Databáze Hot News - Rok - Úvod  2018  2017  2016  2015  2014  2013  - 1  2  3  4  5  6  7  8  9  10  11  12  13  14  15  List  - 2018  2017  2016  2015  2014  2013 
Poslední aktualizace v 08.10.2016 14:19:38
 

8.2.2017

Bugtraq

ESA-2017-001: EMC Isilon InsightIQ Authentication Bypass Vulnerability 2017-02-07
EMC Product Security Response Center (Security_Alert emc com)

SEC Consult SA-20170207 :: Path Traversal, Backdoor accounts & KNX group address password bypass in JUNG Smart Visu server 2017-02-07
SEC Consult Vulnerability Lab (research sec-consult com)

[security bulletin] HPESBUX03699 SSRT110304 rev.1 - HP-UX BIND, Multiple Remote Denial of Service (DoS) 2017-02-06
HPE Product Security Response Team (security-alert hpe com)

Teleopti WFM <= 7.1.0 Multiple Vulnerabilities 2017-02-06
Graph-X (graphx sigaint org)

[SECURITY] [DSA 3781-1] svgsalamander security update 2017-02-05
Moritz Muehlenhoff (jmm debian org)

ZoneMinder - multiple vulnerabilities 2017-02-05
john terabyteit com au

Malware

Trojan.Vimnaspu

Phishing

Apple

7th February 2017

YOUR APPIE LD IS AUTOMATICALLY
LOCKED.

AOL

7th February 2017

you have got a new message

AOL

7th February 2017

you have got an incoming
message

Chase

7th February 2017

CHASE BANK - NOTIFICATION!

Chase

7th February 2017

CHASE BANK - NOTICE!

Vulnerebility

OpenSSH CVE-2016-10009 Remote Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/94968

OpenSSH 'ssh/kex.c' Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/93776

OpenSSH CVE-2016-10012 Security Bypass Vulnerability
2017-02-08
http://www.securityfocus.com/bid/94975

OpenSSH CVE-2016-10011 Local Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/94977

PostfixAdmin CVE-2017-5930 Session Management Security Bypass Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96142

Tor Browser Launcher CVE-2016-3180 Arbitrary Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96140

QEMU 'virtio-crypto.c' Integer Overflow Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96141

Symfony CVE-2016-2403 Authentication Bypass Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96137

GNU Bash CVE-2017-5932 Multiple Arbitrary Code Execution Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96136

SimpleSAMLphp CVE-2016-3124 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96134

GraphicsMagick CVE-2016-7800 Remote Integer Underflow Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96135

Trend Micro Control Manager Multiple Directory Traversal Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96131

Trend Micro Control Manager Multiple Information Disclosure Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/95972

IBM Security Access Manager Products CVE-2016-3029 Cross Site Request Forgery Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96133

SendQuick Entera and Avera SMS Gateway Appliances Remote Command Injection Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96129

ZoneMinder CVE-2017-5368 Cross Site Request Forgery Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96126

IBM Security Access Manager CVE-2016-3024 Local Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96132

IBM Security Access Manager Products CVE-2016-3027 XML External Entity Injection Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96127

IBM Security Access Manager Products CVE-2016-3022 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96130

Multiple Samsung Android Mobile Devices InputMethod Application Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96128

Trend Micro Control Manager Multiple SQL Injection Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96123

Alaris 8015 PC unit CVE-2016-9355 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96116

Sielco Sistemi Winlog Pro/ Winlog Lite CVE-2017-5161 DLL Loading Local Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96119

Linux Kernel CVE-2016-10150 Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/95672

dotCMS Multiple Cross Site Scripting Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96115

Spice CVE-2016-9578 Remote Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96118

Plone Incomplete Fix CVE-2016-7147 Cross-Site Scripting Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96117

ZoneMinder 'web/views/file.php' Local File Include Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96125

IBM Security Access Manager Products CVE-2016-3023 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96124

Alaris 8000 and 8015 PC units CVE-2016-8375 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96113Trend Micro Control Manager Multiple Information Disclosure Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/95972

IBM Security Access Manager Products CVE-2016-3029 Cross Site Request Forgery Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96133

SendQuick Entera and Avera SMS Gateway Appliances Remote Command Injection Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96129

ZoneMinder CVE-2017-5368 Cross Site Request Forgery Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96126

IBM Security Access Manager CVE-2016-3024 Local Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96132

IBM Security Access Manager Products CVE-2016-3027 XML External Entity Injection Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96127

IBM Security Access Manager Products CVE-2016-3022 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96130

Multiple Samsung Android Mobile Devices InputMethod Application Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96128

Trend Micro Control Manager Multiple SQL Injection Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96123

Alaris 8015 PC unit CVE-2016-9355 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96116

Sielco Sistemi Winlog Pro/ Winlog Lite CVE-2017-5161 DLL Loading Local Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96119

Linux Kernel CVE-2016-10150 Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/95672

dotCMS Multiple Cross Site Scripting Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96115

Spice CVE-2016-9578 Remote Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96118

Plone Incomplete Fix CVE-2016-7147 Cross-Site Scripting Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96117

ZoneMinder 'web/views/file.php' Local File Include Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96125

IBM Security Access Manager Products CVE-2016-3023 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96124

Alaris 8000 and 8015 PC units CVE-2016-8375 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96113

ZoneMinder CVE-2017-5367 Multiple Cross Site Scripting Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96120

Google Nexus Kernel File System CVE-2016-10044 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96122

Linux kernel 'ip6_gre.c' Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96037

QEMU 'hw/usb/dev-smartcard-reader.c' Integer Overflow Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96112

Google Android CVE-2016-8414 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96111

IBM Security Access Manager CVE-2016-3021 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96114

Google Nexus Broadcom Wi-Fi Driver CVE-2017-0449 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96110

Google Android Qualcomm Sound Driver CVE-2017-0451 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96108

Google Nexus Audioserver CVE-2017-0450 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96109

Google Nexus NVIDIA Video Driver CVE-2017-0448 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96105

Google Nexus Realtek Sound Driver CVE-2017-0444 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96107

Google Android Audioserver CVE-2017-0425 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96106Linux kernel 'ip6_gre.c' Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96037

Google Android CVE-2016-8414 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96111

IBM Security Access Manager CVE-2016-3021 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96114

Google Nexus Broadcom Wi-Fi Driver CVE-2017-0449 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96110

Google Android Qualcomm Sound Driver CVE-2017-0451 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96108

Google Nexus Audioserver CVE-2017-0450 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96109

Google Nexus NVIDIA Video Driver CVE-2017-0448 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96105

Google Nexus Realtek Sound Driver CVE-2017-0444 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96107

Google Android Audioserver CVE-2017-0425 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96106

Google Android AOSP Messaging CVE-2017-0424 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96104

Google Android Bluetooth CVE-2017-0423 Remote Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96102

Google Android Kernel Networking Subsystem CVE-2014-9914 Remote Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96100

Google Android CVE-2016-8480 Remote Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96101

Google Android Filesystem CVE-2017-0426 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96099

Google Android Bionic DNS CVE-2017-0422 Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96097

Google Android AOSP Mail CVE-2017-0420 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96093

Google Android libgdx CVE-2017-0408 Remote Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96092

IBM Security Access Manager Products CVE-2015-5013 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96090

Google Android libstagefright CVE-2017-0409 Arbitrary Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96091

Google Android Framework APIs CVE-2017-0421 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96096

Google Android Mediaserver CVE-2017-0415 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96089

IBM WebSphere Application Server CVE-2016-9736 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96076

IBM Sterling Order Management CVE-2016-9991 Cross Site Request Forgery Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96084

Multiple IBM Products CVE-2016-9748 Remote Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96074

Google Nexus Kernel File System CVE-2017-0427 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96071

podofo 'PdfOutputStream.cpp' Null Pointer Dereference Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96072

Google Nexus NVIDIA GPU Driver Multiple Privilege Escalation Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96070

Google Android Synaptics Touchscreen Driver Multiple Privilege Escalation Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96061

AES-GCM CVE-2016-0270 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96062

Google Android MediaTek Driver CVE-2017-0432 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96067Google Android Qualcomm Sound Driver CVE-2017-0451 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96108

Google Nexus Audioserver CVE-2017-0450 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96109

Google Nexus NVIDIA Video Driver CVE-2017-0448 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96105

Google Nexus Realtek Sound Driver CVE-2017-0444 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96107

Google Android Audioserver CVE-2017-0425 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96106

Google Android AOSP Messaging CVE-2017-0424 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96104

Google Android Bluetooth CVE-2017-0423 Remote Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96102

Google Android Kernel Networking Subsystem CVE-2014-9914 Remote Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96100

Google Android CVE-2016-8480 Remote Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96101

Google Android Filesystem CVE-2017-0426 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96099

Google Android Bionic DNS CVE-2017-0422 Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96097

Google Android AOSP Mail CVE-2017-0420 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96093

Google Android libgdx CVE-2017-0408 Remote Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96092

IBM Security Access Manager Products CVE-2015-5013 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96090

Google Android libstagefright CVE-2017-0409 Arbitrary Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96091

Google Android Framework APIs CVE-2017-0421 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96096

Google Android Mediaserver CVE-2017-0415 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96089

IBM WebSphere Application Server CVE-2016-9736 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96076

IBM Sterling Order Management CVE-2016-9991 Cross Site Request Forgery Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96084

Multiple IBM Products CVE-2016-9748 Remote Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96074

Google Nexus Kernel File System CVE-2017-0427 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96071

podofo 'PdfOutputStream.cpp' Null Pointer Dereference Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96072

Google Nexus NVIDIA GPU Driver Multiple Privilege Escalation Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96070

Google Android Synaptics Touchscreen Driver Multiple Privilege Escalation Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96061

AES-GCM CVE-2016-0270 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96062

Google Android MediaTek Driver CVE-2017-0432 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96067

Google Android Qualcomm components CVE-2017-0431 Multiple Unspecified Security Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96068

podofo CVE-2017-5853 Integer Overflow Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96066

Google Nexus Broadcom Wi-Fi Driver CVE-2017-0430 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96065

Google Nexus Qualcomm Crypto Driver CVE-2016-8418 Remote Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96058

SANS News

My Password is [taco] Using Emojis for Stronger Passwords

Threatpost

Popular iOS Apps Vulnerable to TLS Interception Attacks

Attackers Capitalizing on Unpatched WordPress Sites

Consortium Publishes Manifesto on Autonomous Vehicle Security

Uber Debuts SSH Key Authentication Module

Valve Patches Trivial XSS Bug in Steam

Exploit

Muviko Video CMS - SQL Injection

Multi Outlets POS 3.1 - 'id' Parameter SQL Injection

Fully Featured News CMS 1.0 - 'id' Parameter SQL Injection

OpenBSD HTTPd < 6.0 - Memory Exhaustion Denial of Service

Easy Support Tools 1.0 - 'stt' Parameter SQL Injection

7.2.2017

Bugtraq

SEC Consult SA-20170207 :: Path Traversal, Backdoor accounts & KNX group address password bypass in JUNG Smart Visu server 2017-02-07
SEC Consult Vulnerability Lab (research sec-consult com)

[security bulletin] HPESBUX03699 SSRT110304 rev.1 - HP-UX BIND, Multiple Remote Denial of Service (DoS) 2017-02-06
HPE Product Security Response Team (security-alert hpe com)

Teleopti WFM <= 7.1.0 Multiple Vulnerabilities 2017-02-06
Graph-X (graphx sigaint org)

[SECURITY] [DSA 3781-1] svgsalamander security update 2017-02-05
Moritz Muehlenhoff (jmm debian org)

ZoneMinder - multiple vulnerabilities 2017-02-05
john terabyteit com au

[FOXMOLE SA 2016-07-05] ZoneMinder - Multiple Issues 2017-02-02
FOXMOLE Advisories (advisories foxmole com)

Ghostscript 9.20 Filename Command Execution 2017-02-02
apparitionsec gmail com (hyp3rlinx)

[security bulletin] HPSBST03588 rev 1. - HPE StoreVirtual 4000 Storage and StoreVirtual VSA Software running LeftHand OS, Remote Arbitrary Command Execution 2017-02-01
security-alert hpe com

Malware

OSX.Addkeysteal

TrojanDownloader:Win32/Mato
PWS:Win32/Passew
PWS:MSIL/Tosnir.A

Phishing

Chase

7th February 2017

CHASE BANK - NOTICE!

BB&T Alerts

6th February 2017

Request to Update Your BB&T
Online Information!

Apple Online - Store

6th February 2017

APPLE ONLINE - WE'VE RECEIVED
YOUR ORDER: [MMMH36GLV6]

Vulnerebility

Google Android Synaptics Touchscreen Driver Multiple Privilege Escalation Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96061

AES-GCM CVE-2016-0270 Information Disclosure Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96062

Google Android MediaTek Driver CVE-2017-0432 Privilege Escalation Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96067

Google Android Qualcomm components CVE-2017-0431 Multiple Unspecified Security Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96068

podofo CVE-2017-5853 Integer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96066

Google Nexus Broadcom Wi-Fi Driver CVE-2017-0430 Privilege Escalation Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96065

Google Nexus Qualcomm Crypto Driver CVE-2016-8418 Remote Code Execution Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96058

Google Android AOSP Messaging Multiple Information Disclosure Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96063

Google Pixel/Pixel XL HTC touchscreen Driver Multiple Privilege Escalation Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96054

Google Nexus/ Pixel Products Qualcomm Sound Driver Multiple Privilege Escalation Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96053

Google Android Framework APIs Multiple Privilege Escalation Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96056

Google Android Audioserver Multiple Privilege Escalation Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96055

Google Nexus/ Pixel Products Qualcomm Wi-Fi Driver Multiple Privilege Escalation Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96047

LibTIFF CVE-2016-5102 Remote Buffer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96049

Google Android Surfaceflinger CVE-2017-0405 Remote Code Execution Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96048

Google Android Mediaserver Multiple Remote Code Execution Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96046

PEAR HTML_AJAX CVE-2017-5677 PHP Object Injection Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96044

NetApp OnCommand Insight Data Warehouse CVE-2017-5600 Security Bypass Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96041

Exponent CMS CVE-2017-5879 SQL Injection Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96039

Spice CVE-2016-9577 Buffer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96040

SanaCMS CVE-2017-5882 Cross Site Scripting Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96038

Red Hat JBoss Enterprise Application Platform CVE-2016-8656 Local Privilege Escalation Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96035

Linux kernel 'ip6_gre.c' Denial of Service Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96037

Hawtio CVE-2017-2617 Arbitrary File Upload Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96036

SendQuick Entera & Avera SMS Gateway Appliances Multiple Security Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96031

libplist Multiple Local Heap Buffer Overflow and Denial-of-Service Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96022

Citrix License Server for Windows and License Server VPX CVE-2017-5571 Open Redirect Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96028

iucode-tool CVE-2017-0357 Heap Buffer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/95432

libXpm CVE-2016-10164 Heap Based Buffer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/95785

Irssi Multiple Memory Corruption Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/95310PEAR HTML_AJAX CVE-2017-5677 PHP Object Injection Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96044

NetApp OnCommand Insight Data Warehouse CVE-2017-5600 Security Bypass Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96041

Exponent CMS CVE-2017-5879 SQL Injection Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96039

Spice CVE-2016-9577 Buffer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96040

SanaCMS CVE-2017-5882 Cross Site Scripting Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96038

Red Hat JBoss Enterprise Application Platform CVE-2016-8656 Local Privilege Escalation Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96035

Linux kernel 'ip6_gre.c' Denial of Service Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96037

Hawtio CVE-2017-2617 Arbitrary File Upload Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96036

SendQuick Entera & Avera SMS Gateway Appliances Multiple Security Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96031

libplist Multiple Local Heap Buffer Overflow and Denial-of-Service Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96022

Citrix License Server for Windows and License Server VPX CVE-2017-5571 Open Redirect Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96028

iucode-tool CVE-2017-0357 Heap Buffer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/95432

libXpm CVE-2016-10164 Heap Based Buffer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/95785

Irssi Multiple Memory Corruption Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/95310

Irssi 'buf.pl' Local Information Disclosure Vulnerability
2017-02-07
http://www.securityfocus.com/bid/93155

GnuTLS 'lib/opencdk/read-packet.c' Multiple Heap Buffer Overflow Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/95372

GnuTLS CVE-2017-5336 Stack Buffer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/95377

GnuTLS GNUTLS-SA-2016-3 Certificate Validation Security Bypass Vulnerability
2017-02-07
http://www.securityfocus.com/bid/92893

GnuTLS CVE-2017-5334 Security Bypass Vulnerability
2017-02-07
http://www.securityfocus.com/bid/95370

GnuTLS CVE-2017-5335 Multiple Buffer Overflow Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/95374

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-02-07
http://www.securityfocus.com/bid/93841

gtk-vnc Remote Code Execution Vulnerability and Multiple Integer Overflow Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96016

libevent Multiple Security Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96014

Multiple IBM Products CVE-2017-1127 Cross Site Scripting Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96019

Multiple IBM Products CVE-2017-1128 Unspecified Cross Site Scripting Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96017

Linux Kernel 'EXT4 image' Local Denial of Service Vulnerability
2017-02-07
http://www.securityfocus.com/bid/94354

TigerVNC CVE-2016-10207 Denial of Service Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96012

Microsoft Windows CVE-2017-0016 Memory Corruption Vulnerability
2017-02-07
http://www.securityfocus.com/bid/95969

Libreswan CVE-2016-3071 Remote Denial of Service Vulnerability
2017-02-07
http://www.securityfocus.com/bid/87295

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-02-07
http://www.securityfocus.com/bid/95407

SANS News

Malicious Or Not? You decide...

My Password is [taco] Using Emojis for Stronger Passwords

Threatpost

ICS, SCADA Security Woes Linger On

InterContinental Hotels Confirms Credit Card Breach

St. Jude Patches Additional Cardiac Device

Smart TV Manufacturer Vizio Fined $2.2M for Tracking Customers

Exploit

IVPN Client 2.6.1 - Privilege Escalation

6.2.2017

Bugtraq

Teleopti WFM <= 7.1.0 Multiple Vulnerabilities 2017-02-06
Graph-X (graphx sigaint org)

[SECURITY] [DSA 3781-1] svgsalamander security update 2017-02-05
Moritz Muehlenhoff (jmm debian org)

ZoneMinder - multiple vulnerabilities 2017-02-05
john terabyteit com au

Malware

 

Phishing

 

Vulnerebility

Irssi Multiple Memory Corruption Vulnerabilities
2017-02-06
http://www.securityfocus.com/bid/95310

Irssi 'buf.pl' Local Information Disclosure Vulnerability
2017-02-06
http://www.securityfocus.com/bid/93155

GnuTLS 'lib/opencdk/read-packet.c' Multiple Heap Buffer Overflow Vulnerabilities
2017-02-06
http://www.securityfocus.com/bid/95372

GnuTLS CVE-2017-5336 Stack Buffer Overflow Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95377

GnuTLS GNUTLS-SA-2016-3 Certificate Validation Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/92893

GnuTLS CVE-2017-5334 Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95370

GnuTLS CVE-2017-5335 Multiple Buffer Overflow Vulnerabilities
2017-02-06
http://www.securityfocus.com/bid/95374

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/93841

libevent Multiple Security Vulnerabilities
2017-02-06
http://www.securityfocus.com/bid/96014

Multiple IBM Products CVE-2017-1127 Cross Site Scripting Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96019

Multiple IBM Products CVE-2017-1128 Unspecified Cross Site Scripting Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96017

Linux Kernel 'EXT4 image' Local Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/94354

TigerVNC CVE-2016-10207 Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96012

Microsoft Windows CVE-2017-0016 Memory Corruption Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95969

Libreswan CVE-2016-3071 Remote Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/87295

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95407

WordPress Prior to 4.7.1 Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95406

Artifex MuJS 'regexp.c' Integer Overflow Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96006

Mini-XML Stack Exhaustion Multiple Denial of Service Vulnerabilities
2017-02-06
http://www.securityfocus.com/bid/90315

SOGo CVE-2016-6188 Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96007

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-02-06
http://www.securityfocus.com/bid/91319

Business LaLa Call App CVE-2017-2104 SSL Certificate Validation Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96005

LaLa Call App for Android CVE-2017-2103 SSL Certificate Validation Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96004

IBM Jazz for Service Management CVE-2016-5935 Information Disclosure Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96003

Multiple GStreamer Plug-ins Buffer Overflow and Denial Of Service Vulnerabilities
2017-02-06
http://www.securityfocus.com/bid/96001

Mp3splt 'free_options()' Function Null Pointer Dereference Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96002

Barracuda NextGen Firewal F-Series Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96000

Samba CVE-2016-2119 Man in the Middle Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/91700

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/93814

Apache Ranger CVE-2016-8746 Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95998Microsoft Windows CVE-2017-0016 Memory Corruption Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95969

Libreswan CVE-2016-3071 Remote Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/87295

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95407

WordPress Prior to 4.7.1 Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95406

Artifex MuJS 'regexp.c' Integer Overflow Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96006

Mini-XML Stack Exhaustion Multiple Denial of Service Vulnerabilities
2017-02-06
http://www.securityfocus.com/bid/90315

SOGo CVE-2016-6188 Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96007

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-02-06
http://www.securityfocus.com/bid/91319

Business LaLa Call App CVE-2017-2104 SSL Certificate Validation Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96005

LaLa Call App for Android CVE-2017-2103 SSL Certificate Validation Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96004

IBM Jazz for Service Management CVE-2016-5935 Information Disclosure Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96003

Multiple GStreamer Plug-ins Buffer Overflow and Denial Of Service Vulnerabilities
2017-02-06
http://www.securityfocus.com/bid/96001

Mp3splt 'free_options()' Function Null Pointer Dereference Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96002

Barracuda NextGen Firewal F-Series Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96000

Samba CVE-2016-2119 Man in the Middle Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/91700

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/93814

Apache Ranger CVE-2016-8746 Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95998

QEMU 'hw/scsi/megasas.c' Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95999

OpenBSD httpd CVE-2017-5850 Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95997

Akamai NetSession CVE-2016-10157 DLL Loading Remote Code Execution Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95995

FFmpeg CVE-2016-10192 Heap Buffer Overflow Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95991

Lenovo XClarity Administrator CVE-2016-8233 Information Disclosure Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95992

Ghostscript Remote Command Execution Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95988

FFmpeg CVE-2016-10191 Heap Buffer Overflow Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95989

Drupal Better Exposed Filters Module Cross Site Scripting Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95994

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95993

NTFS-3G CVE-2017-0358 Local Privilege Escalation Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95987

QEMU 'hw/display/cirrus_vga.c' Remote Code Execution Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95990

FFmpeg CVE-2016-10190 Heap Buffer Overflow Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95986

IBM Security Key Lifecycle Manager CVE-2016-6096 Cross Site Scripting Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95983

SANS News

What Are These Odd POP3 (Port 110/tcp) Scans About?

Threatpost

 

Exploit

ThisIsWhyImBroke Clone Script 4.0 - 'id' Parameter SQL Injection

Upworthy Clone Script 1.1.0 - 'id' Parameter SQL Injection

Ultimate Viral Media Script 1.0 - 'id' Parameter SQL Injection

Visual Link Sharing Websites Builder Script 2.1.0 - SQL Injection

ThisIsWhyImBroke Clone Script 4.0.0 - 'id' Parameter SQL Injection

Funny Image and Video Script 2.0.0 - 'id' Parameter SQL Injection

Clone Script Directory Script 1.1.0 - 'cid' Parameter SQL Injection

Viral Pictures and Video Script 2.0.0 - 'id' Parameter SQL Injection

NewsBee CMS - SQL Injection

Web Inspiration Gallery Script 1.0.0 - 'id' Parameter SQL Injection

Viral Fun Facts Sharing Script 1.1.0 - 'id' Parameter SQL Injection

5.2.2017

Bugtraq

 

Malware

Trojan.Zherotee

Phishing

Information

4th February 2017

Account Information

PayPal

3rd February 2017

Tracking Number For
sunmtnsft@aol.com

Vulnerebility

Libreswan CVE-2016-3071 Remote Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/87295

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95407

WordPress Prior to 4.7.1 Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95406

Artifex MuJS 'regexp.c' Integer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96006

Mini-XML Stack Exhaustion Multiple Denial of Service Vulnerabilities
2017-02-05
http://www.securityfocus.com/bid/90315

SOGo CVE-2016-6188 Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96007

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/91319

Business LaLa Call App CVE-2017-2104 SSL Certificate Validation Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96005

LaLa Call App for Android CVE-2017-2103 SSL Certificate Validation Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96004

IBM Jazz for Service Management CVE-2016-5935 Information Disclosure Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96003

Multiple GStreamer Plug-ins Buffer Overflow and Denial Of Service Vulnerabilities
2017-02-05
http://www.securityfocus.com/bid/96001

Mp3splt 'free_options()' Function Null Pointer Dereference Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96002

Barracuda NextGen Firewal F-Series Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96000

Samba CVE-2016-2119 Man in the Middle Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/91700

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/93814

Apache Ranger CVE-2016-8746 Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95998

QEMU 'hw/scsi/megasas.c' Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95999

OpenBSD httpd CVE-2017-5850 Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95997

Akamai NetSession CVE-2016-10157 DLL Loading Remote Code Execution Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95995

FFmpeg CVE-2016-10192 Heap Buffer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95991

Lenovo XClarity Administrator CVE-2016-8233 Information Disclosure Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95992

Ghostscript Remote Command Execution Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95988

FFmpeg CVE-2016-10191 Heap Buffer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95989

Drupal Better Exposed Filters Module Cross Site Scripting Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95994

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95993

NTFS-3G CVE-2017-0358 Local Privilege Escalation Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95987

QEMU 'hw/display/cirrus_vga.c' Remote Code Execution Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95990

FFmpeg CVE-2016-10190 Heap Buffer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95986

IBM Security Key Lifecycle Manager CVE-2016-6096 Cross Site Scripting Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95983

Revive Adserver REVIVE-SA-2017-001 Multiple Security Vulnerabilities
2017-02-05
http://www.securityfocus.com/bid/95875Libreswan CVE-2016-3071 Remote Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/87295

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95407

WordPress Prior to 4.7.1 Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95406

Artifex MuJS 'regexp.c' Integer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96006

Mini-XML Stack Exhaustion Multiple Denial of Service Vulnerabilities
2017-02-05
http://www.securityfocus.com/bid/90315

SOGo CVE-2016-6188 Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96007

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/91319

Business LaLa Call App CVE-2017-2104 SSL Certificate Validation Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96005

LaLa Call App for Android CVE-2017-2103 SSL Certificate Validation Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96004

IBM Jazz for Service Management CVE-2016-5935 Information Disclosure Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96003

Multiple GStreamer Plug-ins Buffer Overflow and Denial Of Service Vulnerabilities
2017-02-05
http://www.securityfocus.com/bid/96001

Mp3splt 'free_options()' Function Null Pointer Dereference Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96002

Barracuda NextGen Firewal F-Series Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96000

Samba CVE-2016-2119 Man in the Middle Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/91700

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/93814

Apache Ranger CVE-2016-8746 Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95998

QEMU 'hw/scsi/megasas.c' Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95999

OpenBSD httpd CVE-2017-5850 Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95997

Akamai NetSession CVE-2016-10157 DLL Loading Remote Code Execution Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95995

FFmpeg CVE-2016-10192 Heap Buffer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95991

Lenovo XClarity Administrator CVE-2016-8233 Information Disclosure Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95992

Ghostscript Remote Command Execution Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95988

FFmpeg CVE-2016-10191 Heap Buffer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95989

Drupal Better Exposed Filters Module Cross Site Scripting Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95994

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95993

NTFS-3G CVE-2017-0358 Local Privilege Escalation Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95987

QEMU 'hw/display/cirrus_vga.c' Remote Code Execution Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95990

FFmpeg CVE-2016-10190 Heap Buffer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95986

IBM Security Key Lifecycle Manager CVE-2016-6096 Cross Site Scripting Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95983

Revive Adserver REVIVE-SA-2017-001 Multiple Security Vulnerabilities
2017-02-05
http://www.securityfocus.com/bid/95875Libreswan CVE-2016-3071 Remote Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/87295

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95407

WordPress Prior to 4.7.1 Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95406

Artifex MuJS 'regexp.c' Integer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96006

Mini-XML Stack Exhaustion Multiple Denial of Service Vulnerabilities
2017-02-04
http://www.securityfocus.com/bid/90315

SOGo CVE-2016-6188 Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96007

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/91319

Business LaLa Call App CVE-2017-2104 SSL Certificate Validation Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96005

LaLa Call App for Android CVE-2017-2103 SSL Certificate Validation Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96004

IBM Jazz for Service Management CVE-2016-5935 Information Disclosure Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96003

Multiple GStreamer Plug-ins Buffer Overflow and Denial Of Service Vulnerabilities
2017-02-04
http://www.securityfocus.com/bid/96001

Mp3splt 'free_options()' Function Null Pointer Dereference Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96002

Barracuda NextGen Firewal F-Series Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96000

Samba CVE-2016-2119 Man in the Middle Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/91700

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/93814

Apache Ranger CVE-2016-8746 Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95998

QEMU 'hw/scsi/megasas.c' Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95999

OpenBSD httpd CVE-2017-5850 Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95997

Akamai NetSession CVE-2016-10157 DLL Loading Remote Code Execution Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95995

FFmpeg CVE-2016-10192 Heap Buffer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95991

Lenovo XClarity Administrator CVE-2016-8233 Information Disclosure Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95992

Ghostscript Remote Command Execution Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95988

FFmpeg CVE-2016-10191 Heap Buffer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95989

Drupal Better Exposed Filters Module Cross Site Scripting Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95994

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95993

NTFS-3G CVE-2017-0358 Local Privilege Escalation Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95987

QEMU 'hw/display/cirrus_vga.c' Remote Code Execution Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95990

FFmpeg CVE-2016-10190 Heap Buffer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95986

IBM Security Key Lifecycle Manager CVE-2016-6096 Cross Site Scripting Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95983

Revive Adserver REVIVE-SA-2017-001 Multiple Security Vulnerabilities
2017-02-04
http://www.securityfocus.com/bid/95875Libreswan CVE-2016-3071 Remote Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/87295

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95407

WordPress Prior to 4.7.1 Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95406

Artifex MuJS 'regexp.c' Integer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96006

Mini-XML Stack Exhaustion Multiple Denial of Service Vulnerabilities
2017-02-04
http://www.securityfocus.com/bid/90315

SOGo CVE-2016-6188 Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96007

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/91319

Business LaLa Call App CVE-2017-2104 SSL Certificate Validation Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96005

LaLa Call App for Android CVE-2017-2103 SSL Certificate Validation Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96004

IBM Jazz for Service Management CVE-2016-5935 Information Disclosure Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96003

Multiple GStreamer Plug-ins Buffer Overflow and Denial Of Service Vulnerabilities
2017-02-04
http://www.securityfocus.com/bid/96001

Mp3splt 'free_options()' Function Null Pointer Dereference Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96002

Barracuda NextGen Firewal F-Series Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96000

Samba CVE-2016-2119 Man in the Middle Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/91700

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/93814

Apache Ranger CVE-2016-8746 Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95998

QEMU 'hw/scsi/megasas.c' Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95999

OpenBSD httpd CVE-2017-5850 Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95997

Akamai NetSession CVE-2016-10157 DLL Loading Remote Code Execution Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95995

FFmpeg CVE-2016-10192 Heap Buffer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95991

Lenovo XClarity Administrator CVE-2016-8233 Information Disclosure Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95992

Ghostscript Remote Command Execution Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95988

FFmpeg CVE-2016-10191 Heap Buffer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95989

Drupal Better Exposed Filters Module Cross Site Scripting Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95994

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95993

NTFS-3G CVE-2017-0358 Local Privilege Escalation Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95987

QEMU 'hw/display/cirrus_vga.c' Remote Code Execution Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95990

FFmpeg CVE-2016-10190 Heap Buffer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95986

IBM Security Key Lifecycle Manager CVE-2016-6096 Cross Site Scripting Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95983

Revive Adserver REVIVE-SA-2017-001 Multiple Security Vulnerabilities
2017-02-04
http://www.securityfocus.com/bid/95875

SANS News

Detecting Undisclosed Vulnerabilities with Security Tools & Features

Many Malware Samples Found on Pastebin

Threatpost

 

Exploit

Alstrasoft EPay Enterprise 5.17 - SQL Injection

Alstrasoft ProTaxi Enterprise 3.5 - Arbitrary File Upload

Alstrasoft e-Friends 5.12 - SQL Injection

Alstrasoft Video Share Enterprise 4.72 - SQL Injection

Alstrasoft Flippa Clone MarketPlace Script 4.10 - Cross-Site Request Forgery (Add Admin)

Alstrasoft FMyLife Pro 1.02 - Cross-Site Request Forgery (Add Admin)

Alstrasoft Forum Pay Per Post Exchange Script 2.01 - SQL Injection

SlimarUSER Management 1.0 - 'id' Parameter SQL Injection

Debian 9 ntfs-3g - Privilege Escalation

ntfs-3g (Debian 9) - Privilege Escalation

3.2.2017

Bugtraq

[FOXMOLE SA 2016-07-05] ZoneMinder - Multiple Issues 2017-02-02
FOXMOLE Advisories (advisories foxmole com)

Ghostscript 9.20 Filename Command Execution 2017-02-02
apparitionsec gmail com (hyp3rlinx)

Malware

JS.Kopiwak

Ransom.Spora!gm

Trojan.Zherotee

Phishing

PayPal

3rd February 2017

Tracking Number For
sunmtnsft@aol.com

Vulnerebility

Lenovo XClarity Administrator CVE-2016-8233 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95992

Ghostscript Remote Command Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95988

FFmpeg CVE-2016-10191 Heap Buffer Overflow Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95989

Drupal Better Exposed Filters Module Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95994

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95993

NTFS-3G CVE-2017-0358 Local Privilege Escalation Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95987

QEMU 'hw/display/cirrus_vga.c' Remote Code Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95990

FFmpeg CVE-2016-10190 Heap Buffer Overflow Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95986

IBM Security Key Lifecycle Manager CVE-2016-6096 Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95983

Revive Adserver REVIVE-SA-2017-001 Multiple Security Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95875

IBM Security Key Lifecycle Manager CVE-2016-6093 Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95985

IBM Security Key Lifecycle Manager CVE-2016-6094 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95984

Ansible CVE-2016-9587 Arbitrary Command Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95352

OpenSSL CVE-2017-3731 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95813

OpenSSL CVE-2017-3732 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95814

OpenSSL CVE-2016-7056 Local Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95375

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/93841

OpenSSL CVE-2016-7055 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/94242

Libgd CVE-2016-6912 Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95843

libgd Multiple Security Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95869

libgd 'gdImageCreate()' Function Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95841

RubyGems minitar and archive-tar-minitar CVE-2016-10173 Local Directory Traversal Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95874

IBM Tivoli Key Lifecycle Manager CVE-2016-6104 Arbitrary File Upload Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95980

Adobe Flash Player and AIR APSB16-08 Multiple Unspecified Integer Overflow Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/84308

IBM InfoSphere BigInsights CVE-2016-2992 Unspecified Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95979

IBM Tivoli Key Lifecycle Manager CVE-2016-6098 Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95982

McAfee ePolicy Orchestrator CVE-2016-8027 SQL Injection Vulnerabilitiy
2017-02-03
http://www.securityfocus.com/bid/95981

WordPress Prior to 4.7.1 Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95397

WordPress Prior to 4.7.2 Multiple Security Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95816

WordPress Prior to 4.7.1 Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95402
Adobe Flash Player and AIR APSB16-08 Multiple Unspecified Integer Overflow Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/84308

WordPress Prior to 4.7.1 Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95397

WordPress Prior to 4.7.2 Multiple Security Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95816

WordPress Prior to 4.7.1 Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95402

WordPress Cryptographic Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95401

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95399

IBM Tivoli Storage Manager CVE-2016-6034 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95976

IBM Security Key Lifecycle Manager CVE-2016-6097 Local Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95977

IBM UrbanCode Deploy CVE-2016-2941 Local Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95978

IBM UrbanCode Deploy CVE-2016-2942 Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95975

Multiple HP Products CVE-2016-8529 Unspecified Remote Code Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95970

IBM UrbanCode Deploy CVE-2016-0320 Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95974

IBM InfoSphere BigInsights CVE-2016-2924 Unspecified Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95973

Trend Micro Control Manager Multiple Information Disclosure Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95972

Honeywell XL Web II Controller Multiple Security Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95971

SageCRM SQL Injection and Arbitrary File Upload Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95968

OpenSSL CVE-2016-7055 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/94242

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-02-03
http://www.securityfocus.com/bid/91319

OpenSSL CVE-2017-3732 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95814

OpenSSL CVE-2017-3731 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95813

OpenSSL CVE-2016-7056 Local Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95375

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/93841

Microsoft Windows VU#867968 Memory Corruption Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95969

Multiple GStreamer Plug-ins Buffer Overflow and Denial Of Service Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/96001

Mp3splt 'free_options()' Function Null Pointer Dereference Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/96002

Barracuda NextGen Firewal F-Series Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/96000

Samba CVE-2016-2119 Man in the Middle Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/91700

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/93814

Apache Ranger CVE-2016-8746 Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95998

QEMU 'hw/scsi/megasas.c' Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95999

OpenBSD httpd CVE-2017-5850 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95997

Akamai NetSession CVE-2016-10157 DLL Loading Remote Code Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95995

FFmpeg CVE-2016-10192 Heap Buffer Overflow Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95991

Lenovo XClarity Administrator CVE-2016-8233 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95992

Ghostscript Remote Command Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95988

FFmpeg CVE-2016-10191 Heap Buffer Overflow Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95989

Drupal Better Exposed Filters Module Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95994

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95993

NTFS-3G CVE-2017-0358 Local Privilege Escalation Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95987

QEMU 'hw/display/cirrus_vga.c' Remote Code Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95990

FFmpeg CVE-2016-10190 Heap Buffer Overflow Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95986

IBM Security Key Lifecycle Manager CVE-2016-6096 Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95983

Revive Adserver REVIVE-SA-2017-001 Multiple Security Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95875

IBM Security Key Lifecycle Manager CVE-2016-6093 Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95985

IBM Security Key Lifecycle Manager CVE-2016-6094 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95984

Ansible CVE-2016-9587 Arbitrary Command Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95352

OpenSSL CVE-2017-3731 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95813

OpenSSL CVE-2017-3732 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95814

OpenSSL CVE-2016-7056 Local Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95375

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/93841

OpenSSL CVE-2016-7055 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/94242

Libgd CVE-2016-6912 Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95843

libgd Multiple Security Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95869Ansible CVE-2016-9587 Arbitrary Command Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95352

Jenkins CVE-2017-2613 Cross Site Request Forgery Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95967

IBM Security Key Lifecycle Manager CVE-2016-6116 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95966

Linux Kernel CVE-2016-7117 Use-After-Free Remote Code Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/93304

Linux Kernel 'fs/pipe.c' Local Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/83870

Jenkins CVE-2017-2609 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95964

IBM Security Key Lifecycle Manager CVE-2016-6095 Brute Force Authentication Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95965

SANS News

Cisco - Issue with Clock Signal Component

Threatpost

Printing and Marketing Firm Leaks High-Profile Customers’ Data

Microsoft Waits for Patch Tuesday to Fix SMB Zero Day

Cisco Patches Authentication Bypass in Cisco Prime Home

Locky Ransomware, Kovter Click-Fraud Malware Spreading in Same Campaigns

Honeywell SCADA Controllers Exposed Passwords in Clear Text

Exploit

CUPS < 2.0.3 - Remote Command Execution

Netwave IP Camera - Password Disclosure

SlimarUSER Management 1.0 - 'id' Parameter SQL Injection

Itech Multi Vendor Script 6.49 - SQL Injection

2.2.2017

Bugtraq

[FOXMOLE SA 2016-07-05] ZoneMinder - Multiple Issues 2017-02-02
FOXMOLE Advisories (advisories foxmole com)

Ghostscript 9.20 Filename Command Execution 2017-02-02
apparitionsec gmail com (hyp3rlinx)

[security bulletin] HPSBST03588 rev 1. - HPE StoreVirtual 4000 Storage and StoreVirtual VSA Software running LeftHand OS, Remote Arbitrary Command Execution 2017-02-01
security-alert hpe com

Cisco Security Advisory: Cisco Prime Home Authentication Bypass Vulnerability 2017-02-01
Cisco Systems Product Security Incident Response Team (psirt cisco com)

ESA-2017-003: EMC Network Configuration Manager (NCM) Multiple Vulnerabilities 2017-02-01
EMC Product Security Response Center (Security_Alert emc com)

[SECURITY] [DSA 3779-1] wordpress security update 2017-02-01
Sebastien Delafond (seb debian org)

[security bulletin] HPESBHF03700 rev.1 - HPE iMC PLAT, Remote Disclosure of Information, Denial of Service (DoS) 2017-01-31
security-alert hpe com

[SECURITY] [DSA 3778-1] ruby-archive-tar-minitar security update 2017-01-31
Salvatore Bonaccorso (carnil debian org)

[security bulletin] HPESBGN03696 rev.1 - HPE Helion Eucalyptus, Remote Escalation of Privilege 2017-01-31
security-alert hpe com

[security bulletin] HPSBHF03693 rev.1 - HPE iMC PLAT Network Products running Microsoft SQL Server, Remote Elevation of Privilege 2017-01-31
security-alert hpe com

Malware

 

Phishing

 

Vulnerebility

Ansible CVE-2016-9587 Arbitrary Command Execution Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95352

Jenkins CVE-2017-2613 Cross Site Request Forgery Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95967

IBM Security Key Lifecycle Manager CVE-2016-6116 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95966

Linux Kernel CVE-2016-7117 Use-After-Free Remote Code Execution Vulnerability
2017-02-02
http://www.securityfocus.com/bid/93304

Linux Kernel 'fs/pipe.c' Local Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/83870

Jenkins CVE-2017-2609 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95964

IBM Security Key Lifecycle Manager CVE-2016-6095 Brute Force Authentication Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95965

Jenkins CVE-2017-2605 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95961

IBM Security Key Lifecycle Manager CVE-2016-6099 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95958

Jenkins CVE-2017-2608 Remote Code Execution Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95953

Jenkins CVE-2017-2607 HTML Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95963

Jenkins CVE-2017-2606 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95962

Jenkins CVE-2017-2601 HTML Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95960

Jenkins CVE-2017-2612 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95957

Jenkins CVE-2017-2611 Multiple Security Bypass Vulnerabilities
2017-02-02
http://www.securityfocus.com/bid/95956

Jenkins CVE-2017-2604 Privilege Escalation Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95959

Jenkins CVE-2017-2603 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95955

Jenkins CVE-2017-2602 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95952

Jenkins CVE-2017-2600 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95954

IBM Security Key Lifecycle Manager CVE-2016-6103 Cross Site Request Forgery Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95950

Jenkins CVE-2017-2610 HTML Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95951

Jenkins CVE-2017-2599 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95949

Jenkins CVE-2017-2598 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95948

Cisco Prime Service Catalog CVE-2017-3810 Open Redirection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95947

Cisco Industrial Ethernet 2000 Series Switches CVE-2017-3812 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95946

EMC Isilon InsightIQ CVE-2017-2765 Authentication Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95945

Cisco Firepower Device Manager CVE-2017-3822 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95944

Multiple Cisco Products CVE-2017-3806 Local Command Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95943

Cisco Firepower System Software CVE-2017-3814 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95942

Cisco Firepower Management Center CVE-2017-3809 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95941
Linux Kernel 'fs/pipe.c' Local Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/83870

IBM Security Key Lifecycle Manager CVE-2016-6095 Brute Force Authentication Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95965

Jenkins CVE-2017-2605 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95961

IBM Security Key Lifecycle Manager CVE-2016-6099 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95958

Jenkins CVE-2017-2608 Remote Code Execution Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95953

Jenkins CVE-2017-2607 HTML Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95963

Jenkins CVE-2017-2606 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95962

Jenkins CVE-2017-2601 HTML Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95960

Jenkins CVE-2017-2612 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95957

Jenkins CVE-2017-2611 Multiple Security Bypass Vulnerabilities
2017-02-02
http://www.securityfocus.com/bid/95956

Jenkins CVE-2017-2604 Privilege Escalation Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95959

Jenkins CVE-2017-2603 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95955

Jenkins CVE-2017-2602 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95952

Jenkins CVE-2017-2600 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95954

IBM Security Key Lifecycle Manager CVE-2016-6103 Cross Site Request Forgery Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95950

Jenkins CVE-2017-2610 HTML Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95951

Jenkins CVE-2017-2599 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95949

Jenkins CVE-2017-2598 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95948

Cisco Prime Service Catalog CVE-2017-3810 Open Redirection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95947

Cisco Industrial Ethernet 2000 Series Switches CVE-2017-3812 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95946

EMC Isilon InsightIQ CVE-2017-2765 Authentication Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95945

Cisco Firepower Device Manager CVE-2017-3822 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95944

Multiple Cisco Products CVE-2017-3806 Local Command Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95943

Cisco Firepower System Software CVE-2017-3814 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95942

Cisco Firepower Management Center CVE-2017-3809 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95941

WordPress 'class-wp-rest-posts-controller.php' Privilege Escalation Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95940

Cisco Email Security Appliance for AsyncOS CVE-2017-3818 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95939

Cisco cBR Series Converged Broadband Routers CVE-2017-3824 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95937

EMC Smarts Network Configuration Manager CVE-2017-2768 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95936

EMC Smarts Network Configuration Manager CVE-2017-2767 Remote Code Execution Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95938
Jenkins CVE-2017-2598 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95948

Cisco Prime Service Catalog CVE-2017-3810 Open Redirection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95947

Cisco Industrial Ethernet 2000 Series Switches CVE-2017-3812 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95946

EMC Isilon InsightIQ CVE-2017-2765 Authentication Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95945

Cisco Firepower Device Manager CVE-2017-3822 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95944

Multiple Cisco Products CVE-2017-3806 Local Command Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95943

Cisco Firepower System Software CVE-2017-3814 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95942

Cisco Firepower Management Center CVE-2017-3809 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95941

WordPress 'class-wp-rest-posts-controller.php' Privilege Escalation Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95940

Cisco Email Security Appliance for AsyncOS CVE-2017-3818 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95939

Cisco cBR Series Converged Broadband Routers CVE-2017-3824 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95937

EMC Smarts Network Configuration Manager CVE-2017-2768 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95936

EMC Smarts Network Configuration Manager CVE-2017-2767 Remote Code Execution Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95938

bitlbee-libpurple CVE-2016-10188 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95935

Cisco ASR 1000 Series Routers CVE-2017-3820 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95934

Cisco Prime Home CVE-2017-3791 Authentication Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95933

BitlBee Incomplete Fix CVE-2017-5668 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95932

Brocade Virtual Traffic Manager CVE-2016-8201 Cross Site Request Forgery Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95930

BitlBee CVE-2016-10189 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95931

Apache Groovy CVE-2016-6497 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95929

QEMU 'sdhci.c' Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95885

Bzrtp CVE-2016-6271 Man in the Middle Spoofing Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95928

RoundCube Webmail 'content page' HTML-injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/90880

BlackBerry Enterprise Server CVE-2016-3130 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95924

Zimbra Collaboration Suite CVE-2016-3408 Unspecified Cross-Site Scripting Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95923

Zimbra Collaboration Suite CVE-2016-4019 Unspecified Security Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95922

HexChat CVE-2016-2233 Stack-Based Buffer Overflow Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95920

Foxit PDF Toolkit Memory Corruption Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95356

Huawei EMUI Directory Traversal and Command Injection Vulnerabilities
2017-02-02
http://www.securityfocus.com/bid/95919

Zimbra Collaboration Suite CVE-2016-3999 Multiple Unspecified Cross-Site Scripting Vulnerabilities
2017-02-02
http://www.securityfocus.com/bid/95921Cisco Industrial Ethernet 2000 Series Switches CVE-2017-3812 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95946

EMC Isilon InsightIQ CVE-2017-2765 Authentication Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95945

Cisco Firepower Device Manager CVE-2017-3822 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95944

Multiple Cisco Products CVE-2017-3806 Local Command Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95943

Cisco Firepower System Software CVE-2017-3814 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95942

Cisco Firepower Management Center CVE-2017-3809 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95941

WordPress 'class-wp-rest-posts-controller.php' Privilege Escalation Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95940

Cisco Email Security Appliance for AsyncOS CVE-2017-3818 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95939

Cisco cBR Series Converged Broadband Routers CVE-2017-3824 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95937

EMC Smarts Network Configuration Manager CVE-2017-2768 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95936

EMC Smarts Network Configuration Manager CVE-2017-2767 Remote Code Execution Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95938

bitlbee-libpurple CVE-2016-10188 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95935

Cisco ASR 1000 Series Routers CVE-2017-3820 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95934

Cisco Prime Home CVE-2017-3791 Authentication Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95933

BitlBee Incomplete Fix CVE-2017-5668 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95932

Brocade Virtual Traffic Manager CVE-2016-8201 Cross Site Request Forgery Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95930

BitlBee CVE-2016-10189 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95931

Apache Groovy CVE-2016-6497 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95929

QEMU 'sdhci.c' Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95885

Bzrtp CVE-2016-6271 Man in the Middle Spoofing Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95928

RoundCube Webmail 'content page' HTML-injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/90880

BlackBerry Enterprise Server CVE-2016-3130 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95924

Zimbra Collaboration Suite CVE-2016-3408 Unspecified Cross-Site Scripting Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95923

Zimbra Collaboration Suite CVE-2016-4019 Unspecified Security Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95922

HexChat CVE-2016-2233 Stack-Based Buffer Overflow Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95920

Foxit PDF Toolkit Memory Corruption Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95356

Huawei EMUI Directory Traversal and Command Injection Vulnerabilities
2017-02-02
http://www.securityfocus.com/bid/95919

Zimbra Collaboration Suite CVE-2016-3999 Multiple Unspecified Cross-Site Scripting Vulnerabilities
2017-02-02
http://www.securityfocus.com/bid/95921

