.com/bid/69076
OpenSSL DTLS CVE-2014-3507 Remote Denial of Service Vulnerability
2015-05-30
http://www.securityfocus.com/bid/69078
SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2015-05-30
http://www.securityfocus.com/bid/73684
Oracle Java SE CVE-2015-0488 Remote Security Vulnerability
2015-05-30
http://www.securityfocus.com/bid/74111
IBM WebSphere Application Server CVE-2015-1920 Remote Code Execution Vulnerability
2015-05-30
http://www.securityfocus.com/bid/74439
OpenSSL CVE-2015-0205 Man in the Middle Security Bypass Vulnerability
2015-05-30
http://www.securityfocus.com/bid/71941
OpenSSL Certificate Fingerprints CVE-2014-8275 Local Security Bypass Vulnerability
2015-05-30
http://www.securityfocus.com/bid/71935
OpenSSL CVE-2014-3572 Security Bypass Vulnerability
2015-05-30
http://www.securityfocus.com/bid/71942
OpenSSL 'dtls1_buffer_record()' Function Denial of Service Vulnerability
2015-05-30
http://www.securityfocus.com/bid/71940
OpenSSL CVE-2014-3570 Unspecified Security Weakness
2015-05-30
http://www.securityfocus.com/bid/71939
OpenSSL 'dtls1_get_record()' Function NULL Pointer Dereference Denial of Service Vulnerability
2015-05-30
http://www.securityfocus.com/bid/71937
OpenSSL 'ssl23_get_client_hello()' Function NULL Pointer Dereference Denial of Service Vulnerability
2015-05-30
http://www.securityfocus.com/bid/71934
IBM Security Directory Server CVE-2015-0138 Man in the Middle Security Bypass Vulnerability
2015-05-30
http://www.securityfocus.com/bid/73326
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-05-30
http://www.securityfocus.com/bid/72165
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-05-30
http://www.securityfocus.com/bid/72169
Oracle Java SE CVE-2014-6512 IP Address Spoofing Vulnerability
2015-05-30
http://www.securityfocus.com/bid/70567
Oracle Java SE CVE-2014-6457 Remote Security Vulnerability
2015-05-30
http://www.securityfocus.com/bid/70538
PHPWind Cross Site Scripting and Open Redirection Vulnerabilities
2015-05-30
http://www.securityfocus.com/bid/74804
QEMU 'hw/block/fdc.c' VENOM Remote Memory Corruption Vulnerability
2015-05-30
http://www.securityfocus.com/bid/74640
WordPress church_admin Plugin 'address' Field HTML Injection Vulnerability
2015-05-30
http://www.securityfocus.com/bid/74782
Drupal Entity API Module Field Labels Cross Site Scripting Vulnerability
2015-05-30
http://www.securityfocus.com/bid/72806
Red Hat SETroubleShoot CVE-2015-1815 Remote Privilege Escalation Vulnerability
2015-05-30
http://www.securityfocus.com/bid/73374
openSUSE OSC 'osc/core.py' Command Injection Vulnerability
2015-05-30
http://www.securityfocus.com/bid/73114
slapi-nis Directory Server Plugin CVE-2015-0283 Multiple Remote Denial of Service Vulnerabilities
2015-05-30
http://www.securityfocus.com/bid/73377
Exploit
Realtek SDK Miniigd UPnP SOAP Command Execution
Airties login-cgi Buffer Overflow
IBM Security AppScan Standard <= 9.0.2 - OLE Automation Array Remote Code Execution
WebDrive 12.2 (Build # 4172) - Buffer OverFlow PoC
D-Link Devices HNAP SOAPAction-Header Command Execution
WordPress dzs-zoomsounds Plugins <= 2.0 - Remote File Upload Vulnerability
Aruba ClearPass Policy Manager Stored XSS
PonyOS <= 3.0 - VFS Permissions Exploit
PonyOS <= 3.0 - ELF Loader Privilege Escalation
1.6.2015
Bugtraq
CVE-2015-4039 - WordPress WP Membership plugin [Stored XSS] 2015-06-01
pan vagenas gmail com
CVE-2015-4038 - WordPress WP Membership plugin [Privilege escalation] 2015-06-01
pan vagenas gmail com
WebDrive Buffer OverFlow PoC 2015-06-01
banana88 inbox com
Ektron CMS 9.10 SP1 - XSS Vulnerability 2015-05-31
jerold v00d00sec com
Ektron CMS 9.10 SP1 - CSRF Vulnerability 2015-05-31
jerold v00d00sec com
[SECURITY] [DSA 3276-1] symfony security update 2015-05-31
Moritz Muehlenhoff (jmm debian org)
[SECURITY] [DSA 3269-2] postgresql-9.1 regression update 2015-05-31
Salvatore Bonaccorso (carnil debian org)
[SECURITY] [DSA 3275-1] fusionforge security update 2015-05-30
Salvatore Bonaccorso (carnil debian org)
Malware
Phishing
Paypal | 1st June 2015 |
iTunes | 1st June 2015 |
Service ✔ | 1st June 2015 |
EARTHLINK | 1st June 2015 |
Vulnerebility
WordPress ReFlex Gallery Plugin 'php.php' Arbitrary File Upload Vulnerability
2015-05-30
http://www.securityfocus.com/bid/57100
Oracle Java SE CVE-2015-0478 Remote Security Vulnerability
2015-05-30
http://www.securityfocus.com/bid/74147
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-05-30
http://www.securityfocus.com/bid/70574
OpenSSL DTLS CVE-2014-3505 Remote Denial of Service Vulnerability
2015-05-30
http://www.securityfocus.com/bid/69081
OpenSSL Session Ticket Memory Leak Remote Denial of Service Vulnerability
2015-05-30
http://www.securityfocus.com/bid/70586
OpenSSL DTLS CVE-2014-3510 Remote Denial of Service Vulnerability
2015-05-30
http://www.securityfocus.com/bid/69082
OpenSSL DTLS CVE-2014-3506 Remote Denial of Service Vulnerability
2015-05-30
http://www.securityfocus.com/bid/69076
OpenSSL DTLS CVE-2014-3507 Remote Denial of Service Vulnerability
2015-05-30
http://www.securityfocus.com/bid/69078
SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2015-05-30
http://www.securityfocus.com/bid/73684
Oracle Java SE CVE-2015-0488 Remote Security Vulnerability
2015-05-30
http://www.securityfocus.com/bid/74111
IBM WebSphere Application Server CVE-2015-1920 Remote Code Execution Vulnerability
2015-05-30
http://www.securityfocus.com/bid/74439
OpenSSL CVE-2015-0205 Man in the Middle Security Bypass Vulnerability
2015-05-30
http://www.securityfocus.com/bid/71941
OpenSSL Certificate Fingerprints CVE-2014-8275 Local Security Bypass Vulnerability
2015-05-30
http://www.securityfocus.com/bid/71935
OpenSSL CVE-2014-3572 Security Bypass Vulnerability
2015-05-30
http://www.securityfocus.com/bid/71942
OpenSSL 'dtls1_buffer_record()' Function Denial of Service Vulnerability
2015-05-30
http://www.securityfocus.com/bid/71940
OpenSSL CVE-2014-3570 Unspecified Security Weakness
2015-05-30
http://www.securityfocus.com/bid/71939
OpenSSL 'dtls1_get_record()' Function NULL Pointer Dereference Denial of Service Vulnerability
2015-05-30
http://www.securityfocus.com/bid/71937
OpenSSL 'ssl23_get_client_hello()' Function NULL Pointer Dereference Denial of Service Vulnerability
2015-05-30
http://www.securityfocus.com/bid/71934
IBM Security Directory Server CVE-2015-0138 Man in the Middle Security Bypass Vulnerability
2015-05-30
http://www.securityfocus.com/bid/73326
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-05-30
http://www.securityfocus.com/bid/72165
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-05-30
http://www.securityfocus.com/bid/72169
Oracle Java SE CVE-2014-6512 IP Address Spoofing Vulnerability
2015-05-30
http://www.securityfocus.com/bid/70567
Oracle Java SE CVE-2014-6457 Remote Security Vulnerability
2015-05-30
http://www.securityfocus.com/bid/70538
PHPWind Cross Site Scripting and Open Redirection Vulnerabilities
2015-05-30
http://www.securityfocus.com/bid/74804
QEMU 'hw/block/fdc.c' VENOM Remote Memory Corruption Vulnerability
2015-05-30
http://www.securityfocus.com/bid/74640
WordPress church_admin Plugin 'address' Field HTML Injection Vulnerability
2015-05-30
http://www.securityfocus.com/bid/74782
Drupal Entity API Module Field Labels Cross Site Scripting Vulnerability
2015-05-30
http://www.securityfocus.com/bid/72806
Red Hat SETroubleShoot CVE-2015-1815 Remote Privilege Escalation Vulnerability
2015-05-30
http://www.securityfocus.com/bid/73374
openSUSE OSC 'osc/core.py' Command Injection Vulnerability
2015-05-30
http://www.securityfocus.com/bid/73114
slapi-nis Directory Server Plugin CVE-2015-0283 Multiple Remote Denial of Service Vulnerabilities
2015-05-30
http://www.securityfocus.com/bid/73377
Exploit
IBM Security AppScan Standard <= 9.0.2 - OLE Automation Array Remote Code Execution
WebDrive 12.2 (Build # 4172) - Buffer OverFlow PoC
WordPress dzs-zoomsounds Plugins <= 2.0 - Remote File Upload Vulnerability
PonyOS <= 3.0 - VFS Permissions Exploit
PonyOS <= 3.0 - ELF Loader Privilege Escalation
29.5.2015
Bugtraq
[security bulletin] HPSBHF03340 rev.1 - HP ThinPro Linux and HP Smart Zero Core running HP Easy Setup Wizard, Local Unauthorized Access, Elevation of Privilege 2015-05-28
security-alert hp com
Audacity 2.0.5 contains Arbitrary DLL Injection Code Execution 2015-05-28
mystyle_rahul yahoo co in
[SEARCH-LAB advisory] More than fifty vulnerabilities in D-Link NAS and NVR devices 2015-05-28
Gergely Eberhardt (gergely eberhardt search-lab hu)
DbNinja 3.2.6 Flash XSS Vulnerabilities 2015-05-28
apparitionsec gmail com
DbNinja 3.2.6 Flash XSS Vulnerabilities 2015-05-28
apparitionsec gmail com
Malware
Phishing
WellsFargo Alert | 29th May 2015 |
PayPal | 29th May 2015 |
Your account PayPal is limited | |
Barclays Bank | 28th May 2015 |
Sun Trust Banking | 27th May 2015 |
Apple | 27th May 2015 |
Vulnerebility
Exploit
28.5.2015
Bugtraq
[Onapsis Security Advisory 2015-006] SAP HANA Information Disclosure via SQL IMPORT FROM statement 2015-05-27
Onapsis Research Labs (research onapsis com)
[Onapsis Security Advisory 2015-007] SAP HANA Log Injection Vulnerability 2015-05-27
Onapsis Research Labs (research onapsis com)
Thycotic Password Manager Secret Server iOS Application - MITM SSL Certificate Vulnerability 2015-05-27
David Coomber (davidcoomber infosec gmail com)
[SECURITY] [DSA 3268-2] ntfs-3g security update 2015-05-26
Salvatore Bonaccorso (carnil debian org)
CVE-2015-4084 - WordPress Free Counter Plugin [Stored XSS] 2015-05-26
pan vagenas gmail com
[SECURITY] [DSA 3273-1] tiff security update 2015-05-25
Moritz Muehlenhoff (jmm debian org)
Synology Photo Station multiple Cross-Site Scripting vulnerabilities 2015-05-25
Securify B.V. (lists securify nl)
Reflected Cross-Site Scripting in Synology DiskStation Manager 2015-05-25
Securify B.V. (lists securify nl)
Command injection vulnerability in Synology Photo Station 2015-05-25
Securify B.V. (lists securify nl)
Malware
Phishing
Sun Trust Banking | 27th May 2015 |
Apple | 27th May 2015 |
service@paypal.co.uk | 26th May 2015 |
Apple | 26th May 2015 |
Skype | 25th May 2015 |
Vulnerebility
Drupal Views Module Access Bypass Vulnerability
2015-05-29
http://www.securityfocus.com/bid/74462
Exploit
WordPress Plugin Free Counter 1.1 Stored XSS
27.5.2015
Bugtraq
Thycotic Password Manager Secret Server iOS Application - MITM SSL Certificate Vulnerability 2015-05-27
David Coomber (davidcoomber infosec gmail com)
[SECURITY] [DSA 3268-2] ntfs-3g security update 2015-05-26
Salvatore Bonaccorso (carnil debian org)
CVE-2015-4084 - WordPress Free Counter Plugin [Stored XSS] 2015-05-26
pan vagenas gmail com
[SECURITY] [DSA 3273-1] tiff security update 2015-05-25
Moritz Muehlenhoff (jmm debian org)
Synology Photo Station multiple Cross-Site Scripting vulnerabilities 2015-05-25
Securify B.V. (lists securify nl)
Reflected Cross-Site Scripting in Synology DiskStation Manager 2015-05-25
Securify B.V. (lists securify nl)
Command injection vulnerability in Synology Photo Station 2015-05-25
Securify B.V. (lists securify nl)
[SECURITY] [DSA 3265-2] zendframework regression update 2015-05-24
Alessandro Ghedini (ghedo debian org)
[SECURITY] [DSA 3272-1] ipsec-tools security update 2015-05-23
Salvatore Bonaccorso (carnil debian org)
Malware
Phishing
Apple | 27th May 2015 |
service@paypal.co.uk | 26th May 2015 |
Apple | 26th May 2015 |
Vulnerebility
Drupal Views Module Access Bypass Vulnerability
2015-05-29
http://www.securityfocus.com/bid/74462
php-gd 'gdxpm.c' NULL Pointer Dereference Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/66233
PHP DNS TXT Record Handling Heap Buffer Overflow Vulnerability
2015-05-25
http://www.securityfocus.com/bid/68007
PHP OpenSSL Extension 'openssl_x509_parse()' Remote Memory Corruption Vulnerability
2015-05-25
http://www.securityfocus.com/bid/64225
PHP SSL Certificate Validation CVE-2013-4248 Security Bypass Vulnerability
2015-05-25
http://www.securityfocus.com/bid/61776
OpenSSL CVE-2014-3509 Remote Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/69084
IBM Security Directory Server CVE-2015-0138 Man in the Middle Security Bypass Vulnerability
2015-05-25
http://www.securityfocus.com/bid/73326
SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2015-05-25
http://www.securityfocus.com/bid/73684
IPsec-Tools NULL Pointer Dereference Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/74739
OpenSSL 'ASN1_TYPE_cmp()' Function Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/73225
NVIDIA Display Driver CVE-2015-1170 Local Privilege Escalation Vulnerability
2015-05-25
http://www.securityfocus.com/bid/73442
OpenSSL DTLS CVE-2014-3506 Remote Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/69076
OpenSSL SRP CVE-2014-3512 Remote Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/69083
OpenSSL CVE-2014-3508 Information Disclosure Vulnerability
2015-05-25
http://www.securityfocus.com/bid/69075
OpenSSL NULL Pointer Dereference CVE-2014-5139 Local Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/69077
OpenSSL DTLS CVE-2014-3507 Remote Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/69078
OpenSSL CVE-2014-3511 Man in the Middle Security Bypass Vulnerability
2015-05-25
http://www.securityfocus.com/bid/69079
OpenSSL DTLS CVE-2014-3510 Remote Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/69082
t1utils Buffer Overflow Vulnerability
2015-05-25
http://www.securityfocus.com/bid/74674
WordPress Landing Pages Plugin Unspecified SQL Injection and Cross Site Scripting Vulnerabilities
2015-05-25
http://www.securityfocus.com/bid/74777
Wordpress Roomcloud Plugin 'roomcloud.php' Multiple Cross Site Scripting Vulnerabilities
2015-05-25
http://www.securityfocus.com/bid/74580
PgBouncer src/client.c' Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/74751
WordPress GigPress Plugin 'handlers.php' Multiple SQL Injection Vulnerabilities
2015-05-25
http://www.securityfocus.com/bid/74747
WordPress NewStatPress Plugin Unspecified SQL Injection and Cross Site Scripting Vulnerabilities
2015-05-25
http://www.securityfocus.com/bid/74773
Ruby on Rails Action Pack Comp CVE-2014-7829 Incomplete Fix Information Disclosure Vulnerability
2015-05-25
http://www.securityfocus.com/bid/71183
OpenSSL CVE-2015-0204 Man in the Middle Security Bypass Vulnerability
2015-05-25
http://www.securityfocus.com/bid/71936
Google Chrome Prior to 43.0.2357.65 Multiple Security Vulnerabilities
2015-05-25
http://www.securityfocus.com/bid/74723
Google Chrome CVE-2015-1265 Multiple Unspecified Security Vulnerabilities
2015-05-25
http://www.securityfocus.com/bid/74727
OpenSSL CVE-2015-0209 Remote Memory Corruption Vulnerability
2015-05-25
http://www.securityfocus.com/bid/73239
OpenSSL CVE-2014-3570 Unspecified Security Weakness
2015-05-25
http://www.securityfocus.com/bid/71939
Exploit
WordPress Plugin Free Counter 1.1 Stored XSS
Acoustica Pianissimo 1.0 Build 12 (Registration ID) Buffer Overflow PoC
26.5.2015
Bugtraq
Synology Photo Station multiple Cross-Site Scripting vulnerabilities 2015-05-25
Securify B.V. (lists securify nl)
Reflected Cross-Site Scripting in Synology DiskStation Manager 2015-05-25
Securify B.V. (lists securify nl)
Command injection vulnerability in Synology Photo Station 2015-05-25
Securify B.V. (lists securify nl)
[SECURITY] [DSA 3265-2] zendframework regression update 2015-05-24
Alessandro Ghedini (ghedo debian org)
[SECURITY] [DSA 3272-1] ipsec-tools security update 2015-05-23
Salvatore Bonaccorso (carnil debian org)
[SECURITY] [DSA 3271-1] nbd security update 2015-05-23
Alessandro Ghedini (ghedo debian org)
Malware
Phishing
Apple | 26th May 2015 |
Skype | 25th May 2015 |
iTunes | 25th May 2015 |
iTunes | 25th May 2015 |
iTunes | 25th May 2015 |
Mercantile | 25th May 2015 |
Vulnerebility
Drupal Views Module Access Bypass Vulnerability
2015-05-29
http://www.securityfocus.com/bid/74462
php-gd 'gdxpm.c' NULL Pointer Dereference Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/66233
PHP DNS TXT Record Handling Heap Buffer Overflow Vulnerability
2015-05-25
http://www.securityfocus.com/bid/68007
PHP OpenSSL Extension 'openssl_x509_parse()' Remote Memory Corruption Vulnerability
2015-05-25
http://www.securityfocus.com/bid/64225
PHP SSL Certificate Validation CVE-2013-4248 Security Bypass Vulnerability
2015-05-25
http://www.securityfocus.com/bid/61776
OpenSSL CVE-2014-3509 Remote Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/69084
IBM Security Directory Server CVE-2015-0138 Man in the Middle Security Bypass Vulnerability
2015-05-25
http://www.securityfocus.com/bid/73326
SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2015-05-25
http://www.securityfocus.com/bid/73684
IPsec-Tools NULL Pointer Dereference Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/74739
OpenSSL 'ASN1_TYPE_cmp()' Function Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/73225
NVIDIA Display Driver CVE-2015-1170 Local Privilege Escalation Vulnerability
2015-05-25
http://www.securityfocus.com/bid/73442
OpenSSL DTLS CVE-2014-3506 Remote Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/69076
OpenSSL SRP CVE-2014-3512 Remote Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/69083
OpenSSL CVE-2014-3508 Information Disclosure Vulnerability
2015-05-25
http://www.securityfocus.com/bid/69075
OpenSSL NULL Pointer Dereference CVE-2014-5139 Local Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/69077
OpenSSL DTLS CVE-2014-3507 Remote Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/69078
OpenSSL CVE-2014-3511 Man in the Middle Security Bypass Vulnerability
2015-05-25
http://www.securityfocus.com/bid/69079
OpenSSL DTLS CVE-2014-3510 Remote Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/69082
t1utils Buffer Overflow Vulnerability
2015-05-25
http://www.securityfocus.com/bid/74674
WordPress Landing Pages Plugin Unspecified SQL Injection and Cross Site Scripting Vulnerabilities
2015-05-25
http://www.securityfocus.com/bid/74777
Wordpress Roomcloud Plugin 'roomcloud.php' Multiple Cross Site Scripting Vulnerabilities
2015-05-25
http://www.securityfocus.com/bid/74580
PgBouncer src/client.c' Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/74751
WordPress GigPress Plugin 'handlers.php' Multiple SQL Injection Vulnerabilities
2015-05-25
http://www.securityfocus.com/bid/74747
WordPress NewStatPress Plugin Unspecified SQL Injection and Cross Site Scripting Vulnerabilities
2015-05-25
http://www.securityfocus.com/bid/74773
Ruby on Rails Action Pack Comp CVE-2014-7829 Incomplete Fix Information Disclosure Vulnerability
2015-05-25
http://www.securityfocus.com/bid/71183
OpenSSL CVE-2015-0204 Man in the Middle Security Bypass Vulnerability
2015-05-25
http://www.securityfocus.com/bid/71936
Google Chrome Prior to 43.0.2357.65 Multiple Security Vulnerabilities
2015-05-25
http://www.securityfocus.com/bid/74723
Google Chrome CVE-2015-1265 Multiple Unspecified Security Vulnerabilities
2015-05-25
http://www.securityfocus.com/bid/74727
OpenSSL CVE-2015-0209 Remote Memory Corruption Vulnerability
2015-05-25
http://www.securityfocus.com/bid/73239
OpenSSL CVE-2014-3570 Unspecified Security Weakness
2015-05-25
http://www.securityfocus.com/bid/71939
Exploit
Wordpress Video Gallery Plugin 2.8 Arbitrary Mail Relay
WordPress NewStatPress Plugin 0.9.8 Multiple Vulnerabilities
WordPress Landing Pages Plugin 1.8.4 Multiple Vulnerabilities
WordPress GigPress Plugin 2.3.8 - SQL Injection
Apache Jackrabbit WebDAV XXE Exploit
Wordpress MailChimp Subscribe Forms 1.1 Remote Code Execution
Wordpress church_admin Plugin 0.800 Stored XSS
Wordpess Simple Photo Gallery 1.7.8 Blind SQL Injection
Sendio ESP Information Disclosure Vulnerability
Clickheat 1.13+ Remote Command Execution
25.5.2015
Bugtraq
[CORE-2015-0010] - Sendio ESP Information Disclosure Vulnerability 2015-05-22
CORE Advisories Team (advisories coresecurity com)
[SECURITY] [DSA 3270-1] postgresql-9.4 security update 2015-05-22
Christoph Berg (myon debian org)
[SECURITY] [DSA 3268-1] ntfs-3g security update 2015-05-22
Salvatore Bonaccorso (carnil debian org)
Malware
Phishing
iTunes | 25th May 2015 |
iTunes | 25th May 2015 |
iTunes | 25th May 2015 |
Mercantile | 25th May 2015 |
Vulnerebility
Drupal Views Module Access Bypass Vulnerability
2015-05-29
http://www.securityfocus.com/bid/74462
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-05-25
http://www.securityfocus.com/bid/72169
Oracle Java SE CVE-2015-0469 Remote Security Vulnerability
2015-05-25
http://www.securityfocus.com/bid/74072
Oracle Java SE CVE-2015-0459 Remote Security Vulnerability
2015-05-25
http://www.securityfocus.com/bid/74083
Oracle Java SE CVE-2015-0491 Remote Security Vulnerability
2015-05-25
http://www.securityfocus.com/bid/74094
Dojo Toolkit CVE-2014-8917 Multiple Cross Site Scripting Vulnerabilities
2015-05-25
http://www.securityfocus.com/bid/72903
CKEditor Preview Plugin CVE-2014-5191 Unspecified Cross Site Scripting Vulnerability
2015-05-25
http://www.securityfocus.com/bid/69161
SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2015-05-25
http://www.securityfocus.com/bid/73684
OpenSSL Session Ticket Memory Leak Remote Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/70586
OpenSSL CVE-2015-0293 Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/73232
OpenSSL CVE-2015-0209 Remote Memory Corruption Vulnerability
2015-05-25
http://www.securityfocus.com/bid/73239
OpenSSL CVE-2015-0288 Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/73237
OpenSSL 'ASN1_TYPE_cmp()' Function Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/73225
GNU glibc 'swscanf' Local Heap Buffer Overflow Vulnerability
2015-05-25
http://www.securityfocus.com/bid/72428
GNU glibc 'send_dg()' Function Local Information Disclosure Weakness
2015-05-25
http://www.securityfocus.com/bid/72844
FUSE CVE-2015-3202 Local Privilege Escalation Vulnerability
2015-05-25
http://www.securityfocus.com/bid/74765
IBM Security Directory Server CVE-2015-0138 Man in the Middle Security Bypass Vulnerability
2015-05-25
http://www.securityfocus.com/bid/73326
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-05-25
http://www.securityfocus.com/bid/72165
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-05-25
http://www.securityfocus.com/bid/70574
Oracle Java SE CVE-2014-6457 Remote Security Vulnerability
2015-05-25
http://www.securityfocus.com/bid/70538
Multiple OleumTech Products CVE-2014-2361 Local Security Bypass Vulnerability
2015-05-25
http://www.securityfocus.com/bid/68795
Multiple OleumTech Products CVE-2014-2362 Predictable Random Number Generator Weakness
2015-05-25
http://www.securityfocus.com/bid/68800
OleumTech WIO DH2 Wireless Gateway CVE-2014-2360 Remote Denial of Service Vulnerability
2015-05-25
http://www.securityfocus.com/bid/68797
X.Org libXfont 'bitmap/bdfread.c' Out of Bounds Local Buffer Overflow Vulnerability
2015-05-25
http://www.securityfocus.com/bid/73277
X.Org X Server Protocol Handling Out-of-Bounds Multiple Denial of Service Vulnerabilities
2015-05-25
http://www.securityfocus.com/bid/71603
OpenSSL CVE-2014-3570 Unspecified Security Weakness
2015-05-25
http://www.securityfocus.com/bid/71939
MIT Kerberos 5 CVE-2014-5355 Multiple Denial of Service Vulnerabilities
2015-05-25
http://www.securityfocus.com/bid/74042
OpenSSL Certificate Fingerprints CVE-2014-8275 Local Security Bypass Vulnerability
2015-05-25
http://www.securityfocus.com/bid/71935
OpenSSL '/evp/encode.c' Remote Memory Corruption Vulnerability
2015-05-25
http://www.securityfocus.com/bid/73228
WordPress WP Membership Plugin Multiple Security Vulnerabilities
2015-05-25
http://www.securityfocus.com/bid/74766
Exploit
FTP Media Server 3.0 - Authentication Bypass and Denial of Service
22.5.2015
Bugtraq
[SECURITY] [DSA 3266-1] fuse security update 2015-05-21
Salvatore Bonaccorso (carnil debian org)
Webgrind XSS vulnerability 2015-05-21
hyp3rlinx gmail com
CVE-2015-1833 (Jackrabbit WebDAV XXE vulnerability) 2015-05-21
Julian Reschke (julian reschke greenbytes de)
CVE for Apple's ECDHE-ECDSA SecureTransport bug? 2015-05-20
Jeffrey Walton (noloader gmail com)
[SECURITY] [DSA 3261-2] libmodule-signature-perl regression update 2015-05-20
Salvatore Bonaccorso (carnil debian org)
Malware
Phishing
Barclays | 21st May 2015 |
Halifax Bank | 21st May 2015 |
PayPal Inc, | 21st May 2015 |
Vulnerebility
Drupal Views Module Access Bypass Vulnerability
2015-05-29
http://www.securityfocus.com/bid/74462
ownCloud CVE-2015-3013 Security Bypass Vulnerability
2015-05-25
http://www.securityfocus.com/bid/74451
WordPress WP Symposium Plugin CVE-2015-3325 SQL Injection Vulnerability
2015-05-22
http://www.securityfocus.com/bid/74237
Oracle Java SE CVE-2015-0478 Remote Security Vulnerability
2015-05-22
http://www.securityfocus.com/bid/74147
Oracle Java SE CVE-2015-0459 Remote Security Vulnerability
2015-05-22
http://www.securityfocus.com/bid/74083
SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2015-05-22
http://www.securityfocus.com/bid/73684
Microsoft Windows GDI+ CVE-2015-1671 TrueType Font Handling Remote Code Execution Vulnerability
2015-05-22
http://www.securityfocus.com/bid/74490
Sun J2SE Software Development Kit Java Archive Tool Directory Traversal Vulnerability
2015-05-22
http://www.securityfocus.com/bid/13083
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-05-22
http://www.securityfocus.com/bid/70574
IBM Security Directory Server CVE-2015-0138 Man in the Middle Security Bypass Vulnerability
2015-05-22
http://www.securityfocus.com/bid/73326
Oracle Java SE CVE-2015-0469 Remote Security Vulnerability
2015-05-22
http://www.securityfocus.com/bid/74072
Oracle Java SE CVE-2015-0491 Remote Security Vulnerability
2015-05-22
http://www.securityfocus.com/bid/74094
Oracle Java SE CVE-2015-0480 Remote Security Vulnerability
2015-05-22
http://www.securityfocus.com/bid/74104
Oracle Java SE CVE-2015-0488 Remote Security Vulnerability
2015-05-22
http://www.securityfocus.com/bid/74111
Oracle Java SE CVE-2015-0477 Remote Security Vulnerability
2015-05-22
http://www.securityfocus.com/bid/74119
Oracle Java SE CVE-2015-0458 Remote Security Vulnerability
2015-05-22
http://www.securityfocus.com/bid/74141
Elasticsearch CVE-2015-3337 Directory Traversal Vulnerability
2015-05-22
http://www.securityfocus.com/bid/74353
Microsoft Windows GDI+ CVE-2015-1670 OpenType Font Parsing Information Disclosure Vulnerability
2015-05-22
http://www.securityfocus.com/bid/74485
IBM SDK CVE-2015-1914 Sandbox Security Bypass Vulnerability
2015-05-22
http://www.securityfocus.com/bid/74645
Google Chrome Prior to 43.0.2357.65 Multiple Security Vulnerabilities
2015-05-22
http://www.securityfocus.com/bid/74723
Google V8 Prior to 4.3.61.21 Multiple Unspecified Security Vulnerabilities
2015-05-22
http://www.securityfocus.com/bid/74730
OpenSSL Certificate Fingerprints CVE-2014-8275 Local Security Bypass Vulnerability
2015-05-22
http://www.securityfocus.com/bid/71935
OpenSSL CVE-2015-0204 Man in the Middle Security Bypass Vulnerability
2015-05-22
http://www.securityfocus.com/bid/71936
OpenSSL 'dtls1_get_record()' Function NULL Pointer Dereference Denial of Service Vulnerability
2015-05-22
http://www.securityfocus.com/bid/71937
OpenSSL CVE-2014-3570 Unspecified Security Weakness
2015-05-22
http://www.securityfocus.com/bid/71939
OpenSSL 'dtls1_buffer_record()' Function Denial of Service Vulnerability
2015-05-22
http://www.securityfocus.com/bid/71940
OpenSSL CVE-2015-0205 Man in the Middle Security Bypass Vulnerability
2015-05-22
http://www.securityfocus.com/bid/71941
OpenSSL CVE-2014-3572 Security Bypass Vulnerability
2015-05-22
http://www.securityfocus.com/bid/71942
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-05-22
http://www.securityfocus.com/bid/72169
Google Chrome CVE-2015-1265 Multiple Unspecified Security Vulnerabilities
2015-05-22
http://www.securityfocus.com/bid/74727
Exploit
Microsoft Windows - Local Privilege Escalation (MS15-051)
Windows - CNG.SYS Kernel Security Feature Bypass PoC (MS15-052)
Windows 8.0 - 8.1 x64 - TrackPopupMenu Privilege Escalation (MS14-058)
Forma LMS 1.3 Multiple SQL Injection Vulnerabilities
WordPress WP Symposium Plugin 15.1 SQL Injection Vulnerability
21.5.2015
Bugtraq
[security bulletin] HPSBUX03333 SSRT102029 rev.1 - HP-UX Running NTP, Remote Denial of Service (DoS), or Other Vulnerabilities 2015-05-20
security-alert hp com
[security bulletin] HPSBUX03334 SSRT102000 rev.1 - HP-UX Running OpenSSL, Remote Denial of Service (DoS) and Other Vulnerabilities 2015-05-20
security-alert hp com
Eisbär SCADA (All Versions - iOS, Android & W8) - Persistent UI Vulnerability 2015-05-20
Vulnerability Lab (research vulnerability-lab com)
Stored XSS in WP Photo Album Plus WordPress Plugin 2015-05-20
High-Tech Bridge Security Research (advisory htbridge ch)
WISE-FTP Software v8.0.2 - DLL Hijacking Vulnerability 2015-05-20
Vulnerability Lab (research vulnerability-lab com)
[SECURITY] [DSA 3265-1] zendframework security update 2015-05-20
David Prévot (david tilapin org)
ManageEngine EventLog Analyzer V:10.0 CSRF Vulnerability 2015-05-19
akashchavan0708 gmail com
Staff FTP v3.04 Software - DLL Hijacking Vulnerability 2015-05-19
metacom27 gmail com
[SECURITY] [DSA 3263-1] proftpd-dfsg security update 2015-05-19
Sebastien Delafond (seb debian org)
Staff FTP v3.04 Software - DLL Hijacking Vulnerability 2015-05-20
Vulnerability Lab (research vulnerability-lab com)
HiDisk 2.4 iOS - (currentFolderPath) Persistent Vulnerability 2015-05-20
Vulnerability Lab (research vulnerability-lab com)
[SECURITY] [DSA 3264-1] icedove security update 2015-05-19
Moritz Muehlenhoff (jmm debian org)
[security bulletin] HPSBGN03286 rev.1 - HP LoadRunner, Buffer Overflow 2015-05-19
security-alert hp com
APPLE-SA-2015-05-19-1 Watch OS 1.0.1 2015-05-19
Apple Product Security (product-security-noreply lists apple com)
[security bulletin] HPSBPI03322 rev.1 - HP Access Control Software, Local Unauthorized Access 2015-05-19
security-alert hp com
[SECURITY] [DSA 3175-2] kfreebsd-9 security update 2015-05-18
Alessandro Ghedini (ghedo debian org)
WISE-FTP Software v8.0.2 - DLL Hijacking Vulnerability 2015-05-19
metacom27 gmail com
iClassSchedule 1.6 iOS & Android - Persistent UI Vulnerability 2015-05-18
Vulnerability Lab (research vulnerability-lab com)
[SECURITY] [DSA 3262-1] xen security update 2015-05-18
Moritz Muehlenhoff (jmm debian org)
OYO File Manager 1.1 iOS&Android - Multiple Vulnerabilities 2015-05-18
Vulnerability Lab (research vulnerability-lab com)
Wireless Photo Transfer v3.0 iOS - File Include Vulnerability 2015-05-18
Vulnerability Lab (research vulnerability-lab com)
CRUCMS Crucial Networking - SQL Injection Vulnerability 2015-05-18
Vulnerability Lab (research vulnerability-lab com)
[slackware-security] mozilla-thunderbird (SSA:2015-137-01) 2015-05-17
Slackware Security Team (security slackware com)
ESA-2015-087 EMC Document Sciences xPression SQL Injection Vulnerability 2015-05-16
Security Alert (Security_Alert emc com)
[SECURITY] [DSA 3261-1] libmodule-signature-perl security update 2015-05-15
Salvatore Bonaccorso (carnil debian org)
[SE-2014-02] Unconfirmed / unpatched vulnerabilities in Google App Engine 2015-05-15
Security Explorations (contact security-explorations com)
phpMyAdmin 4.4.6 Man-In-the-Middle API Github 2015-05-14
submit cxsec org
[SECURITY] CVE-2014-7810: Apache Tomcat Security Manager Bypass 2015-05-14
Mark Thomas (markt apache org)
SEC Consult SA-20150514-0 :: Multiple vulnerabilities in Loxone Smart Home (part 2) 2015-05-14
SEC Consult Vulnerability Lab (research sec-consult com)
Sidu 5.2 Admin XSS Vulnerability 2015-05-14
apparitionsec gmail com
Malware
Phishing
Microsoft | 21st May 2015 |
USAA | 20th May 2015 |
Alisha Tarologist | 20th May 2015 |
Chase | 20th May 2015 |
Nationwide Building Society | 19th May 2015 |
Barclays | 19th May 2015 |
Vulnerebility
Drupal Views Module Access Bypass Vulnerability
2015-05-29
http://www.securityfocus.com/bid/74462
ownCloud CVE-2015-3013 Security Bypass Vulnerability
2015-05-25
http://www.securityfocus.com/bid/74451
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-05-21
http://www.securityfocus.com/bid/72169
Dojo Toolkit CVE-2014-8917 Multiple Cross Site Scripting Vulnerabilities
2015-05-21
http://www.securityfocus.com/bid/72903
OpenSSL CVE-2015-0288 Denial of Service Vulnerability
2015-05-21
http://www.securityfocus.com/bid/73237
OpenSSL '/evp/encode.c' Remote Memory Corruption Vulnerability
2015-05-21
http://www.securityfocus.com/bid/73228
OpenSSL 'tasn_dec.c' Remote Memory Corruption Vulnerability
2015-05-21
http://www.securityfocus.com/bid/73227
OpenSSL Certificate Fingerprints CVE-2014-8275 Local Security Bypass Vulnerability
2015-05-21
http://www.securityfocus.com/bid/71935
OpenSSL CVE-2015-0204 Man in the Middle Security Bypass Vulnerability
2015-05-21
http://www.securityfocus.com/bid/71936
OpenSSL 'dtls1_get_record()' Function NULL Pointer Dereference Denial of Service Vulnerability
2015-05-21
http://www.securityfocus.com/bid/71937
OpenSSL CVE-2014-3570 Unspecified Security Weakness
2015-05-21
http://www.securityfocus.com/bid/71939
OpenSSL 'dtls1_buffer_record()' Function Denial of Service Vulnerability
2015-05-21
http://www.securityfocus.com/bid/71940
OpenSSL CVE-2015-0205 Man in the Middle Security Bypass Vulnerability
2015-05-21
http://www.securityfocus.com/bid/71941
OpenSSL CVE-2014-3572 Security Bypass Vulnerability
2015-05-21
http://www.securityfocus.com/bid/71942
OpenSSL 'ASN1_TYPE_cmp()' Function Denial of Service Vulnerability
2015-05-21
http://www.securityfocus.com/bid/73225
OpenSSL 'pk7_doit.c' NULL Pointer Dereference Denial of Service Vulnerability
2015-05-21
http://www.securityfocus.com/bid/73231
OpenSSL CVE-2015-0293 Denial of Service Vulnerability
2015-05-21
http://www.securityfocus.com/bid/73232
OpenSSL CVE-2015-0209 Remote Memory Corruption Vulnerability
2015-05-21
http://www.securityfocus.com/bid/73239
NTP CVE-2015-1799 Denial of Service Vulnerability
2015-05-21
http://www.securityfocus.com/bid/73950
NTP CVE-2015-1798 Man in the Middle Security Bypass Vulnerability
2015-05-21
http://www.securityfocus.com/bid/73951
Google Chrome Prior to 43.0.2357.65 Multiple Security Vulnerabilities
2015-05-21
http://www.securityfocus.com/bid/74723
Oracle Java SE CVE-2014-6457 Remote Security Vulnerability
2015-05-21
http://www.securityfocus.com/bid/70538
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-05-21
http://www.securityfocus.com/bid/70574
libpng 'png_combine_row()' Heap Buffer Overflow Vulnerability
2015-05-21
http://www.securityfocus.com/bid/71820
OpenSSL 'ssl23_get_client_hello()' Function NULL Pointer Dereference Denial of Service Vulnerability
2015-05-21
http://www.securityfocus.com/bid/71934
libpng CVE-2015-0973 Multiple Heap Based Buffer Overflow Vulnerabilities
2015-05-21
http://www.securityfocus.com/bid/71994
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-05-21
http://www.securityfocus.com/bid/72165
Apache Tomcat CVE-2014-0227 Chunk Request Remote Denial Of Service Vulnerability
2015-05-21
http://www.securityfocus.com/bid/72717
IBM Security Directory Server CVE-2015-0138 Man in the Middle Security Bypass Vulnerability
2015-05-21
http://www.securityfocus.com/bid/73326
Linux Kernel 'nf_conntrack_extend.h' NULL Pointer Dereference Denial of Service Vulnerability
2015-05-21
http://www.securityfocus.com/bid/73953
Exploit
Phoenix Contact ILC 150 ETH PLC Remote Control Script
WordPress FeedWordPress Plugin 2015.0426 - SQL Injection
Comodo GeekBuddy < 4.18.121 - Local Privilege Escalation
ZOC SSH Client Buffer Overflow Vulnerability (SEH)
Linux/x86 execve "/bin/sh" - shellcode 26 bytes
7.3.2015
Bugtraq
Last Call - Workhsops of CISTI'2015: 10th Iberian Conference on Information Systems and Technologies 2015-03-05
ML (marialemos72 gmail com)
Ultimate PHP Board (UPB) 2.2.7 Cross Site Scripting Vulnerability 2015-03-05
prathan ptr gmail com
[ MDVSA-2015:054 ] bind 2015-03-04
security mandriva com
WeBid 1.1.1 Unrestricted File Upload Exploit 2015-03-04
prathan ptr gmail com
[ MDVSA-2015:055 ] freetype2 2015-03-04
security mandriva com
Malware
Phishing
TV Stream | 7th March 2015 |
David | 6th March 2015 |
Paypal | 6th March 2015 |
Wells Fargo | 6th March 2015 |
PayPal | 6th March 2015 |
Security Centre | 5th March 2015 |
Barclays | 4th March 2015 |
PayPal | 4th March 2015 |
Vulnerebility
Drupal Global Redirect Module Open Redirection Vulnerability
2015-02-28
http://www.securityfocus.com/bid/54002
Bitweaver 'rankings.php' Local File Include Vulnerability
2015-02-28
http://www.securityfocus.com/bid/52176
IBM DB2 Administration Server (DAS) 'validateUser()' Stack Buffer Overflow Vulnerability
2015-02-28
http://www.securityfocus.com/bid/46077
IBM WebSphere Application Server for z/OS Multiple Unspecified Cross Site Scripting Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/43874
ENOVIA Unspecified Security Vulnerability
2015-02-28
http://www.securityfocus.com/bid/44509
SilverStripe Unspecified Cross Site Request Forgery Vulnerability
2015-02-28
http://www.securityfocus.com/bid/44768
IBM Systems Director Agent 'reset_diragent_keys' Insecure File Permissions Vulnerability
2015-02-28
http://www.securityfocus.com/bid/44839
SilverStripe Multiple Remote Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/45367
TYPO3 Core TYPO3-SA-2010-022 Multiple Remote Security Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/45470
webConductor 'default.asp' SQL Injection Vulnerability
2015-02-28
http://www.securityfocus.com/bid/41042
IBM Tivoli Directory Server 'DIGEST-MD5' Denial of Service Vulnerability
2015-02-28
http://www.securityfocus.com/bid/42093
IBM WebSphere Service Registry and Repository Multiple Cross Site Scripting Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/42281
IBM Tivoli Storage Manager FastBack Remote Code Execution and Denial of Service Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/42549
IBM Records Manager Multiple Unspecified Remote Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/43136
IBM AIX Local Privilege Escalation and Security Bypass Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/43207
IBM DB2 prior to 9.7 Fix Pack 3 Multiple Security Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/43291
Blue Coat ProxySG Unspecified Cross Site Scripting Vulnerability
2015-02-28
http://www.securityfocus.com/bid/43675