Zimbra Collaboration Suite CVE-2016-3415 Unspecified Security Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95917

Zimbra Collaboration Suite CVE-2016-3414 Unspecified Security Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95918

SANS News

Multiple vulnerabilities discovered in popular printer models

Threatpost

Latest Ubuntu Update Includes OpenSSL Fixes

HTTPS Hits 50 Percent Traffic Milestone

Google Adds Security Key Enforcement to G Suite Apps, Hosted S/MIME to Gmail

Exploit

WordPress 4.7.0/4.7.1 - Unauthenticated Content Injection (PoC)

WordPress 4.7.0/4.7.1 - Unauthenticated Content Injection Arbitrary Code Execution

Microsoft Windows 10 - SMBv3 Tree Connect (PoC)

Ghostscript 9.20 - 'Filename' Command Execution

WordPress 4.7.0/4.7.1 - Unauthenticated Content Injection Arbitrary Code Execution

WordPress 4.7.0/4.7.1 - Unauthenticated Content Injection (PoC)

WordPress 4.7.0/4.7.1 - Unauthenticated Content Injection Arbitrary Code Execution

Ghostscript 9.20 - 'Filename' Command Execution

QNAP NVR/NAS - Buffer Overflow

1.2.2017

Bugtraq

[security bulletin] HPESBHF03700 rev.1 - HPE iMC PLAT, Remote Disclosure of Information, Denial of Service (DoS) 2017-01-31
security-alert hpe com

[SECURITY] [DSA 3778-1] ruby-archive-tar-minitar security update 2017-01-31
Salvatore Bonaccorso (carnil debian org)

[security bulletin] HPESBGN03696 rev.1 - HPE Helion Eucalyptus, Remote Escalation of Privilege 2017-01-31
security-alert hpe com

[security bulletin] HPSBHF03693 rev.1 - HPE iMC PLAT Network Products running Microsoft SQL Server, Remote Elevation of Privilege 2017-01-31
security-alert hpe com

ESA-2017-007: EMC Documentum eRoom Unverified Password Change Vulnerability 2017-01-31
EMC Product Security Response Center (Security_Alert emc com)

ESA-2016-094: RSA BSAFE Micro Edition Suite Multiple Vulnerabilities 2017-01-31
EMC Product Security Response Center (Security_Alert emc com)

[REVIVE-SA-2017-001] Revive Adserver - Multiple vulnerabilities 2017-01-31
Matteo Beccati (matteo beccati com)

[security bulletin] HPESBMU03701 rev.1 - HPE Smart Storage Administrator, Remote Arbitrary Code Execution 2017-01-30
security-alert hpe com

Secunia Research: libarchive "lha_read_file_header_1()" Out-Of-Bounds Memory Access Denial of Service Vulnerability 2017-01-30
Secunia Research (remove-vuln secunia com)

Malware

Backdoor.Mapkill

Trojan.Quasar

Backdoor.Chches

Phishing

MBNA credit card

1st February 2017

YOUR MBNA CREDIT CARD

Vulnerebility

QEMU 'sdhci.c' Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95885

Bzrtp CVE-2016-6271 Man in the Middle Spoofing Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95928

RoundCube Webmail 'content page' HTML-injection Vulnerability
2017-02-01
http://www.securityfocus.com/bid/90880

BlackBerry Enterprise Server CVE-2016-3130 Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95924

Zimbra Collaboration Suite CVE-2016-3408 Unspecified Cross-Site Scripting Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95923

Zimbra Collaboration Suite CVE-2016-4019 Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95922

HexChat CVE-2016-2233 Stack-Based Buffer Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95920

Foxit PDF Toolkit Memory Corruption Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95356

Huawei EMUI Directory Traversal and Command Injection Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95919

Zimbra Collaboration Suite CVE-2016-3999 Multiple Unspecified Cross-Site Scripting Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95921

Zimbra Collaboration Suite CVE-2016-3415 Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95917

Zimbra Collaboration Suite CVE-2016-3414 Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95918

Huawei HwVmall CVE-2017-2694 Local Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95915

Huawei Smart Phones CVE-2017-2708 Local Authentication Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95911

HP Intelligent Management Center CVE-2016-8525 Remote Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95912

Joyent SmartOS CVE-2016-9039 Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95916

phpMyAdmin CVE-2016-6621 Server Side Request Forgery Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95914

Atlassian JIRA CVE-2016-6285 Cross Site Scripting Vulnerabiliy
2017-02-01
http://www.securityfocus.com/bid/95913

Linux Kernel SCSI arcmsr Driver CVE-2016-7425 Local Heap Buffer Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/93037

Google Android CVE-2016-0823 Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/84265

Linux Kernel 'net/rds/recv.c' Local Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/91021

Red Hat Enterprise Linux 'USB Device Descriptor' Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/77030

Linux Kernel 'net/llc/af_llc.c' Local Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/90015

HarfBuzz CVE-2015-8947 Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/92039

HarfBuzz CVE-2016-2052 Multiple Security Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/81812

HP Helion Eucalyptus CVE-2016-8528 Remote Privilege Escalation Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95910

Calibre CVE-2016-10187 Local Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95909

BINOM3 Electric Power Quality Meter Multiple Security Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/93028

Mp3splt 'options_manager.c' Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95908

Mp3splt 'cue.c' Null Pointer Dereference Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95906
HexChat CVE-2016-2233 Stack-Based Buffer Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95920

Foxit PDF Toolkit Memory Corruption Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95356

Huawei EMUI Directory Traversal and Command Injection Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95919

Zimbra Collaboration Suite CVE-2016-3999 Multiple Unspecified Cross-Site Scripting Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95921

Zimbra Collaboration Suite CVE-2016-3415 Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95917

Zimbra Collaboration Suite CVE-2016-3414 Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95918

Huawei HwVmall CVE-2017-2694 Local Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95915

Huawei Smart Phones CVE-2017-2708 Local Authentication Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95911

HP Intelligent Management Center CVE-2016-8525 Remote Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95912

Joyent SmartOS CVE-2016-9039 Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95916

phpMyAdmin CVE-2016-6621 Server Side Request Forgery Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95914

Atlassian JIRA CVE-2016-6285 Cross Site Scripting Vulnerabiliy
2017-02-01
http://www.securityfocus.com/bid/95913

Linux Kernel SCSI arcmsr Driver CVE-2016-7425 Local Heap Buffer Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/93037

Google Android CVE-2016-0823 Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/84265

Linux Kernel 'net/rds/recv.c' Local Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/91021

Red Hat Enterprise Linux 'USB Device Descriptor' Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/77030

Linux Kernel 'net/llc/af_llc.c' Local Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/90015

HarfBuzz CVE-2015-8947 Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/92039

HarfBuzz CVE-2016-2052 Multiple Security Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/81812

HP Helion Eucalyptus CVE-2016-8528 Remote Privilege Escalation Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95910

Calibre CVE-2016-10187 Local Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95909

BINOM3 Electric Power Quality Meter Multiple Security Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/93028

Mp3splt 'options_manager.c' Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95908

Mp3splt 'cue.c' Null Pointer Dereference Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95906

Ecava IntegraXor CVE-2016-8341 Multiple SQL Injection Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95907

Oracle VM VirtualBox CVE-2017-3316 Remote Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95579

Oracle VM VirtualBox CVE-2017-3332 Local Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95599

Oracle VM VirtualBox CVE-2017-3290 Local Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95601

Oracle VM VirtualBox CVE-2016-5545 Remote Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95590

IBM Security Key Lifecycle Manager CVE-2016-6117 Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95905Oracle VM VirtualBox CVE-2017-3316 Remote Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95579

Oracle VM VirtualBox CVE-2017-3332 Local Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95599

Oracle VM VirtualBox CVE-2017-3290 Local Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95601

Oracle VM VirtualBox CVE-2016-5545 Remote Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95590

IBM Security Key Lifecycle Manager CVE-2016-6117 Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95905

Linux Kernel CVE-2012-6704 Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95135

Linux Kernel CVE-2017-5551 Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95717

Google Android CVE-2016-8399 Remote Privilege Escalation Vulnerability
2017-02-01
http://www.securityfocus.com/bid/94708

Linux Kernel 'kvm/emulate.c' Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/94615

Linux Kernel 'net/core/sock.c' Multiple Local Memory Corruption Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/94655

Linux Kernel CVE-2016-9685 Multiple Local Denial of Service Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/94593

Linux Kernel Out-Of-Bounds Read Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/94479

Linux Kernel CVE-2016-8632 Local Heap Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/94211

Linux Kernel 'crypto/algif_hash.c' Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/94309

Linux Kernel CVE-2015-8962 Memory Corruption Vulnerability
2017-02-01
http://www.securityfocus.com/bid/94187

Linux Kernel CVE-2016-8633 Local Buffer Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/94149

Linux Kernel Multiple Information Disclosure Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/94138

Linux Kernel CVE-2016-7042 Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/93544

Linux kernel Local Use After Free Multiple Denial of Service Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/94135

Google Android Multiple Kernel Components Multiple Information Disclosure Vulnerabilites
2017-02-01
http://www.securityfocus.com/bid/93326

Linux Kernel 'tcp_xmit_retransmit_queue()' Function Use After Free Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/92452

Linux Kernel CVE-2016-6480 Local Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/92214

Linux Kernel CVE-2016-7117 Use-After-Free Remote Code Execution Vulnerability
2017-02-01
http://www.securityfocus.com/bid/93304

Linux Kernel CVE-2016-3841 Multiple Privilege Escalation Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/92227

Linux Kernel Local Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/92659

Linux kernel 'key_reject_and_link()' Function Local Use After Free Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/91211

Linux kernel 'ppp_generic.c' Use After Free Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/90605

Linux Kernel 'usbhid/hiddev.c' Local Heap Buffer Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/91450

Linux Kernel CVE-2016-1583 Stack-Based Buffer Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/91157

Linux Kernel 'fs/isofs/rock.c' Local Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/90730IBM Tivoli Key Lifecycle Manager CVE-2016-6105 Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95904

McAfee Agent CVE-2017-3896 Remote Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95903

IBM License Metric Tool and BigFix Inventory CVE-2016-8967 Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95902

Zimbra Collaboration Suite CVE-2016-3410 Multiple Unspecified Cross-Site Scripting Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95900

Zimbra Collaboration Suite CVE-2016-3411 Unspecified Cross-Site Scripting Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95901

Zimbra Collaboration Suite CVE-2016-3412 Multiple Unspecified Cross-Site Scripting Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95899

SHDesigns Resident Download Manager CVE-2016-6567 Remote Code Execution Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95898

Zimbra Collaboration Suite CVE-2016-3407 Multiple Unspecified Cross-Site Scripting Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95897

Zimbra Collaboration Suite CVE-2016-3409 Unspecified Cross-Site Scripting Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95896

Zimbra Collaboration Suite CVE-2016-3413 Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95895

Zimbra Collaboration Suite CVE-2016-3404 Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95894

ISC BIND CVE-2016-9444 Remote Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95393

ISC BIND CVE-2016-8864 Remote Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/94067

ISC BIND CVE-2016-9131 Remote Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95386

Airwatch Agent for Android CVE-2017-4895 Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95892

EMC Documentum eRoom CVE-2017-2766 Admin Password Change Authentication Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95893

VMWare Airwatch Inbox for Android CVE-2017-4896 Local Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95889

IBM AIX CVE-2017-1093 Local Privilege Escalation Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95891

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/93841

Cisco WebEx Extension 'magic URL' Remote Command Execution Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95737

Zimbra Collaboration Suite CVE-2016-3406 Multiple Cross Site Request Forgery Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95890

IBM AIX CVE-2016-8944 Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95888

PEAR Base System CVE-2017-5630 Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95882

Zimbra Collaboration Suite CVE-2016-3405 Multiple Unspecified Security Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95886

Zimbra Collaboration Suite CVE-2016-3402 Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95887

Trend Micro Virtual Mobile Infrastructure CVE-2016-6270 Remote Code Execution Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95884

OnionShare '/tmp/onionshare' Directory Local Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/90821

Botan CVE-2016-9132 Integer Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95879

QEMU 'sdhci.c' Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95885

wavpack Multiple Out of Bounds Reads Local Denial of Service Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95883

SANS News

Quick Analysis of Data Left Available by Attackers

Threatpost

Nicolas Brulez on Malware Reverse Engineering Tips and Tricks

Ugly Password Gaffe Plagues Cryptkeeper Encryption App

Flaws Found in Popular Printer Models

Trump Cyber Executive Order Calls for 60-Day Review

Zimperium Program Buys Exploits for Patched Mobile Vulnerabilities

Exploit

Google Android - 'cfp_ropp_new_key_reenc' and 'cfp_ropp_new_key' RKP Memory Corruption

Google Android - Unprotected MSRs in EL1 RKP Privilege Escalation

Apple WebKit - 'HTMLFormElement::reset()' Use-After Free

Google Chrome - 'HTMLKeygenElement::shadowSelect()' Type Confusion

Apple WebKit - 'HTMLKeygenElement' Type Confusion

Apple WebKit - Type Confusion in RenderBox with Accessibility Enabled

Google Android - RKP Information Disclosure via s2-remapping Physical Ranges

Netman 204 - Backdoor Account / Password Reset

Multiple Netgear Routers - Password Disclosure

Viscosity 1.6.7 - Privilege Escalation

LogoStore - SQL Injection

Joomla! Component JTAG Calendar 6.2.4 - SQL Injection

Viscosity 1.6.7 - Privilege Escalation

31.1.2017

Bugtraq

[security bulletin] HPSBHF03693 rev.1 - HPE iMC PLAT Network Products running Microsoft SQL Server, Remote Elevation of Privilege 2017-01-31
security-alert hpe com

ESA-2017-007: EMC Documentum eRoom Unverified Password Change Vulnerability 2017-01-31
EMC Product Security Response Center (Security_Alert emc com)

ESA-2016-094: RSA BSAFE Micro Edition Suite Multiple Vulnerabilities 2017-01-31
EMC Product Security Response Center (Security_Alert emc com)

[REVIVE-SA-2017-001] Revive Adserver - Multiple vulnerabilities 2017-01-31
Matteo Beccati (matteo beccati com)

[security bulletin] HPESBMU03701 rev.1 - HPE Smart Storage Administrator, Remote Arbitrary Code Execution 2017-01-30
security-alert hpe com

Secunia Research: libarchive "lha_read_file_header_1()" Out-Of-Bounds Memory Access Denial of Service Vulnerability 2017-01-30
Secunia Research (remove-vuln secunia com)

secuvera-SA-2017-01: Privilege escalation in an OPSI Managed Client environment ("rise of the machines") 2017-01-30
sbieber secuvera de

Persistent Cross-Site Scripting vulnerability in User Access Manager WordPress Plugin 2017-01-28
Summer of Pwnage (lists securify nl)

Multiple blind SQL injection vulnerabilities in FormBuilder WordPress Plugin 2017-01-28
Summer of Pwnage (lists securify nl)

Malware

Ransom:Win32/Wagcrypt.A 

Phishing

Information

30th January 2017

Account Information

AOL

30th January 2017

incoming message

AOL

30th January 2017

youve got a new request

Vulnerebility

ISC BIND CVE-2016-9444 Remote Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95393

ISC BIND CVE-2016-8864 Remote Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/94067

ISC BIND CVE-2016-9131 Remote Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95386

IBM AIX CVE-2017-1093 Local Privilege Escalation Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95891

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/93841

Cisco WebEx Extension 'magic URL' Remote Command Execution Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95737

Zimbra Collaboration Suite CVE-2016-3406 Multiple Cross Site Request Forgery Vulnerabilities
2017-01-31
http://www.securityfocus.com/bid/95890

IBM AIX CVE-2016-8944 Local Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95888

PEAR Base System CVE-2017-5630 Security Bypass Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95882

Zimbra Collaboration Suite CVE-2016-3405 Multiple Unspecified Security Vulnerabilities
2017-01-31
http://www.securityfocus.com/bid/95886

Zimbra Collaboration Suite CVE-2016-3402 Unspecified Security Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95887

Trend Micro Virtual Mobile Infrastructure CVE-2016-6270 Remote Code Execution Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95884

OnionShare '/tmp/onionshare' Directory Local Security Bypass Vulnerability
2017-01-31
http://www.securityfocus.com/bid/90821

Botan CVE-2016-9132 Integer Overflow Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95879

QEMU 'sdhci.c' Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95885

wavpack Multiple Out of Bounds Reads Local Denial of Service Vulnerabilities
2017-01-31
http://www.securityfocus.com/bid/95883

Artifex MUJS CVE-2016-10141 Integer Overflow Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95876

HexChat 'src/common/text.c' Directory Traversal Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95881

libquicktime 'quicktime_read_pascal()' Function Integer Overflow Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95880

Linux Kernel CVE-2017-2596 Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95878

Dlink DWR-932B Multiple Security Vulnerabilities
2017-01-31
http://www.securityfocus.com/bid/95877

GNU Screen 'screen.c' Local Privilege Escalation Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95873

Revive Adserver REVIVE-SA-2017-001 Multiple Security Vulnerabilities
2017-01-31
http://www.securityfocus.com/bid/95875

RubyGems minitar and archive-tar-minitar CVE-2016-10173 Local Directory Traversal Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95874

Adobe Flash Player APSB16-10 Multiple Use After Free Remote Code Execution Vulnerabilities
2017-01-31
http://www.securityfocus.com/bid/85926

Squashfs and sasquatch 'read_fragment_table_4' Multiple Stack Buffer Overflow Vulnerabilities
2017-01-31
http://www.securityfocus.com/bid/75272

Adobe Reader and Acrobat CVE-2016-1008 Remote Code Execution Vulnerability
2017-01-31
http://www.securityfocus.com/bid/84216

Cisco Unified Communications Manager CVE-2017-3798 Cross Site Scripting Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95872

SVG Salamander CVE-2017-5617 Server Side Request Forgery Security Bypass Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95871

cgiemail and cgiecho Multiple Security Vulnerabilities
2017-01-31
http://www.securityfocus.com/bid/95870Trend Micro Virtual Mobile Infrastructure CVE-2016-6270 Remote Code Execution Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95884

OnionShare '/tmp/onionshare' Directory Local Security Bypass Vulnerability
2017-01-31
http://www.securityfocus.com/bid/90821

Botan CVE-2016-9132 Integer Overflow Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95879

QEMU 'sdhci.c' Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95885

wavpack Multiple Out of Bounds Reads Local Denial of Service Vulnerabilities
2017-01-31
http://www.securityfocus.com/bid/95883

Artifex MUJS CVE-2016-10141 Integer Overflow Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95876

HexChat 'src/common/text.c' Directory Traversal Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95881

libquicktime 'quicktime_read_pascal()' Function Integer Overflow Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95880

Linux Kernel CVE-2017-2596 Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95878

Dlink DWR-932B Multiple Security Vulnerabilities
2017-01-31
http://www.securityfocus.com/bid/95877

GNU Screen 'screen.c' Local Privilege Escalation Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95873

Revive Adserver REVIVE-SA-2017-001 Multiple Security Vulnerabilities
2017-01-31
http://www.securityfocus.com/bid/95875

RubyGems minitar and archive-tar-minitar CVE-2016-10173 Local Directory Traversal Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95874

Adobe Flash Player APSB16-10 Multiple Use After Free Remote Code Execution Vulnerabilities
2017-01-31
http://www.securityfocus.com/bid/85926

Squashfs and sasquatch 'read_fragment_table_4' Multiple Stack Buffer Overflow Vulnerabilities
2017-01-31
http://www.securityfocus.com/bid/75272

Adobe Reader and Acrobat CVE-2016-1008 Remote Code Execution Vulnerability
2017-01-31
http://www.securityfocus.com/bid/84216

Cisco Unified Communications Manager CVE-2017-3798 Cross Site Scripting Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95872

SVG Salamander CVE-2017-5617 Server Side Request Forgery Security Bypass Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95871

cgiemail and cgiecho Multiple Security Vulnerabilities
2017-01-31
http://www.securityfocus.com/bid/95870

Microsoft Office CVE-2016-7276 Information Disclosure Vulnerability
2017-01-31
http://www.securityfocus.com/bid/94666

Microsoft Office CVE-2016-7262 Remote Code Execution Vulnerability
2017-01-31
http://www.securityfocus.com/bid/94660

Perl CVE-2015-8853 Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/86707

Perl CVE-2016-6185 Local Privilege Escalation Vulnerability
2017-01-31
http://www.securityfocus.com/bid/91685

Perl CVE-2016-1238 Local Privilege Escalation Vulnerability
2017-01-31
http://www.securityfocus.com/bid/92136

Perl 'File::Spec' module CVE-2015-8607 Security Bypass Vulnerability
2017-01-31
http://www.securityfocus.com/bid/80504

Perl 'perl.c' CVE-2016-2381 Security Bypass Vulnerability
2017-01-31
http://www.securityfocus.com/bid/83802

Pivotal RabbitMQ Products CVE-2016-9877 Authentication Bypass Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95065

lcms2 CVE-2016-10165 Out-of-Bounds Read Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95808

GNU a2ps CVE-2014-0466 Arbitrary Command Execution Vulnerability
2017-01-31
http://www.securityfocus.com/bid/66660

KDE Ark CVE-2017-5330 Arbitrary Code Execution Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95349Perl CVE-2015-8853 Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/86707

Perl CVE-2016-6185 Local Privilege Escalation Vulnerability
2017-01-31
http://www.securityfocus.com/bid/91685

Perl CVE-2016-1238 Local Privilege Escalation Vulnerability
2017-01-31
http://www.securityfocus.com/bid/92136

Perl 'File::Spec' module CVE-2015-8607 Security Bypass Vulnerability
2017-01-31
http://www.securityfocus.com/bid/80504

Perl 'perl.c' CVE-2016-2381 Security Bypass Vulnerability
2017-01-31
http://www.securityfocus.com/bid/83802

Pivotal RabbitMQ Products CVE-2016-9877 Authentication Bypass Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95065

lcms2 CVE-2016-10165 Out-of-Bounds Read Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95808

GNU a2ps CVE-2014-0466 Arbitrary Command Execution Vulnerability
2017-01-31
http://www.securityfocus.com/bid/66660

KDE Ark CVE-2017-5330 Arbitrary Code Execution Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95349

FirewallD CVE-2016-5410 Security Bypass Vulnerability
2017-01-31
http://www.securityfocus.com/bid/92481

libgd Multiple Security Vulnerabilities
2017-01-31
http://www.securityfocus.com/bid/95869

FFmpeg 'libavformat/avidec.c' Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/94839

FFmpeg CVE-2016-7555 Information Disclosure Vulnerability
2017-01-31
http://www.securityfocus.com/bid/94838

FFmpeg 'libavcodec/g726.c' Out of Bounds Read Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/94841

FFmpeg CVE-2016-7905 Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/94837

FFmpeg CVE-2016-7562 Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/94835

FFmpeg CVE-2016-7785 Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/94833

FFmpeg CVE-2016-7502 Out of Bounds Read Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/94834

HP Smart Storage Administrator CVE-2016-8523 Remote Code Execution Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95868

Netgear WNR2000 Multiple Security Vulnerabilities
2017-01-31
http://www.securityfocus.com/bid/95867

JasPer 'jpc_dec.c' Null Pointer Dereference Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95864

JasPer CVE-2016-8883 Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95865

CubeCart CVE-2017-2098 Directory Traversal Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95866

pecl_http CVE-2016-5873 Buffer Overflow Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95863

FFmpeg CVE-2016-6164 Integer Overflow Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95862

ownCloud Direct Request Security Bypass Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95861

Huawei OceanStor 5800 CVE-2016-5822 Remote Denial of Service Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95854

Skype for Windows CVE-2016-5720 Untrusted Search Path vulnerability
2017-01-31
http://www.securityfocus.com/bid/95859

Zimbra Collaboration Suite CVE-2016-3401 Unspecified Security Vulnerability
2017-01-31
http://www.securityfocus.com/bid/95860

tcpdump Multiple Buffer Overflow Vulnerabilities
2017-01-31
http://www.securityfocus.com/bid/95852

SANS News

Malicious Office files using fileless UAC bypass to drop KEYBASE malware

Threatpost

Telemarketing Firm Leaks 400,000 Recorded Calls

Facebook Tackles Account Recovery with Delegated Recovery Protocol

Nested, Targeted Attacks Built for Reconnaissance

Nicolas Brulez on Malware Reverse Engineering Tips and Tricks

Exploit

Multiple Netgear Routers - Password Disclosure

Viscosity 1.6.7 - Privilege Escalation

30.1.2017

Bugtraq

[security bulletin] HPESBMU03701 rev.1 - HPE Smart Storage Administrator, Remote Arbitrary Code Execution 2017-01-30
security-alert hpe com

Secunia Research: libarchive "lha_read_file_header_1()" Out-Of-Bounds Memory Access Denial of Service Vulnerability 2017-01-30
Secunia Research (remove-vuln secunia com)

secuvera-SA-2017-01: Privilege escalation in an OPSI Managed Client environment ("rise of the machines") 2017-01-30
sbieber secuvera de

Persistent Cross-Site Scripting vulnerability in User Access Manager WordPress Plugin 2017-01-28
Summer of Pwnage (lists securify nl)

Multiple blind SQL injection vulnerabilities in FormBuilder WordPress Plugin 2017-01-28
Summer of Pwnage (lists securify nl)

CVE-2017-3160: Gradle Distribution URL used by Cordova-Android does not use https by default 2017-01-27
bowserj gmail com

[SECURITY] [DSA 3773-1] openssl security update 2017-01-27
Moritz Muehlenhoff (jmm debian org)

ESA-2016-133: EMC Data Protection Advisor Path Traversal Vulnerability 2017-01-26
EMC Product Security Response Center (Security_Alert emc com)

ESA-2016-154: RSA BSAFE® Crypto-J Multiple Security Vulnerabilities 2017-01-26
EMC Product Security Response Center (Security_Alert emc com)

ESA-2016-037: EMC PowerPath Management Appliance Information Disclosure Vulnerability 2017-01-26
EMC Product Security Response Center (Security_Alert emc com)

Secunia Research: Oracle Outside In VSDX Use-After-Free Vulnerability 2017-01-27
Secunia Research (remove-vuln secunia com)

[slackware-security] mozilla-thunderbird (SSA:2017-026-01) 2017-01-27
Slackware Security Team (security slackware com)

Malware

Trojan:Win32/Mupad.A
Ransom:Win32/Cerber.HVT
Ransom:Win32/Cerber.A
Trojan:Win32/Pdfphish
PWS:HTML/Misfhing.B
Trojan:Win32/Pdfphish.BU
TrojanSpy:MSIL/Lachemp.A
Ransom:Win32/Wagcrypt.A

Phishing

Paypal

29th January 2017

Important update required.

Chase

29th January 2017

CHASE BANK - SECURITY NOTICE!

Credit Union

29th January 2017

Navy Federal Credit Union :
Account Security Verification
Alert

Vulnerebility

ASUS RT-N56U CVE-2017-5632 Unspecified Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95857

Cisco WebEx Extension 'magic URL' Remote Command Execution Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95737

Sophos Web Appliance CVE-2016-9554 Remote Command Injection Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95858

MuJS CVE-2017-5628 Integer Overflow Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95855

Artifex MuJS 'mujs/jsrun.c' Integer Overflow Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95856

Sophos Web Appliance CVE-2016-9553 Multiple Remote Command Injection Vulnerabilities
2017-01-30
http://www.securityfocus.com/bid/95853

Moment.js CVE-2016-4055 Remote Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95849

Piwigo CVE-2017-5608 Cross Site Scripting Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95848

RETIRED: ownCloud DLL Loading Local Code Execution Vulnerability
2017-01-30
http://www.securityfocus.com/bid/92574

jwt CVE-2016-7037 Security Bypass Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95847

python-jose CVE-2016-7036 Unspecified Security Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95845

IBM BladeCenter Advanced Management Module CVE-2016-8232 Cross Site Scripting Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95839

CakePHP CVE-2016-4793 Security Bypass Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95846

Apache Cordova For Android CVE-2017-3160 Man in the Middle Security Bypass Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95838

ownCloud Desktop Client Local Code Injection Vulnerability
2017-01-30
http://www.securityfocus.com/bid/92627

libgd 'dynamicGetbuf()' Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95840

libgd 'gdImageCreate()' Function Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95841

Multiple Lenovo Products CVE-2016-8226 Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95844

Libgd CVE-2016-6912 Security Bypass Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95843

Lenovo Edge USB Keyboard Driver CVE-2016-8225 Local Privilege Escalation Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95842

libarchive 'lha_read_file_header_1()' Function Memory Corruption Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95837

OpenSSL CVE-2017-3731 Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95813

OpenSSL CVE-2016-7056 Local Information Disclosure Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95375

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/93841

eClinicalWorks healow@work CVE-2017-5598 SQL Injection Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95836

eClinicalWorks Patient Portal CVE-2017-5599 Cross Site Scripting Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95835

Microsoft ASP.NET Core MVC Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95834

WordPress Prior to 4.7.2 Multiple Security Vulnerabilities
2017-01-30
http://www.securityfocus.com/bid/95816

EMC Data Protection Advisor CVE-2016-8211 Directory Traversal Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95833

EMC RSA BSAFE Crypto-J Security Bypass and Information Disclosure Vulnerabilities
2017-01-30
http://www.securityfocus.com/bid/95831RETIRED: ownCloud DLL Loading Local Code Execution Vulnerability
2017-01-30
http://www.securityfocus.com/bid/92574

jwt CVE-2016-7037 Security Bypass Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95847

python-jose CVE-2016-7036 Unspecified Security Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95845

IBM BladeCenter Advanced Management Module CVE-2016-8232 Cross Site Scripting Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95839

CakePHP CVE-2016-4793 Security Bypass Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95846

Apache Cordova For Android CVE-2017-3160 Man in the Middle Security Bypass Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95838

ownCloud Desktop Client Local Code Injection Vulnerability
2017-01-30
http://www.securityfocus.com/bid/92627

libgd 'dynamicGetbuf()' Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95840

libgd 'gdImageCreate()' Function Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95841

Multiple Lenovo Products CVE-2016-8226 Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95844

Libgd CVE-2016-6912 Security Bypass Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95843

Lenovo Edge USB Keyboard Driver CVE-2016-8225 Local Privilege Escalation Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95842

libarchive 'lha_read_file_header_1()' Function Memory Corruption Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95837

Cisco WebEx Extension 'magic URL' Remote Command Execution Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95737

OpenSSL CVE-2017-3731 Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95813

OpenSSL CVE-2016-7056 Local Information Disclosure Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95375

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/93841

eClinicalWorks healow@work CVE-2017-5598 SQL Injection Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95836

eClinicalWorks Patient Portal CVE-2017-5599 Cross Site Scripting Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95835

Microsoft ASP.NET Core MVC Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95834

WordPress Prior to 4.7.2 Multiple Security Vulnerabilities
2017-01-30
http://www.securityfocus.com/bid/95816

EMC Data Protection Advisor CVE-2016-8211 Directory Traversal Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95833

EMC RSA BSAFE Crypto-J Security Bypass and Information Disclosure Vulnerabilities
2017-01-30
http://www.securityfocus.com/bid/95831

EMC PowerPath Virtual (Management) Appliance CVE-2016-0890 Information Disclosure Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95832

EMC Data Domain OS CVE-2016-8216 Local Command Injection Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95829

Drupal Microblog Remote Security Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95830

Multiple F5 BIG-IP Products CVE-2016-9249 Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95825

EMC Documentum D2 CVE-2016-9873 DQL Injection Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95828

Drupal OAuth Module Access Bypass Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95826

EMC RecoverPoint Local Information Disclosure and Command Injection Vulnerabilities
2017-01-30
http://www.securityfocus.com/bid/95821
WordPress Prior to 4.7.2 Multiple Security Vulnerabilities
2017-01-30
http://www.securityfocus.com/bid/95816

EMC Data Protection Advisor CVE-2016-8211 Directory Traversal Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95833

EMC RSA BSAFE Crypto-J Security Bypass and Information Disclosure Vulnerabilities
2017-01-30
http://www.securityfocus.com/bid/95831

EMC PowerPath Virtual (Management) Appliance CVE-2016-0890 Information Disclosure Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95832

EMC Data Domain OS CVE-2016-8216 Local Command Injection Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95829

Drupal Microblog Remote Security Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95830

Multiple F5 BIG-IP Products CVE-2016-9249 Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95825

EMC Documentum D2 CVE-2016-9873 DQL Injection Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95828

Drupal OAuth Module Access Bypass Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95826

EMC RecoverPoint Local Information Disclosure and Command Injection Vulnerabilities
2017-01-30
http://www.securityfocus.com/bid/95821

Drupal SalesCloud Module Access Bypass Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95822

OpenStack oslo.middleware CVE-2017-2592 Information Disclosure Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95827

Terminal Services Agent CVE-2017-5328 Spoofing Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95823

EMC Documentum D2 CVE-2016-9872 Multiple Cross Site Scripting Vulnerabilities
2017-01-30
http://www.securityfocus.com/bid/95824

CA Common Services CVE-2016-9795 Local Privilege Escalation Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95819

Mozilla Firefox Multiple Security Vulnerabilities
2017-01-30
http://www.securityfocus.com/bid/95769

Mozilla Firefox CVE-2017-5376 Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95758

Mozilla Firefox CVE-2017-5373 Multiple Unspecified Memory Corruption Vulnerabilities
2017-01-30
http://www.securityfocus.com/bid/95762

Mozilla Firefox CVE-2017-5375 ASLR and DEP Security Bypass Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95757

EMC RSA Web Threat Detection CVE-2016-0919 Unspecified HTML Injection Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95820

Multiple Eaton ePDU Products CVE-2016-9357 Directory Traversal Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95817

Palo Alto Networks Terminal Services Agent CVE-2017-5329 Local Privilege Escalation Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95818

libXpm CVE-2016-10164 Heap Based Buffer Overflow Vulnerability
2017-01-30
http://www.securityfocus.com/bid/95785

Microsoft Internet Explorer XSS Filter CVE-2016-3212 Security Bypass Vulnerability
2017-01-30
http://www.securityfocus.com/bid/91105

RETIRED: Microsoft Internet Explorer XSS Filter Security Bypass Vulnerability
2017-01-30
http://www.securityfocus.com/bid/91166

OpenSSL CVE-2016-7055 Denial of Service Vulnerability
2017-01-30
http://www.securityfocus.com/bid/94242

Linux Kernel 'sound/core/pcm_lib.c' Local Use After Free Memory Corruption Vulnerability
2017-01-30
http://www.securityfocus.com/bid/94654

Linux Kernel CVE-2016-9576 Use After Free Memory Corruption Vulnerability
2017-01-30
http://www.securityfocus.com/bid/94821

Squid HTTP proxy Multiple Information Disclosure Vulnerabilities
2017-01-30
http://www.securityfocus.com/bid/94953

Google Chrome Multiple Security Vulnerabilities
2017-01-30
http://www.securityfocus.com/bid/95792

SANS News

py2exe Decompiling - Part 2

Threatpost

Many Android VPN Apps Breaking Privacy Promises

Exploit

VirtualBox < 5.0.32 / < 5.1.14 - Privilege Escalation

OpenSSL 1.1.0 - Remote Client Denial of Service

Itech Freelancer Script 5.13 - SQL Injection

Itech Dating Script 3.26 - SQL Injection

Itech Classifieds Script 7.27 - SQL Injection

Itech B2B Script 4.28 - SQL Injection

Auction Script 6.49 - SQL Injection

Caregiver Script 2.57 - SQL Injection

PEAR Base System 1.10.1 - Arbitrary File Download

TrueConf Server 4.3.7 - Multiple Vulnerabilities

Linux - Multi/Dual mode execve("/bin/sh", NULL, 0) Shellcode (37 bytes)

29.1.2017

Bugtraq

 

Malware

TrojanSpy:MSIL/Lachemp.A

Phishing

Bank of America Online.

28th January 2017

You Have 1 New Message..

AOL

26th January 2017

A woman has tagged your
account

AOL

26th January 2017

youve got an incoming request

AOL

26th January 2017

A woman appears to have tagged
your very own profile page

Vulnerebility

EMC Data Protection Advisor CVE-2016-8211 Directory Traversal Vulnerability
2017-01-29
http://www.securityfocus.com/bid/95833

EMC RSA BSAFE Crypto-J Security Bypass and Information Disclosure Vulnerabilities
2017-01-29
http://www.securityfocus.com/bid/95831

EMC PowerPath Virtual (Management) Appliance CVE-2016-0890 Information Disclosure Vulnerability
2017-01-29
http://www.securityfocus.com/bid/95832

EMC Data Domain OS CVE-2016-8216 Local Command Injection Vulnerability
2017-01-29
http://www.securityfocus.com/bid/95829

Drupal Microblog Remote Security Vulnerability
2017-01-29
http://www.securityfocus.com/bid/95830

Multiple F5 BIG-IP Products CVE-2016-9249 Denial of Service Vulnerability
2017-01-29
http://www.securityfocus.com/bid/95825

EMC Documentum D2 CVE-2016-9873 DQL Injection Vulnerability
2017-01-29
http://www.securityfocus.com/bid/95828

Drupal OAuth Module Access Bypass Vulnerability
2017-01-29
http://www.securityfocus.com/bid/95826

EMC RecoverPoint Local Information Disclosure and Command Injection Vulnerabilities
2017-01-29
http://www.securityfocus.com/bid/95821

Drupal SalesCloud Module Access Bypass Vulnerability
2017-01-29
http://www.securityfocus.com/bid/95822

OpenStack oslo.middleware CVE-2017-2592 Information Disclosure Vulnerability
2017-01-29
http://www.securityfocus.com/bid/95827

Terminal Services Agent CVE-2017-5328 Spoofing Vulnerability
2017-01-29
http://www.securityfocus.com/bid/95823

EMC Documentum D2 CVE-2016-9872 Multiple Cross Site Scripting Vulnerabilities
2017-01-29
http://www.securityfocus.com/bid/95824

CA Common Services CVE-2016-9795 Local Privilege Escalation Vulnerability
2017-01-29
http://www.securityfocus.com/bid/95819

Mozilla Firefox Multiple Security Vulnerabilities
2017-01-29
http://www.securityfocus.com/bid/95769

Mozilla Firefox CVE-2017-5376 Denial of Service Vulnerability
2017-01-29
http://www.securityfocus.com/bid/95758

Mozilla Firefox CVE-2017-5373 Multiple Unspecified Memory Corruption Vulnerabilities
2017-01-29
http://www.securityfocus.com/bid/95762

Mozilla Firefox CVE-2017-5375 ASLR and DEP Security Bypass Vulnerability
2017-01-29
http://www.securityfocus.com/bid/95757

EMC RSA Web Threat Detection CVE-2016-0919 Unspecified HTML Injection Vulnerability
2017-01-29
http://www.securityfocus.com/bid/95820

Multiple Eaton ePDU Products CVE-2016-9357 Directory Traversal Vulnerability
2017-01-29
http://www.securityfocus.com/bid/95817

Palo Alto Networks Terminal Services Agent CVE-2017-5329 Local Privilege Escalation Vulnerability
2017-01-29
http://www.securityfocus.com/bid/95818

libXpm CVE-2016-10164 Heap Based Buffer Overflow Vulnerability
2017-01-29
http://www.securityfocus.com/bid/95785

WordPress Prior to 4.7.2 Multiple Security Vulnerabilities
2017-01-29
http://www.securityfocus.com/bid/95816

Microsoft Internet Explorer XSS Filter CVE-2016-3212 Security Bypass Vulnerability
2017-01-29
http://www.securityfocus.com/bid/91105

RETIRED: Microsoft Internet Explorer XSS Filter Security Bypass Vulnerability
2017-01-29
http://www.securityfocus.com/bid/91166

OpenSSL CVE-2016-7055 Denial of Service Vulnerability
2017-01-29
http://www.securityfocus.com/bid/94242

Linux Kernel 'sound/core/pcm_lib.c' Local Use After Free Memory Corruption Vulnerability
2017-01-29
http://www.securityfocus.com/bid/94654

Linux Kernel CVE-2016-9576 Use After Free Memory Corruption Vulnerability
2017-01-29
http://www.securityfocus.com/bid/94821

Squid HTTP proxy Multiple Information Disclosure Vulnerabilities
2017-01-29
http://www.securityfocus.com/bid/94953

Google Chrome Multiple Security Vulnerabilities
2017-01-29
http://www.securityfocus.com/bid/95792
EMC Data Protection Advisor CVE-2016-8211 Directory Traversal Vulnerability
2017-01-28
http://www.securityfocus.com/bid/95833

EMC RSA BSAFE Crypto-J Security Bypass and Information Disclosure Vulnerabilities
2017-01-28
http://www.securityfocus.com/bid/95831

EMC PowerPath Virtual (Management) Appliance CVE-2016-0890 Information Disclosure Vulnerability
2017-01-28
http://www.securityfocus.com/bid/95832

EMC Data Domain OS CVE-2016-8216 Local Command Injection Vulnerability
2017-01-28
http://www.securityfocus.com/bid/95829

Drupal Microblog Remote Security Vulnerability
2017-01-28
http://www.securityfocus.com/bid/95830

Multiple F5 BIG-IP Products CVE-2016-9249 Denial of Service Vulnerability
2017-01-28
http://www.securityfocus.com/bid/95825

EMC Documentum D2 CVE-2016-9873 DQL Injection Vulnerability
2017-01-28
http://www.securityfocus.com/bid/95828

Drupal OAuth Module Access Bypass Vulnerability
2017-01-28
http://www.securityfocus.com/bid/95826

EMC RecoverPoint Local Information Disclosure and Command Injection Vulnerabilities
2017-01-28
http://www.securityfocus.com/bid/95821

Drupal SalesCloud Module Access Bypass Vulnerability
2017-01-28
http://www.securityfocus.com/bid/95822

OpenStack oslo.middleware CVE-2017-2592 Information Disclosure Vulnerability
2017-01-28
http://www.securityfocus.com/bid/95827

Terminal Services Agent CVE-2017-5328 Spoofing Vulnerability
2017-01-28
http://www.securityfocus.com/bid/95823

EMC Documentum D2 CVE-2016-9872 Multiple Cross Site Scripting Vulnerabilities
2017-01-28
http://www.securityfocus.com/bid/95824

CA Common Services CVE-2016-9795 Local Privilege Escalation Vulnerability
2017-01-28
http://www.securityfocus.com/bid/95819

Mozilla Firefox Multiple Security Vulnerabilities
2017-01-28
http://www.securityfocus.com/bid/95769

Mozilla Firefox CVE-2017-5376 Denial of Service Vulnerability
2017-01-28
http://www.securityfocus.com/bid/95758

Mozilla Firefox CVE-2017-5373 Multiple Unspecified Memory Corruption Vulnerabilities
2017-01-28
http://www.securityfocus.com/bid/95762

Mozilla Firefox CVE-2017-5375 ASLR and DEP Security Bypass Vulnerability
2017-01-28
http://www.securityfocus.com/bid/95757

EMC RSA Web Threat Detection CVE-2016-0919 Unspecified HTML Injection Vulnerability
2017-01-28
http://www.securityfocus.com/bid/95820

Multiple Eaton ePDU Products CVE-2016-9357 Directory Traversal Vulnerability
2017-01-28
http://www.securityfocus.com/bid/95817

Palo Alto Networks Terminal Services Agent CVE-2017-5329 Local Privilege Escalation Vulnerability
2017-01-28
http://www.securityfocus.com/bid/95818

libXpm CVE-2016-10164 Heap Based Buffer Overflow Vulnerability
2017-01-28
http://www.securityfocus.com/bid/95785

WordPress Prior to 4.7.2 Multiple Security Vulnerabilities
2017-01-28
http://www.securityfocus.com/bid/95816

Microsoft Internet Explorer XSS Filter CVE-2016-3212 Security Bypass Vulnerability
2017-01-28
http://www.securityfocus.com/bid/91105

RETIRED: Microsoft Internet Explorer XSS Filter Security Bypass Vulnerability
2017-01-28
http://www.securityfocus.com/bid/91166

OpenSSL CVE-2016-7055 Denial of Service Vulnerability
2017-01-28
http://www.securityfocus.com/bid/94242

Linux Kernel 'sound/core/pcm_lib.c' Local Use After Free Memory Corruption Vulnerability
2017-01-28
http://www.securityfocus.com/bid/94654

Linux Kernel CVE-2016-9576 Use After Free Memory Corruption Vulnerability
2017-01-28
http://www.securityfocus.com/bid/94821

Squid HTTP proxy Multiple Information Disclosure Vulnerabilities
2017-01-28
http://www.securityfocus.com/bid/94953

Google Chrome Multiple Security Vulnerabilities
2017-01-28
http://www.securityfocus.com/bid/95792

SANS News

What Keeps My Honeypot Busy These Days

Packet Analysis - Where do you start?

Request for Packets and Logs - TCP 5358

Threatpost

Google to Operate its Own Root CA

Dridex Returns With Windows UAC Bypass Method

WordPress 4.7.2 Update Fixes XSS, SQL Injection Bugs

Cisco Warns of Critical Flaw in Teleconferencing Gear

Exploit

WordPress Plugin Online Hotel Booking System Pro 1.0 - SQL Injection

Online Hotel Booking System Pro 1.2 - SQL Injection

WordPress Plugin WP Private Messages 1.0.1 - SQL Injection

Maian Weblog 4.0 - SQL Injection

My Photo Gallery 1.0 - SQL Injection

Palo Alto Networks Terminal Services Agent 7.0.3-13 - Integer Overflow

27.1.2017

Bugtraq

ESA-2016-133: EMC Data Protection Advisor Path Traversal Vulnerability 2017-01-26
EMC Product Security Response Center (Security_Alert emc com)

ESA-2016-154: RSA BSAFE® Crypto-J Multiple Security Vulnerabilities 2017-01-26
EMC Product Security Response Center (Security_Alert emc com)

ESA-2016-037: EMC PowerPath Management Appliance Information Disclosure Vulnerability 2017-01-26
EMC Product Security Response Center (Security_Alert emc com)

Secunia Research: Oracle Outside In VSDX Use-After-Free Vulnerability 2017-01-27
Secunia Research (remove-vuln secunia com)

[slackware-security] mozilla-thunderbird (SSA:2017-026-01) 2017-01-27
Slackware Security Team (security slackware com)

CA20170126-01: Security Notice for CA Common Services casrvc 2017-01-26
Kotas, Kevin J (Kevin Kotas ca com)

[SECURITY] [DSA 3772-1] libxpm security update 2017-01-26
Salvatore Bonaccorso (carnil debian org)

ESA-2016-167: EMC Documentum D2 Multiple Vulnerabilities 2017-01-26
EMC Product Security Response Center (Security_Alert emc com)

ESA-2016-160: EMC Data Domain DD OS Command Injection Vulnerability 2017-01-26
EMC Product Security Response Center (Security_Alert emc com)

ESA-2016-132: EMC RecoverPoint Multiple Vulnerabilities 2017-01-26
EMC Product Security Response Center (Security_Alert emc com)

ESA-2016-092: RSA® Web Threat Detection Cross Site Scripting Vulnerability 2017-01-26
EMC Product Security Response Center (Security_Alert emc com)

PEAR HTTP_Upload v1.0.0b3 Arbitrary File Upload 2017-01-26
apparitionsec gmail com (hyp3rlinx)

Malware

Trojan:Win32/Pdfphish
PWS:HTML/Misfhing.B
Trojan:Win32/Pdfphish.BU

Phishing

AOL

26th January 2017

A woman has tagged your
account

AOL

26th January 2017

youve got an incoming request

AOL

26th January 2017

A woman appears to have tagged
your very own profile page

auto-confirrm Amazon.co.uk

26th January 2017

Order ID : ID : 83771 "Your
Amazon.co.uk order "Apple
Leather..."