IBM Tivoli Access Manager for e-business Multiple Cross Site Scripting Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/44382
IBM Tivoli Directory Server Multiple Denial of Service Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/44604
Apple Safari 'setInterval()' Address Bar Spoofing Vulnerability
2015-02-28
http://www.securityfocus.com/bid/52323
eGroupware Multiple Input Validation Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/52770
IBM WebSphere ILOG JRules Cross Site Scripting Vulnerability
2015-02-28
http://www.securityfocus.com/bid/41030
IBM Rational ClearQuest Unspecified Security Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/41205
IBM FileNet Application Engine Multiple Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/43271
MyBB Multiple Security Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/50816
XChat Remote Denial of Service Vulnerability
2015-02-28
http://www.securityfocus.com/bid/50820
AnGuanJia Remote Unauthorized Access Vulnerability
2015-02-28
http://www.securityfocus.com/bid/51695
Apple Mac OS X Apple Type Services '.dfont' Font File Memory Corruption Vulnerability
2015-02-28
http://www.securityfocus.com/bid/51832
WordPress s2Member Pro Plugin 'Coupon Code' Field HTML Injection Vulnerability
2015-02-28
http://www.securityfocus.com/bid/51997
Dotclear 'swfupload.swf' Remote Arbitrary File Upload Vulnerability
2015-02-28
http://www.securityfocus.com/bid/52173
Exploit
HP Data Protector 8.10 Remote Command Execution
ProjectSend r561 - SQL Injection Vulnerability
4.3.2015
Bugtraq
[ MDVSA-2015:054 ] bind 2015-03-04
security mandriva com
WeBid 1.1.1 Unrestricted File Upload Exploit 2015-03-04
prathan ptr gmail com
[ MDVSA-2015:055 ] freetype2 2015-03-04
security mandriva com
[CVE-2015-2102] Clipbucket 2.7 RC3 0.9 - Blind SQL Injection 2015-03-04
prathan ptr gmail com
[SECURITY] [DSA 3179-1] icedove security update 2015-03-03
Moritz Muehlenhoff (jmm debian org)
[security bulletin] HPSBST03265 rev.1 - HP VMA SAN Gateway running Bash Shell and OpenSSL, Remote Denial of Service (DoS), Unauthorized Access, and Disclosure of Information 2015-03-03
security-alert hp com
[ MDVSA-2015:052 ] tomcat 2015-03-03
security mandriva com
Malware
Phishing
Barclays | 4th March 2015 |
PayPal | 4th March 2015 |
Vulnerebility
Drupal Global Redirect Module Open Redirection Vulnerability
2015-02-28
http://www.securityfocus.com/bid/54002
Bitweaver 'rankings.php' Local File Include Vulnerability
2015-02-28
http://www.securityfocus.com/bid/52176
IBM DB2 Administration Server (DAS) 'validateUser()' Stack Buffer Overflow Vulnerability
2015-02-28
http://www.securityfocus.com/bid/46077
IBM WebSphere Application Server for z/OS Multiple Unspecified Cross Site Scripting Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/43874
ENOVIA Unspecified Security Vulnerability
2015-02-28
http://www.securityfocus.com/bid/44509
SilverStripe Unspecified Cross Site Request Forgery Vulnerability
2015-02-28
http://www.securityfocus.com/bid/44768
IBM Systems Director Agent 'reset_diragent_keys' Insecure File Permissions Vulnerability
2015-02-28
http://www.securityfocus.com/bid/44839
SilverStripe Multiple Remote Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/45367
TYPO3 Core TYPO3-SA-2010-022 Multiple Remote Security Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/45470
webConductor 'default.asp' SQL Injection Vulnerability
2015-02-28
http://www.securityfocus.com/bid/41042
IBM Tivoli Directory Server 'DIGEST-MD5' Denial of Service Vulnerability
2015-02-28
http://www.securityfocus.com/bid/42093
IBM WebSphere Service Registry and Repository Multiple Cross Site Scripting Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/42281
IBM Tivoli Storage Manager FastBack Remote Code Execution and Denial of Service Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/42549
IBM Records Manager Multiple Unspecified Remote Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/43136
IBM AIX Local Privilege Escalation and Security Bypass Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/43207
IBM DB2 prior to 9.7 Fix Pack 3 Multiple Security Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/43291
Blue Coat ProxySG Unspecified Cross Site Scripting Vulnerability
2015-02-28
http://www.securityfocus.com/bid/43675
IBM Tivoli Access Manager for e-business Multiple Cross Site Scripting Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/44382
IBM Tivoli Directory Server Multiple Denial of Service Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/44604
Apple Safari 'setInterval()' Address Bar Spoofing Vulnerability
2015-02-28
http://www.securityfocus.com/bid/52323
eGroupware Multiple Input Validation Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/52770
IBM WebSphere ILOG JRules Cross Site Scripting Vulnerability
2015-02-28
http://www.securityfocus.com/bid/41030
IBM Rational ClearQuest Unspecified Security Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/41205
IBM FileNet Application Engine Multiple Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/43271
MyBB Multiple Security Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/50816
XChat Remote Denial of Service Vulnerability
2015-02-28
http://www.securityfocus.com/bid/50820
AnGuanJia Remote Unauthorized Access Vulnerability
2015-02-28
http://www.securityfocus.com/bid/51695
Apple Mac OS X Apple Type Services '.dfont' Font File Memory Corruption Vulnerability
2015-02-28
http://www.securityfocus.com/bid/51832
WordPress s2Member Pro Plugin 'Coupon Code' Field HTML Injection Vulnerability
2015-02-28
http://www.securityfocus.com/bid/51997
Dotclear 'swfupload.swf' Remote Arbitrary File Upload Vulnerability
2015-02-28
http://www.securityfocus.com/bid/52173
Exploit
Symantec Web Gateway 5 restore.php Post Authentication Command Injection
Seagate Business NAS Unauthenticated Remote Command Execution
Solarwinds Orion Service - SQL Injection Vulnerabilities
BEdita CMS 3.5.0 - Multiple Vulnerabilities
PHPMoAdmin Unauthorized Remote Code Execution (0-Day)
Linux Kernel IRET Instruction #SS Fault Handling - Crash PoC
Linux Kernel PPP-over-L2TP Socket Level Handling - Crash PoC
Linux Kernel Associative Array Garbage Collection - Crash PoC
2.3.2015
Bugtraq
[ MDVSA-2015:049 ] cups 2015-03-02
security mandriva com
[CVE-2015-1583] ATutor LCMS - CSRF Vulnerability in Version 2.2 2015-02-28
edricteo outlook sg
BEdita CMS - XSS & CSRF Vulnerability in Version 3.5.0 2015-02-28
edricteo outlook sg
SEC Consult SA-20150227-0 :: Multiple vulnerabilities in Loxone Smart Home 2015-02-27
SEC Consult Vulnerability Lab (research sec-consult com)
Wordpress Media Cleaner Plugin - XSS Vulnerability 2015-02-27
iletisim ismailsaygili com tr
[SECURITY] CVE-2015-0254 XXE and RCE via XSL extension in JSTL XML tags 2015-02-27
Jeremy Boynes (jboynes apache org)
Malware
Phishing
Satya Vathi | 2nd March 2015 |
Satya Vathi | 2nd March 2015 |
PayPal | 2nd March 2015 |
PayPal | 2nd March 2015 |
EARTH LINK RDP | 1st March 2015 |
Santander UK | 1st March 2015 |
Halifax | 1st March 2015 |
Payments | 1st March 2015 |
Marilynn Johengen | 1st March 2015 |
service@paypal.co.uk | 28th February 2015 |
Service PayPal | 27th February 2015 |
Alert | 27th February 2015 |
Apple Team | 27th February 2015 |
Vulnerebility
Drupal Global Redirect Module Open Redirection Vulnerability
2015-02-28
http://www.securityfocus.com/bid/54002
Bitweaver 'rankings.php' Local File Include Vulnerability
2015-02-28
http://www.securityfocus.com/bid/52176
IBM DB2 Administration Server (DAS) 'validateUser()' Stack Buffer Overflow Vulnerability
2015-02-28
http://www.securityfocus.com/bid/46077
IBM WebSphere Application Server for z/OS Multiple Unspecified Cross Site Scripting Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/43874
ENOVIA Unspecified Security Vulnerability
2015-02-28
http://www.securityfocus.com/bid/44509
SilverStripe Unspecified Cross Site Request Forgery Vulnerability
2015-02-28
http://www.securityfocus.com/bid/44768
IBM Systems Director Agent 'reset_diragent_keys' Insecure File Permissions Vulnerability
2015-02-28
http://www.securityfocus.com/bid/44839
SilverStripe Multiple Remote Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/45367
TYPO3 Core TYPO3-SA-2010-022 Multiple Remote Security Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/45470
webConductor 'default.asp' SQL Injection Vulnerability
2015-02-28
http://www.securityfocus.com/bid/41042
IBM Tivoli Directory Server 'DIGEST-MD5' Denial of Service Vulnerability
2015-02-28
http://www.securityfocus.com/bid/42093
IBM WebSphere Service Registry and Repository Multiple Cross Site Scripting Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/42281
IBM Tivoli Storage Manager FastBack Remote Code Execution and Denial of Service Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/42549
IBM Records Manager Multiple Unspecified Remote Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/43136
IBM AIX Local Privilege Escalation and Security Bypass Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/43207
IBM DB2 prior to 9.7 Fix Pack 3 Multiple Security Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/43291
Blue Coat ProxySG Unspecified Cross Site Scripting Vulnerability
2015-02-28
http://www.securityfocus.com/bid/43675
IBM Tivoli Access Manager for e-business Multiple Cross Site Scripting Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/44382
IBM Tivoli Directory Server Multiple Denial of Service Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/44604
Apple Safari 'setInterval()' Address Bar Spoofing Vulnerability
2015-02-28
http://www.securityfocus.com/bid/52323
eGroupware Multiple Input Validation Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/52770
IBM WebSphere ILOG JRules Cross Site Scripting Vulnerability
2015-02-28
http://www.securityfocus.com/bid/41030
IBM Rational ClearQuest Unspecified Security Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/41205
IBM FileNet Application Engine Multiple Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/43271
MyBB Multiple Security Vulnerabilities
2015-02-28
http://www.securityfocus.com/bid/50816
XChat Remote Denial of Service Vulnerability
2015-02-28
http://www.securityfocus.com/bid/50820
AnGuanJia Remote Unauthorized Access Vulnerability
2015-02-28
http://www.securityfocus.com/bid/51695
Apple Mac OS X Apple Type Services '.dfont' Font File Memory Corruption Vulnerability
2015-02-28
http://www.securityfocus.com/bid/51832
WordPress s2Member Pro Plugin 'Coupon Code' Field HTML Injection Vulnerability
2015-02-28
http://www.securityfocus.com/bid/51997
Dotclear 'swfupload.swf' Remote Arbitrary File Upload Vulnerability
2015-02-28
http://www.securityfocus.com/bid/52173
Exploit
Seagate Business NAS <= 2014.00319 - Pre-Authentication Remote Code Execution (0day)
27.2.2015
Bugtraq
[SECURITY] [DSA 3176-1] request-tracker4 security update 2015-02-26
Salvatore Bonaccorso (carnil debian org)
Wireless File Transfer Pro Android - Multiple CSRF Vulnerabilities 2015-02-26
Vulnerability Lab (research vulnerability-lab com)
Data Source: Scopus CMS - SQL Injection Web Vulnerability 2015-02-26
Vulnerability Lab (research vulnerability-lab com)
DSS TFTP 1.0 Server - Path Traversal Vulnerability 2015-02-26
Vulnerability Lab (research vulnerability-lab com)
D-Link and TRENDnet 'ncc2' service - multiple vulnerabilities 2015-02-26
Peter Adkins (peter adkins kernelpicnic net)
[slackware-security] mozilla-firefox (SSA:2015-056-01) 2015-02-26
Slackware Security Team (security slackware com)
[slackware-security] mozilla-thunderbird (SSA:2015-056-02) 2015-02-26
Slackware Security Team (security slackware com)
[security bulletin] HPSBUX03273 SSRT101951 rev.1 - HP-UX running Java6, Remote Unauthorized Access, Disclosure of Information, and Other Vulnerabilities 2015-02-26
security-alert hp com
[security bulletin] HPSBUX03244 SSRT101885 rev.2 - HP-UX Running OpenSSL, Remote Denial of Service (DoS) and Other Vulnerabilites 2015-02-26
security-alert hp com
[SECURITY] [DSA 3175-1] kfreebsd-9 security update 2015-02-25
Moritz Muehlenhoff (jmm debian org)
[security bulletin] HPSBUX03162 SSRT101885 rev.1 - HP-UX Running OpenSSL, Remote Denial of Service (DoS) and Other Vulnerabilites 2015-02-25
security-alert hp com
[SECURITY] [DSA 3174-1] iceweasel security update 2015-02-25
Moritz Muehlenhoff (jmm debian org)
[SECURITY] [DSA 3173-1] libgtk2-perl security update 2015-02-25
Salvatore Bonaccorso (carnil debian org)
[SECURITY] [DSA 3172-1] cups security update 2015-02-25
Sebastien Delafond (seb debian org)
Malware
Phishing
Musⅽⅼe.Gaⅰns | 26th February 2015 |
Boost Perforâ…¿anâ…½e anâ…¾ | |
Paypal Support | 26th February 2015 |
PayPal | 26th February 2015 |
Important: We noticed unusual | |
Internal Revenue Service | 26th February 2015 |
Csloxinfo Internet Service ser | 26th February 2015 |
Apple Team | 25th February 2015 |
Diego Glenn | 25th February 2015 |
Barclays Online | 25th February 2015 |
Bank of America | 25th February 2015 |
Vulnerebility
Oracle Java SE CVE-2014-6585 Remote Java SE Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72173
Oracle Java SE CVE-2015-0408 Remote Java SE Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72140
OpenSSL 'dtls1_get_record()' Function NULL Pointer Dereference Denial of Service Vulnerability
2015-02-27
http://www.securityfocus.com/bid/71937
OpenSSL 'ssl23_get_client_hello()' Function NULL Pointer Dereference Denial of Service Vulnerability
2015-02-27
http://www.securityfocus.com/bid/71934
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72169
Oracle Java SE CVE-2015-0400 Remote Java SE Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72159
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72165
Oracle Java SE CVE-2015-0403 Local Java SE Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72148
Oracle Java SE CVE-2014-6601 Remote Java SE Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72132
OpenSSL CVE-2014-3570 Unspecified Security Weakness
2015-02-27
http://www.securityfocus.com/bid/71939
Oracle Java SE CVE-2014-6591 Remote Java SE Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72175
OpenSSL CVE-2015-0204 Man in the Middle Security Bypass Vulnerability
2015-02-27
http://www.securityfocus.com/bid/71936
OpenSSL CVE-2014-3572 Security Bypass Vulnerability
2015-02-27
http://www.securityfocus.com/bid/71942
Oracle Java SE CVE-2015-0406 Remote Java SE Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72154
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-02-27
http://www.securityfocus.com/bid/70574
Oracle Java SE CVE-2015-0412 Remote Java SE Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72136
OpenSSL Certificate Fingerprints CVE-2014-8275 Local Security Bypass Vulnerability
2015-02-27
http://www.securityfocus.com/bid/71935
Oracle Java SE CVE-2015-0383 Local Java SE, Java SE Embedded, JRockit Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72155
Oracle Java SE CVE-2015-0395 Remote Java SE Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72142
Oracle Java SE CVE-2014-6587 Local Java SE Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72168
Oracle Java SE CVE-2015-0407 Remote Java SE Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72162
Mozilla Firefox/Thunderbird CVE-2015-0831 Use After Free Denial of Service Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72746
Mozilla Firefox/Thunderbird CVE-2015-0822 Arbitrary File Read Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72756
Mozilla Firefox/Thunderbird CVE-2015-0836 Unspecified Memory Corruption Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72742
Mozilla Firefox/Thunderbird CVE-2015-0835 Unspecified Memory Corruption Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72748
Mozilla Firefox Firefox ESR and Thunderbird DLL Loading Arbitrary Code Execution Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72747
Mozilla Firefox CVE-2015-0827 Heap Buffer Overflow Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72755
ISC BIND CVE-2015-1349 Remote Denial of Service Vulnerability
2015-02-27
http://www.securityfocus.com/bid/72673
Google Android 'GraphicBuffer::unflatten()' Function Multiple Integer Overflow Vulnerabilities
2015-02-27
http://www.securityfocus.com/bid/72788
Oracle Java SE CVE-2013-0440 Remote Java Runtime Environment Vulnerability
2015-02-27
http://www.securityfocus.com/bid/57712
Exploit
26.2.2015
Bugtraq
[SECURITY] [DSA 3169-1] eglibc security update 2015-02-23
Aurelien Jarno (aurel32 debian org)
[SECURITY] [DSA 3168-1] ruby-redcloth security update 2015-02-22
Sebastien Delafond (seb debian org)
CVE-2014-8487: Kony EMM insecurity Direct Object Reference 2015-02-22
michael hendrickx helpag com
[SECURITY] [DSA 3167-1] sudo security update 2015-02-22
Salvatore Bonaccorso (carnil debian org)
[SECURITY] [DSA 3166-1] e2fsprogs security update 2015-02-22
Michael Gilbert (mgilbert debian org)
[SECURITY] [DSA 3165-1] xdg-utils security update 2015-02-22
Michael Gilbert (mgilbert debian org)
[SECURITY] [DSA 3171-1] samba security update 2015-02-23
Salvatore Bonaccorso (carnil debian org)
Malware
Phishing
Csloxinfo Internet Service ser | 26th February 2015 |
Apple Team | 25th February 2015 |
Diego Glenn | 25th February 2015 |
Barclays Online | 25th February 2015 |
Bank of America | 25th February 2015 |
Apple Team | 24th February 2015 |
PayPal | 24th February 2015 |
Your PayPal Account Will Be |
Vulnerebility
Mozilla Firefox CVE-2015-0827 Heap Buffer Overflow Vulnerability
2015-02-26
http://www.securityfocus.com/bid/72755
WordPress Photo Gallery Plugin 'wp-admin/admin-ajax.php' SQL Injection Vulnerability
2015-02-26
http://www.securityfocus.com/bid/72015
Microsoft Internet Explorer CVE-2014-6369 Remote Memory Corruption Vulnerability
2015-02-26
http://www.securityfocus.com/bid/71452
Samba 'TALLOC_FREE()' Function Remote Code Execution Vulnerability
2015-02-26
http://www.securityfocus.com/bid/72711
Mozilla Firefox/Thunderbird CVE-2015-0831 Use After Free Denial of Service Vulnerability
2015-02-26
http://www.securityfocus.com/bid/72746
Mozilla Firefox/Thunderbird CVE-2015-0822 Arbitrary File Read Vulnerability
2015-02-26
http://www.securityfocus.com/bid/72756
Mozilla Firefox/Thunderbird CVE-2015-0836 Unspecified Memory Corruption Vulnerability
2015-02-26
http://www.securityfocus.com/bid/72742
RETIRED: RPCBind CVE-2012-3541 Remote Information Disclosure Vulnerability
2015-02-26
http://www.securityfocus.com/bid/68750
grep 'kwset.c' Remote Buffer Overflow Vulnerability
2015-02-26
http://www.securityfocus.com/bid/72281
IOServer CVE-2014-5425 Out-of-Bounds Read Denial of Service Vulnerability
2015-02-26
http://www.securityfocus.com/bid/70639
GNU glibc CVE-2015-0235 Remote Heap Buffer Overflow Vulnerability
2015-02-26
http://www.securityfocus.com/bid/72325
Wireshark '.pcap' File Memory Corruption Vulnerability
2015-02-26
http://www.securityfocus.com/bid/46167
PHPKIT WCMS 'include.php' Cross Site Scripting Vulnerability
2015-02-26
http://www.securityfocus.com/bid/72001
Croogo CMS Cross Site Scripting Vulnerability
2015-02-26
http://www.securityfocus.com/bid/71999
Sefrengo CMS 'main.php' Cross Site Scripting and Multiple SQL Injection Vulnerabilities
2015-02-26
http://www.securityfocus.com/bid/71885
Cisco AsyncOS Software CVE-2015-0624 Open Redirection Vulnerability
2015-02-26
http://www.securityfocus.com/bid/72702
Drupal Context Module Open Redirection Vulnerability
2015-02-26
http://www.securityfocus.com/bid/71925
Kajona 'admin.php' Cross Site Scripting Vulnerability
2015-02-26
http://www.securityfocus.com/bid/71886
CreA8social 'Add Game' field HTML Injection Vulnerability
2015-02-26
http://www.securityfocus.com/bid/71966
e2fsprogs 'lib/ext2fs/openfs.c' Local Heap Based Buffer Overflow Vulnerability
2015-02-26
http://www.securityfocus.com/bid/72520
e2fsprogs CVE-2015-1572 Incomplete Fix Local Heap Based Buffer Overflow Vulnerability
2015-02-26
http://www.securityfocus.com/bid/72709
Network Time Protocol CVE-2014-9295 Multiple Stack Based Buffer Overflow Vulnerabilities
2015-02-26
http://www.securityfocus.com/bid/71761
NTP 'ntp_config.c' Insufficient Entropy Security Weakness
2015-02-26
http://www.securityfocus.com/bid/71757
NTP 'ntp_io.c' Authentication Security Bypass Vulnerability
2015-02-26
http://www.securityfocus.com/bid/72584
NTP 'ntp_crypto.c' Information Disclosure Vulnerability
2015-02-26
http://www.securityfocus.com/bid/72583
NTP 'ntp-keygen.c' Predictable Random Number Generator Weakness
2015-02-26
http://www.securityfocus.com/bid/71762
Network Time Protocol CVE-2014-9296 Unspecified Security Vulnerability
2015-02-26
http://www.securityfocus.com/bid/71758
Cisco Desktop Collaboration Experience DX650 CVE-2015-0584 Command Injection Vulnerability
2015-02-26
http://www.securityfocus.com/bid/72696
Oracle Database Server CVE-2015-0373 Remote Security Vulnerability
2015-02-26
http://www.securityfocus.com/bid/72145
Microsoft Internet Explorer CVE-2015-0035 Remote Memory Corruption Vulnerability
2015-02-26
http://www.securityfocus.com/bid/72447
Exploit
25.2.2015
Bugtraq
[SECURITY] [DSA 3169-1] eglibc security update 2015-02-23
Aurelien Jarno (aurel32 debian org)
[SECURITY] [DSA 3168-1] ruby-redcloth security update 2015-02-22
Sebastien Delafond (seb debian org)
CVE-2014-8487: Kony EMM insecurity Direct Object Reference 2015-02-22
michael hendrickx helpag com
[SECURITY] [DSA 3167-1] sudo security update 2015-02-22
Salvatore Bonaccorso (carnil debian org)
[SECURITY] [DSA 3166-1] e2fsprogs security update 2015-02-22
Michael Gilbert (mgilbert debian org)
[SECURITY] [DSA 3165-1] xdg-utils security update 2015-02-22
Michael Gilbert (mgilbert debian org)
Malware
Phishing
Apple Team | 24th February 2015 |
PayPal | 24th February 2015 |
Your PayPal Account Will Be | |
AppeID Support | 23rd February 2015 |
Daniel Paez | 23rd February 2015 |
Vulnerebility
Wireshark '.pcap' File Memory Corruption Vulnerability
2015-02-25
http://www.securityfocus.com/bid/46167
Samba 'TALLOC_FREE()' Function Remote Code Execution Vulnerability
2015-02-25
http://www.securityfocus.com/bid/72711
PHPKIT WCMS 'include.php' Cross Site Scripting Vulnerability
2015-02-25
http://www.securityfocus.com/bid/72001
Croogo CMS Cross Site Scripting Vulnerability
2015-02-25
http://www.securityfocus.com/bid/71999
Sefrengo CMS 'main.php' Cross Site Scripting and Multiple SQL Injection Vulnerabilities
2015-02-25
http://www.securityfocus.com/bid/71885
Cisco AsyncOS Software CVE-2015-0624 Open Redirection Vulnerability
2015-02-25
http://www.securityfocus.com/bid/72702
Drupal Context Module Open Redirection Vulnerability
2015-02-25
http://www.securityfocus.com/bid/71925
Kajona 'admin.php' Cross Site Scripting Vulnerability
2015-02-25
http://www.securityfocus.com/bid/71886
CreA8social 'Add Game' field HTML Injection Vulnerability
2015-02-25
http://www.securityfocus.com/bid/71966
e2fsprogs 'lib/ext2fs/openfs.c' Local Heap Based Buffer Overflow Vulnerability
2015-02-25
http://www.securityfocus.com/bid/72520
e2fsprogs CVE-2015-1572 Incomplete Fix Local Heap Based Buffer Overflow Vulnerability
2015-02-25
http://www.securityfocus.com/bid/72709
Network Time Protocol CVE-2014-9295 Multiple Stack Based Buffer Overflow Vulnerabilities
2015-02-25
http://www.securityfocus.com/bid/71761
NTP 'ntp_config.c' Insufficient Entropy Security Weakness
2015-02-25
http://www.securityfocus.com/bid/71757
NTP 'ntp_io.c' Authentication Security Bypass Vulnerability
2015-02-25
http://www.securityfocus.com/bid/72584
NTP 'ntp_crypto.c' Information Disclosure Vulnerability
2015-02-25
http://www.securityfocus.com/bid/72583
NTP 'ntp-keygen.c' Predictable Random Number Generator Weakness
2015-02-25
http://www.securityfocus.com/bid/71762
Network Time Protocol CVE-2014-9296 Unspecified Security Vulnerability
2015-02-25
http://www.securityfocus.com/bid/71758
Cisco Desktop Collaboration Experience DX650 CVE-2015-0584 Command Injection Vulnerability
2015-02-25
http://www.securityfocus.com/bid/72696
Oracle Database Server CVE-2015-0373 Remote Security Vulnerability
2015-02-25
http://www.securityfocus.com/bid/72145
Microsoft Internet Explorer CVE-2015-0035 Remote Memory Corruption Vulnerability
2015-02-25
http://www.securityfocus.com/bid/72447
glibc CVE-2015-1473 Unspecified Security Vulnerability
2015-02-25
http://www.securityfocus.com/bid/72499
GNU glibc 'getaddrinfo.c' Remote Code Execution Vulnerability
2015-02-25
http://www.securityfocus.com/bid/72710
GNU glibc 'getanswer_r()' Function Infinite Loop Denial of Service Vulnerability
2015-02-25
http://www.securityfocus.com/bid/71670
GNU glibc 'swscanf' Local Heap Buffer Overflow Vulnerability
2015-02-25
http://www.securityfocus.com/bid/72428
GNU glibc 'xc_cpupool_getinfo()' Function Use After Free Memory Corruption Vulnerability
2015-02-25
http://www.securityfocus.com/bid/68006
GNU glibc Formatted Printing Functionality Multiple Security Vulnerabilities
2015-02-25
http://www.securityfocus.com/bid/54374
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-02-25
http://www.securityfocus.com/bid/70574
Todd Miller Sudo CVE-2014-9680 Local Security Bypass Vulnerability
2015-02-25
http://www.securityfocus.com/bid/72649
xdg-utils 'xdg-open' CVE-2015-1877 Remote Command Injection Vulnerability
2015-02-25
http://www.securityfocus.com/bid/72675
Cisco Hosted Collaboration Solution CVE-2015-0626 Information Disclosure Vulnerability
2015-02-25
http://www.securityfocus.com/bid/72666
Exploit
HP Client Automation Command Injection
24.2.2015
Bugtraq
[SECURITY] [DSA 3169-1] eglibc security update 2015-02-23
Aurelien Jarno (aurel32 debian org)
[SECURITY] [DSA 3168-1] ruby-redcloth security update 2015-02-22
Sebastien Delafond (seb debian org)
CVE-2014-8487: Kony EMM insecurity Direct Object Reference 2015-02-22
michael hendrickx helpag com
[SECURITY] [DSA 3167-1] sudo security update 2015-02-22
Salvatore Bonaccorso (carnil debian org)
[SECURITY] [DSA 3166-1] e2fsprogs security update 2015-02-22
Michael Gilbert (mgilbert debian org)
[SECURITY] [DSA 3165-1] xdg-utils security update 2015-02-22
Michael Gilbert (mgilbert debian org)
[SECURITY] [DSA 3171-1] samba security update 2015-02-23
Salvatore Bonaccorso (carnil debian org)
[SECURITY] [DSA 3164-1] typo3-src security update 2015-02-21
Moritz Muehlenhoff (jmm debian org)
Malware
Phishing
PayPal | 24th February 2015 |
Your PayPal Account Will Be | |
AppeID Support | 23rd February 2015 |
Daniel Paez | 23rd February 2015 |
Vulnerebility
Network Time Protocol CVE-2014-9295 Multiple Stack Based Buffer Overflow Vulnerabilities
2015-02-24
http://www.securityfocus.com/bid/71761
NTP 'ntp_config.c' Insufficient Entropy Security Weakness
2015-02-24
http://www.securityfocus.com/bid/71757
NTP 'ntp_io.c' Authentication Security Bypass Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72584
NTP 'ntp_crypto.c' Information Disclosure Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72583
NTP 'ntp-keygen.c' Predictable Random Number Generator Weakness
2015-02-24
http://www.securityfocus.com/bid/71762
Network Time Protocol CVE-2014-9296 Unspecified Security Vulnerability
2015-02-24
http://www.securityfocus.com/bid/71758
Cisco Desktop Collaboration Experience DX650 CVE-2015-0584 Command Injection Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72696
Oracle Database Server CVE-2015-0373 Remote Security Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72145
Microsoft Internet Explorer CVE-2015-0035 Remote Memory Corruption Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72447
Samba 'TALLOC_FREE()' Funtion Remote Code Execution Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72711
glibc CVE-2015-1473 Unspecified Security Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72499
GNU glibc 'getaddrinfo.c' Remote Code Execution Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72710
GNU glibc 'getanswer_r()' Function Infinite Loop Denial of Service Vulnerability
2015-02-24
http://www.securityfocus.com/bid/71670
GNU glibc 'swscanf' Local Heap Buffer Overflow Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72428
GNU glibc 'xc_cpupool_getinfo()' Function Use After Free Memory Corruption Vulnerability
2015-02-24
http://www.securityfocus.com/bid/68006
GNU glibc Formatted Printing Functionality Multiple Security Vulnerabilities
2015-02-24
http://www.securityfocus.com/bid/54374
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-02-24
http://www.securityfocus.com/bid/70574
Todd Miller Sudo CVE-2014-9680 Local Security Bypass Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72649
e2fsprogs 'lib/ext2fs/openfs.c' Local Heap Based Buffer Overflow Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72520
xdg-utils 'xdg-open' CVE-2015-1877 Remote Command Injection Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72675
Cisco Hosted Collaboration Solution CVE-2015-0626 Information Disclosure Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72666
Persistent Systems Radia Client Automation CVE-2015-1498 Remote Privilege Escalation Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72613
Multiple Schneider Electric Products CVE-2014-9200 Stack Based Buffer Overflow Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72335
Cisco Web Security Appliance CVE-2015-0623 Cross Site Scripting Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72663
Cisco Unified Communications Manager CVE-2014-8008 File Disclosure Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72263
Adobe Flash Player Multiple Unspecified Security Vulnerabilities
2015-02-24
http://www.securityfocus.com/bid/72514
GNU glibc CVE-2015-0235 Remote Heap Buffer Overflow Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72325
Mozilla Network Security Services CVE-2014-1569 Security Bypass Vulnerability
2015-02-24
http://www.securityfocus.com/bid/71675
Microsoft Internet Explorer CVE-2015-0046 Remote Memory Corruption Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72416
Microsoft Internet Explorer CVE-2015-0043 Remote Memory Corruption Vulnerability
2015-02-24
http://www.securityfocus.com/bid/72413
Exploit
WeBid 1.1.1 Unrestricted File Upload Exploit
Clipbucket 2.7 RC3 0.9 - Blind SQL Injection
Zabbix 2.0.5 - Cleartext ldap_bind_password Password Disclosure (MSF)
Zeuscart v.4 - Multiple Vulnerabilities
phpBugTracker 1.6.0 - Multiple Vulnerabilities
WordPress Easy Social Icons Plugin 1.2.2 - CSRF Vulnerability
PHP DateTime Use After Free Vulnerability
23.2.2015
Bugtraq
iTunes 12.1.1 for Windows: still outdated and VULNERABLE 3rd party libraries, still UNQUOTED and VULNERABLE pathnames C:\Program Files\... 2015-02-19
Stefan Kanthak (stefan kanthak nexgo de)
Defense in depth -- the Microsoft way (part 28): yes, we can (create even empty, but properly quoted pathnames) 2015-02-19
Stefan Kanthak (stefan kanthak nexgo de)
[SECURITY] [DSA 3163-1] libreoffice security update 2015-02-19
Alessandro Ghedini (ghedo debian org)
Malware
Phishing
Virgin Media | 22nd February 2015 |
Vulnerebility
Cisco Hosted Collaboration Solution CVE-2015-0626 Information Disclosure Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72666
Persistent Systems Radia Client Automation CVE-2015-1498 Remote Privilege Escalation Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72613
Multiple Schneider Electric Products CVE-2014-9200 Stack Based Buffer Overflow Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72335
Cisco Web Security Appliance CVE-2015-0623 Cross Site Scripting Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72663
Cisco Unified Communications Manager CVE-2014-8008 File Disclosure Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72263
Adobe Flash Player Multiple Unspecified Security Vulnerabilities
2015-02-23
http://www.securityfocus.com/bid/72514
GNU glibc CVE-2015-0235 Remote Heap Buffer Overflow Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72325
Mozilla Network Security Services CVE-2014-1569 Security Bypass Vulnerability
2015-02-23
http://www.securityfocus.com/bid/71675
Microsoft Internet Explorer CVE-2015-0046 Remote Memory Corruption Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72416
Microsoft Internet Explorer CVE-2015-0043 Remote Memory Corruption Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72413
Microsoft Internet Explorer CVE-2015-0042 Remote Memory Corruption Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72412
Microsoft Internet Explorer CVE-2015-0045 Remote Memory Corruption Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72415
Microsoft Internet Explorer CVE-2015-0044 Remote Memory Corruption Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72414
Microsoft Internet Explorer CVE-2015-0041 Remote Memory Corruption Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72411
Microsoft Internet Explorer CVE-2015-0040 Remote Memory Corruption Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72410
Microsoft Internet Explorer CVE-2015-0038 Remote Memory Corruption Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72404
Microsoft Internet Explorer CVE-2015-0037 Remote Memory Corruption Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72448
Microsoft Internet Explorer CVE-2015-0036 Remote Memory Corruption Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72446
Multiple VMware Products CVE-2015-1044 Denial Of Service Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72336
Microsoft Windows Kernel 'Win32k.sys' CVE-2015-0058 Local Privilege Escalation Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72468
Microsoft Internet Explorer CVE-2015-0053 Remote Memory Corruption Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72421
Cisco Wireless LAN Controller CVE-2015-0622 Denial of Service Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72665
Microsoft Internet Explorer CVE-2015-0031 Remote Memory Corruption Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72445
Microsoft Internet Explorer CVE-2015-0027 Remote Memory Corruption Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72441
Microsoft Internet Explorer CVE-2015-0025 Remote Memory Corruption Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72439
Microsoft Internet Explorer CVE-2015-0017 Remote Memory Corruption Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72402
Microsoft Windows Kernel 'Win32k.sys' CVE-2015-0003 Local Privilege Escalation Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72457
Adobe Flash Player CVE-2015-0311 Unspecified Security Vulnerability
2015-02-23
http://www.securityfocus.com/bid/72283
Microsoft Virtual PC Hypervisor Virtual Machine Monitor Security Bypass Vulnerability
2015-02-23
http://www.securityfocus.com/bid/38764
xdg-utils 'xdg-open' Remote Command Injection Vulnerability
2015-02-23
http://www.securityfocus.com/bid/71284
Exploit
22.2.2015
Bugtraq
iTunes 12.1.1 for Windows: still outdated and VULNERABLE 3rd party libraries, still UNQUOTED and VULNERABLE pathnames C:\Program Files\... 2015-02-19
Stefan Kanthak (stefan kanthak nexgo de)
Defense in depth -- the Microsoft way (part 28): yes, we can (create even empty, but properly quoted pathnames) 2015-02-19
Stefan Kanthak (stefan kanthak nexgo de)
[SECURITY] [DSA 3163-1] libreoffice security update 2015-02-19
Alessandro Ghedini (ghedo debian org)
[SECURITY] [DSA 3162-1] bind9 security update 2015-02-18
Florian Weimer (fw deneb enyo de)
PHP Code Execution in jui_filter_rules Parsing Library 2015-02-18
Timo Schmid (tschmid ernw de)
Malware
Phishing
RXX_VIAGRA | 22nd February 2015 |
PayPal | 22nd February 2015 |
[ PayPal ] : View your recent | |
PayPal Inc Service | 21st February 2015 |
Pvsatyanarayana Raju | 21st February 2015 |
First Online | 21st February 2015 |
service@paypal | 20th February 2015 |
PayPaI Service | 20th February 2015 |
PayPal | 20th February 2015 |
PayPal | 20th February 2015 |
[ PayPal ] : 36View your | |
Apple | 20th February 2015 |
[SUSPICIOUS MESSAGE] Please | |
PayPal | 20th February 2015 |
Vulnerebility
Cisco Hosted Collaboration Solution CVE-2015-0626 Information Disclosure Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72666
Persistent Systems Radia Client Automation CVE-2015-1498 Remote Privilege Escalation Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72613
Multiple Schneider Electric Products CVE-2014-9200 Stack Based Buffer Overflow Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72335
Cisco Web Security Appliance CVE-2015-0623 Cross Site Scripting Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72663
Cisco Unified Communications Manager CVE-2014-8008 File Disclosure Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72263
Adobe Flash Player Multiple Unspecified Security Vulnerabilities
2015-02-22
http://www.securityfocus.com/bid/72514
GNU glibc CVE-2015-0235 Remote Heap Buffer Overflow Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72325
Mozilla Network Security Services CVE-2014-1569 Security Bypass Vulnerability
2015-02-22
http://www.securityfocus.com/bid/71675
Microsoft Internet Explorer CVE-2015-0046 Remote Memory Corruption Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72416
Microsoft Internet Explorer CVE-2015-0043 Remote Memory Corruption Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72413
Microsoft Internet Explorer CVE-2015-0042 Remote Memory Corruption Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72412
Microsoft Internet Explorer CVE-2015-0045 Remote Memory Corruption Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72415
Microsoft Internet Explorer CVE-2015-0044 Remote Memory Corruption Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72414
Microsoft Internet Explorer CVE-2015-0041 Remote Memory Corruption Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72411
Microsoft Internet Explorer CVE-2015-0040 Remote Memory Corruption Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72410
Microsoft Internet Explorer CVE-2015-0038 Remote Memory Corruption Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72404
Microsoft Internet Explorer CVE-2015-0037 Remote Memory Corruption Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72448
Microsoft Internet Explorer CVE-2015-0036 Remote Memory Corruption Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72446
Multiple VMware Products CVE-2015-1044 Denial Of Service Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72336
Microsoft Windows Kernel 'Win32k.sys' CVE-2015-0058 Local Privilege Escalation Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72468