Vulnerebility

OpenStack oslo.middleware CVE-2017-2592 Information Disclosure Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95827

Terminal Services Agent CVE-2017-5328 Spoofing Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95823

EMC Documentum D2 CVE-2016-9872 Multiple Cross Site Scripting Vulnerabilities
2017-01-27
http://www.securityfocus.com/bid/95824

CA Common Services CVE-2016-9795 Local Privilege Escalation Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95819

Mozilla Firefox Multiple Security Vulnerabilities
2017-01-27
http://www.securityfocus.com/bid/95769

Mozilla Firefox CVE-2017-5376 Denial of Service Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95758

Mozilla Firefox CVE-2017-5373 Multiple Unspecified Memory Corruption Vulnerabilities
2017-01-27
http://www.securityfocus.com/bid/95762

Mozilla Firefox CVE-2017-5375 ASLR and DEP Security Bypass Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95757

EMC RSA Web Threat Detection CVE-2016-0919 Unspecified HTML Injection Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95820

Multiple Eaton ePDU Products CVE-2016-9357 Directory Traversal Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95817

Palo Alto Networks Terminal Services Agent CVE-2017-5329 Local Privilege Escalation Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95818

libXpm CVE-2016-10164 Heap Based Buffer Overflow Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95785

WordPress Prior to 4.7.2 Multiple Security Vulnerabilities
2017-01-27
http://www.securityfocus.com/bid/95816

Microsoft Internet Explorer XSS Filter CVE-2016-3212 Security Bypass Vulnerability
2017-01-27
http://www.securityfocus.com/bid/91105

RETIRED: Microsoft Internet Explorer XSS Filter Security Bypass Vulnerability
2017-01-27
http://www.securityfocus.com/bid/91166

OpenSSL CVE-2016-7055 Denial of Service Vulnerability
2017-01-27
http://www.securityfocus.com/bid/94242

Linux Kernel 'sound/core/pcm_lib.c' Local Use After Free Memory Corruption Vulnerability
2017-01-27
http://www.securityfocus.com/bid/94654

Linux Kernel CVE-2016-9576 Use After Free Memory Corruption Vulnerability
2017-01-27
http://www.securityfocus.com/bid/94821

Squid HTTP proxy Multiple Information Disclosure Vulnerabilities
2017-01-27
http://www.securityfocus.com/bid/94953

Google Chrome Multiple Security Vulnerabilities
2017-01-27
http://www.securityfocus.com/bid/95792

Oracle MySQL CVE-2016-6663 Unspecified Security Vulnerability
2017-01-27
http://www.securityfocus.com/bid/92911

Oracle MySQL CVE-2016-6662 Remote Code Execution Vulnerability
2017-01-27
http://www.securityfocus.com/bid/92912

Belden Hirschmann GECKO CVE-2017-5163 Information Disclosure Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95815

OpenSSL CVE-2017-3732 Information Disclosure Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95814

OpenSSL CVE-2017-3730 NULL Pointer Dereference Denial of Service Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95812

OpenSSL CVE-2017-3731 Denial of Service Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95813

JasPer 'jpc_t2dec.c' Remote Heap Buffer Overflow Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95811

JasPer 'jas_seq.c' Denial of Service Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95809

JasPer 'jp2_cod.c' Null Pointer Dereference Denial of Service Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95810

libarchive Multiple Security Vulnerabilities
2017-01-27
http://www.securityfocus.com/bid/93781OpenSSL CVE-2016-7055 Denial of Service Vulnerability
2017-01-27
http://www.securityfocus.com/bid/94242

Linux Kernel 'sound/core/pcm_lib.c' Local Use After Free Memory Corruption Vulnerability
2017-01-27
http://www.securityfocus.com/bid/94654

Linux Kernel CVE-2016-9576 Use After Free Memory Corruption Vulnerability
2017-01-27
http://www.securityfocus.com/bid/94821

Squid HTTP proxy Multiple Information Disclosure Vulnerabilities
2017-01-27
http://www.securityfocus.com/bid/94953

Google Chrome Multiple Security Vulnerabilities
2017-01-27
http://www.securityfocus.com/bid/95792

Oracle MySQL CVE-2016-6663 Unspecified Security Vulnerability
2017-01-27
http://www.securityfocus.com/bid/92911

Oracle MySQL CVE-2016-6662 Remote Code Execution Vulnerability
2017-01-27
http://www.securityfocus.com/bid/92912

Mozilla Firefox Multiple Security Vulnerabilities
2017-01-27
http://www.securityfocus.com/bid/95769

Mozilla Firefox CVE-2017-5376 Denial of Service Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95758

Mozilla Firefox CVE-2017-5375 ASLR and DEP Security Bypass Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95757

Mozilla Firefox CVE-2017-5373 Multiple Unspecified Memory Corruption Vulnerabilities
2017-01-27
http://www.securityfocus.com/bid/95762

Belden Hirschmann GECKO CVE-2017-5163 Information Disclosure Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95815

OpenSSL CVE-2017-3732 Information Disclosure Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95814

OpenSSL CVE-2017-3730 NULL Pointer Dereference Denial of Service Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95812

OpenSSL CVE-2017-3731 Denial of Service Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95813

JasPer 'jpc_t2dec.c' Remote Heap Buffer Overflow Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95811

JasPer 'jas_seq.c' Denial of Service Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95809

JasPer 'jp2_cod.c' Null Pointer Dereference Denial of Service Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95810

libarchive Multiple Security Vulnerabilities
2017-01-27
http://www.securityfocus.com/bid/93781

lcms2 CVE-2016-10165 Out-of-Bounds Read Denial of Service Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95808

Autodesk FBX-SDK CVE-2016-9306 Multiple Buffer Overflow Vulnerabilities
2017-01-27
http://www.securityfocus.com/bid/95807

PageKit CVE-2017-5594 Authentication Bypass Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95806

Splunk Unspecified Denial of Service Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95804

Network Time Protocol CVE-2015-5300 Man in the Middle Security Bypass Vulnerability
2017-01-27
http://www.securityfocus.com/bid/77312

Network Time Protocol CVE-2015-7704 Denial of Service Vulnerability
2017-01-27
http://www.securityfocus.com/bid/77280

Network Time Protocol CVE-2015-7705 Denial of Service Vulnerability
2017-01-27
http://www.securityfocus.com/bid/77284

Autodesk FBX-SDK CVE-2016-9305 Security Bypass Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95803

Autodesk FBX-SDK CVE-2016-9303 Multiple Buffer Overflow Vulnerabilities
2017-01-27
http://www.securityfocus.com/bid/95805

EMC Isilon OneFS CVE-2016-9871 Remote Privilege Escalation Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95800

Citrix XenServer CVE-2017-5572 Denial of Service Vulnerability
2017-01-27
http://www.securityfocus.com/bid/95801

SANS News

IOC's: Risks of False Positive Alerts Flood Ahead

Threatpost

Google to Block .js Attachments in Gmail

Bill Calls for Study of Cybersecurity Standards for Cars

Facebook Touts ‘Safer’ Security Key Login

Exploit

macOS 10.12.1 / iOS Kernel - 'host_self_trap' Use-After-Free

macOS 10.12.1 / iOS Kernel - 'IOService::matchPassive' Use-After-Free

macOS 10.12.1 / iOS 10.2 - Kernel Userspace Pointer Memory Corruption

Google Android - 'pm_qos' KASLR Bypass

Linux/x86_64 - execve /bin/sh Shellcode (22 bytes)

Haraka < 2.8.9 - Remote Command Execution

Autodesk Backburner Manager 3 < 2016.0.0.2150 - Null Dereference Denial of Service

Polycom VVX Web Interface - Change Admin Password

PHPBack < 1.3.1 - SQL Injection / Cross-Site Scripting

TM RG4332 Wireless Router - Arbitrary File Disclosure

Web Based TimeSheet Script - Authentication Bypass

KB Messages PHP Script 1.0 - Authentication Bypass

KB Login Authentication Script 1.1 - Authentication Bypass

KB Affiliate Referral Script 1.0 - Authentication Bypass

OpenSSH 6.8 < 6.9 - 'PTY' Privilege Escalation

Systemd 228 - Privilege Escalation (PoC)

26.1.2017

Bugtraq

PEAR HTTP_Upload v1.0.0b3 Arbitrary File Upload 2017-01-26
apparitionsec gmail com (hyp3rlinx)

[SECURITY] [DSA 3771-1] firefox-esr security update 2017-01-25
Moritz Muehlenhoff (jmm debian org)

Google Forms WordPress Plugin unauthenticated PHP Object injection vulnerability 2017-01-25
Summer of Pwnage (lists securify nl)

Cisco Security Advisory: Cisco TelePresence Multipoint Control Unit Remote Code Execution Vulnerability 2017-01-25
Cisco Systems Product Security Incident Response Team (psirt cisco com)

Cisco Security Advisory: Cisco Expressway Series and TelePresence VCS Denial of Service Vulnerability 2017-01-25
Cisco Systems Product Security Incident Response Team (psirt cisco com)

Cisco Security Advisory: Cisco Adaptive Security Appliance CX Context-Aware Security Denial of Service Vulnerability 2017-01-25
Cisco Systems Product Security Incident Response Team (psirt cisco com)

ESA-2016-166: EMC Isilon OneFS Privilege Escalation Vulnerability 2017-01-25
EMC Product Security Response Center (Security_Alert emc com)

OpenCart 2.3.0.2 CSRF - User Account Takeover 2017-01-25
Open Security (open opensecurity ca)

Malware

Trojan:Win32/Derbit.B

Phishing

AOL

26th January 2017

A woman has tagged your
account

AOL

26th January 2017

youve got an incoming request

AOL

26th January 2017

A woman appears to have tagged
your very own profile page

Vulnerebility

JasPer 'jpc_t2dec.c' Remote Heap Buffer Overflow Vulnerability
2017-01-26
http://www.securityfocus.com/bid/95811

JasPer 'jas_seq.c' Denial of Service Vulnerability
2017-01-26
http://www.securityfocus.com/bid/95809

JasPer 'jp2_cod.c' Null Pointer Dereference Denial of Service Vulnerability
2017-01-26
http://www.securityfocus.com/bid/95810

libarchive Multiple Security Vulnerabilities
2017-01-26
http://www.securityfocus.com/bid/93781

lcms2 CVE-2016-10165 Out-of-Bounds Read Denial of Service Vulnerability
2017-01-26
http://www.securityfocus.com/bid/95808

Autodesk FBX-SDK CVE-2016-9306 Multiple Buffer Overflow Vulnerabilities
2017-01-26
http://www.securityfocus.com/bid/95807

PageKit CVE-2017-5594 Authentication Bypass Vulnerability
2017-01-26
http://www.securityfocus.com/bid/95806

Splunk Unspecified Denial of Service Vulnerability
2017-01-26
http://www.securityfocus.com/bid/95804

Network Time Protocol CVE-2015-5300 Man in the Middle Security Bypass Vulnerability
2017-01-26
http://www.securityfocus.com/bid/77312

Network Time Protocol CVE-2015-7704 Denial of Service Vulnerability
2017-01-26
http://www.securityfocus.com/bid/77280

Network Time Protocol CVE-2015-7705 Denial of Service Vulnerability
2017-01-26
http://www.securityfocus.com/bid/77284

Autodesk FBX-SDK CVE-2016-9305 Security Bypass Vulnerability
2017-01-26
http://www.securityfocus.com/bid/95803

Autodesk FBX-SDK CVE-2016-9303 Multiple Buffer Overflow Vulnerabilities
2017-01-26
http://www.securityfocus.com/bid/95805

EMC Isilon OneFS CVE-2016-9871 Remote Privilege Escalation Vulnerability
2017-01-26
http://www.securityfocus.com/bid/95800

Citrix XenServer CVE-2017-5572 Denial of Service Vulnerability
2017-01-26
http://www.securityfocus.com/bid/95801

Autodesk FBX-SDK CVE-2016-9307 Multiple Buffer Overflow Vulnerabilities
2017-01-26
http://www.securityfocus.com/bid/95802

Autodesk FBX-SDK CVE-2016-9304 Multiple Buffer Overflow Vulnerabilities
2017-01-26
http://www.securityfocus.com/bid/95799

IETF IPv6 Protocol CVE-2016-10142 Denial of Service Vulnerability
2017-01-26
http://www.securityfocus.com/bid/95797

Wireshark CVE-2017-5597 Denial of Service Vulnerability
2017-01-26
http://www.securityfocus.com/bid/95798

OpenSSL CVE-2014-0224 Man in the Middle Security Bypass Vulnerability
2017-01-26
http://www.securityfocus.com/bid/67899

OpenSSL CVE-2014-0076 Information Disclosure Weakness
2017-01-26
http://www.securityfocus.com/bid/66363

OpenSSL 'ssl3_release_read_buffer()' Use-After-Free Memory Corruption Vulnerability
2017-01-26
http://www.securityfocus.com/bid/66801

OpenSSL CVE-2014-0195 Memory Corruption Vulnerability
2017-01-26
http://www.securityfocus.com/bid/67900

Citrix XenServer CVE-2017-5573 Security Bypass Vulnerability
2017-01-26
http://www.securityfocus.com/bid/95796

OpenSSL CVE-2016-0705 Denial of Service Vulnerability
2017-01-26
http://www.securityfocus.com/bid/83754

OpenSSL 'so_ssl3_write()' Function NULL Pointer Dereference Denial of Service Vulnerability
2017-01-26
http://www.securityfocus.com/bid/67193

OpenSSL DTLS CVE-2014-0221 Remote Denial of Service Vulnerability
2017-01-26
http://www.securityfocus.com/bid/67901

OpenSSL CVE-2014-3470 Denial of Service Vulnerability
2017-01-26
http://www.securityfocus.com/bid/67898

Wireshark CVE-2017-5596 ASTERIX Dissector Denial of Service Vulnerability
2017-01-26
http://www.securityfocus.com/bid/95795

Hawtio CVE-2017-2594 Directory Traversal Vulnerability
2017-01-26
http://www.securityfocus.com/bid/95793

SANS News

IOC's: Risks of False Positive Alerts Flood Ahead

Threatpost

Default Credentials Found in Schneider Electric Wonderware Historian

Half of Ransomware Victims Pay Criminals’ Demands to Recover Data

High-Severity Chrome Vulnerabilities Earn Researcher $32K in Rewards

Google to Block .js Attachments in Gmail

Exploit

Haraka <= 2.8.9 - Remote Command Execution

Autodesk Backburner Manager 3 < 2016.0.0.2150 - Null Dereference Denial of Service

Geutebrueck GCore 1.3.8.42/1.4.2.37 - Remote Code Execution (Metasploit)

Pear HTTP_Upload 1.0.0b3 - Arbitrary File Upload

Joomla! < 3.6.4 - Admin TakeOver

Joomla! < 2.5.2 - Admin Creation

Movie Portal Script 7.36 - Multiple Vulnerabilities

Man-db 2.6.7.1 - Privilege Escalation (PoC)

GNU Screen 4.5.0 - Privilege Escalation

GNU Screen 4.5.0 - Privilege Escalation (PoC)

25.1.2017

Bugtraq

OpenCart 2.3.0.2 CSRF - User Account Takeover 2017-01-25
Open Security (open opensecurity ca)

[security bulletin] HPSBST03642 rev.3 - HPE StoreVirtual Products running LeftHand OS using OpenSSL and OpenSSH, Remote Arbitrary Code Execution, Denial of Service (DoS), Disclosure of Sensitive Information, Unauthorized Access 2017-01-24
security-alert hpe com

[security bulletin] HPSBHF03695 rev.1 - HPE Ethernet Adaptors, Remote Denial of Service (DoS) 2017-01-24
security-alert hpe com

[security bulletin] HPSBHF03441 rev.2 - HPE iLO 3, iLO 4 and iLO 4 mRCA, Remote Multiple Vulnerabilities 2017-01-24
security-alert hpe com

Cisco Security Advisory: Cisco WebEx Browser Extension Remote Code Execution Vulnerability 2017-01-24
Cisco Systems Product Security Incident Response Team (psirt cisco com)

[security bulletin] HPSBGN03690 rev.1 - HPE Real User Monitor (RUM), Remote Disclosure of Information 2017-01-24
security-alert hpe com

CVE-2017-3241 - [ERPSCAN-17-006] Oracle OpenJDK - Java Serialization DoS 2017-01-24
ERPScan inc (erpscan online gmail com)

[ERPSCAN-17-005] Oracle PeopleSoft - XSS vulnerability CVE-2017-3300 2017-01-24
ERPScan inc (erpscan online gmail com)

[slackware-security] mozilla-firefox (SSA:2017-023-01) 2017-01-24
Slackware Security Team (security slackware com)

Malware

Trojan:MSIL/Upadter.A

Phishing

AOL

25th January 2017

A person has now tagged your
current user profile

Amazon UK

25th January 2017

Your Amazon.co.uk order "Apple
Leather..."

USAA

24th January 2017

You Have An Incoming Payment
Transfer

NatWest.

24th January 2017

NatWest - Account Review
Notification

Vulnerebility

PHP CVE-2016-10160 Remote Code Execution Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95783

QEMU CVE-2017-5579 Denial of Service Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95780

IBM PowerKVM CVE-2016-7076 Local Command Execution Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95778

QEMU 'virtio-gpu.c' Denial of Service Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95781

Support-Project Knowledge CVE-2017-2097 Unspecified Cross-Site Request Forgery Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95779

IBM Forms Experience Builder CVE-2016-6001 Server Side Request Forgery Security Bypass Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95777

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95773

smalruby-editor CVE-2017-2096 OS Command Injection Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95775

Nessus CVE-2016-9260 HTML Injection Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95772

PHP CVE-2016-10159 Integer Overflow Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95774

QEMU CVE-2016-10155 Denial of Service Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95770

Mozilla Firefox Multiple Security Vulnerabilities
2017-01-25
http://www.securityfocus.com/bid/95769

Linux Kernel CVE-2017-5576 Integer Overflow Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95767

PHP 'wddx.c' NULL Pointer Dereference Denial of Service Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95668

PHP CVE-2016-10161 Denial of Service Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95768

Schneider Electric Wonderware CVE-2017-5155 Historian Insecure Default Password Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95766

Linux Kernel CVE-2017-5577 Remote Buffer Overflow Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95765

PHP CVE-2016-10158 Denial of Service Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95764

Mozilla Firefox Multiple Security Vulnerabilities
2017-01-25
http://www.securityfocus.com/bid/95763

Multiple Intel Ethernet Controller CVE-2016-8106 Denial of Service Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95333

Mozilla Firefox CVE-2017-5373 Multiple Unspecified Memory Corruption Vulnerabilities
2017-01-25
http://www.securityfocus.com/bid/95762

Mozilla Firefox CVE-2017-5377 Memory Corruption Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95761

Cisco WebEx Extension 'magic URL' Remote Command Execution Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95737

Mozilla Firefox CVE-2017-5376 Denial of Service Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95758

Mozilla Firefox CVE-2017-5374 Multiple Memory Corruption Vulnerabilities
2017-01-25
http://www.securityfocus.com/bid/95759

Mozilla Firefox CVE-2017-5375 ASLR and DEP Security Bypass Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95757

ImageMagick CVE-2017-5511 Local Heap Buffer Overflow Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95746

ImageMagick CVE-2017-5510 Local Denial of Service Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95755

ImageMagick CVE-2017-5507 Local Information Disclosure Vulnerability
2017-01-25
http://www.securityfocus.com/bid/95752

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2017-01-25
http://www.securityfocus.com/bid/92630

SANS News

Malicious SVG Files in the Wild

Threatpost

AG Nominee Backs Law Enforcement’s Ability to ‘Overcome’ Encryption

SpyNote RAT Now Disguised As Netflix App
Charger Mobile Ransomware Removed from Google Play

Exploit

Mozilla Firefox < 50.0.2 - 'nsSMILTimeContainer::NotifyTimeChange()' Remote Code...

MyBB < 1.8.3 (with PHP 5.6 < 5.6.11) - Remote Code Execution

24.1.2017

Bugtraq

CVE-2017-3241 - [ERPSCAN-17-006] Oracle OpenJDK - Java Serialization DoS 2017-01-24
ERPScan inc (erpscan online gmail com)

[ERPSCAN-17-005] Oracle PeopleSoft - XSS vulnerability CVE-2017-3300 2017-01-24
ERPScan inc (erpscan online gmail com)

[slackware-security] mozilla-firefox (SSA:2017-023-01) 2017-01-24
Slackware Security Team (security slackware com)

APPLE-SA-2017-01-23-7 iTunes for Windows 12.5.5 2017-01-23
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-01-23-6 iCloud for Windows 6.1.1 2017-01-23
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-01-23-2 macOS 10.12.3 2017-01-23
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-01-23-5 Safari 10.0.3 2017-01-23
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-01-23-4 tvOS 10.1.1 2017-01-23
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-01-23-3 watchOS 3.1.3 2017-01-23
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2017-01-23-1 iOS 10.2.1 2017-01-23
Apple Product Security (product-security-noreply lists apple com)

ESA-2016-150: RSA® Security Analytics Reflected Cross-Site Scripting Vulnerability 2017-01-23
EMC Product Security Response Center (Security_Alert emc com)

ESA-2016-146: EMC Avamar Data Store and Avamar Virtual Edition Privilege Escalation Vulnerability 2017-01-23
EMC Product Security Response Center (Security_Alert emc com)

Malware

Trojan.Klonzyrat

Phishing

USAA

24th January 2017

You Have An Incoming Payment
Transfer

NatWest.

24th January 2017

NatWest - Account Review
Notification

Vulnerebility

Cisco WebEx Extension 'magic URL' Remote Command Execution Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95737

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2017-01-24
http://www.securityfocus.com/bid/92630

phpMyAdmin PMASA-2017-7 Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95738

WebKit Multiple Memory Corruption Vulnerabilities
2017-01-24
http://www.securityfocus.com/bid/95736

Apple iOS/watchOS/macOS CVE-2016-7644 Remote Code Execution Vulnerability
2017-01-24
http://www.securityfocus.com/bid/94904

Apple macOS/watchOS/iOS/tvOS Multiple Security Vulnerabilities
2017-01-24
http://www.securityfocus.com/bid/94905

Apple iOS/WatchOS/tvOS/Safari/iTunes/iCloud CVE-2016-7589 Memory Corruption Vulnerability
2017-01-24
http://www.securityfocus.com/bid/94908

Apple iOS/macOS/tvOS/watchOS CVE-2016-4688 Buffer Overflow Vulnerability
2017-01-24
http://www.securityfocus.com/bid/94572

Apple iOS/WatchOS/tvOS CVE-2016-7626 Memory Corruption Vulnerability
2017-01-24
http://www.securityfocus.com/bid/94852

Apple iOS and watchOS CVE-2016-7651 Security Bypass Vulnerability
2017-01-24
http://www.securityfocus.com/bid/94851

Apple iTunes/iCloud/Safari/iOS CVE-2017-2366 Multiple Memory Corruption Vulnerabilities
2017-01-24
http://www.securityfocus.com/bid/95733

Webkit CVE-2017-2371 Security Bypass Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95735

phpMyAdmin Incomplete Fix PMASA-2017-5 Security Bypass Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95734

phpMyAdmin PMASA-2017-6 Server Side Request Forgery Security Bypass Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95732

libarchive Multiple Security Vulnerabilities
2017-01-24
http://www.securityfocus.com/bid/93781

Apple iOS/macOS/tvOS/watchOS Multiple Security Vulnerabilities
2017-01-24
http://www.securityfocus.com/bid/95731

Neovim CVE-2016-1248 Command Execution Vulnerability
2017-01-24
http://www.securityfocus.com/bid/94478

PHP LibGD CVE-2016-8670 Stack Buffer Overflow Vulnerability
2017-01-24
http://www.securityfocus.com/bid/93594

PHP 'ext/wddx/wddx.c' NULL pointer Dereference Remote Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/94845

PHP 'src/gd.c' Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/94865

Apple iOS and watchOS CVE-2017-2352 Security Bypass Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95730

Apple iOS/tvOS/watchOS CVE-2017-2360 Arbitray Code Execution Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95729

WebKit CVE-2017-2363 Cross-Origin Security Bypass Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95728

WebKit Multiple Security Vulnerabilities
2017-01-24
http://www.securityfocus.com/bid/95727

WebKit CVE-2017-2364 Cross-Origin Security Bypass Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95725

phpMyAdmin PMASA-2017-4 Security Bypass Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95726

Apple macOS APPLE-SA-2017-01-23-2 Multiple Security Vulnerabilities
2017-01-24
http://www.securityfocus.com/bid/95723

Apple Safari CVE-2017-2359 Address Bar Spoofing Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95724

Apple iOS APPLE-SA-2017-01-23-1 Denial of Service and Security Bypass Vulnerabilities
2017-01-24
http://www.securityfocus.com/bid/95722

phpMyAdmin PMASA-2017-3 Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95721libarchive Multiple Security Vulnerabilities
2017-01-24
http://www.securityfocus.com/bid/93781

Apple iOS/macOS/tvOS/watchOS Multiple Security Vulnerabilities
2017-01-24
http://www.securityfocus.com/bid/95731

Neovim CVE-2016-1248 Command Execution Vulnerability
2017-01-24
http://www.securityfocus.com/bid/94478

PHP LibGD CVE-2016-8670 Stack Buffer Overflow Vulnerability
2017-01-24
http://www.securityfocus.com/bid/93594

PHP 'ext/wddx/wddx.c' NULL pointer Dereference Remote Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/94845

PHP 'src/gd.c' Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/94865

Apple iOS and watchOS CVE-2017-2352 Security Bypass Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95730

Apple iOS/tvOS/watchOS CVE-2017-2360 Arbitray Code Execution Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95729

WebKit CVE-2017-2363 Cross-Origin Security Bypass Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95728

WebKit Multiple Security Vulnerabilities
2017-01-24
http://www.securityfocus.com/bid/95727

WebKit CVE-2017-2364 Cross-Origin Security Bypass Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95725

phpMyAdmin PMASA-2017-4 Security Bypass Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95726

Apple macOS APPLE-SA-2017-01-23-2 Multiple Security Vulnerabilities
2017-01-24
http://www.securityfocus.com/bid/95723

Apple Safari CVE-2017-2359 Address Bar Spoofing Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95724

Apple iOS APPLE-SA-2017-01-23-1 Denial of Service and Security Bypass Vulnerabilities
2017-01-24
http://www.securityfocus.com/bid/95722

phpMyAdmin PMASA-2017-3 Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95721

phpMyAdmin PMASA-2017-1 Open Redirection Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95720

EMC Avamar Data Store and Avamar Virtual Edition Local Privilege Escalation Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95719

EMC RSA Security Analytics CVE-2016-8215 Unspecified Cross Site Scripting Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95718

Linux Kernel CVE-2017-5550 Local Information Disclosure Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95716

Linux Kernel CVE-2017-5549 Local Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95715

Linux Kernel CVE-2017-5546 Local Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95711

Linux Kernel CVE-2017-5551 Local Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95717

PHP 'ext/pcre/php_pcre.c' Information Disclosure Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95712

Cisco IOS Software CVE-2016-6473 Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/94815

Linux Kernel CVE-2016-10153 Local Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95713

Linux Kernel CVE-2016-10154 Local Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95714

Linux Kernel CVE-2017-5548 Local Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95710

Linux Kernel CVE-2017-5547 Local Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95709

Foxit Reader and PhantomPDF Multiple Security Vulnerabilities
2017-01-24
http://www.securityfocus.com/bid/95353phpMyAdmin PMASA-2017-3 Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95721

phpMyAdmin PMASA-2017-1 Open Redirection Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95720

EMC Avamar Data Store and Avamar Virtual Edition Local Privilege Escalation Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95719

EMC RSA Security Analytics CVE-2016-8215 Unspecified Cross Site Scripting Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95718

Linux Kernel CVE-2017-5550 Local Information Disclosure Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95716

Linux Kernel CVE-2017-5549 Local Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95715

Linux Kernel CVE-2017-5546 Local Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95711

Linux Kernel CVE-2017-5551 Local Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95717

PHP 'ext/pcre/php_pcre.c' Information Disclosure Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95712

Cisco IOS Software CVE-2016-6473 Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/94815

Linux Kernel CVE-2016-10153 Local Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95713

Linux Kernel CVE-2016-10154 Local Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95714

Linux Kernel CVE-2017-5548 Local Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95710

Linux Kernel CVE-2017-5547 Local Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95709

Foxit Reader and PhantomPDF Multiple Security Vulnerabilities
2017-01-24
http://www.securityfocus.com/bid/95353

PHP 'process_nested_data()' Incomplete Fix Use After Free Remote Code Execution Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95707

FiberHome Fengine S5800 Switches CVE-2017-5544 Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95708

b2evolution CVE-2017-5553 Cross Site Scripting Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95704

LibTIFF CVE-2017-5563 Heap Based Buffer Overflow Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95705

OnePlus 3 and 3T CVE-2017-5554 Local Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95706

Libimobiledevice Libplist 'plistutil.c' Heap Buffer Overflow Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95702

Wireshark Multiple Denial of Service Vulnerabilities
2017-01-24
http://www.securityfocus.com/bid/94369

Red Hat JBoss Enterprise Application Platform CVE-2016-8627 Remote Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95698

GeniXCMS CVE-2017-5575 SQL Injection Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95703

b2evolution Incomplete Fix CVE-2017-5539 Directory Traversal Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95700

GeniXCMS CVE-2017-5574 SQL Injection Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95701

NetBSD 'uipc_usrreq.c' Local Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/95697

Apache Tomcat CVE-2016-8745 Information Disclosure Vulnerability
2017-01-24
http://www.securityfocus.com/bid/94828

Oracle Java SE and JRockit CVE-2016-3427 Remote Security Vulnerability
2017-01-24
http://www.securityfocus.com/bid/86421

Apache Tomcat CVE-2016-6817 Denial of Service Vulnerability
2017-01-24
http://www.securityfocus.com/bid/94462

SANS News

Critical Vulnerability in Cisco WebEx Chrome Plugin

Threatpostpost

Heartbleed Persists on 200,000 Servers, Devices

Secure Email Service Lavabit Relaunches

Apple Patches Critical Kernel Vulnerabilities

Apps Carrying HummingBad Variant Booted From Google Play


Cisco Patches Critical Flaw in WebEx Chrome Plugin

Exploit

MyBB < 1.8.3 (with PHP 5.6 < 5.6.11) - Remote Code Execution

Cisco WebEx - 'nativeMessaging' Arbitrary Remote Command Execution

WD My Cloud Mirror 2.11.153 - Authentication Bypass / Remote Code Execution

Microsoft Remote Desktop Client for Mac 8.0.36 - Remote Code Execution

DiskSavvy Enterprise - GET Buffer Overflow (Metasploit)

Oracle OpenJDK Runtime Environment 1.8.0_112-b15 - Java Serialization Denial Of...

23.1.2017

Bugtraq

ESA-2016-150: RSA® Security Analytics Reflected Cross-Site Scripting Vulnerability 2017-01-23
EMC Product Security Response Center (Security_Alert emc com)

ESA-2016-146: EMC Avamar Data Store and Avamar Virtual Edition Privilege Escalation Vulnerability 2017-01-23
EMC Product Security Response Center (Security_Alert emc com)

Microsoft Remote Desktop Client for Mac Remote Code Execution - Update 2017-01-23
Filippo Cavallarin (filippo cavallarin wearesegment com)

[SECURITY] [DSA 3770-1] mariadb-10.0 security update 2017-01-22
Salvatore Bonaccorso (carnil debian org)

[SECURITY] [DSA 3769-1] libphp-swiftmailer security update 2017-01-22
Sebastien Delafond (seb debian org)

Executable installers are vulnerable^WEVIL (case 46): Pelles C allows arbitrary code execution 2017-01-21
Stefan Kanthak (stefan kanthak nexgo de)

Malware

Ransom:Win32/Spora.A

Phishing

EASY SETTLEMENT

23rd January 2017

Online Banking (Wire Transfer
)*************************Paym
ent Alert From Royal Bank Of
Scotland(R)****

service@intl.paypal.com

22nd January 2017

Reminder: We have updates on
our Policy Update page.

Vulnerebility

Wireshark Multiple Denial of Service Vulnerabilities
2017-01-23
http://www.securityfocus.com/bid/94369

Red Hat JBoss Enterprise Application Platform CVE-2016-8627 Remote Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95698

GeniXCMS CVE-2017-5575 SQL Injection Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95703

b2evolution Incomplete Fix CVE-2017-5539 Directory Traversal Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95700

GeniXCMS CVE-2017-5574 SQL Injection Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95701

NetBSD 'uipc_usrreq.c' Local Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95697

Apache Tomcat CVE-2016-8745 Information Disclosure Vulnerability
2017-01-23
http://www.securityfocus.com/bid/94828

Oracle Java SE and JRockit CVE-2016-3427 Remote Security Vulnerability
2017-01-23
http://www.securityfocus.com/bid/86421

Apache Tomcat CVE-2016-6817 Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/94462

Apache Tomcat CVE-2016-8735 Remote Code Execution Vulnerability
2017-01-23
http://www.securityfocus.com/bid/94463

Apache Tomcat CVE-2016-6816 Security Bypass Vulnerability
2017-01-23
http://www.securityfocus.com/bid/94461

Multiple TIBCO Products CVE-2017-3180 Multiple Unspecified Cross-Site Scripting Vulnerabilities
2017-01-23
http://www.securityfocus.com/bid/95699

Mozilla Firefox ESR CVE-2016-9905 Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/94884

Mozilla Network Security Services CVE-2016-9074 Multiple Security Bypass Vulnerabilities
2017-01-23
http://www.securityfocus.com/bid/94341

python-xdg '/tmp' Insecure Temporary File Creation Vulnerability
2017-01-23
http://www.securityfocus.com/bid/65042

Mozilla Firefox MFSA2016-94 and MFSA2016-95 Multiple Security Vulnerabilities
2017-01-23
http://www.securityfocus.com/bid/94885

Mozilla Firefox Multiple Security Vulnerabilities
2017-01-23
http://www.securityfocus.com/bid/92260

Wireshark Profinet I/O Dissector CVE-2016-9372 Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/94368

Stunnel CVE-2014-0016 PRNG Initialization Weakness
2017-01-23
http://www.securityfocus.com/bid/65964

Mozilla Firefox CVE-2016-5290 Multiple Unspecified Memory Corruption Vulnerabilities
2017-01-23
http://www.securityfocus.com/bid/94335

Mozilla Firefox CVE-2016-5296 Heap Buffer Overflow Vulnerability
2017-01-23
http://www.securityfocus.com/bid/94339

Mozilla Firefox Multiple Security Vulnerabilities
2017-01-23
http://www.securityfocus.com/bid/94336

GIMP 'app/xcf/xcf-load.c' Multiple Remote Code Execution Vulnerabilities
2017-01-23
http://www.securityfocus.com/bid/91425

Memcached Multiple Integer Overflow Vulnerabilities
2017-01-23
http://www.securityfocus.com/bid/94083

Mozilla Firefox CVE-2016-9079 Use After Free Remote Code Execution Vulnerability
2017-01-23
http://www.securityfocus.com/bid/94591

Mozilla Firefox Multiple Security Vulnerabilities
2017-01-23
http://www.securityfocus.com/bid/93049

Multiple TIBCO Products CVE-2017-3181 Multiple Unspecified SQL Injection Vulnerabilities
2017-01-23
http://www.securityfocus.com/bid/95696

Brocade Network Advisor CVE-2016-8204 Directory Traversal Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95695

Brocade Network Advisor CVE-2016-8205 Directory Traversal Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95694

Docker CVE-2016-9962 Local Privilege Escalation Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95361
Brocade Network Advisor CVE-2016-8204 Directory Traversal Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95695

Brocade Network Advisor CVE-2016-8205 Directory Traversal Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95694

Docker CVE-2016-9962 Local Privilege Escalation Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95361

Adobe Acrobat Extension for Chrome CVE-2017-2929 Cross Site Scripting Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95693

Brocade Network Advisor CVE-2016-8206 Directory Traversal Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95692

Adobe Acrobat and Reader APSB17-01 Multiple Heap Buffer Overflow Vulnerabilities
2017-01-23
http://www.securityfocus.com/bid/95690

Brocade Network Advisor CVE-2016-8207 Directory Traversal Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95691

VLC Media Player CVE-2016-5108 Arbitrary Code Execution Vulnerability
2017-01-23
http://www.securityfocus.com/bid/90924

xdelta3 CVE-2014-9765 Local Buffer Overflow Vulnerability
2017-01-23
http://www.securityfocus.com/bid/83109

MiniUPnP 'miniwget.c' Remote Buffer Overflow Vulnerability
2017-01-23
http://www.securityfocus.com/bid/67152

PHP libmagick 'src/softmagic.c' Out-of-Bounds Read Vulnerability
2017-01-23
http://www.securityfocus.com/bid/72505

PHP 'finfo_open()' Function Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/85802

file 'readelf.c' Out-of-Bounds Read Vulnerability
2017-01-23
http://www.securityfocus.com/bid/72516

PHP 'donote()' Function Out-of-Bounds Read Vulnerability
2017-01-23
http://www.securityfocus.com/bid/70807

JasPer 'jas_seq.c' Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95687

Symphony CVE-2017-5541 Directory Traversal Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95689

Subrion CMS CVE-2017-5543 PHP Object Injection Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95688

Symphony CMS CVE-2017-5542 Cross Site Scripting Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95686

Ghost 'Your profile' Page HTML Injection Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95685

GeniXCMS CVE-2017-5347 SQL Injection Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95684

GigaCC OFFICE OS Command Execution and Arbitrary File Upload Vulnerabilities
2017-01-23
http://www.securityfocus.com/bid/95680

JasPer 'jpc_t1dec.c' Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95683

Apache Struts CVE-2016-1181 Remote Code Execution Vulnerability
2017-01-23
http://www.securityfocus.com/bid/91068

JasPer 'jpc/jpc_dec.c' Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95682

IBM Cognos Business Intelligence Server CVE-2016-0217 Cross Site Scripting Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95681

icoutils CVE-2017-5333 Local Integer Overflow Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95678

Plone CVE-2017-5524 Sandbox Security Bypass Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95679

Apache Struts Remote Code Execution Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95675

Weblate CVE-2017-5537 Information Disclosure Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95676

Linux Kernel 'crypto/mcryptd.c' Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95677VLC Media Player CVE-2016-5108 Arbitrary Code Execution Vulnerability
2017-01-23
http://www.securityfocus.com/bid/90924

xdelta3 CVE-2014-9765 Local Buffer Overflow Vulnerability
2017-01-23
http://www.securityfocus.com/bid/83109

MiniUPnP 'miniwget.c' Remote Buffer Overflow Vulnerability
2017-01-23
http://www.securityfocus.com/bid/67152

PHP libmagick 'src/softmagic.c' Out-of-Bounds Read Vulnerability
2017-01-23
http://www.securityfocus.com/bid/72505

PHP 'finfo_open()' Function Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/85802

file 'readelf.c' Out-of-Bounds Read Vulnerability
2017-01-23
http://www.securityfocus.com/bid/72516

PHP 'donote()' Function Out-of-Bounds Read Vulnerability
2017-01-23
http://www.securityfocus.com/bid/70807

JasPer 'jas_seq.c' Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95687

Symphony CVE-2017-5541 Directory Traversal Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95689

Subrion CMS CVE-2017-5543 PHP Object Injection Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95688

Symphony CMS CVE-2017-5542 Cross Site Scripting Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95686

Ghost 'Your profile' Page HTML Injection Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95685

GeniXCMS CVE-2017-5347 SQL Injection Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95684

GigaCC OFFICE OS Command Execution and Arbitrary File Upload Vulnerabilities
2017-01-23
http://www.securityfocus.com/bid/95680

JasPer 'jpc_t1dec.c' Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95683

Apache Struts CVE-2016-1181 Remote Code Execution Vulnerability
2017-01-23
http://www.securityfocus.com/bid/91068

JasPer 'jpc/jpc_dec.c' Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95682

IBM Cognos Business Intelligence Server CVE-2016-0217 Cross Site Scripting Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95681

icoutils CVE-2017-5333 Local Integer Overflow Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95678

Plone CVE-2017-5524 Sandbox Security Bypass Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95679

Apache Struts Remote Code Execution Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95675

Weblate CVE-2017-5537 Information Disclosure Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95676

Linux Kernel 'crypto/mcryptd.c' Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95677

Samsung CVE-2017-5538 Remote Memory Corruption Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95674
10150 Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95672

QEMU 'ac97.c' Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95671

PHP CVE-2016-7479 Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95151

Apache HTTP Server CVE-2016-2161 Denial of Service Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95076

Apache HTTP Server CVE-2016-8743 Security Bypass Vulnerability
2017-01-23
http://www.securityfocus.com/bid/95077

SANS News

 

Threatpost

Massive Twitter Botnet Dormant Since 2013

Sage and Satan Ransomware, Double Trouble

Exploit

Microsoft Power Point 2016 - Java Code Execution

PageKit 1.0.10 - Password Reset

NTOPNG 2.4 Web Interface - Cross-Site Request Forgery

SunOS 5.11 ICMP - Denial of Service

22.1.2017

Bugtraq

[SECURITY] [DSA 3767-1] mysql-5.5 security update 2017-01-19
Salvatore Bonaccorso (carnil debian org)

Novel Contributions to the field - How I broke MySQL's code-base (Part 2) [CVE-2016-5541] MySQL cluster remote 0day 2017-01-19
Nicholas Lemonias. (lem nikolas googlemail com)

Novel Contributions to the Field - How I broke MySQL's codebase (Part 2) [CVE-2016-5541] MySQL Cluster 0day 2017-01-18
lem nikolas gmail com

[RCESEC-2016-012] Mattermost <= 3.5.1 "/error" Unauthenticated Reflected Cross-Site Scripting / Content Injection 2017-01-18
Julien Ahrens (info rcesecurity com)

Malware

 

Phishing

Bank of America Alerts

21st January 2017

Bank of America Alert:
Irregular Activity On Your
Account

USAA

20th January 2017

Your Incoming Payment Transfer
On Hold

AOL

20th January 2017

you were matched up with
Savannah

AOL

20th January 2017

youre matched with India

Ritchie, Jennifer

20th January 2017

cwwfamily

Vulnerebility

Symphony CVE-2017-5541 Directory Traversal Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95689

Subrion CMS CVE-2017-5543 PHP Object Injection Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95688

Symphony CMS CVE-2017-5542 Cross Site Scripting Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95686

Ghost 'Your profile' Page HTML Injection Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95685

GeniXCMS CVE-2017-5347 SQL Injection Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95684

GigaCC OFFICE OS Command Execution and Arbitrary File Upload Vulnerabilities
2017-01-22
http://www.securityfocus.com/bid/95680

JasPer 'jpc_t1dec.c' Denial of Service Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95683

Apache Struts CVE-2016-1181 Remote Code Execution Vulnerability
2017-01-22
http://www.securityfocus.com/bid/91068

JasPer 'jpc/jpc_dec.c' Denial of Service Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95682

IBM Cognos Business Intelligence Server CVE-2016-0217 Cross Site Scripting Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95681

icoutils CVE-2017-5333 Local Integer Overflow Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95678

Plone CVE-2017-5524 Sandbox Security Bypass Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95679

Apache Struts Remote Code Execution Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95675

Weblate CVE-2017-5537 Information Disclosure Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95676

Linux Kernel 'crypto/mcryptd.c' Denial of Service Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95677

Samsung CVE-2017-5538 Remote Memory Corruption Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95674

Linux Kernel CVE-2017-2583 Privilege Escalation Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95673

Linux Kernel CVE-2016-10150 Denial of Service Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95672

QEMU 'ac97.c' Denial of Service Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95671

PHP CVE-2016-7479 Denial of Service Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95151

Apache HTTP Server CVE-2016-2161 Denial of Service Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95076

Apache HTTP Server CVE-2016-8743 Security Bypass Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95077

Apache HTTP Server CVE-2016-0736 Remote Security Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95078

Apache HTTP Server 'mod_proxy_fcgi' Module Denial of Service Vulnerability
2017-01-22
http://www.securityfocus.com/bid/71657

Apache HTTP Server CVE-2016-8740 Denial of Service Vulnerability
2017-01-22
http://www.securityfocus.com/bid/94650

Apache HTTP Server CVE-2016-5387 Security Bypass Vulnerability
2017-01-22
http://www.securityfocus.com/bid/91816

ISC BIND CVE-2016-9147 Remote Denial of Service Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95390

389 Directory Server CVE-2017-2591 Denial of Service Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95670

QEMU 'es1370.c' Denial of Service Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95669

icoutils CVE-2017-5332 Local Code Execution Vulnerability
2017-01-22
http://www.securityfocus.com/bid/95380Symphony CVE-2017-5541 Directory Traversal Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95689

Subrion CMS CVE-2017-5543 PHP Object Injection Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95688

Symphony CMS CVE-2017-5542 Cross Site Scripting Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95686

Ghost 'Your profile' Page HTML Injection Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95685

GeniXCMS CVE-2017-5347 SQL Injection Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95684

GigaCC OFFICE OS Command Execution and Arbitrary File Upload Vulnerabilities
2017-01-21
http://www.securityfocus.com/bid/95680

JasPer 'jpc_t1dec.c' Denial of Service Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95683

Apache Struts CVE-2016-1181 Remote Code Execution Vulnerability
2017-01-21
http://www.securityfocus.com/bid/91068

JasPer 'jpc/jpc_dec.c' Denial of Service Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95682

IBM Cognos Business Intelligence Server CVE-2016-0217 Cross Site Scripting Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95681

icoutils CVE-2017-5333 Local Integer Overflow Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95678

Plone CVE-2017-5524 Sandbox Security Bypass Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95679

Apache Struts Remote Code Execution Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95675

Weblate CVE-2017-5537 Information Disclosure Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95676

Linux Kernel 'crypto/mcryptd.c' Denial of Service Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95677

Samsung CVE-2017-5538 Remote Memory Corruption Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95674

Linux Kernel CVE-2017-2583 Privilege Escalation Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95673

Linux Kernel CVE-2016-10150 Denial of Service Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95672

QEMU 'ac97.c' Denial of Service Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95671

PHP CVE-2016-7479 Denial of Service Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95151

Apache HTTP Server CVE-2016-2161 Denial of Service Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95076

Apache HTTP Server CVE-2016-8743 Security Bypass Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95077

Apache HTTP Server CVE-2016-0736 Remote Security Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95078

Apache HTTP Server 'mod_proxy_fcgi' Module Denial of Service Vulnerability
2017-01-21
http://www.securityfocus.com/bid/71657

Apache HTTP Server CVE-2016-8740 Denial of Service Vulnerability
2017-01-21
http://www.securityfocus.com/bid/94650

Apache HTTP Server CVE-2016-5387 Security Bypass Vulnerability
2017-01-21
http://www.securityfocus.com/bid/91816

ISC BIND CVE-2016-9147 Remote Denial of Service Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95390

389 Directory Server CVE-2017-2591 Denial of Service Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95670

QEMU 'es1370.c' Denial of Service Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95669

icoutils CVE-2017-5332 Local Code Execution Vulnerability
2017-01-21
http://www.securityfocus.com/bid/95380

SANS News

Sage 2.0 Ransomware

Threatpost

Hadoop, CouchDB Next Targets in Wave of Database Attacks

Coalition of Cryptographers, Researchers Urge Guardian to Retract WhatsApp Story

Mozilla’s First Internet Health Report Tackles Security, Privacy

Exploit

 

20.1.2017

Bugtraq

[SECURITY] [DSA 3767-1] mysql-5.5 security update 2017-01-19
Salvatore Bonaccorso (carnil debian org)

Novel Contributions to the field - How I broke MySQL's code-base (Part 2) [CVE-2016-5541] MySQL cluster remote 0day 2017-01-19
Nicholas Lemonias. (lem nikolas googlemail com)

Novel Contributions to the Field - How I broke MySQL's codebase (Part 2) [CVE-2016-5541] MySQL Cluster 0day 2017-01-18
lem nikolas gmail com

[RCESEC-2016-012] Mattermost <= 3.5.1 "/error" Unauthenticated Reflected Cross-Site Scripting / Content Injection 2017-01-18
Julien Ahrens (info rcesecurity com)

[security bulletin] HPSBMU03685 rev.1 - HPE Insight Control server provisioning (ICsp), Multiple Remote Vulnerabilities 2017-01-18
security-alert hpe com

ESA-2016-161: EMC Isilon OneFS LDAP Injection Vulnerability 2017-01-18
EMC Product Security Response Center (Security_Alert emc com)

Malware

TrojanDownloader:Win32/Gendwndrop!rfn

Phishing

AOL

19th January 2017

A person has tagged your
current profile page

Capitalone360

19th January 2017

IMPORTANT MESSAGE FROM
CAPITALONE360 BANK.