Microsoft Internet Explorer CVE-2015-0053 Remote Memory Corruption Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72421
Cisco Wireless LAN Controller CVE-2015-0622 Denial of Service Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72665
Microsoft Internet Explorer CVE-2015-0031 Remote Memory Corruption Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72445
Microsoft Internet Explorer CVE-2015-0027 Remote Memory Corruption Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72441
Microsoft Internet Explorer CVE-2015-0025 Remote Memory Corruption Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72439
Microsoft Internet Explorer CVE-2015-0017 Remote Memory Corruption Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72402
Microsoft Windows Kernel 'Win32k.sys' CVE-2015-0003 Local Privilege Escalation Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72457
Adobe Flash Player CVE-2015-0311 Unspecified Security Vulnerability
2015-02-22
http://www.securityfocus.com/bid/72283
Microsoft Virtual PC Hypervisor Virtual Machine Monitor Security Bypass Vulnerability
2015-02-22
http://www.securityfocus.com/bid/38764
xdg-utils 'xdg-open' Remote Command Injection Vulnerability
2015-02-22
http://www.securityfocus.com/bid/71284
Exploit
19.2.2015
Bugtraq
PHP Code Execution in jui_filter_rules Parsing Library 2015-02-18
Timo Schmid (tschmid ernw de)
[CVE-2015-1517] Piwigo - SQL Injection in Version 2.7.3 2015-02-18
sven bsddaemon org
[RT-SA-2014-016] Directory Traversal and Arbitrary File Disclosure in hybris Commerce Software Suite 2015-02-18
RedTeam Pentesting GmbH (release redteam-pentesting de)
Crushftp 7.2.0 - Multiple CSRF & XSS Vulnerabilitiesþ 2015-02-17
Rehan Ahmed (knight_rehan hotmail com)
Malware
Phishing
Vulnerebility
GNU patch Directory Traversal Vulnerability
2015-02-19
http://www.securityfocus.com/bid/72074
Fortinet FortiAuthenticator Appliance Multiple Security Vulnerabilities
2015-02-19
http://www.securityfocus.com/bid/72378
ClamAV 'libclamav/petite.c' Denial of Service Vulnerability
2015-02-19
http://www.securityfocus.com/bid/72641
ClamAV CVE-2014-9328 Multiple Heap Buffer Overflow Vulnerabilities
2015-02-19
http://www.securityfocus.com/bid/72372
OpenSSL CVE-2014-3470 Denial of Service Vulnerability
2015-02-19
http://www.securityfocus.com/bid/67898
OpenSSL 'ssl3_release_read_buffer()' Use-After-Free Memory Corruption Vulnerability
2015-02-19
http://www.securityfocus.com/bid/66801
OpenSSL 'so_ssl3_write()' Function NULL Pointer Dereference Denial of Service Vulnerability
2015-02-19
http://www.securityfocus.com/bid/67193
OpenSSL CVE-2014-0224 Man in the Middle Security Bypass Vulnerability
2015-02-19
http://www.securityfocus.com/bid/67899
PHP CVE-2015-0231 Incomplete Fix Use After Free Remote Code Execution Vulnerability
2015-02-19
http://www.securityfocus.com/bid/72539
PHP 'exif_process_unicode()' Function Remote Code Execution Vulnerability
2015-02-19
http://www.securityfocus.com/bid/72541
PHP 'cgi_main.c' Out of Bounds Read Denial of Service Vulnerability
2015-02-19
http://www.securityfocus.com/bid/71833
PHP libmagick 'src/softmagic.c' Out-of-Bounds Read Vulnerability
2015-02-19
http://www.securityfocus.com/bid/72505
PHP 'process_nested_data()' Function Use After Free Remote Code Execution Vulnerability
2015-02-19
http://www.securityfocus.com/bid/71791
PHP '/ext/opcache/zend_shared_alloc.c' Use After Free Denial of Service Vulnerability
2015-02-19
http://www.securityfocus.com/bid/71929
Cisco Adaptive Security Appliance (ASA) Software CVE-2014-8023 Remote Security Bypass Vulnerability
2015-02-19
http://www.securityfocus.com/bid/72618
Siemens SIMATIC STEP 7 CVE-2015-1356 Security Bypass Vulnerability
2015-02-19
http://www.securityfocus.com/bid/72627
Siemens SIMATIC STEP 7 TIA Portal CVE-2015-1355 Information Disclosure Vulnerability
2015-02-19
http://www.securityfocus.com/bid/72624
PHP '/ext/pgsql/pgsql.c' Null Pointer Deference Denial of Service Vulnerability
2015-02-19
http://www.securityfocus.com/bid/71932
Siemens SIMATIC WinCC TIA Portal Man in the Middle Information Disclosure Vulnerability
2015-02-19
http://www.securityfocus.com/bid/72625
Siemens SIMATIC WinCC and PCS7 CVE-2014-4686 Privilege Escalation Vulnerability
2015-02-19
http://www.securityfocus.com/bid/68875
X.Org X Server 'xkb/xkb.c' Information Disclosure Vulnerability
2015-02-19
http://www.securityfocus.com/bid/72578
X.Org X Server CVE-2013-6424 Local Denial of Service Vulnerability
2015-02-19
http://www.securityfocus.com/bid/64127
NTP 'ntp-keygen.c' Predictable Random Number Generator Weakness
2015-02-19
http://www.securityfocus.com/bid/71762
NTP 'ntp_io.c' Authentication Security Bypass Vulnerability
2015-02-19
http://www.securityfocus.com/bid/72584
NTP 'ntp_crypto.c' Information Disclosure Vulnerability
2015-02-19
http://www.securityfocus.com/bid/72583
NTP 'ntp_config.c' Insufficient Entropy Security Weakness
2015-02-19
http://www.securityfocus.com/bid/71757
Moodle CVE-2015-0212 Cross Site Scripting Vulnerability
2015-02-18
http://www.securityfocus.com/bid/72662
InstantASP InstantForum.NET CVE-2014-9468 Multiple Cross Site Scripting Vulnerabilities
2015-02-18
http://www.securityfocus.com/bid/72660
ClamAV CVE-2015-1461 Out of Bounds Multiple Memory Corruption Vulnerabilities
2015-02-18
http://www.securityfocus.com/bid/72654
FLAC libFLAC 'encoder.c' Unspecified Security Vulnerability
2015-02-18
http://www.securityfocus.com/bid/72650
Exploit
18.2.2015
Bugtraq
NetGear WNDR Authentication Bypass / Information Disclosure 2015-02-17
Peter Adkins (peter adkins kernelpicnic net)
Ebay Inc Magento Bug Bounty #5 - Persistent Validation & Mail Encoding Web Vulnerability 2015-02-17
Vulnerability Lab (research vulnerability-lab com)
CVE-2015-1614 csrf/xss in in wordpress Plugin Image Metadata cruncher 2015-02-17
kingkaustubh me com
[slackware-security] sudo (SSA:2015-047-03) 2015-02-16
Slackware Security Team (security slackware com)
[slackware-security] patch (SSA:2015-047-01) 2015-02-16
Slackware Security Team (security slackware com)
[slackware-security] seamonkey (SSA:2015-047-02) 2015-02-16
Slackware Security Team (security slackware com)
Reflected File Download in AOL Search Website 2015-02-16
Ricardo Iramar dos Santos (riramar gmail com) (1 replies)
Malware
Phishing
Customer Service.Amazon | 16th February 2015 |
Verification-Amazon:Ticket | |
Barclays Online | 16th February 2015 |
Chase Bank | 16th February 2015 |
PayPal | 16th February 2015 |
PayPal | 16th February 2015 |
Vulnerebility
X.Org X Server 'xkb/xkb.c' Information Disclosure Vulnerability
2015-02-18
http://www.securityfocus.com/bid/72578
X.Org X Server CVE-2013-6424 Local Denial of Service Vulnerability
2015-02-18
http://www.securityfocus.com/bid/64127
Siemens SIMATIC WinCC and PCS7 CVE-2014-4686 Privilege Escalation Vulnerability
2015-02-18
http://www.securityfocus.com/bid/68875
NTP 'ntp-keygen.c' Predictable Random Number Generator Weakness
2015-02-18
http://www.securityfocus.com/bid/71762
NTP 'ntp_io.c' Authentication Security Bypass Vulnerability
2015-02-18
http://www.securityfocus.com/bid/72584
NTP 'ntp_crypto.c' Information Disclosure Vulnerability
2015-02-18
http://www.securityfocus.com/bid/72583
NTP 'ntp_config.c' Insufficient Entropy Security Weakness
2015-02-18
http://www.securityfocus.com/bid/71757
Cpio Symlink Directory Traversal Vulnerability
2015-02-17
http://www.securityfocus.com/bid/71914
Linux Kernel cpio 'list_file()' Function Heap Based Buffer Overflow Vulnerability
2015-02-17
http://www.securityfocus.com/bid/71248
Oracle Java SE CVE-2014-0449 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/66907
Oracle Java SE CVE-2014-2397 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/66893
Oracle Java SE CVE-2014-0461 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/66902
Oracle Java SE CVE-2014-4218 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/68583
Oracle Java SE CVE-2014-0459 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/66910
Oracle Java SE CVE-2014-2421 Buffer Overflow Vulnerability
2015-02-17
http://www.securityfocus.com/bid/66881
Oracle Java SE CVE-2014-0457 Remote Code Execution Vulnerability
2015-02-17
http://www.securityfocus.com/bid/66866
Oracle Java SE CVE-2014-6531 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70572
Oracle Java SE CVE-2014-6519 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70570
Oracle Java SE CVE-2014-6513 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70569
Oracle Java SE CVE-2014-6512 IP Address Spoofing Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70567
Oracle Java SE CVE-2014-6515 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70565
Oracle Java SE CVE-2014-6504 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70564
Oracle Java SE CVE-2014-6527 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70560
Oracle Java SE CVE-2014-6506 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70556
Oracle Java SE CVE-2014-6511 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70548
Oracle Java SE CVE-2014-6517 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70552
Oracle Java SE CVE-2014-6558 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70544
Oracle Java SE CVE-2014-6502 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70533
Oracle Java SE CVE-2014-6457 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70538
Oracle Java SE CVE-2014-6476 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70531
Exploit
X360 VideoPlayer ActiveX Control Buffer Overflow
Java JMX Server Insecure Configuration Java Code Execution
Guppy CMS 5.0.9 & 5.00.10 Authentication Bypass/Change Email
GuppY CMS 5.0.9 & 5.00.10 Multiple CSRF Vulnerabilities
17.2.2015
Bugtraq
Reflected File Download in AOL Search Website 2015-02-16
Ricardo Iramar dos Santos (riramar gmail com) (1 replies)
Re: Reflected File Download in AOL Search Website 2015-02-16
Mike Antcliffe (mikeantcliffe logicallysecure com)
Multiple Cross site scripting in wordpress Plugin Image Metadata cruncher 2015-02-15
kingkaustubh me com
Cosmoshop - XSS on Admin-Login Mask 2015-02-14
innate gmx de
[CVE-2015-1585] Fat Free CRM - CSRF Vulnerability in Version 0.13.5 2015-02-14
sven bsddaemon org
CVE-2015-1593 - Linux ASLR integer overflow: Reducing stack entropy by four 2015-02-14
Hector Marco (hecmargi upv es)
CVE-2015-1600 - Netatmo Weather Station Cleartext Password Leak 2015-02-13
jullrich sans edu
UNIT4 Prosoft HRMS XSS Vulnerability 2015-02-13
jerold v00d00sec com
[security bulletin] HPSBGN03258 rev.1 - HP Insight Control server deployment Windows Pre-boot Execution Environment, Microsoft Schannel (Winshock) Remote Code Execution 2015-02-13
security-alert hp com
Malware
Phishing
Customer Service.Amazon | 16th February 2015 |
Verification-Amazon:Ticket | |
Barclays Online | 16th February 2015 |
Chase Bank | 16th February 2015 |
PayPal | 16th February 2015 |
PayPal | 16th February 2015 |
Tesco Bank | 15th February 2015 |
Vulnerebility
Oracle Java SE CVE-2014-2397 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/66893
Oracle Java SE CVE-2014-0461 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/66902
Oracle Java SE CVE-2014-4218 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/68583
Oracle Java SE CVE-2014-0459 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/66910
Oracle Java SE CVE-2014-2421 Buffer Overflow Vulnerability
2015-02-17
http://www.securityfocus.com/bid/66881
Oracle Java SE CVE-2014-0457 Remote Code Execution Vulnerability
2015-02-17
http://www.securityfocus.com/bid/66866
Oracle Java SE CVE-2014-6531 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70572
Oracle Java SE CVE-2014-6519 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70570
Oracle Java SE CVE-2014-6513 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70569
Oracle Java SE CVE-2014-6512 IP Address Spoofing Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70567
Oracle Java SE CVE-2014-6515 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70565
Oracle Java SE CVE-2014-6504 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70564
Oracle Java SE CVE-2014-6527 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70560
Oracle Java SE CVE-2014-6506 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70556
Oracle Java SE CVE-2014-6511 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70548
Oracle Java SE CVE-2014-6517 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70552
Oracle Java SE CVE-2014-6558 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70544
Oracle Java SE CVE-2014-6502 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70533
Oracle Java SE CVE-2014-6457 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70538
Oracle Java SE CVE-2014-6476 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70531
Oracle Java SE CVE-2014-6562 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70523
Oracle Java SE CVE-2014-6456 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70522
Oracle Java SE CVE-2014-6485 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70519
Oracle Java SE CVE-2014-6532 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70507
Oracle Java SE CVE-2014-6503 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70518
Oracle Java SE CVE-2014-6468 Local Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70488
Oracle Java SE CVE-2014-6466 Local Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70484
Oracle Java SE CVE-2014-4288 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70470
Oracle Java SE CVE-2014-6493 Remote Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70468
Oracle Java SE CVE-2014-6458 Local Security Vulnerability
2015-02-17
http://www.securityfocus.com/bid/70460
Exploit
eTouch SamePage 4.4.0.0.239 - Multiple Vulnerabilities
16.2.2015
Bugtraq
UNIT4 Prosoft HRMS XSS Vulnerability 2015-02-13
jerold v00d00sec com
[security bulletin] HPSBGN03258 rev.1 - HP Insight Control server deployment Windows Pre-boot Execution Environment, Microsoft Schannel (Winshock) Remote Code Execution 2015-02-13
security-alert hp com
CVE-2015-1574 - Google Email App 4.2.2 remote denial of service 2015-02-13
Hector Marco (hecmargi upv es)
Malware
Phishing
Chase Bank | 16th February 2015 |
PayPal | 16th February 2015 |
PayPal | 16th February 2015 |
Tesco Bank | 15th February 2015 |
American Express | 15th February 2015 |
Vulnerebility
GNU glibc CVE-2015-0235 Remote Heap Buffer Overflow Vulnerability
2015-02-16
http://www.securityfocus.com/bid/72325
ClamAV CVE-2014-9328 Multiple Heap Buffer Overflow Vulnerabilities
2015-02-16
http://www.securityfocus.com/bid/72372
ClamAV CVE-2013-6497 Local Denial of Service Vulnerability
2015-02-16
http://www.securityfocus.com/bid/71178
Cisco Adaptive Security Appliance (ASA) Software CVE-2015-0619 Denial of Service Vulnerability
2015-02-16
http://www.securityfocus.com/bid/72579
PostgreSQL CVE-2015-0244 Security Bypass Vulnerability
2015-02-16
http://www.securityfocus.com/bid/72543
PostgreSQL CVE-2014-8161 Information Disclosure Vulnerability
2015-02-16
http://www.securityfocus.com/bid/72538
PostgreSQL 'to_char()' Function Buffer Overflow Vulnerability
2015-02-16
http://www.securityfocus.com/bid/72540
PostgreSQL 'pgcrypto' Module Stack-Based Buffer Overflow Vulnerability
2015-02-16
http://www.securityfocus.com/bid/72542
e2fsprogs 'lib/ext2fs/openfs.c' Local Heap Based Buffer Overflow Vulnerability
2015-02-16
http://www.securityfocus.com/bid/72520
elfutils '/libelf/elf_begin.c' Directory Traversal Vulnerability
2015-02-16
http://www.securityfocus.com/bid/71804
Linux Kernel 'splice()' System Call Local Denial of Service Vulnerability
2015-02-16
http://www.securityfocus.com/bid/72347
Linux Kernel CVE-2014-9322 Local Privilege Escalation Vulnerability
2015-02-16
http://www.securityfocus.com/bid/71685
Cisco IOS Software CVE-2015-0593 Denial of Service Vulnerability
2015-02-16
http://www.securityfocus.com/bid/72549
Cisco TelePresence IX5000 Series CVE-2015-0611 Unauthorized Access Vulnerability
2015-02-16
http://www.securityfocus.com/bid/72568
D-Bus CVE-2015-0245 Local Denial of Service Vulnerability
2015-02-16
http://www.securityfocus.com/bid/72545
Microsoft Windows Group Policy CVE-2015-0008 Remote Code Execution Vulnerability
2015-02-16
http://www.securityfocus.com/bid/72477
OpenVAS Manager 'timezone' Parameter SQL Injection Vulnerability
2015-02-16
http://www.securityfocus.com/bid/71360
OpenSSL CVE-2015-0204 Man in the Middle Security Bypass Vulnerability
2015-02-16
http://www.securityfocus.com/bid/71936
mime-support Package 'run-mailcap' CVE-2014-7209 Command Injection Vulnerability
2015-02-16
http://www.securityfocus.com/bid/71797
file CVE-2014-8116 Multiple Denial of Service Vulnerabilities
2015-02-16
http://www.securityfocus.com/bid/71700
BSD mailx CVE-2014-7844 Local Arbitrary Command Execution Vulnerability
2015-02-16
http://www.securityfocus.com/bid/71701
OpenSSL CVE-2014-3572 Security Bypass Vulnerability
2015-02-16
http://www.securityfocus.com/bid/71942
Linux Kernel cpio 'list_file()' Function Heap Based Buffer Overflow Vulnerability
2015-02-16
http://www.securityfocus.com/bid/71248
BSD mailx CVE-2004-2771 Local Arbitrary Command Execution Vulnerability
2015-02-16
http://www.securityfocus.com/bid/71704
OpenSSL 'dtls1_get_record()' Function NULL Pointer Dereference Denial of Service Vulnerability
2015-02-16
http://www.securityfocus.com/bid/71937
tcpdump CVE-2014-8769 Out-of-bounds Memory Access Vulnerability
2015-02-16
http://www.securityfocus.com/bid/71153
Info-ZIP UnZip CVE-2014-8139 Remote Heap Buffer Overflow Vulnerability
2015-02-16
http://www.securityfocus.com/bid/71790
OpenSSL Certificate Fingerprints CVE-2014-8275 Local Security Bypass Vulnerability
2015-02-16
http://www.securityfocus.com/bid/71935
Info-ZIP UnZip CVE-2014-8140 Out of Bounds Write Heap Buffer Overflow Vulnerability
2015-02-16
http://www.securityfocus.com/bid/71792
cURL/libcURL CVE-2014-8150 Remote Security Bypass Vulnerability
2015-02-16
http://www.securityfocus.com/bid/71964
Exploit
13.2.2015
Bugtraq
[ MDVSA-2015:046 ] ntp 2015-02-12
security mandriva com
[ MDVSA-2015:045 ] e2fsprogs 2015-02-12
security mandriva com
[ MDVSA-2015:047 ] elfutils 2015-02-12
security mandriva com
[ MDVSA-2015:048 ] postgresql 2015-02-12
security mandriva com
[ MDVSA-2015:044 ] perl-Gtk2 2015-02-12
security mandriva com
Open-Xchange Security Advisory 2015-02-12 2015-02-12
Martin Heiland (martin heiland open-xchange com)
Shakacon 2015 Last Call for Papers (July 6-9 2015, Honolulu, Hawaii) 2015-02-12
Jonathan Brossard (endrazine gmail com)
Cisco Security Advisory: Multiple Vulnerabilities in Cisco ASA Software 2015-02-11
Cisco Systems Product Security Incident Response Team (psirt cisco com)
[SECURITY] [DSA 3161-1] dbus security update 2015-02-11
Salvatore Bonaccorso (carnil debian org)
[SECURITY] [DSA 3160-1] xorg-server security update 2015-02-11
Moritz Muehlenhoff (jmm debian org)
Malware
Phishing
PayPal | 12th February 2015 |
[IMPORTANT] : YOUR ACCOUNT | |
PayPal Inc. | 12th February 2015 |
Vulnerebility
Cisco Adaptive Security Appliance (ASA) Software CVE-2015-0619 Denial of Service Vulnerability
2015-02-13
http://www.securityfocus.com/bid/72579
PostgreSQL CVE-2015-0244 Security Bypass Vulnerability
2015-02-13
http://www.securityfocus.com/bid/72543
PostgreSQL CVE-2014-8161 Information Disclosure Vulnerability
2015-02-13
http://www.securityfocus.com/bid/72538
PostgreSQL 'to_char()' Function Buffer Overflow Vulnerability
2015-02-13
http://www.securityfocus.com/bid/72540
PostgreSQL 'pgcrypto' Module Stack-Based Buffer Overflow Vulnerability
2015-02-13
http://www.securityfocus.com/bid/72542
e2fsprogs 'lib/ext2fs/openfs.c' Local Heap Based Buffer Overflow Vulnerability
2015-02-13
http://www.securityfocus.com/bid/72520
elfutils '/libelf/elf_begin.c' Directory Traversal Vulnerability
2015-02-13
http://www.securityfocus.com/bid/71804
Linux Kernel 'splice()' System Call Local Denial of Service Vulnerability
2015-02-13
http://www.securityfocus.com/bid/72347
Linux Kernel CVE-2014-9322 Local Privilege Escalation Vulnerability
2015-02-13
http://www.securityfocus.com/bid/71685
Cisco IOS Software CVE-2015-0593 Denial of Service Vulnerability
2015-02-13
http://www.securityfocus.com/bid/72549
Cisco TelePresence IX5000 Series CVE-2015-0611 Unauthorized Access Vulnerability
2015-02-13
http://www.securityfocus.com/bid/72568
D-Bus CVE-2015-0245 Local Denial of Service Vulnerability
2015-02-13
http://www.securityfocus.com/bid/72545
Microsoft Windows Group Policy CVE-2015-0008 Remote Code Execution Vulnerability
2015-02-13
http://www.securityfocus.com/bid/72477
OpenVAS Manager 'timezone' Parameter SQL Injection Vulnerability
2015-02-13
http://www.securityfocus.com/bid/71360
OpenSSL CVE-2015-0204 Man in the Middle Security Bypass Vulnerability
2015-02-13
http://www.securityfocus.com/bid/71936
mime-support Package 'run-mailcap' CVE-2014-7209 Command Injection Vulnerability
2015-02-13
http://www.securityfocus.com/bid/71797
file CVE-2014-8116 Multiple Denial of Service Vulnerabilities
2015-02-13
http://www.securityfocus.com/bid/71700
BSD mailx CVE-2014-7844 Local Arbitrary Command Execution Vulnerability
2015-02-13
http://www.securityfocus.com/bid/71701
OpenSSL CVE-2014-3572 Security Bypass Vulnerability
2015-02-13
http://www.securityfocus.com/bid/71942
Linux Kernel cpio 'list_file()' Function Heap Based Buffer Overflow Vulnerability
2015-02-13
http://www.securityfocus.com/bid/71248
GNU glibc CVE-2015-0235 Remote Heap Buffer Overflow Vulnerability
2015-02-13
http://www.securityfocus.com/bid/72325
BSD mailx CVE-2004-2771 Local Arbitrary Command Execution Vulnerability
2015-02-13
http://www.securityfocus.com/bid/71704
OpenSSL 'dtls1_get_record()' Function NULL Pointer Dereference Denial of Service Vulnerability
2015-02-13
http://www.securityfocus.com/bid/71937
tcpdump CVE-2014-8769 Out-of-bounds Memory Access Vulnerability
2015-02-13
http://www.securityfocus.com/bid/71153
Info-ZIP UnZip CVE-2014-8139 Remote Heap Buffer Overflow Vulnerability
2015-02-13
http://www.securityfocus.com/bid/71790
OpenSSL Certificate Fingerprints CVE-2014-8275 Local Security Bypass Vulnerability
2015-02-13
http://www.securityfocus.com/bid/71935
Info-ZIP UnZip CVE-2014-8140 Out of Bounds Write Heap Buffer Overflow Vulnerability
2015-02-13
http://www.securityfocus.com/bid/71792
cURL/libcURL CVE-2014-8150 Remote Security Bypass Vulnerability
2015-02-13
http://www.securityfocus.com/bid/71964
OpenSSL CVE-2014-3570 Unspecified Security Weakness
2015-02-13
http://www.securityfocus.com/bid/71939
tcpdump CVE-2014-9140 Buffer Overflow Vulnerability
2015-02-13
http://www.securityfocus.com/bid/71468
Exploit
Exponent CMS 2.3.1 - Multiple XSS Vulnerabilities
Wordpress Video Gallery 2.7.0 - SQL Injection Vulnerability
12.2.2015
Bugtraq
[SECURITY] [DSA 3160-1] xorg-server security update 2015-02-11
Moritz Muehlenhoff (jmm debian org)
Elasticsearch vulnerability CVE-2015-1427 2015-02-11
Kevin Kluge (kevin kluge elasticsearch com)
Cisco Security Advisory: Cisco Secure Access Control System SQL Injection Vulnerability 2015-02-11
Cisco Systems Product Security Incident Response Team (psirt cisco com)
Ninja Forms WordPress Plugin Multiple Cross-Site Scripting Vulnerability 2015-02-11
sn 1dn eu
[ANN] MSKB 3004375 available for Windows 2000 and later too (but NOT from Mcirosoft) 2015-02-11
Stefan Kanthak (stefan kanthak nexgo de)
T-Mobile Internet Manager - DLL Hijacking (mfc71enu.dll) 2015-02-11
Vulnerability Lab (research vulnerability-lab com)
Pandora FMS v5.1 SP1 - SQL Injection Web Vulnerability 2015-02-11
Vulnerability Lab (research vulnerability-lab com)
BlinkSale Bug Bounty #1 - Encode & Validation Vulnerability 2015-02-11
Vulnerability Lab (research vulnerability-lab com)
Facebook Bug Bounty #23 - Session ID & CSRF Vulnerability 2015-02-11
Vulnerability Lab (research vulnerability-lab com)
Multiple Vulnerabilities in my little forum 2015-02-11
High-Tech Bridge Security Research (advisory htbridge com)
Two Reflected XSS Vulnerabilities in Easing Slider WordPress Plugin 2015-02-11
High-Tech Bridge Security Research (advisory htbridge com)
[SECURITY] [DSA 3159-1] ruby1.8 security update 2015-02-10
Alessandro Ghedini (ghedo debian org)
[ MDVSA-2015:043 ] otrs 2015-02-10
security mandriva com
[ MDVSA-2015:041 ] cabextract 2015-02-10
security mandriva com
[ MDVSA-2015:040 ] zarafa 2015-02-10
security mandriva com
[ MDVSA-2015:042 ] clamav 2015-02-10
security mandriva com
[security bulletin] HPSBMU03246 rev.1 - HP Insight Control for Linux Central Management Server Pre-boot Execution Environment running Bash Shell, Multiple Vulnerabilities 2015-02-10
security-alert hp com
[security bulletin] HPSBMU03245 rev.1 - HP Insight Control server deployment Linux Preboot Execution Environment running Bash Shell, Multiple Vulnerabilities 2015-02-10
security-alert hp com
[security bulletin] HPSBGN03255 rev.1 - HP OpenCall Media Platform (OCMP) running SSLv3, Remote Denial of Service (DoS),Disclosure of Information 2015-02-10
security-alert hp com
[ MDVSA-2015:039 ] glibc 2015-02-10
security mandriva com
[RT-SA-2014-013] Cross-Site Scripting in IBM Endpoint Manager Relay Diagnostics Page 2015-02-10
RedTeam Pentesting GmbH (release redteam-pentesting de)
Mooplayer 1.3.0 'm3u' SEH Buffer Overflow POC 2015-02-10
saman j l33t gmail com
[security bulletin] HPSBGN03251 rev.1 - HP Storage Essentials running SSLv3, Remote Disclosure of Information 2015-02-09
security-alert hp com
[SECURITY] [DSA 3158-1] unrtf security update 2015-02-09
Salvatore Bonaccorso (carnil debian org)
[SECURITY] CVE-2014-0227 Apache Tomcat Request Smuggling 2015-02-09
Mark Thomas (markt apache org)
Cookie hijacking: Internet Explorer UXSS (CVE-2015-0072) 2015-02-09
bhdresh gmail com
Radexscript CMS 2.2.0 - SQL Injection vulnerability 2015-02-09
ITAS Team (itas team itas vn)
Malware
Phishing
PayPal | 12th February 2015 |
[IMPORTANT] : YOUR ACCOUNT | |
PayPal Inc. | 12th February 2015 |
PayPal Inc. | 11th February 2015 |
alerts@citibank.com | 11th February 2015 |
Apple iTunes | 11th February 2015 |
service@paypal.co.uk | 11th February 2015 |
Mr. Ban Ki-Moon | 11th February 2015 |
Whats AppNotifier | 10th February 2015 |
NATWEST BANK | 9th February 2015 |
PayPal | 9th February 2015 |
NatWest | 9th February 2015 |
*** *** Your access to | |
PaypaI Service | 9th February 2015 |
Wells Fargo Online | 9th February 2015 |
Support@PayPal.com | 8th February 2015 |
WE'RE INVESTIGATING A PAYPAI |
Vulnerebility
OpenVAS Manager 'timezone' Parameter SQL Injection Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71360
OpenSSL CVE-2015-0204 Man in the Middle Security Bypass Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71936
mime-support Package 'run-mailcap' CVE-2014-7209 Command Injection Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71797
file CVE-2014-8116 Multiple Denial of Service Vulnerabilities
2015-02-12
http://www.securityfocus.com/bid/71700
BSD mailx CVE-2014-7844 Local Arbitrary Command Execution Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71701
OpenSSL CVE-2014-3572 Security Bypass Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71942
Linux Kernel cpio 'list_file()' Function Heap Based Buffer Overflow Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71248
GNU glibc CVE-2015-0235 Remote Heap Buffer Overflow Vulnerability
2015-02-12
http://www.securityfocus.com/bid/72325
BSD mailx CVE-2004-2771 Local Arbitrary Command Execution Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71704
OpenSSL 'dtls1_get_record()' Function NULL Pointer Dereference Denial of Service Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71937
tcpdump CVE-2014-8769 Out-of-bounds Memory Access Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71153
Info-ZIP UnZip CVE-2014-8139 Remote Heap Buffer Overflow Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71790
OpenSSL Certificate Fingerprints CVE-2014-8275 Local Security Bypass Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71935
Info-ZIP UnZip CVE-2014-8140 Out of Bounds Write Heap Buffer Overflow Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71792
cURL/libcURL CVE-2014-8150 Remote Security Bypass Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71964
OpenSSL CVE-2014-3570 Unspecified Security Weakness
2015-02-12
http://www.securityfocus.com/bid/71939
tcpdump CVE-2014-9140 Buffer Overflow Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71468
Libevent CVE-2014-6272 Multiple Heap Based Buffer Overflow Vulnerabilities
2015-02-12
http://www.securityfocus.com/bid/71971
LibYAML and Perl YAML-LibYAML Module 'scanner.c' Remote Denial of Service Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71349
Info-ZIP UnZip CVE-2014-8141 Out of Bounds Read Heap Buffer Overflow Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71793
Graphviz 'agerr()' Function Remote Format String Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71283
file CVE-2014-8117 Denial of Service Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71692
tcpdump 'olsr_print()' Function Denial of Service Vulnerability
2015-02-12
http://www.securityfocus.com/bid/71150
PostgreSQL CVE-2014-8161 Information Disclosure Vulnerability
2015-02-12
http://www.securityfocus.com/bid/72538
PostgreSQL 'to_char()' Function Buffer Overflow Vulnerability
2015-02-12
http://www.securityfocus.com/bid/72540
PostgreSQL 'pgcrypto' Module Stack-Based Buffer Overflow Vulnerability
2015-02-12
http://www.securityfocus.com/bid/72542
PostgreSQL CVE-2015-0244 Security Bypass Vulnerability
2015-02-12
http://www.securityfocus.com/bid/72543
Cisco IOS Software CVE-2015-0609 Denial of Service Vulnerability
2015-02-12
http://www.securityfocus.com/bid/72564
Cisco Prime Infrastructure CVE-2014-2147 Cross Frame Scripting Vulnerability
2015-02-12
http://www.securityfocus.com/bid/72551
Cisco IOS Software CVE-2015-0608 Denial of Service Vulnerability
2015-02-12
http://www.securityfocus.com/bid/72566
Exploit
Achat v0.150 beta7 Buffer Overflow
SoftSphere DefenseWall FW/IPS 3.24 - Privilege Escalation
MooPlayer 1.3.0 'm3u' SEH Buffer Overflow
Wordpress Survey and Poll Plugin 1.1 - Blind SQL Injection
Pandora FMS 5.1 SP1 - SQL Injection Vulnerability
IBM Endpoint Manager - Stored XSS Vulnerability
8.2.2015
Bugtraq
Malware
Phishing
Barclays | 7th February 2015 |
Tesco Bank | 7th February 2015 |
PayPal | 7th February 2015 |
Your account PayPal is limited | |
Paypal | 6th February 2015 |
PayPal | 5th February 2015 |
Vulnerebility
Cisco Unified IP Phones 9900 Series CVE-2015-0601 Local Denial of Service Vulnerability
2015-02-10
http://www.securityfocus.com/bid/72483
mpg123 MP3 Decoding Heap Based Buffer Overflow Vulnerability
2015-02-08
http://www.securityfocus.com/bid/65304
GNU Bash CVE-2014-7169 Incomplete Fix Remote Code Execution Vulnerability
2015-02-08
http://www.securityfocus.com/bid/70137
GNU Bash CVE-2014-7187 Local Memory Corruption Vulnerability
2015-02-08
http://www.securityfocus.com/bid/70154
GNU Bash CVE-2014-6271 Remote Code Execution Vulnerability
2015-02-08
http://www.securityfocus.com/bid/70103
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-02-08
http://www.securityfocus.com/bid/70574
GNU Bash CVE-2014-6278 Incomplete Fix Remote Code Execution Vulnerability
2015-02-08
http://www.securityfocus.com/bid/70166
OpenSSL Session Ticket Memory Leak Remote Denial of Service Vulnerability
2015-02-08
http://www.securityfocus.com/bid/70586
GNU Bash CVE-2014-7186 Local Memory Corruption Vulnerability
2015-02-08
http://www.securityfocus.com/bid/70152
Microsoft Internet Explorer Same Origin Policy Security Bypass Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72489
OpenSSL CVE-2014-3513 Information Disclosure Vulnerability
2015-02-08
http://www.securityfocus.com/bid/70584
GNU Bash CVE-2014-6277 Incomplete Fix Remote Code Execution Vulnerability
2015-02-08
http://www.securityfocus.com/bid/70165
Oracle Java SE CVE-2015-0408 Remote Java SE Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72140
Oracle Java SE CVE-2014-6587 Local Java SE Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72168
Oracle Java SE CVE-2014-6601 Remote Java SE Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72132
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72165
Vorbis Tools CVE-2014-9640 Local Denial of Service Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72292
Django 'django.views.static.serve()' Function Denial of Service Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72078
Django 'django.util.http.is_safe_url()' Cross Site Scripting Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72079
Django CVE-2015-0219 Security Bypass Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72081
CodeWrights 'HART DTM' Library CVE-2014-9191 Denial of Service Vulnerability
2015-02-08
http://www.securityfocus.com/bid/71952
Oracle MySQL Server CVE-2015-0411 Remote Security Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72191
Oracle MySQL Server CVE-2014-6568 Remote Security Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72210
Oracle MySQL Server CVE-2015-0382 Remote Security Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72200
Oracle MySQL Server CVE-2015-0381 Remote Security Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72214
Oracle MySQL Server CVE-2015-0391 Remote Security Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72205
Oracle MySQL Server CVE-2015-0374 Remote Security Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72227
Oracle MySQL Server CVE-2015-0432 Remote Security Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72217
JasPer 'jpc_qmfb.c' Arbitrary Code Execution Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72293
JasPer 'jpc_dec_process_sot()' Remote Heap Buffer Overflow Vulnerability
2015-02-08
http://www.securityfocus.com/bid/72296
Exploit
3.2.2015
Bugtraq
[SECURITY] [DSA 3149-1] condor security update 2015-02-02
Sebastien Delafond (seb debian org)
[security bulletin] HPSBMU03239 rev.1 - HP UCMDB, Remote Disclosure of Information 2015-02-02
security-alert hp com
[SECURITY] [DSA 3150-1] vlc security update 2015-02-02
Alessandro Ghedini (ghedo debian org)
[security bulletin] HPSBMU03236 rev.1 - HP Systems Insight Manager for Windows running Bash Shell, Remote Code Execution 2015-02-02
security-alert hp com
Fork CMS 3.8.3 - XSS Vulnerability 2015-02-02
ITAS Team (itas team itas vn)
Microweber 0.95 - SQL Injection Vulnerability 2015-02-02
ITAS Team (itas team itas vn)
Sefrengo CMS v1.6.1 - Multiple SQL Injection Vulnerabilities 2015-02-02
ITAS Team (itas team itas vn)
Malware
Phishing
PayPal | 3rd February 2015 |
Please Login to Update Your | |
PayPal | 3rd February 2015 |
Apple | 2nd February 2015 |
Apple | 2nd February 2015 |
[Dear customer] : Hi Your User | |
PayPal Security | 1st February 2015 |
Vulnerebility
VLC Media Player Multiple Security Vulnerabilities
2015-02-03
http://www.securityfocus.com/bid/72252
ClamAV CVE-2014-9328 Multiple Heap Buffer Overflow Vulnerabilities
2015-02-03
http://www.securityfocus.com/bid/72372
Condor CVE-2014-8126 Arbitrary Code Execution Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72019
IBM Tririga Application Platform CVE-2014-8894 Multiple Open Redirection Vulnerabilities
2015-02-03
http://www.securityfocus.com/bid/72408
Mozilla Firefox/SeaMonkey Bitmap Rendering Information Disclosure Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72048
Mozilla Firefox/Thunderbird/SeaMonkey CVE-2014-8635 Multiple Memory Corruption Vulnerabilities
2015-02-03
http://www.securityfocus.com/bid/72050
Mozilla Firefox/Thunderbird/SeaMonkey CVE-2014-8634 Multiple Memory Corruption Vulnerabilities
2015-02-03
http://www.securityfocus.com/bid/72049
Mozilla Firefox/SeaMonkey Web Audio Denial of Service Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72045
Mozilla Firefox Gecko Media Plugin Sandbox Security Bypass Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72043
Mozilla Firefox/Thunderbird/SeaMonkey Proxy Authentication Session Fixation Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72046
Mozilla Firefox/Thunderbird/SeaMonkey sendBeacon Cross-Site Request Forgery Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72047
Mozilla Firefox/SeaMonkey Online Certificate Status Protocol Responder Security Bypass Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72042
Mozilla Firefox/SeaMonkey XrayWrapper Privilege Escalation Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72041
Mozilla Firefox/SeaMonkey WebRTC Memory Corruption Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72044
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-02-03
http://www.securityfocus.com/bid/70574
Oracle Java SE CVE-2014-6601 Remote Java SE Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72132
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72165
Google Android CVE-2014-7911 Local Privilege Escalation Vulnerability
2015-02-03
http://www.securityfocus.com/bid/71176
Oracle Java SE CVE-2014-6591 Remote Java SE Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72175
Oracle Java SE CVE-2014-6585 Remote Java SE Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72173
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72169
Oracle Java SE CVE-2015-0412 Remote Java SE Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72136
Oracle Java SE CVE-2015-0407 Remote Java SE Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72162
Oracle Java SE CVE-2015-0400 Remote Java SE Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72159
Oracle Java SE CVE-2015-0395 Remote Java SE Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72142
Oracle Java SE CVE-2015-0383 Local Java SE, Java SE Embedded, JRockit Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72155
Oracle Java SE CVE-2014-6587 Local Java SE Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72168
Oracle Java SE CVE-2015-0408 Remote Java SE Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72140
Multiple VMware Products CVE-2014-8370 Remote Privilege Escalation Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72338
GNU glibc CVE-2015-0235 Remote Heap Buffer Overflow Vulnerability
2015-02-03
http://www.securityfocus.com/bid/72325
Exploit
Sefrengo CMS 1.6.1 - Multiple SQL Injection Vulnerabilities
1.2.2015
Bugtraq
[security bulletin] HPSBOV03226 rev.2 - HP TCP/IP Services for OpenVMS, BIND 9 Server Resolver, Multiple Remote Vulnerabilities 2015-01-30
security-alert hp com
[SECURITY] [DSA 3147-1] openjdk-6 security update 2015-01-30
Moritz Muehlenhoff (jmm debian org)
[SECURITY] [DSA 3146-1] requests security update 2015-01-30
Sebastien Delafond (seb debian org)
ESA-2015-006: EMC Avamar Missing Certificate Validation Vulnerability 2015-01-30
Security Alert (Security_Alert emc com)
Malware
Phishing
PayPal Security | 1st February 2015 |
PayPal Services | 31st January 2015 |
NatWest | 31st January 2015 |
no_reply@bt.com | 31st January 2015 |
Apple | 31st January 2015 |
NatWest | 30th January 2015 |
no_reply@bt.com | 30th January 2015 |
Vulnerebility
VMware vSphere Data Protection CVE-2014-4632 Certificate Validation Security Bypass Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72367
TYPO3 LDAP / SSO Authentication Extension Authentication Bypass Vulnerability
2015-02-01
http://www.securityfocus.com/bid/71981
TYPO3 Content Rating SQL Injection and Cross Site Scripting Vulnerabilities
2015-02-01
http://www.securityfocus.com/bid/71984
TYPO3 Content Rating Extbase Extension Multiple Input Validation Vulnerabilities
2015-02-01
http://www.securityfocus.com/bid/71985
Cisco WebEx Meetings Server CVE-2015-0595 Information Disclosure Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72370
Oracle Java SE CVE-2014-6591 Remote Java SE Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72175
Oracle Java SE CVE-2014-6585 Remote Java SE Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72173
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72165
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72169
Oracle Java SE CVE-2014-6587 Local Java SE Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72168
Oracle Java SE CVE-2015-0407 Remote Java SE Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72162
Oracle Java SE CVE-2015-0395 Remote Java SE Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72142
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-02-01
http://www.securityfocus.com/bid/70574
Oracle Java SE CVE-2015-0412 Remote Java SE Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72136
Oracle Java SE CVE-2015-0383 Local Java SE, Java SE Embedded, JRockit Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72155
Oracle Java SE CVE-2015-0408 Remote Java SE Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72140
Oracle Java SE CVE-2014-6601 Remote Java SE Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72132
Cisco WebEx Meetings Server CVE-2015-0596 Cross Site Request Forgery Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72371
Python Requests CVE-2014-1829 Information Disclosure Vulnerability
2015-02-01
http://www.securityfocus.com/bid/70012
Python Requests CVE-2014-1830 Information Disclosure Vulnerability
2015-02-01
http://www.securityfocus.com/bid/70013
Privoxy CVE-2015-1381 Multiple Memory Corruption Vulnerabilities
2015-02-01
http://www.securityfocus.com/bid/72354
Privoxy CVE-2015-1382 Remote Denial of Service Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72360
Vorbis Tools CVE-2014-9640 Local Denial of Service Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72292
Info-ZIP UnZip Out of Bounds Denial of Service Vulnerability
2015-02-01
http://www.securityfocus.com/bid/71825
PolarSSL 'asn1parse.c' Remote Code Execution Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72306
GNU glibc CVE-2015-0235 Remote Heap Buffer Overflow Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72325
Linux Kernel 'ISOFS' Stack-Based Buffer Overflow Vulnerability
2015-02-01
http://www.securityfocus.com/bid/69396
Linux Kernel 'ISOFS' Deadlock Local Denial of Service Vulnerability
2015-02-01
http://www.securityfocus.com/bid/69428
Linux Kernel 'SMB2_tcon' NULL Pointer Dereference Denial of Service Vulnerability
2015-02-01
http://www.securityfocus.com/bid/69867
Linux Kernel 'splice()' System Call Local Denial of Service Vulnerability
2015-02-01
http://www.securityfocus.com/bid/72347
Exploit
30.1.2015
Bugtraq
[SECURITY] [DSA 3144-1] openjdk-7 security update 2015-01-29
Moritz Muehlenhoff (jmm debian org)
NEW VMSA-2015-0002 VMware vSphere Data Protection product update addresses a certificate validation vulnerability 2015-01-29
VMware Security Response Center (security vmware com)
Symantec Encryption Management Server < 3.2.0MP6 - Remote Command Injection 2015-01-30
Paul Craig (lists vantagepoint sg)
Unauthenticated Reflected XSS vulnarbility in Asus RT-N10 Plus router 2015-01-29
kingkaustubh me com
Reflected XSS vulnarbility in Asus RT-N10 Plus Router 2015-01-29
kingkaustubh me com
Malware
Phishing
no_reply@bt.com | 30th January 2015 |
APPLE STORE | 28th January 2015 |
PayPal | 28th January 2015 |
IMPORTANT: WE NOTICED UNUSUAL |
Vulnerebility
Privoxy CVE-2015-1381 Multiple Memory Corruption Vulnerabilities
2015-01-30
http://www.securityfocus.com/bid/72354
Privoxy CVE-2015-1382 Remote Denial of Service Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72360
Vorbis Tools CVE-2014-9640 Local Denial of Service Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72292
Info-ZIP UnZip Out of Bounds Denial of Service Vulnerability
2015-01-30
http://www.securityfocus.com/bid/71825
PolarSSL 'asn1parse.c' Remote Code Execution Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72306
GNU glibc CVE-2015-0235 Remote Heap Buffer Overflow Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72325
Oracle Java SE CVE-2015-0407 Remote Java SE Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72162
Linux Kernel 'ISOFS' Stack-Based Buffer Overflow Vulnerability
2015-01-30
http://www.securityfocus.com/bid/69396
Linux Kernel 'ISOFS' Deadlock Local Denial of Service Vulnerability
2015-01-30
http://www.securityfocus.com/bid/69428
Linux Kernel 'SMB2_tcon' NULL Pointer Dereference Denial of Service Vulnerability
2015-01-30
http://www.securityfocus.com/bid/69867
Linux Kernel 'splice()' System Call Local Denial of Service Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72347
Linux Kernel CVE-2014-7841 SCTP NULL Pointer Dereference Denial of Service Vulnerability
2015-01-30
http://www.securityfocus.com/bid/71081
Linux Kernel 'shmem.c' CVE-2014-4171 Local Denial of Service Vulnerability
2015-01-30
http://www.securityfocus.com/bid/68157
CodeWrights 'HART DTM' Library CVE-2014-9191 Denial of Service Vulnerability
2015-01-30
http://www.securityfocus.com/bid/71952
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72165
Oracle Java SE CVE-2014-6591 Remote Java SE Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72175
Oracle Java SE CVE-2014-6601 Remote Java SE Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72132
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72169
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-01-30
http://www.securityfocus.com/bid/70574
Oracle Java SE CVE-2015-0383 Local Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72155
Oracle Java SE CVE-2014-6585 Remote Java SE Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72173
Oracle Java SE CVE-2015-0412 Remote Java SE Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72136
Oracle Java SE CVE-2015-0395 Remote Java SE Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72142
Oracle Java SE CVE-2014-6587 Local Java SE Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72168
Oracle Java SE CVE-2015-0408 Remote Java SE Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72140
FerretCMS Multiple Security Vulnerabilities
2015-01-30
http://www.securityfocus.com/bid/72287
JasPer 'jpc_qmfb.c' Arbitrary Code Execution Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72293
Drupal Context Module Open Redirection Vulnerability
2015-01-30
http://www.securityfocus.com/bid/71925
JasPer 'jpc_dec_process_sot()' Remote Heap Buffer Overflow Vulnerability
2015-01-30
http://www.securityfocus.com/bid/72296
Cisco Identity Services Engine CVE-2014-8022 Multiple Cross Site Scripting Vulnerabilities
2015-01-30
http://www.securityfocus.com/bid/72083
Exploit
29.1.2015
Bugtraq
Unauthenticated Reflected XSS vulnarbility in Asus RT-N10 Plus router 2015-01-29
kingkaustubh me com
Reflected XSS vulnarbility in Asus RT-N10 Plus Router 2015-01-29
kingkaustubh me com
ESA-2015-002: Unisphere Central Security Update for Multiple Vulnerabilities 2015-01-29
Security Alert (Security_Alert emc com)
Blubrry PowerPress Security Advisory - XSS Vulnerability - CVE-2015-1385 2015-01-29
Onur Yilmaz (onur netsparker com)
CVE-2014-8779: SSH Host keys on Pexip Infinity 2015-01-29
giles pexip com
[The ManageOwnage Series, part XII]: Multiple vulnerabilities in FailOverServlet (OpManager, AppManager, IT360) 2015-01-28
Pedro Ribeiro (pedrib gmail com)
Cisco Security Advisory: GNU glibc gethostbyname Function Buffer Overflow Vulnerability 2015-01-28
Cisco Systems Product Security Incident Response Team (psirt cisco com)
AST-2015-001: File descriptor leak when incompatible codecs are offered 2015-01-28
Asterisk Security Team (security asterisk org)
[slackware-security] glibc (SSA:2015-028-01) 2015-01-28
Slackware Security Team (security slackware com)
Malware
Phishing
Vulnerebility
GNU glibc CVE-2015-0235 Remote Heap Buffer Overflow Vulnerability
2015-01-29
http://www.securityfocus.com/bid/72325
JasPer 'jpc_qmfb.c' Arbitrary Code Execution Vulnerability
2015-01-29
http://www.securityfocus.com/bid/72293
Drupal Context Module Open Redirection Vulnerability
2015-01-29
http://www.securityfocus.com/bid/71925
Info-ZIP UnZip Out of Bounds Denial of Service Vulnerability
2015-01-29
http://www.securityfocus.com/bid/71825
JasPer 'jpc_dec_process_sot()' Remote Heap Buffer Overflow Vulnerability
2015-01-29
http://www.securityfocus.com/bid/72296
Oracle Java SE CVE-2014-6601 Remote Java SE Vulnerability
2015-01-29
http://www.securityfocus.com/bid/72132
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-29
http://www.securityfocus.com/bid/72165
Oracle Java SE CVE-2014-6591 Remote Java SE Vulnerability
2015-01-29
http://www.securityfocus.com/bid/72175
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-01-29
http://www.securityfocus.com/bid/70574
Oracle Java SE CVE-2015-0383 Local Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-29
http://www.securityfocus.com/bid/72155
Oracle Java SE CVE-2015-0412 Remote Java SE Vulnerability
2015-01-29
http://www.securityfocus.com/bid/72136
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-29
http://www.securityfocus.com/bid/72169
Oracle Java SE CVE-2015-0407 Remote Java SE Vulnerability
2015-01-29
http://www.securityfocus.com/bid/72162
Oracle Java SE CVE-2015-0408 Remote Java SE Vulnerability
2015-01-29
http://www.securityfocus.com/bid/72140
Oracle Java SE CVE-2015-0395 Remote Java SE Vulnerability
2015-01-29
http://www.securityfocus.com/bid/72142
Oracle Java SE CVE-2014-6585 Remote Java SE Vulnerability
2015-01-29
http://www.securityfocus.com/bid/72173
Oracle Java SE CVE-2014-6587 Local Java SE Vulnerability
2015-01-29
http://www.securityfocus.com/bid/72168
Cisco Identity Services Engine CVE-2014-8022 Multiple Cross Site Scripting Vulnerabilities
2015-01-29
http://www.securityfocus.com/bid/72083
Airwatch CVE-2014-8372 Multiple Information Disclosure Vulnerabilities
2015-01-29
http://www.securityfocus.com/bid/71609
Apple iOS APPLE-SA-2015-01-27-2 Multiple Security Vulnerabilities
2015-01-29
http://www.securityfocus.com/bid/72333
Multiple Apple Products Multiple Security Vulnerabilities
2015-01-29
http://www.securityfocus.com/bid/72327
Linux Kernel CVE-2014-9322 Local Privilege Escalation Vulnerability
2015-01-29
http://www.securityfocus.com/bid/71685
Linux Kernel CVE-2014-7841 SCTP NULL Pointer Dereference Denial of Service Vulnerability
2015-01-29
http://www.securityfocus.com/bid/71081
LibYAML and Perl YAML-LibYAML Module 'scanner.c' Remote Denial of Service Vulnerability
2015-01-29
http://www.securityfocus.com/bid/71349
WebKit CVE-2014-4477 Unspecified Memory Corruption Vulnerability
2015-01-29
http://www.securityfocus.com/bid/72331
Microsoft Windows TCP/IP CVE-2014-4076 Local Privilege Escalation Vulnerability
2015-01-29
http://www.securityfocus.com/bid/70976
Linux Kernel 'SMB2_tcon' NULL Pointer Dereference Denial of Service Vulnerability
2015-01-29
http://www.securityfocus.com/bid/69867
Linux Kernel 'shmem.c' CVE-2014-4171 Local Denial of Service Vulnerability
2015-01-29
http://www.securityfocus.com/bid/68157
Linux Kernel 'ISOFS' Stack-Based Buffer Overflow Vulnerability
2015-01-29
http://www.securityfocus.com/bid/69396
Linux Kernel 'ISOFS' Deadlock Local Denial of Service Vulnerability
2015-01-29
http://www.securityfocus.com/bid/69428
Exploit
VSAT Sailor 900 - Remote Exploit
ClearSCADA - Remote Authentication Bypass Exploit
OS X < 10.10.x - Gatekeeper bypass Vulnerability
UniPDF 1.1 - Crash PoC (SEH overwritten)
Microsoft Windows Server 2003 SP2 - Privilege Escalation
ManageEngine Firewall Analyzer 8.0 - Directory Traversal/XSS Vulnerabilities
FreeBSD Kernel Multiple Vulnerabilities
28.1.2015
Bugtraq
[CVE-2015-1393] Photo Gallery (Wordpress Plugin) - SQL Injection in Version 1.2.8 2015-01-28
sven bsddaemon org
[CVE-2015-1394] Photo Gallery (Wordpress Plugin) - Multiple XSS Vulnerabilities Version 1.2.8 2015-01-28
sven bsddaemon org
[AMPLIA-ARA100614] OS X Gatekeeper Bypass Vulnerability 2015-01-28
Amplia Security Advisories (advisories ampliasecurity com)
NEW VMSA-2015-0001 - VMware vCenter Server, ESXi, Workstation, Player, and Fusion updates address resolve security issues 2015-01-27
VMware Security Response Center (security vmware com)
Multiple vulnerabilities in MantisBT 2015-01-28
High-Tech Bridge Security Research (advisory htbridge com)
Two XSS Vulnerabilities in SupportCenter Plus 2015-01-28
High-Tech Bridge Security Research (advisory htbridge com)
Malware
Phishing
NETELLER | 28th January 2015 |
Your NETELLER Account Has Been | |
Service .inc | 28th January 2015 |
PayPal | 28th January 2015 |
BT | 28th January 2015 |
PayPal | 28th January 2015 |
PayPal | 28th January 2015 |
PayPal | 28th January 2015 |
[Paypal]: You Need To Confirm | |
Skype | 28th January 2015 |
Citibank | 28th January 2015 |
PayPal | 28th January 2015 |
Apple | 28th January 2015 |
PayPal | 28th January 2015 |
Your Barclays Account | 28th January 2015 |
Paypal Support | 28th January 2015 |
Apple | 28th January 2015 |
HSBC Bank | 28th January 2015 |
NatWest | 28th January 2015 |
Microsoft | 28th January 2015 |
PayPal Reminder | 28th January 2015 |
PayPal Services | 28th January 2015 |
YOUR ACCOUNT PAYPAL IS LIMITED | |
PayPal | 28th January 2015 |
PayPal Update | 28th January 2015 |
PayPal Inc | 28th January 2015 |
HSBC Bank | 28th January 2015 |
Vulnerebility
CodeWrights 'HART DTM' Library CVE-2014-9191 Denial of Service Vulnerability
2015-01-28
http://www.securityfocus.com/bid/71952
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-01-28
http://www.securityfocus.com/bid/70574
OpenSSL 'no-ssl3' Build Option Security Bypass Vulnerability
2015-01-28
http://www.securityfocus.com/bid/70585
OpenSSL CVE-2014-3511 Man in the Middle Security Bypass Vulnerability
2015-01-28
http://www.securityfocus.com/bid/69079
OpenSSL NULL Pointer Dereference CVE-2014-5139 Local Denial of Service Vulnerability
2015-01-28
http://www.securityfocus.com/bid/69077
OpenSSL CVE-2014-3509 Remote Denial of Service Vulnerability
2015-01-28
http://www.securityfocus.com/bid/69084
OpenSSL CVE-2014-0224 Man in the Middle Security Bypass Vulnerability
2015-01-28
http://www.securityfocus.com/bid/67899
NTP 'ntp-keygen.c' Predictable Random Number Generator Weakness
2015-01-28
http://www.securityfocus.com/bid/71762
Network Time Protocol CVE-2014-9295 Multiple Stack Based Buffer Overflow Vulnerabilities
2015-01-28
http://www.securityfocus.com/bid/71761
Network Time Protocol CVE-2014-9296 Unspecified Security Vulnerability
2015-01-28
http://www.securityfocus.com/bid/71758
NTP 'ntp_config.c' Insufficient Entropy Security Weakness
2015-01-28
http://www.securityfocus.com/bid/71757
Mozilla Firefox/SeaMonkey XrayWrapper Privilege Escalation Vulnerability
2015-01-28
http://www.securityfocus.com/bid/72041
Mozilla Firefox/SeaMonkey Web Audio Denial of Service Vulnerability
2015-01-28
http://www.securityfocus.com/bid/72045
GNU glibc 'iconv()' Denial of Service Vulnerability
2015-01-28
http://www.securityfocus.com/bid/69472
GNU glibc CVE-2014-7817 Arbitrary Command Execution Vulnerability
2015-01-28
http://www.securityfocus.com/bid/71216
Mozilla Firefox/Thunderbird/SeaMonkey CVE-2014-8634 Multiple Memory Corruption Vulnerabilities
2015-01-28
http://www.securityfocus.com/bid/72049
Mozilla Firefox/SeaMonkey Bitmap Rendering Information Disclosure Vulnerability
2015-01-28
http://www.securityfocus.com/bid/72048
Mozilla Firefox/Thunderbird/SeaMonkey CVE-2014-8635 Multiple Memory Corruption Vulnerabilities
2015-01-28
http://www.securityfocus.com/bid/72050
Mozilla Firefox/Thunderbird/SeaMonkey sendBeacon Cross-Site Request Forgery Vulnerability
2015-01-28
http://www.securityfocus.com/bid/72047
Mozilla Firefox/Thunderbird/SeaMonkey Proxy Authentication Session Fixation Vulnerability
2015-01-28
http://www.securityfocus.com/bid/72046
Mozilla Firefox/SeaMonkey Online Certificate Status Protocol Responder Security Bypass Vulnerability
2015-01-28
http://www.securityfocus.com/bid/72042
Mozilla Firefox/SeaMonkey WebRTC Memory Corruption Vulnerability
2015-01-28
http://www.securityfocus.com/bid/72044
Oracle Java SE CVE-2014-6585 Remote Java SE Vulnerability
2015-01-28
http://www.securityfocus.com/bid/72173
Wireshark TLS/SSL Decryption CVE-2015-0564 Denial of Service Vulnerability
2015-01-28
http://www.securityfocus.com/bid/71922
Wireshark DEC DNA Routing Protocol Dissector CVE-2015-0562 Remote Denial of Service Vulnerability
2015-01-28
http://www.securityfocus.com/bid/71921
Xen MMU CVE-2014-8594 Local Security Bypass Vulnerability
2015-01-28
http://www.securityfocus.com/bid/71149
Xen CVE-2014-8595 Local Privilege Escalation Vulnerability
2015-01-28
http://www.securityfocus.com/bid/71151
Xen MMU_MACHPHYS_UPDATE Handling Memory Leak Denial of Service Vulnerability
2015-01-28
http://www.securityfocus.com/bid/71207
Xen CVE-2014-8867 Denial of Service Vulnerability
2015-01-28
http://www.securityfocus.com/bid/71331
Xen CVE-2014-8866 Denial of Service Vulnerability
2015-01-28
http://www.securityfocus.com/bid/71332
Exploit
ClearSCADA - Remote Authentication Bypass Exploit
27.1.2015
Bugtraq
[SECURITY] [DSA 3140-1] xen security update 2015-01-27
Moritz Muehlenhoff (jmm debian org)
[SYSS-2014-013] FancyFon FAMOC - Use of a One-Way Hash without a Salt 2015-01-27
matthias deeg syss de
[SYSS-2014-011] FancyFon FAMOC - Cross-Site Scripting 2015-01-27
matthias deeg syss de
[SYSS-2014-012] FancyFon FAMOC - Session Fixation 2015-01-27
matthias deeg syss de
CVE-2015-0223: anonymous access to qpidd cannot be prevented 2015-01-26
Gordon Sim (gsim apache org)
CVE-2015-0224: qpidd can be crashed by unauthenticated user 2015-01-26
Gordon Sim (gsim apache org)
[CORE-2015-0002] - Android WiFi-Direct Denial of Service 2015-01-26
CORE Advisories Team (advisories coresecurity com)
WebKitGTK+ Security Advisory WSA-2015-0001 2015-01-26
Carlos Alberto Lopez Perez (clopez igalia com)
Malware
Phishing
Paypal | 27th January 2015 |
National | 27th January 2015 |
Apple Inc. | 27th January 2015 |
PayPal | 27th January 2015 |
ebilling@bt.com | 27th January 2015 |
Natwest | 27th January 2015 |
onlinebankinservice@tescobank. | 27th January 2015 |
_-Vydox_-_Plus_- | 27th January 2015 |
~NEW~YEAR,~NEW~YOU:~30~DAY~FRE | |
MS MARY ARINZE | 27th January 2015 |
JANET NAPOLITANO | 27th January 2015 |
PayPal Services | 27th January 2015 |
YOUR ACCOUNT PAYPAL IS LIMITED | |
PayPal | 27th January 2015 |
Apple Service | 27th January 2015 |
Ysande | 27th January 2015 |
PayPal | 27th January 2015 |
PayPal | 27th January 2015 |
Barclays | 27th January 2015 |
Bank of America Alert | 27th January 2015 |
Apple | 27th January 2015 |
Apple | 27th January 2015 |
PayPal INC. | 27th January 2015 |
YOUR ACCOUNT WILL BE LIMITED. | |
NatWest Online Banking | 27th January 2015 |
head office | 27th January 2015 |
Navy Federal Online | 27th January 2015 |
Vulnerebility
Oracle Java SE CVE-2014-6601 Remote Java SE Vulnerability
2015-01-27
http://www.securityfocus.com/bid/72132
Oracle Java SE CVE-2014-6591 Remote Java SE Vulnerability
2015-01-27
http://www.securityfocus.com/bid/72175
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-01-27
http://www.securityfocus.com/bid/70574
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-27
http://www.securityfocus.com/bid/72165
Oracle Java SE CVE-2014-6587 Local Java SE Vulnerability
2015-01-27
http://www.securityfocus.com/bid/72168
Oracle Java SE CVE-2015-0395 Remote Java SE Vulnerability
2015-01-27
http://www.securityfocus.com/bid/72142
Oracle Java SE CVE-2015-0412 Remote Java SE Vulnerability
2015-01-27
http://www.securityfocus.com/bid/72136
Oracle Java SE CVE-2015-0408 Remote Java SE Vulnerability
2015-01-27
http://www.securityfocus.com/bid/72140
Oracle Java SE CVE-2015-0407 Remote Java SE Vulnerability
2015-01-27
http://www.securityfocus.com/bid/72162
Oracle Java SE CVE-2015-0383 Local Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-27
http://www.securityfocus.com/bid/72155
Microsoft Windows Kerberos Checksum CVE-2014-6324 Remote Privilege Escalation Vulnerability
2015-01-27
http://www.securityfocus.com/bid/70958
kwallet Weak Stored Password Encryption Local Security Weakness
2015-01-27
http://www.securityfocus.com/bid/67716
IBM Tivoli Storage Manager Client CVE-2013-2964 Local Buffer Overflow Vulnerability
2015-01-27
http://www.securityfocus.com/bid/62789
Linux Kernel 'vdso_addr()' Function Local Security Bypass Vulnerability
2015-01-27
http://www.securityfocus.com/bid/71990
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-27
http://www.securityfocus.com/bid/72169
Django CVE-2015-0219 Security Bypass Vulnerability
2015-01-27
http://www.securityfocus.com/bid/72081
Django 'django.util.http.is_safe_url()' Cross Site Scripting Vulnerability
2015-01-27
http://www.securityfocus.com/bid/72079
Django 'ModelMultipleChoiceField' Denial of Service Vulnerability
2015-01-27
http://www.securityfocus.com/bid/72080
Django 'django.views.static.serve()' Function Denial of Service Vulnerability
2015-01-27
http://www.securityfocus.com/bid/72078
Castor Library CVE-2014-3004 XML External Entity Information Disclosure Vulnerability
2015-01-27
http://www.securityfocus.com/bid/67676
Docker CVE-2014-9358 Multiple Directory Traversal Vulnerabilities
2015-01-27
http://www.securityfocus.com/bid/71649
Docker CVE-2014-9357 Remote Privilege Escalation Vulnerability
2015-01-27
http://www.securityfocus.com/bid/71647
Docker CVE-2014-9356 Multiple Directory Traversal Vulnerabilities
2015-01-27
http://www.securityfocus.com/bid/71654
Oracle Java SE CVE-2014-6585 Remote Java SE Vulnerability
2015-01-27
http://www.securityfocus.com/bid/72173
Google Chrome 40.0.2214.91 Multiple Security Vulnerabilities
2015-01-27
http://www.securityfocus.com/bid/72288
Unbound CVE-2014-8602 Remote Denial of Service Vulnerability
2015-01-27
http://www.securityfocus.com/bid/71589
JasPer 'jpc_qmfb.c' Arbitrary Code Execution Vulnerability
2015-01-27
http://www.securityfocus.com/bid/72293
JasPer 'jpc_dec_process_sot()' Remote Heap Buffer Overflow Vulnerability
2015-01-27
http://www.securityfocus.com/bid/72296
JasPer CVE-2014-8138 Remote Heap Buffer Overflow Vulnerability
2015-01-27
http://www.securityfocus.com/bid/71746
JasPer CVE-2014-8137 Double Free Remote Code Execution Vulnerability
2015-01-27
http://www.securityfocus.com/bid/71742
Exploit
D-Link DSL-2740R - Unauthenticated Remote DNS Change Exploit
VLC Player 2.1.5 - DEP Access Violation Vulnerability
VLC Player 2.1.5 - Write Access Violation Vulnerability
Comodo Backup 4.4.0.0 - NULL Pointer Dereference EOP
Mangallam CMS - SQL Injection Web Vulnerability
Barracuda Networks Cloud Series - Filter Bypass Vulnerability
ManageEngine ServiceDesk Plus 9.0 (< Build 9031) - User Privileges Management Vulnerability
PHP Webquest 2.6 - SQL Injection
Android WiFi-Direct Denial of Service
26.1.2015
Bugtraq
Fwd: REWTERZ-20140103 - ManageEngine ServiceDesk Plus User Privileges Management Vulnerability 2015-01-22
Rewterz - Research Group (advisories rewterz com)
REWTERZ-20140102 - ManageEngine ServiceDesk Plus User Enumeration Vulnerability 2015-01-22
Rewterz - Research Group (advisories rewterz com)
REWTERZ-20140101 - ManageEngine ServiceDesk SQL Injection Vulnerability 2015-01-22
Rewterz - Research Group (advisories rewterz com)
[HITB-Announce] #HITB2015AMS Call for Papers 1st Round is Closing in 10 Days 2015-01-22
Hafez Kamal (aphesz hackinthebox org)
PhotoSync 1.1.3 Android - Command Inject Vulnerability 2015-01-22
Vulnerability Lab (research vulnerability-lab com)
Program-O v2.4.6 - Multiple Web Vulnerabilities 2015-01-22
Vulnerability Lab (research vulnerability-lab com)
CVE-2015-1180-xss-eventsentry 2015-01-22
Sudhanshu Chauhan (sudhanshu octogence com)
CVE-2015-1179-xss-mango-automation-scada 2015-01-22
Sudhanshu Chauhan (sudhanshu octogence com)
CVE-2015-1178-xss-x-cart-ecommerce 2015-01-22
Sudhanshu Chauhan (sudhanshu octogence com)
Malware
Phishing
Vulnerebility
Adobe Flash Player CVE-2015-0311 Unspecified Security Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72283
JasPer 'jpc_qmfb.c' Arbitrary Code Execution Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72293
JasPer 'jpc_dec_process_sot()' Remote Heap Buffer Overflow Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72296
McAfee ePolicy Orchestrator 'conditionXML' Parameter XML External Entity Injection Vulnerability
2015-01-26
http://www.securityfocus.com/bid/71881
Oracle MySQL Server CVE-2015-0432 Remote Security Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72217
Oracle MySQL Server CVE-2015-0411 Remote Security Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72191
Oracle MySQL Server CVE-2014-6568 Remote Security Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72210
Oracle MySQL Server CVE-2015-0374 Remote Security Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72227
Oracle MySQL Server CVE-2015-0382 Remote Security Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72200
Oracle MySQL Server CVE-2015-0381 Remote Security Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72214
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-01-26
http://www.securityfocus.com/bid/70574
Oracle Java SE CVE-2014-6601 Remote Java SE Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72132
Oracle Java SE CVE-2014-6591 Remote Java SE Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72175
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72165
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72169
Oracle Java SE CVE-2015-0412 Remote Java SE Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72136
Oracle Java SE CVE-2015-0395 Remote Java SE Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72142
Oracle Java SE CVE-2015-0383 Local Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72155
Oracle Java SE CVE-2014-6585 Remote Java SE Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72173
Oracle Java SE CVE-2014-6587 Local Java SE Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72168
Oracle Java SE CVE-2015-0407 Remote Java SE Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72162
Oracle Java SE CVE-2015-0408 Remote Java SE Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72140
elfutils '/libelf/elf_begin.c' Directory Traversal Vulnerability
2015-01-26
http://www.securityfocus.com/bid/71804
Info-ZIP UnZip Out of Bounds Denial of Service Vulnerability
2015-01-26
http://www.securityfocus.com/bid/71825
Samba CVE-2014-8143 Privilege Escalation Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72278
Adobe Flash Player CVE-2015-0310 Unspecified Memory Corruption Vulnerability
2015-01-26
http://www.securityfocus.com/bid/72261
Jenkins Session Cookie Multiple Security Bypass Vulnerabilities
2015-01-26
http://www.securityfocus.com/bid/72054
ManageEngine ServiceDesk Plus 'search' Parameter User Enumeration Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72300
ManageEngine ServiceDesk Plus 'CreateReportTable.jsp' SQL Injection Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72299
McAfee ePolicy Orchestrator CVE-2015-0922 Information Disclosure Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72298
Exploit
23.1.2015
Bugtraq
Fwd: REWTERZ-20140103 - ManageEngine ServiceDesk Plus User Privileges Management Vulnerability 2015-01-22
Rewterz - Research Group (advisories rewterz com)
REWTERZ-20140102 - ManageEngine ServiceDesk Plus User Enumeration Vulnerability 2015-01-22
Rewterz - Research Group (advisories rewterz com)
REWTERZ-20140101 - ManageEngine ServiceDesk SQL Injection Vulnerability 2015-01-22
Rewterz - Research Group (advisories rewterz com)
[HITB-Announce] #HITB2015AMS Call for Papers 1st Round is Closing in 10 Days 2015-01-22
Hafez Kamal (aphesz hackinthebox org)
PhotoSync 1.1.3 Android - Command Inject Vulnerability 2015-01-22
Vulnerability Lab (research vulnerability-lab com)
Program-O v2.4.6 - Multiple Web Vulnerabilities 2015-01-22
Vulnerability Lab (research vulnerability-lab com)
CVE-2015-1180-xss-eventsentry 2015-01-22
Sudhanshu Chauhan (sudhanshu octogence com)
CVE-2015-1179-xss-mango-automation-scada 2015-01-22
Sudhanshu Chauhan (sudhanshu octogence com)
CVE-2015-1178-xss-x-cart-ecommerce 2015-01-22
Sudhanshu Chauhan (sudhanshu octogence com)
Malware
Phishing
Vulnerebility
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-01-23
http://www.securityfocus.com/bid/70574
Oracle Java SE CVE-2014-6601 Remote Java SE Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72132
Oracle Java SE CVE-2014-6591 Remote Java SE Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72175
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72165
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72169
Oracle Java SE CVE-2015-0412 Remote Java SE Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72136
Oracle Java SE CVE-2015-0395 Remote Java SE Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72142
Oracle Java SE CVE-2015-0383 Local Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72155
Oracle Java SE CVE-2014-6585 Remote Java SE Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72173
Oracle Java SE CVE-2014-6587 Local Java SE Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72168
Oracle Java SE CVE-2015-0407 Remote Java SE Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72162
Oracle Java SE CVE-2015-0408 Remote Java SE Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72140
elfutils '/libelf/elf_begin.c' Directory Traversal Vulnerability
2015-01-23
http://www.securityfocus.com/bid/71804
Info-ZIP UnZip Out of Bounds Denial of Service Vulnerability
2015-01-23
http://www.securityfocus.com/bid/71825
Samba CVE-2014-8143 Privilege Escalation Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72278
Adobe Flash Player CVE-2015-0310 Unspecified Memory Corruption Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72261
Oracle MySQL Server CVE-2015-0382 Remote Security Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72200
Oracle MySQL Server CVE-2015-0381 Remote Security Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72214
Oracle MySQL Server CVE-2014-6568 Remote Security Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72210
Oracle MySQL Server CVE-2015-0432 Remote Security Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72217
Oracle MySQL Server CVE-2015-0411 Remote Security Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72191
Oracle MySQL Server CVE-2015-0374 Remote Security Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72227
Jenkins Session Cookie Multiple Security Bypass Vulnerabilities
2015-01-23
http://www.securityfocus.com/bid/72054
JasPer 'jpc_qmfb.c' Arbitrary Code Execution Vulnerability
2015-01-23
http://www.securityfocus.com/bid/72293
Samsung SmartViewer 'CNC_Ctrl' ActiveX Stack Buffer Overflow Vulnerability
2015-01-22
http://www.securityfocus.com/bid/71486
ppmd CVE-2015-1199 Multiple Directory Traversal Vulnerabilities
2015-01-22
http://www.securityfocus.com/bid/72099
pxz CVE-2015-1200 Insecure File Permissions Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72101
binutils 'peXXigen.c' Remote Denial of Service Vulnerability
2015-01-22
http://www.securityfocus.com/bid/70866
binutils CVE-2014-8502 Heap Based Buffer Overflow Vulnerability
2015-01-22
http://www.securityfocus.com/bid/70869
binutils 'ihex.c' Stack Based Buffer Overflow Vulnerability
2015-01-22
http://www.securityfocus.com/bid/70868
Exploit
22.1.2015
Bugtraq
PhotoSync 1.1.3 Android - Command Inject Vulnerability 2015-01-22
Vulnerability Lab (research vulnerability-lab com)
Program-O v2.4.6 - Multiple Web Vulnerabilities 2015-01-22
Vulnerability Lab (research vulnerability-lab com)
CVE-2015-1180-xss-eventsentry 2015-01-22
Sudhanshu Chauhan (sudhanshu octogence com)
CVE-2015-1179-xss-mango-automation-scada 2015-01-22
Sudhanshu Chauhan (sudhanshu octogence com)
CVE-2015-1178-xss-x-cart-ecommerce 2015-01-22
Sudhanshu Chauhan (sudhanshu octogence com)
CVE-2015-1177-xss-exponent 2015-01-22
Sudhanshu Chauhan (sudhanshu octogence com)
SEC Consult SA-20150122-0 :: Multiple critical vulnerabilities in Symantec Data Center Security: Server Advanced (SDCS:SA) & SCSP 2015-01-22
SEC Consult Vulnerability Lab (research sec-consult com)
CVE-2015-1176-xss-osticket 2015-01-22
Sudhanshu Chauhan (sudhanshu octogence com)
[slackware-security] samba (SSA:2015-020-01) 2015-01-21
Slackware Security Team (security slackware com)
Remote Desktop v0.9.4 Android - Multiple Vulnerabilities 2015-01-21
Vulnerability Lab (research vulnerability-lab com)
iExplorer 3.6.3 - DLL Hijacking Exploit itunesmobiledevice.dll 2015-01-21
Vulnerability Lab (research vulnerability-lab com)
[RT-SA-2014-010] AVM FRITZ!Box Firmware Signature Bypass 2015-01-21
RedTeam Pentesting GmbH (release redteam-pentesting de)
PhotoSync v1.1.3 Android - Command Inject Vulnerability 2015-01-21
Vulnerability Lab (research vulnerability-lab com)
[oCERT-2015-001] JasPer input sanitization errors 2015-01-21
Andrea Barisani (lcars ocert org)
[security bulletin] HPSBUX03235 SSRT101750 rev.1 - HP-UX Running BIND, Remote Denial of Service (DoS) 2015-01-20
security-alert hp com
[SECURITY] [DSA 3134-1] sympa security update 2015-01-20
Salvatore Bonaccorso (carnil debian org)
[SECURITY] [DSA 3133-1] privoxy security update 2015-01-20
Moritz Muehlenhoff (jmm debian org)
Malware
Phishing
Vulnerebility
Oracle MySQL Server CVE-2015-0382 Remote Security Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72200
Oracle MySQL Server CVE-2015-0381 Remote Security Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72214
Oracle MySQL Server CVE-2014-6568 Remote Security Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72210
Oracle MySQL Server CVE-2015-0432 Remote Security Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72217
Oracle MySQL Server CVE-2015-0411 Remote Security Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72191
Oracle MySQL Server CVE-2015-0374 Remote Security Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72227
Jenkins Session Cookie Multiple Security Bypass Vulnerabilities
2015-01-22
http://www.securityfocus.com/bid/72054
Samsung SmartViewer 'CNC_Ctrl' ActiveX Stack Buffer Overflow Vulnerability
2015-01-22
http://www.securityfocus.com/bid/71486
ppmd CVE-2015-1199 Multiple Directory Traversal Vulnerabilities
2015-01-22
http://www.securityfocus.com/bid/72099
pxz CVE-2015-1200 Insecure File Permissions Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72101
Oracle Java SE CVE-2014-6593 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72169
Oracle Java SE CVE-2015-0410 Remote Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72165
Oracle Java SE CVE-2015-0412 Remote Java SE Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72136
binutils 'peXXigen.c' Remote Denial of Service Vulnerability
2015-01-22
http://www.securityfocus.com/bid/70866
binutils CVE-2014-8502 Heap Based Buffer Overflow Vulnerability
2015-01-22
http://www.securityfocus.com/bid/70869
binutils 'ihex.c' Stack Based Buffer Overflow Vulnerability
2015-01-22
http://www.securityfocus.com/bid/70868
binutils 'srec.c' Stack Based Buffer Overflow Vulnerability
2015-01-22
http://www.securityfocus.com/bid/70761
Exiv2 'riffvideo.cpp' Remote Buffer Overflow Vulnerability
2015-01-22
http://www.securityfocus.com/bid/71912
binutils 'archive.c' Local Information Disclosure Vulnerability
2015-01-22
http://www.securityfocus.com/bid/71083
binutils Multiple Directory Traversal Vulnerabilities
2015-01-22
http://www.securityfocus.com/bid/70908
Oracle Java SE CVE-2014-6549 Remote Java SE Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72137
Oracle Java SE CVE-2015-0437 Remote Java SE Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72146
Oracle Java SE CVE-2015-0407 Remote Java SE Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72162
Oracle Java SE CVE-2014-6591 Remote Java SE Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72175
Oracle Java SE CVE-2015-0383 Local Java SE, Java SE Embedded, JRockit Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72155
Oracle Java SE CVE-2014-6601 Remote Java SE Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72132
Oracle Java SE CVE-2015-0395 Remote Java SE Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72142
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-01-22
http://www.securityfocus.com/bid/70574
Oracle Java SE CVE-2014-6585 Remote Java SE Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72173
Oracle Java SE CVE-2015-0408 Remote Java SE Vulnerability
2015-01-22
http://www.securityfocus.com/bid/72140
Exploit
Exif Pilot 4.7.2 - SEH Based Buffer Overflow
19.1.2015
Bugtraq
CVE-2015-1032 Kiwix Cross-Site Scripting Vulnerability 2015-01-18
Riley Baird (BM-2cVqnDuYbAU5do2DfJTrN7ZbAJ246S4Xix bitmessage ch)
[slackware-security] seamonkey (SSA:2015-016-04) 2015-01-17
Slackware Security Team (security slackware com)
[slackware-security] mozilla-firefox (SSA:2015-016-02) 2015-01-17