BT Mail

19th January 2017

Important informations about
your BT email account

iCloud Support

19th January 2017

[ICLOUD] : YOUR SUBSCRIPTION
WITH ITUNIS HAS BEEN EXPIRED

Vulnerebility

Symphony CVE-2017-5541 Directory Traversal Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95689

Subrion CMS CVE-2017-5543 PHP Object Injection Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95688

Symphony CMS CVE-2017-5542 Cross Site Scripting Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95686

Ghost 'Your profile' Page HTML Injection Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95685

GeniXCMS CVE-2017-5347 SQL Injection Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95684

GigaCC OFFICE OS Command Execution and Arbitrary File Upload Vulnerabilities
2017-01-20
http://www.securityfocus.com/bid/95680

JasPer 'jpc_t1dec.c' Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95683

Apache Struts CVE-2016-1181 Remote Code Execution Vulnerability
2017-01-20
http://www.securityfocus.com/bid/91068

JasPer 'jpc/jpc_dec.c' Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95682

IBM Cognos Business Intelligence Server CVE-2016-0217 Cross Site Scripting Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95681

icoutils CVE-2017-5333 Local Integer Overflow Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95678

Plone CVE-2017-5524 Sandbox Security Bypass Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95679

Apache Struts Remote Code Execution Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95675

Weblate CVE-2017-5537 Information Disclosure Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95676

Linux Kernel 'crypto/mcryptd.c' Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95677

Samsung CVE-2017-5538 Remote Memory Corruption Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95674

Linux Kernel CVE-2017-2583 Privilege Escalation Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95673

Linux Kernel CVE-2016-10150 Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95672

QEMU 'ac97.c' Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95671

PHP CVE-2016-7479 Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95151

Apache HTTP Server CVE-2016-2161 Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95076

Apache HTTP Server CVE-2016-8743 Security Bypass Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95077

Apache HTTP Server CVE-2016-0736 Remote Security Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95078

Apache HTTP Server 'mod_proxy_fcgi' Module Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/71657

Apache HTTP Server CVE-2016-8740 Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/94650

Apache HTTP Server CVE-2016-5387 Security Bypass Vulnerability
2017-01-20
http://www.securityfocus.com/bid/91816

ISC BIND CVE-2016-9147 Remote Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95390

389 Directory Server CVE-2017-2591 Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95670

QEMU 'es1370.c' Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95669

icoutils CVE-2017-5332 Local Code Execution Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95380icoutils CVE-2017-5332 Local Code Execution Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95380

icoutils CVE-2017-5331 Incomplete Fix Local Integer Overflow Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95378

GStreamer Good Plug-ins Incomplete Fix CVE-2016-9808 Buffer Overflow Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95446

Gstreamer CVE-2016-9810 Invalid Memory Read Denial Of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95163

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2017-01-20
http://www.securityfocus.com/bid/94499

GStreamer Good Plug-ins CVE-2016-9807 Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95148

python-pysaml2 CVE-2016-10127 XML External Entity Injection Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95376

PostgreSQL CVE-2016-5423 NULL Pointer Dereference Remote Code Execution Vulnerability
2017-01-20
http://www.securityfocus.com/bid/92433

PostgreSQL CVE-2016-5424 Multiple Local Privilege Escalation Vulnerabilities
2017-01-20
http://www.securityfocus.com/bid/92435

PostgreSQL CVE-2015-5289 Remote Denial Of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/77048

PostgreSQL Integer Overflow and Privilege Escalation Vulnerabilities
2017-01-20
http://www.securityfocus.com/bid/83184

PostgreSQL 'pgcrypto' Module CVE-2015-5288 Memory Corruption Vulnerability
2017-01-20
http://www.securityfocus.com/bid/77049

PHP 'gdImageCreateFromGd2Ctx()' Function Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95667

JasPer Multiple Denial of Service Vulnerabilities
2017-01-20
http://www.securityfocus.com/bid/95666

Schneider homeLYnk Controller LSS1001003 CVE-2017-5157 Cross Site Scripting Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95665

Huawei Smart Phones CVE-2017-2698 Local Buffer Overflow Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95664

Huawei S3300 Remote Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95662

Huawei Smart Phones CVE-2017-2703 Security Bypass Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95657

Huawei P9 Plus CVE-2017-2711 Local Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95663

Huawei Smart Phones CVE-2017-2705 Security Bypass Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95661

Huawei Smart Phones CVE-2017-2691 Security Bypass Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95658

Serendipity CVE-2017-5475 Cross Site Request Forgery Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95656

GeniXCMS CVE-2017-5345 SQL Injection Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95660

Serendipity CVE-2017-5476 Cross Site Request Forgery Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95659

ntopng CVE-2017-5473 Multiple Cross Site Request Forgery Vulnerabilities
2017-01-20
http://www.securityfocus.com/bid/95654

Serendipity CVE-2017-5474 Open Redirection Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95652

IBM InfoSphere DataStage CVE-2016-8982 Information Disclosure Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95651

GeniXCMS CVE-2017-5346 SQL Injection Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95655

IBM WebSphere Application Server CVE-2016-8919 Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/95650

SAP Adaptive Server Enterprise Denial of Service Vulnerability
2017-01-20
http://www.securityfocus.com/bid/93545

SANS News

PowerShell 5.1 for Windows 7 and later

Threatpost

Hack the Army Bounty Pays Out $100,000; 118 Flaws Fixed

Facebook, Researcher at Odds Over Messenger Issue

Locky Limps Back into Action After Lull

ProtonMail Gets Own Tor-Accessible .Onion Hidden Service

The Changing Face of Carbanak

Exploit

Google Android TSP sysfs - 'cmd_store' Multiple Overflows

Classifieds Script - SQL Injection

Video Site Creator Script - SQL Injection

Home of Viral Images, Videos and Articles Script - SQL Injection

Job Vacancy Script - SQL Injection

Vine VideoSite Creator Script - SQL Injection

Viral Image Sharing Script - SQL Injection

Social News and Bookmarking Script - SQL Injection

Viral Image Sharing Script - SQL Injection

Vine VideoSite Creator Script - SQL Injection

Job Vacancy Script - SQL Injection

Home of Viral Images, Videos and Articles Script - SQL Injection

Video Site Creator Script - SQL Injection

Classifieds Script - SQL Injection

19.1.2017

Bugtraq

Novel Contributions to the field - How I broke MySQL's code-base (Part 2) [CVE-2016-5541] MySQL cluster remote 0day 2017-01-19
Nicholas Lemonias. (lem nikolas googlemail com)

Novel Contributions to the Field - How I broke MySQL's codebase (Part 2) [CVE-2016-5541] MySQL Cluster 0day 2017-01-18
lem nikolas gmail com

[RCESEC-2016-012] Mattermost <= 3.5.1 "/error" Unauthenticated Reflected Cross-Site Scripting / Content Injection 2017-01-18
Julien Ahrens (info rcesecurity com)

[security bulletin] HPSBMU03685 rev.1 - HPE Insight Control server provisioning (ICsp), Multiple Remote Vulnerabilities 2017-01-18
security-alert hpe com

ESA-2016-161: EMC Isilon OneFS LDAP Injection Vulnerability 2017-01-18
EMC Product Security Response Center (Security_Alert emc com)

ESA-2016-143: EMC Documentum Webtop and Clients Stored Cross-Site Scripting Vulnerability 2017-01-18
EMC Product Security Response Center (Security_Alert emc com)

[SECURITY] CVE-2016-8748: Apache NiFi XSS vulnerability in connection details dialogue 2017-01-16
Joe Witt (joewitt apache org)

Malware

W97M.Downloader.K

Trojan.Carberp.E

OSX.Quimitchin

Phishing

Amazon.co.uk

18th January 2017

Your Amazon.co.uk Account

NatWest

18th January 2017

1 New Message

AOL

18th January 2017

An individual has recently
tagged your current personal
profile

AOL

18th January 2017

youve been matched with Lena

AOL

18th January 2017

A person has already tagged
your current personal profile

AOL

18th January 2017

Someone seems to have tagged
your very own account

PayPal Support

18th January 2017

We recently contacted you
after noticing an issue on
your account

reminder

18th January 2017

We�re writing to confirm your
PayPal account has been closed

Vulnerebility

Cisco IOS Software and IOx Software CVE-2017-3805 Information Disclosure Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95644

Cisco Email Security Appliance for AsyncOS CVE-2017-3800 Remote Security Bypass Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95637

Cisco WebEx Meetings Server CVE-2017-3796 Remote Command Execution Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95641

Cisco WebEx Meetings Server CVE-2017-3797 Information Disclosure Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95639

Cisco WebEx Meetings Server CVE-2017-3795 Local Security Bypass Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95643

Cisco WebEx Meeting Center CVE-2017-3799 Open Redirection Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95642

Cisco NetFlow Generation Appliance CVE-2016-9222 Cross Site Scripting Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95640

Multiple Cisco Nexus Devices CVE-2017-3804 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95638

Cisco Unified Communications Manager CVE-2017-3802 Cross Site Scripting Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95636

Cisco WebEx Meetings Server CVE-2017-3794 Cross Site Request Forgery Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95635

Cisco Hybrid Meeting Server CVE-2016-9218 Cross Site Request Forgery Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95634

Cisco Mobility Express 2800 and 3800 Access Points CVE-2016-9220 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95633

Cisco Catalyst 2960 and 3750 Series Switches CVE-2017-3803 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95632

Cisco Mobility Express 2800 and 3800 Access Points CVE-2016-9221 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95631

Multiple GE Products CVE-2016-9360 Local Information Disclosure Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95630

Cisco ASR 5000 Series Software CVE-2016-9216 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95629

Apple Logic Pro X and GarageBand CVE-2017-2372 Memory Corruption Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95627

IBM dashDB Local CVE-2016-8954 Hardcoded Credentials Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95628

GeniXCMS CVE-2017-5515 Multiple Cross Site Scripting Vulnerabilities
2017-01-19
http://www.securityfocus.com/bid/95623

EMC Isilon OneFS CVE-2016-9870 Local LDAP Injection Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95626

Multiple EMC Products CVE-2016-8213 HTML Injection Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95625

BlackBerry Enterprise Server CVE-2016-3128 Spoofing Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95624

Citrix Provisioning Services Remote Code Execution and Information Disclosure Vulnerabilities
2017-01-19
http://www.securityfocus.com/bid/95620

GeniXCMS CVE-2017-5516 Multiple Cross Site Scripting Vulnerabilities
2017-01-19
http://www.securityfocus.com/bid/95622

Apache NiFi CVE-2106-8748 Cross Site Scripting Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95621

OpenSSL Padding Oracle Incomplete Fix Information Disclosure Vulnerability
2017-01-19
http://www.securityfocus.com/bid/89760

OpenSSL CVE-2016-6309 Remote Code Execution Vulnerability
2017-01-19
http://www.securityfocus.com/bid/93177

OpenSSL CVE-2016-2179 Multiple Denial of Service Vulnerabilities
2017-01-19
http://www.securityfocus.com/bid/92987

OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability
2017-01-19
http://www.securityfocus.com/bid/91081

OpenSSL CVE-2015-1790 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/75157Cisco WebEx Meetings Server CVE-2017-3794 Cross Site Request Forgery Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95635

Cisco Hybrid Meeting Server CVE-2016-9218 Cross Site Request Forgery Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95634

Cisco Mobility Express 2800 and 3800 Access Points CVE-2016-9220 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95633

Cisco Catalyst 2960 and 3750 Series Switches CVE-2017-3803 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95632

Cisco Mobility Express 2800 and 3800 Access Points CVE-2016-9221 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95631

Multiple GE Products CVE-2016-9360 Local Information Disclosure Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95630

Cisco ASR 5000 Series Software CVE-2016-9216 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95629

Apple Logic Pro X and GarageBand CVE-2017-2372 Memory Corruption Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95627

IBM dashDB Local CVE-2016-8954 Hardcoded Credentials Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95628

GeniXCMS CVE-2017-5515 Multiple Cross Site Scripting Vulnerabilities
2017-01-19
http://www.securityfocus.com/bid/95623

EMC Isilon OneFS CVE-2016-9870 Local LDAP Injection Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95626

Multiple EMC Products CVE-2016-8213 HTML Injection Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95625

BlackBerry Enterprise Server CVE-2016-3128 Spoofing Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95624

Citrix Provisioning Services Remote Code Execution and Information Disclosure Vulnerabilities
2017-01-19
http://www.securityfocus.com/bid/95620

GeniXCMS CVE-2017-5516 Multiple Cross Site Scripting Vulnerabilities
2017-01-19
http://www.securityfocus.com/bid/95622

Apache NiFi CVE-2106-8748 Cross Site Scripting Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95621

OpenSSL Padding Oracle Incomplete Fix Information Disclosure Vulnerability
2017-01-19
http://www.securityfocus.com/bid/89760

OpenSSL CVE-2016-6309 Remote Code Execution Vulnerability
2017-01-19
http://www.securityfocus.com/bid/93177

OpenSSL CVE-2016-2179 Multiple Denial of Service Vulnerabilities
2017-01-19
http://www.securityfocus.com/bid/92987

OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability
2017-01-19
http://www.securityfocus.com/bid/91081

OpenSSL CVE-2015-1790 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/75157

OpenSSL CVE-2016-2180 Local Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/92117

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-01-19
http://www.securityfocus.com/bid/91319

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/93153

OpenSSL CVE-2016-6305 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/93149

OpenSSL CVE-2016-6307 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/93152

OpenSSL CVE-2016-6308 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/93151

OpenSSL CMS CVE-2015-1792 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/75154

OpenSSL CVE-2016-7052 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/93171

Apache Groovy CVE-2015-3253 Remote Code Execution Vulnerability
2017-01-19
http://www.securityfocus.com/bid/75919GeniXCMS CVE-2017-5515 Multiple Cross Site Scripting Vulnerabilities
2017-01-19
http://www.securityfocus.com/bid/95623

EMC Isilon OneFS CVE-2016-9870 Local LDAP Injection Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95626

Multiple EMC Products CVE-2016-8213 HTML Injection Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95625

BlackBerry Enterprise Server CVE-2016-3128 Spoofing Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95624

Citrix Provisioning Services Remote Code Execution and Information Disclosure Vulnerabilities
2017-01-19
http://www.securityfocus.com/bid/95620

GeniXCMS CVE-2017-5516 Multiple Cross Site Scripting Vulnerabilities
2017-01-19
http://www.securityfocus.com/bid/95622

Apache NiFi CVE-2106-8748 Cross Site Scripting Vulnerability
2017-01-19
http://www.securityfocus.com/bid/95621

OpenSSL Padding Oracle Incomplete Fix Information Disclosure Vulnerability
2017-01-19
http://www.securityfocus.com/bid/89760

OpenSSL CVE-2016-6309 Remote Code Execution Vulnerability
2017-01-19
http://www.securityfocus.com/bid/93177

OpenSSL CVE-2016-2179 Multiple Denial of Service Vulnerabilities
2017-01-19
http://www.securityfocus.com/bid/92987

OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability
2017-01-19
http://www.securityfocus.com/bid/91081

OpenSSL CVE-2015-1790 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/75157

OpenSSL CVE-2016-2180 Local Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/92117

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-01-19
http://www.securityfocus.com/bid/91319

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/93153

OpenSSL CVE-2016-6305 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/93149

OpenSSL CVE-2016-6307 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/93152

OpenSSL CVE-2016-6308 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/93151

OpenSSL CMS CVE-2015-1792 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/75154

OpenSSL CVE-2016-7052 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/93171

Apache Groovy CVE-2015-3253 Remote Code Execution Vulnerability
2017-01-19
http://www.securityfocus.com/bid/75919

Apache POI CVE-2016-5000 XML External Entity Injection Vulnerability
2017-01-19
http://www.securityfocus.com/bid/92100

Multiple Oracle Products CVE-2016-0635 Remote Security Vulnerability
2017-01-19
http://www.securityfocus.com/bid/91869

Bouncy Castle CVE-2015-7940 Information Disclosure Vulnerability
2017-01-19
http://www.securityfocus.com/bid/79091

Apache MyFaces Trinidad CVE-2016-5019 Remote Code Execution Vulnerability
2017-01-19
http://www.securityfocus.com/bid/93236

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2017-01-19
http://www.securityfocus.com/bid/92630

OpenSSL CVE-2016-2181 Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/92982

OpenSSL 'BN_bn2dec()' Function Out of Bounds Write Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/92557

Multiple RedHat JBoss Products CVE-2015-7501 Remote Code Execution Vulnerability
2017-01-19
http://www.securityfocus.com/bid/78215

OpenSSL CVE-2015-1789 Out of Bounds Read Denial of Service Vulnerability
2017-01-19
http://www.securityfocus.com/bid/75156

SANS News

Making Windows 10 a bit less "Creepy" - Common Privacy Settings

Threatpost

Oracle Patches 270 Vulnerabilities in Year’s First Critical Patch Update

Docker Patches Container Escape Vulnerability

Carbanak Using Google Services for Command and Control

Exploit

B2B Script 4.27 - SQL Injection

Flippa Website Script - SQL Injection

Courier Management System - SQL Injection

18.1.2017

Bugtraq

ESA-2016-161: EMC Isilon OneFS LDAP Injection Vulnerability 2017-01-18
EMC Product Security Response Center (Security_Alert emc com)

ESA-2016-143: EMC Documentum Webtop and Clients Stored Cross-Site Scripting Vulnerability 2017-01-18
EMC Product Security Response Center (Security_Alert emc com)

[SECURITY] CVE-2016-8748: Apache NiFi XSS vulnerability in connection details dialogue 2017-01-16
Joe Witt (joewitt apache org)

[SECURITY] [DSA 3765-1] icoutils security update 2017-01-14
Salvatore Bonaccorso (carnil debian org)

[SECURITY] [DSA 3743-2] python-bottle regression update 2017-01-15
Sebastien Delafond (seb debian org)

[security bulletin] HPSBGN03689 rev.1 - HPE Diagnostics, Remote Cross-Site Scripting and Click Jacking 2017-01-13
security-alert hpe com

[security bulletin] HPSBST03671 rev.2 - HPE StoreEver MSL6480 Tape Library Management Interface, Multiple Remote Vulnerabilities 2017-01-13
security-alert hpe com

Malware

 

Phishing

NatWest

17th January 2017

Important New Message

iCloud Support

17th January 2017

[ICLOUD] : YOUR SUBSCRIPTION
WITH ITUNIS HAS BEEN EXPIRED

Apple

17th January 2017

YOUR APPLE ID WAS USED TO SIGN
IN TO IMESSAGE ON AN IPHONE 6.

Vulnerebility

PHP 'ext/zip/php_zip.c' Use After Free Remote Code Execution Vulnerability
2017-01-18
http://www.securityfocus.com/bid/91397

Libxml2 'xmlsave.c' Denial of Service Vulnerability
2017-01-18
http://www.securityfocus.com/bid/90013

PHP '_gdContributionsAlloc()' Function Integer Overflow Vulnerability
2017-01-18
http://www.securityfocus.com/bid/92080

PHP CVE-2016-5772 Double Free Memory Corruption Vulnerability
2017-01-18
http://www.securityfocus.com/bid/91398

OpenSSL CVE-2016-6307 Denial of Service Vulnerability
2017-01-18
http://www.securityfocus.com/bid/93152

PHP 'ext/spl/spl_directory.c' Type Confusion Remote Denial Of Service Vulnerability
2017-01-18
http://www.securityfocus.com/bid/91403

PHP CVE-2016-5769 Multiple Integer Overflow Vulnerabilities
2017-01-18
http://www.securityfocus.com/bid/91399

PHP CVE-2016-5768 Double Free Memory Corruption Vulnerability
2017-01-18
http://www.securityfocus.com/bid/91396

PHP 'ext/spl/spl_array.c' Use After Free Remote Code Execution Vulnerability
2017-01-18
http://www.securityfocus.com/bid/91401

PHP CVE-2016-5767 Integer Overflow Vulnerability
2017-01-18
http://www.securityfocus.com/bid/91395

PHP 'php_html_entities()' Function Integer Overflow Vulnerability
2017-01-18
http://www.securityfocus.com/bid/90857

PHP LibGD CVE-2016-3074 Heap Buffer Overflow Vulnerability
2017-01-18
http://www.securityfocus.com/bid/87087

PHP CVE-2016-5093 Information Disclosure Vulnerability
2017-01-18
http://www.securityfocus.com/bid/90946

PHP CVE-2016-5385 Security Bypass Vulnerability
2017-01-18
http://www.securityfocus.com/bid/91821

PHP 'ext/standard/file.c' Multiple Denial of Service Vulnerabilities
2017-01-18
http://www.securityfocus.com/bid/90861

PHP 'imagescale' Function Out of Bounds Read Denial of Service Vulnerability
2017-01-18
http://www.securityfocus.com/bid/90859

b2evolution CVE-2017-5480 Directory Traversal Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95454

b2evolution CVE-2017-5494 Multiple Cross Site Scripting Vulnerabilities
2017-01-18
http://www.securityfocus.com/bid/95452

Oracle Java SE CVE-2014-6512 IP Address Spoofing Vulnerability
2017-01-18
http://www.securityfocus.com/bid/70567

CMS Made Simple CVE-2016-7904 Cross Site Request Forgery Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95453

Oracle Java SE CVE-2014-6457 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/70538

Oracle Java SE CVE-2014-6531 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/70572

Oracle Java SE CVE-2014-6511 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/70548

Oracle Java SE CVE-2014-6515 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/70565

Oracle Java SE CVE-2014-6506 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/70556

Oracle Java SE CVE-2014-6458 Local Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/70460

Oracle Java SE CVE-2014-6492 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/70456

Oracle Java SE CVE-2014-6532 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/70507

Oracle Java SE CVE-2014-6503 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/70518

Oracle Java SE CVE-2014-6466 Local Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/70484Oracle E-Business Suite CVE-2017-3277 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95617

Oracle E-Business Suite CVE-2017-3287 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95616

Oracle E-Business Suite CVE-2017-3285 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95615

Oracle E-Business Suite CVE-2017-3279 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95614

Oracle E-Business Suite CVE-2017-3284 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95613

Oracle E-Business Suite CVE-2017-3443 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95612

Oracle E-Business Suite CVE-2017-3326 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95611

Oracle E-Business Suite CVE-2017-3328 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95610

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2017-01-18
http://www.securityfocus.com/bid/92630

RETIRED: Oracle Java SE CVE-2016-2183 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95568

Oracle FLEXCUBE Core Banking CVE-2016-8323 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95556

Oracle FLEXCUBE Core Banking CVE-2016-8322 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95608

Oracle FLEXCUBE Core Banking CVE-2016-8324 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95607

Oracle E-Business Suite CVE-2017-3246 Local Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95604

Oracle FLEXCUBE Core Banking CVE-2016-8314 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95609

Oracle Java SE CVE-2016-8328 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95581

Oracle FLEXCUBE Universal Banking CVE-2016-8307 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95551

Oracle FLEXCUBE Universal Banking CVE-2017-3235 Local Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95555

Oracle FLEXCUBE Universal Banking CVE-2016-8304 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95550

Oracle FLEXCUBE Universal Banking CVE-2016-8302 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95554

Oracle FLEXCUBE Universal Banking CVE-2016-8310 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95545

Oracle FLEXCUBE Universal Banking CVE-2016-8303 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95548

Oracle FLEXCUBE Universal Banking CVE-2016-8311 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95546

Oracle FLEXCUBE Universal Banking CVE-2017-3314 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95549

Oracle FLEXCUBE Universal Banking CVE-2017-3236 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95552

Oracle FLEXCUBE Universal Banking CVE-2016-8299 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95547

Oracle FLEXCUBE Universal Banking CVE-2016-8301 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95553

Oracle FLEXCUBE Universal Banking CVE-2016-8297 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95540

Oracle FLEXCUBE Investor Servicing CVE-2016-8306 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95515

Oracle FLEXCUBE Direct Banking CVE-2017-3245 Remote Security Vulnerability
2017-01-18
http://www.securityfocus.com/bid/95606

SANS News

Making Windows 10 a bit less "Creepy" - Common Privacy Settings

Threatpost

Router Vulnerabilities Disclosed in July Remain Unpatched

Vulnerabilities Leave iTunes, App Store Open to Script Injection

New RCE Flaws Found in Samsung Smartcam

Spora Ransomware Offers Victims Unique Payment Options

Exploit

Linux/x86-64 - mkdir Shellcode (25 bytes)

Openexpert 0.5.17 - SQL Injection

Check Box 2016 Q2 Survey - Multiple Vulnerabilities

BoZoN 2.4 - Remote Code Execution

dirLIST 0.3.0 - Arbitrary File Upload

17.1.2017

Bugtraq

[SECURITY] CVE-2016-8748: Apache NiFi XSS vulnerability in connection details dialogue 2017-01-16
Joe Witt (joewitt apache org)

[SECURITY] [DSA 3765-1] icoutils security update 2017-01-14
Salvatore Bonaccorso (carnil debian org)

[SECURITY] [DSA 3743-2] python-bottle regression update 2017-01-15
Sebastien Delafond (seb debian org)

Malware

TrojanDownloader:Win32/Gendwndrop.C!bit
TrojanDownloader:Win32/Gendwnurl.J!bit

TrojanDownloader:Win32/Gendwndrop!rfn

TrojanDownloader:Win32/Banload.BGW

TrojanDownloader:Win32/Wopfig.A

TrojanDownloader:Win32/Smordess.A

Exp.CVE-2016-7256

Phishing

USAA.Web.Services

16th January 2017

You Have A New Payment
Transfer

NatWest

16th January 2017

Important New Message

Halifax Uk

16th January 2017

Your account needs 2-step
security verification

Vulnerebility

Oracle Java SE CVE-2016-3503 Local Security Vulnerability
2017-01-17
http://www.securityfocus.com/bid/91996

Oracle Java SE CVE-2014-6519 Remote Security Vulnerability
2017-01-17
http://www.securityfocus.com/bid/70570

Oracle Java SE CVE-2014-6493 Remote Security Vulnerability
2017-01-17
http://www.securityfocus.com/bid/70468

Oracle Java SE CVE-2014-6476 Remote Security Vulnerability
2017-01-17
http://www.securityfocus.com/bid/70531

PHP 'bzread()' Function Out of Bounds Remote Code Execution Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92051

ISC BIND CVE-2016-8864 Remote Denial of Service Vulnerability
2017-01-17
http://www.securityfocus.com/bid/94067

ISC BIND 'buffer.c' Remote Denial of Service Vulnerability
2017-01-17
http://www.securityfocus.com/bid/93188

PHP '/xmlrpc/libxmlrpc/simplestring.c' Heap Buffer Overflow Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92095

PHP 'zip_stream.c' Integer Overflow Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92099

PHP 'snmp.c' Denial of Service Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92094

ICU CVE-2016-6293 Out of Bounds Read Denial of Service Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92127

PHP 'exif_process_IFD_in_MAKERNOTE' Out of Bounds Read Information Disclosure Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92073

PHP CVE-2016-6294 Local Information Disclosure Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92115

PHP 'exif.c' NULL Pointer Dereference Denial of Service Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92078

PHP 'session.c' Use After Free Remote Code Execution Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92097

PHP 'zend_virtual_cwd.c' Integer Overflow Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92074

OpenSSL CVE-2016-2179 Multiple Denial of Service Vulnerabilities
2017-01-17
http://www.securityfocus.com/bid/92987

PHP 'ext/zip/php_zip.c' Use After Free Remote Code Execution Vulnerability
2017-01-17
http://www.securityfocus.com/bid/91397

Libxml2 'xmlsave.c' Denial of Service Vulnerability
2017-01-17
http://www.securityfocus.com/bid/90013

PHP '_gdContributionsAlloc()' Function Integer Overflow Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92080

PHP CVE-2016-5772 Double Free Memory Corruption Vulnerability
2017-01-17
http://www.securityfocus.com/bid/91398

OpenSSL CVE-2016-6307 Denial of Service Vulnerability
2017-01-17
http://www.securityfocus.com/bid/93152

PHP 'ext/spl/spl_directory.c' Type Confusion Remote Denial Of Service Vulnerability
2017-01-17
http://www.securityfocus.com/bid/91403

PHP CVE-2016-5769 Multiple Integer Overflow Vulnerabilities
2017-01-17
http://www.securityfocus.com/bid/91399

PHP CVE-2016-5768 Double Free Memory Corruption Vulnerability
2017-01-17
http://www.securityfocus.com/bid/91396

PHP 'ext/spl/spl_array.c' Use After Free Remote Code Execution Vulnerability
2017-01-17
http://www.securityfocus.com/bid/91401

PHP CVE-2016-5767 Integer Overflow Vulnerability
2017-01-17
http://www.securityfocus.com/bid/91395

PHP 'php_html_entities()' Function Integer Overflow Vulnerability
2017-01-17
http://www.securityfocus.com/bid/90857

PHP LibGD CVE-2016-3074 Heap Buffer Overflow Vulnerability
2017-01-17
http://www.securityfocus.com/bid/87087

PHP CVE-2016-5093 Information Disclosure Vulnerability
2017-01-17
http://www.securityfocus.com/bid/90946Oracle Java SE CVE-2016-3503 Local Security Vulnerability
2017-01-17
http://www.securityfocus.com/bid/91996

Oracle Java SE CVE-2014-6519 Remote Security Vulnerability
2017-01-17
http://www.securityfocus.com/bid/70570

Oracle Java SE CVE-2014-6493 Remote Security Vulnerability
2017-01-17
http://www.securityfocus.com/bid/70468

Oracle Java SE CVE-2014-6476 Remote Security Vulnerability
2017-01-17
http://www.securityfocus.com/bid/70531

PHP 'bzread()' Function Out of Bounds Remote Code Execution Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92051

ISC BIND CVE-2016-8864 Remote Denial of Service Vulnerability
2017-01-17
http://www.securityfocus.com/bid/94067

ISC BIND 'buffer.c' Remote Denial of Service Vulnerability
2017-01-17
http://www.securityfocus.com/bid/93188

PHP '/xmlrpc/libxmlrpc/simplestring.c' Heap Buffer Overflow Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92095

PHP 'zip_stream.c' Integer Overflow Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92099

PHP 'snmp.c' Denial of Service Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92094

ICU CVE-2016-6293 Out of Bounds Read Denial of Service Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92127

PHP 'exif_process_IFD_in_MAKERNOTE' Out of Bounds Read Information Disclosure Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92073

PHP CVE-2016-6294 Local Information Disclosure Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92115

PHP 'exif.c' NULL Pointer Dereference Denial of Service Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92078

PHP 'session.c' Use After Free Remote Code Execution Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92097

PHP 'zend_virtual_cwd.c' Integer Overflow Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92074

OpenSSL CVE-2016-2179 Multiple Denial of Service Vulnerabilities
2017-01-17
http://www.securityfocus.com/bid/92987

PHP 'ext/zip/php_zip.c' Use After Free Remote Code Execution Vulnerability
2017-01-17
http://www.securityfocus.com/bid/91397

Libxml2 'xmlsave.c' Denial of Service Vulnerability
2017-01-17
http://www.securityfocus.com/bid/90013

PHP '_gdContributionsAlloc()' Function Integer Overflow Vulnerability
2017-01-17
http://www.securityfocus.com/bid/92080

PHP CVE-2016-5772 Double Free Memory Corruption Vulnerability
2017-01-17
http://www.securityfocus.com/bid/91398

OpenSSL CVE-2016-6307 Denial of Service Vulnerability
2017-01-17
http://www.securityfocus.com/bid/93152

PHP 'ext/spl/spl_directory.c' Type Confusion Remote Denial Of Service Vulnerability
2017-01-17
http://www.securityfocus.com/bid/91403

PHP CVE-2016-5769 Multiple Integer Overflow Vulnerabilities
2017-01-17
http://www.securityfocus.com/bid/91399

PHP CVE-2016-5768 Double Free Memory Corruption Vulnerability
2017-01-17
http://www.securityfocus.com/bid/91396

PHP 'ext/spl/spl_array.c' Use After Free Remote Code Execution Vulnerability
2017-01-17
http://www.securityfocus.com/bid/91401

PHP CVE-2016-5767 Integer Overflow Vulnerability
2017-01-17
http://www.securityfocus.com/bid/91395

PHP 'php_html_entities()' Function Integer Overflow Vulnerability
2017-01-17
http://www.securityfocus.com/bid/90857

PHP LibGD CVE-2016-3074 Heap Buffer Overflow Vulnerability
2017-01-17
http://www.securityfocus.com/bid/87087

PHP CVE-2016-5093 Information Disclosure Vulnerability
2017-01-17
http://www.securityfocus.com/bid/90946

SANS News

domain_stats.py a web api for SEIM phishing hunts

Threatpost

White House Approves New Rules for Sharing of Raw Intelligence Data

Andrew Macpherson on Intelligence Gathering with Maltego

Exploit

DiskBoss Enterprise - GET Buffer Overflow (Metasploit)

WinaXe Plus 8.7 - Buffer Overflow

BoZoN 2.4 - Remote Code Execution

dirLIST 0.3.0 - Arbitrary File Upload

ManagEnegine ADManager Plus 6.5.40 - Multiple Vulnerabilities

Million Pixels 3 - Authentication Bypass

Image Sharing Script 4.13 - Multiple Vulnerabilities

Tenda ADSL2/2+ Modem D840R - Unauthenticated DNS Change

Pirelli DRG A115 ADSL Router - Unauthenticated DNS Change

Million Pixels 3 - Authentication Bypass

iSelect v1.4 - Local Buffer Overflow

16.1.2017

Bugtraq

[SECURITY] [DSA 3765-1] icoutils security update 2017-01-14
Salvatore Bonaccorso (carnil debian org)

[SECURITY] [DSA 3743-2] python-bottle regression update 2017-01-15
Sebastien Delafond (seb debian org)

[security bulletin] HPSBGN03689 rev.1 - HPE Diagnostics, Remote Cross-Site Scripting and Click Jacking 2017-01-13
security-alert hpe com

[security bulletin] HPSBST03671 rev.2 - HPE StoreEver MSL6480 Tape Library Management Interface, Multiple Remote Vulnerabilities 2017-01-13
security-alert hpe com

[SECURITY] [DSA 3764-1] pdns security update 2017-01-13
Salvatore Bonaccorso (carnil debian org)

[security bulletin] HPSBGN03694 rev.1 - HPE SiteScope, Remote Disclosure of Information 2017-01-12
security-alert hpe com

Malware

Hacktool:Win32/Mimikatz
HackTool:Win32/Mikatz

TrojanDownloader:JS/Nemucod.RH

Trojan.Mestep

Phishing

AOL

16th January 2017

A woman has already marked
your current profile

USAA

15th January 2017

USAA Payment Received

Microsoft

15th January 2017

Confirm your account

Vulnerebility

IBM Kenexa LMS on Cloud CVE-2016-8928 Unspecified SQL-Injection Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95447

LibTIFF CVE-2016-3990 Heap Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/86000

LibTIFF CVE-2016-5317 Out Of Bounds Write Denial of Service Vulnerability
2017-01-16
http://www.securityfocus.com/bid/91208

RETIRED: Symantec Norton Download Manager DLL Loading Remote Code Execution Vulnerability
2017-01-16
http://www.securityfocus.com/bid/94695

IBM Kenexa LMS on Cloud CVE-2016-5942 Unspecified Cross-Site Scripting Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95440

IBM Kenexa LMS on Cloud CVE-2016-5941 Directory Traversal Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95438

WordPress Prior to 4.7.1 Information Disclosure Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95391

WordPress Prior to 4.7.1 Cross Site Scripting Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95397

RETIRED: Matroska libEBML CVE-2015-8790 Information Disclosure Vulnerability
2017-01-16
http://www.securityfocus.com/bid/85307

Matroska libEBML CVE-2016-1514 Information Disclosure Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95124

IBM TS3100/TS3200 Tape Library CVE-2016-9005 Authentication Bypass Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95436

LibTIFF CVE-2016-10093 Heap Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95215

LibTIFF CVE-2016-9538 Integer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/94753

LibTIFF CVE-2016-10092 Heap Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95218

LibTIFF CVE-2016-9540 Heap Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/94747

LibTIFF CVE-2016-10094 Heap Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95214

LibTIFF CVE-2016-9535 Heap Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/94744

LibTIFF CVE-2016-9536 Heap Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/94745

LibTIFF CVE-2016-9537 Heap Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/94746

LibTIFF CVE-2016-9534 Heap Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/94743

RETIRED: LibTIFF Multiple Security Vulnerabilites
2017-01-16
http://www.securityfocus.com/bid/94484

Apache Groovy CVE-2016-6814 Remote Code Execution Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95429

LibTIFF CVE-2016-9533 Heap Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/94742

LibTIFF 'tools/tiffcrop.c' Multiple Heap Buffer Overflow Vulnerabilities
2017-01-16
http://www.securityfocus.com/bid/94424

LibTIFF 'tif_dirread.c' Incomplete Fix Denial of Service Vulnerability
2017-01-16
http://www.securityfocus.com/bid/94420

LibTIFF 'tif_print.c' Out Of Bounds Read Denial of Service Vulnerability
2017-01-16
http://www.securityfocus.com/bid/94419

LibTIFF CVE-2016-5652 Heap Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/93902

LibTIFF 'libtiff/tif_pixarlog.c' Heap Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/91500

LibTIFF CVE-2016-9273 Heap Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/94271

LibTIFF Out of Bounds Read Multiple Memory Corruption Vulnerabilities
2017-01-16
http://www.securityfocus.com/bid/91741
WordPress Prior to 4.7.1 Cross Site Scripting Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95402

WordPress Prior to 4.7.1 Security Bypass Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95406

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95407

WordPress Cryptographic Security Bypass Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95401

Mozilla Firefox CVE-2016-9079 Use After Free Remote Code Execution Vulnerability
2017-01-16
http://www.securityfocus.com/bid/94591

Libgraphite Multiple Security Vulnerabilities
2017-01-16
http://www.securityfocus.com/bid/82991

Pivotal RabbitMQ Products CVE-2016-9877 Authentication Bypass Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95065

HP Diagnostics Cross Site Scripting and Click Jacking Vulnerabilities
2017-01-16
http://www.securityfocus.com/bid/95427

Microsoft Identity Model Extensions Token Signing Verification Privilege Escalation Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95425

Multiple Samsung Android Mobile Devices CVE-2017-5350 Denial of Service Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95424

ICU CVE-2016-6293 Out of Bounds Read Denial of Service Vulnerability
2017-01-16
http://www.securityfocus.com/bid/92127

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2017-01-16
http://www.securityfocus.com/bid/93636

Zabbix CVE-2016-10134 SQL Injection Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95423

GNU ed CVE-2017-5357 Denial of Service Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95422

Oracle January 2017 Critical Patch Update Multiple Vulnerabilities
2017-01-16
http://www.securityfocus.com/bid/95409

ikiwiki CVE-2017-0356 Authentication Bypass Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95420

Aerospike Database Server CVE-2016-9054 Stack Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95421

Aerospike Database Server CVE-2016-9052 Stack Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95419

Lenovo XClarity Administrator CVE-2016-8221 Privilege Escalation Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95417

Multiple Samsung Android Mobile Devices CVE-2017-5351 Denial of Service Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95418

Aerospike Database Server CVE-2016-9050 Information Disclosure Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95415

Web Client CVE-2017-5151 Unspecified SQL Injection Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95416

LibTIFF CVE-2017-5225 Heap Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95413

Splunk Enterprise CVE-2016-10126 Information Disclosure Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95412

Multiple Carlo Gavazzi Products ICSA-17-012-03 Multiple Security Vulnerabilities
2017-01-16
http://www.securityfocus.com/bid/95411

OpenSSH CVE-2016-3115 Remote Command Injection Vulnerability
2017-01-16
http://www.securityfocus.com/bid/84314

OpenSSH CVE-2015-6565 Local Security Bypass Vulnerability
2017-01-16
http://www.securityfocus.com/bid/76497

OpenSSH CVE-2016-0777 Information Disclosure Vulnerability
2017-01-16
http://www.securityfocus.com/bid/80695

OpenSSH CVE-2016-0778 Heap Based Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/80698

OpenSSH 'session.c' Local Security Bypass Vulnerability
2017-01-16
http://www.securityfocus.com/bid/86187Multiple Samsung Android Mobile Devices CVE-2017-5350 Denial of Service Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95424

ICU CVE-2016-6293 Out of Bounds Read Denial of Service Vulnerability
2017-01-16
http://www.securityfocus.com/bid/92127

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2017-01-16
http://www.securityfocus.com/bid/93636

Zabbix CVE-2016-10134 SQL Injection Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95423

GNU ed CVE-2017-5357 Denial of Service Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95422

Oracle January 2017 Critical Patch Update Multiple Vulnerabilities
2017-01-16
http://www.securityfocus.com/bid/95409

ikiwiki CVE-2017-0356 Authentication Bypass Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95420

Aerospike Database Server CVE-2016-9054 Stack Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95421

Aerospike Database Server CVE-2016-9052 Stack Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95419

Lenovo XClarity Administrator CVE-2016-8221 Privilege Escalation Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95417

Multiple Samsung Android Mobile Devices CVE-2017-5351 Denial of Service Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95418

Aerospike Database Server CVE-2016-9050 Information Disclosure Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95415

Web Client CVE-2017-5151 Unspecified SQL Injection Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95416

LibTIFF CVE-2017-5225 Heap Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95413

Splunk Enterprise CVE-2016-10126 Information Disclosure Vulnerability
2017-01-16
http://www.securityfocus.com/bid/95412

Multiple Carlo Gavazzi Products ICSA-17-012-03 Multiple Security Vulnerabilities
2017-01-16
http://www.securityfocus.com/bid/95411

OpenSSH CVE-2016-3115 Remote Command Injection Vulnerability
2017-01-16
http://www.securityfocus.com/bid/84314

OpenSSH CVE-2015-6565 Local Security Bypass Vulnerability
2017-01-16
http://www.securityfocus.com/bid/76497

OpenSSH CVE-2016-0777 Information Disclosure Vulnerability
2017-01-16
http://www.securityfocus.com/bid/80695

OpenSSH CVE-2016-0778 Heap Based Buffer Overflow Vulnerability
2017-01-16
http://www.securityfocus.com/bid/80698

OpenSSH 'session.c' Local Security Bypass Vulnerability
2017-01-16
http://www.securityfocus.com/bid/86187

OpenSSH Login Handling Security Bypass Weakness
2017-01-16
http://www.securityfocus.com/bid/75990

OpenSSH 'x11_open_helper()' Function Security Bypass Vulnerability
2017-01-16
http://www.securityfocus.com/bid/75525

OpenSSH PAM Support Multiple Remote Code Execution Vulnerabilities
2017-01-16
http://www.securityfocus.com/bid/76317

Linux Kernel CVE-2016-7042 Local Denial of Service Vulnerability
2017-01-16
http://www.securityfocus.com/bid/93544

Linux Kernel 'tcp_xmit_retransmit_queue()' Function Use After Free Denial of Service Vulnerability
2017-01-16
http://www.securityfocus.com/bid/92452

Linux Kernel 'sound/core/pcm_lib.c' Local Use After Free Memory Corruption Vulnerability
2017-01-16
http://www.securityfocus.com/bid/94654

Linux Kernel CVE-2016-8666 Stack Overflow Denial of Service Vulnerability
2017-01-16
http://www.securityfocus.com/bid/93562

Linux Kernel CVE-2016-9806 Local Denial of Service Vulnerability
2017-01-16
http://www.securityfocus.com/bid/94653

Linux Kernel 'net/core/sock.c' Multiple Local Memory Corruption Vulnerabilities
2017-01-16
http://www.securityfocus.com/bid/94655

SANS News

Whitelisting File Extensions in Apache

Threatpost

 

Exploit

Windows x64 - CreateRemoteThread() DLL Injection Shellcode (584 bytes)

WinaXe Plus 8.7 - Buffer Overflow

Business Networking Script 8.11 - SQL Injection / Cross-Site Scripting

Huawei Flybox B660 - Cross-Site Request Forgery

15.1.2017

Bugtraq

 

Malware

Backdoor.Akdoor

Phishing

 

Vulnerebility

Multiple Samsung Android Mobile Devices CVE-2017-5350 Denial of Service Vulnerability
2017-01-15
http://www.securityfocus.com/bid/95424

ICU CVE-2016-6293 Out of Bounds Read Denial of Service Vulnerability
2017-01-15
http://www.securityfocus.com/bid/92127

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2017-01-15
http://www.securityfocus.com/bid/93636

Zabbix CVE-2016-10134 SQL Injection Vulnerability
2017-01-15
http://www.securityfocus.com/bid/95423

GNU ed CVE-2017-5357 Denial of Service Vulnerability
2017-01-15
http://www.securityfocus.com/bid/95422

Oracle January 2017 Critical Patch Update Multiple Vulnerabilities
2017-01-15
http://www.securityfocus.com/bid/95409

ikiwiki CVE-2017-0356 Authentication Bypass Vulnerability
2017-01-15
http://www.securityfocus.com/bid/95420

Aerospike Database Server CVE-2016-9054 Stack Buffer Overflow Vulnerability
2017-01-15
http://www.securityfocus.com/bid/95421

Aerospike Database Server CVE-2016-9052 Stack Buffer Overflow Vulnerability
2017-01-15
http://www.securityfocus.com/bid/95419

Lenovo XClarity Administrator CVE-2016-8221 Privilege Escalation Vulnerability
2017-01-15
http://www.securityfocus.com/bid/95417

Multiple Samsung Android Mobile Devices CVE-2017-5351 Denial of Service Vulnerability
2017-01-15
http://www.securityfocus.com/bid/95418

Aerospike Database Server CVE-2016-9050 Information Disclosure Vulnerability
2017-01-15
http://www.securityfocus.com/bid/95415

Web Client CVE-2017-5151 Unspecified SQL Injection Vulnerability
2017-01-15
http://www.securityfocus.com/bid/95416

LibTIFF CVE-2017-5225 Heap Buffer Overflow Vulnerability
2017-01-15
http://www.securityfocus.com/bid/95413

Splunk Enterprise CVE-2016-10126 Information Disclosure Vulnerability
2017-01-15
http://www.securityfocus.com/bid/95412

Multiple Carlo Gavazzi Products ICSA-17-012-03 Multiple Security Vulnerabilities
2017-01-15
http://www.securityfocus.com/bid/95411

OpenSSH CVE-2016-3115 Remote Command Injection Vulnerability
2017-01-15
http://www.securityfocus.com/bid/84314

OpenSSH CVE-2015-6565 Local Security Bypass Vulnerability
2017-01-15
http://www.securityfocus.com/bid/76497

OpenSSH CVE-2016-0777 Information Disclosure Vulnerability
2017-01-15
http://www.securityfocus.com/bid/80695

OpenSSH CVE-2016-0778 Heap Based Buffer Overflow Vulnerability
2017-01-15
http://www.securityfocus.com/bid/80698

OpenSSH 'session.c' Local Security Bypass Vulnerability
2017-01-15
http://www.securityfocus.com/bid/86187

OpenSSH Login Handling Security Bypass Weakness
2017-01-15
http://www.securityfocus.com/bid/75990

OpenSSH 'x11_open_helper()' Function Security Bypass Vulnerability
2017-01-15
http://www.securityfocus.com/bid/75525

OpenSSH PAM Support Multiple Remote Code Execution Vulnerabilities
2017-01-15
http://www.securityfocus.com/bid/76317

Linux Kernel CVE-2016-7042 Local Denial of Service Vulnerability
2017-01-15
http://www.securityfocus.com/bid/93544

Linux Kernel 'tcp_xmit_retransmit_queue()' Function Use After Free Denial of Service Vulnerability
2017-01-15
http://www.securityfocus.com/bid/92452

Linux Kernel 'sound/core/pcm_lib.c' Local Use After Free Memory Corruption Vulnerability
2017-01-15
http://www.securityfocus.com/bid/94654

Linux Kernel CVE-2016-8666 Stack Overflow Denial of Service Vulnerability
2017-01-15
http://www.securityfocus.com/bid/93562

Linux Kernel CVE-2016-9806 Local Denial of Service Vulnerability
2017-01-15
http://www.securityfocus.com/bid/94653

Linux Kernel 'net/core/sock.c' Multiple Local Memory Corruption Vulnerabilities
2017-01-15
http://www.securityfocus.com/bid/94655Multiple Samsung Android Mobile Devices CVE-2017-5350 Denial of Service Vulnerability
2017-01-14
http://www.securityfocus.com/bid/95424

ICU CVE-2016-6293 Out of Bounds Read Denial of Service Vulnerability
2017-01-14
http://www.securityfocus.com/bid/92127

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2017-01-14
http://www.securityfocus.com/bid/93636

Zabbix CVE-2016-10134 SQL Injection Vulnerability
2017-01-14
http://www.securityfocus.com/bid/95423

GNU ed CVE-2017-5357 Denial of Service Vulnerability
2017-01-14
http://www.securityfocus.com/bid/95422

Oracle January 2017 Critical Patch Update Multiple Vulnerabilities
2017-01-14
http://www.securityfocus.com/bid/95409

ikiwiki CVE-2017-0356 Authentication Bypass Vulnerability
2017-01-14
http://www.securityfocus.com/bid/95420

Aerospike Database Server CVE-2016-9054 Stack Buffer Overflow Vulnerability
2017-01-14
http://www.securityfocus.com/bid/95421

Aerospike Database Server CVE-2016-9052 Stack Buffer Overflow Vulnerability
2017-01-14
http://www.securityfocus.com/bid/95419

Lenovo XClarity Administrator CVE-2016-8221 Privilege Escalation Vulnerability
2017-01-14
http://www.securityfocus.com/bid/95417

Multiple Samsung Android Mobile Devices CVE-2017-5351 Denial of Service Vulnerability
2017-01-14
http://www.securityfocus.com/bid/95418

Aerospike Database Server CVE-2016-9050 Information Disclosure Vulnerability
2017-01-14
http://www.securityfocus.com/bid/95415

Web Client CVE-2017-5151 Unspecified SQL Injection Vulnerability
2017-01-14
http://www.securityfocus.com/bid/95416

LibTIFF CVE-2017-5225 Heap Buffer Overflow Vulnerability
2017-01-14
http://www.securityfocus.com/bid/95413

Splunk Enterprise CVE-2016-10126 Information Disclosure Vulnerability
2017-01-14
http://www.securityfocus.com/bid/95412

Multiple Carlo Gavazzi Products ICSA-17-012-03 Multiple Security Vulnerabilities
2017-01-14
http://www.securityfocus.com/bid/95411

OpenSSH CVE-2016-3115 Remote Command Injection Vulnerability
2017-01-14
http://www.securityfocus.com/bid/84314

OpenSSH CVE-2015-6565 Local Security Bypass Vulnerability
2017-01-14
http://www.securityfocus.com/bid/76497

OpenSSH CVE-2016-0777 Information Disclosure Vulnerability
2017-01-14
http://www.securityfocus.com/bid/80695

OpenSSH CVE-2016-0778 Heap Based Buffer Overflow Vulnerability
2017-01-14
http://www.securityfocus.com/bid/80698

OpenSSH 'session.c' Local Security Bypass Vulnerability
2017-01-14
http://www.securityfocus.com/bid/86187

OpenSSH Login Handling Security Bypass Weakness
2017-01-14
http://www.securityfocus.com/bid/75990

OpenSSH 'x11_open_helper()' Function Security Bypass Vulnerability
2017-01-14
http://www.securityfocus.com/bid/75525

OpenSSH PAM Support Multiple Remote Code Execution Vulnerabilities
2017-01-14
http://www.securityfocus.com/bid/76317

Linux Kernel CVE-2016-7042 Local Denial of Service Vulnerability
2017-01-14
http://www.securityfocus.com/bid/93544

Linux Kernel 'tcp_xmit_retransmit_queue()' Function Use After Free Denial of Service Vulnerability
2017-01-14
http://www.securityfocus.com/bid/92452

Linux Kernel 'sound/core/pcm_lib.c' Local Use After Free Memory Corruption Vulnerability
2017-01-14
http://www.securityfocus.com/bid/94654

Linux Kernel CVE-2016-8666 Stack Overflow Denial of Service Vulnerability
2017-01-14
http://www.securityfocus.com/bid/93562

Linux Kernel CVE-2016-9806 Local Denial of Service Vulnerability
2017-01-14
http://www.securityfocus.com/bid/94653

Linux Kernel 'net/core/sock.c' Multiple Local Memory Corruption Vulnerabilities
2017-01-14
http://www.securityfocus.com/bid/94655