Slackware Security Team (security slackware com)
[slackware-security] freetype (SSA:2015-016-01) 2015-01-17
Slackware Security Team (security slackware com)
[slackware-security] mozilla-thunderbird (SSA:2015-016-03) 2015-01-17
Slackware Security Team (security slackware com)
[ MDVSA-2015:027 ] kernel 2015-01-16
security mandriva com
Facebook Bug Bounty #19 - Filter Bypass Web Vulnerability 2015-01-16
Vulnerability Lab (research vulnerability-lab com)
File Pro Mini v5.2 iOS - Multiple Web Vulnerabilities 2015-01-16
Vulnerability Lab (research vulnerability-lab com)
Pandora FMS v5.1 SP1 - Persistent SNMP Editor Vulnerability 2015-01-16
admin@evolution-sec.com (admin evolution-sec com)
WiFi File Browser Pro v2.0.8 - Code Execution Vulnerability 2015-01-16
Vulnerability Lab (research vulnerability-lab com)
VeryPhoto v3.0 iOS - Command Injection Vulnerability 2015-01-16
Vulnerability Lab (research vulnerability-lab com)
CatBot v0.4.2 (PHP) - SQL Injection Vulnerability 2015-01-16
Vulnerability Lab (research vulnerability-lab com)
[SECURITY] [DSA 3129-1] rpm security update 2015-01-15
Moritz Muehlenhoff (jmm debian org)
Malware
Phishing
Vulnerebility
elfutils '/libelf/elf_begin.c' Directory Traversal Vulnerability
2015-01-19
http://www.securityfocus.com/bid/71804
Cisco WebEx Meetings Server CVE-2014-8030 Cross Site Scripting Vulnerability
2015-01-19
http://www.securityfocus.com/bid/71945
Lsyncd 'default-rsyncssh.lua' Remote Command Injection Vulnerability
2015-01-19
http://www.securityfocus.com/bid/71179
Microsoft Windows CVE-2015-0002 Local Privilege Escalation Vulnerability
2015-01-19
http://www.securityfocus.com/bid/71972
Adobe Flash Player and AIR CVE-2015-0306 Unspecified Memory Corruption Vulnerability
2015-01-19
http://www.securityfocus.com/bid/72036
Adobe Flash Player and AIR CVE-2015-0308 Use After Free Remote Code Execution Vulnerability
2015-01-19
http://www.securityfocus.com/bid/72039
Adobe Flash Player and AIR CVE-2015-0301 Unspecified Security Vulnerability
2015-01-19
http://www.securityfocus.com/bid/72034
Adobe Flash Player and AIR CVE-2015-0309 Unspecified Heap Based Buffer Overflow Vulnerability
2015-01-19
http://www.securityfocus.com/bid/72038
Adobe Flash Player and AIR CVE-2015-0305 Type Confusion Remote Code Execution Vulnerability
2015-01-19
http://www.securityfocus.com/bid/72033
Adobe Flash Player and AIR CVE-2015-0304 Unspecified Heap Based Buffer Overflow Vulnerability
2015-01-19
http://www.securityfocus.com/bid/72032
Adobe Flash Player and AIR CVE-2015-0307 Out of Bounds Read Memory Corruption Vulnerability
2015-01-19
http://www.securityfocus.com/bid/72037
Adobe Flash Player and AIR CVE-2015-0303 Unspecified Memory Corruption Vulnerability
2015-01-19
http://www.securityfocus.com/bid/72031
Adobe Flash Player and AIR CVE-2015-0302 Information Disclosure Vulnerability
2015-01-19
http://www.securityfocus.com/bid/72035
GE Proficy HMI/SCADA - CIMPLICITY CVE-2014-2355 Multiple Local Buffer Overflow Vulnerabilities
2015-01-19
http://www.securityfocus.com/bid/72096
Python 'ssl.match_hostname()' Function Denial of Service Vulnerability
2015-01-19
http://www.securityfocus.com/bid/59877
Mozilla Firefox/Thunderbird/SeaMonkey CVE-2014-8634 Multiple Memory Corruption Vulnerabilities
2015-01-19
http://www.securityfocus.com/bid/72049
Mozilla Firefox/Thunderbird/SeaMonkey Proxy Authentication Session Fixation Vulnerability
2015-01-19
http://www.securityfocus.com/bid/72046
Mozilla Firefox/SeaMonkey WebRTC Memory Corruption Vulnerability
2015-01-19
http://www.securityfocus.com/bid/72044
Mozilla Firefox/Thunderbird/SeaMonkey sendBeacon Cross-Site Request Forgery Vulnerability
2015-01-19
http://www.securityfocus.com/bid/72047
OpenStack Neutron 'dns_nameservers' Parameter Denial of Service Vulnerability
2015-01-19
http://www.securityfocus.com/bid/71278
Linux Kernel CVE-2014-3687 Denial of Service Vulnerability
2015-01-19
http://www.securityfocus.com/bid/70766
Linux Kernel CVE-2014-3673 Denial of Service Vulnerability
2015-01-19
http://www.securityfocus.com/bid/70883
Cisco Secure Access Control Server CVE-2014-8027 Privilege Escalation Vulnerability
2015-01-19
http://www.securityfocus.com/bid/71944
Cisco Secure Access Control Server CVE-2014-8028 Multiple Cross Site Scripting Vulnerabilities
2015-01-19
http://www.securityfocus.com/bid/71946
RPM CVE-2013-6435 Remote Code Execution Vulnerability
2015-01-19
http://www.securityfocus.com/bid/71558
RPM CVE-2014-8118 CPIO Header Handling Integer Overflow Vulnerability
2015-01-19
http://www.securityfocus.com/bid/71588
Mozilla Firefox/Thunderbird/SeaMonkey CVE-2014-8635 Multiple Memory Corruption Vulnerabilities
2015-01-19
http://www.securityfocus.com/bid/72050
BSDCPIO Symlink Directory Traversal Vulnerability
2015-01-16
http://www.securityfocus.com/bid/72102
AlienVault OSSIM and USM Multple Command Execution Vulnerabilities
2015-01-16
http://www.securityfocus.com/bid/72100
Mozilla Firefox/SeaMonkey Web Audio Denial of Service Vulnerability
2015-01-15
http://www.securityfocus.com/bid/72045
Exploit
17.1.2015
Bugtraq
[ MDVSA-2015:027 ] kernel 2015-01-16
security mandriva com
Facebook Bug Bounty #19 - Filter Bypass Web Vulnerability 2015-01-16
Vulnerability Lab (research vulnerability-lab com)
File Pro Mini v5.2 iOS - Multiple Web Vulnerabilities 2015-01-16
Vulnerability Lab (research vulnerability-lab com)
Pandora FMS v5.1 SP1 - Persistent SNMP Editor Vulnerability 2015-01-16
admin@evolution-sec.com (admin evolution-sec com)
WiFi File Browser Pro v2.0.8 - Code Execution Vulnerability 2015-01-16
Vulnerability Lab (research vulnerability-lab com)
VeryPhoto v3.0 iOS - Command Injection Vulnerability 2015-01-16
Vulnerability Lab (research vulnerability-lab com)
CatBot v0.4.2 (PHP) - SQL Injection Vulnerability 2015-01-16
Vulnerability Lab (research vulnerability-lab com)
[SECURITY] [DSA 3129-1] rpm security update 2015-01-15
Moritz Muehlenhoff (jmm debian org)
Malware
Phishing
Vulnerebility
Microsoft Windows CVE-2015-0002 Local Privilege Escalation Vulnerability
2015-01-17
http://www.securityfocus.com/bid/71972
Adobe Flash Player and AIR CVE-2015-0306 Unspecified Memory Corruption Vulnerability
2015-01-17
http://www.securityfocus.com/bid/72036
Adobe Flash Player and AIR CVE-2015-0308 Use After Free Remote Code Execution Vulnerability
2015-01-17
http://www.securityfocus.com/bid/72039
Adobe Flash Player and AIR CVE-2015-0301 Unspecified Security Vulnerability
2015-01-17
http://www.securityfocus.com/bid/72034
Adobe Flash Player and AIR CVE-2015-0309 Unspecified Heap Based Buffer Overflow Vulnerability
2015-01-17
http://www.securityfocus.com/bid/72038
Adobe Flash Player and AIR CVE-2015-0305 Type Confusion Remote Code Execution Vulnerability
2015-01-17
http://www.securityfocus.com/bid/72033
Adobe Flash Player and AIR CVE-2015-0304 Unspecified Heap Based Buffer Overflow Vulnerability
2015-01-17
http://www.securityfocus.com/bid/72032
Adobe Flash Player and AIR CVE-2015-0307 Out of Bounds Read Memory Corruption Vulnerability
2015-01-17
http://www.securityfocus.com/bid/72037
Adobe Flash Player and AIR CVE-2015-0303 Unspecified Memory Corruption Vulnerability
2015-01-17
http://www.securityfocus.com/bid/72031
Adobe Flash Player and AIR CVE-2015-0302 Information Disclosure Vulnerability
2015-01-17
http://www.securityfocus.com/bid/72035
GE Proficy HMI/SCADA - CIMPLICITY CVE-2014-2355 Multiple Local Buffer Overflow Vulnerabilities
2015-01-17
http://www.securityfocus.com/bid/72096
Python 'ssl.match_hostname()' Function Denial of Service Vulnerability
2015-01-17
http://www.securityfocus.com/bid/59877
Mozilla Firefox/Thunderbird/SeaMonkey CVE-2014-8634 Multiple Memory Corruption Vulnerabilities
2015-01-17
http://www.securityfocus.com/bid/72049
Mozilla Firefox/Thunderbird/SeaMonkey Proxy Authentication Session Fixation Vulnerability
2015-01-17
http://www.securityfocus.com/bid/72046
Mozilla Firefox/SeaMonkey WebRTC Memory Corruption Vulnerability
2015-01-17
http://www.securityfocus.com/bid/72044
Mozilla Firefox/Thunderbird/SeaMonkey sendBeacon Cross-Site Request Forgery Vulnerability
2015-01-17
http://www.securityfocus.com/bid/72047
OpenStack Neutron 'dns_nameservers' Parameter Denial of Service Vulnerability
2015-01-17
http://www.securityfocus.com/bid/71278
Linux Kernel CVE-2014-3687 Denial of Service Vulnerability
2015-01-17
http://www.securityfocus.com/bid/70766
Linux Kernel CVE-2014-3673 Denial of Service Vulnerability
2015-01-17
http://www.securityfocus.com/bid/70883
Cisco Secure Access Control Server CVE-2014-8027 Privilege Escalation Vulnerability
2015-01-17
http://www.securityfocus.com/bid/71944
Cisco Secure Access Control Server CVE-2014-8028 Multiple Cross Site Scripting Vulnerabilities
2015-01-17
http://www.securityfocus.com/bid/71946
RPM CVE-2013-6435 Remote Code Execution Vulnerability
2015-01-17
http://www.securityfocus.com/bid/71558
RPM CVE-2014-8118 CPIO Header Handling Integer Overflow Vulnerability
2015-01-17
http://www.securityfocus.com/bid/71588
Mozilla Firefox/Thunderbird/SeaMonkey CVE-2014-8635 Multiple Memory Corruption Vulnerabilities
2015-01-17
http://www.securityfocus.com/bid/72050
BSDCPIO Symlink Directory Traversal Vulnerability
2015-01-16
http://www.securityfocus.com/bid/72102
AlienVault OSSIM and USM Multple Command Execution Vulnerabilities
2015-01-16
http://www.securityfocus.com/bid/72100
Mozilla Firefox/SeaMonkey Web Audio Denial of Service Vulnerability
2015-01-15
http://www.securityfocus.com/bid/72045
Mozilla Firefox/SeaMonkey XrayWrapper Privilege Escalation Vulnerability
2015-01-15
http://www.securityfocus.com/bid/72041
Mozilla Firefox/SeaMonkey Online Certificate Status Protocol Responder Security Bypass Vulnerability
2015-01-15
http://www.securityfocus.com/bid/72042
Mozilla Firefox/SeaMonkey Bitmap Rendering Information Disclosure Vulnerability
2015-01-15
http://www.securityfocus.com/bid/72048
Exploit
16.1.2015
Bugtraq
Alienvault OSSIM/USM Command Execution Vulnerability 2015-01-15
Peter Lapp (lappsec gmail com)
[ MDVSA-2015:025 ] mpfr 2015-01-15
security mandriva com
[ MDVSA-2015:024 ] libsndfile 2015-01-15
security mandriva com
[ MDVSA-2015:026 ] untrf 2015-01-15
security mandriva com
[ MDVSA-2015:023 ] libvirt 2015-01-15
security mandriva com
[SECURITY] [DSA 3128-1] linux security update 2015-01-15
Salvatore Bonaccorso (carnil debian org)
FreeBSD Security Advisory FreeBSD-SA-15:01.openssl 2015-01-14
FreeBSD Security Advisories (security-advisories freebsd org)
[SECURITY] [DSA 3127-1] iceweasel security update 2015-01-14
Moritz Muehlenhoff (jmm debian org)
Two XSS vulnerabilities in Simple Security WordPress Plugin 2015-01-14
High-Tech Bridge Security Research (advisory htbridge com)
MS14-080 CVE-2014-6365 Code 2015-01-14
DiéyÇ? (dieyu dieyu org)
AusCERT2015 Call for Papers: closes 18th January 2015-01-14
AusCERT (auscert auscert org au)
Malware
Phishing
Vulnerebility
Mozilla Firefox/Thunderbird/SeaMonkey Proxy Authentication Session Fixation Vulnerability
2015-01-16
http://www.securityfocus.com/bid/72046
Mozilla Firefox/Thunderbird/SeaMonkey CVE-2014-8635 Multiple Memory Corruption Vulnerabilities
2015-01-16
http://www.securityfocus.com/bid/72050
Mozilla Firefox/Thunderbird/SeaMonkey sendBeacon Cross-Site Request Forgery Vulnerability
2015-01-15
http://www.securityfocus.com/bid/72047
Mozilla Firefox/SeaMonkey Web Audio Denial of Service Vulnerability
2015-01-15
http://www.securityfocus.com/bid/72045
Mozilla Firefox/SeaMonkey XrayWrapper Privilege Escalation Vulnerability
2015-01-15
http://www.securityfocus.com/bid/72041
Mozilla Firefox/SeaMonkey Online Certificate Status Protocol Responder Security Bypass Vulnerability
2015-01-15
http://www.securityfocus.com/bid/72042
Mozilla Firefox/Thunderbird/SeaMonkey CVE-2014-8634 Multiple Memory Corruption Vulnerabilities
2015-01-15
http://www.securityfocus.com/bid/72049
Mozilla Firefox/SeaMonkey WebRTC Memory Corruption Vulnerability
2015-01-15
http://www.securityfocus.com/bid/72044
Mozilla Firefox/SeaMonkey Bitmap Rendering Information Disclosure Vulnerability
2015-01-15
http://www.securityfocus.com/bid/72048
Cisco MDS 9000 NX-OS Software CVE-2015-0582 Denial of Service Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71979
cinnamon-screensaver CVE-2014-1949 Lock Screen Local Security Bypass Vulnerability
2015-01-15
http://www.securityfocus.com/bid/65515
UnRTF RTF File Handling CVE-2014-9275 Out of Bounds Memory Corruption Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71506
MPFR 'strtofr.c' Buffer Overflow Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71542
libsndfile 'src/sd2.c' Multiple Buffer Overflow Vulnerabilities
2015-01-15
http://www.securityfocus.com/bid/71796
Cisco WebEx Meetings Server CVE-2014-8034 User Enumeration Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71978
cURL/libcURL CVE-2014-8150 Remote Security Bypass Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71964
GNU Coreutils 'parse_datetime()' Local Denial of Service Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71268
GNU Coreutils Insecure Temporary File Creation Vulnerability
2015-01-15
http://www.securityfocus.com/bid/37256
Info-ZIP UnZip CVE-2014-8139 Remote Heap Buffer Overflow Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71790
Info-ZIP UnZip CVE-2014-8140 Out of Bounds Write Heap Buffer Overflow Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71792
Info-ZIP UnZip CVE-2014-8141 Out of Bounds Read Heap Buffer Overflow Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71793
GParted CVE-2014-7208 OS Command Injection Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71739
Linux Kernel CVE-2014-9419 Local Information Disclosure Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71794
AMD 16h Model Processor CVE-2013-6885 Local Denial of Service Vulnerability
2015-01-15
http://www.securityfocus.com/bid/63983
Linux Kernel 'keys/gc.c' Local Memory Corruption Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71880
Linux Kernel 'kernel/tls.c' Local Information Disclosure Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71684
Linux Kernel 'fs/isofs/rock.c' Local Information Disclosure Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71883
libvirt 'qemu/qemu_driver.c' Multiple Local Denial of Service Vulnerabilities
2015-01-15
http://www.securityfocus.com/bid/71782
Adobe Flash Player and AIR CVE-2015-0308 Use After Free Remote Code Execution Vulnerability
2015-01-15
http://www.securityfocus.com/bid/72039
Adobe Flash Player and AIR CVE-2015-0305 Type Confusion Remote Code Execution Vulnerability
2015-01-15
http://www.securityfocus.com/bid/72033
Exploit
15.1.2015
Bugtraq
[SECURITY] [DSA 3127-1] iceweasel security update 2015-01-14
Moritz Muehlenhoff (jmm debian org)
Two XSS vulnerabilities in Simple Security WordPress Plugin 2015-01-14
High-Tech Bridge Security Research (advisory htbridge com)
MS14-080 CVE-2014-6365 Code 2015-01-14
DiéyÇ? (dieyu dieyu org)
AusCERT2015 Call for Papers: closes 18th January 2015-01-14
AusCERT (auscert auscert org au)
[security bulletin] HPSBGN03233 rev.1 - HP OneView running OpenSSL, Remote Denial of Service (DoS), Unauthorized Access, and Disclosure of Information 2015-01-13
security-alert hp com
[SECURITY] [DSA 3123-2] binutils-mingw-w64 security update 2015-01-13
Thijs Kinkhorst (thijs debian org)
Sitefinity Enterprise v7.2.53 - Persistent Vulnerability 2015-01-13
Vulnerability Lab (research vulnerability-lab com)
Foxit MobilePDF v4.4.0 iOS - Multiple Web Vulnerabilities 2015-01-13
Vulnerability Lab (research vulnerability-lab com)
[security bulletin] HPSBMU03230 rev.1 - HP Insight Control server deployment Remote Disclosure of Information 2015-01-13
security-alert hp com
SEC Consult SA-20150113-2 :: Cross-Site Request Forgery in XBMC / Kodi 2015-01-13
SEC Consult Vulnerability Lab (research sec-consult com)
SEC Consult SA-20150113-1 :: Privilege Escalation & XSS & Missing Authentication in Ansible Tower 2015-01-13
SEC Consult Vulnerability Lab (research sec-consult com)
CVE-2015-0203: Apache Qpid's qpidd can be crashed by authenticated user 2015-01-13
Gordon Sim (gsim apache org)
Malware
Phishing
Vulnerebility
Catapult Software DNP3 Driver CVE-2013-2811 Denial of Service Vulnerability
2015-01-15
http://www.securityfocus.com/bid/63811
OpenSSL 'dtls1_buffer_record()' Function Denial of Service Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71940
OpenSSL 'dtls1_get_record()' Function NULL Pointer Dereference Denial of Service Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71937
OpenSSL CVE-2014-3570 Unspecified Security Weakness
2015-01-15
http://www.securityfocus.com/bid/71939
OpenSSL 'ssl23_get_client_hello()' Function NULL Pointer Dereference Denial of Service Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71934
OpenSSL CVE-2015-0204 Man in the Middle Security Bypass Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71936
OpenSSL CVE-2014-3572 Security Bypass Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71942
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-01-15
http://www.securityfocus.com/bid/70574
OpenSSL Session Ticket Memory Leak Remote Denial of Service Vulnerability
2015-01-15
http://www.securityfocus.com/bid/70586
GNU Bash CVE-2014-6271 Remote Code Execution Vulnerability
2015-01-15
http://www.securityfocus.com/bid/70103
GNU Bash CVE-2014-7169 Incomplete Fix Remote Code Execution Vulnerability
2015-01-15
http://www.securityfocus.com/bid/70137
GNU Bash CVE-2014-7187 Local Memory Corruption Vulnerability
2015-01-15
http://www.securityfocus.com/bid/70154
GNU Bash CVE-2014-7186 Local Memory Corruption Vulnerability
2015-01-15
http://www.securityfocus.com/bid/70152
GNU Bash CVE-2014-6278 Incomplete Fix Remote Code Execution Vulnerability
2015-01-15
http://www.securityfocus.com/bid/70166
GNU Bash CVE-2014-6277 Incomplete Fix Remote Code Execution Vulnerability
2015-01-15
http://www.securityfocus.com/bid/70165
OpenSSL CVE-2014-3513 Information Disclosure Vulnerability
2015-01-15
http://www.securityfocus.com/bid/70584
CodeWrights 'HART DTM' Library CVE-2014-9191 Local Denial of Service Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71952
Drupal Flag Module CVE-2014-3453 Arbitrary PHP Code Execution Vulnerability
2015-01-15
http://www.securityfocus.com/bid/67318
Linux Kernel User Namespace Local Security Bypass Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71154
Linux Kernel 'fs/isofs/rock.c' Infinite Loop Denial of Service Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71717
Linux Kernel CVE-2014-9419 Local Information Disclosure Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71794
Linux Kernel 'keys/gc.c' Local Memory Corruption Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71880
Linux Kernel 'fragmentation.c' Denial of Service Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71847
Git CVE-2014-9390 Arbitrary File Overwrite Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71732
binutils CVE-2014-8502 Heap Based Buffer Overflow Vulnerability
2015-01-15
http://www.securityfocus.com/bid/70869
binutils 'ihex.c' Stack Based Buffer Overflow Vulnerability
2015-01-15
http://www.securityfocus.com/bid/70868
binutils 'peXXigen.c' Remote Denial of Service Vulnerability
2015-01-15
http://www.securityfocus.com/bid/70866
binutils 'srec.c' Stack Based Buffer Overflow Vulnerability
2015-01-15
http://www.securityfocus.com/bid/70761
binutils 'archive.c' Local Information Disclosure Vulnerability
2015-01-15
http://www.securityfocus.com/bid/71083
binutils CVE-2014-8485 Arbitrary Code Execution Vulnerability
2015-01-15
http://www.securityfocus.com/bid/70741
Exploit
13.1.2015
Bugtraq
MS14-080 CVE-2014-6365 Technical Details Without "Nonsense" 2015-01-13
DiéyÇ? (dieyu dieyu org)
[security bulletin] HPSBOV03228 rev.1 - HP OpenVMS running Bash Shell, Remote Code Execution 2015-01-12
security-alert hp com
[Corrected] Stored XSS Vulnerability in F5 BIG-IP Application Security Manager 2015-01-13
Peter Lapp (lappsec gmail com)
Stored XSS Vulnerability in F5 BIG-IP Application Security Manager 2015-01-12
Peter Lapp (lappsec gmail com)
[SECURITY] [DSA 3126-1] php5 security update 2015-01-12
Thijs Kinkhorst (thijs debian org)
Corel Software DLL Hijacking 2015-01-12
CORE Advisories Team (advisories coresecurity com)
CVE-2014-8870: Arbitrary Redirect in Tapatalk Plugin for WoltLab Burning Board 4.0 2015-01-12
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2014-015] Cross-site Scripting in Tapatalk Plugin for WoltLab Burning Board 4.0 2015-01-12
RedTeam Pentesting GmbH (release redteam-pentesting de)
[ MDVSA-2015:022 ] wireshark 2015-01-12
security mandriva com
[ MDVSA-2015:021 ] curl 2015-01-12
security mandriva com
[ MDVSA-2015:020 ] libssh 2015-01-12
security mandriva com
ZTE Datacard PCW(Telecom MF180) - Multiple Software Vulnerabilities 2015-01-12
Vulnerability Lab (research vulnerability-lab com)
Heroku API Bug Bounty #1 - Persistent Invitation Vulnerability 2015-01-12
Vulnerability Lab (research vulnerability-lab com)
Heroku API Deep Dive Bug Bounty #3 - Persistent UI Vulnerability 2015-01-12
Vulnerability Lab (research vulnerability-lab com)
Blitz CMS Community - SQL Injection Web Vulnerability 2015-01-12
Vulnerability Lab (research vulnerability-lab com)
[SECURITY] [DSA 3125-1] openssl security update 2015-01-11
Salvatore Bonaccorso (carnil debian org)
[SECURITY] [DSA 3124-1] otrs2 security update 2015-01-10
Salvatore Bonaccorso (carnil debian org)
Wordpress plugin Pods <= 2.4.3 XSS and CSRF vulnerabilities 2015-01-10
Pietro Oliva (pietroliva gmail com)
[security bulletin] HPSBOV03227 rev.1 - HP SSL for OpenVMS, Remote Disclosure of Information, Denial of Service (DoS) and Other Vulnerabilities 2015-01-10
security-alert hp com
Malware
Phishing
Vulnerebility
Cisco Secure Access Control Server CVE-2014-8029 Open Redirection Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71948
OpenSSL 'dtls1_buffer_record()' Function Denial of Service Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71940
OpenSSL 'dtls1_get_record()' Function NULL Pointer Dereference Denial of Service Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71937
OpenSSL CVE-2015-0205 Man in the Middle Security Bypass Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71941
OpenSSL CVE-2014-3570 Unspecified Security Weakness
2015-01-13
http://www.securityfocus.com/bid/71939
LibYAML and Perl YAML-LibYAML Module 'scanner.c' Remote Denial of Service Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71349
CodeWrights 'HART DTM' Library CVE-2014-9191 Local Denial of Service Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71952
JBoss Enterprise Application Platform Plain Text Password Local Information Disclosure Vulnerability
2015-01-13
http://www.securityfocus.com/bid/65762
HawtJNI CVE-2013-2035 Local Privilege Escalation Vulnerability
2015-01-13
http://www.securityfocus.com/bid/59876
Linux Kernel 'fs/isofs/rock.c' Local Information Disclosure Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71883
WordPress Js-Multi-Hotel Plugin 'roomid' Parameter Cross Site Scripting Vulnerability
2015-01-13
http://www.securityfocus.com/bid/64045
OpenSSL CVE-2014-3572 Security Bypass Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71942
OpenSSL CVE-2015-0204 Man in the Middle Security Bypass Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71936
OpenSSL Certificate Fingerprints CVE-2014-8275 Local Security Bypass Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71935
Drupal Poll Chart Block Module Cross Site Scripting Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71635
Drupal School Administration Module Multiple HTML Injection Vulnerabilities
2015-01-13
http://www.securityfocus.com/bid/71785
Drupal Godwin's Law Module Cross Site Scripting Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71636
Drupal Webform Invitation Module Cross Site Scripting Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71472
Drupal MoIP Module Cross Site Scripting Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71634
WordPress Banner Effect Header Plugin 'options-general.php' Cross Site Scripting Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71887
VDG Security Sense Multiple Security Vulnerabilities
2015-01-13
http://www.securityfocus.com/bid/71736
ZfcUser 'redirect' Parameter Cross Site Scripting Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71931
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-01-13
http://www.securityfocus.com/bid/70574
Wireshark DEC DNA Routing Protocol Dissector CVE-2015-0562 Remote Denial of Service Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71921
Wireshark SMTP Dissector 'packet-smtp.c' Remote Denial of Service Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71916
Wireshark TLS/SSL Decryption CVE-2015-0564 Denial of Service Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71922
cURL/libcURL CVE-2014-8150 Remote Security Bypass Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71964
BEdita CMS 'index.php' Multiple HTML Injection Vulnerabilities
2015-01-13
http://www.securityfocus.com/bid/71949
Roundcube Webmail Multiple Cross Site Request Forgery Vulnerabilities
2015-01-13
http://www.securityfocus.com/bid/71909
p7zip Symlink Directory Traversal Vulnerability
2015-01-13
http://www.securityfocus.com/bid/71890
Exploit
9.1.2015
Bugtraq
Recon 2015 Call For Papers - June 19 - 21, 2015 - Montreal, Canada 2015-01-08
root recon cx (root)
[ MDVSA-2015:018 ] asterisk 2015-01-08
security mandriva com
[ MDVSA-2015:017 ] libevent 2015-01-08
security mandriva com
[SECURITY] [DSA 3121-1] file security update 2015-01-08
Moritz Muehlenhoff (jmm debian org)
[ MDVSA-2015:016 ] unzip 2015-01-08
security mandriva com
[ MDVSA-2015:015 ] sox 2015-01-08
security mandriva com
[ MDVSA-2015:014 ] libjpeg 2015-01-08
security mandriva com
[ MDVSA-2015:013 ] znc 2015-01-08
security mandriva com
[ MDVSA-2015:012 ] jasper 2015-01-08
security mandriva com
[ MDVSA-2015:011 ] nail 2015-01-08
security mandriva com
[ MDVSA-2015:010 ] file 2015-01-08
security mandriva com
[ MDVSA-2015:009 ] krb5 2015-01-08
security mandriva com
[ MDVSA-2015:008 ] pwgen 2015-01-08
security mandriva com
[ MDVSA-2015:007 ] unrtf 2015-01-08
security mandriva com
[ MDVSA-2015:006 ] mediawiki 2015-01-08
security mandriva com
[security bulletin] HPSBMU03118 rev.3 - HP Systems Insight Manager (SIM) on Linux and Windows, Multiple Remote Vulnerabilities 2015-01-06
security-alert hp com
[SECURITY] [DSA 3120-1] mantis security update 2015-01-06
Moritz Muehlenhoff (jmm debian org)
Brother MFC Administration Reflected Cross-Site Scripting 2015-01-07
vulns dionach com
Self-XSS in Microsoft Dynamics CRM 2013 SP1 2015-01-07
High-Tech Bridge Security Research (advisory htbridge com)
Malware
Phishing
Vulnerebility
tcpdump CVE-2014-9140 Buffer Overflow Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71468
Thermostat CVE-2014-8120 Local Privilege Escalation Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71709
Mozilla Network Security Services CVE-2014-1569 Security Bypass Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71675
Linux Kernel cpio 'list_file()' Function Heap Based Buffer Overflow Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71248
GNU Tar and GNU Cpio Remote Buffer Overflow Vulnerability
2015-01-09
http://www.securityfocus.com/bid/38628
file CVE-2014-8116 Multiple Denial of Service Vulnerabilities
2015-01-09
http://www.securityfocus.com/bid/71700
file CVE-2014-8117 Denial of Service Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71692
Info-ZIP UnZip CVE-2014-8140 Out of Bounds Write Heap Buffer Overflow Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71792
Info-ZIP UnZip CVE-2014-8139 Remote Heap Buffer Overflow Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71790
Info-ZIP UnZip CVE-2014-8141 Out of Bounds Read Heap Buffer Overflow Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71793
libjpeg-turbo CVE-2014-9092 Stack Based Buffer Overflow Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71326
JasPer CVE-2014-8137 Double Free Remote Code Execution Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71742
JasPer CVE-2014-8138 Remote Heap Buffer Overflow Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71746
BSD mailx CVE-2014-7844 Local Arbitrary Command Execution Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71701
BSD mailx CVE-2004-2771 Local Arbitrary Command Execution Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71704
MIT Kerberos 5 CVE-2014-5353 NULL Pointer Dereference Remote Denial of Service Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71679
ZNC 'CWebAdminMod::ChanPage()' Function Denial of Service Vulnerability
2015-01-09
http://www.securityfocus.com/bid/66926
Multiple Asterisk Products WebSocket Server Denial of Service Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71607
SoX 'wav' File Multiple Heap Buffer Overflow Vulnerabilities
2015-01-09
http://www.securityfocus.com/bid/71774
pwgen CVE-2013-4440 Insecure Password Generation Weakness
2015-01-09
http://www.securityfocus.com/bid/63185
pwgen CVE-2013-4442 Insecure Password Generation Weakness
2015-01-09
http://www.securityfocus.com/bid/63184
Mediawiki 'thumb.php' Cross Site Scripting Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71775
UnRTF RTF File Handling Out of Bounds Memory Corruption Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71430
UnRTF RTF File Handling CVE-2014-9275 Out of Bounds Memory Corruption Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71506
Mediawiki '$wgCrossSiteAJAXdomains' Security Bypass Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71776
SSL/TLS Protocol Initialization Vector Implementation Information Disclosure Vulnerability
2015-01-09
http://www.securityfocus.com/bid/49778
RSA BSAFE Micro Edition Suite CVE-2014-0636 Chain Processing Vulnerability
2015-01-09
http://www.securityfocus.com/bid/66791
RSA BSAFE Micro Edition Suite CVE-2014-0628 Denial of Service Vulnerability
2015-01-09
http://www.securityfocus.com/bid/66388
Network Time Protocol CVE-2014-9296 Unspecified Security Vulnerability
2015-01-09
http://www.securityfocus.com/bid/71758
Network Time Protocol CVE-2014-9295 Multiple Stack Based Buffer Overflow Vulnerabilities
2015-01-09
http://www.securityfocus.com/bid/71761
Exploit
Pandora v3.1 Auth Bypass and Arbitrary File Upload Vulnerability
Ntpdc 4.2.6p3 - Local Buffer Overflow
WordPress Shopping Cart 3.0.4 - Unrestricted File Upload
8.1.2015
Bugtraq
[security bulletin] HPSBMU03118 rev.3 - HP Systems Insight Manager (SIM) on Linux and Windows, Multiple Remote Vulnerabilities 2015-01-06
security-alert hp com
[SECURITY] [DSA 3120-1] mantis security update 2015-01-06
Moritz Muehlenhoff (jmm debian org)
Brother MFC Administration Reflected Cross-Site Scripting 2015-01-07
vulns dionach com
Self-XSS in Microsoft Dynamics CRM 2013 SP1 2015-01-07
High-Tech Bridge Security Research (advisory htbridge com)
ZTE Datacard MF19 0V1.0.0B PCW - Multiple Vulnerabilities 2015-01-06
Vulnerability Lab (research vulnerability-lab com)
[ MDVSA-2015:005 ] subversion 2015-01-05
security mandriva com
ESA-2014-180: EMC Documentum Web Development Kit Multiple Vulnerabilities 2015-01-05
Security Alert (Security_Alert emc com)
[SECURITY] [DSA 3119-1] libevent security update 2015-01-06
Salvatore Bonaccorso (carnil debian org)
Malware
Phishing
Vulnerebility
GNU Bash CVE-2014-6271 Remote Code Execution Vulnerability
2015-01-08
http://www.securityfocus.com/bid/70103
Schneider Electric ProClima CVE-2014-8514 Remote Buffer Overflow Vulnerability
2015-01-08
http://www.securityfocus.com/bid/71710
Schneider Electric ProClima CVE-2014-8512 Remote Buffer Overflow Vulnerability
2015-01-08
http://www.securityfocus.com/bid/71711
Schneider Electric ProClima CVE-2014-9188 Remote Buffer Overflow Vulnerability
2015-01-08
http://www.securityfocus.com/bid/71713
Schneider Electric ProClima CVE-2014-8511 Remote Buffer Overflow Vulnerability
2015-01-08
http://www.securityfocus.com/bid/71712
Schneider Electric ProClima CVE-2014-8513 Remote Buffer Overflow Vulnerability
2015-01-08
http://www.securityfocus.com/bid/71707
mime-support Package 'run-mailcap' CVE-2014-7209 Command Injection Vulnerability
2015-01-08
http://www.securityfocus.com/bid/71797
Libmspack 'qtmd.c' Infinite Loop Denial of Service Vulnerability
2015-01-08
http://www.securityfocus.com/bid/71851
Cisco Identity Services Engine Software CVE-2014-8017 Password Disclosure Vulnerability
2015-01-08
http://www.securityfocus.com/bid/71767
Cisco Unified Communications Domain Manager CVE-2014-8018 Cross Site Scripting Vulnerabilities
2015-01-08
http://www.securityfocus.com/bid/71771
Cisco Jabber Guest CVE-2014-8024 Multiple Information Disclosure Vulnerabilities
2015-01-08
http://www.securityfocus.com/bid/71770
Mozilla Network Security Services CVE-2014-1569 Security Bypass Vulnerability
2015-01-08
http://www.securityfocus.com/bid/71675
elfutils '/libelf/elf_begin.c' Directory Traversal Vulnerability
2015-01-08
http://www.securityfocus.com/bid/71804
GNU Bash CVE-2014-7187 Local Memory Corruption Vulnerability
2015-01-08
http://www.securityfocus.com/bid/70154
GNU glibc 'iconv()' Denial of Service Vulnerability
2015-01-08
http://www.securityfocus.com/bid/69472
GNU glibc CVE-2014-7817 Arbitrary Command Execution Vulnerability
2015-01-08
http://www.securityfocus.com/bid/71216
HP Systems Insight Manager CVE-2014-2643 Unspecified Remote Privilege Escalation Vulnerability
2015-01-08
http://www.securityfocus.com/bid/70225
HP Systems Insight Manager CVE-2014-2645 Unspecified Clickjacking Vulnerability
2015-01-08
http://www.securityfocus.com/bid/70224
HP Systems Insight Manager CVE-2014-2644 Unspecified Cross Site Scripting Vulnerability
2015-01-08
http://www.securityfocus.com/bid/70223
GNU Bash CVE-2014-7186 Local Memory Corruption Vulnerability
2015-01-08
http://www.securityfocus.com/bid/70152
GNU Bash CVE-2014-7169 Incomplete Fix Remote Code Execution Vulnerability
2015-01-08
http://www.securityfocus.com/bid/70137
GNU Bash CVE-2014-6278 Incomplete Fix Remote Code Execution Vulnerability
2015-01-08
http://www.securityfocus.com/bid/70166
GNU Bash CVE-2014-6277 Incomplete Fix Remote Code Execution Vulnerability
2015-01-08
http://www.securityfocus.com/bid/70165
Multiple F5 Products CVE-2014-8730 Man In The Middle Information Disclosure Vulnerability
2015-01-08
http://www.securityfocus.com/bid/71549
MantisBT XmlImportExport Plugin 'ImportXml.php' Arbitrary PHP Code Execution Vulnerability
2015-01-08
http://www.securityfocus.com/bid/70993
MantisBT 'copy_field.php' Cross Site Scripting Vulnerability
2015-01-08
http://www.securityfocus.com/bid/71371
MantisBT 'view_all_set.php' Multiple SQL Injection Vulnerabilities
2015-01-08
http://www.securityfocus.com/bid/71298
MantisBT 'file_download.php' HTML Injection Vulnerability
2015-01-08
http://www.securityfocus.com/bid/71380
MantisBT 'core/current_user_api.php' PHP Object Injection Vulnerability
2015-01-08
http://www.securityfocus.com/bid/71361
MantisBT CVE-2014-6316 Multiple URI Redirection Vulnerabilities
2015-01-08
http://www.securityfocus.com/bid/71478
Exploit
Microweber CMS 0.95 - SQL Injection
Pirelli ADSL2/2+ Wireless Router P.DGA4001N - Information Disclosure
Sefrengo CMS 1.6.0 - SQL Injection
7.1.2015
Bugtraq
ZTE Datacard MF19 0V1.0.0B PCW - Multiple Vulnerabilities 2015-01-06
Vulnerability Lab (research vulnerability-lab com)
[ MDVSA-2015:005 ] subversion 2015-01-05
security mandriva com
ESA-2014-180: EMC Documentum Web Development Kit Multiple Vulnerabilities 2015-01-05
Security Alert (Security_Alert emc com)
[SECURITY] [DSA 3119-1] libevent security update 2015-01-06
Salvatore Bonaccorso (carnil debian org)
[ MDVSA-2015:001 ] c-icap 2015-01-05
security mandriva com
[ MDVSA-2015:002 ] pcre 2015-01-05
security mandriva com
Open-Xchange Security Advisory 2015-01-05 2015-01-05
Martin Heiland (martin heiland open-xchange com)
Malware
Phishing
Vulnerebility
concrete5 Multiple Cross-Site Scripting Vulnerabilities
2015-01-07
http://www.securityfocus.com/bid/71592
Linux Kernel cpio 'list_file()' Function Heap Based Buffer Overflow Vulnerability
2015-01-07
http://www.securityfocus.com/bid/71248
TinyMCE BBCode Plugin CVE-2012-4230 HTML Injection Vulnerability
2015-01-07
http://www.securityfocus.com/bid/58424
Linux Kernel 'kernel/kvm.c' Local Information Disclosure Vulnerability
2015-01-07
http://www.securityfocus.com/bid/71650
ISC BIND CVE-2014-8500 Remote Denial of Service Vulnerability
2015-01-07
http://www.securityfocus.com/bid/71590
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2015-01-07
http://www.securityfocus.com/bid/70574
DenyHosts 'regex.py' Remote Denial of Service Vulnerability
2015-01-07
http://www.securityfocus.com/bid/64478
Linux Kernel CVE-2010-5313 Local Denial of Service Vulnerability
2015-01-07
http://www.securityfocus.com/bid/71363
Linux Kernel 'espfix64' Local Denial of Service Vulnerability
2015-01-07
http://www.securityfocus.com/bid/71250
Linux Kernel CVE-2014-7841 SCTP NULL Pointer Dereference Denial of Service Vulnerability
2015-01-07
http://www.securityfocus.com/bid/71081
Linux Kernel 'trace_syscalls.c' Multiple Local Denial of Service Vulnerabilities
2015-01-07
http://www.securityfocus.com/bid/70971
Linux Kernel KVM CVE-2014-7842 Local Denial of Service Vulnerability
2015-01-07
http://www.securityfocus.com/bid/71078
Linux Kernel 'trace_syscalls.c' Multiple Local Denial of Service Vulnerabilities
2015-01-07
http://www.securityfocus.com/bid/70972
Apache Subversion CVE-2014-8108 Remote Denial of Service Vulnerability
2015-01-07
http://www.securityfocus.com/bid/71725
Apache Subversion CVE-2014-3580 Remote Denial of Service Vulnerability
2015-01-07
http://www.securityfocus.com/bid/71726
PCRE 'pcre_exec.c' Heap Based Buffer Overflow Vulnerability
2015-01-07
http://www.securityfocus.com/bid/71206
libvirt CVE-2014-7823 Information Disclosure Vulnerability
2015-01-07
http://www.securityfocus.com/bid/71095
Contenido CMS 'front_content.php' Multiple Cross Site Scripting Vulnerabilities
2015-01-07
http://www.securityfocus.com/bid/71809
NTP 'ntp-keygen.c' Predictable Random Number Generator Weakness
2015-01-07
http://www.securityfocus.com/bid/71762
NTP 'ntp_config.c' Insufficient Entropy Security Weakness
2015-01-07
http://www.securityfocus.com/bid/71757
Linux Kernel CVE-2014-9322 Local Privilege Escalation Vulnerability
2015-01-07
http://www.securityfocus.com/bid/71685
PHP 'process_nested_data()' Function Use After Free Remote Code Execution Vulnerability
2015-01-07
http://www.securityfocus.com/bid/71791
Network Time Protocol CVE-2014-9295 Multiple Stack Based Buffer Overflow Vulnerabilities
2015-01-06
http://www.securityfocus.com/bid/71761
Network Time Protocol CVE-2014-9296 Unspecified Security Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71758
c-icap Server CVE-2013-7402 Multiple Denial of Service Vulnerabilities
2015-01-06
http://www.securityfocus.com/bid/69812
c-icap Server 'request.c' Remote Buffer Overflow Vulnerability
2015-01-06
http://www.securityfocus.com/bid/69498
Ettercap 'dissectors/ec_radius.c' Stack Buffer Overflow Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71698
Ettercap 'nbns_spoof.c' Heap Based Buffer Overflow Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71690
Ettercap 'dissector_postgresql()' Function Heap Buffer Overflow Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71689
Ettercap CVE-2014-6396 Arbitrary File Write Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71697
Exploit
BulletProof FTP Client BPS Buffer Overflow
AdaptCMS 3.0.3 - Multiple Vulnerabilities
6.1.2015
Bugtraq
ESA-2014-180: EMC Documentum Web Development Kit Multiple Vulnerabilities 2015-01-05
Security Alert (Security_Alert emc com)
[SECURITY] [DSA 3119-1] libevent security update 2015-01-06
Salvatore Bonaccorso (carnil debian org)
[ MDVSA-2015:001 ] c-icap 2015-01-05
security mandriva com
[ MDVSA-2015:002 ] pcre 2015-01-05
security mandriva com
Open-Xchange Security Advisory 2015-01-05 2015-01-05
Martin Heiland (martin heiland open-xchange com)
[SECURITY] [DSA 3118-1] strongswan security update 2015-01-05
Yves-Alexis Perez (corsac debian org)
[ MDVSA-2015:003 ] ntp 2015-01-05
security mandriva com
[ MDVSA-2015:004 ] php 2015-01-05
security mandriva com
[The ManageOwnage Series, part XI]: Remote code execution in ServiceDesk, Asset Explorer, Support Center and IT360 2015-01-04
Pedro Ribeiro (pedrib gmail com)
Malware
Phishing
Vulnerebility
libvirt CVE-2014-7823 Information Disclosure Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71095
Contenido CMS 'front_content.php' Multiple Cross Site Scripting Vulnerabilities
2015-01-06
http://www.securityfocus.com/bid/71809
NTP 'ntp-keygen.c' Predictable Random Number Generator Weakness
2015-01-06
http://www.securityfocus.com/bid/71762
NTP 'ntp_config.c' Insufficient Entropy Security Weakness
2015-01-06
http://www.securityfocus.com/bid/71757
Apache Subversion CVE-2014-8108 Remote Denial of Service Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71725
Apache Subversion CVE-2014-3580 Remote Denial of Service Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71726
Linux Kernel CVE-2014-9322 Local Privilege Escalation Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71685
PHP 'process_nested_data()' Function Use After Free Remote Code Execution Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71791
Network Time Protocol CVE-2014-9295 Multiple Stack Based Buffer Overflow Vulnerabilities
2015-01-06
http://www.securityfocus.com/bid/71761
Network Time Protocol CVE-2014-9296 Unspecified Security Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71758
c-icap Server CVE-2013-7402 Multiple Denial of Service Vulnerabilities
2015-01-06
http://www.securityfocus.com/bid/69812
c-icap Server 'request.c' Remote Buffer Overflow Vulnerability
2015-01-06
http://www.securityfocus.com/bid/69498
PCRE 'pcre_exec.c' Heap Based Buffer Overflow Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71206
Ettercap 'dissectors/ec_radius.c' Stack Buffer Overflow Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71698
Ettercap 'nbns_spoof.c' Heap Based Buffer Overflow Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71690
Ettercap 'dissector_postgresql()' Function Heap Buffer Overflow Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71689
Ettercap CVE-2014-6396 Arbitrary File Write Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71697
Ettercap 'dissectors/ec_cvs.c' Out of Bounds Read Denial of Service Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71691
Ettercap 'mdns_spoof.c' Remote Denial of Service Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71695
Ettercap 'dissectors/ec_cvs.c' Security Bypass Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71693
Ettercap 'dissector_dhcp()' Function Denial of Service Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71696
FreeType 'src/cff/cf2hints.c' Remote Stack Buffer Overflow Vulnerability
2015-01-06
http://www.securityfocus.com/bid/66074
BSD mailx CVE-2004-2771 Local Arbitrary Command Execution Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71704
BSD mailx CVE-2014-7844 Local Arbitrary Command Execution Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71701
GNU Coreutils 'parse_datetime()' Local Denial of Service Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71268
UnRTF RTF File Handling Out of Bounds Memory Corruption Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71430
file 'src/readelf.c' Denial of Service Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71715
UnRTF RTF File Handling CVE-2014-9275 Out of Bounds Memory Corruption Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71506
file ELF Parser Denial of Service Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71714
elfutils '/libelf/elf_begin.c' Directory Traversal Vulnerability
2015-01-06
http://www.securityfocus.com/bid/71804
Exploit
5.1.2015
Bugtraq
[The ManageOwnage Series, part XI]: Remote code execution in ServiceDesk, Asset Explorer, Support Center and IT360 2015-01-04
Pedro Ribeiro (pedrib gmail com)
[KIS-2014-19] Symantec Web Gateway <= 5.2.1 (restore.php) OS Command Injection Vulnerability 2014-12-31
Egidio Romano (research karmainsecurity com)
[KIS-2014-18] Mantis Bug Tracker <= 1.2.17 (ImportXml.php) PHP Code Injection Vulnerability 2014-12-31
Egidio Romano (research karmainsecurity com)
[KIS-2014-16] Osclass <= 3.4.2 (contact.php) Unrestricted File Upload Vulnerability 2014-12-31
Egidio Romano (research karmainsecurity com)
[KIS-2014-15] Osclass <= 3.4.2 (ajax.php) Local File Inclusion Vulnerability 2014-12-31
Egidio Romano (research karmainsecurity com)
Malware
Phishing
Vulnerebility
BSD mailx CVE-2004-2771 Local Arbitrary Command Execution Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71704
BSD mailx CVE-2014-7844 Local Arbitrary Command Execution Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71701
GNU Coreutils 'parse_datetime()' Local Denial of Service Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71268
UnRTF RTF File Handling Out of Bounds Memory Corruption Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71430
file 'src/readelf.c' Denial of Service Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71715
UnRTF RTF File Handling CVE-2014-9275 Out of Bounds Memory Corruption Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71506
file ELF Parser Denial of Service Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71714
elfutils '/libelf/elf_begin.c' Directory Traversal Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71804
mpg123 MP3 Decoding Heap Based Buffer Overflow Vulnerability
2015-01-05
http://www.securityfocus.com/bid/65304
Mediawiki 'thumb.php' Cross Site Scripting Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71775
libsndfile 'src/sd2.c' Multiple Buffer Overflow Vulnerabilities
2015-01-05
http://www.securityfocus.com/bid/71796
Mediawiki '$wgCrossSiteAJAXdomains' Security Bypass Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71776
miniunzip 'minizip.c' Directory Traversal Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71846
Dwarfdump Use After Free Memory Denial of Service Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71839
Koha Multiple Cross Site Scripting Vulnerabilities
2015-01-05
http://www.securityfocus.com/bid/71803
MPFR 'strtofr.c' Buffer Overflow Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71542
python-xdg '/tmp' Insecure Temporary File Creation Vulnerability
2015-01-05
http://www.securityfocus.com/bid/65042
OpenJPEG CVE-2013-6887 Multiple Denial Of Service Vulnerabilities
2015-01-05
http://www.securityfocus.com/bid/64140
OpenJPEG CVE-2013-6052 Multiple Out of Bounds Memory Corruption Vulnerabilities
2015-01-05
http://www.securityfocus.com/bid/64118
OpenJPEG CVE-2013-6053 Multiple Out of Bounds Memory Corruption Vulnerabilities
2015-01-05
http://www.securityfocus.com/bid/64121
OpenJPEG CVE-2013-1447 Multiple Denial Of Service Vulnerabilities
2015-01-05
http://www.securityfocus.com/bid/64142
OpenJPEG CVE-2013-6045 Multiple Remote Heap Based Buffer Overflow Vulnerabilities
2015-01-05
http://www.securityfocus.com/bid/64109
cURL/libcURL 'curl_easy_duphandle()' Function Heap Memory Corruption Vulnerability
2015-01-05
http://www.securityfocus.com/bid/70988
Ettercap CVE-2014-6396 Arbitrary File Write Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71697
Ettercap 'mdns_spoof.c' Remote Denial of Service Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71695
Ettercap 'dissectors/ec_cvs.c' Security Bypass Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71693
Ettercap 'dissectors/ec_cvs.c' Out of Bounds Read Denial of Service Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71691
Ettercap 'dissectors/ec_radius.c' Stack Buffer Overflow Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71698
Ettercap 'nbns_spoof.c' Heap Based Buffer Overflow Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71690
Ettercap 'dissector_postgresql()' Function Heap Buffer Overflow Vulnerability
2015-01-05
http://www.securityfocus.com/bid/71689
Exploit
ASUSWRT 3.0.0.4.376_1071 - LAN Backdoor Command Execution
Crea8Social 2.0 - XSS Change Interface
1.1.2015
Bugtraq
[KIS-2014-19] Symantec Web Gateway <= 5.2.1 (restore.php) OS Command Injection Vulnerability 2014-12-31
Egidio Romano (research karmainsecurity com)
[KIS-2014-18] Mantis Bug Tracker <= 1.2.17 (ImportXml.php) PHP Code Injection Vulnerability 2014-12-31
Egidio Romano (research karmainsecurity com)
[KIS-2014-16] Osclass <= 3.4.2 (contact.php) Unrestricted File Upload Vulnerability 2014-12-31
Egidio Romano (research karmainsecurity com)
[KIS-2014-15] Osclass <= 3.4.2 (ajax.php) Local File Inclusion Vulnerability 2014-12-31
Egidio Romano (research karmainsecurity com)
[KIS-2014-14] Osclass <= 3.4.2 (Search::setJsonAlert) SQL Injection Vulnerability 2014-12-31
Egidio Romano (research karmainsecurity com)
[SECURITY] [DSA 3117-1] php5 security update 2014-12-31
Salvatore Bonaccorso (carnil debian org)
[The ManageOwnage Series, part X]: 0-day administrator account creation in Desktop Central 2014-12-31
Pedro Ribeiro (pedrib gmail com)
Defense in depth -- the Microsoft way (part 26): "Set Program Access and Computer Defaults" hides applications like Outlook 2014-12-30
Stefan Kanthak (stefan kanthak nexgo de)
ESA-2014-179: EMC Replication Manager and EMC AppSync Unquoted Service Path Enumeration Vulnerability 2014-12-30
Security Alert (Security_Alert emc com)
ESA-2014-158: RSA BSAFE® Micro Edition Suite and SSL-J Triple Handshake Vulnerability 2014-12-30
Security Alert (Security_Alert emc com)
[SECURITY] [DSA 3116-1] polarssl security update 2014-12-30
Moritz Muehlenhoff (jmm debian org)
Remote Code Execution via Unauthorised File upload in Cforms 14.7 2014-12-29
z fedotkin infosec ru
[SECURITY] [DSA 3115-1] pyyaml security update 2014-12-29
Moritz Muehlenhoff (jmm debian org)
Malware
Phishing
Vulnerebility
RPM CVE-2013-6435 Remote Code Execution Vulnerability
2015-01-01
http://www.securityfocus.com/bid/71558
RPM CVE-2014-8118 CPIO Header Handling Integer Overflow Vulnerability
2015-01-01
http://www.securityfocus.com/bid/71588
JasPer CVE-2014-8137 Double Free Remote Code Execution Vulnerability
2015-01-01
http://www.securityfocus.com/bid/71742
JasPer CVE-2014-8138 Remote Heap Buffer Overflow Vulnerability
2015-01-01
http://www.securityfocus.com/bid/71746
PHP 'cgi_main.c' Out of Bounds Read Denial of Service Vulnerability
2015-01-01
http://www.securityfocus.com/bid/71833
MIT Kerberos 5 CVE-2014-4343 Remote Denial of Service Vulnerability
2015-01-01
http://www.securityfocus.com/bid/69159
PHP 'process_nested_data()' Function Use After Free Remote Code Execution Vulnerability
2015-01-01
http://www.securityfocus.com/bid/71791
MIT Kerberos 5 CVE-2014-4341 Remote Denial of Service Vulnerability
2015-01-01
http://www.securityfocus.com/bid/68909
MIT kerberos 5 'ldap_principal2.c' Buffer Overflow Vulnerability
2015-01-01
http://www.securityfocus.com/bid/69168
Multiple WordPress Themes Multiple Arbitrary File Download Vulnerabilities
2015-01-01
http://www.securityfocus.com/bid/69497
MIT Kerberos 5 'svr_principal.c' Information Disclosure Vulnerability
2015-01-01
http://www.securityfocus.com/bid/70380
Mozilla Firefox/Thunderbird CVE-2014-1587 Multiple Memory Corruption Vulnerabilities
2015-01-01
http://www.securityfocus.com/bid/71391
Mozilla Firefox/Thunderbird CVE-2014-1593 Buffer Overflow Vulnerability
2015-01-01
http://www.securityfocus.com/bid/71395
Mozilla Firefox/Thunderbird CVE-2014-1594 Security Vulnerability
2015-01-01
http://www.securityfocus.com/bid/71396
Mozilla Firefox/Thunderbird CVE-2014-1590 Denial of Service Vulnerability
2015-01-01
http://www.securityfocus.com/bid/71397
Mozilla Firefox/Thunderbird CVE-2014-1592 Use After Free Memory Corruption Vulnerability
2015-01-01
http://www.securityfocus.com/bid/71398
Symantec Web Gateway CVE-2014-7285 Command Injection Vulnerability
2015-01-01
http://www.securityfocus.com/bid/71620
Docker CVE-2014-9357 Remote Privilege Escalation Vulnerability
2015-01-01
http://www.securityfocus.com/bid/71647
Docker CVE-2014-9358 Multiple Directory Traversal Vulnerabilities
2015-01-01
http://www.securityfocus.com/bid/71649
Docker CVE-2014-9356 Multiple Directory Traversal Vulnerabilities
2015-01-01
http://www.securityfocus.com/bid/71654
RETIRED: Linux Kernel 'Polkit' Local Privilege Escalation Vulnerability
2015-01-01
http://www.securityfocus.com/bid/71716
Multiple Puppet Products CVE-2014-3248 Remote Code Execution Vulnerability
2015-01-01
http://www.securityfocus.com/bid/68035
PolarSSL Unspecified Memory Corruption Vulnerability
2015-01-01
http://www.securityfocus.com/bid/70905
LibYAML and Perl YAML-LibYAML Module 'scanner.c' Remote Denial of Service Vulnerability
2015-01-01
http://www.securityfocus.com/bid/71349
JasPer 'jpc_dec.c' Multiple Remote Heap Buffer Overflow Vulnerabilities
2015-01-01
http://www.securityfocus.com/bid/71476
Multiple F5 Products CVE-2014-8730 Man In The Middle Information Disclosure Vulnerability
2015-01-01
http://www.securityfocus.com/bid/71549
NTP 'ntp_config.c' Insufficient Entropy Security Weakness
2015-01-01
http://www.securityfocus.com/bid/71757
Network Time Protocol CVE-2014-9296 Unspecified Security Vulnerability
2015-01-01
http://www.securityfocus.com/bid/71758
Network Time Protocol CVE-2014-9295 Multiple Stack Based Buffer Overflow Vulnerabilities
2015-01-01
http://www.securityfocus.com/bid/71761
NTP 'ntp-keygen.c' Predictable Random Number Generator Weakness
2015-01-01
http://www.securityfocus.com/bid/71762
Exploit
Windows 8.1 (32/64 bit) - Privilege Escalation (ahcache.sys/NtApphelpCacheControl)
ProjectSend Arbitrary File Upload
Social Microblogging PRO 1.5 Stored XSS Vulnerability
2014
31.12.2014
Bugtraq
ESA-2014-179: EMC Replication Manager and EMC AppSync Unquoted Service Path Enumeration Vulnerability 2014-12-30
Security Alert (Security_Alert emc com)
ESA-2014-158: RSA BSAFE® Micro Edition Suite and SSL-J Triple Handshake Vulnerability 2014-12-30
Security Alert (Security_Alert emc com)
[SECURITY] [DSA 3116-1] polarssl security update 2014-12-30
Moritz Muehlenhoff (jmm debian org)
Remote Code Execution via Unauthorised File upload in Cforms 14.7 2014-12-29
z fedotkin infosec ru
[SECURITY] [DSA 3115-1] pyyaml security update 2014-12-29
Moritz Muehlenhoff (jmm debian org)
nullcon HackIM Challenge 9-11 Jan 2015 2014-12-29
nullcon (nullcon nullcon net)
[SECURITY] [DSA 3113-1] unzip security update 2014-12-28
Salvatore Bonaccorso (carnil debian org)
[SECURITY] [DSA 3114-1] mime-support security update 2014-12-29
Salvatore Bonaccorso (carnil debian org)
Malware
Phishing
Vulnerebility
JasPer 'jpc_dec.c' Multiple Remote Heap Buffer Overflow Vulnerabilities
2014-12-30
http://www.securityfocus.com/bid/71476
JasPer CVE-2014-8137 Double Free Remote Code Execution Vulnerability
2014-12-30
http://www.securityfocus.com/bid/71742
PolarSSL Unspecified Memory Corruption Vulnerability
2014-12-30
http://www.securityfocus.com/bid/70905
LibYAML and Perl YAML-LibYAML Module 'scanner.c' Remote Denial of Service Vulnerability
2014-12-30
http://www.securityfocus.com/bid/71349
NTP 'ntp_config.c' Insufficient Entropy Security Weakness
2014-12-30
http://www.securityfocus.com/bid/71757
Network Time Protocol CVE-2014-9296 Unspecified Security Vulnerability
2014-12-30
http://www.securityfocus.com/bid/71758
Network Time Protocol CVE-2014-9295 Multiple Stack Based Buffer Overflow Vulnerabilities
2014-12-30
http://www.securityfocus.com/bid/71761
torque 'job name' Argument Remote Buffer Overflow Vulnerability
2014-12-30
http://www.securityfocus.com/bid/48374
Torque Server Security Bypass Vulnerability
2014-12-30
http://www.securityfocus.com/bid/49119
Torque Munge Authentication Bypass Vulnerability
2014-12-30
http://www.securityfocus.com/bid/51224
Little CMS Multiple Remote Buffer Overflow Vulnerabilities
2014-12-30
http://www.securityfocus.com/bid/61607
Torque CVE-2013-4319 Remote Arbitrary Code Execution Vulnerability
2014-12-30
http://www.securityfocus.com/bid/62273
Torque 'send_the_mail()' Function Remote Command Injection Vulnerability
2014-12-30
http://www.securityfocus.com/bid/63722
TORQUE CVE-2014-0749 Stack Buffer Overflow Vulnerability
2014-12-30
http://www.securityfocus.com/bid/67420
Multiple Puppet Products CVE-2014-3248 Remote Code Execution Vulnerability
2014-12-30
http://www.securityfocus.com/bid/68035
Microsoft Windows Graphics Component CVE-2014-6355 Information Disclosure Vulnerability
2014-12-30
http://www.securityfocus.com/bid/71502
Microsoft VBScript CVE-2014-6363 Remote Code Execution Vulnerability
2014-12-30
http://www.securityfocus.com/bid/71504
Multiple F5 Products CVE-2014-8730 Man In The Middle Information Disclosure Vulnerability
2014-12-30
http://www.securityfocus.com/bid/71549
file CVE-2014-8117 Denial of Service Vulnerability
2014-12-30
http://www.securityfocus.com/bid/71692
Linux Kernel 'fs/isofs/rock.c' Infinite Loop Denial of Service Vulnerability
2014-12-30
http://www.securityfocus.com/bid/71717
NTP 'ntp-keygen.c' Predictable Random Number Generator Weakness
2014-12-30
http://www.securityfocus.com/bid/71762
Fish-shell CVE-2014-2914 Remote Code Execution Vulnerability
2014-12-30
http://www.securityfocus.com/bid/67095
Fish-shell '/tmp/fishd.socket.user' Local Privilege Escalation Vulnerability
2014-12-30
http://www.securityfocus.com/bid/67097
Fish-shell 'psub' Function Insecure Temporary File Creation Vulnerability
2014-12-30
http://www.securityfocus.com/bid/67098
Fish-shell Insecure Temporary File Creation Vulnerabiliy
2014-12-30
http://www.securityfocus.com/bid/67115
Wireshark Sniffer File CVE-2014-6431 Remote Denial of Service Vulnerability
2014-12-30
http://www.securityfocus.com/bid/69858
Wireshark Netflow Dissector CVE-2014-6424 Denial of Service Vulnerability
2014-12-30
http://www.securityfocus.com/bid/69862
Getmail CVE-2014-7273 SSL Certificate Security Bypass Vulnerability
2014-12-30
http://www.securityfocus.com/bid/70280
Getmail CVE-2014-7274 SSL Certificate Security Bypass Vulnerability
2014-12-30
http://www.securityfocus.com/bid/70281
Getmail CVE-2014-7275 SSL Certificate Security Bypass Vulnerability
2014-12-30
http://www.securityfocus.com/bid/70282
Exploit
Liferay Portal 7.0.x <= 7.0.2 - Pre-Auth RCE
30.12.2014
Bugtraq
Lazarus Guestbook v1.22 - Multiple Web Vulnerabilities 2014-12-25
Vulnerability Lab (research vulnerability-lab com)
Wickr Desktop v2.2.1 Windows - Denial of Service Vulnerability 2014-12-25
Vulnerability Lab (research vulnerability-lab com)
PHPLIST v3.0.6 & v3.0.10 - SQL Injection Vulnerability 2014-12-25
Vulnerability Lab (research vulnerability-lab com)
Pimcore v3.0 & v2.3.0 CMS - SQL Injection Vulnerability 2014-12-25
Vulnerability Lab (research vulnerability-lab com)
ZTE Ucell 3G Modem App - Privilege Escalation Vulnerability 2014-12-25
Vulnerability Lab (research vulnerability-lab com)
Mobilis MobiConnect 3G ZDServer 1.x - Privilege Escalation Vulnerability 2014-12-25
Vulnerability Lab (research vulnerability-lab com)
Facebook Bug Bounty #17 - Migrate Privacy Vulnerability 2014-12-25
Vulnerability Lab (research vulnerability-lab com)
DRAM unreliable under specific access patern 2014-12-24
Pavel Machek (pavel ucw cz)
Reflecting XSS Vulnerability in CMS Contenido 4.9.x-4.9.5 2014-12-24
steffen roesemann1986 gmail com
Cisco Security Advisory: Multiple Vulnerabilities in ntpd Affecting Cisco Products 2014-12-23
Cisco Systems Product Security Incident Response Team (psirt cisco com)
[SECURITY] [DSA 3110-1] mediawiki security update 2014-12-23
Sebastien Delafond (seb debian org)
FreeBSD Security Advisory FreeBSD-SA-14:31.ntp 2014-12-23
FreeBSD Security Advisories (security-advisories freebsd org)
[SECURITY] [DSA 3112-1] sox security update 2014-12-23
Salvatore Bonaccorso (carnil debian org)
Malware
Phishing
Vulnerebility
Wireshark HIP Dissector CVE-2014-6426 Remote Denial of Service Vulnerability
2014-12-29
http://www.securityfocus.com/bid/69863
Wireshark RTSP Dissector CVE-2014-6427 Remote Denial of Service Vulnerability
2014-12-29
http://www.securityfocus.com/bid/69861
Wireshark Sniffer File CVE-2014-6430 Remote Denial of Service Vulnerability
2014-12-29
http://www.securityfocus.com/bid/69857
NTP 'ntp_config.c' Insufficient Entropy Security Weakness
2014-12-29
http://www.securityfocus.com/bid/71757
Network Time Protocol CVE-2014-9295 Multiple Stack Based Buffer Overflow Vulnerabilities
2014-12-29
http://www.securityfocus.com/bid/71761
Network Time Protocol CVE-2014-9296 Unspecified Security Vulnerability
2014-12-29
http://www.securityfocus.com/bid/71758
Info-ZIP UnZip CVE-2014-8139 Remote Heap Buffer Overflow Vulnerability
2014-12-29
http://www.securityfocus.com/bid/71790
Linux Kernel CVE-2013-2897 Heap Buffer Overflow Vulnerability
2014-12-29
http://www.securityfocus.com/bid/62044
MuPDF 'xps_parse_color()' Function Stack Buffer Overflow Vulnerability
2014-12-29
http://www.securityfocus.com/bid/65036
policycoreutils seunshare CVE-2014-3215 Local Privilege Escalation Vulnerability
2014-12-29
http://www.securityfocus.com/bid/67341
Xen 'HVMOP_track_dirty_vram()' Local Denial of Service Vulnerability
2014-12-29
http://www.securityfocus.com/bid/70055
Xen 'x86_emulate.c' Local Privilege Escalation Vulnerability
2014-12-29
http://www.securityfocus.com/bid/70057
Xen Supervisor Mode Permission Checks Local Denial of Service Vulnerability
2014-12-29
http://www.securityfocus.com/bid/70062
Xen CVE-2014-7188 Denial of Service Vulnerability
2014-12-29
http://www.securityfocus.com/bid/70198
Linux Kernel CVE-2014-7841 SCTP NULL Pointer Dereference Denial of Service Vulnerability
2014-12-29
http://www.securityfocus.com/bid/71081
Linux Kernel 'ttusbdecfe.c' Buffer Overflow Vulnerability
2014-12-29
http://www.securityfocus.com/bid/71097
OpenVPN CVE-2014-8104 Denial of Service Vulnerability
2014-12-29
http://www.securityfocus.com/bid/71402
NTP 'ntp-keygen.c' Predictable Random Number Generator Weakness
2014-12-29
http://www.securityfocus.com/bid/71762
Cisco Adaptive Security Appliance (ASA) Software CVE-2014-3410 Information Disclosure Vulnerability
2014-12-29
http://www.securityfocus.com/bid/71765
Info-ZIP UnZip CVE-2014-8140 Out of Bounds Write Heap Buffer Overflow Vulnerability
2014-12-29
http://www.securityfocus.com/bid/71792
Info-ZIP UnZip CVE-2014-8141 Out of Bounds Read Heap Buffer Overflow Vulnerability
2014-12-29
http://www.securityfocus.com/bid/71793
Linux Kernel KVM 'virt/kvm/iommu.c' Denial of Service Vulnerability
2014-12-29
http://www.securityfocus.com/bid/69489
Linux Kernel PicoLCD HID Device Driver Buffer Overflow Vulnerability
2014-12-29
http://www.securityfocus.com/bid/69763
Linux Kernel CVE-2014-3185 'whiteheat.c' Buffer Overflow Vulnerability
2014-12-29
http://www.securityfocus.com/bid/69781
Linux Kernel KVM 'asm/kvm_host.h' Denial of Service Vulnerability
2014-12-29
http://www.securityfocus.com/bid/70742
Linux Kernel CVE-2014-3673 Denial of Service Vulnerability
2014-12-29
http://www.securityfocus.com/bid/70883
Linux Kernel 'net/mac80211/tx.c' Information Disclosure Vulnerability
2014-12-29
http://www.securityfocus.com/bid/70965
Linux Kernel 'trace_syscalls.c' Multiple Local Denial of Service Vulnerabilities
2014-12-29
http://www.securityfocus.com/bid/70971
Linux Kernel 'kernel/tls.c' Local Information Disclosure Vulnerability
2014-12-29
http://www.securityfocus.com/bid/71684
Linux Kernel CVE-2014-9322 Local Privilege Escalation Vulnerability
2014-12-29
http://www.securityfocus.com/bid/71685
Exploit
29.12.2014
Bugtraq
Lazarus Guestbook v1.22 - Multiple Web Vulnerabilities 2014-12-25
Vulnerability Lab (research vulnerability-lab com)
Wickr Desktop v2.2.1 Windows - Denial of Service Vulnerability 2014-12-25
Vulnerability Lab (research vulnerability-lab com)
PHPLIST v3.0.6 & v3.0.10 - SQL Injection Vulnerability 2014-12-25
Vulnerability Lab (research vulnerability-lab com)
Pimcore v3.0 & v2.3.0 CMS - SQL Injection Vulnerability 2014-12-25
Vulnerability Lab (research vulnerability-lab com)
ZTE Ucell 3G Modem App - Privilege Escalation Vulnerability 2014-12-25
Vulnerability Lab (research vulnerability-lab com)
Mobilis MobiConnect 3G ZDServer 1.x - Privilege Escalation Vulnerability 2014-12-25
Vulnerability Lab (research vulnerability-lab com)
Facebook Bug Bounty #17 - Migrate Privacy Vulnerability 2014-12-25
Vulnerability Lab (research vulnerability-lab com)
DRAM unreliable under specific access patern 2014-12-24
Pavel Machek (pavel ucw cz)
Reflecting XSS Vulnerability in CMS Contenido 4.9.x-4.9.5 2014-12-24
steffen roesemann1986 gmail com
Cisco Security Advisory: Multiple Vulnerabilities in ntpd Affecting Cisco Products 2014-12-23
Cisco Systems Product Security Incident Response Team (psirt cisco com)
[SECURITY] [DSA 3110-1] mediawiki security update 2014-12-23
Sebastien Delafond (seb debian org)
FreeBSD Security Advisory FreeBSD-SA-14:31.ntp 2014-12-23
FreeBSD Security Advisories (security-advisories freebsd org)
[SECURITY] [DSA 3112-1] sox security update 2014-12-23
Salvatore Bonaccorso (carnil debian org)
Malware
Phishing
Vulnerebility
Linux Kernel CVE-2014-9322 Local Privilege Escalation Vulnerability
2014-12-25
http://www.securityfocus.com/bid/71685
Linux Kernel 'kernel/tls.c' Local Information Disclosure Vulnerability
2014-12-25
http://www.securityfocus.com/bid/71684
Linux Kernel 'espfix64' Local Denial of Service Vulnerability
2014-12-25
http://www.securityfocus.com/bid/71250
Network Time Protocol CVE-2014-9296 Unspecified Security Vulnerability
2014-12-25
http://www.securityfocus.com/bid/71758
Network Time Protocol CVE-2014-9295 Multiple Stack Based Buffer Overflow Vulnerabilities
2014-12-25
http://www.securityfocus.com/bid/71761
OpenVPN CVE-2014-8104 Denial of Service Vulnerability
2014-12-25
http://www.securityfocus.com/bid/71402
RPM CVE-2014-8118 CPIO Header Handling Integer Overflow Vulnerability
2014-12-25
http://www.securityfocus.com/bid/71588
RPM CVE-2013-6435 Remote Code Execution Vulnerability
2014-12-25
http://www.securityfocus.com/bid/71558
Mozilla Network Security Services CVE-2014-1569 Security Bypass Vulnerability
2014-12-25
http://www.securityfocus.com/bid/71675
NTP 'ntp-keygen.c' Predictable Random Number Generator Weakness
2014-12-25
http://www.securityfocus.com/bid/71762
NTP 'ntp_config.c' Insufficient Entropy Security Weakness
2014-12-25
http://www.securityfocus.com/bid/71757
QEMU CVE-2014-3689 Multiple Local Security Bypass Vulnerabilities
2014-12-25
http://www.securityfocus.com/bid/70997
QEMU 'arch_init.c' Local Memory Corruption Vulnerability
2014-12-25
http://www.securityfocus.com/bid/71658
QEMU 'cirrus_vga.c' Security Bypass Vulnerability
2014-12-25
http://www.securityfocus.com/bid/71477
RSyslog Function Imfile Module Buffer Overflow Vulnerability
2014-12-25
http://www.securityfocus.com/bid/51171
RSyslog and sysklogd CVE-2014-3634 Denial of Service Vulnerability
2014-12-25
http://www.securityfocus.com/bid/70187
RSyslog and sysklogd CVE-2014-3683 Incomplete Fix Denial of Service Vulnerability
2014-12-25
http://www.securityfocus.com/bid/70243
OpenSSL CVE-2014-0224 Man in the Middle Security Bypass Vulnerability
2014-12-25
http://www.securityfocus.com/bid/67899
OpenSSL CVE-2014-3470 Denial of Service Vulnerability
2014-12-25
http://www.securityfocus.com/bid/67898
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2014-12-25
http://www.securityfocus.com/bid/70574
Allegro RomPager HTTP Cookie Handling CVE-2014-9222 Security Bypass Vulnerability
2014-12-25
http://www.securityfocus.com/bid/71744
Allegro RomPager CVE-2014-9223 Buffer Overflow Vulnerability
2014-12-25
http://www.securityfocus.com/bid/71756
FreeType 'src/cff/cf2hints.c' Remote Stack Buffer Overflow Vulnerability
2014-12-25
http://www.securityfocus.com/bid/66074
Cisco Prime Infrastructure CVE-2014-8007 Password Disclosure Vulnerability
2014-12-24
http://www.securityfocus.com/bid/71763
Cisco Enterprise Content Delivery System (ECDS) CVE-2014-8019 Arbitrary File Access Vulnerability
2014-12-24
http://www.securityfocus.com/bid/71764
Firebird 'protocol.cpp' NULL Pointer Dereference Denial of Service Vulnerability
2014-12-24
http://www.securityfocus.com/bid/71622
Sendmail File Descriptor Security Vulnerability
2014-12-24
http://www.securityfocus.com/bid/67791
PowerDNS Recursive Server CVE-2012-1193 Multiple Security Bypass Vulnerabilities
2014-12-24
http://www.securityfocus.com/bid/59348
PowerDNS Recursor Remote Cache Poisoning Vulnerability
2014-12-24
http://www.securityfocus.com/bid/37653
PowerDNS Recurser Buffer Overflow Vulnerability
2014-12-24
http://www.securityfocus.com/bid/37650
Exploit
WhatsApp <= 2.11.476 - Remote Reboot/Crash App Android
Pimcore 3.0 & 2.3.0 CMS - SQL Injection Vulnerability
PHPLIST 3.0.6 & 3.0.10 - SQL Injection Vulnerability
PMB <= 4.1.3 - Post-Auth SQL Injection Vulnerability
Wickr Desktop 2.2.1 Windows - Denial of Service Vulnerability
25.12.2014
Bugtraq
TWiki Security Advisory - XSS Vulnerability - CVE-2014-9367 2014-12-19
Onur Yilmaz (onur netsparker com)
TWiki Security Advisory - XSS Vulnerability - CVE-2014-9325 2014-12-19
Onur Yilmaz (onur netsparker com)
Facebook BB #18 - IDOR Issue & Privacy Vulnerability 2014-12-19
Vulnerability Lab (research vulnerability-lab com)
Mobilis MobiConnect 3G ZDServer v1.0.1.2 - Privilege Escalation Vulnerability 2014-12-19
Vulnerability Lab (research vulnerability-lab com)
iBackup v10.0.0.45 - Privilege Escalation Vulnerability 2014-12-19
Vulnerability Lab (research vulnerability-lab com)
SEC Consult SA-20141219-0 :: XSS & Memory Disclosure vulnerabilities in NetIQ eDirectory NDS iMonitor 2014-12-19
SEC Consult Vulnerability Lab (research sec-consult com)
APPLE-SA-2014-12-18-1 Xcode 6.2 beta 3 2014-12-18
Apple Product Security (product-security-noreply lists apple com)
[oCERT-2014-012] JasPer input sanitization errors 2014-12-18
Andrea Barisani (lcars ocert org)
SEC Consult SA-20141218-1 :: OS command execution vulnerability in GParted 2014-12-18
SEC Consult Vulnerability Lab (research sec-consult com)
SEC Consult SA-20141218-2 :: Multiple high risk vulnerabilities in NetIQ Access Manager 2014-12-18
SEC Consult Vulnerability Lab (research sec-consult com)
iTwitter v0.04 WP Plugin - XSS & CSRF Web Vulnerability 2014-12-18
Vulnerability Lab (research vulnerability-lab com)
E-Journal CMS (ID) - Multiple Web Vulnerabilities 2014-12-18
Vulnerability Lab (research vulnerability-lab com)
Facebook Bug Bounty #16 (Studio) - Persistent Vulnerability 2014-12-18
Vulnerability Lab (research vulnerability-lab com)
Apple iOS v8.x - Message Context & Privacy Vulnerability 2014-12-18
Vulnerability Lab (research vulnerability-lab com)
Malware
Phishing
Vulnerebility
OProfile Multiple Security Vulnerabilities
2014-12-19
http://www.securityfocus.com/bid/48241
LFTP 'Content-Disposition' HTTP Header Arbitrary File Overwrite Vulnerability
2014-12-19
http://www.securityfocus.com/bid/43728
uzbl 'uzbl-core' '@SELECTED_URI' Mouse Button Bindings Command Injection Vulnerability
2014-12-19
http://www.securityfocus.com/bid/42297
libpng Memory Corruption and Memory Leak Vulnerabilities
2014-12-19
http://www.securityfocus.com/bid/41174
iputils 'ping.c' Remote Denial Of Service Vulnerability
2014-12-19
http://www.securityfocus.com/bid/41911
pmount Insecure Temporary File Creation Vulnerability
2014-12-19
http://www.securityfocus.com/bid/40939
mlmmj (Mailing List Managing Made Joyful) Directory Traversal Vulnerability
2014-12-19
http://www.securityfocus.com/bid/41841
KDE KDM Insecure File Permission Local Privilege Escalation Vulnerability
2014-12-19
http://www.securityfocus.com/bid/39467
Beanstalk Job Data Remote Command Execution Vulnerability
2014-12-19
http://www.securityfocus.com/bid/40516
Ghostscript Insecure Temporary File Creation Vulnerability
2014-12-19
http://www.securityfocus.com/bid/40426
GNU Gzip Dynamic Huffman Decompression Remote Code Execution Vulnerability
2014-12-19
http://www.securityfocus.com/bid/37888
dvipng '.dvi' File Parsing Remote Code Execution Vulnerability
2014-12-19
http://www.securityfocus.com/bid/39969
gnome-screensaver Unlock Dialog Race Condition Lock Bypass Vulnerability
2014-12-19
http://www.securityfocus.com/bid/38211
KDE KGet Security Bypass and Directory Traversal Vulnerabilities
2014-12-19
http://www.securityfocus.com/bid/40141
GNU gzip LZW Compression Remote Integer Overflow Vulnerability
2014-12-19
http://www.securityfocus.com/bid/37886
XFS ACL 'setfacl' and 'getfacl' Symbolic Link Handling Security Bypass Vulnerability
2014-12-19
http://www.securityfocus.com/bid/37455
Libpng 1-bit Interlaced Images Information Disclosure Vulnerability
2014-12-19
http://www.securityfocus.com/bid/35233
FreeType Multiple Integer Overflow Vulnerabilities
2014-12-19
http://www.securityfocus.com/bid/34550
Libpng Library Uninitialized Pointer Arrays Memory Corruption Vulnerabilities
2014-12-19
http://www.securityfocus.com/bid/33827
GNU Libtool 'libltdl' Library Search Path Local Privilege Escalation Vulnerability
2014-12-19
http://www.securityfocus.com/bid/37128
pam-krb5 Local Privilege Escalation Vulnerability
2014-12-19
http://www.securityfocus.com/bid/33740
pam-krb5 'KRB5CCNAME' Environment Variable Local Privilege Escalation Vulnerability
2014-12-19
http://www.securityfocus.com/bid/33741
BitDefender Antivirus For Linux Multiple File Processing Remote Denial Of Service Vulnerabilities
2014-12-19
http://www.securityfocus.com/bid/32751
Libpng Library 'png_handle_tEXt()' Memory Leak Denial of Service Vulnerability
2014-12-19
http://www.securityfocus.com/bid/31920
Little CMS ICC Profile Stack Buffer Overflow Vulnerability
2014-12-19
http://www.securityfocus.com/bid/24001
Tcl/Tk Tk Toolkit 'ReadImage()' GIF File Buffer Overflow Vulnerability
2014-12-19
http://www.securityfocus.com/bid/27655
JasPer 'jpc_dec.c' Multiple Remote Heap Buffer Overflow Vulnerabilities
2014-12-19
http://www.securityfocus.com/bid/71476
Linux Kernel CVE-2014-9322 Local Privilege Escalation Vulnerability
2014-12-19
http://www.securityfocus.com/bid/71685
GNU glibc CVE-2014-7817 Arbitrary Command Execution Vulnerability
2014-12-19
http://www.securityfocus.com/bid/71216
GNU glibc '__gconv_translit_find()' Function Local Heap Based Buffer Overflow Vulnerability
2014-12-19
http://www.securityfocus.com/bid/68983
Exploit
Cacti Superlinks Plugin 1.4-2 RCE(LFI) via SQL Injection Exploit
Ettercap 0.8.0-0.8.1 - Multiple Denial of Service Vulnerabilities
miniBB 3.1 - Blind SQL Injection
Varnish Cache CLI Interface Remote Code Execution
19.12.2014
Bugtraq
Malware
Phishing
Vulnerebility
Exploit
17.12.2014
Bugtraq
[security bulletin] HPSBMU03217 rev.1 - HP Vertica Analytics Platform running Bash Shell, Remote Code Execution 2014-12-16
security-alert hp com
[security bulletin] HPSBOV03226 rev.1 - HP TCP/IP Services for OpenVMS, BIND 9 Resolver, Multiple Remote Vulnerabilities 2014-12-16
security-alert hp com
[security bulletin] HPSBOV03225 rev.1 - HP OpenVMS running POP, Remote Denial of Service (DoS) 2014-12-16
security-alert hp com
[security bulletin] HPSBMU03221 rev.1 - HP Connect-IT running SSLv3, Remote Disclosure of Information 2014-12-16
security-alert hp com
RelateIQ Bug Bounty #1 - Persistent Signup Vulnerability 2014-12-16
Vulnerability Lab (research vulnerability-lab com)
Konakart v7.3.0.1 CMS - CS Cross Site Web Vulnerability 2014-12-16
Vulnerability Lab (research vulnerability-lab com)
Elefant CMS v1.3.9 - Persistent Name Update Vulnerability 2014-12-16
Vulnerability Lab (research vulnerability-lab com)
Fuzzylime v3.03b CMS - CS Cross Scripting Vulnerability 2014-12-16
Vulnerability Lab (research vulnerability-lab com)
iWifi for Chat v1.1 iOS - Denial of Service Vulnerability 2014-12-16
Vulnerability Lab (research vulnerability-lab com)
[SECURITY] [DSA 3105-1] heirloom-mailx security update 2014-12-16
Florian Weimer (fw deneb enyo de)
[SECURITY] [DSA 3104-1] bsd-mailx security update 2014-12-16
Florian Weimer (fw deneb enyo de)
W3TotalFail: W3 Total Cache v 0.9.4 CSRF Vulnerability that Leads to Full Deface 2014-12-16
Mazin Ahmed (mazen150 hotmail com)
[Onapsis Security Advisory 2014-034] SAP Business Objects Search Token Privilege Escalation via CORBA 2014-12-16
Onapsis Research Labs (research onapsis com)
"Ettercap 8.0 - 8.1" multiple vulnerabilities 2014-12-16
Nick Sampanis (n sampanis obrela com)
[SE-2014-02] Google App Engine Java security sandbox bypasses (status update) 2014-12-16
Security Explorations (contact security-explorations com)
Malware
Phishing
Vulnerebility
Linux Kernel CVE-2014-9322 Local Privilege Escalation Vulnerability
2014-12-17
http://www.securityfocus.com/bid/71685