SANS News

Backup Files Are Good but Can Be Evil

Threatpost

Google’s Key Transparency Simplifies Public Key Lookups

WhatsApp Says ‘Backdoor’ Claim Bogus

Exploit

Zeroshell 3.6.0/3.7.0 Net Services - Remote Code Execution

Mozilla Firefox < 50.1.0 - Use After Free

Courier Business Website Script - Authentication Bypass

Professional Service Booking Script - SQL Injection

Education Website Script - Authentication Bypass

Inout Celebrities 1.0 Script - Improper Access Restrictions

Inout SocialTiles 2.0 Script - Improper Access Restrictions

Inout CareerLamp 1.0 Script - Improper Access Restrictions

Inout QuerySpace 1.0 Script - Improper Access Restrictions

14.1.2017

Bugtraq

[security bulletin] HPSBGN03694 rev.1 - HPE SiteScope, Remote Disclosure of Information 2017-01-12
security-alert hpe com

ICMPv6 PTBs and IPv6 frag filtering (particularly at BGP peers) 2017-01-12
Fernando Gont (fgont si6networks com)

Malware

 

Phishing

service@intl.paypal.com

13th January 2017

your account need update
immediatly

PayPaI Support

12th January 2017

[ALERT] CONFIRM YOUR PAYPAI
ACCOUNT (CASE ID #AP 26G 082
391)

Vulnerebility

ikiwiki CVE-2017-0356 Authentication Bypass Vulnerability
2017-01-13
http://www.securityfocus.com/bid/95420

Aerospike Database Server CVE-2016-9054 Stack Buffer Overflow Vulnerability
2017-01-13
http://www.securityfocus.com/bid/95421

Aerospike Database Server CVE-2016-9052 Stack Buffer Overflow Vulnerability
2017-01-13
http://www.securityfocus.com/bid/95419

Lenovo XClarity Administrator CVE-2016-8221 Privilege Escalation Vulnerability
2017-01-13
http://www.securityfocus.com/bid/95417

Multiple Samsung Android Mobile Devices CVE-2017-5351 Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/95418

Aerospike Database Server CVE-2016-9050 Information Disclosure Vulnerability
2017-01-13
http://www.securityfocus.com/bid/95415

Web Client CVE-2017-5151 Unspecified SQL Injection Vulnerability
2017-01-13
http://www.securityfocus.com/bid/95416

LibTIFF CVE-2017-5225 Heap Buffer Overflow Vulnerability
2017-01-13
http://www.securityfocus.com/bid/95413

Splunk Enterprise CVE-2016-10126 Information Disclosure Vulnerability
2017-01-13
http://www.securityfocus.com/bid/95412

Multiple Carlo Gavazzi Products ICSA-17-012-03 Multiple Security Vulnerabilities
2017-01-13
http://www.securityfocus.com/bid/95411

OpenSSH CVE-2016-3115 Remote Command Injection Vulnerability
2017-01-13
http://www.securityfocus.com/bid/84314

OpenSSH CVE-2015-6565 Local Security Bypass Vulnerability
2017-01-13
http://www.securityfocus.com/bid/76497

OpenSSH CVE-2016-0777 Information Disclosure Vulnerability
2017-01-13
http://www.securityfocus.com/bid/80695

OpenSSH CVE-2016-0778 Heap Based Buffer Overflow Vulnerability
2017-01-13
http://www.securityfocus.com/bid/80698

OpenSSH 'session.c' Local Security Bypass Vulnerability
2017-01-13
http://www.securityfocus.com/bid/86187

OpenSSH Login Handling Security Bypass Weakness
2017-01-13
http://www.securityfocus.com/bid/75990

OpenSSH 'x11_open_helper()' Function Security Bypass Vulnerability
2017-01-13
http://www.securityfocus.com/bid/75525

OpenSSH PAM Support Multiple Remote Code Execution Vulnerabilities
2017-01-13
http://www.securityfocus.com/bid/76317

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2017-01-13
http://www.securityfocus.com/bid/93636

Linux Kernel CVE-2016-7042 Local Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/93544

Linux Kernel 'tcp_xmit_retransmit_queue()' Function Use After Free Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/92452

Linux Kernel 'sound/core/pcm_lib.c' Local Use After Free Memory Corruption Vulnerability
2017-01-13
http://www.securityfocus.com/bid/94654

Linux Kernel CVE-2016-8666 Stack Overflow Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/93562

Linux Kernel CVE-2016-9806 Local Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/94653

Linux Kernel 'net/core/sock.c' Multiple Local Memory Corruption Vulnerabilities
2017-01-13
http://www.securityfocus.com/bid/94655

Linux Kernel CVE-2016-8655 Local Race Condition Vulnerability
2017-01-13
http://www.securityfocus.com/bid/94692

Advantech WebAccess 'updateTemplate.aspx' SQL Injection and Authentication Bypass Vulnerabilities
2017-01-13
http://www.securityfocus.com/bid/95410

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2017-01-13
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5582 Remote Security Vulnerability
2017-01-13
http://www.securityfocus.com/bid/93623

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2017-01-13
http://www.securityfocus.com/bid/93643Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2017-01-13
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5582 Remote Security Vulnerability
2017-01-13
http://www.securityfocus.com/bid/93623

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2017-01-13
http://www.securityfocus.com/bid/93643

Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2017-01-13
http://www.securityfocus.com/bid/93637

ISC BIND CVE-2016-9131 Remote Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/95386

Linux Kernel 'tcp_xmit_retransmit_queue()' Function Use After Free Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/92452

Linux Kernel CVE-2016-7117 Use-After-Free Remote Code Execution Vulnerability
2017-01-13
http://www.securityfocus.com/bid/93304

Linux Kernel Multiple Local Memory Corruption Vulnerabilities
2017-01-13
http://www.securityfocus.com/bid/91451

Docker CVE-2016-9962 Local Privilege Escalation Vulnerability
2017-01-13
http://www.securityfocus.com/bid/95361

ISC BIND CVE-2016-9444 Remote Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/95393

ISC BIND CVE-2016-9147 Remote Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/95390

libxml2 CVE-2016-1762 Multiple Memory Corruption Vulnerabilities
2017-01-13
http://www.securityfocus.com/bid/85059

Linux Kernel Multiple Remote Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/75510

Multiple Juniper Products Ethernet Packet CVE-2017-2304 Information Disclosure Vulnerability
2017-01-13
http://www.securityfocus.com/bid/95403

Juniper Junos CVE-2017-2303 Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/95408

Oracle MySQL CVE-2016-6662 Remote Code Execution Vulnerability
2017-01-13
http://www.securityfocus.com/bid/92912

Libxml2 'xmlParseName' CVE-2016-4447 Remote Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/90864

Linux Kernel CVE-2015-8104 Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/77524

Linux Kernel CVE-2016-5195 Local Privilege Escalation Vulnerability
2017-01-13
http://www.securityfocus.com/bid/93793

libxml2 CVE-2016-3705 Stack Buffer Overflow Vulnerability
2017-01-13
http://www.securityfocus.com/bid/89854

Linux Kernel CVE-2015-5307 Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/77528

OpenSSH CVE-2016-1907 Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/81293

Apache HTTP Server CVE-2016-5387 Security Bypass Vulnerability
2017-01-13
http://www.securityfocus.com/bid/91816

Apple Mac OS X APPLE-SA-2016-05-16-4 Multiple Security Vulnerabilities
2017-01-13
http://www.securityfocus.com/bid/90696

Libxml2 'malloc.c' CVE-2016-3627 Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/84992

OpenSSH 'session.c' Local Security Bypass Vulnerability
2017-01-13
http://www.securityfocus.com/bid/86187

Libxml2 'xmlLoadEntityContent()' Function CVE-2016-4449 Security Bypass Vulnerability
2017-01-13
http://www.securityfocus.com/bid/90865

Libxml2 CVE-2016-4448 Remote Format String Vulnerability
2017-01-13
http://www.securityfocus.com/bid/90856

OpenSSH CVE-2016-6515 Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/92212

Multiple F5 BIG-IP Products CVE-2016-9247 Denial of Service Vulnerability
2017-01-13
http://www.securityfocus.com/bid/95405

SANS News

Who's Attacking Me?

Threatpost

WordPress 4.7.1 Fixes CSRF, XSS, PHPMailer Vulnerabilities

ShadowBrokers Bid Farewell, Close Door

Marie Moe on Medical Device Security

Exploit

ECommerce-Multi-Vendor Software - Arbitrary File Upload

ECommerce-TIBSECART - Arbitrary File Upload

ECommerce-TIBSECART - Arbitrary File Upload

Cisco Firepower Management Console 6.0 - Post Authentication UserAdd

13.1.2017

Bugtraq

ICMPv6 PTBs and IPv6 frag filtering (particularly at BGP peers) 2017-01-12
Fernando Gont (fgont si6networks com)

[SECURITY] [DSA 3760-1] ikiwiki security update 2017-01-12
Moritz Muehlenhoff (jmm debian org)

CVE-2017-5350: Unexpected SystemUI FC driven by arbitrary application 2017-01-12
unlimitsec gmail com

[slackware-security] bind (SSA:2017-011-01) 2017-01-12
Slackware Security Team (security slackware com)

[slackware-security] gnutls (SSA:2017-011-02) 2017-01-12
Slackware Security Team (security slackware com)

CA20170109-01: Security Notice for CA Service Desk Manager 2017-01-12
Kotas, Kevin J (Kevin Kotas ca com)

[SECURITY] [DSA 3758-1] bind9 security update 2017-01-11
Florian Weimer (fw deneb enyo de)

Multiple Vulnerabilities in cPanel 2017-01-11
Open Security (open opensecurity ca)

IKEv1 cipher suite configuration mismatch in Siemens SIMATIC CP 343-1 Advanced 2017-01-11
Andrea Barisani (andrea inversepath com)

[SECURITY] [DSA 3757-1] icedove security update 2017-01-11
Moritz Muehlenhoff (jmm debian org)

Malware

W32.Kribz

Phishing

YAHOO !!!

12th January 2017

Unexpected security alert!

AOL

11th January 2017

Someone has already tagged
your account

AOL

11th January 2017

An individual has marked your
very own account

Vulnerebility

    Oracle MySQL CVE-2016-6662 Remote Code Execution Vulnerability
2017-01-12
http://www.securityfocus.com/bid/92912

Libxml2 'xmlParseName' CVE-2016-4447 Remote Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/90864

Linux Kernel CVE-2015-8104 Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/77524

Linux Kernel CVE-2016-5195 Local Privilege Escalation Vulnerability
2017-01-12
http://www.securityfocus.com/bid/93793

libxml2 CVE-2016-3705 Stack Buffer Overflow Vulnerability
2017-01-12
http://www.securityfocus.com/bid/89854

Linux Kernel CVE-2015-5307 Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/77528

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2017-01-12
http://www.securityfocus.com/bid/93628

OpenSSH CVE-2016-1907 Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/81293

Apache HTTP Server CVE-2016-5387 Security Bypass Vulnerability
2017-01-12
http://www.securityfocus.com/bid/91816

Apple Mac OS X APPLE-SA-2016-05-16-4 Multiple Security Vulnerabilities
2017-01-12
http://www.securityfocus.com/bid/90696

Libxml2 'malloc.c' CVE-2016-3627 Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/84992

OpenSSH 'session.c' Local Security Bypass Vulnerability
2017-01-12
http://www.securityfocus.com/bid/86187

Libxml2 'xmlLoadEntityContent()' Function CVE-2016-4449 Security Bypass Vulnerability
2017-01-12
http://www.securityfocus.com/bid/90865

Libxml2 CVE-2016-4448 Remote Format String Vulnerability
2017-01-12
http://www.securityfocus.com/bid/90856

OpenSSH CVE-2016-6515 Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/92212

Multiple F5 BIG-IP Products CVE-2016-9247 Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95405

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95407

Microsoft Windows LSASS CVE-2017-0004 Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95318

WordPress Cryptographic Security Bypass Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95401

Juniper Junos CVE-2017-2300 Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95400

WordPress Prior to 4.7.1 Security Bypass Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95406

LXC CVE-2016-10124 Security Bypass Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95404

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95399

WordPress Prior to 4.7.1 Cross Site Scripting Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95402

Genexis DRGOS CVE-2015-3441 Multiple Remote Command Execution Vulnerabilities
2017-01-12
http://www.securityfocus.com/bid/95398

Juniper Junos CVE-2017-2301 Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95396

WordPress Prior to 4.7.1 Cross Site Scripting Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95397

cPanel Multiple Security Vulnerabilities
2017-01-12
http://www.securityfocus.com/bid/95395

Juniper Junos CVE-2017-2302 Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95394

Huawei M8 Products CVE-2016-8758 Local Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95384

Drupal OpenLucius Module Cross Site Scripting and Cross Site Request Forgery Vulnerabilities
2017-01-12
http://www.securityfocus.com/bid/95392

WordPress Prior to 4.7.1 Information Disclosure Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95391

Microsoft Windows Kernel 'Win32k.sys' CVE-2016-7255 Local Privilege Escalation Vulnerability
2017-01-12
http://www.securityfocus.com/bid/94064

ISC BIND CVE-2016-9778 Remote Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95388

ISC BIND CVE-2016-9147 Remote Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95390

PHPMailer CVE-2016-10033 Remote Code Execution Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95108

PHPMailer CVE-2016-10045 Incomplete Fix Remote Code Execution Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95130

Drupal Autocomplete Deluxe Module Cross Site Scripting Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95387

ISC BIND CVE-2016-9131 Remote Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95386

Libimobiledevice Libplist CVE-2017-5209 Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95385

Multiple Huawei Products CVE-2017-2690 Local Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95382

Zimbra CVE-2016-3403 Multiple Cross Site Request Forgery Vulnerabilities
2017-01-12
http://www.securityfocus.com/bid/95383

SAP Single Sign On Denial of Service Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95363

libgit2 'badssl.c' Security Bypass Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95357

libgit2 'smart_pkt.c' Buffer Overflow Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95338

libgit2 'badssl.c' Security Bypass Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95354

libgit2 'src/transports/http.c' Security Bypass Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95359

libgit2 Multiple NULL Pointer Dereference Remote Code Execution Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95339

icoutils CVE-2017-5331 Incomplete Fix Local Integer Overflow Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95378

Cybozu Remote Service Manager CVE-2016-7815 Certificate Validation Security Bypass Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95379

icoutils CVE-2017-5332 Local Code Execution Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95380

Adobe Flash Player APSB17-02 Memory Corruption Vulnerabilities
2017-01-12
http://www.securityfocus.com/bid/95350

Adobe Flash Player APSB17-02 Multiple Heap Buffer Overflow Vulnerabilities
2017-01-12
http://www.securityfocus.com/bid/95347

Adobe Flash Player APSB17-02 Unspecified Use After Free Remote Code Execution Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95342

GnuTLS CVE-2017-5336 Stack Buffer Overflow Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95377

GnuTLS CVE-2017-5335 Multiple Buffer Overflow Vulnerabilities
2017-01-12
http://www.securityfocus.com/bid/95374

OpenSSL CVE-2016-7056 Local Information Disclosure Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95375

python-pysaml2 CVE-2016-10127 XML External Entity Injection Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95376

SAP NetWeaver XML External Entity Information Disclosure Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95373

SAP ERP Defence Forces and Public Security Remote Authorization Bypass Vulnerability
2017-01-12
http://www.securityfocus.com/bid/95367

SANS News

System Resource Utilization Monitor

Some tools updates

Threatpost

Spammers Revive Hancitor Downloader Campaigns

Second Try at Windows LSASS Patch Addresses Vulnerability

ShadowBrokers Selling Windows Exploits, Attack Tools

Cloudflare Shares National Security Letter It Received in 2013

Exploit

Ansible 2.1.4 / 2.2.1 - Command Execution

Online Food Delivery 2.04 - Authentication Bypass

Job Portal Script 9.11 - Authentication Bypass

Movie Portal Script 7.35 - SQL Injection

Travel Portal Script 9.33 - SQL Injection

Huawei Flybox B660 - Cross-Site Request Forgery

Blackboard LMS 9.1 SP14 - Cross-Site Scripting

My Link Trader 1.1 - 'id' Parameter SQL Injection

Firejail - Privilege Escalation

Cemu 1.6.4b - Information Leak + Buffer Overflow (Emulator Breakout)

Microsoft Windows 8.1 (x64) - RGNOBJ Integer Overflow (MS16-098)

Microsoft Windows Kernel - 'win32k.sys' 'NtSetWindowLongPtr' Privilege Escalation...

SapLPD 7.40 - Denial of Service

VideoLAN VLC Media Player 2.2.1 - 'DecodeAdpcmImaQT' Buffer Overflow

Boxoft Wav 1.0 - Buffer Overflow

12.1.2017

Bugtraq

[SECURITY] [DSA 3757-1] icedove security update 2017-01-11
Moritz Muehlenhoff (jmm debian org)

Re: [oss-security] Docker 1.12.6 - Security Advisory 2017-01-11
Andreas Stieger (astieger suse com)

Cobi Tools v1.0.8 iOS - Persistent Web Vulnerability 2017-01-11
Vulnerability Lab (research vulnerability-lab com)

Bit Defender #39 - Auth Token Bypass Vulnerability 2017-01-11
Vulnerability Lab (research vulnerability-lab com)

BlackBoard LMS 9.1 SP14 - (Title) Persistent Vulnerability 2017-01-11
Vulnerability Lab (research vulnerability-lab com)

Blackboard LMS 9.1 SP14 - (Profile) Persistent Vulnerability 2017-01-11
Vulnerability Lab (research vulnerability-lab com)

FreeBSD Security Advisory FreeBSD-SA-17:01.openssh 2017-01-11
FreeBSD Security Advisories (security-advisories freebsd org)

ESA-2016-096: EMC Celerra, VNX1, VNX2 and VNXe SMB NTLM Authentication Weak Nonce Vulnerability 2017-01-10
EMC Product Security Response Center (Security_Alert emc com)

Directadmin ControlPanel 1.50.1 denial of service Vulnerability 2017-01-10
iedb team gmail com

Malware

Ransom.Spora

Phishing

Amazon.co.uk

11th January 2017

Your Amazon security is still
not active.

Support

10th January 2017

[PAYPAL]: YOU'VE GOT NEW (1)
LETTER !

Vulnerebility

SAP NetWeaver XML External Entity Information Disclosure Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95373

SAP ERP Defence Forces and Public Security Remote Authorization Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95367

HP Helion Eucalyptus CVE-2016-8520 Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95369

GnuTLS CVE-2017-5334 Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95370

Microsoft Office CVE-2017-0003 Memory Corruption Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95287

PHP CVE-2017-5340 Remote Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95371

GnuTLS 'lib/opencdk/read-packet.c' Multiple Heap Buffer Overflow Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95372

SAP ERP Defence Forces and Public Security Remote Authorization Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95365

Computer Associates Service Desk Manager CVE-2016-10086 Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95366

Flexera Software FlexNet Publisher CVE-2015-8277 Buffer Overflow Vulnerability
2017-01-11
http://www.securityfocus.com/bid/83334

SAP NetWeaver Application Server Java Portal App Component Cross Site Scripting Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95368

Apache HttpComponents Incomplete Fix CVE-2014-3577 SSL Validation Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/69258

Ghostscript CVE-2016-7978 Remote Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95336

SAP NetWeaver AS JAVA 'getUserUddiElements' SQL Injection Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95364

Huawei AnyOffice Remote Denial of Service Vulnerability
2017-01-11
http://www.securityfocus.com/bid/93010

Ghostscript CVE-2016-7976 Remote Command Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95332

SAP Single Sign On Denial of Service Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95363

SAP ERP Defence Forces and Public Security Remote Authorization Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95362

Ghostscript CVE-2016-7977 Information Disclosure Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95334

Ghostscript CVE-2016-7979 Remote Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95337

Docker CVE-2016-9962 Local Privilege Escalation Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95361

ThreatpostMetrix SDK for iOS CVE-2017-3182 SSL Certificate Validation Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95360

Foxit Reader for Linux Unspecified Stack Buffer Overflow Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95358

Foxit Reader and PhantomPDF Multiple Security Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95353

Foxit PDF Toolkit Memory Corruption Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95356

OSIsoft PI Coresight and PI Web API CVE-2017-5153 Information Disclosure Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95355

libgit2 'src/transports/http.c' Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95359

libgit2 Multiple NULL Pointer Dereference Remote Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95339

libgit2 'badssl.c' Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95357

libgit2 'badssl.c' Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95354Flexera Software FlexNet Publisher CVE-2015-8277 Buffer Overflow Vulnerability
2017-01-11
http://www.securityfocus.com/bid/83334

Apache HttpComponents Incomplete Fix CVE-2014-3577 SSL Validation Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/69258

Ghostscript CVE-2016-7978 Remote Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95336

SAP NetWeaver AS JAVA 'getUserUddiElements' SQL Injection Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95364

Huawei AnyOffice Remote Denial of Service Vulnerability
2017-01-11
http://www.securityfocus.com/bid/93010

Ghostscript CVE-2016-7976 Remote Command Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95332

SAP Single Sign On Denial of Service Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95363

SAP ERP Defence Forces and Public Security Remote Authorization Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95362

Ghostscript CVE-2016-7977 Information Disclosure Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95334

Ghostscript CVE-2016-7979 Remote Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95337

Docker CVE-2016-9962 Local Privilege Escalation Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95361

ThreatpostMetrix SDK for iOS CVE-2017-3182 SSL Certificate Validation Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95360

Foxit Reader for Linux Unspecified Stack Buffer Overflow Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95358

Foxit Reader and PhantomPDF Multiple Security Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95353

Foxit PDF Toolkit Memory Corruption Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95356

OSIsoft PI Coresight and PI Web API CVE-2017-5153 Information Disclosure Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95355

libgit2 'src/transports/http.c' Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95359

libgit2 Multiple NULL Pointer Dereference Remote Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95339

libgit2 'badssl.c' Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95357

libgit2 'badssl.c' Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95354

Microsoft Edge CVE-2017-0002 Remote Privilege Escalation Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95284

Microsoft Windows LSASS CVE-2017-0004 Local Denial of Service Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95318

Ansible CVE-2016-9587 Arbitrary Command Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95352

KDE Ark CVE-2017-5330 Arbitrary Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95349

Shutter CVE-2016-10081 Arbitrary Command Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95351

Adobe Flash Player APSB17-02 Memory Corruption Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95350

libgit2 'smart_pkt.c' Buffer Overflow Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95338

Adobe Acrobat and Reader APSB17-01 Multiple Buffer Overflow Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95346

Adobe Flash Player APSB17-02 Multiple Heap Buffer Overflow Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95347

Adobe Acrobat and Reader Multiple Unspecified Heap Buffer Overflow Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95344
Huawei AnyOffice Remote Denial of Service Vulnerability
2017-01-11
http://www.securityfocus.com/bid/93010

Ghostscript CVE-2016-7976 Remote Command Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95332

SAP Single Sign On Denial of Service Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95363

SAP ERP Defence Forces and Public Security Remote Authorization Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95362

Ghostscript CVE-2016-7977 Information Disclosure Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95334

Ghostscript CVE-2016-7979 Remote Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95337

Docker CVE-2016-9962 Local Privilege Escalation Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95361

ThreatpostMetrix SDK for iOS CVE-2017-3182 SSL Certificate Validation Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95360

Foxit Reader for Linux Unspecified Stack Buffer Overflow Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95358

Foxit Reader and PhantomPDF Multiple Security Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95353

Foxit PDF Toolkit Memory Corruption Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95356

OSIsoft PI Coresight and PI Web API CVE-2017-5153 Information Disclosure Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95355

libgit2 'src/transports/http.c' Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95359

libgit2 Multiple NULL Pointer Dereference Remote Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95339

libgit2 'badssl.c' Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95357

libgit2 'badssl.c' Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95354

Microsoft Edge CVE-2017-0002 Remote Privilege Escalation Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95284

Microsoft Windows LSASS CVE-2017-0004 Local Denial of Service Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95318

Ansible CVE-2016-9587 Arbitrary Command Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95352

KDE Ark CVE-2017-5330 Arbitrary Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95349

Shutter CVE-2016-10081 Arbitrary Command Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95351

Adobe Flash Player APSB17-02 Memory Corruption Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95350

libgit2 'smart_pkt.c' Buffer Overflow Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95338

Adobe Acrobat and Reader APSB17-01 Multiple Buffer Overflow Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95346

Adobe Flash Player APSB17-02 Multiple Heap Buffer Overflow Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95347

Adobe Acrobat and Reader Multiple Unspecified Heap Buffer Overflow Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95344

Adobe Acrobat and Reader CVE-2017-2947 Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95348

Adobe Acrobat and Reader APSB17-01 Multiple Unspecified Memory Corruption Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95345

Adobe Acrobat and Reader APSB17-01 Use-After-Free Multiple Remote Code Execution Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95343

Adobe Flash Player APSB17-02 Unspecified Use After Free Remote Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95342Foxit Reader for Linux Unspecified Stack Buffer Overflow Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95358

Foxit Reader and PhantomPDF Multiple Security Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95353

Foxit PDF Toolkit Memory Corruption Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95356

OSIsoft PI Coresight and PI Web API CVE-2017-5153 Information Disclosure Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95355

libgit2 'src/transports/http.c' Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95359

libgit2 Multiple NULL Pointer Dereference Remote Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95339

libgit2 'badssl.c' Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95357

libgit2 'badssl.c' Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95354

Microsoft Edge CVE-2017-0002 Remote Privilege Escalation Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95284

Microsoft Windows LSASS CVE-2017-0004 Local Denial of Service Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95318

Ansible CVE-2016-9587 Arbitrary Command Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95352

KDE Ark CVE-2017-5330 Arbitrary Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95349

Shutter CVE-2016-10081 Arbitrary Command Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95351

Adobe Flash Player APSB17-02 Memory Corruption Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95350

libgit2 'smart_pkt.c' Buffer Overflow Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95338

Adobe Acrobat and Reader APSB17-01 Multiple Buffer Overflow Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95346

Adobe Flash Player APSB17-02 Multiple Heap Buffer Overflow Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95347

Adobe Acrobat and Reader Multiple Unspecified Heap Buffer Overflow Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95344

Adobe Acrobat and Reader CVE-2017-2947 Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95348

Adobe Acrobat and Reader APSB17-01 Multiple Unspecified Memory Corruption Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95345

Adobe Acrobat and Reader APSB17-01 Use-After-Free Multiple Remote Code Execution Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/95343

Adobe Flash Player APSB17-02 Unspecified Use After Free Remote Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95342

Adobe Acrobat and Reader CVE-2017-2962 Remote Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95340

Adobe Flash Player CVE-2017-2938 Unspecified Security Bypass Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95341

RETIRED: Ghostscript Multiple Security Vulnerabilities
2017-01-11
http://www.securityfocus.com/bid/93447

Ghostscript CVE-2016-7979 Remote Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95337

Ghostscript CVE-2016-7978 Remote Code Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95336

Ghostscript CVE-2016-7977 Information Disclosure Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95334

Ghostscript CVE-2016-7976 Remote Command Execution Vulnerability
2017-01-11
http://www.securityfocus.com/bid/95332

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2017-01-11
http://www.securityfocus.com/bid/93150

SANS News

Hancitor/Pony/Vawtrak malspam

Threatpost

Lawmakers Reintroduce Popular Email Privacy Act

Adobe Patches Code Execution Flaws in Flash, Reader, Acrobat

Netflix Phishing Campaign Targeted User Information, Credit Card Data

Microsoft Issues Record Low Number of Patch Tuesday Bulletins

Exploit

Microsoft Windows Kernel - 'win32k.sys' 'NtSetWindowLongPtr' Privilege Escalation...

Boxoft Wav 1.0 - Buffer Overflow

Huawei Flybox B660 - Cross-Site Request Forgery

Blackboard LMS 9.1 SP14 - Cross-Site Scripting

Adobe Flash Player 24.0.0.186 - 'ActionGetURL2' Out-of-Bounds Memory Corruption

11.1.2017

Bugtraq

Directadmin ControlPanel 1.50.1 Cross-Site-Scripting Vulnerability 2017-01-10
iedb team gmail com

QuickBooks 2017 Admin Credentials Disclosure 2017-01-06
info thegrideon com

Malware

TrojanDownloader:Win32/Trulop.A 
TrojanSpy:Win32/Bancos.AMZ 
Ransom:Win32/Firecrypt.A 

Ransom.Evil

JS.Downloader.E

Phishing

AOL

9th January 2017

Somebody has already tagged
your current profile

AOL

9th January 2017

A girl has marked your current
profile page

AOL

9th January 2017

A woman has recently tagged
your current profile

PayPal

9th January 2017

YOUR PAYPAL ACCOUNT IS
TEMPORARILY LIMITED

Capital One capitalone@notific

9th January 2017

Action Required: Your online
access has been locked

Vulnerebility

Adobe Acrobat and Reader Multiple Unspecified Heap Buffer Overflow Vulnerabilities
2017-01-10
http://www.securityfocus.com/bid/95344

Adobe Acrobat and Reader CVE-2017-2947 Security Bypass Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95348

Adobe Acrobat and Reader APSB17-01 Multiple Unspecified Memory Corruption Vulnerabilities
2017-01-10
http://www.securityfocus.com/bid/95345

Adobe Acrobat and Reader APSB17-01 Use-After-Free Multiple Remote Code Execution Vulnerabilities
2017-01-10
http://www.securityfocus.com/bid/95343

Adobe Flash Player APSB17-02 Unspecified Use After Free Remote Code Execution Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95342

Adobe Acrobat and Reader CVE-2017-2962 Remote Code Execution Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95340

Adobe Flash Player CVE-2017-2938 Unspecified Security Bypass Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95341

RETIRED: Ghostscript Multiple Security Vulnerabilities
2017-01-10
http://www.securityfocus.com/bid/93447

Ghostscript CVE-2016-7979 Remote Code Execution Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95337

Ghostscript CVE-2016-7978 Remote Code Execution Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95336

Ghostscript CVE-2016-7977 Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95334

Ghostscript CVE-2016-7976 Remote Command Execution Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95332

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2017-01-10
http://www.securityfocus.com/bid/93150

Multiple Intel Ethernet Controller CVE-2016-8106 Denial of Service Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95333

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91319

Node.js CVE-2016-7099 Security Bypass Vulnerability
2017-01-10
http://www.securityfocus.com/bid/93191

Node.js CVE-2016-5325 CRLF Injection Vulnerability
2017-01-10
http://www.securityfocus.com/bid/93483

PHPMailer CVE-2017-5223 Local Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95328

DLink DGS-1100 Switch CVE-2016-10125 Local Hardcoded SSL Certificate Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95329

Apache Hadoop CVE-2016-3086 Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95335

Merlin@home CVE-2017-5149 Man in the Middle Security Bypass Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95331

IBM Security Identity Manager Virtual Appliance Local Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95327

Libgraphite Multiple Security Vulnerabilities
2017-01-10
http://www.securityfocus.com/bid/82991

IBM Security Identity Manager CVE-2016-9739 Local Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95326

Mozilla Firefox Multiple Security Vulnerabilities
2017-01-10
http://www.securityfocus.com/bid/91075

IBM Security Identity Manager Virtual Appliance Cross Site Scripting Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95323

IBM InfoSphere Information Server CVE-2016-8999 Security Bypass Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95325

Multiple IBM Products CVE-2016-9000 Clickjacking Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95324

Apache Standard Taglibs CVE-2015-0254 XML External Entity Injection Vulnerability
2017-01-10
http://www.securityfocus.com/bid/72809

IBM Security Network Protection and Mobile Connect Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/80883
Node.js CVE-2016-7099 Security Bypass Vulnerability
2017-01-10
http://www.securityfocus.com/bid/93191

Node.js CVE-2016-5325 CRLF Injection Vulnerability
2017-01-10
http://www.securityfocus.com/bid/93483

PHPMailer CVE-2017-5223 Local Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95328

DLink DGS-1100 Switch CVE-2016-10125 Local Hardcoded SSL Certificate Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95329

Apache Hadoop CVE-2016-3086 Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95335

Merlin@home CVE-2017-5149 Man in the Middle Security Bypass Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95331

IBM Security Identity Manager Virtual Appliance Local Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95327

Libgraphite Multiple Security Vulnerabilities
2017-01-10
http://www.securityfocus.com/bid/82991

IBM Security Identity Manager CVE-2016-9739 Local Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95326

Mozilla Firefox Multiple Security Vulnerabilities
2017-01-10
http://www.securityfocus.com/bid/91075

IBM Security Identity Manager Virtual Appliance Cross Site Scripting Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95323

IBM InfoSphere Information Server CVE-2016-8999 Security Bypass Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95325

Multiple IBM Products CVE-2016-9000 Clickjacking Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95324

Apache Standard Taglibs CVE-2015-0254 XML External Entity Injection Vulnerability
2017-01-10
http://www.securityfocus.com/bid/72809

IBM Security Network Protection and Mobile Connect Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/80883

IBM MQ Appliance CVE-2015-7420 Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/82301

IBM WebSphere Application Server Liberty Profile CVE-2016-2923 Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91518

IBM MQ Appliance CVE-2015-7421 Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/82303

IBM WebSphere Application Server CVE-2016-5983 Remote Code Execution Vulnerability
2017-01-10
http://www.securityfocus.com/bid/93162

Multiple EMC Products CVE-2016-0917 Authentication Bypass Vulnerability
2017-01-10
http://www.securityfocus.com/bid/93023

Multiple F5 BIG-IP Products CVE-2016-7469 HTML Injection Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95320

Apache Commons FileUpload CVE-2016-3092 Denial Of Service Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91453

Oracle Java SE CVE-2016-3503 Local Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91996

Oracle Java SE CVE-2016-3552 Local Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/92000

Oracle Java SE CVE-2016-3498 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91956

Matroska libEBML CVE-2016-1514 Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95124

IBM WebSphere Application Server Liberty CVE-2016-3040 Open Redirect Vulnerability
2017-01-10
http://www.securityfocus.com/bid/92986

Multiple Samsung Android Mobile Phones CVE-2017-5217 Denial of Service Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95319

OpenSSH CVE-2016-3115 Remote Command Injection Vulnerability
2017-01-10
http://www.securityfocus.com/bid/84314

IBM WebSphere Application Server CVE-2016-5986 Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/93013
IBM Security Identity Manager Virtual Appliance Local Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95327

Libgraphite Multiple Security Vulnerabilities
2017-01-10
http://www.securityfocus.com/bid/82991

IBM Security Identity Manager CVE-2016-9739 Local Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95326

Mozilla Firefox Multiple Security Vulnerabilities
2017-01-10
http://www.securityfocus.com/bid/91075

IBM Security Identity Manager Virtual Appliance Cross Site Scripting Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95323

IBM InfoSphere Information Server CVE-2016-8999 Security Bypass Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95325

Multiple IBM Products CVE-2016-9000 Clickjacking Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95324

Apache Standard Taglibs CVE-2015-0254 XML External Entity Injection Vulnerability
2017-01-10
http://www.securityfocus.com/bid/72809

IBM Security Network Protection and Mobile Connect Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/80883

IBM MQ Appliance CVE-2015-7420 Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/82301

IBM WebSphere Application Server Liberty Profile CVE-2016-2923 Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91518

IBM MQ Appliance CVE-2015-7421 Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/82303

IBM WebSphere Application Server CVE-2016-5983 Remote Code Execution Vulnerability
2017-01-10
http://www.securityfocus.com/bid/93162

Multiple EMC Products CVE-2016-0917 Authentication Bypass Vulnerability
2017-01-10
http://www.securityfocus.com/bid/93023

Multiple F5 BIG-IP Products CVE-2016-7469 HTML Injection Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95320

Apache Commons FileUpload CVE-2016-3092 Denial Of Service Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91453

Oracle Java SE CVE-2016-3503 Local Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91996

Oracle Java SE CVE-2016-3552 Local Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/92000

Oracle Java SE CVE-2016-3498 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91956

Matroska libEBML CVE-2016-1514 Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95124

IBM WebSphere Application Server Liberty CVE-2016-3040 Open Redirect Vulnerability
2017-01-10
http://www.securityfocus.com/bid/92986

Multiple Samsung Android Mobile Phones CVE-2017-5217 Denial of Service Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95319

OpenSSH CVE-2016-3115 Remote Command Injection Vulnerability
2017-01-10
http://www.securityfocus.com/bid/84314

IBM WebSphere Application Server CVE-2016-5986 Information Disclosure Vulnerability
2017-01-10
http://www.securityfocus.com/bid/93013

IBM WebSphere MQ CVE-2016-0360 Remote Code Execution Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95317

Netop Remote Control CVE-2017-5216 Stack Buffer Overflow Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95316

icoutils CVE-2017-5208 Local Integer Overflow Vulnerability
2017-01-10
http://www.securityfocus.com/bid/95315

OpenSSH 'x11_open_helper()' Function Security Bypass Vulnerability
2017-01-10
http://www.securityfocus.com/bid/75525

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/93643

Oracle Java SE CVE-2016-5556 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/93618
Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/93637

Oracle Java SE CVE-2016-3552 Local Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/92000

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5568 Use-After-Free Remote Code Execution Vulnerability
2017-01-10
http://www.securityfocus.com/bid/93621

Oracle Java SE CVE-2016-3498 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91956

Oracle Java SE CVE-2016-3458 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91945

Oracle Java SE CVE-2016-3550 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91951

Oracle Java SE and JRockit CVE-2016-3508 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91972

Oracle Java SE CVE-2016-3511 Local Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91990

Oracle Java SE CVE-2016-3606 Remote Code Execution Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91912

Oracle Java SE CVE-2016-3587 Remote Code Execution Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91904

Oracle Fusion Middleware CVE-2016-3596 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91942

Oracle Fusion Middleware CVE-2016-3594 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91939

Oracle Fusion Middleware CVE-2016-3590 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91935

Oracle Fusion Middleware CVE-2016-3595 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91940

Oracle Fusion Middleware CVE-2016-3593 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91908

Oracle Fusion Middleware CVE-2016-3578 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91925

Oracle Fusion Middleware CVE-2016-3592 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91937

Oracle Fusion Middleware CVE-2016-3583 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91934

Oracle Fusion Middleware CVE-2016-3591 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91936

Oracle Fusion Middleware CVE-2016-3577 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91924

Oracle Fusion Middleware CVE-2016-3579 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91927

Oracle Fusion Middleware CVE-2016-3582 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91933

Oracle Fusion Middleware CVE-2016-3581 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91931

Oracle Fusion Middleware CVE-2016-3580 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91929

Mozilla Firefox Multiple Security Vulnerabilities
2017-01-10
http://www.securityfocus.com/bid/93049

Oracle Fusion Middleware CVE-2016-3575 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91921

Oracle Fusion Middleware CVE-2016-3574 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91914

Oracle Fusion Middleware CVE-2016-3576 Remote Security Vulnerability
2017-01-10
http://www.securityfocus.com/bid/91923

Libgraphite Multiple Security Vulnerabilities
2017-01-10
http://www.securityfocus.com/bid/82991

SANS News

January 2017 Microsoft Patch Tuesday

Adobe January 2017 Patches

Port 37777 "MapTable" Requests

Realtors Be Aware: You Are a Target

Threatpost

Following Extortion Attempt, Gaming Network ESEA Breached, 1.5M Profiles Leaked

Hello Kitty Database of 3.3 Million Breached Credentials Surfaces

St. Jude Medical Patches Vulnerable Cardiac Devices

MongoDB Attacks Jump From Hundreds to 28,000 In Just Days

Exploit

FMyLife Clone Script (Pro Edition) 1.1 - Cross-Site Request Forgery (Add Admin)

WordPress Plugin WP Support Plus Responsive Ticket System 7.1.3 - Privilege...

Freepbx < 2.11.1.5 - Remote Code Execution  

My Php Dating 2.0 - 'id' Parameter SQL Injection

My Php Dating 2.0 - 'path' Parameter SQL Injection

My Link Trader 1.1 - Authentication Bypass

DiskBoss Enterprise 7.5.12 - 'POST' Buffer Overflow (SEH)

Friends in War Make or Break 1.7 - 'imgid' Parameter SQL Injection

10.1.2017

Bugtraq

QuickBooks 2017 Admin Credentials Disclosure 2017-01-06
info thegrideon com

Malware

Ransom.FireCrypt

Phishing

service@intl.paypal.com

8th January 2017

your account has been limited
until we hear from you

NatWest

8th January 2017

Your account has been
suspended

Notice

8th January 2017

Important !

Bank of America Alert

8th January 2017

Security Alert: Suspicious
Activity

Vulnerebility

OpenSSH 'x11_open_helper()' Function Security Bypass Vulnerability
2017-01-09
http://www.securityfocus.com/bid/75525

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2017-01-09
http://www.securityfocus.com/bid/93643

Oracle Java SE CVE-2016-5556 Remote Security Vulnerability
2017-01-09
http://www.securityfocus.com/bid/93618

Oracle MySQL CVE-2016-6663 Unspecified Security Vulnerability
2017-01-09
http://www.securityfocus.com/bid/92911

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2017-01-09
http://www.securityfocus.com/bid/93636

IBM WebSphere Application Server CVE-2016-5986 Information Disclosure Vulnerability
2017-01-09
http://www.securityfocus.com/bid/93013

IBM WebSphere Application Server Liberty CVE-2016-0378 Information Disclosure Vulnerability
2017-01-09
http://www.securityfocus.com/bid/93143

IBM WebSphere Application Server Liberty CVE-2016-3040 Open Redirect Vulnerability
2017-01-09
http://www.securityfocus.com/bid/92986

IBM WebSphere Application Server Liberty Profile CVE-2016-3042 Cross Site Scripting Vulnerability
2017-01-09
http://www.securityfocus.com/bid/92985

OpenSSH CVE-2016-1908 Security Bypass Vulnerability
2017-01-09
http://www.securityfocus.com/bid/84427

OpenSSH PAM Support Multiple Remote Code Execution Vulnerabilities
2017-01-09
http://www.securityfocus.com/bid/76317

Nginx CVE-2016-1000105 Security Bypass Vulnerability
2017-01-09
http://www.securityfocus.com/bid/91819

PHP CVE-2016-5385 Security Bypass Vulnerability
2017-01-09
http://www.securityfocus.com/bid/91821

OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability
2017-01-09
http://www.securityfocus.com/bid/91081

OpenSSL CVE-2016-2180 Local Denial of Service Vulnerability
2017-01-09
http://www.securityfocus.com/bid/92117

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-01-09
http://www.securityfocus.com/bid/91319

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2017-01-09
http://www.securityfocus.com/bid/92630

Apache Commons FileUpload CVE-2016-3092 Denial Of Service Vulnerability
2017-01-09
http://www.securityfocus.com/bid/91453

Oracle Java SE CVE-2016-3598 Remote Code Execution Vulnerability
2017-01-09
http://www.securityfocus.com/bid/91918

Oracle Java SE CVE-2016-3610 Remote Code Execution Vulnerability
2017-01-09
http://www.securityfocus.com/bid/91930

Oracle Java SE CVE-2016-3503 Local Security Vulnerability
2017-01-09
http://www.securityfocus.com/bid/91996

Oracle Java SE CVE-2016-5582 Remote Security Vulnerability
2017-01-09
http://www.securityfocus.com/bid/93623

Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2017-01-09
http://www.securityfocus.com/bid/93637

Oracle Java SE CVE-2016-3552 Local Security Vulnerability
2017-01-09
http://www.securityfocus.com/bid/92000

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2017-01-09
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5568 Use-After-Free Remote Code Execution Vulnerability
2017-01-09
http://www.securityfocus.com/bid/93621

Oracle Java SE CVE-2016-3498 Remote Security Vulnerability
2017-01-09
http://www.securityfocus.com/bid/91956

Oracle Java SE CVE-2016-3458 Remote Security Vulnerability
2017-01-09
http://www.securityfocus.com/bid/91945

Oracle Java SE CVE-2016-3550 Remote Security Vulnerability
2017-01-09
http://www.securityfocus.com/bid/91951

Oracle Java SE and JRockit CVE-2016-3508 Remote Security Vulnerability
2017-01-09
http://www.securityfocus.com/bid/91972

SANS News

Merry X-Mas ransomware from Sunday 2017-01-08

Threatpost

 

Exploit

DirectAdmin 1.50.1 - Denial of Service

Advanced Desktop Locker 6.0.0 - Lock Screen Bypass

Brave Browser 1.2.16/1.9.56 - Address Bar URL Spoofing

My Link Trader 1.1 - Authentication Bypass

Splunk 6.1.1 - 'Referer' Header Cross-Site Scripting

9.1.2017

Bugtraq

QuickBooks 2017 Admin Credentials Disclosure 2017-01-06
info thegrideon com

[SECURITY] [DSA 3753-1] libvncserver security update 2017-01-05
Sebastien Delafond (seb debian org)

Malware

 

Phishing

 

Vulnerebility

OpenSSH 'x11_open_helper()' Function Security Bypass Vulnerability
2017-01-08
http://www.securityfocus.com/bid/75525

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2017-01-08
http://www.securityfocus.com/bid/93643

Oracle Java SE CVE-2016-5556 Remote Security Vulnerability
2017-01-08
http://www.securityfocus.com/bid/93618

Oracle MySQL CVE-2016-6663 Unspecified Security Vulnerability
2017-01-08
http://www.securityfocus.com/bid/92911

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2017-01-08
http://www.securityfocus.com/bid/93636

IBM WebSphere Application Server CVE-2016-5986 Information Disclosure Vulnerability
2017-01-08
http://www.securityfocus.com/bid/93013

IBM WebSphere Application Server Liberty CVE-2016-0378 Information Disclosure Vulnerability
2017-01-08
http://www.securityfocus.com/bid/93143

IBM WebSphere Application Server Liberty CVE-2016-3040 Open Redirect Vulnerability
2017-01-08
http://www.securityfocus.com/bid/92986

IBM WebSphere Application Server Liberty Profile CVE-2016-3042 Cross Site Scripting Vulnerability
2017-01-08
http://www.securityfocus.com/bid/92985

OpenSSH CVE-2016-1908 Security Bypass Vulnerability
2017-01-08
http://www.securityfocus.com/bid/84427

OpenSSH PAM Support Multiple Remote Code Execution Vulnerabilities
2017-01-08
http://www.securityfocus.com/bid/76317

Nginx CVE-2016-1000105 Security Bypass Vulnerability
2017-01-08
http://www.securityfocus.com/bid/91819

PHP CVE-2016-5385 Security Bypass Vulnerability
2017-01-08
http://www.securityfocus.com/bid/91821

OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability
2017-01-08
http://www.securityfocus.com/bid/91081

OpenSSL CVE-2016-2180 Local Denial of Service Vulnerability
2017-01-08
http://www.securityfocus.com/bid/92117

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-01-08
http://www.securityfocus.com/bid/91319

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2017-01-08
http://www.securityfocus.com/bid/92630

Apache Commons FileUpload CVE-2016-3092 Denial Of Service Vulnerability
2017-01-08
http://www.securityfocus.com/bid/91453

Oracle Java SE CVE-2016-3598 Remote Code Execution Vulnerability
2017-01-08
http://www.securityfocus.com/bid/91918

Oracle Java SE CVE-2016-3610 Remote Code Execution Vulnerability
2017-01-08
http://www.securityfocus.com/bid/91930

Oracle Java SE CVE-2016-3503 Local Security Vulnerability
2017-01-08
http://www.securityfocus.com/bid/91996

Oracle Java SE CVE-2016-5582 Remote Security Vulnerability
2017-01-08
http://www.securityfocus.com/bid/93623

Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2017-01-08
http://www.securityfocus.com/bid/93637

Oracle Java SE CVE-2016-3552 Local Security Vulnerability
2017-01-08
http://www.securityfocus.com/bid/92000

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2017-01-08
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5568 Use-After-Free Remote Code Execution Vulnerability
2017-01-08
http://www.securityfocus.com/bid/93621

Oracle Java SE CVE-2016-3498 Remote Security Vulnerability
2017-01-08
http://www.securityfocus.com/bid/91956

Oracle Java SE CVE-2016-3458 Remote Security Vulnerability
2017-01-08
http://www.securityfocus.com/bid/91945

Oracle Java SE CVE-2016-3550 Remote Security Vulnerability
2017-01-08
http://www.securityfocus.com/bid/91951

Oracle Java SE and JRockit CVE-2016-3508 Remote Security Vulnerability
2017-01-08
http://www.securityfocus.com/bid/91972

SANS News

 

Threatpost

 

Exploit

 

8.1.2017

Bugtraq

QuickBooks 2017 Admin Credentials Disclosure 2017-01-06
info thegrideon com

[SECURITY] [DSA 3753-1] libvncserver security update 2017-01-05
Sebastien Delafond (seb debian org)

Malware

 

Phishing

Amazon

7th January 2017

Amazon.com Account Notice!!!

iCloud Support

7th January 2017

[ICLOUD] : YOUR ACCOUNT WILL
BE CLOSED AFTER 48 HOURS ✔

service@paypal.com

7th January 2017

your account has been limited
until we hear from you

Vulnerebility

OpenSSH 'x11_open_helper()' Function Security Bypass Vulnerability
2017-01-07
http://www.securityfocus.com/bid/75525

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93643

Oracle Java SE CVE-2016-5556 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93618

Oracle MySQL CVE-2016-6663 Unspecified Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/92911

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93636

IBM WebSphere Application Server CVE-2016-5986 Information Disclosure Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93013

IBM WebSphere Application Server Liberty CVE-2016-0378 Information Disclosure Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93143

IBM WebSphere Application Server Liberty CVE-2016-3040 Open Redirect Vulnerability
2017-01-07
http://www.securityfocus.com/bid/92986

IBM WebSphere Application Server Liberty Profile CVE-2016-3042 Cross Site Scripting Vulnerability
2017-01-07
http://www.securityfocus.com/bid/92985

OpenSSH CVE-2016-1908 Security Bypass Vulnerability
2017-01-07
http://www.securityfocus.com/bid/84427

OpenSSH PAM Support Multiple Remote Code Execution Vulnerabilities
2017-01-07
http://www.securityfocus.com/bid/76317

Nginx CVE-2016-1000105 Security Bypass Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91819

PHP CVE-2016-5385 Security Bypass Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91821

OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91081

OpenSSL CVE-2016-2180 Local Denial of Service Vulnerability
2017-01-07
http://www.securityfocus.com/bid/92117

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91319

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2017-01-07
http://www.securityfocus.com/bid/92630

Apache Commons FileUpload CVE-2016-3092 Denial Of Service Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91453

Oracle Java SE CVE-2016-3598 Remote Code Execution Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91918

Oracle Java SE CVE-2016-3610 Remote Code Execution Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91930

Oracle Java SE CVE-2016-3503 Local Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91996

Oracle Java SE CVE-2016-5582 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93623

Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93637

Oracle Java SE CVE-2016-3552 Local Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/92000

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5568 Use-After-Free Remote Code Execution Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93621

Oracle Java SE CVE-2016-3498 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91956

Oracle Java SE CVE-2016-3458 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91945

Oracle Java SE CVE-2016-3550 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91951

Oracle Java SE and JRockit CVE-2016-3508 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91972OpenSSH 'x11_open_helper()' Function Security Bypass Vulnerability
2017-01-07
http://www.securityfocus.com/bid/75525

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93643

Oracle Java SE CVE-2016-5556 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93618

Oracle MySQL CVE-2016-6663 Unspecified Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/92911

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93636

IBM WebSphere Application Server CVE-2016-5986 Information Disclosure Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93013

IBM WebSphere Application Server Liberty CVE-2016-0378 Information Disclosure Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93143

IBM WebSphere Application Server Liberty CVE-2016-3040 Open Redirect Vulnerability
2017-01-07
http://www.securityfocus.com/bid/92986

IBM WebSphere Application Server Liberty Profile CVE-2016-3042 Cross Site Scripting Vulnerability
2017-01-07
http://www.securityfocus.com/bid/92985

OpenSSH CVE-2016-1908 Security Bypass Vulnerability
2017-01-07
http://www.securityfocus.com/bid/84427

OpenSSH PAM Support Multiple Remote Code Execution Vulnerabilities
2017-01-07
http://www.securityfocus.com/bid/76317

Nginx CVE-2016-1000105 Security Bypass Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91819

PHP CVE-2016-5385 Security Bypass Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91821

OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91081

OpenSSL CVE-2016-2180 Local Denial of Service Vulnerability
2017-01-07
http://www.securityfocus.com/bid/92117

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91319

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2017-01-07
http://www.securityfocus.com/bid/92630

Apache Commons FileUpload CVE-2016-3092 Denial Of Service Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91453

Oracle Java SE CVE-2016-3598 Remote Code Execution Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91918

Oracle Java SE CVE-2016-3610 Remote Code Execution Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91930

Oracle Java SE CVE-2016-3503 Local Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91996

Oracle Java SE CVE-2016-5582 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93623

Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93637

Oracle Java SE CVE-2016-3552 Local Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/92000

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5568 Use-After-Free Remote Code Execution Vulnerability
2017-01-07
http://www.securityfocus.com/bid/93621

Oracle Java SE CVE-2016-3498 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91956

Oracle Java SE CVE-2016-3458 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91945

Oracle Java SE CVE-2016-3550 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91951

Oracle Java SE and JRockit CVE-2016-3508 Remote Security Vulnerability
2017-01-07
http://www.securityfocus.com/bid/91972

SANS News

Using Security Tools to Compromize a Network

Threatpost

Google Patches Android Custom Boot Mode Vulnerability

Exploit

Google Android max86902 Driver - 'sysfs' Interfaces Race Condition

7.1.2017

Bugtraq

[SECURITY] [DSA 3753-1] libvncserver security update 2017-01-05
Sebastien Delafond (seb debian org)

[SECURITY][UPDATE] CVE-2016-8745 Apache Tomcat Information Disclosure 2017-01-05
Mark Thomas (markt apache org)

Malware

Ransom.FireCrypt

Android.Sofacy

Trojan.Powecod

Backdoor.Ememkor

Phishing

AOL

5th January 2017

An individual has already
tagged your current profile
page

AOL

5th January 2017

A girl has now tagged your own
account

AOL

5th January 2017

Someone has marked your own
account

AOL

5th January 2017

Somebody has recently marked
your account

PayPal

5th January 2017

OFFICIAL NOTICE FROM PAYPAL

service@paypal.com

5th January 2017

your account has been limited
until we hear from you

Vulnerebility

Oracle Fusion Middleware CVE-2016-3596 Remote Security Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91942

Oracle Fusion Middleware CVE-2016-3594 Remote Security Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91939

Oracle Fusion Middleware CVE-2016-3590 Remote Security Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91935

Oracle Fusion Middleware CVE-2016-3595 Remote Security Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91940

Oracle Fusion Middleware CVE-2016-3593 Remote Security Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91908

Oracle Fusion Middleware CVE-2016-3578 Remote Security Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91925

Oracle Fusion Middleware CVE-2016-3592 Remote Security Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91937

Oracle Fusion Middleware CVE-2016-3583 Remote Security Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91934

Oracle Fusion Middleware CVE-2016-3591 Remote Security Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91936

Oracle Fusion Middleware CVE-2016-3577 Remote Security Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91924

Oracle Fusion Middleware CVE-2016-3579 Remote Security Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91927

Oracle Fusion Middleware CVE-2016-3582 Remote Security Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91933

Oracle Fusion Middleware CVE-2016-3581 Remote Security Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91931

Oracle Fusion Middleware CVE-2016-3580 Remote Security Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91929

Mozilla Firefox Multiple Security Vulnerabilities
2017-01-06
http://www.securityfocus.com/bid/93049

Oracle Fusion Middleware CVE-2016-3575 Remote Security Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91921

Oracle Fusion Middleware CVE-2016-3574 Remote Security Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91914

Oracle Fusion Middleware CVE-2016-3576 Remote Security Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91923

Libgraphite Multiple Security Vulnerabilities
2017-01-06
http://www.securityfocus.com/bid/82991

Plone Unspecified Local File Include Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95280

Olive Diary DX 'page' Parameter Cross Site Scripting Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95314

Olive Blog CVE-2016-7839 Cross Site Scripting Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95309

Multiple McAfee Products CVE-2016-8006 Local Authentication Bypass Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95313

Ghostscript 'psi/zht2.c' NULL Pointer Dereference Remote Code Execution Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95311

Olive Design WEB SCHEDULE 'month' Parameter Cross Site Scripting Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95312

IBM License Metric Tool and BigFix Inventory CVE-2016-8977 Information Disclosure Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95308

Nessus CVE-2017-5179 HTML Injection Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95307

Irssi Multiple Memory Corruption Vulnerabilities
2017-01-06
http://www.securityfocus.com/bid/95310

IBM Tivoli Storage Manager CVE-2016-6110 Local Information Disclosure Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95306

Game Music Emulators Multiple Memory Corruption Vulnerabilities
2017-01-06
http://www.securityfocus.com/bid/95305Plone Unspecified Local File Include Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95280

Olive Blog CVE-2016-7839 Cross Site Scripting Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95309

Multiple McAfee Products CVE-2016-8006 Local Authentication Bypass Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95313

Ghostscript 'psi/zht2.c' NULL Pointer Dereference Remote Code Execution Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95311

Olive Design WEB SCHEDULE 'month' Parameter Cross Site Scripting Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95312

IBM License Metric Tool and BigFix Inventory CVE-2016-8977 Information Disclosure Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95308

Nessus CVE-2017-5179 HTML Injection Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95307

Irssi Multiple Memory Corruption Vulnerabilities
2017-01-06
http://www.securityfocus.com/bid/95310

IBM Tivoli Storage Manager CVE-2016-6110 Local Information Disclosure Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95306

Game Music Emulators Multiple Memory Corruption Vulnerabilities
2017-01-06
http://www.securityfocus.com/bid/95305

Slurm CVE-2016-10030 Security Bypass Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95299

Rockwell Automation Logix5000 Controllers CVE-2016-9343 Stack Buffer Overflow Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95304

PCSC-Lite CVE-2016-10109 Use After Free Local Denial of Service Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95263

Ghostscript Multiple Security Vulnerabilities
2017-01-06
http://www.securityfocus.com/bid/93447

Linux Kernel CVE-2016-8666 Stack Overflow Denial of Service Vulnerability
2017-01-06
http://www.securityfocus.com/bid/93562

PHPMailer CVE-2016-10033 Remote Code Execution Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95108

Dnsmasq 'src/cache.c' Local Denial of Service Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91031

EMC ScaleIO CVE-2016-9869 Local Denial of Service Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95303

Rockwell Automation MicroLogix 1100 and 1400 Multiple Security Vulnerabilities
2017-01-06
http://www.securityfocus.com/bid/95302

systemd CVE-2016-7796 Local Denial of Service Vulnerability
2017-01-06
http://www.securityfocus.com/bid/93250

EMC ScaleIO CVE-2016-9868 Local Denial of Service Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95301

EMC ScaleIO CVE-2016-9867 Local Privilege Escalation Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95300

OpenLDAP CVE-2015-6908 Denial of Service Vulnerability
2017-01-06
http://www.securityfocus.com/bid/76714

Python smtplib CVE-2016-0772 Man in the Middle Security Bypass Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91225

Python 'urrlib2/urllib/httplib/http.client' HTTP Header Injection Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91226

IBM WebSphere Application Server CVE-2016-5986 Information Disclosure Vulnerability
2017-01-06
http://www.securityfocus.com/bid/93013

IBM WebSphere Application Server CVE-2015-7417 Cross Site Scripting Vulnerability
2017-01-06
http://www.securityfocus.com/bid/81738

IBM WebSphere Application Server CVE-2016-0385 Security Bypass Vulnerability
2017-01-06
http://www.securityfocus.com/bid/92505

IBM WebSphere Application Server CVE-2016-0359 HTTP Response Splitting Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91484

IBM WebSphere Application Server CVE-2016-2960 Denial of Service Vulnerability
2017-01-06
http://www.securityfocus.com/bid/92354OpenLDAP CVE-2015-6908 Denial of Service Vulnerability
2017-01-06
http://www.securityfocus.com/bid/76714

Python smtplib CVE-2016-0772 Man in the Middle Security Bypass Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91225

Python 'urrlib2/urllib/httplib/http.client' HTTP Header Injection Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91226

IBM WebSphere Application Server CVE-2016-5986 Information Disclosure Vulnerability
2017-01-06
http://www.securityfocus.com/bid/93013

IBM WebSphere Application Server CVE-2015-7417 Cross Site Scripting Vulnerability
2017-01-06
http://www.securityfocus.com/bid/81738

IBM WebSphere Application Server CVE-2016-0385 Security Bypass Vulnerability
2017-01-06
http://www.securityfocus.com/bid/92505

IBM WebSphere Application Server CVE-2016-0359 HTTP Response Splitting Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91484

IBM WebSphere Application Server CVE-2016-2960 Denial of Service Vulnerability
2017-01-06
http://www.securityfocus.com/bid/92354

Apache PDFBox CVE-2016-2175 XML External Entity Injection Vulnerability
2017-01-06
http://www.securityfocus.com/bid/90902

Firejail CVE-2017-5180 Local Code Execution Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95298

ISC BIND 'buffer.c' Remote Denial of Service Vulnerability
2017-01-06
http://www.securityfocus.com/bid/93188

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2017-01-06
http://www.securityfocus.com/bid/93814

IBM BigFix Platform CVE-2016-6082 Remote Code Execution Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95297

GNU glibc 'getaddrinfo()' Function Incomplete Fix Remote Denial of Service Vulnerability
2017-01-06
http://www.securityfocus.com/bid/88440

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2017-01-06
http://www.securityfocus.com/bid/92630

Action View CVE-2016-6316 Cross Site Scripting Vulnerability
2017-01-06
http://www.securityfocus.com/bid/92430

Ruby on Rails Active Record CVE-2016-6317 SQL Injection Vulnerability
2017-01-06
http://www.securityfocus.com/bid/92434

Sprecher Automation SPRECON-E Service CVE-2016-10041 Privilege Escalation Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95296

IBM Security Access Manager Products CVE-2016-2908 Information Disclosure Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95295

Joomla! aWeb Cart Watching System Extension CVE-2016-10114 Multiple SQL Injection Vulnerabilities
2017-01-06
http://www.securityfocus.com/bid/95293

WordPress WooCommerce Plugin CVE-2016-10112 Cross Site Scripting Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95292

IBM BigFix Platform CVE-2016-6085 Denial of Service Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95291

Objective Systems ASN1C CVE-2016-5080 Heap Based Buffer Overflow Vulnerability
2017-01-06
http://www.securityfocus.com/bid/91836

Linux Kernel 'mm/memory.c' Local Code Execution Vulnerability
2017-01-06
http://www.securityfocus.com/bid/93591

Linux Kernel CVE-2016-7042 Local Denial of Service Vulnerability
2017-01-06
http://www.securityfocus.com/bid/93544

Linux Kernel 'path_openat()' Function Use After Free Memory Corruption Vulnerability
2017-01-06
http://www.securityfocus.com/bid/76142

Linux Kernel 'fs/isofs/rock.c' Infinite Loop Denial of Service Vulnerability
2017-01-06
http://www.securityfocus.com/bid/71717

IBM UrbanCode Deploy CVE-2016-8938 Remote Code Execution Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95289

IBM UrbanCode Deploy CVE-2016-6068 Information Disclosure Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95290

Atlassian Confluence CVE-2016-6283 HTML Injection Vulnerability
2017-01-06
http://www.securityfocus.com/bid/95288

SANS News

Ransomware Operators Cold Calling UK Schools to Get Malware Through

Was the Brazilian version of Google hijacked two days ago?

New Year's Resolution: Build Your Own Malware Lab?

Threatpost

U.S. Intelligence Report Due Next Week on Election Hack

Attacks On MongoDB Rise As Hijackings Continue

FTC: D-Link Failed to Secure Routers, IP Cameras

Experts Warn of Novel PDF-Based Phishing Scam

Exploit

Microsoft Windows 10 Edge - 'chakra.dll' Info Leak / Type Confusion Remote Code...

6.1.2017

Bugtraq

[SECURITY][UPDATE] CVE-2016-8745 Apache Tomcat Information Disclosure 2017-01-05
Mark Thomas (markt apache org)

ESA-2016-157: EMC ScaleIO Multiple Vulnerabilities 2017-01-05
EMC Product Security Response Center (Security_Alert emc com)

[security bulletin] HPSBGN03688 rev.1 - HPE Operations Orchestration, Remote Code Execution 2017-01-03
security-alert hpe com

[SECURITY] [DSA 3750-2] libphp-phpmailer regression update 2017-01-03
Thijs Kinkhorst (thijs debian org)

Malware

Ransom:Win32/Dereilock.A
Ransom:Win32/Cerber.D

Ransom:Win32/Cerber.B

Ransom:Win32/Cerber.HVT

Ransom:Win32/Cerber

Ransom:Win32/Cerber.A

TrojanSpy:MSIL/Siplog.B

TrojanSpy:Win32/Banker.APN

TrojanSpy:Win32/Banker.APL

Win32/Clodaconas

Phishing

AOL

5th January 2017

An individual has already
tagged your current profile
page

AOL

5th January 2017

A girl has now tagged your own
account

AOL

5th January 2017

Someone has marked your own
account

AOL

5th January 2017

Somebody has recently marked
your account

PayPal

5th January 2017

OFFICIAL NOTICE FROM PAYPAL

service@paypal.com

5th January 2017

your account has been limited
until we hear from you

Vulnerebility

Joomla! aWeb Cart Watching System Extension CVE-2016-10114 Multiple SQL Injection Vulnerabilities
2017-01-05
http://www.securityfocus.com/bid/95293

WordPress WooCommerce Plugin CVE-2016-10112 Cross Site Scripting Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95292

IBM BigFix Platform CVE-2016-6085 Denial of Service Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95291

Objective Systems ASN1C CVE-2016-5080 Heap Based Buffer Overflow Vulnerability
2017-01-05
http://www.securityfocus.com/bid/91836

Linux Kernel 'mm/memory.c' Local Code Execution Vulnerability
2017-01-05
http://www.securityfocus.com/bid/93591

Linux Kernel CVE-2016-7042 Local Denial of Service Vulnerability
2017-01-05
http://www.securityfocus.com/bid/93544

Linux Kernel 'path_openat()' Function Use After Free Memory Corruption Vulnerability
2017-01-05
http://www.securityfocus.com/bid/76142

Linux Kernel 'fs/isofs/rock.c' Infinite Loop Denial of Service Vulnerability
2017-01-05
http://www.securityfocus.com/bid/71717

IBM UrbanCode Deploy CVE-2016-8938 Remote Code Execution Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95289

IBM UrbanCode Deploy CVE-2016-6068 Information Disclosure Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95290

Atlassian Confluence CVE-2016-6283 HTML Injection Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95288

Apache HttpComponents Incomplete Fix CVE-2014-3577 SSL Validation Security Bypass Vulnerability
2017-01-05
http://www.securityfocus.com/bid/69258

IBM BigFix Platform CVE-2016-6084 Denial of Service Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95286

Google Pixel Binder CVE-2016-8468 Privilege Escalation Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95285

IBM UrbanCode Deploy CVE-2016-9008 Security Bypass Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95283

Google Android Synaptics CVE-2016-8458 Privilege Escalation Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95279

Google Android Synaptics Touchscreen Driver CVE-2016-8451 Privilege Escalation Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95277

Google Android One Qualcomm Radio Driver CVE-2016-5345 Privilege Escalation Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95273

IBM BigFix Inventory CVE-2016-8963 Local Information Disclosure Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95282

Multiple Google Devices CVE-2017-0404 Privilege Escalation Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95281

Plone Unspecified Local File Include Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95280

Linux Kernel CVE-2016-9754 Local Integer Overflow Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95278

Drupal Doubleclick for Publishers Module Multiple Cross Site Scripting Vulnerabilities
2017-01-05
http://www.securityfocus.com/bid/95276

Google Nexus Qualcomm Wi-Fi Driver CVE-2016-8452 Privilege Escalation Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95275

Pivotal GemFire for PCF CVE-2016-9885 Remote Privilege Escalation Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95270

Drupal Permissions by Term Module Access Bypass and Information Disclosure Vulnerabilities
2017-01-05
http://www.securityfocus.com/bid/95271

Multiple Google Devices CVE-2017-0403 Privilege Escalation Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95274

IBM General Parallel File System CVE-2016-6115 Unspecified Buffer Overflow Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95272

Multiple Google Devices Qualcomm Sound Driver CVE-2016-8450 Privilege Escalation Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95269

FreeIPA CVE-2016-9575 Insecure File Permissions Vulnerability
2017-01-05
http://www.securityfocus.com/bid/95068

SANS News

Mixed Messages : Novel Phishing Attempts Trying to Steal Your E-mail Password Goes Wrong

Threatpost

Google Patches 29 Critical Android Vulnerabilities Including Holes in Mediaserver, Qualcomm

FTC Issues Public Challenge to Improve IoT Patching


Claudio Guarnieri on Security Without Borders

Exploit

Kaspersky 17.0.0 - Local CA root Incorrectly Protected

Atlassian Confluence 5.9.12 - Persistent Cross-Site Scripting

5.1.2017

Bugtraq

[security bulletin] HPSBGN03688 rev.1 - HPE Operations Orchestration, Remote Code Execution 2017-01-03
security-alert hpe com

[SECURITY] [DSA 3750-2] libphp-phpmailer regression update 2017-01-03
Thijs Kinkhorst (thijs debian org)

0-day: QNAP NAS Devices suffer of heap overflow 2016-12-31
bashis (mcw noemail eu)

Malware

 

Phishing

Google

4th January 2017

Google Drive Unread Messages
From????

AOL

4th January 2017

An individual has already
tagged your current profile

AOL

3rd January 2017

A woman seems to have marked
your current profile

AOL

3rd January 2017

An individual seems to have
tagged your profile page

AOL

3rd January 2017

An individual has now tagged
your current account

AOL

3rd January 2017

A person has already marked
your own personal profile

AOL

3rd January 2017

Someone appears to have tagged
your current user profile

AOL

3rd January 2017

Someone has tagged your very
own personal profile

AOL

3rd January 2017

An individual has now marked
your current profile

service@paypal.com

3rd January 2017

your account has been limited
until we hear from you

Vulnerebility

Google Android Mediaserver Multiple Denial of Service Vulnerabilities
2017-01-04
http://www.securityfocus.com/bid/95230

Google Android MediaTek Components Multiple Privilege Escalation Vulnerabilities
2017-01-04
http://www.securityfocus.com/bid/95229

Multiple F5 BIG-IP Products CVE-2016-5024 Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95228

Google Android Qualcomm components Multiple Unspecified Security Vulnerabilities
2017-01-04
http://www.securityfocus.com/bid/95227

musl libc 'tre_tnfa_run_parallel()' Function Integer Overflow Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93795

Google Android Audioserver Multiple Information Disclosure Vulnerabilities
2017-01-04
http://www.securityfocus.com/bid/95226

Linux Kernel 'kvm/emulate.c' Information Disclosure Vulnerability
2017-01-04
http://www.securityfocus.com/bid/94615

QEMU '/hw/char/serial.c' Divide By Zero Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93563

Xen CVE-2016-9381 Privilege Escalation Vulnerability
2017-01-04
http://www.securityfocus.com/bid/94476

HP Operations Orchestration CVE-2016-8519 Remote Code Execution Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95225

Shoretel Mobility Client CVE-2016-6562 SSL Certificate Validation Security Bypass Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95224

Xen CVE-2016-9932 Information Disclosure Vulnerability
2017-01-04
http://www.securityfocus.com/bid/94863

Multiple Kaspersky Products Information Disclosure and Security Bypass Vulnerabilities
2017-01-04
http://www.securityfocus.com/bid/95223

Xen CVE-2016-9637 Privilege Escalation Vulnerability
2017-01-04
http://www.securityfocus.com/bid/94699

Xen CVE-2016-9385 Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/94472

Xen PyGrub Multiple Privilege Escalation Vulnerabilities
2017-01-04
http://www.securityfocus.com/bid/94473

Xen CVE-2016-9383 Memory Corruption Vulnerability
2017-01-04
http://www.securityfocus.com/bid/94474

QEMU 'hw/dma/rc4030.c' Divide By Zero Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93567

QEMU CVE-2016-8910 Infinite Loop Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93844

QEMU CVE-2016-8909 Infinite Loop Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93842

Xen CVE-2016-9382 Privilege Escalation Vulnerability
2017-01-04
http://www.securityfocus.com/bid/94470

Xen CVE-2016-9386 Privilege Escalation Vulnerability
2017-01-04
http://www.securityfocus.com/bid/94471

Xen CVE-2016-7777 Security Bypass Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93344

QEMU 'hw/net/mcf_fec.c' Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93273

QEMU Infinite Loop CVE-2016-7909 Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93275

QEMU 'hw/usb/hcd-xhci.c' Infinite Loop Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93469

Libotr CVE-2016-2851 Integer Overflow Vulnerability
2017-01-04
http://www.securityfocus.com/bid/84285

pidgin-otr CVE-2015-8833 Use After Free Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/84295

ImageMagick CVE-2016-10071 Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95222

LibTIFF CVE-2016-10092 Heap Buffer Overflow Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95218
OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93150

OpenSSL 'BN_bn2dec()' Function Out of Bounds Write Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/92557

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-01-04
http://www.securityfocus.com/bid/91319

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93153

OpenJPEG 'convert.c' Remote Heap Based Buffer Overflow Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93976

OpenJPEG 'convert.c' Null Pointer Dereference Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93783

OpenSSL CVE-2016-6307 Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93152

OpenJPEG CVE-2016-9114 Null Pointer Dereference Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93979

OpenJPEG 'convert.c' CVE-2016-9115 Remote Heap Based Buffer Overflow Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93977

OpenSSL CVE-2016-2180 Local Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/92117

OpenSSL CVE-2016-6302 Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/92628

OpenJPEG CVE-2016-8332 Remote Code Execution Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93242

OpenJPEG 'openjp2/pi.c' Divide-By-Zero Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93978

OpenJPEG CVE-2016-9113 Null Pointer Dereference Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93980

OpenJPEG 'convert.c' CVE-2016-9116 Null Pointer Dereference Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93975

OpenJPEG Multiple Remote Heap Based Buffer Overflow Vulnerabilities
2017-01-04
http://www.securityfocus.com/bid/94822

OpenJPEG CVE-2016-7445 Null Pointer Dereference Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93040

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2017-01-04
http://www.securityfocus.com/bid/92630

OpenSSL CVE-2016-2181 Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/92982

PHPMailer CVE-2016-10045 Incomplete Fix Remote Code Execution Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95130

QEMU '/hw/char/serial.c' Divide By Zero Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93563

Multiple IBM Products CVE-2016-8961 Open Redirect Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95128

MODX Revolution CVE-2016-10037 Directory Traversal Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95127

QEMU 'hw/net/mcf_fec.c' Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93273

Xen CVE-2016-9381 Privilege Escalation Vulnerability
2017-01-04
http://www.securityfocus.com/bid/94476

Xen CVE-2016-9386 Privilege Escalation Vulnerability
2017-01-04
http://www.securityfocus.com/bid/94471

Xen CVE-2016-9383 Memory Corruption Vulnerability
2017-01-04
http://www.securityfocus.com/bid/94474

Xen PyGrub Multiple Privilege Escalation Vulnerabilities
2017-01-04
http://www.securityfocus.com/bid/94473

Xen CVE-2016-9637 Privilege Escalation Vulnerability
2017-01-04
http://www.securityfocus.com/bid/94699

QEMU Infinite Loop CVE-2016-7909 Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93275
Xen CVE-2016-7777 Security Bypass Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93344

QEMU 'hw/net/mcf_fec.c' Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93273

QEMU Infinite Loop CVE-2016-7909 Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93275

QEMU 'hw/usb/hcd-xhci.c' Infinite Loop Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/93469

Libotr CVE-2016-2851 Integer Overflow Vulnerability
2017-01-04
http://www.securityfocus.com/bid/84285

pidgin-otr CVE-2015-8833 Use After Free Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/84295

ImageMagick CVE-2016-10071 Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95222

LibTIFF CVE-2016-10092 Heap Buffer Overflow Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95218

ImageMagick CVE-2016-10068 Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95219

ImageMagick CVE-2016-10069 Security Bypass Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95216

LibTIFF CVE-2016-10093 Heap Buffer Overflow Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95215

ImageMagick CVE-2016-10067 Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95220

ImageMagick CVE-2016-10070 Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95221

LibTIFF CVE-2016-10094 Heap Buffer Overflow Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95214

ImageMagick CVE-2016-10066 Security Bypass Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95217

ImageMagick CVE-2016-10058 Information Disclosure Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95212

ImageMagick CVE-2016-10064 Buffer Overflow Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95211

Swiftmailer CVE-2016-10074 Remote Code Execution Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95140

ImageMagick CVE-2016-10065 Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95213

ImageMagick CVE-2016-10063 Buffer Overflow Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95210

ImageMagick CVE-2016-10060 Security Bypass Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95208

GNU glibc 'getaddrinfo()' Function Incomplete Fix Remote Denial of Service Vulnerability
2017-01-04
http://www.securityfocus.com/bid/88440

ImageMagick CVE-2016-10062 Security Bypass Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95209

ImageMagick CVE-2016-10059 Buffer Overflow Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95206

ImageMagick CVE-2016-10061 Security Bypass Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95207

IBM Security Privileged Identity Manager CVE-2016-5990 Arbitrary File Upload Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95199

Western Digital MyCloud NAS CVE-2016-10107 Remote Command Injection Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95201

Borg Backup CVE-2016-10099 Spoofing Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95205

Borg CVE-2016-10100 Spoofing Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95203

Multiple NETGEAR Products CVE-2016-10106 Directory Traversal Vulnerability
2017-01-04
http://www.securityfocus.com/bid/95204

SANS News

 

Threatpost

Pentagon Subcontractor Inadvertently Leaks 11 Gigs of Sensitive Data

Vermont Grid ‘Hack’ Latest Tumble Down Attribution Rabbit Hole

Costin Raiu on the Importance of Using YARA

Exploit

My Click Counter 1.0 - Authentication Bypass

4.1.2017

Bugtraq

 

Malware

Backdoor:Win32/Sacto.B!dha 
TrojanSpy:Win32/Siblope.A 
Backdoor:Win32/Grabsir.A 
Backdoor:MSIL/Aataki.AC!bit 
TrojanDownloader:Win32/Ulicky.B!bit 
TrojanDownloader:Win32/Ulicky.A!bit 
TrojanDownloader:Win32/Macdowpay.A 
TrojanDownloader:Win32/Apcrewnod 
TrojanDownloader:PowerShell/Ploprolo!rfn 
TrojanDownloader:PowerShell/Hipoele.B!bit 

Phishing

 

Vulnerebility

Samba CVE-2015-5299 Remote Security Bypass Vulnerability
2017-01-03
http://www.securityfocus.com/bid/79729

Samba CVE-2016-2114 Remote Security Bypass Vulnerability
2017-01-03
http://www.securityfocus.com/bid/86011

Samba CVE-2016-2118 Man in the Middle Security Bypass Vulnerability
2017-01-03
http://www.securityfocus.com/bid/86002

Multiple IBM Products CVE-2016-6033 Cross Site Request Forgery Vulnerability
2017-01-03
http://www.securityfocus.com/bid/95102

GraphicsMagick CVE-2016-7996 Heap Buffer Overflow Vulnerability
2017-01-03
http://www.securityfocus.com/bid/93464

OpenSSL CVE-2016-2181 Denial of Service Vulnerability
2017-01-03
http://www.securityfocus.com/bid/92982

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2017-01-03
http://www.securityfocus.com/bid/92630

GraphicsMagick 'memory.c' Denial of Service Vulnerability
2017-01-03
http://www.securityfocus.com/bid/94625

IBM Sterling B2B Integrator Standard Edition CVE-2016-6020 Open Redirection Vulnerability
2017-01-03
http://www.securityfocus.com/bid/95098

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2017-01-03
http://www.securityfocus.com/bid/93150

OpenSSL 'BN_bn2dec()' Function Out of Bounds Write Denial of Service Vulnerability
2017-01-03
http://www.securityfocus.com/bid/92557

OpenSSL CVE-2016-2179 Multiple Denial of Service Vulnerabilities
2017-01-03
http://www.securityfocus.com/bid/92987

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-01-03
http://www.securityfocus.com/bid/91319

ImageMagick CVE-2016-3715 Arbitrary File Deletion Vulnerability
2017-01-03
http://www.securityfocus.com/bid/89852

OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability
2017-01-03
http://www.securityfocus.com/bid/91081

WinSparkle CVE-2016-7838 Remote Security Bypass Vulnerability
2017-01-03
http://www.securityfocus.com/bid/95099

GraphicsMagick CVE-2016-8683 Denial of Service Vulnerability
2017-01-03
http://www.securityfocus.com/bid/93600

GraphicsMagick CVE-2016-7997 NULL Pointer Denial of Service Vulnerability
2017-01-03
http://www.securityfocus.com/bid/93467

OpenSSL CVE-2016-6302 Denial of Service Vulnerability
2017-01-03
http://www.securityfocus.com/bid/92628

GraphicsMagick 'memory.c' Memory Corruption Vulnerability
2017-01-03
http://www.securityfocus.com/bid/93779

GraphicsMagick Multiple Denial of Service Vulnerabilities
2017-01-03
http://www.securityfocus.com/bid/89348

ImageMagick CVE-2016-5118 Remote Command Execution Vulnerability
2017-01-03
http://www.securityfocus.com/bid/90938

GraphicsMagick CVE-2016-8682 Stack Based Buffer Overflow Vulnerability
2017-01-03
http://www.securityfocus.com/bid/93597

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2017-01-03
http://www.securityfocus.com/bid/93153

OpenSSL CVE-2016-2180 Local Denial of Service Vulnerability
2017-01-03
http://www.securityfocus.com/bid/92117

GraphicsMagick Multiple Security Vulnerabilities
2017-01-03
http://www.securityfocus.com/bid/83241

ImageMagick CVE-2016-3714 Remote Code Execution Vulnerability
2017-01-03
http://www.securityfocus.com/bid/89848

GraphicsMagick CVE-2015-8808 Out of Bound Read Denial of Service Vulnerability
2017-01-03
http://www.securityfocus.com/bid/83058

Exim CVE-2016-9963 Unspecified Information Disclosure Vulnerability
2017-01-03
http://www.securityfocus.com/bid/94947

MODX Revolution CVE-2016-10038 Directory Traversal Vulnerability
2017-01-03
http://www.securityfocus.com/bid/95097

SANS News

 

Threatpost

 

Exploit

Internet Download Accelerator 6.10.1.1527 - FTP Buffer Overflow (SEH)

PHPMailer < 5.2.20 / SwiftMailer < 5.4.5-DEV / Zend Framework / zend-mail < 2.4.11...

3.1.2017

Bugtraq

0-day: QNAP NAS Devices suffer of heap overflow 2016-12-31
bashis (mcw noemail eu)

[SECURITY] [DSA 3750-1] libphp-phpmailer security update 2016-12-31
Thijs Kinkhorst (thijs debian org)

[slackware-security] seamonkey (SSA:2016-365-03) 2016-12-30
Slackware Security Team (security slackware com)

Fwd: [ANNOUNCE] CVE-2016-6793 Apache Wicket deserialization vulnerability 2016-12-31
Pedro Santos (pedrosans gmail com)

[slackware-security] mozilla-thunderbird (SSA:2016-365-02) 2016-12-30
Slackware Security Team (security slackware com)

[slackware-security] libpng (SSA:2016-365-01) 2016-12-30
Slackware Security Team (security slackware com)

Malware

 

Phishing

 

Vulnerebility

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2017-01-02
http://www.securityfocus.com/bid/93643

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2017-01-02
http://www.securityfocus.com/bid/93636

Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2017-01-02
http://www.securityfocus.com/bid/93637

Oracle Java SE CVE-2016-5568 Use-After-Free Remote Code Execution Vulnerability
2017-01-02
http://www.securityfocus.com/bid/93621

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2017-01-02
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5582 Remote Security Vulnerability
2017-01-02
http://www.securityfocus.com/bid/93623

Xen Multiple Denial of Service Vulnerabilities
2017-01-02
http://www.securityfocus.com/bid/94475

Xen CVE-2016-9385 Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/94472

Xen CVE-2016-9383 Memory Corruption Vulnerability
2017-01-02
http://www.securityfocus.com/bid/94474

Xen PyGrub Multiple Privilege Escalation Vulnerabilities
2017-01-02
http://www.securityfocus.com/bid/94473

Xen CVE-2016-9637 Privilege Escalation Vulnerability
2017-01-02
http://www.securityfocus.com/bid/94699

Xen XSA-201 Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/94581

Xen CVE-2016-9932 Information Disclosure Vulnerability
2017-01-02
http://www.securityfocus.com/bid/94863

Xen CVE-2016-9381 Privilege Escalation Vulnerability
2017-01-02
http://www.securityfocus.com/bid/94476

Xen CVE-2016-9382 Privilege Escalation Vulnerability
2017-01-02
http://www.securityfocus.com/bid/94470

Adobe Flash Player and AIR APSB16-08 Multiple Unspecified Memory Corruption Vulnerabilities
2017-01-02
http://www.securityfocus.com/bid/84311

Xen CVE-2016-9384 Information Disclosure Vulnerability
2017-01-02
http://www.securityfocus.com/bid/94468

Xen CVE-2016-9386 Privilege Escalation Vulnerability
2017-01-02
http://www.securityfocus.com/bid/94471

LibTIFF CVE-2016-10095 Stack Based Buffer Overflow VulnerabilityPHP CVE-2015-4644 Incomplete Fix Null Pointer Deference Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/75292

PHP CVE-2016-5385 Security Bypass Vulnerability
2017-01-02
http://www.securityfocus.com/bid/91821

OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability
2017-01-02
http://www.securityfocus.com/bid/91081

OpenSSL CVE-2016-6305 Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/93149

OpenSSL CVE-2016-2181 Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/92982

OpenSSL CVE-2016-2180 Local Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/92117

OpenSSL CVE-2016-6308 Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/93151

OpenSSL CVE-2016-6303 Integer Overflow Vulnerability
2017-01-02
http://www.securityfocus.com/bid/92984

BusyBox CVE-2014-9645 Local Security Bypass Vulnerability
2017-01-02
http://www.securityfocus.com/bid/72324

Oberhumer LZO CVE-2014-4607 Multiple Memory Corruption Vulnerabilities
2017-01-02
http://www.securityfocus.com/bid/68213

CHICKEN 'read-string!' Procedure Remote Buffer Overflow Vulnerability
2017-01-02
http://www.securityfocus.com/bid/62690

CHICKEN 'read-u8vector!' Procedure Remote Buffer Overflow Vulnerability
2017-01-02
http://www.securityfocus.com/bid/67468

CHICKEN 'data-structures-tests.scm' Remote Buffer Overflow Vulnerability
2017-01-02
http://www.securityfocus.com/bid/72011

CHICKEN 'qs' Function Local Command Injection Vulnerability
2017-01-02
http://www.securityfocus.com/bid/59320

RoundCube Webmail 'content page' HTML-injection Vulnerability
2017-01-02
http://www.securityfocus.com/bid/90880

GeniXCMS CVE-2016-10096 SQL Injection Vulnerability
2017-01-02
http://www.securityfocus.com/bid/95172

LibVNCServer Multiple Heap Based Buffer Overflow Vulnerabilities
2017-01-02
http://www.securityfocus.com/bid/95170

Linux Kernel CVE-2016-10088 Incomplete Fix Multiple Local Memory Corruption Vulnerabilities
2017-01-02
http://www.securityfocus.com/bid/95169

CyaSSL Multiple Security Vulnerabilities
2017-01-02
http://www.securityfocus.com/bid/66780

Mozilla Firefox MFSA2016-94 and MFSA2016-95 Multiple Security Vulnerabilities
2017-01-02
http://www.securityfocus.com/bid/94885

Mozilla Firefox MFSA2016-94 Multiple Security Vulnerabilities
2017-01-02
http://www.securityfocus.com/bid/94883

Apache Wicket CVE-2016-6793 Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/95168

Nagios CVE-2016-9566 Local Privilege Escalation Vulnerability
2017-01-02
http://www.securityfocus.com/bid/94919

PHPMailer CVE-2016-10033 Remote Code Execution Vulnerability
2017-01-02
http://www.securityfocus.com/bid/95108

Python Pillow CVE-2016-4009 Integer Overflow Vulnerability
2017-01-02
http://www.securityfocus.com/bid/86064

Python Pillow Multiple Security Vulnerabilities
2017-01-02
http://www.securityfocus.com/bid/94234

Python Imaging Library Package Multiple Information Disclosure Vulnerabilities
2017-01-02
http://www.securityfocus.com/bid/65513

Python Imaging Library Multiple Insecure Temporary File Creation Vulnerabilities
2017-01-02
http://www.securityfocus.com/bid/65511

Python Pillow and PIL 'PcdDecode.c' Buffer Overflow Vulnerability
2017-01-02
http://www.securityfocus.com/bid/82449

Zend Framework 'zend-mail' Component Remote Code Execution Vulnerability
2017-01-02
http://www.securityfocus.com/bid/95144Piwigo CVE-2016-10085 Remote File Include Vulnerability
2017-01-02
http://www.securityfocus.com/bid/95167

Linux Kernel CVE-2013-6282 Local Privilege Escalation Vulnerabilities
2017-01-02
http://www.securityfocus.com/bid/63734

Piwigo 'admin/plugin.php' Cross Site Scripting Vulnerability
2017-01-02
http://www.securityfocus.com/bid/95166

Piwigo CVE-2016-10084 Remote File Inclusion Vulnerability
2017-01-02
http://www.securityfocus.com/bid/95164

Serendipity CVE-2016-10082 Arbitrary File Include Vulnerability
2017-01-02
http://www.securityfocus.com/bid/95165

GStreamer Bad Plug-ins CVE-2016-9812 Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/95160

GStreamer Bad Plug-ins CVE-2016-9809 Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/95147

GStreamer Bad Plug-ins CVE-2016-9445 Integer Overflow Vulnerability
2017-01-02
http://www.securityfocus.com/bid/94421

GStreamer Bad Plug-ins CVE-2016-9813 NULL pointer Dereference Remote Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/95158

GStreamer Bad Plug-ins 'vmnc/vmncdec.c' Information Disclosure Vulnerability
2017-01-02
http://www.securityfocus.com/bid/94423

OpenSSL CVE-2016-6303 Integer Overflow Vulnerability
2017-01-02
http://www.securityfocus.com/bid/92984

OpenSSL CVE-2016-7052 Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/93171

OpenSSL CVE-2016-6308 Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/93151

OpenSSL CVE-2016-2181 Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/92982

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/93150

OpenSSL CVE-2016-6309 Remote Code Execution Vulnerability
2017-01-02
http://www.securityfocus.com/bid/93177

Gstreamer CVE-2016-9810 Invalid Memory Read Denial Of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/95163

Open Source Bike Share Multiple Unspecified SQL Injection Vulnerabilities
2017-01-02
http://www.securityfocus.com/bid/95162

Gstreamer CVE-2016-9811 Out Of Bounds Read Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/95161

IBM WebSphere Application Server CVE-2016-5986 Information Disclosure Vulnerability
2017-01-02
http://www.securityfocus.com/bid/93013

IBM WebSphere Application Server CVE-2016-5983 Remote Code Execution Vulnerability
2017-01-02
http://www.securityfocus.com/bid/93162

IBM WebSphere Application Server CVE-2016-0306 Information Disclosure Vulnerability
2017-01-02
http://www.securityfocus.com/bid/85978

Lenovo Transition CVE-2016-8227 Local Privilege Escalation Vulnerability
2017-01-02
http://www.securityfocus.com/bid/95159

libpng NULL pointer Dereference 'png_set_text_2()' Function Remote Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/95157

Dotclear CVE-2016-9891 Multiple Cross Site Scripting Vulnerabilities
2017-01-02
http://www.securityfocus.com/bid/95156

IBM WebSphere Application Server CVE-2016-8934 Cross Site Scripting Vulnerability
2017-01-02
http://www.securityfocus.com/bid/95154

Apache 'mod_wsgi' Module Privilege Escalation Vulnerability
2017-01-02
http://www.securityfocus.com/bid/68111

Dell SonicWALL Global Management System Multiple SQL Injection Vulnerabilities
2017-01-02
http://www.securityfocus.com/bid/95155

GStreamer Good Plug-ins CVE-2016-9807 Denial of Service Vulnerability
2017-01-02
http://www.securityfocus.com/bid/95148

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2017-01-02
http://www.securityfocus.com/bid/94499
SANS News

py2exe Decompiling - Part 1

Threatpost

 

Exploit

Xfinity Gateway (Technicolor DPC3941T) - Cross-Site Request Forgery

Internet Download Accelerator 6.10.1.1527 - FTP Buffer Overflow (SEH)

QNAP NAS Devices - Heap Overflow

2.1.2017

Bugtraq

 

Malware

 

Phishing

service@intl.paypal.com

1st January 2017

Login Security Question and
Answer Change

Google

31st December 2016

Google Drive Unread Messages
From????

USAA

31st December 2016

USAA PAYMENT PENDING APPROVAL

contato

31st December 2016

hi

Vulnerebility

Piwigo CVE-2016-10085 Remote File Include Vulnerability
2017-01-01
http://www.securityfocus.com/bid/95167

Linux Kernel CVE-2013-6282 Local Privilege Escalation Vulnerabilities
2017-01-01
http://www.securityfocus.com/bid/63734

Piwigo 'admin/plugin.php' Cross Site Scripting Vulnerability
2017-01-01
http://www.securityfocus.com/bid/95166

Piwigo CVE-2016-10084 Remote File Inclusion Vulnerability
2017-01-01
http://www.securityfocus.com/bid/95164

Serendipity CVE-2016-10082 Arbitrary File Include Vulnerability
2017-01-01
http://www.securityfocus.com/bid/95165

GStreamer Bad Plug-ins CVE-2016-9812 Denial of Service Vulnerability
2017-01-01
http://www.securityfocus.com/bid/95160

GStreamer Bad Plug-ins CVE-2016-9809 Denial of Service Vulnerability
2017-01-01
http://www.securityfocus.com/bid/95147

GStreamer Bad Plug-ins CVE-2016-9445 Integer Overflow Vulnerability
2017-01-01
http://www.securityfocus.com/bid/94421

GStreamer Bad Plug-ins CVE-2016-9813 NULL pointer Dereference Remote Denial of Service Vulnerability
2017-01-01
http://www.securityfocus.com/bid/95158

GStreamer Bad Plug-ins 'vmnc/vmncdec.c' Information Disclosure Vulnerability
2017-01-01
http://www.securityfocus.com/bid/94423

OpenSSL CVE-2016-6303 Integer Overflow Vulnerability
2017-01-01
http://www.securityfocus.com/bid/92984

OpenSSL CVE-2016-7052 Denial of Service Vulnerability
2017-01-01
http://www.securityfocus.com/bid/93171

OpenSSL CVE-2016-6308 Denial of Service Vulnerability
2017-01-01
http://www.securityfocus.com/bid/93151

OpenSSL CVE-2016-2181 Denial of Service Vulnerability
2017-01-01
http://www.securityfocus.com/bid/92982

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2017-01-01
http://www.securityfocus.com/bid/93150

OpenSSL CVE-2016-6309 Remote Code Execution Vulnerability
2017-01-01
http://www.securityfocus.com/bid/93177

Gstreamer CVE-2016-9810 Invalid Memory Read Denial Of Service Vulnerability
2017-01-01
http://www.securityfocus.com/bid/95163

Open Source Bike Share Multiple Unspecified SQL Injection Vulnerabilities
2017-01-01
http://www.securityfocus.com/bid/95162

Gstreamer CVE-2016-9811 Out Of Bounds Read Denial of Service Vulnerability
2017-01-01
http://www.securityfocus.com/bid/95161

IBM WebSphere Application Server CVE-2016-5986 Information Disclosure Vulnerability
2017-01-01
http://www.securityfocus.com/bid/93013

IBM WebSphere Application Server CVE-2016-5983 Remote Code Execution Vulnerability
2017-01-01
http://www.securityfocus.com/bid/93162

IBM WebSphere Application Server CVE-2016-0306 Information Disclosure Vulnerability
2017-01-01
http://www.securityfocus.com/bid/85978

Lenovo Transition CVE-2016-8227 Local Privilege Escalation Vulnerability
2017-01-01
http://www.securityfocus.com/bid/95159

libpng NULL pointer Dereference 'png_set_text_2()' Function Remote Denial of Service Vulnerability
2017-01-01
http://www.securityfocus.com/bid/95157

Dotclear CVE-2016-9891 Multiple Cross Site Scripting Vulnerabilities
2017-01-01
http://www.securityfocus.com/bid/95156

IBM WebSphere Application Server CVE-2016-8934 Cross Site Scripting Vulnerability
2017-01-01
http://www.securityfocus.com/bid/95154

Apache 'mod_wsgi' Module Privilege Escalation Vulnerability
2017-01-01
http://www.securityfocus.com/bid/68111

Dell SonicWALL Global Management System Multiple SQL Injection Vulnerabilities
2017-01-01
http://www.securityfocus.com/bid/95155

GStreamer Good Plug-ins CVE-2016-9807 Denial of Service Vulnerability
2017-01-01
http://www.securityfocus.com/bid/95148

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2017-01-01
http://www.securityfocus.com/bid/94499

SANS News

 

Threatpost

 

Exploit

Xfinity Gateway (Technicolor DPC3941T) - Cross-Site Request Forgery

Windows x64 - Password Protected Bind Shellcode (825 bytes)

1.1.2017

Bugtraq

 

Malware

 

Phishing

contato

31st December 2016

hi

PayPaI inc

30th December 2016

[Norton Anti]update your
account

Icloud.-Itunes-US.