ISC BIND 9 DNS Resource Records Handling CVE-2012-4244 Remote Denial of Service Vulnerability
2014-12-17
http://www.securityfocus.com/bid/55522
ISC BIND 9 Recursive Queries Remote Denial of Service Vulnerability
2014-12-17
http://www.securityfocus.com/bid/50690
ISC BIND 9 Remote Cache Poisoning Vulnerability
2014-12-17
http://www.securityfocus.com/bid/25037
Multiple Vendor OpenSSL 'DSA_verify' Function Signature Verification Vulnerability
2014-12-17
http://www.securityfocus.com/bid/33151
ISC BIND Multiple Remote Denial of Service Vulnerabilities
2014-12-17
http://www.securityfocus.com/bid/19859
Multiple Vendor DNS Protocol Insufficient Transaction ID Randomization DNS Spoofing Vulnerability
2014-12-17
http://www.securityfocus.com/bid/30131
Linux Kernel 'ISOFS' Deadlock Local Denial of Service Vulnerability
2014-12-17
http://www.securityfocus.com/bid/69428
BSD mailx CVE-2014-7844 Local Arbitrary Command Execution Vulnerability
2014-12-17
http://www.securityfocus.com/bid/71701
BSD mailx CVE-2004-2771 Local Arbitrary Command Execution Vulnerability
2014-12-17
http://www.securityfocus.com/bid/71704
Linux Kernel CVE-2014-3673 Denial of Service Vulnerability
2014-12-17
http://www.securityfocus.com/bid/70883
Linux Kernel CVE-2014-3687 Denial of Service Vulnerability
2014-12-17
http://www.securityfocus.com/bid/70766
Linux Kernel 'fs/udf/inode.c' Local Denial of Service Vulnerability
2014-12-17
http://www.securityfocus.com/bid/69799
Linux Kernel 'tcp_set_keepalive()' Function Denial of Service Vulnerability
2014-12-17
http://www.securityfocus.com/bid/69803
Linux Kernel 'ISOFS' Stack-Based Buffer Overflow Vulnerability
2014-12-17
http://www.securityfocus.com/bid/69396
HawtJNI CVE-2013-2035 Local Privilege Escalation Vulnerability
2014-12-17
http://www.securityfocus.com/bid/59876
Apache Xalan-Java Library CVE-2014-0107 Security Bypass Vulnerability
2014-12-17
http://www.securityfocus.com/bid/66397
JBoss Enterprise Application Platform Plain Text Password Local Information Disclosure Vulnerability
2014-12-17
http://www.securityfocus.com/bid/65762
OpenSAML-Java ParserPool and Decrypter XML External Entity Injection Vulnerability
2014-12-17
http://www.securityfocus.com/bid/64345
JBoss Enterprise Application Platform Java Security Manager Policy Security Bypass Vulnerability
2014-12-17
http://www.securityfocus.com/bid/66596
Multiple Red Hat JBoss Products Local Security Bypass Vulnerability
2014-12-17
http://www.securityfocus.com/bid/65591
Linux Kernel 'espfix64' Local Denial of Service Vulnerability
2014-12-17
http://www.securityfocus.com/bid/71250
OpenVPN CVE-2014-8104 Denial of Service Vulnerability
2014-12-17
http://www.securityfocus.com/bid/71402
JQuery 'ui/jquery.ui.dialog.js' Cross Site Scripting Vulnerability
2014-12-17
http://www.securityfocus.com/bid/71106
WordPress Download Manager Plugin Remote Code Execution and Remote File Include Vulnerabilities
2014-12-17
http://www.securityfocus.com/bid/71490
phpMyAdmin Long Password Handling Denial of Service Vulnerability
2014-12-17
http://www.securityfocus.com/bid/71434
phpMyAdmin CVE-2014-9219 Cross Site Scripting Vulnerability
2014-12-17
http://www.securityfocus.com/bid/71435
Antiword 'wordole.c' Buffer Overflow Vulnerability
2014-12-17
http://www.securityfocus.com/bid/71386
Xen MMU CVE-2014-8594 Local Security Bypass Vulnerability
2014-12-17
http://www.securityfocus.com/bid/71149
Xen CVE-2014-8595 Local Privilege Escalation Vulnerability
2014-12-17
http://www.securityfocus.com/bid/71151
Exploit
ActualAnalyzer 'ant' Cookie Command Execution
CIK Telecom VoIP router SVG6000RW - Privilege Escalation and Command Execution
CMS Papoo 6.0.0 Rev. 4701 - Stored XSS
16.12.2014
Bugtraq
CA20141215-01: Security Notice for CA LISA Release Automation 2014-12-15
Williams, Ken (Ken Williams ca com)
[ MDVSA-2014:252 ] nss 2014-12-15
security mandriva com
[ MDVSA-2014:253 ] apache-mod_wsgi 2014-12-15
security mandriva com
Malware
Phishing
Vulnerebility
OpenSSL TLS 'heartbeat' Extension Multiple Information Disclosure Vulnerabilities
2014-12-16
http://www.securityfocus.com/bid/66690
Libxml2 Entities Expansion CVE-2013-0339 Denial of Service Vulnerability
2014-12-16
http://www.securityfocus.com/bid/59000
Libxml2 Entities Expansion CVE-2013-0338 Denial of Service Vulnerability
2014-12-16
http://www.securityfocus.com/bid/58180
Multiple OpenStack Products CVE-2013-1664 Denial of Service Vulnerability
2014-12-16
http://www.securityfocus.com/bid/58892
libxml2 Multiple Use After Free Memory Corruption Vulnerabilities
2014-12-16
http://www.securityfocus.com/bid/59265
libpng Memory Corruption and Memory Leak Vulnerabilities
2014-12-16
http://www.securityfocus.com/bid/41174
Google Chrome CVE-2014-7910 Multiple Security Vulnerabilities
2014-12-16
http://www.securityfocus.com/bid/71161
Google Chrome CVE-2014-7906 Use After Free Remote Code Execution Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71159
X.Org X Server Protocol Handling Multiple Out-of-Bounds Memory Corruption Vulnerabilities
2014-12-16
http://www.securityfocus.com/bid/71606
X.Org X Server CVE-2014-8097 Out of Bounds Multiple Integer Overflow Vulnerabilities
2014-12-16
http://www.securityfocus.com/bid/71604
X.Org X Server CVE-2014-8101 Out of Bounds Read Multiple Remote Denial of Service Vulnerabilities
2014-12-16
http://www.securityfocus.com/bid/71605
X.Org X Server CVE-2014-8100 Out of Bounds Read Multiple Remote Denial of Service Vulnerabilities
2014-12-16
http://www.securityfocus.com/bid/71602
X.Org X Server Protocol Handling Out-of-Bounds Multiple Denial of Service Vulnerabilities
2014-12-16
http://www.securityfocus.com/bid/71603
X.Org X Server CVE-2014-8102 Out of Bounds Denial of Service Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71608
X.Org X Server CVE-2014-8094 Out of Bounds Denial of Service Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71601
X.Org X Server CVE-2014-8099 Out of Bounds Read Multiple Remote Denial of Service Vulnerabilities
2014-12-16
http://www.securityfocus.com/bid/71600
X.Org X Server CVE-2014-8091 Denial of Service Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71597
X.Org X Server Protocol Handling Multiple Integer Overflow Vulnerabilities
2014-12-16
http://www.securityfocus.com/bid/71595
X.Org X Server Protocol Handling Multiple Out-of-Bounds Memory Access Vulnerabilities
2014-12-16
http://www.securityfocus.com/bid/71599
X.Org X Server CVE-2014-8093 Multiple Integer Overflow Vulnerabilities
2014-12-16
http://www.securityfocus.com/bid/71596
X.Org X Server CVE-2014-8096 Out of Bounds Read Denial of Service Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71598
Firebird 'protocol.cpp' NULL Pointer Dereference Denial of Service Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71622
Apache 'mod_wsgi' Module Privilege Escalation Vulnerability
2014-12-16
http://www.securityfocus.com/bid/68111
Google Chrome CVE-2014-7907 Use After Free Remote Code Execution Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71170
Google Chrome CVE-2014-7899 Unspecified Address Bar Spoofing Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71160
Google Chrome CVE-2014-7904 Buffer Overflow Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71166
Google Chrome CVE-2014-7900 Use After Free Remote Code Execution Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71163
Google Chrome CVE-2014-7902 Use After Free Remote Code Execution Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71165
Google Chrome Prior to 38.0.2125.101 Multiple Security Vulnerabilities
2014-12-16
http://www.securityfocus.com/bid/70273
Google Chrome CVE-2014-7908 Integer Overflow Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71168
Exploit
Tuleap PHP Unserialize Code Execution
Mediacoder 0.8.33 build 5680 - SEH Buffer Overflow Exploit Dos (.m3u)
Mediacoder 0.8.33 build 5680 - SEH Buffer Overflow Exploit Dos (.lst)
jaangle 0.98i.977 - Denial of Service Vulnerability
HTCSyncManager 3.1.33.0 - Service Trusted Path Privilege Escalation
Avira 14.0.7.342 - (avguard.exe) Service Trusted Path Privilege Escalation
CodeMeter 4.50.906.503 - Service Trusted Path Privilege Escalation
GLPI 0.85 - Blind SQL Injection
Soitec SmartEnergy 1.4 - SCADA Login SQL Injection Authentication Bypass Exploit
Wordpress Download Manager 2.7.4 - Remote Code Execution Vulnerability
ResourceSpace 6.4.5976 - XSS / SQL Injection / Insecure Cookie Handling
Wordpress Wp Symposium 14.11 - Unauthenticated Shell Upload Exploit
15.12.2014
Bugtraq
[ MDVSA-2014:242 ] yaml 2014-12-14
security mandriva com
[SECURITY] [DSA 3103-1] libyaml-libyaml-perl security update 2014-12-13
Salvatore Bonaccorso (carnil debian org)
[SECURITY] [DSA 3102-1] libyaml security update 2014-12-13
Salvatore Bonaccorso (carnil debian org)
Defense in depth -- the Microsoft way (part 23): two quotes or not to quote... 2014-12-13
Stefan Kanthak (stefan kanthak nexgo de)
[ MDVSA-2014:238 ] bind 2014-12-13
security mandriva com
[SECURITY] [DSA 3101-1] c-icap security update 2014-12-13
Salvatore Bonaccorso (carnil debian org)
[ MDVSA-2014:243 ] phpmyadmin 2014-12-14
security mandriva com
[ MDVSA-2014:244 ] openafs 2014-12-14
security mandriva com
[ MDVSA-2014:245 ] mutt 2014-12-14
security mandriva com
CVE-2014-2026 Reflected Cross-Site Scripting (XSS) in "Intrexx Professional" 2014-12-14
Christian Schneider (mail Christian-Schneider net)
CVE-2014-2025 Remote Code Execution (RCE) in "Intrexx Professional" 2014-12-14
Christian Schneider (mail Christian-Schneider net)
[SECURITY] [DSA 3100-1] mediawiki security update 2014-12-13
Sebastien Delafond (seb debian org)
[ MDVSA-2014:251 ] rpm 2014-12-14
security mandriva com
[ MDVSA-2014:239 ] flac 2014-12-14
security mandriva com
[ MDVSA-2014:250 ] cpio 2014-12-14
security mandriva com
[ MDVSA-2014:249 ] qemu 2014-12-14
security mandriva com
[ MDVSA-2014:248 ] graphviz 2014-12-14
security mandriva com
[ MDVSA-2014:247 ] jasper 2014-12-14
security mandriva com
[ MDVSA-2014:246 ] openvpn 2014-12-14
security mandriva com
Malware
Phishing
Vulnerebility
D-Link DCS-2103 CVE-2014-9238 Directory Traversal Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71484
Apache Tomcat CVE-2014-0033 Session Fixation Vulnerability
2014-12-15
http://www.securityfocus.com/bid/65769
Apache Tomcat CVE-2013-4286 Security Bypass Vulnerability
2014-12-15
http://www.securityfocus.com/bid/65773
Apache Tomcat CVE-2013-4590 XML External Entity Information Disclosure Vulnerability
2014-12-15
http://www.securityfocus.com/bid/65768
Apache Tomcat CVE-2013-2067 Session Fixation Vulnerability
2014-12-15
http://www.securityfocus.com/bid/59799
Apache Tomcat CVE-2013-2071 Information Disclosure Vulnerability
2014-12-15
http://www.securityfocus.com/bid/59798
Apache Tomcat CVE-2013-4322 Incomplete Fix Denial of Service Vulnerability
2014-12-15
http://www.securityfocus.com/bid/65767
Apache Tomcat CVE-2012-4431 Cross-Site Request Forgery Vulnerability
2014-12-15
http://www.securityfocus.com/bid/56814
Apache Tomcat CVE-2012-3546 Security Bypass Vulnerability
2014-12-15
http://www.securityfocus.com/bid/56812
Apache Commons FileUpload CVE-2014-0050 Denial Of Service Vulnerability
2014-12-15
http://www.securityfocus.com/bid/65400
Apache Tomcat DIGEST Authentication Multiple Security Weaknesses
2014-12-15
http://www.securityfocus.com/bid/56403
Apache Tomcat CVE-2012-4534 Denial of Service Vulnerability
2014-12-15
http://www.securityfocus.com/bid/56813
Apache Tomcat CVE-2012-2733 Denial of Service Vulnerability
2014-12-15
http://www.securityfocus.com/bid/56402
OpenAFS CVE-2013-1794 Buffer Overflow Vulnerability
2014-12-15
http://www.securityfocus.com/bid/58299
OpenAFS CVE-2013-4134 Information Disclosure Vulnerability
2014-12-15
http://www.securityfocus.com/bid/61439
OpenAFS CVE-2013-1795 Remote Integer Overflow Vulnerability
2014-12-15
http://www.securityfocus.com/bid/58300
OpenAFS CVE-2013-4135 Information Disclosure Vulnerability
2014-12-15
http://www.securityfocus.com/bid/61438
OpenAFS GetStatistics64 RPC Remote Denial Of Service Vulnerability
2014-12-15
http://www.securityfocus.com/bid/66776
phpMyAdmin CVE-2014-9219 Cross Site Scripting Vulnerability
2014-12-15
http://www.securityfocus.com/bid/71435
phpMyAdmin Long Password Handling Denial of Service Vulnerability
2014-12-15
http://www.securityfocus.com/bid/71434
LibYAML and Perl YAML-LibYAML Module 'scanner.c' Remote Denial of Service Vulnerability
2014-12-15
http://www.securityfocus.com/bid/71349
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2014-12-15
http://www.securityfocus.com/bid/70574
tcpdump 'olsr_print()' Function Denial of Service Vulnerability
2014-12-15
http://www.securityfocus.com/bid/71150
tcpdump CVE-2014-8769 Out-of-bounds Memory Access Vulnerability
2014-12-15
http://www.securityfocus.com/bid/71153
tcpdump CVE-2014-9140 Buffer Overflow Vulnerability
2014-12-15
http://www.securityfocus.com/bid/71468
MantisBT 'soap/mc_account_api.php' Security Bypass Vulnerability
2014-12-15
http://www.securityfocus.com/bid/71553
Linux Kernel CVE-2014-8559 Local Denial of Service Vulnerability
2014-12-15
http://www.securityfocus.com/bid/70854
libFLAC 'src/libFLAC/stream_decoder.c' Stack Buffer Overflow Vulnerability
2014-12-15
http://www.securityfocus.com/bid/71280
libFLAC 'src/libFLAC/stream_decoder.c' Heap Buffer Overflow Vulnerability
2014-12-15
http://www.securityfocus.com/bid/71282
ISC BIND CVE-2014-8500 Remote Denial of Service Vulnerability
2014-12-15
http://www.securityfocus.com/bid/71590
Exploit
12.12.2014
Bugtraq
[security bulletin] HPSBUX03162 SSRT101767 rev.3 - HP-UX Running OpenSSL, Remote Denial of Service (DoS), Unauthorized Access, Man-in-the-Middle (MitM) Attack 2014-12-11
security-alert hp com
Docker 1.3.3 - Security Advisory [11 Dec 2014] 2014-12-12
Eric Windisch (eric windisch docker com)
[SECURITY] [DSA 3099-1] dbus security update 2014-12-11
Florian Weimer (fw deneb enyo de)
ResourceSpace Multiple Cross Site Scripting, and HTML and SQL Injection Vulnerabilities 2014-12-11
petri iivonen tmbc gov uk
APPLE-SA-2014-12-11-1 Safari 8.0.2, Safari 7.1.2, and Safari 6.2.2 2014-12-11
Apple Product Security (product-security-noreply lists apple com)
[SECURITY] [DSA 3098-1] graphviz security update 2014-12-11
Salvatore Bonaccorso (carnil debian org)
[SECURITY] [DSA 3097-1] unbound security update 2014-12-10
Yves-Alexis Perez (corsac debian org)
[slackware-security] openssh (SSA:2014-344-03) 2014-12-11
Slackware Security Team (security slackware com)
[slackware-security] wpa_supplicant (SSA:2014-344-07) 2014-12-11
Slackware Security Team (security slackware com)
[slackware-security] mozilla-firefox (SSA:2014-344-02) 2014-12-11
Slackware Security Team (security slackware com)
[slackware-security] pidgin (SSA:2014-344-05) 2014-12-11
Slackware Security Team (security slackware com)
[slackware-security] bind (SSA:2014-344-01) 2014-12-11
Slackware Security Team (security slackware com)
[slackware-security] seamonkey (SSA:2014-344-06) 2014-12-11
Slackware Security Team (security slackware com)
[slackware-security] openvpn (SSA:2014-344-04) 2014-12-11
Slackware Security Team (security slackware com)
[SECURITY] [DSA 3096-1] pdns-recursor security update 2014-12-11
Sebastien Delafond (seb debian org)
Malware
Phishing
Vulnerebility
D-Link DCS-2103 CVE-2014-9238 Directory Traversal Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71484
X.Org X Server CVE-2014-8099 Out of Bounds Read Multiple Remote Denial of Service Vulnerabilities
2014-12-12
http://www.securityfocus.com/bid/71600
X.Org X Server CVE-2014-8091 Denial of Service Vulnerability
2014-12-12
http://www.securityfocus.com/bid/71597
X.Org X Server CVE-2014-8096 Out of Bounds Read Denial of Service Vulnerability
2014-12-12
http://www.securityfocus.com/bid/71598
X.Org X Server Protocol Handling Multiple Out-of-Bounds Memory Access Vulnerabilities
2014-12-12
http://www.securityfocus.com/bid/71599
X.Org X Server CVE-2014-8097 Out of Bounds Multiple Integer Overflow Vulnerabilities
2014-12-12
http://www.securityfocus.com/bid/71604
Mutt 'mutt_substrdup()' Function Heap Based Buffer Overflow Vulnerability
2014-12-12
http://www.securityfocus.com/bid/71334
ISC BIND CVE-2014-8500 Remote Denial of Service Vulnerability
2014-12-12
http://www.securityfocus.com/bid/71590
X.Org X Server Protocol Handling Multiple Integer Overflow Vulnerabilities
2014-12-12
http://www.securityfocus.com/bid/71595
X.Org X Server CVE-2014-8093 Multiple Integer Overflow Vulnerabilities
2014-12-12
http://www.securityfocus.com/bid/71596
X.Org X Server CVE-2014-8100 Out of Bounds Read Multiple Remote Denial of Service Vulnerabilities
2014-12-12
http://www.securityfocus.com/bid/71602
X.Org X Server CVE-2014-8101 Out of Bounds Read Multiple Remote Denial of Service Vulnerabilities
2014-12-12
http://www.securityfocus.com/bid/71605
X.Org X Server Protocol Handling Multiple Out-of-Bounds Memory Corruption Vulnerabilities
2014-12-12
http://www.securityfocus.com/bid/71606
X.Org X Server CVE-2014-8102 Out of Bounds Denial of Service Vulnerability
2014-12-12
http://www.securityfocus.com/bid/71608
OpenSSL CVE-2014-0076 Information Disclosure Weakness
2014-12-12
http://www.securityfocus.com/bid/66363
OpenSSL 'ssl3_release_read_buffer()' Use-After-Free Memory Corruption Vulnerability
2014-12-12
http://www.securityfocus.com/bid/66801
OpenSSL 'so_ssl3_write()' Function NULL Pointer Dereference Denial of Service Vulnerability
2014-12-12
http://www.securityfocus.com/bid/67193
OpenSSL CVE-2014-0224 Man in the Middle Security Bypass Vulnerability
2014-12-12
http://www.securityfocus.com/bid/67899
Oracle Java SE CVE-2014-4263 Remote Security Vulnerability
2014-12-12
http://www.securityfocus.com/bid/68636
Shim CVE-2014-3675 Remote Denial of Service Vulnerability
2014-12-12
http://www.securityfocus.com/bid/70407
Shim CVE-2014-3676 Heap Based Buffer Overflow Vulnerability
2014-12-12
http://www.securityfocus.com/bid/70409
Shim CVE-2014-3677 Memory Corruption Vulnerability
2014-12-12
http://www.securityfocus.com/bid/70410
D-Bus CVE-2014-7824 Incomplete Fix Denial of Service Vulnerability
2014-12-12
http://www.securityfocus.com/bid/71012
Graphviz 'agerr()' Function Remote Format String Vulnerability
2014-12-12
http://www.securityfocus.com/bid/71283
Microsoft Internet Explorer CVE-2014-6329 Remote Memory Corruption Vulnerability
2014-12-12
http://www.securityfocus.com/bid/71447
Microsoft Internet Explorer CVE-2014-6373 Remote Memory Corruption Vulnerability
2014-12-12
http://www.securityfocus.com/bid/71453
Microsoft Internet Explorer CVE-2014-8966 Remote Memory Corruption Vulnerability
2014-12-12
http://www.securityfocus.com/bid/71457
Microsoft Internet Explorer XSS Filter CVE-2014-6328 Security Bypass Vulnerability
2014-12-12
http://www.securityfocus.com/bid/71460
Adobe Flash Player CVE-2014-9162 Information Disclosure Vulnerability
2014-12-12
http://www.securityfocus.com/bid/71581
Adobe Flash Player CVE-2014-9163 Stack Based Buffer Overflow Vulnerability
2014-12-12
http://www.securityfocus.com/bid/71582
Exploit
10.12.2014
Bugtraq
Concrete5 CMS Reflected Cross-Site Scripting Vulnerabilities 2014-12-09
simo morxploit com
[security bulletin] HPSBMU03043 rev.1 - HP Smart Update Manager for Windows and Linux, Local Disclosure of Information 2014-12-09
security-alert hp com
[security bulletin] HPSBST03106 rev.2 - HP P2000 G3 MSA Array System, HP MSA 2040/1040 Storage running OpenSSL, Remote Unauthorized Access or Disclosure of Information 2014-12-09
security-alert hp com
NEW VMSA-2014-0013 - VMware vCloud Automation Center product updates address a critical remote privilege escalation vulnerability 2014-12-09
VMware Security Response Center (security vmware com)
[CVE-2014-8340] phpTrafficA SQL injection 2014-12-09
Daniël Geerts (dgeerts nikhef nl)
[security bulletin] HPSBGN03208 rev.1 - HP Cloud Service Automation running SSLv3, Remote Disclosure of Information 2014-12-09
security-alert hp com
[security bulletin] HPSBGN03222 rev.1 - HP Enterprise Maps running SSLv3, Remote Disclosure of Information 2014-12-09
security-alert hp com
Subrion CMS Security Advisory - XSS Vulnerability - CVE-2014-9120 2014-12-09
Onur Yilmaz (onur netsparker com)
Malware
Phishing
Vulnerebility
D-Link DCS-2103 CVE-2014-9238 Directory Traversal Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71484
Mozilla Firefox/Thunderbird CVE-2014-1592 Use After Free Memory Corruption Vulnerability
2014-12-10
http://www.securityfocus.com/bid/71398
Mozilla Firefox/Thunderbird CVE-2014-1587 Multiple Memory Corruption Vulnerabilities
2014-12-10
http://www.securityfocus.com/bid/71391
Mozilla Firefox/Thunderbird CVE-2014-1593 Buffer Overflow Vulnerability
2014-12-10
http://www.securityfocus.com/bid/71395
Mozilla Firefox/Thunderbird CVE-2014-1594 Security Vulnerability
2014-12-10
http://www.securityfocus.com/bid/71396
Mozilla Firefox/Thunderbird CVE-2014-1590 Denial of Service Vulnerability
2014-12-10
http://www.securityfocus.com/bid/71397
Linux Kernel '/drivers/media/media-device.c' Local Information Disclosure Vulnerability
2014-12-10
http://www.securityfocus.com/bid/68048
Linux Kernel Multiple Local Security Bypass Vulnerabilities
2014-12-10
http://www.securityfocus.com/bid/68162
Linux Kernel CVE-2014-5045 Local Privilege Escalation Vulnerability
2014-12-10
http://www.securityfocus.com/bid/68862
Linux Kernel CVE-2014-3182 'hid-logitech-dj.c' Buffer Overflow Vulnerability
2014-12-10
http://www.securityfocus.com/bid/69770
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2014-12-10
http://www.securityfocus.com/bid/70574
OpenVPN CVE-2014-8104 Denial of Service Vulnerability
2014-12-10
http://www.securityfocus.com/bid/71402
PowerDNS Recursor CVE-2014-8601 Remote Denial of Service Vulnerability
2014-12-10
http://www.securityfocus.com/bid/71545
RPM CVE-2013-6435 Remote Code Execution Vulnerability
2014-12-10
http://www.securityfocus.com/bid/71558
Linux Kernel CVE-2013-2929 Local Privilege Escalation Vulnerability
2014-12-10
http://www.securityfocus.com/bid/64111
Linux Kernel 'rd_build_device_space()' Function Information Disclosure Vulnerability
2014-12-10
http://www.securityfocus.com/bid/68159
Linux Kernel PicoLCD HID Device Driver Buffer Overflow Vulnerability
2014-12-10
http://www.securityfocus.com/bid/69763
Linux Kernel CVE-2014-3184 Multiple Local Denial Of Service Vulnerabilities
2014-12-10
http://www.securityfocus.com/bid/69768
Linux Kernel Magic Mouse HID Device Driver CVE-2014-3181 Stack-Based Buffer Overflow Vulnerability
2014-12-10
http://www.securityfocus.com/bid/69779
Linux Kernel CVE-2014-3185 'whiteheat.c' Buffer Overflow Vulnerability
2014-12-10
http://www.securityfocus.com/bid/69781
Linux Kernel 'fs/udf/inode.c' Local Denial of Service Vulnerability
2014-12-10
http://www.securityfocus.com/bid/69799
Oracle Java SE CVE-2014-6558 Remote Security Vulnerability
2014-12-10
http://www.securityfocus.com/bid/70544
Oracle Java SE CVE-2014-6515 Remote Security Vulnerability
2014-12-10
http://www.securityfocus.com/bid/70565
OpenSSL CVE-2014-3513 Information Disclosure Vulnerability
2014-12-10
http://www.securityfocus.com/bid/70584
GNU Wget CVE-2014-4877 Symlink Vulnerability
2014-12-10
http://www.securityfocus.com/bid/70751
Linux Kernel CVE-2014-3687 Denial of Service Vulnerability
2014-12-10
http://www.securityfocus.com/bid/70766
Linux Kernel CVE-2014-3673 Denial of Service Vulnerability
2014-12-10
http://www.securityfocus.com/bid/70883
Moodle LTI Module CVE-2014-7832 Access Bypass Vulnerability
2014-12-10
http://www.securityfocus.com/bid/71121
Moodle CVE-2014-7845 Insecure Password Generation Weakness
2014-12-10
http://www.securityfocus.com/bid/71128
Graphviz 'agerr()' Function Remote Format String Vulnerability
2014-12-10
http://www.securityfocus.com/bid/71283
Exploit
9.12.2014
Bugtraq
[CVE-2014-7807] Apache CloudStack unauthenticated LDAP binds 2014-12-08
jlk apache org
[ANN] Apache Struts 2.3.20 GA release available with security fix 2014-12-08
Lukasz Lenart (lukaszlenart apache org)
CFP: InfoSec SouthWest 2015 (ISSW) 2014-12-08
Tod Beardsley (todb packetfu com)
Malware
Phishing
Vulnerebility
D-Link DCS-2103 CVE-2014-9238 Directory Traversal Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71484
libvirt CVE-2014-7823 Information Disclosure Vulnerability
2014-12-09
http://www.securityfocus.com/bid/71095
libvirt CVE-2013-4399 Remote Denial Of Service Vulnerability
2014-12-09
http://www.securityfocus.com/bid/62972
libvirt Event Registration API Remote Security Bypass Vulnerability
2014-12-09
http://www.securityfocus.com/bid/65004
libvirt Unsafe Paths Usage Symlink Multiple Security Vulnerabilities
2014-12-09
http://www.securityfocus.com/bid/65743
libvirt XML Entity Expansion CVE-2014-0179 Information Disclosure Vulnerability
2014-12-09
http://www.securityfocus.com/bid/67289
libvirtd 'qemuDomainGetBlockIoTune()' Function Out-of-Bounds Read Vulnerability
2014-12-09
http://www.securityfocus.com/bid/70186
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2014-12-09
http://www.securityfocus.com/bid/70574
Linux Kernel KVM CVE-2014-8369 Denial of Service Vulnerability
2014-12-09
http://www.securityfocus.com/bid/70749
Linux Kernel CVE-2014-7841 SCTP NULL Pointer Dereference Denial of Service Vulnerability
2014-12-09
http://www.securityfocus.com/bid/71081
Linux Kernel 'ttusbdecfe.c' Buffer Overflow Vulnerability
2014-12-09
http://www.securityfocus.com/bid/71097
Linux Kernel 'espfix64' Local Denial of Service Vulnerability
2014-12-09
http://www.securityfocus.com/bid/71250
Graphviz 'agerr()' Function Remote Format String Vulnerability
2014-12-09
http://www.securityfocus.com/bid/71283
JasPer 'jpc_dec.c' Multiple Remote Heap Buffer Overflow Vulnerabilities
2014-12-09
http://www.securityfocus.com/bid/71476
nfs-utils 'rpc.gssd' DNS Spoofing Vulnerability
2014-12-09
http://www.securityfocus.com/bid/58854
libvirt 'virBitmapParse()' Function Denial of Service Vulnerability
2014-12-09
http://www.securityfocus.com/bid/62070
libvirt 'remoteDispatchDomainMemoryStats()' Denial of Service Vulnerability
2014-12-09
http://www.securityfocus.com/bid/62510
libvirt 'virFileNBDDeviceAssociate()' Remote Denial of Service Vulnerability
2014-12-09
http://www.securityfocus.com/bid/62576
libvirt CVE-2013-4292 Multiple Remote Denial of Service Vulnerabilities
2014-12-09
http://www.securityfocus.com/bid/62791
libvirt 'virt-login-shell' Local Privilege Escalation Vulnerability
2014-12-09
http://www.securityfocus.com/bid/63324
libvirt 'virConnectDomainXMLToNative()' API Remote Security Bypass Vulnerability
2014-12-09
http://www.securityfocus.com/bid/63325
libvirt 'virDomainBlockStats()' Denial of Service Vulnerability
2014-12-09
http://www.securityfocus.com/bid/64723
Dovecot Denial of Service Vulnerability
2014-12-09
http://www.securityfocus.com/bid/67306
QEMU CVE-2014-3471 Denial of Service Vulnerability
2014-12-09
http://www.securityfocus.com/bid/68145
libvirt XML External Entity CVE-2014-5177 Multiple Information Disclosure Vulnerabilities
2014-12-09
http://www.securityfocus.com/bid/69033
QEMU 'vmstate_xhci_event' Field Memory Corruption Vulnerability
2014-12-09
http://www.securityfocus.com/bid/69247
QEMU 'pcihp.c' Out of Bounds Memory Corruption Vulnerability
2014-12-09
http://www.securityfocus.com/bid/69356
QEMU 'vga.c' Information Disclosure Vulnerability
2014-12-09
http://www.securityfocus.com/bid/69654
QEMU CVE-2014-3640 Local Denial of Service Vulnerability
2014-12-09
http://www.securityfocus.com/bid/70237
QEMU CVE-2014-7815 Local Denial of Service Vulnerability
2014-12-09
http://www.securityfocus.com/bid/70998
Exploit
8.12.2014
Bugtraq
[SECURITY] [DSA 3091-1] getmail4 security update 2014-12-07
Giuseppe Iuculano (iuculano debian org)
[SECURITY] [DSA 3092-1] icedove security update 2014-12-07
Moritz Muehlenhoff (jmm debian org)
Malware
Phishing
Vulnerebility
D-Link DCS-2103 CVE-2014-9238 Directory Traversal Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71484
ClamAV 'libclamav/pe.c' Heap Based Buffer Overflow Vulnerability
2014-12-08
http://www.securityfocus.com/bid/71242
ClamAV CVE-2013-6497 Local Denial of Service Vulnerability
2014-12-08
http://www.securityfocus.com/bid/71178
Oracle Java SE CVE-2014-6456 Remote Security Vulnerability
2014-12-08
http://www.securityfocus.com/bid/70522
MantisBT 'copy_field.php' Cross Site Scripting Vulnerability
2014-12-08
http://www.securityfocus.com/bid/71371
Getmail CVE-2014-7273 SSL Certificate Security Bypass Vulnerability
2014-12-08
http://www.securityfocus.com/bid/70280
Getmail CVE-2014-7275 SSL Certificate Security Bypass Vulnerability
2014-12-08
http://www.securityfocus.com/bid/70282
Getmail CVE-2014-7274 SSL Certificate Security Bypass Vulnerability
2014-12-08
http://www.securityfocus.com/bid/70281
Mozilla Firefox/Thunderbird CVE-2014-1592 Use After Free Memory Corruption Vulnerability
2014-12-08
http://www.securityfocus.com/bid/71398
Mozilla Firefox/Thunderbird CVE-2014-1590 Denial of Service Vulnerability
2014-12-08
http://www.securityfocus.com/bid/71397
Mozilla Firefox/Thunderbird CVE-2014-1594 Security Vulnerability
2014-12-08
http://www.securityfocus.com/bid/71396
OpenSSL CVE-2014-3513 Information Disclosure Vulnerability
2014-12-08
http://www.securityfocus.com/bid/70584
cURL/libcURL CVE-2014-3613 Remote Security Bypass Vulnerability
2014-12-08
http://www.securityfocus.com/bid/69748
WordPress SP Project & Document Manager Plugin 'ajax.php' Multiple SQL Injection Vulnerabilities
2014-12-08
http://www.securityfocus.com/bid/71267
Multiple KDE Products CVE-2014-8600 Multiple Security Bypass Vulnerabilities
2014-12-08
http://www.securityfocus.com/bid/71190
Teeworlds Memory Corruption and Denial of Service Vulnerabilities
2014-12-08
http://www.securityfocus.com/bid/71301
Docker CVE-2014-6407 Local Privilege Escalation Vulnerability
2014-12-08
http://www.securityfocus.com/bid/71315
blkid 'blkid.c' Local Command Injection Vulnerability
2014-12-08
http://www.securityfocus.com/bid/71327
Mozilla Firefox/Thunderbird CVE-2014-1595 Multiple Local Information Disclosure Vulnerabilities
2014-12-08
http://www.securityfocus.com/bid/71394
Mozilla Firefox/Thunderbird CVE-2014-1593 Buffer Overflow Vulnerability
2014-12-08
http://www.securityfocus.com/bid/71395
Mozilla Firefox/Thunderbird CVE-2014-1588 Multiple Memory Corruption Vulnerabilities
2014-12-08
http://www.securityfocus.com/bid/71392
Mozilla Firefox/Thunderbird CVE-2014-1587 Multiple Memory Corruption Vulnerabilities
2014-12-08
http://www.securityfocus.com/bid/71391
Linux Kernel 'control.c' File Use After Free Memory Corruption Vulnerability
2014-12-08
http://www.securityfocus.com/bid/68164
Mozilla Firefox CVE-2014-1591 Information Disclosure Vulnerability
2014-12-08
http://www.securityfocus.com/bid/71399
Apache HTTP Server 'mod_status' CVE-2014-0226 Remote Code Execution Vulnerability
2014-12-08
http://www.securityfocus.com/bid/68678
ClickDesk Multiple HTML Injection Vulnerabilities
2014-12-08
http://www.securityfocus.com/bid/65971
tcpdump CVE-2014-8769 Out-of-bounds Memory Access Vulnerability
2014-12-08
http://www.securityfocus.com/bid/71153
tcpdump 'olsr_print()' Function Denial of Service Vulnerability
2014-12-08
http://www.securityfocus.com/bid/71150
Linux Kernel CVE-2014-0181 Local Security Vulnerability
2014-12-08
http://www.securityfocus.com/bid/67034
MantisBT 'admin/upgrade_unattended.php' Security Bypass Vulnerability
2014-12-08
http://www.securityfocus.com/bid/71359
Exploit
6.12.2014
Bugtraq
NASA Orion Mars Program - Bypass, Persistent Issue & Embed Code Execution Vulnerability (Boarding Pass) 2014-12-05
Vulnerability Lab (research vulnerability-lab com)
NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities 2014-12-05
VMware Security Response Center (security vmware com)
Offset2lib: bypassing full ASLR on 64bit Linux 2014-12-04
Hector Marco (hecmargi upv es)
[security bulletin] HPSBGN03205 rev.1 - HP Insight Remote Support Clients running SSLv3, Remote Disclosure of Information 2014-12-05
security-alert hp com
Malware
Phishing
Vulnerebility
D-Link DCS-2103 CVE-2014-9238 Directory Traversal Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71484
cURL/libcURL CVE-2014-3613 Remote Security Bypass Vulnerability
2014-12-06
http://www.securityfocus.com/bid/69748
WordPress SP Project & Document Manager Plugin 'ajax.php' Multiple SQL Injection Vulnerabilities
2014-12-06
http://www.securityfocus.com/bid/71267
Multiple KDE Products CVE-2014-8600 Multiple Security Bypass Vulnerabilities
2014-12-06
http://www.securityfocus.com/bid/71190
Teeworlds Memory Corruption and Denial of Service Vulnerabilities
2014-12-06
http://www.securityfocus.com/bid/71301
Docker CVE-2014-6407 Local Privilege Escalation Vulnerability
2014-12-06
http://www.securityfocus.com/bid/71315
blkid 'blkid.c' Local Command Injection Vulnerability
2014-12-06
http://www.securityfocus.com/bid/71327
Mozilla Firefox/Thunderbird CVE-2014-1595 Multiple Local Information Disclosure Vulnerabilities
2014-12-06
http://www.securityfocus.com/bid/71394
Mozilla Firefox/Thunderbird CVE-2014-1593 Buffer Overflow Vulnerability
2014-12-06
http://www.securityfocus.com/bid/71395
Mozilla Firefox/Thunderbird CVE-2014-1588 Multiple Memory Corruption Vulnerabilities
2014-12-06
http://www.securityfocus.com/bid/71392
Mozilla Firefox/Thunderbird CVE-2014-1587 Multiple Memory Corruption Vulnerabilities
2014-12-06
http://www.securityfocus.com/bid/71391
Linux Kernel 'control.c' File Use After Free Memory Corruption Vulnerability
2014-12-06
http://www.securityfocus.com/bid/68164
Oracle Java SE CVE-2014-6456 Remote Security Vulnerability
2014-12-06
http://www.securityfocus.com/bid/70522
Mozilla Firefox CVE-2014-1591 Information Disclosure Vulnerability
2014-12-06
http://www.securityfocus.com/bid/71399
Apache HTTP Server 'mod_status' CVE-2014-0226 Remote Code Execution Vulnerability
2014-12-06
http://www.securityfocus.com/bid/68678
Mozilla Firefox/Thunderbird CVE-2014-1590 Denial of Service Vulnerability
2014-12-06
http://www.securityfocus.com/bid/71397
ClickDesk Multiple HTML Injection Vulnerabilities
2014-12-06
http://www.securityfocus.com/bid/65971
tcpdump CVE-2014-8769 Out-of-bounds Memory Access Vulnerability
2014-12-06
http://www.securityfocus.com/bid/71153
tcpdump 'olsr_print()' Function Denial of Service Vulnerability
2014-12-06
http://www.securityfocus.com/bid/71150
Linux Kernel CVE-2014-0181 Local Security Vulnerability
2014-12-06
http://www.securityfocus.com/bid/67034
MantisBT 'admin/upgrade_unattended.php' Security Bypass Vulnerability
2014-12-06
http://www.securityfocus.com/bid/71359
MantisBT 'core/current_user_api.php' PHP Object Injection Vulnerability
2014-12-06
http://www.securityfocus.com/bid/71361
ZTE 831CII Multiple Security Vulnerabilities
2014-12-06
http://www.securityfocus.com/bid/70984
Portable OpenSSH 'gss-serv-krb5.c' Security Bypass Vulnerability
2014-12-06
http://www.securityfocus.com/bid/71420
IP.Board 'ipsconnect.php' SQL Injection Vulnerability
2014-12-06
http://www.securityfocus.com/bid/70994
Spring Framework Unspecified Directory Traversal Vulnerability
2014-12-06
http://www.securityfocus.com/bid/68042
Oracle Java SE CVE-2014-6457 Remote Security Vulnerability
2014-12-06
http://www.securityfocus.com/bid/70538
Oracle Java SE CVE-2014-6558 Remote Security Vulnerability
2014-12-06
http://www.securityfocus.com/bid/70544
Oracle Java SE CVE-2014-6531 Remote Security Vulnerability
2014-12-06
http://www.securityfocus.com/bid/70572
Oracle Java SE CVE-2014-6527 Remote Security Vulnerability
2014-12-06
http://www.securityfocus.com/bid/70560
Exploit
Windows Kerberos - Elevation of Privilege (MS14-068)
Offset2lib: Bypassing Full ASLR On 64bit Linux
PBBoard CMS 3.0.1 - SQL Injection
5.12.2014
Bugtraq
NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities 2014-12-05
VMware Security Response Center (security vmware com)
Offset2lib: bypassing full ASLR on 64bit Linux 2014-12-04
Hector Marco (hecmargi upv es)
[security bulletin] HPSBGN03205 rev.1 - HP Insight Remote Support Clients running SSLv3, Remote Disclosure of Information 2014-12-05
security-alert hp com
[security bulletin] HPSBUX03218 SSRT101770 rev.1 - HP-UX running Java7, Remote Unauthorized Access, Disclosure of Information, and Other Vulnerabilities 2014-12-05
security-alert hp com
[SECURITY] [DSA 3090-1] iceweasel security update 2014-12-04
Moritz Muehlenhoff (jmm debian org)
[SECURITY] [DSA 3089-1] jasper security update 2014-12-04
Salvatore Bonaccorso (carnil debian org)
[oCERT-2014-009] JasPer input sanitization errors 2014-12-04
Andrea Barisani (lcars ocert org)
[SECURITY] [DSA 3088-1] qemu-kvm security update 2014-12-04
Salvatore Bonaccorso (carnil debian org)
[SECURITY] [DSA 3087-1] qemu security update 2014-12-04
Salvatore Bonaccorso (carnil debian org)
Re: Slider Revolution/Showbiz Pro shell upload exploit 2014-12-04
assistenz crm-br com
CVE-2014-9215 - SQL Injection in PBBoard CMS 2014-12-04
tien d tran itas vn
Malware
Phishing
Vulnerebility
D-Link DCS-2103 CVE-2014-9238 Directory Traversal Vulnerability
2014-12-16
http://www.securityfocus.com/bid/71484
OpenStack Neutron 'dns_nameservers' Parameter Denial of Service Vulnerability
2014-12-05
http://www.securityfocus.com/bid/71278
Ruby CVE-2014-8080 XML External Entity Denial of Service Vulnerability
2014-12-05
http://www.securityfocus.com/bid/70935
Ruby 'pack.c' Buffer Overflow Vulnerability
2014-12-05
http://www.securityfocus.com/bid/68474
Ruby CVE-2014-8090 Incomplete Fix XML External Entity Denial of Service Vulnerability
2014-12-05
http://www.securityfocus.com/bid/71230
Perl CVE-2014-4330 Stack Overflow Denial of Service Vulnerability
2014-12-05
http://www.securityfocus.com/bid/70142
Linux Kernel 'xfs_da_btree.c' Local Denial of Service Vulnerability
2014-12-05
http://www.securityfocus.com/bid/70261
Linux Kernel 'trace_syscalls.c' Multiple Local Denial of Service Vulnerabilities
2014-12-05
http://www.securityfocus.com/bid/70971
Linux Kernel 'trace_syscalls.c' Multiple Local Denial of Service Vulnerabilities
2014-12-05
http://www.securityfocus.com/bid/70972
GnuTLS CVE-2014-8564 Multiple Heap Corruption Denial of Service Vulnerabilities
2014-12-05
http://www.securityfocus.com/bid/71003
QEMU 'vga.c' Information Disclosure Vulnerability
2014-12-05
http://www.securityfocus.com/bid/69654
libvirt CVE-2014-7823 Information Disclosure Vulnerability
2014-12-05
http://www.securityfocus.com/bid/71095
libvirt 'domain_conf.c' Denial of Service Vulnerability
2014-12-05
http://www.securityfocus.com/bid/70210
OpenStack Cinder/Nova/Trove CVE-2014-7230 Local Password Disclosure Vulnerability
2014-12-05
http://www.securityfocus.com/bid/70185
OpenStack Cinder/Nova/Trove CVE-2014-7231 Local Password Disclosure Vulnerability
2014-12-05
http://www.securityfocus.com/bid/70184
wpa_supplicant and hostapd CVE-2014-3686 Remote Command Execution Vulnerability
2014-12-05
http://www.securityfocus.com/bid/70396
GNU Wget CVE-2014-4877 Symlink Vulnerability
2014-12-05
http://www.securityfocus.com/bid/70751
Linux Kernel KVM CVE-2014-3645 Denial of Service Vulnerability
2014-12-05
http://www.securityfocus.com/bid/70746
Linux Kernel Multiple Local Security Bypass Vulnerabilities
2014-12-05
http://www.securityfocus.com/bid/68162
Linux Kernel CVE-2014-3184 Multiple Local Denial Of Service Vulnerabilities
2014-12-05
http://www.securityfocus.com/bid/69768
Linux Kernel 'shmem.c' CVE-2014-4171 Local Denial of Service Vulnerability
2014-12-05
http://www.securityfocus.com/bid/68157
Linux Kernel KVM 'virt/kvm/iommu.c' Denial of Service Vulnerability
2014-12-05
http://www.securityfocus.com/bid/69489
Linux Kernel 'netdevice.h' NULL Pointer Dereference Denial of Service Vulnerability
2014-12-05
http://www.securityfocus.com/bid/69721
Linux Kernel CVE-2014-4014 Local Privilege Escalation Vulnerability
2014-12-05
http://www.securityfocus.com/bid/67988
Linux Kernel '/drivers/media/media-device.c' Local Information Disclosure Vulnerability
2014-12-05
http://www.securityfocus.com/bid/68048
Linux Kernel CVE-2014-3687 Denial of Service Vulnerability
2014-12-05
http://www.securityfocus.com/bid/70766
Linux Kernel CVE-2014-3673 Denial of Service Vulnerability
2014-12-05
http://www.securityfocus.com/bid/70883
Linux Kernel KVM CVE-2014-3646 Local Denial of Service Vulnerability
2014-12-05
http://www.securityfocus.com/bid/70745
Linux Kernel Magic Mouse HID Device Driver CVE-2014-3181 Stack-Based Buffer Overflow Vulnerability
2014-12-05
http://www.securityfocus.com/bid/69779
Linux Kernel KVM CVE-2014-3611 Denial of Service Vulnerability
2014-12-05
http://www.securityfocus.com/bid/70743
Exploit
Offset2lib: Bypassing Full ASLR On 64bit Linux
PBBoard CMS 3.0.1 - SQL Injection
Technicolor DT5130 V2.05.C29GV - Multiple Vulnerabilities
Technicolor DT5130 V2.05.C29GV - Multiple Vulnerabilities
4.12.2014
Bugtraq
CVE-2014-9215 - SQL Injection in PBBoard CMS 2014-12-04
tien d tran itas vn
APPLE-SA-2014-12-2-1 Safari 8.0.1, Safari 7.1.1, and Safari 6.2.1 2014-12-03
Apple Product Security (product-security-noreply lists apple com)
[SECURITY] [DSA 3086-1] tcpdump security update 2014-12-03
Salvatore Bonaccorso (carnil debian org)
Wireless N ADSL 2/2+ Modem Router - DT5130 - Xss / URL Redirect / Command Injection 2014-12-03
Ewerson Guimarães (Crash) - Dclabs (crash dclabs com br)
[slackware-security] mozilla-thunderbird (SSA:2014-337-01) 2014-12-03
Slackware Security Team (security slackware com)
[SECURITY] [DSA 3085-1] wordpress security update 2014-12-03
Yves-Alexis Perez (corsac debian org)
Malware
Phishing
Vulnerebility
WebKit CVE-2014-4452 Unspecified Memory Corruption Vulnerability
2014-12-04
http://www.securityfocus.com/bid/71137
WebKit CVE-2014-4459 Unspecified Memory Corruption Vulnerability
2014-12-04
http://www.securityfocus.com/bid/71144
Google Chrome 35.0.1916.114 Multiple Security Vulnerabilities
2014-12-04
http://www.securityfocus.com/bid/67517
wpa_supplicant and hostapd CVE-2014-3686 Remote Command Execution Vulnerability
2014-12-04
http://www.securityfocus.com/bid/70396
tcpdump 'olsr_print()' Function Denial of Service Vulnerability
2014-12-04
http://www.securityfocus.com/bid/71150
tcpdump CVE-2014-8769 Out-of-bounds Memory Access Vulnerability
2014-12-04
http://www.securityfocus.com/bid/71153
Multiple KDE Products CVE-2014-8600 Multiple Security Bypass Vulnerabilities
2014-12-04
http://www.securityfocus.com/bid/71190
GNU glibc CVE-2014-7817 Arbitrary Command Execution Vulnerability
2014-12-04
http://www.securityfocus.com/bid/71216
GNU glibc 'iconv()' Denial of Service Vulnerability
2014-12-04
http://www.securityfocus.com/bid/69472
GNU glibc 'iconv()' Function Denial of Service Vulnerability
2014-12-04
http://www.securityfocus.com/bid/69470
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2014-12-04
http://www.securityfocus.com/bid/70574
Xen CVE-2014-8866 Denial of Service Vulnerability
2014-12-04
http://www.securityfocus.com/bid/71332
Xen CVE-2014-8595 Local Privilege Escalation Vulnerability
2014-12-04
http://www.securityfocus.com/bid/71151
Xen 'PHYSDEVOP_{prepare,release}_msix' Operations Local Privilege Escalation Vulnerability
2014-12-04
http://www.securityfocus.com/bid/65125
Xen CVE-2014-8867 Denial of Service Vulnerability
2014-12-04
http://www.securityfocus.com/bid/71331
WordPress WooCommerce 'range' Parameter Cross Site Scripting Vulnerability
2014-12-04
http://www.securityfocus.com/bid/69868
Multiple ManageEngine Products Multiple Arbitrary File Download Vulnerabilities
2014-12-04
http://www.securityfocus.com/bid/71404
tinc CVE-2013-1428 Stack Buffer Overflow Vulnerability
2014-12-04
http://www.securityfocus.com/bid/59369
WordPress SupportEzzy Ticket System Plugin 'URL' Parameter HTML Injection Vulnerability
2014-12-04
http://www.securityfocus.com/bid/71088
WordPress Google Analytics by Yoast Plugin CVE-2014-9174 Cross Site Scripting Vulnerability
2014-12-04
http://www.securityfocus.com/bid/71330
WordPress wpDataTables Plugin 'wp-admin/admin-ajax.php' SQL Injection Vulnerability
2014-12-04
http://www.securityfocus.com/bid/71271
WordPress Google Doc Embedder Plugin 'google-document-embedder\view.php' SQL Injection Vulnerability
2014-12-04
http://www.securityfocus.com/bid/71304
Mozilla Firefox/Thunderbird CVE-2014-1593 Buffer Overflow Vulnerability
2014-12-04
http://www.securityfocus.com/bid/71395
Mozilla Firefox/Thunderbird CVE-2014-1594 Security Vulnerability
2014-12-04
http://www.securityfocus.com/bid/71396
Mozilla Firefox/Thunderbird CVE-2014-1592 Use After Free Memory Corruption Vulnerability
2014-12-04
http://www.securityfocus.com/bid/71398
Plex Media Server Directory Traversal and Authentication-Bypass Vulnerabilities
2014-12-04
http://www.securityfocus.com/bid/65881
Anchor CMS 'comment.php' Mail Header Injection Vulnerability
2014-12-04
http://www.securityfocus.com/bid/71020
Mozilla Firefox/Thunderbird CVE-2014-1555 Use After Free Memory Corruption Vulnerability
2014-12-04
http://www.securityfocus.com/bid/68814
Apache 'mod_wsgi' Module Privilege Escalation Vulnerability
2014-12-04
http://www.securityfocus.com/bid/68111
Oracle Java SE CVE-2014-6512 IP Address Spoofing Vulnerability
2014-12-04
http://www.securityfocus.com/bid/70567
Exploit
Technicolor DT5130 V2.05.C29GV - Multiple Vulnerabilities
Advertise With Pleasure! (AWP) 6.6 - SQL Injection Vulnerability
3.12.2014
Bugtraq
[SECURITY] [DSA 3085-1] wordpress security update 2014-12-03
Yves-Alexis Perez (corsac debian org)
F5 BIGIP - (OLD!) Persistent XSS in ASM Module 2014-12-02
jplopezy gmail com
ESA-2014-160: RSA® Adaptive Authentication (On-Premise) Authentication Bypass Vulnerability 2014-12-02
Security Alert (Security_Alert emc com)
ESA-2014-156: EMC Documentum Content Server Insecure Direct Object Reference Vulnerability 2014-12-02
Security Alert (Security_Alert emc com)
CVE-2014-9129: XSS and CSRF in CM Download Manager plugin for WordPress 2014-12-02
Henri Salo (henri nerv fi)
[RT-SA-2014-012] Unauthenticated Remote Code Execution in IBM Endpoint Manager Mobile Device Management Components 2014-12-02
RedTeam Pentesting GmbH (release redteam-pentesting de)
[SECURITY] [DSA 3084-1] openvpn security update 2014-12-01
Florian Weimer (fw deneb enyo de)
[RT-SA-2014-011] EntryPass N5200 Credentials Disclosure 2014-12-01
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2014-007] Remote Code Execution in TYPO3 Extension ke_dompdf 2014-12-01
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2014-009] Information Disclosure in TYPO3 Extension ke_questionnaire 2014-12-01
RedTeam Pentesting GmbH (release redteam-pentesting de)
CVE-2014-3809: Reflected XSS in Alcatel Lucent 1830 PSS-32/16/4 2014-12-01
Stephan Rickauer swisscom com
Malware
Phishing
Vulnerebility
Multiple Yokogawa Products CVE-2014-5208 Remote Security Weakness
2014-12-03
http://www.securityfocus.com/bid/69886
Mozilla Firefox/Thunderbird CVE-2014-1593 Buffer Overflow Vulnerability
2014-12-03
http://www.securityfocus.com/bid/71395
Mozilla Firefox/Thunderbird CVE-2014-1594 Security Vulnerability
2014-12-03
http://www.securityfocus.com/bid/71396
Mozilla Firefox/Thunderbird CVE-2014-1592 Use After Free Memory Corruption Vulnerability
2014-12-03
http://www.securityfocus.com/bid/71398
Mozilla Firefox/Thunderbird CVE-2014-1590 Denial of Service Vulnerability
2014-12-03
http://www.securityfocus.com/bid/71397
Mozilla Firefox/Thunderbird CVE-2014-1587 Multiple Memory Corruption Vulnerabilities
2014-12-03
http://www.securityfocus.com/bid/71391
Mozilla Firefox/Thunderbird CVE-2014-1588 Multiple Memory Corruption Vulnerabilities
2014-12-03
http://www.securityfocus.com/bid/71392
Mozilla Firefox CVE-2014-1589 XBL Bindings Security Bypass Vulnerability
2014-12-03
http://www.securityfocus.com/bid/71393
Apple Mac OS X CVE-2014-1314 Remote Arbitrary Code Execution Vulnerability
2014-12-03
http://www.securityfocus.com/bid/67026
Drupal Avatar Uploader Module Information Disclosure Vulnerability
2014-12-03
http://www.securityfocus.com/bid/69577
Drupal Notify Module Multiple Access Bypass Vulnerabilities
2014-12-03
http://www.securityfocus.com/bid/69228
blkid 'blkid.c' Local Command Injection Vulnerability
2014-12-03
http://www.securityfocus.com/bid/71327
Apache Cordova For Android CVE-2014-3500 Security Bypass Vulnerability
2014-12-03
http://www.securityfocus.com/bid/69038
Apache Cordova For Android CVE-2014-3501 Security Bypass Vulnerability
2014-12-03
http://www.securityfocus.com/bid/69041
Apache Cordova For Android CVE-2014-3502 Information Disclosure Vulnerability
2014-12-03
http://www.securityfocus.com/bid/69046
Antiword 'wordole.c' Buffer Overflow Vulnerability
2014-12-03
http://www.securityfocus.com/bid/71386
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2014-12-03
http://www.securityfocus.com/bid/70574
OpenVPN CVE-2014-8104 Denial of Service Vulnerability
2014-12-03
http://www.securityfocus.com/bid/71402
Kingsoft Office CVE-2014-2271 Remote Code Execution Vulnerability
2014-12-03
http://www.securityfocus.com/bid/71381
Huawei P2 CVE-2014-2273 Local Privilege Escalation Vulnerability
2014-12-03
http://www.securityfocus.com/bid/71374
Huawei Mobile Partner 'wintab32.dll' DLL Loading Arbitrary Code Execution Vulnerability
2014-12-03
http://www.securityfocus.com/bid/70671
Huawei Mobile Partner Local Privilege Escalation Vulnerability
2014-12-03
http://www.securityfocus.com/bid/70672
check_diskio CVE-2014-8994 Symlink Vulnerability
2014-12-03
http://www.securityfocus.com/bid/71208
Huawei Honor Cube WS860S Arbitrary File Upload Vulnerability
2014-12-03
http://www.securityfocus.com/bid/69806
eyeD3 Insecure Temporary File Creation Vulnerability
2014-12-03
http://www.securityfocus.com/bid/65480
Django CVE-2014-0482 Authentication Bypass Vulnerability
2014-12-03
http://www.securityfocus.com/bid/69430
Django 'contrib.admin' Information Disclosure Vulnerability
2014-12-03
http://www.securityfocus.com/bid/69429
Django CVE-2014-0481 Denial of Service Vulnerability
2014-12-03
http://www.securityfocus.com/bid/69423
Django 'return()' Function URI Redirection Vulnerability
2014-12-03
http://www.securityfocus.com/bid/69425
cURL/libcURL CVE-2014-3613 Remote Security Bypass Vulnerability
2014-12-03
http://www.securityfocus.com/bid/69748
Exploit
Cart66 Lite WordPress Ecommerce 1.5.1.17 - Blind SQL Injection
Google Document Embedder 2.5.16 - mysql_real_escpae_string bypass SQL Injection
Tincd Post-Authentication Remote TCP Stack Buffer Overflow
Mac OS X IOKit Keyboard Driver Root Privilege Escalation
Prolink PRN2001 - Multiple Vulnerabilities
IPUX Cube Type CS303C IP Camera - (UltraMJCamX.ocx) ActiveX Stack Buffer Overflow
IPUX CL5452/CL5132 IP Camera - (UltraSVCamX.ocx) ActiveX Stack Buffer Overflow
IPUX CS7522/CS2330/CS2030 IP Camera - (UltraHVCamX.ocx) ActiveX Stack Buffer Overflow
Wordpress Nextend Facebook Connect Plugin 1.4.59 - XSS Vulnerability
EntryPass N5200 - Credentials Exposure
TYPO3 ke DomPDF Extension - Remote Code Execution
2.12.2014
Bugtraq
[SECURITY] [DSA 3084-1] openvpn security update 2014-12-01
Florian Weimer (fw deneb enyo de)
[RT-SA-2014-011] EntryPass N5200 Credentials Disclosure 2014-12-01
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2014-007] Remote Code Execution in TYPO3 Extension ke_dompdf 2014-12-01
RedTeam Pentesting GmbH (release redteam-pentesting de)
[RT-SA-2014-009] Information Disclosure in TYPO3 Extension ke_questionnaire 2014-12-01
RedTeam Pentesting GmbH (release redteam-pentesting de)
CVE-2014-3809: Reflected XSS in Alcatel Lucent 1830 PSS-32/16/4 2014-12-01
Stephan Rickauer swisscom com
[SECURITY] [DSA 3081-1] libvncserver security update 2014-11-29
Luciano Bello (luciano debian org)
[The ManageOwnage Series, part IX]: 0-day arbitrary file download in NetFlow Analyzer and IT360 2014-11-30
Pedro Ribeiro (pedrib gmail com)
Malware
Phishing
Yahoo.com | 29th November 2014 |
Vulnerebility
Apple TV and iOS CVE-2014-4404 Heap Based Buffer Overflow Vulnerability
2014-12-02
http://www.securityfocus.com/bid/69947
TYPO3 Questionnaire Extension CVE-2014-8874 Information Disclosure Vulnerability
2014-12-02
http://www.securityfocus.com/bid/71390
Graphviz 'agerr()' Function Remote Format String Vulnerability
2014-12-02
http://www.securityfocus.com/bid/71283
PPP 'options.c' CVE-2014-3158 Remote Integer Overflow Vulnerability
2014-12-02
http://www.securityfocus.com/bid/69399
Ruby CVE-2014-8090 Incomplete Fix XML External Entity Denial of Service Vulnerability
2014-12-02
http://www.securityfocus.com/bid/71230
Ruby CVE-2014-8080 XML External Entity Denial of Service Vulnerability
2014-12-02
http://www.securityfocus.com/bid/70935
Ruby 'pack.c' Buffer Overflow Vulnerability
2014-12-02
http://www.securityfocus.com/bid/68474
Oracle Java SE CVE-2014-6519 Remote Security Vulnerability
2014-12-02
http://www.securityfocus.com/bid/70570
Oracle Java SE CVE-2014-6531 Remote Security Vulnerability
2014-12-02
http://www.securityfocus.com/bid/70572
Huawei P7-L10 'PackageInstaller' Module Remote Security Bypass Vulnerability
2014-12-02
http://www.securityfocus.com/bid/71196
WordPress Password Check Denial of Service Vulnerability
2014-12-02
http://www.securityfocus.com/bid/71233
Slider Revolution Responsive/Showbiz Pro Responsive Teaser Multiple Security Bypass Vulnerabilities
2014-12-02
http://www.securityfocus.com/bid/71306
libFLAC 'src/libFLAC/stream_decoder.c' Stack Buffer Overflow Vulnerability
2014-12-02
http://www.securityfocus.com/bid/71280
Mutt 'mutt_substrdup()' Function Heap Based Buffer Overflow Vulnerability
2014-12-02
http://www.securityfocus.com/bid/71334
LibYAML and Perl YAML-LibYAML Module 'scanner.c' Remote Denial of Service Vulnerability
2014-12-02
http://www.securityfocus.com/bid/71349
Oracle Java SE CVE-2014-6558 Remote Security Vulnerability
2014-12-02
http://www.securityfocus.com/bid/70544
libFLAC 'src/libFLAC/stream_decoder.c' Heap Buffer Overflow Vulnerability
2014-12-02
http://www.securityfocus.com/bid/71282
LibVNCServer CVE-2014-6054 Denial of Service Vulnerability
2014-12-02
http://www.securityfocus.com/bid/70094
libVNCserver CVE-2014-6051 Integer Overflow Vulnerability
2014-12-02
http://www.securityfocus.com/bid/70093
LibVNCServer CVE-2014-6053 Remote Denial of Service Vulnerability
2014-12-02
http://www.securityfocus.com/bid/70092
LibVNCServer CVE-2014-6052 Denial of Service Vulnerability
2014-12-02
http://www.securityfocus.com/bid/70091
LibVNCServer CVE-2014-6055 Multiple Stack Based Buffer Overflow Vulnerabilities
2014-12-02
http://www.securityfocus.com/bid/70096
Oracle Java SE CVE-2014-6517 Remote Security Vulnerability
2014-12-02
http://www.securityfocus.com/bid/70552
Oracle Java SE CVE-2014-6512 IP Address Spoofing Vulnerability
2014-12-02
http://www.securityfocus.com/bid/70567
Oracle Java SE CVE-2014-6511 Remote Security Vulnerability
2014-12-02
http://www.securityfocus.com/bid/70548
Oracle Java SE CVE-2014-6506 Remote Security Vulnerability
2014-12-02
http://www.securityfocus.com/bid/70556
Oracle Java SE CVE-2014-6504 Remote Security Vulnerability
2014-12-02
http://www.securityfocus.com/bid/70564
Oracle Java SE CVE-2014-6502 Remote Security Vulnerability
2014-12-02
http://www.securityfocus.com/bid/70533
Oracle Java SE CVE-2014-6457 Remote Security Vulnerability
2014-12-02
http://www.securityfocus.com/bid/70538
CBN CH6640E and CG6640E Wireless Gateway Series Multiple Security Vulnerabilities
2014-12-02
http://www.securityfocus.com/bid/70762
Exploit
1.12.2014
Bugtraq
[SECURITY] [DSA 3080-1] openjdk-7 security update 2014-11-29
Moritz Muehlenhoff (jmm debian org)
[SECURITY] [DSA 3079-1] ppp security update 2014-11-29
Sebastien Delafond (seb debian org)
WordPress <=4.0 Denial of Service Exploit (CVE-2014-9034) 2014-11-29
john secureli com
[ MDVSA-2014:237 ] perl-Mojolicious 2014-11-28
security mandriva com
Malware
Phishing
Yahoo.com | 29th November 2014 |
Support Paypal | 28th November 2014 |
[NOTICE] YOU HAVE TO UPDATE |
Vulnerebility
LibVNCServer CVE-2014-6054 Denial of Service Vulnerability
2014-12-01
http://www.securityfocus.com/bid/70094
libVNCserver CVE-2014-6051 Integer Overflow Vulnerability
2014-12-01
http://www.securityfocus.com/bid/70093
LibVNCServer CVE-2014-6053 Remote Denial of Service Vulnerability
2014-12-01
http://www.securityfocus.com/bid/70092
LibVNCServer CVE-2014-6052 Denial of Service Vulnerability
2014-12-01
http://www.securityfocus.com/bid/70091
LibVNCServer CVE-2014-6055 Multiple Stack Based Buffer Overflow Vulnerabilities
2014-12-01
http://www.securityfocus.com/bid/70096
Oracle Java SE CVE-2014-6517 Remote Security Vulnerability
2014-12-01
http://www.securityfocus.com/bid/70552
Oracle Java SE CVE-2014-6512 IP Address Spoofing Vulnerability
2014-12-01
http://www.securityfocus.com/bid/70567
Oracle Java SE CVE-2014-6511 Remote Security Vulnerability
2014-12-01
http://www.securityfocus.com/bid/70548
Oracle Java SE CVE-2014-6506 Remote Security Vulnerability
2014-12-01
http://www.securityfocus.com/bid/70556
Oracle Java SE CVE-2014-6504 Remote Security Vulnerability
2014-12-01
http://www.securityfocus.com/bid/70564
Oracle Java SE CVE-2014-6502 Remote Security Vulnerability
2014-12-01
http://www.securityfocus.com/bid/70533
Oracle Java SE CVE-2014-6457 Remote Security Vulnerability
2014-12-01
http://www.securityfocus.com/bid/70538
PPP 'options.c' CVE-2014-3158 Remote Integer Overflow Vulnerability
2014-12-01
http://www.securityfocus.com/bid/69399
CBN CH6640E and CG6640E Wireless Gateway Series Multiple Security Vulnerabilities
2014-12-01
http://www.securityfocus.com/bid/70762
Mojolicious Command Line Parameter Injection Vulnerability
2014-12-01
http://www.securityfocus.com/bid/70706
PHP 'donote()' Function Out-of-Bounds Read Vulnerability
2014-12-01
http://www.securityfocus.com/bid/70807
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2014-12-01
http://www.securityfocus.com/bid/70574
WordPress Wordfence Firewall Plugin 'wp-admin/admin.php' Cross Site Scripting Vulnerability
2014-12-01
http://www.securityfocus.com/bid/70915
Mozilla Network Security Services CVE-2014-1568 Security Bypass Vulnerability
2014-12-01
http://www.securityfocus.com/bid/70116
Arris VAP2500 CVE-2014-8423 Remote Code Execution Vulnerability
2014-12-01
http://www.securityfocus.com/bid/71299
Plack::App::File Information Disclosure Vulnerability
2014-12-01
http://www.securityfocus.com/bid/69185
Aircrack-ng 'network.c' Denial of Service Vulnerability
2014-12-01
http://www.securityfocus.com/bid/71342
Libksba 'ksba_oid_to_str() Function Buffer Overflow Vulnerability
2014-12-01
http://www.securityfocus.com/bid/71285
Polarssl Multiple Security Vulnerabilities
2014-12-01
http://www.securityfocus.com/bid/70902
PolarSSL Unspecified Memory Corruption Vulnerability
2014-12-01
http://www.securityfocus.com/bid/70905
libFLAC 'src/libFLAC/stream_decoder.c' Heap Buffer Overflow Vulnerability
2014-12-01
http://www.securityfocus.com/bid/71282
libFLAC 'src/libFLAC/stream_decoder.c' Stack Buffer Overflow Vulnerability
2014-12-01
http://www.securityfocus.com/bid/71280
OpenSSL CVE-2014-3470 Denial of Service Vulnerability
2014-12-01
http://www.securityfocus.com/bid/67898
WordPress Cross Site Request Forgery Vulnerability
2014-12-01
http://www.securityfocus.com/bid/71232
WordPress Password Reset Email Security Bypass Vulnerability
2014-12-01
http://www.securityfocus.com/bid/71231
Exploit
WordPress <=4.0 Denial of Service Exploit
Wordpress < 4.0.1 - Denial of Service
Drupal < 7.34 - Denial of Service
29.11.2014
Bugtraq
[ MDVSA-2014:237 ] perl-Mojolicious 2014-11-28
security mandriva com
[ MDVSA-2014:236 ] file 2014-11-28
security mandriva com
[ MDVSA-2014:235 ] perl-Plack 2014-11-28
security mandriva com
[ MDVSA-2014:234 ] libksba 2014-11-28
security mandriva com
Defense in depth -- the Microsoft way (part 22): no DEP in Windows' filesystem (and ASLR barely used) 2014-11-27
Stefan Kanthak (stefan kanthak nexgo de)
[security bulletin] HPSBGN03209 rev.1 - HP Application Lifecycle Management running SSLv3, Remote Disclosure of Information 2014-11-27
security-alert hp com
Malware
Phishing
Yahoo.com | 29th November 2014 |
Support Paypal | 28th November 2014 |
[NOTICE] YOU HAVE TO UPDATE | |
RBS | 28th November 2014 |
Vulnerebility
CBN CH6640E and CG6640E Wireless Gateway Series Multiple Security Vulnerabilities
2014-11-29
http://www.securityfocus.com/bid/70762
Mojolicious Command Line Parameter Injection Vulnerability
2014-11-29
http://www.securityfocus.com/bid/70706
PHP 'donote()' Function Out-of-Bounds Read Vulnerability
2014-11-29
http://www.securityfocus.com/bid/70807
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2014-11-29
http://www.securityfocus.com/bid/70574
WordPress Wordfence Firewall Plugin 'wp-admin/admin.php' Cross Site Scripting Vulnerability
2014-11-29
http://www.securityfocus.com/bid/70915
Mozilla Network Security Services CVE-2014-1568 Security Bypass Vulnerability
2014-11-29
http://www.securityfocus.com/bid/70116
Arris VAP2500 CVE-2014-8423 Remote Code Execution Vulnerability
2014-11-29
http://www.securityfocus.com/bid/71299
Plack::App::File Information Disclosure Vulnerability
2014-11-29
http://www.securityfocus.com/bid/69185
Aircrack-ng 'network.c' Denial of Service Vulnerability
2014-11-29
http://www.securityfocus.com/bid/71342
Libksba 'ksba_oid_to_str() Function Buffer Overflow Vulnerability
2014-11-29
http://www.securityfocus.com/bid/71285
Polarssl Multiple Security Vulnerabilities
2014-11-29
http://www.securityfocus.com/bid/70902
PolarSSL Unspecified Memory Corruption Vulnerability
2014-11-29
http://www.securityfocus.com/bid/70905
libFLAC 'src/libFLAC/stream_decoder.c' Heap Buffer Overflow Vulnerability
2014-11-29
http://www.securityfocus.com/bid/71282
libFLAC 'src/libFLAC/stream_decoder.c' Stack Buffer Overflow Vulnerability
2014-11-29
http://www.securityfocus.com/bid/71280
OpenSSL CVE-2014-3470 Denial of Service Vulnerability
2014-11-29
http://www.securityfocus.com/bid/67898
WordPress Cross Site Request Forgery Vulnerability
2014-11-29
http://www.securityfocus.com/bid/71232
WordPress Password Reset Email Security Bypass Vulnerability
2014-11-29
http://www.securityfocus.com/bid/71231
WordPress Password Check Denial of Service Vulnerability
2014-11-29
http://www.securityfocus.com/bid/71233
WordPress Multiple Unspecified Cross Site Scripting Vulnerabilities
2014-11-29
http://www.securityfocus.com/bid/71236
WordPress Server Side Request Forgery Security Bypass Vulnerability
2014-11-29
http://www.securityfocus.com/bid/71234
WordPress Unspecified Security Vulnerability
2014-11-29
http://www.securityfocus.com/bid/71238
WordPress 'comment' Field HTML Injection Vulnerability
2014-11-29
http://www.securityfocus.com/bid/71237
Raritan PowerIQ Multiple SQL Injection Vulnerabilities
2014-11-29
http://www.securityfocus.com/bid/68722
OpenSSL CVE-2014-0224 Man in the Middle Security Bypass Vulnerability
2014-11-29
http://www.securityfocus.com/bid/67899
OpenSSL CVE-2014-0076 Information Disclosure Weakness
2014-11-29
http://www.securityfocus.com/bid/66363
OpenSSL 'so_ssl3_write()' Function NULL Pointer Dereference Denial of Service Vulnerability
2014-11-29
http://www.securityfocus.com/bid/67193
OpenSSL 'ssl3_release_read_buffer()' Use-After-Free Memory Corruption Vulnerability
2014-11-29
http://www.securityfocus.com/bid/66801
OpenSSL DTLS CVE-2014-0221 Remote Denial of Service Vulnerability
2014-11-29
http://www.securityfocus.com/bid/67901
OpenSSL CVE-2014-0195 Memory Corruption Vulnerability
2014-11-29
http://www.securityfocus.com/bid/67900
WordPress DZS-VideoGallery Plugin Cross Site Scripting and Command Injection Vulnerabilities
2014-11-29
http://www.securityfocus.com/bid/68525
Exploit
CCH Wolters Kluwer PFX Engagement <= 7.1 - Local Privilege Escalation
28.11.2014
Bugtraq
Defense in depth -- the Microsoft way (part 22): no DEP in Windows' filesystem (and ASLR barely used) 2014-11-27
Stefan Kanthak (stefan kanthak nexgo de)
[security bulletin] HPSBGN03209 rev.1 - HP Application Lifecycle Management running SSLv3, Remote Disclosure of Information 2014-11-27
security-alert hp com
[ MDVSA-2014:233 ] wordpress 2014-11-27
security mandriva com
[SECURITY] [DSA 3078-1] libksba security update 2014-11-27
Salvatore Bonaccorso (carnil debian org)
[KIS-2014-13] Tuleap <= 7.6-4 (register.php) PHP Object Injection Vulnerability 2014-11-27
Egidio Romano (research karmainsecurity com)
[ MDVSA-2014:232 ] glibc 2014-11-27
security mandriva com
[ MDVSA-2014:231 ] icecast 2014-11-27
security mandriva com
[ MDVSA-2014:230 ] kernel 2014-11-27
security mandriva com
[security bulletin] HPSBGN03202 rev.1 - HP CMS: Configuration Manager running OpenSSL, Remote Disclosure of Information 2014-11-26
security-alert hp com
Malware
Phishing
Admin | 27th November 2014 |
BT | 27th November 2014 |
Halifax | 27th November 2014 |
PayPal | 26th November 2014 |
BT at home | 26th November 2014 |
Halifax UK | 26th November 2014 |
BT | 26th November 2014 |
Vulnerebility
Libksba 'ksba_oid_to_str() Function Buffer Overflow Vulnerability
2014-11-28
http://www.securityfocus.com/bid/71285
Polarssl Multiple Security Vulnerabilities
2014-11-28
http://www.securityfocus.com/bid/70902
PolarSSL Unspecified Memory Corruption Vulnerability
2014-11-28
http://www.securityfocus.com/bid/70905
libFLAC 'src/libFLAC/stream_decoder.c' Heap Buffer Overflow Vulnerability
2014-11-28
http://www.securityfocus.com/bid/71282
libFLAC 'src/libFLAC/stream_decoder.c' Stack Buffer Overflow Vulnerability
2014-11-28
http://www.securityfocus.com/bid/71280
OpenSSL CVE-2014-3470 Denial of Service Vulnerability
2014-11-28
http://www.securityfocus.com/bid/67898
WordPress Cross Site Request Forgery Vulnerability
2014-11-28
http://www.securityfocus.com/bid/71232
WordPress Password Reset Email Security Bypass Vulnerability
2014-11-28
http://www.securityfocus.com/bid/71231
WordPress Password Check Denial of Service Vulnerability
2014-11-28
http://www.securityfocus.com/bid/71233
WordPress Multiple Unspecified Cross Site Scripting Vulnerabilities
2014-11-28
http://www.securityfocus.com/bid/71236
WordPress Server Side Request Forgery Security Bypass Vulnerability
2014-11-28
http://www.securityfocus.com/bid/71234
WordPress Unspecified Security Vulnerability
2014-11-28
http://www.securityfocus.com/bid/71238
WordPress 'comment' Field HTML Injection Vulnerability
2014-11-28
http://www.securityfocus.com/bid/71237
Raritan PowerIQ Multiple SQL Injection Vulnerabilities
2014-11-28
http://www.securityfocus.com/bid/68722
OpenSSL CVE-2014-0224 Man in the Middle Security Bypass Vulnerability
2014-11-28
http://www.securityfocus.com/bid/67899
OpenSSL CVE-2014-0076 Information Disclosure Weakness
2014-11-28
http://www.securityfocus.com/bid/66363
OpenSSL 'so_ssl3_write()' Function NULL Pointer Dereference Denial of Service Vulnerability
2014-11-28
http://www.securityfocus.com/bid/67193
OpenSSL 'ssl3_release_read_buffer()' Use-After-Free Memory Corruption Vulnerability
2014-11-28
http://www.securityfocus.com/bid/66801
OpenSSL DTLS CVE-2014-0221 Remote Denial of Service Vulnerability
2014-11-28
http://www.securityfocus.com/bid/67901
OpenSSL CVE-2014-0195 Memory Corruption Vulnerability
2014-11-28
http://www.securityfocus.com/bid/67900
WordPress DZS-VideoGallery Plugin Cross Site Scripting and Command Injection Vulnerabilities
2014-11-28
http://www.securityfocus.com/bid/68525
OpenVPN Access Server Desktop Client Cross Site Request Forgery Vulnerability
2014-11-28
http://www.securityfocus.com/bid/68666
WordPress Video Gallery Plugin Multiple SQL Injection and Cross Site Scripting Vulnerabilities
2014-11-28
http://www.securityfocus.com/bid/68883
WordPress WhyDoWork AdSense Cross Site Scripting and Cross Site Request Forgery Vulnerabilities
2014-11-28
http://www.securityfocus.com/bid/68954
SkaDate Lite Multiple Cross Site Request Forgery and HTML Injection Vulnerabilities
2014-11-28
http://www.securityfocus.com/bid/68971
Kunena Multiple SQL Injection and Cross Site Scripting Vulnerabilities
2014-11-28
http://www.securityfocus.com/bid/68956
Pligg CMS 'recover.php' SQL Injection Vulnerability
2014-11-28
http://www.securityfocus.com/bid/68893
Squid CVE-2014-0128 Remote Denial of Service Vulnerability
2014-11-28
http://www.securityfocus.com/bid/66112
Squid CVE-2014-7142 Unspecified Security Vulnerability
2014-11-28
http://www.securityfocus.com/bid/70022
Squid 'src/icmp/Icmp4.cc' Remote Denial of Service Vulnerability
2014-11-28
http://www.securityfocus.com/bid/69688
Exploit
27.11.2014
Bugtraq
[ MDVSA-2014:230 ] kernel 2014-11-27
security mandriva com
[security bulletin] HPSBGN03202 rev.1 - HP CMS: Configuration Manager running OpenSSL, Remote Disclosure of Information 2014-11-26
security-alert hp com
[SECURITY] [DSA 3077-1] openjdk-6 security update 2014-11-26
Moritz Muehlenhoff (jmm debian org)
[ MDVSA-2014:229 ] libvncserver 2014-11-26
security mandriva com
CVE-2014-5439 - Root shell on Sniffit [with exploit] 2014-11-26
Hector Marco (hecmargi upv es)
Сross-Site Request Forgery (CSRF) in xEpan 2014-11-26
High-Tech Bridge Security Research (advisory htbridge com)
Malware
Phishing
Halifax | 27th November 2014 |
PayPal | 26th November 2014 |
BT at home | 26th November 2014 |
Halifax UK | 26th November 2014 |
BT | 26th November 2014 |
Tom Holder | 25th November 2014 |
Vulnerebility
FortiManager and FortiAnalyzer CVE-2014-2334 Multiple Cross Site Scripting Vulnerabilities
2014-11-27
http://www.securityfocus.com/bid/70887
tnftp CVE-2014-8517 Arbitrary Command Execution Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70792
Oracle Java SE CVE-2014-6504 Remote Security Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70564
Oracle Java SE CVE-2014-6512 IP Address Spoofing Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70567
FreeBSD CVE-2014-8475 Remote Denial of Service Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70913
Adobe Flash Player CVE-2014-8439 Remote Code Execution Vulnerability
2014-11-27
http://www.securityfocus.com/bid/71289
Ruby CVE-2014-8090 Incomplete Fix XML External Entity Denial of Service Vulnerability
2014-11-27
http://www.securityfocus.com/bid/71230
Ruby CVE-2014-8080 XML External Entity Denial of Service Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70935
ClamAV 'libclamav/pe.c' Heap Based Buffer Overflow Vulnerability
2014-11-27
http://www.securityfocus.com/bid/71242
ClamAV CVE-2013-6497 Local Denial of Service Vulnerability
2014-11-27
http://www.securityfocus.com/bid/71178
Linux Kernel cpio 'list_file()' Function Heap Based Buffer Overflow Vulnerability
2014-11-27
http://www.securityfocus.com/bid/71248
Oracle Java SE CVE-2014-6558 Remote Security Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70544
Oracle Java SE CVE-2014-6531 Remote Security Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70572
Oracle Java SE CVE-2014-6506 Remote Security Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70556
Oracle Java SE CVE-2014-6511 Remote Security Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70548
Oracle Java SE CVE-2014-6457 Remote Security Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70538
Oracle Java SE CVE-2014-6517 Remote Security Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70552
Oracle Java SE CVE-2014-6502 Remote Security Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70533
Oracle Java SE CVE-2014-6519 Remote Security Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70570
Cisco Adaptive Security Appliance (ASA) Software CVE-2014-3407 Denial of Service Vulnerability
2014-11-27
http://www.securityfocus.com/bid/71317
OpenSSL CVE-2014-3566 Man In The Middle Information Disclosure Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70574
MantisBT 'view_all_set.php' Multiple SQL Injection Vulnerabilities
2014-11-27
http://www.securityfocus.com/bid/71298
Linux Kernel 'espfix64' Local Denial of Service Vulnerability
2014-11-27
http://www.securityfocus.com/bid/71250
LibVNCServer CVE-2014-6052 Denial of Service Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70091
LibVNCServer CVE-2014-6055 Multiple Stack Based Buffer Overflow Vulnerabilities
2014-11-27
http://www.securityfocus.com/bid/70096
libVNCserver CVE-2014-6051 Integer Overflow Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70093
LibVNCServer CVE-2014-6053 Remote Denial of Service Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70092
LibVNCServer CVE-2014-6054 Denial of Service Vulnerability
2014-11-27
http://www.securityfocus.com/bid/70094
Moodle 'forum_get_discussions()' Function Security Bypass Vulnerability
2014-11-27
http://www.securityfocus.com/bid/71126
Moodle 'lib/phpunit/bootstrap.php' Path Disclosure Vulnerability
2014-11-27
http://www.securityfocus.com/bid/71129
Exploit
Pandora FMS SQLi Remote Code Execution
Mini-stream RM-MP3 Converter 3.1.2.1.2010.03.30 (.wax) SEH Buffer Overflow
WordPress HTML 5 MP3 Player with Playlist Plugin - Full Path Disclosure
xEpan 1.0.1 - CSRF Vulnerability
Device42 WAN Emulator 2.3 Traceroute Command Injection
Device42 WAN Emulator 2.3 Ping Command Injection
Slider Revolution/Showbiz Pro Shell Upload Exploit
CFP: Passwords 2015, Dec 7-9, Cambridge, UK 2015-07-10
Per Thorsheim (per thorsheim net)
CVE-2015-4670 - AjaxControlToolkit File Upload Directory Traversal 2015-07-13
Brian Cardinale (brian cardinaleconsulting com)
[SYSS-2015-031] sysPass - SQL Injection 2015-07-13
disclosure syss de
phpSQLiteCMS CSRF, Unrestricted File Type Upload, Privilege Escalation & XSS CSRF, Unrestricted File Type Upload, Privilege Escalation & XSS 2015-07-13
apparitionsec gmail com
[slackware-security] mozilla-thunderbird (SSA:2015-192-01) 2015-07-12
Slackware Security Team (security slackware com)
SQL Injection, Reflected XSS, Path Traversal, Function Execution in ZenPhoto 1.4.8 2015-07-10
Tim Coen (tc coen gmail com)
[security bulletin] HPSBGN03373 rev.1 - HP Release Control running TLS, Remote Disclosure of Information 2015-07-10
security-alert hp com
Cisco Security Advisory: OpenSSL Alternative Chains Certificate Forgery Vulnerability (July 2015) Affecting Cisco Products 2015-07-10
Cisco Systems Product Security Incident Response Team (psirt cisco com)
ESA-2015-115: EMC RecoverPoint for Virtual Machines (VMs) Restriction Bypass Vulnerability 2015-07-10
Security Alert (Security_Alert emc com)
CVE-2014-7952, Android ADB backup APK injection vulnerability 2015-07-10
Imre RAD (imre rad search-lab hu)
[security bulletin] HPSBGN03351 rev.2 - HP IceWall SSO Dfw, SSO Certd, MCRP, and Federation Agent running OpenSSL, Remote Disclosure of Information 2015-07-10
security-alert hp com
[security bulletin] HPSBGN03371 rev.1 - HP IceWall Products running OpenSSL, Remote Denial of Service (DoS) 2015-07-10
security-alert hp com
NEW VMSA-2015-0005 : VMware Workstation, Player and Horizon View Client for Windows updates address a host privilege escalation vulnerability 2015-07-10
VMware Security Response Center (security vmware com)
[SECURITY] [DSA 3307-1] pdns-recursor security update 2015-07-09
Alessandro Ghedini (ghedo debian org)
[SECURITY] [DSA 3306-1] pdns security update 2015-07-09
Alessandro Ghedini (ghedo debian org)
[slackware-security] openssl (SSA:2015-190-01) 2015-07-09
Slackware Security Team (security slackware com)
FreeBSD Security Advisory FreeBSD-SA-15:12.openssl 2015-07-09
FreeBSD Security Advisories (security-advisories freebsd org)
Cisco Security Advisory: Multiple Vulnerabilities in Cisco ASA Software 2015-07-09
Cisco Systems Product Security Incident Response Team (psirt cisco com)
Extra information for CVE-2014-2513 - EMC Documentum Content Server: arbitrary code execution 2015-07-08
andrew panfilov tel
[SECURITY] [DSA 3305-1] python-django security update 2015-07-08
Alessandro Ghedini (ghedo debian org)
[CORE-2015-0011] - AirLink101 SkyIPCam1620W OS Command Injection 2015-07-08
CORE Advisories Team (advisories coresecurity com)
[security bulletin] HPSBUX03363 rev.1 - HP-UX Apache Web Server running OpenSSL, Remote Disclosure of Information 2015-07-08
security-alert hp com
Merethis Centreon - Unauthenticated blind SQLi and Authenticated Remote Command Execution 2015-07-08
hdau deloitte fr
SQL Injection in easy2map-photos wordpress plugin v1.09 2015-07-08
Larry W. Cashdollar (larry0 me com)
Remote file download vulnerability in wordpress plugin wp-ecommerce-shop-styling v2.5 2015-07-08
Larry W. Cashdollar (larry0 me com)
Symantec EP 12.1.4013 Disabling Vulnerability 2015-07-08
apparitionsec gmail com
[slackware-security] bind (SSA:2015-188-04) 2015-07-08
Slackware Security Team (security slackware com)
[slackware-security] ntp (SSA:2015-188-03) 2015-07-08
Slackware Security Team (security slackware com)
[slackware-security] cups (SSA:2015-188-01) 2015-07-08
Slackware Security Team (security slackware com)
[slackware-security] mozilla-firefox (SSA:2015-188-02) 2015-07-08
Slackware Security Team (security slackware com)