30th December 2016

THE FOLLOWING CHANGES TO YOUR
ACCOUNT-APPLE, WERE MADE ON
DEC 28, 2016 AT 9:52:10 AM
(GMT):

Vulnerebility

 

SANS News

Ongoing Scans Below the Radar

Threatpost

FBI-DHS Report Links Fancy Bear Gang to Election Hacks

Exploit

Zend Framework / zend-mail < 2.4.11 - Remote Code Execution


2016


 

31.12.2016

Bugtraq

 

Malware

 

Phishing

no-reply@amazon.com

30th December 2016

Important message please read

Yahoo

29th December 2016

Un-avoidable Update

PayPall

29th December 2016

Your Account Has Ben Limited
until we hear from You

Vulnerebility

phpMyAdmin 'unserialize()' Function Remote Code Execution Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95055

NVIDIA GPU Driver CVE-2016-8813 Local Privilege Escalation Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95057

NVIDIA GPU Driver CVE-2016-8814 Local Privilege Escalation Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95054

NVIDIA GPU Driver CVE-2016-8818 Local Privilege Escalation Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95056

NVIDIA GPU Driver CVE-2016-8815 Local Privilege Escalation Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95053

phpMyAdmin CVE-2016-6623 Denial of Service Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95052

wolfSSL CVE-2016-7439 Local Information Disclosure Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95050

phpMyAdmin PMASA-2016-71 Security Bypass Vulnerability
2016-12-30
http://www.securityfocus.com/bid/94536

phpMyAdmin PMASA-2016-70 Security Bypass Vulnerability
2016-12-30
http://www.securityfocus.com/bid/94531

NVIDIA GPU Driver CVE-2016-8816 Local Privilege Escalation Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95051

phpMyAdmin CVE-2016-6619 SQL-Injection Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95048

phpMyAdmin CVE-2016-6622 Denial of Service Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95049

Multiple Netgear Routers VU#582384 Remote Command Injection Vulnerability
2016-12-30
http://www.securityfocus.com/bid/94819

phpMyAdmin CVE-2016-6615 Multiple Cross Site Scripting Vulnerabilities
2016-12-30
http://www.securityfocus.com/bid/95041

phpMyAdmin Table Partitioning Function PMASA-2016-68 Denial of Service Vulnerability
2016-12-30
http://www.securityfocus.com/bid/94526

phpMyAdmin PMASA-2016-69 Multiple SQL Injection Vulnerabilities
2016-12-30
http://www.securityfocus.com/bid/94533

NVIDIA GPU Driver CVE-2016-8820 Local Information Disclosure Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95045

phpMyAdmin CVE-2016-6618 Denial of Service Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95047

phpMyAdmin CVE-2016-6617 SQL-Injection Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95044

phpMyAdmin PMASA-2016-66 Remote Security Bypass Vulnerability
2016-12-30
http://www.securityfocus.com/bid/94535

phpMyAdmin 'BBCode' Code Injection Vulnerability
2016-12-30
http://www.securityfocus.com/bid/94528

phpMyAdmin CVE-2016-6616 SQL-Injection Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95042

Xen CVE-2016-10025 Denial of Service Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95026

NVIDIA GPU Driver CVE-2016-8822 Local Privilege Escalation Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95014

Cisco CloudCenter Orchestrator CVE-2016-9223 Privilege Escalation Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95024

NVIDIA GPU Driver CVE-2016-8821 Local Privilege Escalation Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95025

Multiple Cisco Intercloud Fabric CVE-2016-9217 Remote Security Bypass Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95023

Xen CVE-2016-10024 Denial of Service Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95021

SISCO SNAP-Lite Utility CVE-2015-6574 Denial of Service Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95022

Apache Tika CVE-2015-3271 Remote Information Disclosure Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95020OpenSSL CVE-2016-6305 Denial of Service Vulnerability
2016-12-30
http://www.securityfocus.com/bid/93149

PHP CVE-2016-7480 Remote Code Execution Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95152

OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability
2016-12-30
http://www.securityfocus.com/bid/91081

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2016-12-30
http://www.securityfocus.com/bid/93150

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2016-12-30
http://www.securityfocus.com/bid/91319

OpenSSL CVE-2016-6307 Denial of Service Vulnerability
2016-12-30
http://www.securityfocus.com/bid/93152

PHP CVE-2016-7479 Denial of Service Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95151

PHP CVE-2016-7478 Remote Denial Of Service Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95150

Multiple Huawei Products CVE-2016-8785 Information Disclosure Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95149

GStreamer Good Plug-ins CVE-2016-9807 Denial of Service Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95148

Swiftmailer CVE-2016-10074 Remote Code Execution Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95140

GStreamer Bad Plug-ins CVE-2016-9809 Denial of Service Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95147

Oracle Fusion Middleware CVE-2016-5578 Remote Security Vulnerability
2016-12-30
http://www.securityfocus.com/bid/93714

Pivotal MySQL for PCF CVE-2016-0898 Information Disclosure Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95146

DCMTK CVE-2015-8979 Stack Buffer Overflow Vulnerability
2016-12-30
http://www.securityfocus.com/bid/94951

Oracle Fusion Middleware CVE-2016-5579 Remote Security Vulnerability
2016-12-30
http://www.securityfocus.com/bid/93672

Oracle Fusion Middleware CVE-2016-5588 Remote Security Vulnerability
2016-12-30
http://www.securityfocus.com/bid/93748

Oracle Fusion Middleware CVE-2016-5577 Remote Security Vulnerability
2016-12-30
http://www.securityfocus.com/bid/93646

Oracle Fusion Middleware CVE-2016-5558 Remote Security Vulnerability
2016-12-30
http://www.securityfocus.com/bid/93752

Oracle Fusion Middleware CVE-2016-5574 Remote Security Vulnerability
2016-12-30
http://www.securityfocus.com/bid/93754

IBM Security Guardium Database Activity Monitor CVE-2016-6065 Local Command Injection Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95145

Pivotal Spring Security CVE-2016-9879 Security Bypass Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95142

Zend Framework 'zend-mail' Component Remote Code Execution Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95144

Multiple Huawei Products CVE-2016-8786 Denial of Service Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95139

tqdm CVE-2016-10075 Remote Code Execution Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95143

IBM License Metric Tool and BigFix Inventory CVE-2016-8966 Information Disclosure Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95138

PHPMailer CVE-2016-10045 Incomplete Fix Remote Code Execution Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95130

IBM AIX CVE-2016-8972 Local Privilege Escalation Vulnerability
2016-12-30
http://www.securityfocus.com/bid/94979

Oracle MySQL CVE-2016-6662 Remote Code Execution Vulnerability
2016-12-30
http://www.securityfocus.com/bid/92912

Multiple IBM Products CVE-2016-8980 XML External Entity Injection Vulnerability
2016-12-30
http://www.securityfocus.com/bid/95141

SANS News

Increase in Protocol 47 denys

More on Protocol 47 denys

Threatpost

PHPMailer, SwiftMailer Updates Resolve Critical Remote Code Execution Vulnerabilities

Exploit

Dell SonicWALL Secure Mobile Access SMA 8.1 - Cross-Site Scripting / Cross-Site...

Dell SonicWALL Global Management System GMS 8.1 - Blind SQL Injection

WordPress Plugin Slider Templatic Tevolution < 2.3.6 - Arbitrary File Upload

PHPMailer < 5.2.18 - Remote Code Execution (Python)

Android - get_user/put_user Exploit (Metasploit)

30.12.2016

Bugtraq

[CVE-2016-8741] Apache Qpid Broker for Java - Information Leakage 2016-12-28
Oleksandr Rudyy (orudyy gmail com)

PHPMailer < 5.2.20 Remote Code Execution PoC 0day Exploit (CVE-2016-10045) (Bypass of the CVE-2016-1033 patch) 2016-12-28
Dawid Golunski (dawid legalhackers com)

PHPMailer < 5.2.18 Remote Code Execution [updated advisory] [CVE-2016-10033] 2016-12-27
Dawid Golunski (dawid legalhackers com)

[SECURITY] [DSA 3746-1] graphicsmagick security update 2016-12-24
Luciano Bello (luciano debian org)

Malware

TrojanDropper:Win32/Rubat!rfn
TrojanDropper:Win32/Rubat.A!bit

TrojanSpy:MSIL/Kostioul.A

TrojanDropper:VBS/Dropula.A

TrojanDropper:MSIL/Suloc.A!bit

TrojanDownloader:Win32/Broskod.A!bit

TrojanDownloader:MSIL/Excrevie!rfn

TrojanDownloader:MSIL/Excrevie.A

PWS:Win32/Mofksys!rfn

Backdoor:Win32/Kanav!rfn

Phishing

PayPall

29th December 2016

Your Account Has Ben Limited
until we hear from You

NORTON AUTHORIZED PARTNER

28th December 2016

Get the new Norton Security to
protect your computer! Now
only $34.99!

Vulnerebility

OpenSSL CVE-2016-6305 Denial of Service Vulnerability
2016-12-29
http://www.securityfocus.com/bid/93149

PHP CVE-2016-7480 Remote Code Execution Vulnerability
2016-12-29
http://www.securityfocus.com/bid/95152

OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability
2016-12-29
http://www.securityfocus.com/bid/91081

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2016-12-29
http://www.securityfocus.com/bid/93150

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2016-12-29
http://www.securityfocus.com/bid/91319

OpenSSL CVE-2016-6307 Denial of Service Vulnerability
2016-12-29
http://www.securityfocus.com/bid/93152

PHP CVE-2016-7479 Denial of Service Vulnerability
2016-12-29
http://www.securityfocus.com/bid/95151

PHP CVE-2016-7478 Remote Denial Of Service Vulnerability
2016-12-29
http://www.securityfocus.com/bid/95150

Multiple Huawei Products CVE-2016-8785 Information Disclosure Vulnerability
2016-12-29
http://www.securityfocus.com/bid/95149

GStreamer Good Plug-ins CVE-2016-9807 Denial of Service Vulnerability
2016-12-29
http://www.securityfocus.com/bid/95148

Swiftmailer CVE-2016-10074 Remote Code Execution Vulnerability
2016-12-29
http://www.securityfocus.com/bid/95140

GStreamer Bad Plug-ins CVE-2016-9809 Denial of Service Vulnerability
2016-12-29
http://www.securityfocus.com/bid/95147

Oracle Fusion Middleware CVE-2016-5578 Remote Security Vulnerability
2016-12-29
http://www.securityfocus.com/bid/93714

Pivotal MySQL for PCF CVE-2016-0898 Information Disclosure Vulnerability
2016-12-29
http://www.securityfocus.com/bid/95146

DCMTK CVE-2015-8979 Stack Buffer Overflow Vulnerability
2016-12-29
http://www.securityfocus.com/bid/94951

Oracle Fusion Middleware CVE-2016-5579 Remote Security Vulnerability
2016-12-29
http://www.securityfocus.com/bid/93672

Oracle Fusion Middleware CVE-2016-5588 Remote Security Vulnerability
2016-12-29
http://www.securityfocus.com/bid/93748

Oracle Fusion Middleware CVE-2016-5577 Remote Security Vulnerability
2016-12-29
http://www.securityfocus.com/bid/93646

Oracle Fusion Middleware CVE-2016-5558 Remote Security Vulnerability
2016-12-29
http://www.securityfocus.com/bid/93752

Oracle Fusion Middleware CVE-2016-5574 Remote Security Vulnerability
2016-12-29
http://www.securityfocus.com/bid/93754

IBM Security Guardium Database Activity Monitor CVE-2016-6065 Local Command Injection Vulnerability
2016-12-29
http://www.securityfocus.com/bid/95145

Pivotal Spring Security CVE-2016-9879 Security Bypass Vulnerability
2016-12-29
http://www.securityfocus.com/bid/95142

Zend Framework 'zend-mail' Component Remote Code Execution Vulnerability
2016-12-29
http://www.securityfocus.com/bid/95144

Multiple Huawei Products CVE-2016-8786 Denial of Service Vulnerability
2016-12-29
http://www.securityfocus.com/bid/95139

tqdm CVE-2016-10075 Remote Code Execution Vulnerability
2016-12-29
http://www.securityfocus.com/bid/95143

IBM License Metric Tool and BigFix Inventory CVE-2016-8966 Information Disclosure Vulnerability
2016-12-29
http://www.securityfocus.com/bid/95138

PHPMailer CVE-2016-10045 Incomplete Fix Remote Code Execution Vulnerability
2016-12-29
http://www.securityfocus.com/bid/95130

IBM AIX CVE-2016-8972 Local Privilege Escalation Vulnerability
2016-12-29
http://www.securityfocus.com/bid/94979

Oracle MySQL CVE-2016-6662 Remote Code Execution Vulnerability
2016-12-29
http://www.securityfocus.com/bid/92912

Multiple IBM Products CVE-2016-8980 XML External Entity Injection Vulnerability
2016-12-29
http://www.securityfocus.com/bid/95141

SANS News

Using daemonlogger as a Software Tap

Threatpost

 

Exploit

SwiftMailer < 5.4.5-DEV - Remote Code Execution

WordPress Plugin Simply Poll 1.4.1 - SQL Injection

PHPMailer < 5.2.20 - Remote Code Execution

PHPMailer < 5.2.18 - Remote Code Execution (PHP)

29.12.2016

Bugtraq

[CVE-2016-8741] Apache Qpid Broker for Java - Information Leakage 2016-12-28
Oleksandr Rudyy (orudyy gmail com)

PHPMailer < 5.2.20 Remote Code Execution PoC 0day Exploit (CVE-2016-10045) (Bypass of the CVE-2016-1033 patch) 2016-12-28
Dawid Golunski (dawid legalhackers com)

PHPMailer < 5.2.18 Remote Code Execution [updated advisory] [CVE-2016-10033] 2016-12-27
Dawid Golunski (dawid legalhackers com)

Malware

 

Phishing

service@paypaI.com

28th December 2016

WE NOTICED UNUSUAL ACTIVITY ON
YOUR ACCOUNT

Vulnerebility

Linux Kernel CVE-2016-5195 Local Privilege Escalation Vulnerability
2016-12-28
http://www.securityfocus.com/bid/93793

cURL CVE-2016-4802 DLL Loading Local Code Execution Vulnerability
2016-12-28
http://www.securityfocus.com/bid/90997

Multiple Samsung Devices 'OTP' Service Remote Heap Buffer Overflow Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95134

libming 'parser.c' Heap Buffer Overflow Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95133

html5lib Multiple Cross Site Scripting Vulnerabilities
2016-12-28
http://www.securityfocus.com/bid/95132

PHPMailer CVE-2016-10033 Remote Code Execution Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95108

PyCrypto 'cryptmsg.py' Buffer Overflow Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95122

OpenSSL CVE-2016-6305 Denial of Service Vulnerability
2016-12-28
http://www.securityfocus.com/bid/93149

OpenSSL CVE-2016-7052 Denial of Service Vulnerability
2016-12-28
http://www.securityfocus.com/bid/93171

OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability
2016-12-28
http://www.securityfocus.com/bid/91081

libming 'read.c' Null Pointer Dereference Denial of Service Vulnerability
2016-12-28
http://www.securityfocus.com/bid/94627

Ignite Realtime Smack CVE-2016-10027 Man in the Middle Security Bypass Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95129

zlib Multiple Denial of Service Vulnerabilities
2016-12-28
http://www.securityfocus.com/bid/95131

OpenSSL CVE-2016-6309 Remote Code Execution Vulnerability
2016-12-28
http://www.securityfocus.com/bid/93177

OpenSSL CVE-2016-6303 Integer Overflow Vulnerability
2016-12-28
http://www.securityfocus.com/bid/92984

OpenSSL CVE-2016-2179 Multiple Denial of Service Vulnerabilities
2016-12-28
http://www.securityfocus.com/bid/92987

OpenSSL CVE-2016-6308 Denial of Service Vulnerability
2016-12-28
http://www.securityfocus.com/bid/93151

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2016-12-28
http://www.securityfocus.com/bid/93150

OpenSSL 'BN_bn2dec()' Function Out of Bounds Write Denial of Service Vulnerability
2016-12-28
http://www.securityfocus.com/bid/92557

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2016-12-28
http://www.securityfocus.com/bid/91319

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2016-12-28
http://www.securityfocus.com/bid/93153

OpenJPEG 'convert.c' Remote Heap Based Buffer Overflow Vulnerability
2016-12-28
http://www.securityfocus.com/bid/93976

OpenJPEG 'convert.c' Null Pointer Dereference Denial of Service Vulnerability
2016-12-28
http://www.securityfocus.com/bid/93783

OpenSSL CVE-2016-6307 Denial of Service Vulnerability
2016-12-28
http://www.securityfocus.com/bid/93152

OpenJPEG CVE-2016-9114 Null Pointer Dereference Denial of Service Vulnerability
2016-12-28
http://www.securityfocus.com/bid/93979

OpenJPEG 'convert.c' CVE-2016-9115 Remote Heap Based Buffer Overflow Vulnerability
2016-12-28
http://www.securityfocus.com/bid/93977

OpenSSL CVE-2016-2180 Local Denial of Service Vulnerability
2016-12-28
http://www.securityfocus.com/bid/92117

OpenSSL CVE-2016-6302 Denial of Service Vulnerability
2016-12-28
http://www.securityfocus.com/bid/92628

OpenJPEG CVE-2016-8332 Remote Code Execution Vulnerability
2016-12-28
http://www.securityfocus.com/bid/93242

OpenJPEG 'openjp2/pi.c' Divide-By-Zero Denial of Service Vulnerability
2016-12-28
http://www.securityfocus.com/bid/93978RTMPDump CVE-2015-8271 Remote Code Execution Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95125

RTMPDump NULL pointer Dereference Remote Denial of Service Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95123

PyCrypto 'cryptmsg.py' Buffer Overflow Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95122

Firejail '/etc/resolv.conf' Remote Security Bypass Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95119

Nagios CVE-2016-8641 Local Privilege Escalation Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95121

Trane ComfortLink II CVE-2015-2868 Remote Code Execution Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95118

TRANE COMFORTLINK II CVE-2015-2867 Hardcoded Credentials Security Bypass Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95120

IBM Jazz Foundation CVE-2016-6061 Cross Site Scripting Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95117

Tor CVE-2016-8860 Remote Denial of Service Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95116

IBM Jazz Foundation CVE-2016-6040 Remote Security Bypass Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95115

BitTorrent API Cross Site Scripting Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95112

Joomla Blog Calender 'index.php' SQL Injection Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95114

PHPMailer CVE-2016-10033 Remote Code Execution Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95108

Apple iOS/tvOS/MacOS/watchOS Multiple Security Vulnerabilities
2016-12-28
http://www.securityfocus.com/bid/93054

Google Chrome Prior to 52.0.2743.82 Multiple Security Vulnerabilities
2016-12-28
http://www.securityfocus.com/bid/92053

Qt QXmlSimpleReader CVE-2016-10040 Stack Buffer Overflow Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95113

IBM Jazz Foundation CVE-2016-6030 Cross Site Scripting Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95110

Squid HTTP proxy Multiple Information Disclosure Vulnerabilities
2016-12-28
http://www.securityfocus.com/bid/94953

IBM Rational Products CVE-2016-2987 Information Disclosure Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95109

IBM Rational Products CVE-2016-6028 Information Disclosure Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95111

Roundcube CVE-2016-9920 Remote Code Execution Vulnerability
2016-12-28
http://www.securityfocus.com/bid/94858

Apache Xerces CVE-2016-2099 Use-After-Free Remote Code Execution Vulnerability
2016-12-28
http://www.securityfocus.com/bid/90502

IBM Security Access Manager CVE-2016-3043 Man in the Middle Information Disclosure Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95107

Apache Xerces-C CVE-2016-0729 Buffer Overflow Vulnerability
2016-12-28
http://www.securityfocus.com/bid/83423

Samba Active Directory CVE-2015-8467 Denial of Service Vulnerability
2016-12-28
http://www.securityfocus.com/bid/79735

IBM InfoSphere Information Server CVE-2016-5984 Cross Frame Scripting Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95106

IBM Security Access Manager for Web CVE-2016-3045 Information Disclosure Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95103

IBM Campaign CVE-2016-0265 Unspecified Cross Site Scripting Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95100

IBM Business Process Manager CVE-2016-9731 Cross Site Scripting Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95105

OWASP AntiSamy CVE-2016-10006 Remote Security Bypass Vulnerability
2016-12-28
http://www.securityfocus.com/bid/95101

SANS News

Using daemonlogger as a Software Tap

Threatpost

Android Trojan Switcher Infects Routers via DNS Hijacking

Exploit

PHPMailer < 5.2.20 - Remote Code Execution

PHPMailer < 5.2.18 - Remote Code Execution (PHP)

28.12.2016

Bugtraq

PHPMailer < 5.2.18 Remote Code Execution [updated advisory] [CVE-2016-10033] 2016-12-27
Dawid Golunski (dawid legalhackers com)

[SECURITY] [DSA 3746-1] graphicsmagick security update 2016-12-24
Luciano Bello (luciano debian org)

Malware

 

Phishing

paypal

26th December 2016

Your account has been Iimited
!

PayPaI

26th December 2016

[TEMPORARY LOCKED] UNEXPECTED
ACTIVITY ON YOUR ACCOUNT

Amazon

25th December 2016

Your order of Amazon "Gift
Card - Email ..."

Vulnerebility

 

Trane ComfortLink II CVE-2015-2868 Remote Code Execution Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95118

TRANE COMFORTLINK II CVE-2015-2867 Hardcoded Credentials Security Bypass Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95120

IBM Jazz Foundation CVE-2016-6061 Cross Site Scripting Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95117

Tor CVE-2016-8860 Remote Denial of Service Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95116

IBM Jazz Foundation CVE-2016-6040 Remote Security Bypass Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95115

BitTorrent API Cross Site Scripting Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95112

Joomla Blog Calender 'index.php' SQL Injection Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95114

PHPMailer CVE-2016-10033 Remote Code Execution Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95108

Apple iOS/tvOS/MacOS/watchOS Multiple Security Vulnerabilities
2016-12-27
http://www.securityfocus.com/bid/93054

Google Chrome Prior to 52.0.2743.82 Multiple Security Vulnerabilities
2016-12-27
http://www.securityfocus.com/bid/92053

Qt QXmlSimpleReader CVE-2016-10040 Stack Buffer Overflow Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95113

IBM Jazz Foundation CVE-2016-6030 Cross Site Scripting Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95110

Squid HTTP proxy Multiple Information Disclosure Vulnerabilities
2016-12-27
http://www.securityfocus.com/bid/94953

IBM Rational Products CVE-2016-2987 Information Disclosure Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95109

IBM Rational Products CVE-2016-6028 Information Disclosure Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95111

Roundcube CVE-2016-9920 Remote Code Execution Vulnerability
2016-12-27
http://www.securityfocus.com/bid/94858

Apache Xerces CVE-2016-2099 Use-After-Free Remote Code Execution Vulnerability
2016-12-27
http://www.securityfocus.com/bid/90502

IBM Security Access Manager CVE-2016-3043 Man in the Middle Information Disclosure Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95107

Apache Xerces-C CVE-2016-0729 Buffer Overflow Vulnerability
2016-12-27
http://www.securityfocus.com/bid/83423

Samba Active Directory CVE-2015-8467 Denial of Service Vulnerability
2016-12-27
http://www.securityfocus.com/bid/79735

IBM InfoSphere Information Server CVE-2016-5984 Cross Frame Scripting Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95106

IBM Security Access Manager for Web CVE-2016-3045 Information Disclosure Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95103

IBM Campaign CVE-2016-0265 Unspecified Cross Site Scripting Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95100

IBM Business Process Manager CVE-2016-9731 Cross Site Scripting Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95105

OWASP AntiSamy CVE-2016-10006 Remote Security Bypass Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95101

IBM Security Access Manager CVE-2016-3046 SQL Injection Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95104

Crypto++ CVE-2016-9939 Local Denial of Service Vulnerability
2016-12-27
http://www.securityfocus.com/bid/94854

Samba ldb 'ldb_wildcard_compare()' Function Denial of Service Vulnerability
2016-12-27
http://www.securityfocus.com/bid/79731

Samba CVE-2015-7540 Remote Denial of Service Vulnerability
2016-12-27
http://www.securityfocus.com/bid/79736

Samba CVE-2015-5252 Symlink Vulnerability
2016-12-27
http://www.securityfocus.com/bid/79733
Apache Xerces CVE-2016-2099 Use-After-Free Remote Code Execution Vulnerability
2016-12-27
http://www.securityfocus.com/bid/90502

Apache Xerces-C CVE-2016-0729 Buffer Overflow Vulnerability
2016-12-27
http://www.securityfocus.com/bid/83423

Samba Active Directory CVE-2015-8467 Denial of Service Vulnerability
2016-12-27
http://www.securityfocus.com/bid/79735

IBM InfoSphere Information Server CVE-2016-5984 Cross Frame Scripting Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95106

IBM Security Access Manager for Web CVE-2016-3045 Information Disclosure Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95103

IBM Campaign CVE-2016-0265 Unspecified Cross Site Scripting Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95100

IBM Business Process Manager CVE-2016-9731 Cross Site Scripting Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95105

OWASP AntiSamy CVE-2016-10006 Remote Security Bypass Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95101

IBM Security Access Manager CVE-2016-3046 SQL Injection Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95104

Crypto++ CVE-2016-9939 Local Denial of Service Vulnerability
2016-12-27
http://www.securityfocus.com/bid/94854

Samba ldb 'ldb_wildcard_compare()' Function Denial of Service Vulnerability
2016-12-27
http://www.securityfocus.com/bid/79731

Samba CVE-2015-7540 Remote Denial of Service Vulnerability
2016-12-27
http://www.securityfocus.com/bid/79736

Samba CVE-2015-5252 Symlink Vulnerability
2016-12-27
http://www.securityfocus.com/bid/79733

Symantec Norton Download Manager CVE-2016-6592 DLL Loading Remote Code Execution Vulnerability
2016-12-27
http://www.securityfocus.com/bid/94695

Samba CVE-2015-5296 Man in the Middle Multiple Security Bypass Vulnerabilities
2016-12-27
http://www.securityfocus.com/bid/79732

Samba ldb CVE-2015-5330 Multiple Information Disclosure Vulnerabilities
2016-12-27
http://www.securityfocus.com/bid/79734

Samba CVE-2015-5299 Remote Security Bypass Vulnerability
2016-12-27
http://www.securityfocus.com/bid/79729

Samba CVE-2016-2114 Remote Security Bypass Vulnerability
2016-12-27
http://www.securityfocus.com/bid/86011

Samba CVE-2016-2118 Man in the Middle Security Bypass Vulnerability
2016-12-27
http://www.securityfocus.com/bid/86002

Multiple IBM Products CVE-2016-6033 Cross Site Request Forgery Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95102

GraphicsMagick CVE-2016-7996 Heap Buffer Overflow Vulnerability
2016-12-27
http://www.securityfocus.com/bid/93464

OpenSSL CVE-2016-2181 Denial of Service Vulnerability
2016-12-27
http://www.securityfocus.com/bid/92982

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2016-12-27
http://www.securityfocus.com/bid/92630

GraphicsMagick 'memory.c' Denial of Service Vulnerability
2016-12-27
http://www.securityfocus.com/bid/94625

IBM Sterling B2B Integrator Standard Edition CVE-2016-6020 Open Redirection Vulnerability
2016-12-27
http://www.securityfocus.com/bid/95098

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2016-12-27
http://www.securityfocus.com/bid/93150

OpenSSL 'BN_bn2dec()' Function Out of Bounds Write Denial of Service Vulnerability
2016-12-27
http://www.securityfocus.com/bid/92557

OpenSSL CVE-2016-2179 Multiple Denial of Service Vulnerabilities
2016-12-27
http://www.securityfocus.com/bid/92987

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2016-12-27
http://www.securityfocus.com/bid/91319

ImageMagick CVE-2016-3715 Arbitrary File Deletion Vulnerability
2016-12-27
http://www.securityfocus.com/bid/89852

SANS News

 

Threatpost

 

Exploit

 

26.12.2016

Bugtraq

[SECURITY] [DSA 3746-1] graphicsmagick security update 2016-12-24
Luciano Bello (luciano debian org)

[slackware-security] expat (SSA:2016-359-01) 2016-12-24
Slackware Security Team (security slackware com)

[slackware-security] openssh (SSA:2016-358-02) 2016-12-24
Slackware Security Team (security slackware com)

[slackware-security] httpd (SSA:2016-358-01) 2016-12-24
Slackware Security Team (security slackware com)

XAMPP Control Panel Memory Corruption Denial Of Service 2016-12-24
apparitionsec gmail com (HYP3RLINX)

Malware

 

Phishing

Amazon

25th December 2016

Your order of Amazon "Gift
Card - Email ..."

Amazon

24th December 2016

YOUR ORDER OF AMAZON "GIFT
CARD - EMAIL ..."

AOL

24th December 2016

Somebody has tagged your very
own account

Vulnerebility

Multiple Samsung Galaxy Product Information Disclosure Vulnerability
2016-12-26
http://www.securityfocus.com/bid/95092

IBM Tivoli Storage Manager Operations Center CVE-2016-6046 Cross Site Scripting Vulnerability
2016-12-26
http://www.securityfocus.com/bid/95093

Oracle MySQL CVE-2016-6664 Local Security Vulnerability
2016-12-26
http://www.securityfocus.com/bid/93612

IBM Tivoli Storage Manager Operations Center CVE-2016-6044 Security Bypass Vulnerability
2016-12-26
http://www.securityfocus.com/bid/95091

RETIRED: Oracle MySQL CVE-2016-5616 Local Security Vulnerability
2016-12-26
http://www.securityfocus.com/bid/93614

IBM Tivoli Storage Manager Operations Center CVE-2016-6043 Local Security Vulnerability
2016-12-26
http://www.securityfocus.com/bid/95090

Autodesk Design Review Multiple Remote Code Execution Vulnerabilities
2016-12-26
http://www.securityfocus.com/bid/95089

Avira Free Antivirus Local Memory Corruption Vulnerability
2016-12-26
http://www.securityfocus.com/bid/95088

IBM Tivoli Storage Manager Operations Center CVE-2016-6045 Cross Site Request Forgery Vulnerability
2016-12-26
http://www.securityfocus.com/bid/95087

Cloud Foundry UAA CVE-2016-6659 Privilege Escalation Vulnerability
2016-12-26
http://www.securityfocus.com/bid/95085

libming CVE-2016-9827 Heap Buffer Overflow Vulnerability
2016-12-26
http://www.securityfocus.com/bid/95086

Sophos XG Firewall '/userportal/Controller' Endpoint SQL Injection Vulnerability
2016-12-26
http://www.securityfocus.com/bid/95084

Tiki Wiki CMS Groupware CVE-2016-9889 Multiple Cross Site Scripting Vulnerabilities
2016-12-26
http://www.securityfocus.com/bid/95083

GraphicsMagick 'memory.c' Denial of Service Vulnerability
2016-12-26
http://www.securityfocus.com/bid/94625

NTP CVE-2016-7434 Local Denial of Service Vulnerability
2016-12-26
http://www.securityfocus.com/bid/94448

Appweb CVE-2014-9708 Null Pointer Deference Denial of Service Vulnerability
2016-12-26
http://www.securityfocus.com/bid/73407

Huawei Smart Phones Multiple Security Vulnerabilities
2016-12-26
http://www.securityfocus.com/bid/95082

Info-ZIP UnZip CVE-2014-9913 Buffer Overflow Vulnerability
2016-12-26
http://www.securityfocus.com/bid/95081

NTP CVE-2016-7433 Local Denial of Service Vulnerability
2016-12-26
http://www.securityfocus.com/bid/94455

NTP CVE-2016-9310 Denial of Service Vulnerability
2016-12-26
http://www.securityfocus.com/bid/94452

NTP CVE-2016-9311 NULL Pointer Dereference Denial of Service Vulnerability
2016-12-26
http://www.securityfocus.com/bid/94444

NTP CVE-2016-7428 Denial of Service Vulnerability
2016-12-26
http://www.securityfocus.com/bid/94446

NTP CVE-2016-7431 Denial of Service Vulnerability
2016-12-26
http://www.securityfocus.com/bid/94454

NTP CVE-2016-7427 Denial of Service Vulnerability
2016-12-26
http://www.securityfocus.com/bid/94447

NTP CVE-2016-7426 Local Denial of Service Vulnerability
2016-12-26
http://www.securityfocus.com/bid/94451

Katello CVE-2016-4397 Local Code Execution Vulnerability
2016-12-26
http://www.securityfocus.com/bid/95080

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2016-12-26
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2016-12-26
http://www.securityfocus.com/bid/93643

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2016-12-26
http://www.securityfocus.com/bid/93636

Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2016-12-26
http://www.securityfocus.com/bid/93637

SANS News

Critical security update: PHPMailer 5.2.18 (CVE-2016-10033)

Time for some predictions

Looking for some emails

Threatpostpost

 

Exploit

Joomla! Component Blog Calendar - SQL Injection

FTPShell Server 6.36 - '.csv' Local Denial of Service

PHPMailer 5.2.17 - Remote Code Execution

25.12.2016

Bugtraq

[SECURITY] [DSA 3744-1] libxml2 security update 2016-12-23
Salvatore Bonaccorso (carnil debian org)

Malware

 

Phishing

Amazon

24th December 2016

YOUR ORDER OF AMAZON "GIFT
CARD - EMAIL ..."

AOL

24th December 2016

Somebody has tagged your very
own account

AOL

24th December 2016

Somebody has already tagged
your current user profile

Vulnerebility

Multiple Samsung Galaxy Product Information Disclosure Vulnerability
2016-12-25
http://www.securityfocus.com/bid/95092

IBM Tivoli Storage Manager Operations Center CVE-2016-6046 Cross Site Scripting Vulnerability
2016-12-25
http://www.securityfocus.com/bid/95093

Oracle MySQL CVE-2016-6664 Local Security Vulnerability
2016-12-25
http://www.securityfocus.com/bid/93612

IBM Tivoli Storage Manager Operations Center CVE-2016-6044 Security Bypass Vulnerability
2016-12-25
http://www.securityfocus.com/bid/95091

RETIRED: Oracle MySQL CVE-2016-5616 Local Security Vulnerability
2016-12-25
http://www.securityfocus.com/bid/93614

IBM Tivoli Storage Manager Operations Center CVE-2016-6043 Local Security Vulnerability
2016-12-25
http://www.securityfocus.com/bid/95090

Autodesk Design Review Multiple Remote Code Execution Vulnerabilities
2016-12-25
http://www.securityfocus.com/bid/95089

Avira Free Antivirus Local Memory Corruption Vulnerability
2016-12-25
http://www.securityfocus.com/bid/95088

IBM Tivoli Storage Manager Operations Center CVE-2016-6045 Cross Site Request Forgery Vulnerability
2016-12-25
http://www.securityfocus.com/bid/95087

Cloud Foundry UAA CVE-2016-6659 Privilege Escalation Vulnerability
2016-12-25
http://www.securityfocus.com/bid/95085

libming CVE-2016-9827 Heap Buffer Overflow Vulnerability
2016-12-25
http://www.securityfocus.com/bid/95086

Sophos XG Firewall '/userportal/Controller' Endpoint SQL Injection Vulnerability
2016-12-25
http://www.securityfocus.com/bid/95084

Tiki Wiki CMS Groupware CVE-2016-9889 Multiple Cross Site Scripting Vulnerabilities
2016-12-25
http://www.securityfocus.com/bid/95083

GraphicsMagick 'memory.c' Denial of Service Vulnerability
2016-12-25
http://www.securityfocus.com/bid/94625

NTP CVE-2016-7434 Local Denial of Service Vulnerability
2016-12-25
http://www.securityfocus.com/bid/94448

Appweb CVE-2014-9708 Null Pointer Deference Denial of Service Vulnerability
2016-12-25
http://www.securityfocus.com/bid/73407

Huawei Smart Phones Multiple Security Vulnerabilities
2016-12-25
http://www.securityfocus.com/bid/95082

Info-ZIP UnZip CVE-2014-9913 Buffer Overflow Vulnerability
2016-12-25
http://www.securityfocus.com/bid/95081

NTP CVE-2016-7433 Local Denial of Service Vulnerability
2016-12-25
http://www.securityfocus.com/bid/94455

NTP CVE-2016-9310 Denial of Service Vulnerability
2016-12-25
http://www.securityfocus.com/bid/94452

NTP CVE-2016-9311 NULL Pointer Dereference Denial of Service Vulnerability
2016-12-25
http://www.securityfocus.com/bid/94444

NTP CVE-2016-7428 Denial of Service Vulnerability
2016-12-25
http://www.securityfocus.com/bid/94446

NTP CVE-2016-7431 Denial of Service Vulnerability
2016-12-25
http://www.securityfocus.com/bid/94454

NTP CVE-2016-7427 Denial of Service Vulnerability
2016-12-25
http://www.securityfocus.com/bid/94447

NTP CVE-2016-7426 Local Denial of Service Vulnerability
2016-12-25
http://www.securityfocus.com/bid/94451

Katello CVE-2016-4397 Local Code Execution Vulnerability
2016-12-25
http://www.securityfocus.com/bid/95080

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2016-12-25
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2016-12-25
http://www.securityfocus.com/bid/93643

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2016-12-25
http://www.securityfocus.com/bid/93636

Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2016-12-25
http://www.securityfocus.com/bid/93637

SANS News

 

Threatpostpost

 

Exploit

XAMPP Control Panel - Denial Of Service

24.12.2016

Bugtraq

[SECURITY] [DSA 3744-1] libxml2 security update 2016-12-23
Salvatore Bonaccorso (carnil debian org)

FreeBSD Security Advisory FreeBSD-SA-16:39.ntp 2016-12-22
FreeBSD Security Advisories (security-advisories freebsd org)

Malware

 

Phishing

Amazon

24th December 2016

YOUR ORDER OF AMAZON "GIFT
CARD - EMAIL ..."

AOL

24th December 2016

Somebody has tagged your very
own account

AOL

24th December 2016

Somebody has already tagged
your current user profile

Vulnerebility

Multiple Samsung Galaxy Product Information Disclosure Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95092

IBM Tivoli Storage Manager Operations Center CVE-2016-6046 Cross Site Scripting Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95093

Oracle MySQL CVE-2016-6664 Local Security Vulnerability
2016-12-24
http://www.securityfocus.com/bid/93612

IBM Tivoli Storage Manager Operations Center CVE-2016-6044 Security Bypass Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95091

RETIRED: Oracle MySQL CVE-2016-5616 Local Security Vulnerability
2016-12-24
http://www.securityfocus.com/bid/93614

IBM Tivoli Storage Manager Operations Center CVE-2016-6043 Local Security Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95090

Autodesk Design Review Multiple Remote Code Execution Vulnerabilities
2016-12-24
http://www.securityfocus.com/bid/95089

Avira Free Antivirus Local Memory Corruption Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95088

IBM Tivoli Storage Manager Operations Center CVE-2016-6045 Cross Site Request Forgery Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95087

Cloud Foundry UAA CVE-2016-6659 Privilege Escalation Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95085

libming CVE-2016-9827 Heap Buffer Overflow Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95086

Sophos XG Firewall '/userportal/Controller' Endpoint SQL Injection Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95084

Tiki Wiki CMS Groupware CVE-2016-9889 Multiple Cross Site Scripting Vulnerabilities
2016-12-24
http://www.securityfocus.com/bid/95083

GraphicsMagick 'memory.c' Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94625

NTP CVE-2016-7434 Local Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94448

Appweb CVE-2014-9708 Null Pointer Deference Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/73407

Huawei Smart Phones Multiple Security Vulnerabilities
2016-12-24
http://www.securityfocus.com/bid/95082

Info-ZIP UnZip CVE-2014-9913 Buffer Overflow Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95081

NTP CVE-2016-7433 Local Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94455

NTP CVE-2016-9310 Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94452

NTP CVE-2016-9311 NULL Pointer Dereference Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94444

NTP CVE-2016-7428 Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94446

NTP CVE-2016-7431 Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94454

NTP CVE-2016-7427 Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94447

NTP CVE-2016-7426 Local Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94451

Katello CVE-2016-4397 Local Code Execution Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95080

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2016-12-24
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2016-12-24
http://www.securityfocus.com/bid/93643

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2016-12-24
http://www.securityfocus.com/bid/93636

Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2016-12-24
http://www.securityfocus.com/bid/93637Multiple Samsung Galaxy Product Information Disclosure Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95092

IBM Tivoli Storage Manager Operations Center CVE-2016-6046 Cross Site Scripting Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95093

Oracle MySQL CVE-2016-6664 Local Security Vulnerability
2016-12-24
http://www.securityfocus.com/bid/93612

IBM Tivoli Storage Manager Operations Center CVE-2016-6044 Security Bypass Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95091

RETIRED: Oracle MySQL CVE-2016-5616 Local Security Vulnerability
2016-12-24
http://www.securityfocus.com/bid/93614

IBM Tivoli Storage Manager Operations Center CVE-2016-6043 Local Security Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95090

Autodesk Design Review Multiple Remote Code Execution Vulnerabilities
2016-12-24
http://www.securityfocus.com/bid/95089

Avira Free Antivirus Local Memory Corruption Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95088

IBM Tivoli Storage Manager Operations Center CVE-2016-6045 Cross Site Request Forgery Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95087

Cloud Foundry UAA CVE-2016-6659 Privilege Escalation Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95085

libming CVE-2016-9827 Heap Buffer Overflow Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95086

Sophos XG Firewall '/userportal/Controller' Endpoint SQL Injection Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95084

Tiki Wiki CMS Groupware CVE-2016-9889 Multiple Cross Site Scripting Vulnerabilities
2016-12-24
http://www.securityfocus.com/bid/95083

GraphicsMagick 'memory.c' Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94625

NTP CVE-2016-7434 Local Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94448

Appweb CVE-2014-9708 Null Pointer Deference Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/73407

Huawei Smart Phones Multiple Security Vulnerabilities
2016-12-24
http://www.securityfocus.com/bid/95082

Info-ZIP UnZip CVE-2014-9913 Buffer Overflow Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95081

NTP CVE-2016-7433 Local Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94455

NTP CVE-2016-9310 Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94452

NTP CVE-2016-9311 NULL Pointer Dereference Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94444

NTP CVE-2016-7428 Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94446

NTP CVE-2016-7431 Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94454

NTP CVE-2016-7427 Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94447

NTP CVE-2016-7426 Local Denial of Service Vulnerability
2016-12-24
http://www.securityfocus.com/bid/94451

Katello CVE-2016-4397 Local Code Execution Vulnerability
2016-12-24
http://www.securityfocus.com/bid/95080

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2016-12-24
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2016-12-24
http://www.securityfocus.com/bid/93643

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2016-12-24
http://www.securityfocus.com/bid/93636

Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2016-12-24
http://www.securityfocus.com/bid/93637

SANS News

Pinging All The Way

Threatpostpost

Apple Delays App Transport Security Deadline

Cisco Warns of Critical Flaw in CloudCenter Orchestrator Systems

Clever Facebook Hack Reveals Private Email Address of Any User

Exploit

OpenSSH < 7.4 - agent Protocol Arbitrary Library Loading

Apache mod_session_crypto - Padding Oracle

OpenSSH < 7.4 - 'UsePrivilegeSeparation Disabled' Forwarded Unix Domain Sockets...

23.12.2016

Bugtraq

FreeBSD Security Advisory FreeBSD-SA-16:39.ntp 2016-12-22
FreeBSD Security Advisories (security-advisories freebsd org)

CVE-2014-4138: MSIE 11 MSHTML CPaste­Command::Convert­Bitmapto­Png heap-based buffer overflow 2016-12-21
Berend-Jan Wever (berendj nwever nl)

[SECURITY] [DSA 3732-2] php-ssh2 regression update 2016-12-21
Sebastien Delafond (seb debian org)

ASP.NET Core 5-RC1 HTTP Header Injection 2016-12-21
Advisories (advisories compass-security com)

Malware

Backdoor.Pralice

Trojan.Ticno

Exp.CVE-2016-7297

Phishing

Bank of America Alert

22nd December 2016

Security Alert: Suspicious
Activity

AOL

22nd December 2016

An individual seems to have
marked your current profile
page

AOL

21st December 2016

A girl appears to have tagged
your very own personal profile

James Williams

21st December 2016

mpsv@live.com Payment Attached

Paul Davis

21st December 2016

Finally 100% Binary Autopilot
robot [DOWNLOAD LINK for
mpsv@live.com]

Vulnerebility

GraphicsMagick 'memory.c' Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/94625

NTP CVE-2016-7434 Local Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/94448

Appweb CVE-2014-9708 Null Pointer Deference Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/73407

NTP CVE-2016-7433 Local Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/94455

NTP CVE-2016-9310 Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/94452

NTP CVE-2016-9311 NULL Pointer Dereference Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/94444

NTP CVE-2016-7428 Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/94446

NTP CVE-2016-7431 Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/94454

NTP CVE-2016-7427 Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/94447

NTP CVE-2016-7426 Local Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/94451

Katello CVE-2016-4397 Local Code Execution Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95080

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2016-12-23
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2016-12-23
http://www.securityfocus.com/bid/93643

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2016-12-23
http://www.securityfocus.com/bid/93636

Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2016-12-23
http://www.securityfocus.com/bid/93637

Oracle Java SE CVE-2016-5568 Use-After-Free Remote Code Execution Vulnerability
2016-12-23
http://www.securityfocus.com/bid/93621

Oracle Java SE CVE-2016-5556 Remote Security Vulnerability
2016-12-23
http://www.securityfocus.com/bid/93618

Oracle Java SE CVE-2016-5582 Remote Security Vulnerability
2016-12-23
http://www.securityfocus.com/bid/93623

Python 'urrlib2/urllib/httplib/http.client' HTTP Header Injection Vulnerability
2016-12-23
http://www.securityfocus.com/bid/91226

Python CVE-2016-5636 Heap Buffer Overflow Vulnerability
2016-12-23
http://www.securityfocus.com/bid/91247

Python smtplib CVE-2016-0772 Man in the Middle Security Bypass Vulnerability
2016-12-23
http://www.securityfocus.com/bid/91225

Apache HTTP Server CVE-2016-0736 Remote Security Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95078

Multiple Huawei Products CVE-2016-8784 Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95079

Apache HTTP Server CVE-2016-8743 Security Bypass Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95077

Apache HTTP Server CVE-2016-2161 Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95076

Xen CVE-2016-10024 Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95021

Xen CVE-2016-10025 Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95026

Xen CVE-2016-9932 Information Disclosure Vulnerability
2016-12-23
http://www.securityfocus.com/bid/94863

QEMU 'VIRTIO_GPU_CMD_SET_SCANOUT()' Function Out of Bounds Read Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/94978

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/94981QEMU 'VIRTIO_GPU_CMD_SET_SCANOUT()' Function Out of Bounds Read Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/94978

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/94981

BMC Remedy Action Request System CVE-2016-2349 Password Reset Security Bypass Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95075

Multiple WAGO Products CVE-2016-9362 Authentication Bypass Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95074

BlueZ CVE-2016-7837 Local Buffer Overflow Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95067

RedHat keycloak CVE-2016-8609 Session Hijacking Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95070

Spring Framework CVE-2016-9878 Directory Traversal Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95072

Fidelix FX-20 Series Controllers CVE-2016-9364 Directory Traversal Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95073

FreeIPA CVE-2016-9575 Insecure File Permissions Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95068

NetApp Snap Creator Framework CVE-2016-7172 Local Information Disclosure Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95069

Pivotal RabbitMQ Products CVE-2016-9877 Authentication Bypass Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95065

wolfSSLCVE-2016-7438 Local Information Disclosure Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95066

Tarantool Msgpuck CVE-2016-9036 Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95064

SKYSEA Client View CVE-2016-7836 Arbitrary Code Execution Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95062

H2O CVE-2016-7835 Use After Free Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95061

Tarantool CVE-2016-9037 Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95063

Vesta Control Panel 'bin/v-get-web-domain-value' Script Local Command Injection Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95060

NVIDIA GPU Driver CVE-2016-8817 Local Privilege Escalation Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95059

NVIDIA GPU Driver CVE-2016-8819 Local Privilege Escalation Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95058

phpMyAdmin 'unserialize()' Function Remote Code Execution Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95055

NVIDIA GPU Driver CVE-2016-8813 Local Privilege Escalation Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95057

NVIDIA GPU Driver CVE-2016-8814 Local Privilege Escalation Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95054

NVIDIA GPU Driver CVE-2016-8818 Local Privilege Escalation Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95056

NVIDIA GPU Driver CVE-2016-8815 Local Privilege Escalation Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95053

phpMyAdmin CVE-2016-6623 Denial of Service Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95052

wolfSSL CVE-2016-7439 Local Information Disclosure Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95050

phpMyAdmin PMASA-2016-71 Security Bypass Vulnerability
2016-12-23
http://www.securityfocus.com/bid/94536

phpMyAdmin PMASA-2016-70 Security Bypass Vulnerability
2016-12-23
http://www.securityfocus.com/bid/94531

NVIDIA GPU Driver CVE-2016-8816 Local Privilege Escalation Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95051

phpMyAdmin CVE-2016-6619 SQL-Injection Vulnerability
2016-12-23
http://www.securityfocus.com/bid/95048

SANS News

 

Threatpostpost

Siemens Patches Insufficient Entropy Vulnerability in ICS Systems

NIST Calls for Submissions to Secure Data Against Quantum Computing

Exploit

macOS < 10.12.2 / iOS < 10.2 Kernel - _kernelrpc_mach_port_insert_right_trap...

macOS < 10.12.2 / iOS < 10.2 - Broken Kernel Mach Port Name uref Handling...

macOS 10.12.1 / iOS < 10.2 - syslogd Arbitrary Port Replacement

macOS 10.12.1 / iOS < 10.2 - powerd Arbitrary Port Replacement

macOS < 10.12.2 / iOS < 10.2 Kernel - ipc_port_t Reference Count Leak Due to...

macOS 10.12 - Double vm_deallocate in Userspace MIG Code Use-After-Free

macOS 10.12.1 Kernel - Writable Privileged IOKit Registry Properties Code Execution

Microsoft Internet Explorer 11 - MSHTML CPaste­Command::Convert­Bitmapto­Png He...

Vesta Control Panel 0.9.8-16 - Local Privilege Escalation

IBM AIX 6.1/7.1/7.2 - 'Bellmail' Privilege Escalation

22.12.2016

Bugtraq

[SECURITY] [DSA 3732-2] php-ssh2 regression update 2016-12-21
Sebastien Delafond (seb debian org)

ASP.NET Core 5-RC1 HTTP Header Injection 2016-12-21
Advisories (advisories compass-security com)

Malware

Ransom:Win32/Cerber

Backdoor.Pralice

Linux.Rakos

Phishing

 

Vulnerebility

NVIDIA GPU Driver CVE-2016-8817 Local Privilege Escalation Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95059

NVIDIA GPU Driver CVE-2016-8819 Local Privilege Escalation Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95058

phpMyAdmin 'unserialize()' Function Remote Code Execution Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95055

NVIDIA GPU Driver CVE-2016-8813 Local Privilege Escalation Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95057

NVIDIA GPU Driver CVE-2016-8814 Local Privilege Escalation Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95054

NVIDIA GPU Driver CVE-2016-8818 Local Privilege Escalation Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95056

NVIDIA GPU Driver CVE-2016-8815 Local Privilege Escalation Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95053

phpMyAdmin CVE-2016-6623 Denial of Service Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95052

wolfSSL CVE-2016-7439 Local Information Disclosure Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95050

phpMyAdmin PMASA-2016-71 Security Bypass Vulnerability
2016-12-22
http://www.securityfocus.com/bid/94536

phpMyAdmin PMASA-2016-70 Security Bypass Vulnerability
2016-12-22
http://www.securityfocus.com/bid/94531

NVIDIA GPU Driver CVE-2016-8816 Local Privilege Escalation Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95051

phpMyAdmin CVE-2016-6619 SQL-Injection Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95048

phpMyAdmin CVE-2016-6622 Denial of Service Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95049

Multiple Netgear Routers VU#582384 Remote Command Injection Vulnerability
2016-12-22
http://www.securityfocus.com/bid/94819

phpMyAdmin CVE-2016-6615 Multiple Cross Site Scripting Vulnerabilities
2016-12-22
http://www.securityfocus.com/bid/95041

phpMyAdmin Table Partitioning Function PMASA-2016-68 Denial of Service Vulnerability
2016-12-22
http://www.securityfocus.com/bid/94526

phpMyAdmin PMASA-2016-69 Multiple SQL Injection Vulnerabilities
2016-12-22
http://www.securityfocus.com/bid/94533

NVIDIA GPU Driver CVE-2016-8820 Local Information Disclosure Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95045

phpMyAdmin CVE-2016-6618 Denial of Service Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95047

phpMyAdmin CVE-2016-6617 SQL-Injection Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95044

phpMyAdmin PMASA-2016-66 Remote Security Bypass Vulnerability
2016-12-22
http://www.securityfocus.com/bid/94535

phpMyAdmin 'BBCode' Code Injection Vulnerability
2016-12-22
http://www.securityfocus.com/bid/94528

phpMyAdmin CVE-2016-6616 SQL-Injection Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95042

Xen CVE-2016-10025 Denial of Service Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95026

NVIDIA GPU Driver CVE-2016-8822 Local Privilege Escalation Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95014

Cisco CloudCenter Orchestrator CVE-2016-9223 Privilege Escalation Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95024

NVIDIA GPU Driver CVE-2016-8821 Local Privilege Escalation Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95025

Multiple Cisco Intercloud Fabric CVE-2016-9217 Remote Security Bypass Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95023

Xen CVE-2016-10024 Denial of Service Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95021
Xen CVE-2016-10025 Denial of Service Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95026

NVIDIA GPU Driver CVE-2016-8822 Local Privilege Escalation Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95014

Cisco CloudCenter Orchestrator CVE-2016-9223 Privilege Escalation Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95024

NVIDIA GPU Driver CVE-2016-8821 Local Privilege Escalation Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95025

Multiple Cisco Intercloud Fabric CVE-2016-9217 Remote Security Bypass Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95023

Xen CVE-2016-10024 Denial of Service Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95021

SISCO SNAP-Lite Utility CVE-2015-6574 Denial of Service Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95022

Apache Tika CVE-2015-3271 Remote Information Disclosure Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95020

Intel PROSet/Wireless Software and Drivers CVE-2016-8104 Local Buffer Overflow Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95017

Cisco Jabber Guest Server CVE-2016-9224 Open Redirection Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95016

cURL/libcURL CVE-2016-9586 Buffer Overflow Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95019

phpMyAdmin Multiple Full Path Information Disclosure Vulnerabilities
2016-12-22
http://www.securityfocus.com/bid/94527

phpMyAdmin PMASA-2016-65 Multiple Denial of Service Vulnerabilities
2016-12-22
http://www.securityfocus.com/bid/94525

phpMyAdmin PMASA-2016-64 Multiple Cross Site Scripting Vulnerabilities
2016-12-22
http://www.securityfocus.com/bid/94530

NVIDIA GPU Driver CVE-2016-8824 Local Privilege Escalation Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95015

phpMyAdmin PMASA-2016-62 Security Bypass Vulnerability
2016-12-22
http://www.securityfocus.com/bid/94534

phpMyAdmin PMASA-2016-61 Security Bypass Vulnerability
2016-12-22
http://www.securityfocus.com/bid/94529

phpMyAdmin PMASA-2016-59 Remote Information Disclosure Vulnerability
2016-12-22
http://www.securityfocus.com/bid/94523

BlueZ Buffer Overflow and Denial of Service Vulnerabilities
2016-12-22
http://www.securityfocus.com/bid/95013

SAP Solman Information Disclosure Vulnerability
2016-12-22
http://www.securityfocus.com/bid/92949

BMC Patrol CVE-2016-9638 Local Privilege Escalation Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95009

Multiple Intel Products CVE-2016-8103 Local Privilege Escalation Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95012

Apport Multiple Security Vulnerabilities
2016-12-22
http://www.securityfocus.com/bid/95011

phpMyAdmin PMASA-2016-58 Insecure Key Generation Security Weakness
2016-12-22
http://www.securityfocus.com/bid/94524

phpMyAdmin PMASA-2016-60 Remote Multiple Security Bypass Vulnerabilities
2016-12-22
http://www.securityfocus.com/bid/94521

b2evolution CVE-2016-9479 Security Bypass Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95006

SPIP Multiple Cross Site Scripting Vulnerabilities
2016-12-22
http://www.securityfocus.com/bid/95008

Intel Wireless Bluetooth Drivers CVE-2016-8102 Local Privilege Escalation Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95010

Zikula CVE-2016-9835 Directory Traversal Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95005

IBM QRadar SIEM CVE-2016-2874 Information Disclosure Vulnerability
2016-12-22
http://www.securityfocus.com/bid/95003

SANS News

What are your 2017 infosec predictions?

Threatpostpost

New Wave of Hailstorm Spam Pelts Inboxes

Congressional Group Says Encryption Backdoors Are a Bad Idea

Exploit

IBM AIX 6.1/7.1/7.2 - 'Bellmail' Privilege Escalation

21.12.2016

Bugtraq

[SECURITY] [DSA 3732-2] php-ssh2 regression update 2016-12-21
Sebastien Delafond (seb debian org)

ASP.NET Core 5-RC1 HTTP Header Injection 2016-12-21
Advisories (advisories compass-security com)

[SECURITY] [DSA 3743-1] python-bottle security update 2016-12-20
Sebastien Delafond (seb debian org)

CVE-2014-1785: MSIE 11 MSHTML CSpliceTreeEngine::RemoveSplice use-after-free 2016-12-20
Berend-Jan Wever (berendj nwever nl)

[SECURITY] [DSA 3738-1] tomcat7 security update 2016-12-18
Sebastien Delafond (seb debian org)

Malware

Backdoor.Pralice

TrojanDownloader:JS/Stenago.A

Phishing

SunTrust Online

20th December 2016

Notification Alert: Update
your information

BB&T Bank

20th December 2016

BB&T BANK - PERSONAL
INFORMATION UPDATE

AOL

20th December 2016

new msg

NatWest Bank

20th December 2016

Important information about
your account

Vulnerebility

phpMyAdmin PMASA-2016-60 Remote Multiple Security Bypass Vulnerabilities
2016-12-21
http://www.securityfocus.com/bid/94521

IBM QRadar SIEM CVE-2016-2874 Information Disclosure Vulnerability
2016-12-21
http://www.securityfocus.com/bid/95003

IBM QRadar SIEM CVE-2016-2877 Local Security Bypass Vulnerability
2016-12-21
http://www.securityfocus.com/bid/95002

IBM QRadar SIEM CVE-2016-2876 Unspecified Command Injection Vulnerability
2016-12-21
http://www.securityfocus.com/bid/95001

IBM QRadar Security Information and Event Manager CVE-2016-2873 SQL Injection Vulnerability
2016-12-21
http://www.securityfocus.com/bid/95000

IBM QRadar SIEM CVE-2016-2878 Multiple Cross Site Request Forgery Vulnerabilities
2016-12-21
http://www.securityfocus.com/bid/95004

Rapid7 Nexpose CVE-2016-9757 Cross Site Scripting Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94996

Horde Groupware Multiple Cross Site Scripting Vulnerabilities
2016-12-21
http://www.securityfocus.com/bid/94997

dotCMS 'stName' Parameter SQL Injection Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94992

VMware ESXi CVE-2016-7463 HTML Injection Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94998

Samba CVE-2016-2126 Denial of Service Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94994

Red Hat OpenShift Enterprise CVE-2016-9592 Denial of Service Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94991

VMware vSphere Data Protection CVE-2016-7456 Authentication Bypass Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94990

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2016-12-21
http://www.securityfocus.com/bid/93153

OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability
2016-12-21
http://www.securityfocus.com/bid/91081

OpenSSL CVE-2016-6303 Integer Overflow Vulnerability
2016-12-21
http://www.securityfocus.com/bid/92984

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2016-12-21
http://www.securityfocus.com/bid/92630

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2016-12-21
http://www.securityfocus.com/bid/93150

Linux Kernel 'Ack Challenge' Information Disclosure Vulnerability
2016-12-21
http://www.securityfocus.com/bid/91704

Linux Kernel CVE-2016-5195 Local Privilege Escalation Vulnerability
2016-12-21
http://www.securityfocus.com/bid/93793

Linux Kernel Multiple Local Memory Corruption Vulnerabilities
2016-12-21
http://www.securityfocus.com/bid/91451

Linux Kernel Local Memory Corruption and Integer Overflow Vulnerabilities
2016-12-21
http://www.securityfocus.com/bid/84305

IBM BigFix Remote CVE-2016-2935 Denial of Service Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94989

Samba CVE-2016-2125 User Impersonation Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94988

IBM BigFix Remote Control CVE-2016-2934 Cross Site Scripting Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94987

Siemens Desigo PX Web Modules CVE-2016-9154 Insufficient Entropy Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94962

foreman-debug CVE-2016-9593 Local Information Disclosure Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94985

IBM BigFix Remote Control CVE-2016-2933 Directory Traversal Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94986

Multiple Symantec Products CVE-2016-6590 DLL Loading Local Privilege Escalation Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94279

IBM Tivoli Remote Control CVE-2016-2931 Information Disclosure Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94984IBM BigFix Remote CVE-2016-2935 Denial of Service Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94989

Samba CVE-2016-2125 User Impersonation Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94988

IBM BigFix Remote Control CVE-2016-2934 Cross Site Scripting Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94987

Siemens Desigo PX Web Modules CVE-2016-9154 Insufficient Entropy Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94962

foreman-debug CVE-2016-9593 Local Information Disclosure Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94985

IBM BigFix Remote Control CVE-2016-2933 Directory Traversal Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94986

Multiple Symantec Products CVE-2016-6590 DLL Loading Local Privilege Escalation Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94279

IBM Tivoli Remote Control CVE-2016-2931 Information Disclosure Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94984

IBM BigFix Remote Control CVE-2016-2932 Security Bypass Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94983

Libdwarf 'dwarf_util.c' Heap Based Buffer Overflow Vulnerability
2016-12-21
http://www.securityfocus.com/bid/94980

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94981

IBM AIX CVE-2016-8972 Local Privilege Escalation Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94979

QEMU 'VIRTIO_GPU_CMD_SET_SCANOUT()' Function Out of Bounds Read Denial of Service Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94978

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2016-12-20
http://www.securityfocus.com/bid/93814

OpenSSH CVE-2016-10011 Local Information Disclosure Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94977

IBM Tealeaf Customer Experience CVE-2015-4961 Information Disclosure Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94976

OpenSSH CVE-2016-10012 Security Bypass Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94975

ISC BIND CVE-2016-8864 Remote Denial of Service Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94067

Cybozu Garoon CVE-2016-7803 SQL Injection Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94974

Cybozu Garoon CVE-2016-4909 Unspecified Cross Site Request Forgery Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94973

OpenSSH CVE-2016-10010 Privilege Escalation Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94972

Microsoft Windows Installer CVE-2016-7292 DLL Loading Local Privilege Escalation Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94768

Microsoft Windows CVE-2016-7295 Local Information Disclosure Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94787

Microsoft Windows Crypto Driver CVE-2016-7219 Local Information Disclosure Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94764

Microsoft .NET Framework CVE-2016-7270 Information Disclosure Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94741

Samba CVE-2016-2123 Heap Based Buffer Overflow Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94970

Expat CVE-2016-0718 Buffer Overflow Vulnerability
2016-12-20
http://www.securityfocus.com/bid/90729

Cybozu Garoon Multiple Access Bypass Vulnerabilities
2016-12-20
http://www.securityfocus.com/bid/94966

Cybozu Garoon CVE-2016-4907 Unspecified Information Disclosure Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94965

mini_httpd CVE-2015-1548 Information Disclosure Vulnerability
2016-12-20
http://www.securityfocus.com/bid/73450

SANS News

What are your 2017 infosec predictions?

Threatpostpost

ShadowBrokers Dump Came from Internal Code Repository, Insider

In-Flight Entertainment System Flaws Put Passenger Data at Risk

New Decryptor Unlocks CryptXXX v3 Files

Wassenaar Renegotiation Will Be in Trump Administration’s Hands

Exploit

NETGEAR WNR2000v5 - Remote Code Execution

Microsoft Edge - Internationalization Initialization Type Confusion (MS16-144)

Microsoft Edge - SIMD.toLocaleString Uninitialized Memory (MS16-145)

Microsoft Internet Explorer 11 MSHTML - CSplice­Tree­Engine::Remove­Splice Us...

Google Android - WifiNative::setHotlist Stack Overflow

20.12.2016

Bugtraq

CVE-2014-1785: MSIE 11 MSHTML CSpliceTreeEngine::RemoveSplice use-after-free 2016-12-20
Berend-Jan Wever (berendj nwever nl)

[SECURITY] [DSA 3738-1] tomcat7 security update 2016-12-18
Sebastien Delafond (seb debian org)

Samsung DVR credentials encoded in base64 in cookie header 2016-12-17
Jacobo Avariento (spinfoo vuln gmail com)

[security bulletin] HPSBMU03684 rev.1 - HPE Version Control Repository Manager (VCRM), Multiple Remote Vulnerabilities 2016-12-16
security-alert hpe com

[SECURITY] [DSA 3736-1] libupnp security update 2016-12-16
Sebastien Delafond (seb debian org)

Malware

Exp.CVE-2016-7202

Exp.CVE-2016-7283

Phishing

PayPal

19th December 2016

YOUR PAYPAL ACCOUNT HAS BEEN
LIMITED.

PayPal

18th December 2016

Unlock Your PayPal Account

Apple

17th December 2016

Please update your Account
Information

Tesco.com

17th December 2016

Tesco is giving you a chance
to shop for free.

AOL

16th December 2016

new message

Vulnerebility

Expat CVE-2016-0718 Buffer Overflow Vulnerability
2016-12-20
http://www.securityfocus.com/bid/90729

mini_httpd CVE-2015-1548 Information Disclosure Vulnerability
2016-12-20
http://www.securityfocus.com/bid/73450

OpenSSH CVE-2016-10009 Remote Code Execution Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94968

Oracle Java SE CVE-2016-5568 Use-After-Free Remote Code Execution Vulnerability
2016-12-20
http://www.securityfocus.com/bid/93621

Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2016-12-20
http://www.securityfocus.com/bid/93637

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2016-12-20
http://www.securityfocus.com/bid/93643

Oracle Java SE CVE-2016-5556 Remote Security Vulnerability
2016-12-20
http://www.securityfocus.com/bid/93618

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2016-12-20
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2016-12-20
http://www.securityfocus.com/bid/93636

Cybozu Garoon CVE-2016-7802 Directory Traversal Vulnerability
2016-12-20
http://www.securityfocus.com/bid/94967

Libexpat Expat CVE-2012-6702 Predictable Random Number Generator Weakness
2016-12-20
http://www.securityfocus.com/bid/91483

Expat CVE-2016-4472 Incomplete Fix Remote Code Execution Vulnerability
2016-12-20
http://www.securityfocus.com/bid/91528

Expat CVE-2016-5300 Incomplete Fix Remote Denial of Service Vulnerability
2016-12-20
http://www.securityfocus.com/bid/91159

Expat XML Parsing Multiple Remote Denial of Service Vulnerabilities
2016-12-20
http://www.securityfocus.com/bid/52379

OpenSSL CVE-2016-2181 Denial of Service Vulnerability
2016-12-20
http://www.securityfocus.com/bid/92982

OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability
2016-12-20
http://www.securityfocus.com/bid/91081

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2016-12-20
http://www.securityfocus.com/bid/92630

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2016-12-20
http://www.securityfocus.com/bid/93153

OpenSSL CVE-2016-2179 Multiple Denial of Service Vulnerabilities
2016-12-20
http://www.securityfocus.com/bid/92987

OpenSSL CVE-2016-6302 Denial of Service Vulnerability
2016-12-20
http://www.securityfocus.com/bid/92628

OpenSSL 'BN_bn2dec()' Function Out of Bounds Write Denial of Service Vulnerability
2016-12-20
http://www.securityfocus.com/bid/92557

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2016-12-20
http://www.securityfocus.com/bid/93150

OpenSSL CVE-2016-2180 Local Denial of Service Vulnerability
2016-12-20
http://www.securityfocus.com/bid/92117

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2016-12-20
http://www.securityfocus.com/bid/91319

OpenSSL CVE-2016-6307 Denial of Service Vulnerability
2016-12-20
http://www.securityfocus.com/bid/93152

PHP 'ext/session/session.c' Remote Code Injection Vulnerability
2016-12-20
http://www.securityfocus.com/bid/92552

PHP 'zip_stream.c' Integer Overflow Vulnerability
2016-12-20
http://www.securityfocus.com/bid/92099

Oracle Java SE CVE-2016-5582 Remote Security Vulnerability
2016-12-20
http://www.securityfocus.com/bid/93623

PHP '/xmlrpc/libxmlrpc/simplestring.c' Heap Buffer Overflow Vulnerability
2016-12-20
http://www.securityfocus.com/bid/92095

OpenSSL CVE-2016-6305 Denial of Service Vulnerability
2016-12-20
http://www.securityfocus.com/bid/93149

SANS News

Mirai Scanning for Port 6789 Looking for New Victims

Threatpostpost

Insecure NAS Device Exposes 350 Ameriprise Investment Accounts

Google Unveils Cryptographic Library Test Suite Wycheproof

ShadowBrokers Dump Came from Internal Code Repository, Insider

In-Flight Entertainment System Flaws Put Passenger Data at Risk

Exploit

Google Chrome + Fedora 25 / Ubuntu 16.04 - 'tracker-extract' /...

Google Chrome < 31.0.1650.48 - HTTP 1xx...

RedStar 3.0 Server - 'BEAM & RSSMON' Command Execution (Shellshock)

Apport 2.x (Ubuntu Desktop 12.10 < 16.04) - Local Code Execution

Naenara Browser 3.5 (RedStar 3.0 Desktop) - 'JACKRABBIT' Client-Side Command...

19.12.2016

Bugtraq

[SECURITY] [DSA 3738-1] tomcat7 security update 2016-12-18
Sebastien Delafond (seb debian org)

Samsung DVR credentials encoded in base64 in cookie header 2016-12-17
Jacobo Avariento (spinfoo vuln gmail com)

[security bulletin] HPSBMU03684 rev.1 - HPE Version Control Repository Manager (VCRM), Multiple Remote Vulnerabilities 2016-12-16
security-alert hpe com

[SECURITY] [DSA 3736-1] libupnp security update 2016-12-16
Sebastien Delafond (seb debian org)

Malware

Backdoor.Telebot

Exp.CVE-2016-7892

Phishing

 

Vulnerebility

Samba CVE-2016-2119 Man in the Middle Security Bypass Vulnerability
2016-12-19
http://www.securityfocus.com/bid/91700

Squid HTTP proxy Multiple Information Disclosure Vulnerabilities
2016-12-19
http://www.securityfocus.com/bid/94953

Apache POI CVE-2016-5000 XML External Entity Injection Vulnerability
2016-12-19
http://www.securityfocus.com/bid/92100

Apache POI OpenXML parser CVE-2014-3529 XML External Entity Information Disclosure Vulnerability
2016-12-19
http://www.securityfocus.com/bid/69647

Apache POI CVE-2014-3574 Denial Of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/69648

POI CVE-2014-9527 Denial-Of-Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/77726

Apache POI CVE-2012-0213 Denial Of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/53487

Oracle Java SE and JRockit CVE-2016-3427 Remote Security Vulnerability
2016-12-19
http://www.securityfocus.com/bid/86421

Oracle Java SE and JRockit CVE-2016-0695 Remote Security Vulnerability
2016-12-19
http://www.securityfocus.com/bid/86438

Oracle Java SE and JRockit CVE-2016-3425 Remote Security Vulnerability
2016-12-19
http://www.securityfocus.com/bid/86434

IBM WebSphere Application Server Liberty CVE-2016-0378 Information Disclosure Vulnerability
2016-12-19
http://www.securityfocus.com/bid/93143

Apache Commons FileUpload CVE-2016-3092 Denial Of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/91453

IBM WebSphere Application Server CVE-2016-5986 Information Disclosure Vulnerability
2016-12-19
http://www.securityfocus.com/bid/93013

Oberhumer LZO CVE-2014-4607 Multiple Memory Corruption Vulnerabilities
2016-12-19
http://www.securityfocus.com/bid/68213

HP Version Control Repository Manager Multiple Security Vulnerabilities
2016-12-19
http://www.securityfocus.com/bid/94949

OpenSSL CVE-2000-1254 Security Bypass Vulnerability
2016-12-19
http://www.securityfocus.com/bid/90109

JasPer CVE-2016-9591 Denial of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/94952

Apache Hadoop CVE-2016-5001 Local Information Disclosure Vulnerability
2016-12-19
http://www.securityfocus.com/bid/94950

DCMTK CVE-2015-8979 Stack Buffer Overflow Vulnerability
2016-12-19
http://www.securityfocus.com/bid/94951

libical CVE-2016-9584 Heap Based Buffer Overflow Vulnerability
2016-12-19
http://www.securityfocus.com/bid/94948

GNU glibc CVE-2016-6323 Infinite Loop Denial of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/92532

OpenVPN CVE-2016-6329 Information Disclosure Vulnerability
2016-12-19
http://www.securityfocus.com/bid/92631

OpenSSL CVE-2016-6307 Denial of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/93152

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2016-12-19
http://www.securityfocus.com/bid/92630

OpenSSL CVE-2016-6309 Remote Code Execution Vulnerability
2016-12-19
http://www.securityfocus.com/bid/93177

OpenSSL CVE-2016-2179 Multiple Denial of Service Vulnerabilities
2016-12-19
http://www.securityfocus.com/bid/92987

OpenSSL CVE-2016-2181 Denial of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/92982

GNU glibc 'getaddrinfo()' Function Incomplete Fix Remote Denial of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/88440

OpenSSL CVE-2016-6303 Integer Overflow Vulnerability
2016-12-19
http://www.securityfocus.com/bid/92984

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/93153
Apache POI CVE-2016-5000 XML External Entity Injection Vulnerability
2016-12-19
http://www.securityfocus.com/bid/92100

Apache POI OpenXML parser CVE-2014-3529 XML External Entity Information Disclosure Vulnerability
2016-12-19
http://www.securityfocus.com/bid/69647

Apache POI CVE-2014-3574 Denial Of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/69648

POI CVE-2014-9527 Denial-Of-Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/77726

Apache POI CVE-2012-0213 Denial Of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/53487

Oracle Java SE and JRockit CVE-2016-3427 Remote Security Vulnerability
2016-12-19
http://www.securityfocus.com/bid/86421

Oracle Java SE and JRockit CVE-2016-0695 Remote Security Vulnerability
2016-12-19
http://www.securityfocus.com/bid/86438

Oracle Java SE and JRockit CVE-2016-3425 Remote Security Vulnerability
2016-12-19
http://www.securityfocus.com/bid/86434

IBM WebSphere Application Server Liberty CVE-2016-0378 Information Disclosure Vulnerability
2016-12-19
http://www.securityfocus.com/bid/93143

Apache Commons FileUpload CVE-2016-3092 Denial Of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/91453

IBM WebSphere Application Server CVE-2016-5986 Information Disclosure Vulnerability
2016-12-19
http://www.securityfocus.com/bid/93013

Oberhumer LZO CVE-2014-4607 Multiple Memory Corruption Vulnerabilities
2016-12-19
http://www.securityfocus.com/bid/68213

OpenSSL CVE-2000-1254 Security Bypass Vulnerability
2016-12-19
http://www.securityfocus.com/bid/90109

JasPer CVE-2016-9591 Denial of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/94952

Apache Hadoop CVE-2016-5001 Local Information Disclosure Vulnerability
2016-12-19
http://www.securityfocus.com/bid/94950

DCMTK CVE-2015-8979 Stack Buffer Overflow Vulnerability
2016-12-19
http://www.securityfocus.com/bid/94951

libical CVE-2016-9584 Heap Based Buffer Overflow Vulnerability
2016-12-19
http://www.securityfocus.com/bid/94948

GNU glibc CVE-2016-6323 Infinite Loop Denial of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/92532

OpenVPN CVE-2016-6329 Information Disclosure Vulnerability
2016-12-19
http://www.securityfocus.com/bid/92631

OpenSSL CVE-2016-6307 Denial of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/93152

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2016-12-19
http://www.securityfocus.com/bid/92630

OpenSSL CVE-2016-6309 Remote Code Execution Vulnerability
2016-12-19
http://www.securityfocus.com/bid/93177

OpenSSL CVE-2016-2179 Multiple Denial of Service Vulnerabilities
2016-12-19
http://www.securityfocus.com/bid/92987

OpenSSL CVE-2016-2181 Denial of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/92982

GNU glibc 'getaddrinfo()' Function Incomplete Fix Remote Denial of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/88440

OpenSSL CVE-2016-6303 Integer Overflow Vulnerability
2016-12-19
http://www.securityfocus.com/bid/92984

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/93153

OpenSSL 'BN_bn2dec()' Function Out of Bounds Write Denial of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/92557

OpenSSL CVE-2016-2180 Local Denial of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/92117

OpenSSL CVE-2016-7052 Denial of Service Vulnerability
2016-12-19
http://www.securityfocus.com/bid/93171

SANS News

 

Threatpostpost

 

Exploit

RedStar 3.0 Server - 'BEAM & RSSMON' Command Execution (Shellshock)

Apport 2.x (Ubuntu Desktop 12.10 < 16.04) - Local Code Execution

Naenara Browser 3.5 (RedStar 3.0 Desktop) - 'JACKRABBIT' Client-Side Command...

WordPress Plugin 404 Redirection Manager 1.0 - SQL Injection

Wordpress Plugin WP Private Messages 1.0.1 - SQL Injection

Wordpress Plugin WP Support Plus Responsive Ticket System 7.1.3 - SQL Injection

18.12.2016

Bugtraq

[security bulletin] HPSBMU03684 rev.1 - HPE Version Control Repository Manager (VCRM), Multiple Remote Vulnerabilities 2016-12-16
security-alert hpe com

[SECURITY] [DSA 3736-1] libupnp security update 2016-12-16
Sebastien Delafond (seb debian org)

CVE-2016-9277,CVE-2016-9966,CVE-2016-9967: Possible Privilege Escalation in telecom 2016-12-16
unlimitsec gmail com

Malware

 

Phishing

Tesco.com

17th December 2016

Tesco is giving you a chance
to shop for free.

AOL

16th December 2016

new message

PayPal

16th December 2016

We noticed unusual activity in
your PayPal account (Ref
#PP-003-760-771-972)

Vulnerebility

Exim CVE-2016-9963 Unspecified Information Disclosure Vulnerability
2016-12-18
http://www.securityfocus.com/bid/94947

Apache Xerces-C CVE-2016-4463 Stack Buffer Overflow Vulnerability
2016-12-18
http://www.securityfocus.com/bid/91501

libxml2 CVE-2016-3705 Stack Buffer Overflow Vulnerability
2016-12-18
http://www.securityfocus.com/bid/89854

Apache Commons FileUpload CVE-2016-3092 Denial Of Service Vulnerability
2016-12-18
http://www.securityfocus.com/bid/91453

Apache Xerces-C CVE-2016-0729 Buffer Overflow Vulnerability
2016-12-18
http://www.securityfocus.com/bid/83423

FlightGear CVE-2016-9956 Arbitrary File Overwrite Vulnerability
2016-12-18
http://www.securityfocus.com/bid/94945

SimpleSAMLphp CVE-2016-9955 Security Bypass Vulnerability
2016-12-18
http://www.securityfocus.com/bid/94946

Irregex CVE-2016-9954 Denial of Service Vulnerability
2016-12-18
http://www.securityfocus.com/bid/94942

Huawei Smart Phone P9 Wi-FI Driver Local Buffer Overflow Vulnerability
2016-12-18
http://www.securityfocus.com/bid/94943

Huawei H60 CVE-2016-8783 Local Stack Buffer Overflow Vulnerability
2016-12-18
http://www.securityfocus.com/bid/94944

ISC BIND CVE-2016-8864 Remote Denial of Service Vulnerability
2016-12-18
http://www.securityfocus.com/bid/94067

ISC BIND 'buffer.c' Remote Denial of Service Vulnerability
2016-12-18
http://www.securityfocus.com/bid/93188

Huawei CloudEngine 12800 CVE-2016-8782 Denial of Service Vulnerability
2016-12-18
http://www.securityfocus.com/bid/94941

Redis CVE-2015-4335 EVAL Lua Sandbox Security Bypass Vulnerability
2016-12-18
http://www.securityfocus.com/bid/75034

Resteasy CVE-2016-9571 Remote Code Execution Vulnerability
2016-12-18
http://www.securityfocus.com/bid/94940

libxml2 'HTMLparser.c' Out of Bounds Read Denial of Service Vulnerability
2016-12-18
http://www.securityfocus.com/bid/85267

Google Android AOSP Mail CVE-2016-3918 Information Disclosure Vulnerability
2016-12-18
http://www.securityfocus.com/bid/93299

Red Hat mod_cluster CVE-2016-8612 Denial of Service Vulnerability
2016-12-18
http://www.securityfocus.com/bid/94939

PLC WinProladder CVE-2016-8377 Stack Buffer Overflow Vulnerability
2016-12-18
http://www.securityfocus.com/bid/94938

OpenSSL CMS CVE-2015-1792 Denial of Service Vulnerability
2016-12-18
http://www.securityfocus.com/bid/75154

OpenSSL CVE-2015-1790 Denial of Service Vulnerability
2016-12-18
http://www.securityfocus.com/bid/75157

OpenSSL CVE-2015-1791 Race Condition Security Vulnerability
2016-12-18
http://www.securityfocus.com/bid/75161

OpenSSL CVE-2015-1789 Out of Bounds Read Denial of Service Vulnerability
2016-12-18
http://www.securityfocus.com/bid/75156

Apple iOS and watchOS CVE-2016-7651 Security Bypass Vulnerability
2016-12-18
http://www.securityfocus.com/bid/94851

OmniView ICSA-16-350-02 Multiple Information Disclosure Vulnerabilities
2016-12-18
http://www.securityfocus.com/bid/94937

RedHat Ceph CVE-2016-9579 Remote Denial of Service Vulnerability
2016-12-18
http://www.securityfocus.com/bid/94936

Red Hat OpenShift Enterprise CVE-2016-8651 Information Disclosure Vulnerability
2016-12-18
http://www.securityfocus.com/bid/94935

Linux Kernel 'arch/x86/kvm/vmx.c' Denial of Service Vulnerability
2016-12-18
http://www.securityfocus.com/bid/94933

MongoDB CVE-2016-3104 Remote Denial of Service Vulnerability
2016-12-18
http://www.securityfocus.com/bid/94929

FreeIPA CVE-2016-7030 Denial of Service Vulnerability
2016-12-18
http://www.securityfocus.com/bid/94934Exim CVE-2016-9963 Unspecified Information Disclosure Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94947

Apache Xerces-C CVE-2016-4463 Stack Buffer Overflow Vulnerability
2016-12-17
http://www.securityfocus.com/bid/91501

libxml2 CVE-2016-3705 Stack Buffer Overflow Vulnerability
2016-12-17
http://www.securityfocus.com/bid/89854

Apache Commons FileUpload CVE-2016-3092 Denial Of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/91453

Apache Xerces-C CVE-2016-0729 Buffer Overflow Vulnerability
2016-12-17
http://www.securityfocus.com/bid/83423

FlightGear CVE-2016-9956 Arbitrary File Overwrite Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94945

SimpleSAMLphp CVE-2016-9955 Security Bypass Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94946

Irregex CVE-2016-9954 Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94942

Huawei Smart Phone P9 Wi-FI Driver Local Buffer Overflow Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94943

Huawei H60 CVE-2016-8783 Local Stack Buffer Overflow Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94944

ISC BIND CVE-2016-8864 Remote Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94067

ISC BIND 'buffer.c' Remote Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/93188

Huawei CloudEngine 12800 CVE-2016-8782 Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94941

Redis CVE-2015-4335 EVAL Lua Sandbox Security Bypass Vulnerability
2016-12-17
http://www.securityfocus.com/bid/75034

Resteasy CVE-2016-9571 Remote Code Execution Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94940

libxml2 'HTMLparser.c' Out of Bounds Read Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/85267

Google Android AOSP Mail CVE-2016-3918 Information Disclosure Vulnerability
2016-12-17
http://www.securityfocus.com/bid/93299

Red Hat mod_cluster CVE-2016-8612 Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94939

PLC WinProladder CVE-2016-8377 Stack Buffer Overflow Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94938

OpenSSL CMS CVE-2015-1792 Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/75154

OpenSSL CVE-2015-1790 Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/75157

OpenSSL CVE-2015-1791 Race Condition Security Vulnerability
2016-12-17
http://www.securityfocus.com/bid/75161

OpenSSL CVE-2015-1789 Out of Bounds Read Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/75156

Apple iOS and watchOS CVE-2016-7651 Security Bypass Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94851

OmniView ICSA-16-350-02 Multiple Information Disclosure Vulnerabilities
2016-12-17
http://www.securityfocus.com/bid/94937

RedHat Ceph CVE-2016-9579 Remote Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94936

Red Hat OpenShift Enterprise CVE-2016-8651 Information Disclosure Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94935

Linux Kernel 'arch/x86/kvm/vmx.c' Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94933

MongoDB CVE-2016-3104 Remote Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94929

FreeIPA CVE-2016-7030 Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94934Exim CVE-2016-9963 Unspecified Information Disclosure Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94947

Apache Xerces-C CVE-2016-4463 Stack Buffer Overflow Vulnerability
2016-12-17
http://www.securityfocus.com/bid/91501

libxml2 CVE-2016-3705 Stack Buffer Overflow Vulnerability
2016-12-17
http://www.securityfocus.com/bid/89854

Apache Commons FileUpload CVE-2016-3092 Denial Of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/91453

Apache Xerces-C CVE-2016-0729 Buffer Overflow Vulnerability
2016-12-17
http://www.securityfocus.com/bid/83423

FlightGear CVE-2016-9956 Arbitrary File Overwrite Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94945

SimpleSAMLphp CVE-2016-9955 Security Bypass Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94946

Irregex CVE-2016-9954 Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94942

Huawei Smart Phone P9 Wi-FI Driver Local Buffer Overflow Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94943

Huawei H60 CVE-2016-8783 Local Stack Buffer Overflow Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94944

ISC BIND CVE-2016-8864 Remote Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94067

ISC BIND 'buffer.c' Remote Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/93188

Huawei CloudEngine 12800 CVE-2016-8782 Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94941

Redis CVE-2015-4335 EVAL Lua Sandbox Security Bypass Vulnerability
2016-12-17
http://www.securityfocus.com/bid/75034

Resteasy CVE-2016-9571 Remote Code Execution Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94940

libxml2 'HTMLparser.c' Out of Bounds Read Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/85267

Google Android AOSP Mail CVE-2016-3918 Information Disclosure Vulnerability
2016-12-17
http://www.securityfocus.com/bid/93299

Red Hat mod_cluster CVE-2016-8612 Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94939

PLC WinProladder CVE-2016-8377 Stack Buffer Overflow Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94938

OpenSSL CMS CVE-2015-1792 Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/75154

OpenSSL CVE-2015-1790 Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/75157

OpenSSL CVE-2015-1791 Race Condition Security Vulnerability
2016-12-17
http://www.securityfocus.com/bid/75161

OpenSSL CVE-2015-1789 Out of Bounds Read Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/75156

Apple iOS and watchOS CVE-2016-7651 Security Bypass Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94851

OmniView ICSA-16-350-02 Multiple Information Disclosure Vulnerabilities
2016-12-17
http://www.securityfocus.com/bid/94937

RedHat Ceph CVE-2016-9579 Remote Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94936

Red Hat OpenShift Enterprise CVE-2016-8651 Information Disclosure Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94935

Linux Kernel 'arch/x86/kvm/vmx.c' Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94933

MongoDB CVE-2016-3104 Remote Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94929

FreeIPA CVE-2016-7030 Denial of Service Vulnerability
2016-12-17
http://www.securityfocus.com/bid/94934

SANS News

Blocking Powershell Connection via Windows Firewall.

Threatpostpost

Tales of WordPress Plugin Insecurity Overblown, Researchers Say

Nagios Core Patches Root, RCE Vulnerabilities

Remote Code Execution Bug Found in Ubuntu Quantal

SQL Injection Attack is Tied to Election Commission Breach

Exploit

iOS 10.1.1 / macOS 10.12 16A323 XNU Kernel - set_dp_control_port Lack of Locking...

WordPress Plugin Quiz And Survey Master 4.5.4 / 4.7.8 - Cross-Site Request Forgery

WHMCS Addon VMPanel 2.7.4 - SQL Injection

Horos 2.1.0 DICOM Medical Image Viewer - Denial of Service

DCMTK 3.6.0 storescp - Stack Buffer Overflow

ConQuest DICOM Server 1.4.17d - Stack Buffer Overflow

OsiriX DICOM Viewer 8.0.1 - Memory Corruption

Orthanc DICOM Server 1.1.0 - Memory Corruption

16.12.2016

Bugtraq

[security bulletin] HPSBMU03684 rev.1 - HPE Version Control Repository Manager (VCRM), Multiple Remote Vulnerabilities 2016-12-16
security-alert hpe com

[SECURITY] [DSA 3736-1] libupnp security update 2016-12-16
Sebastien Delafond (seb debian org)

CVE-2016-9277,CVE-2016-9966,CVE-2016-9967: Possible Privilege Escalation in telecom 2016-12-16
unlimitsec gmail com

CVE-2013-0090: MSIE 9 IEFRAME CView::EnsureSize use-after-free 2016-12-16
Berend-Jan Wever (berendj nwever nl)

MSIE 9 IEFRAME CMarkup­Pointer::Move­To­Gap use-after-free 2016-12-15
Berend-Jan Wever (berendj nwever nl)

Nagios Core < 4.2.2 Curl Command Injection leading to Remote Code Execution [CVE-2016-9565] 2016-12-15
Dawid Golunski (dawid legalhackers com)

Adobe Animate <= v15.2.1.95 Memory Corruption Vulnerability 2016-12-14
apparitionsec gmail com (hyp3rlinx)

Secunia Research: Microsoft Windows Type 1 Font Processing Vulnerability 2016-12-14
Secunia Research (remove-vuln secunia com)

CVE-2013-3143: MSIE 9 IEFRAME CMarkup..Remove­Pointer­Pos use-after-free 2016-12-14
Berend-Jan Wever (berendj nwever nl)

Malware

 

Phishing

AOL

16th December 2016

Shes waiting for your answer!

AOL

15th December 2016

youve got an incoming message

AOL

15th December 2016

This woman is awaiting your
response!

Vulnerebility

Apache Xerces-C CVE-2016-4463 Stack Buffer Overflow Vulnerability
2016-12-16
http://www.securityfocus.com/bid/91501

libxml2 CVE-2016-3705 Stack Buffer Overflow Vulnerability
2016-12-16
http://www.securityfocus.com/bid/89854

Apache Commons FileUpload CVE-2016-3092 Denial Of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/91453

Apache Xerces-C CVE-2016-0729 Buffer Overflow Vulnerability
2016-12-16
http://www.securityfocus.com/bid/83423

FlightGear CVE-2016-9956 Arbitrary File Overwrite Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94945

SimpleSAMLphp CVE-2016-9955 Security Bypass Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94946

Irregex CVE-2016-9954 Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94942

Huawei Smart Phone P9 Wi-FI Driver Local Buffer Overflow Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94943

Huawei H60 CVE-2016-8783 Local Stack Buffer Overflow Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94944

ISC BIND CVE-2016-8864 Remote Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94067

ISC BIND 'buffer.c' Remote Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/93188

Huawei CloudEngine 12800 CVE-2016-8782 Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94941

Redis CVE-2015-4335 EVAL Lua Sandbox Security Bypass Vulnerability
2016-12-16
http://www.securityfocus.com/bid/75034

Resteasy CVE-2016-9571 Remote Code Execution Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94940

libxml2 'HTMLparser.c' Out of Bounds Read Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/85267

Google Android AOSP Mail CVE-2016-3918 Information Disclosure Vulnerability
2016-12-16
http://www.securityfocus.com/bid/93299

Red Hat mod_cluster CVE-2016-8612 Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94939

PLC WinProladder CVE-2016-8377 Stack Buffer Overflow Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94938

OpenSSL CMS CVE-2015-1792 Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/75154

OpenSSL CVE-2015-1790 Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/75157

OpenSSL CVE-2015-1791 Race Condition Security Vulnerability
2016-12-16
http://www.securityfocus.com/bid/75161

OpenSSL CVE-2015-1789 Out of Bounds Read Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/75156

Apple iOS and watchOS CVE-2016-7651 Security Bypass Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94851

OmniView ICSA-16-350-02 Multiple Information Disclosure Vulnerabilities
2016-12-16
http://www.securityfocus.com/bid/94937

RedHat Ceph CVE-2016-9579 Remote Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94936

Red Hat OpenShift Enterprise CVE-2016-8651 Information Disclosure Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94935

Linux Kernel 'arch/x86/kvm/vmx.c' Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94933

MongoDB CVE-2016-3104 Remote Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94929

FreeIPA CVE-2016-7030 Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94934

Debian CVE-2016-1253 Remote Command Injection Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94931
OpenSSL CMS CVE-2015-1792 Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/75154

OpenSSL CVE-2015-1790 Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/75157

OpenSSL CVE-2015-1791 Race Condition Security Vulnerability
2016-12-16
http://www.securityfocus.com/bid/75161

OpenSSL CVE-2015-1789 Out of Bounds Read Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/75156

Apple iOS and watchOS CVE-2016-7651 Security Bypass Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94851

OmniView ICSA-16-350-02 Multiple Information Disclosure Vulnerabilities
2016-12-16
http://www.securityfocus.com/bid/94937

RedHat Ceph CVE-2016-9579 Remote Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94936

Red Hat OpenShift Enterprise CVE-2016-8651 Information Disclosure Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94935

Linux Kernel 'arch/x86/kvm/vmx.c' Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94933

MongoDB CVE-2016-3104 Remote Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94929

FreeIPA CVE-2016-7030 Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94934

Debian CVE-2016-1253 Remote Command Injection Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94931

JasPer 'jpc_t2cod.c' Remote Heap Buffer Overflow Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94925

Red Hat JBoss Enterprise Application Platform CVE-2016-9585 Remote Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94932

Huawei Firewall CVE-2016-8781 Remote Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94927

Joyent SmartOS CVE-2016-9033 Local Stack Buffer Overflow Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94928

Joyent SmartOS CVE-2016-9034 Local Stack Buffer Overflow Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94930

Joyent SmartOS CVE-2016-9035 Local Stack Buffer Overflow Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94926

Matroska libEBML CVE-2016-1515 Multiple Double Free Denial of Service Vulnerabilities
2016-12-16
http://www.securityfocus.com/bid/94924

Joyent SmartOS CVE-2016-9032 Local Stack Buffer Overflow Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94923

Nagios Core CVE-2016-9565 Remote Command Injection Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94922

Joyent SmartOS CVE-2016-9031 Local Integer Overflow Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94921

Nagios CVE-2016-9566 Local Privilege Escalation Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94919

Python-RSA CVE-2016-1494 Security Bypass Vulnerability
2016-12-16
http://www.securityfocus.com/bid/79829

Fontconfig CVE-2016-5384 Local Privilege Escalation Vulnerability
2016-12-16
http://www.securityfocus.com/bid/92339

Sudo Local Information Disclosure Vulnerability
2016-12-16
http://www.securityfocus.com/bid/92615

cURL/libcURL CVE-2016-5420 Certificate Validation Security Bypass Vulnerability
2016-12-16
http://www.securityfocus.com/bid/92309

Linux kernel 'pcpu_extend_area_map()' Function Use After Free Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/90625

Joyent SmartOS CVE-2016-8733 Integer Overflow Vulnerability
2016-12-16
http://www.securityfocus.com/bid/94920

cURL/libcurl CVE-2016-5421 Local Use After Free Denial of Service Vulnerability
2016-12-16
http://www.securityfocus.com/bid/92306

SANS News

One, if by email, and two, if by EK: The Cerbers are coming!

Threatpostpost

Microsoft, Google to Block Flash by Default in Edge, Chrome

DNSChanger Exploit Kit Hijacks Routers, Not Browsers

Tales of WordPress Plugin Insecurity Overblown, Researchers Say

Exploit

Horos 2.1.0 Web Portal - Directory Traversal

Nagios < 4.2.4 - Privilege Escalation

Linux/x86 - /bin/bash -c Arbitrary Command Execution Shellcode (72 bytes)

Orthanc DICOM Server 1.1.0 - Memory Corruption

OsiriX DICOM Viewer 8.0.1 - Memory Corruption

ConQuest DICOM Server 1.4.17d - Stack Buffer Overflow

DCMTK 3.6.0 storescp - Stack Buffer Overflow

Horos 2.1.0 DICOM Medical Image Viewer - Denial of Service

Nagios < 4.2.2 - Arbitrary Code Execution

Nagios < 4.2.4 - Privilege Escalation

Nidesoft MP3 Converter 2.6.18 - SEH Local Buffer Overflow

Microsoft Internet Explorer 9 IEFRAME - CMarkup::Remove­Pointer­Pos Use-After-Free (...

Microsoft Internet Explorer 9 MSHTML - CMarkup::Reload­In­Compat­View Us...

15.12.2016

Bugtraq

MSIE 9 IEFRAME CMarkup­Pointer::Move­To­Gap use-after-free 2016-12-15
Berend-Jan Wever (berendj nwever nl)

Nagios Core < 4.2.2 Curl Command Injection leading to Remote Code Execution [CVE-2016-9565] 2016-12-15
Dawid Golunski (dawid legalhackers com)

Adobe Animate <= v15.2.1.95 Memory Corruption Vulnerability 2016-12-14
apparitionsec gmail com (hyp3rlinx)

Secunia Research: Microsoft Windows Type 1 Font Processing Vulnerability 2016-12-14
Secunia Research (remove-vuln secunia com)

CVE-2013-3143: MSIE 9 IEFRAME CMarkup..Remove­Pointer­Pos use-after-free 2016-12-14
Berend-Jan Wever (berendj nwever nl)

[slackware-security] mozilla-firefox (SSA:2016-348-01) 2016-12-13
Slackware Security Team (security slackware com)

MSIE 9 MSHTML CMarkup::ReloadInCompatView use-after-free 2016-12-13
Berend-Jan Wever (berendj nwever nl)

APPLE-SA-2016-12-13-7 Additional information for APPLE-SA-2016-12-12-2 watchOS 3.1.1 2016-12-13
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2016-12-13-8 Transporter 1.9.2 2016-12-13
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2016-12-13-5 Additional information for APPLE-SA-2016-12-12-1 iOS 10.2 2016-12-13
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2016-12-13-2 Safari 10.0.2 2016-12-13
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2016-12-13-3 iTunes 12.5.4 2016-12-13
Apple Product Security (product-security-noreply lists apple com)

Malware

Backdoor:Win32/Truvasys.D!dha
Backdoor:Win32/Truvasys.A!dha

Backdoor:Win32/Truvasys.C!dha

Backdoor:Win32/Myntor.A!dha

Phishing

 

Vulnerebility

Huawei Firewall CVE-2016-8781 Remote Denial of Service Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94927

Joyent SmartOS CVE-2016-9033 Local Stack Buffer Overflow Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94928

Joyent SmartOS CVE-2016-9034 Local Stack Buffer Overflow Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94930

Joyent SmartOS CVE-2016-9035 Local Stack Buffer Overflow Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94926

Matroska libEBML CVE-2016-1515 Multiple Double Free Denial of Service Vulnerabilities
2016-12-15
http://www.securityfocus.com/bid/94924

Joyent SmartOS CVE-2016-9032 Local Stack Buffer Overflow Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94923

Nagios Core CVE-2016-9565 Remote Command Injection Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94922

Joyent SmartOS CVE-2016-9031 Local Integer Overflow Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94921

Nagios CVE-2016-9566 Local Privilege Escalation Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94919

Python-RSA CVE-2016-1494 Security Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/79829

Fontconfig CVE-2016-5384 Local Privilege Escalation Vulnerability
2016-12-15
http://www.securityfocus.com/bid/92339

Sudo Local Information Disclosure Vulnerability
2016-12-15
http://www.securityfocus.com/bid/92615

cURL/libcURL CVE-2016-5420 Certificate Validation Security Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/92309

Linux kernel 'pcpu_extend_area_map()' Function Use After Free Denial of Service Vulnerability
2016-12-15
http://www.securityfocus.com/bid/90625

Joyent SmartOS CVE-2016-8733 Integer Overflow Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94920

cURL/libcurl CVE-2016-5421 Local Use After Free Denial of Service Vulnerability
2016-12-15
http://www.securityfocus.com/bid/92306

cURL/libcURL CVE-2016-5419 Remote Security Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/92292

GNU Wget CVE-2016-4971 Arbitrary File Overwrite Vulnerability
2016-12-15
http://www.securityfocus.com/bid/91530

IBM Spectrum Scale and IBM GPFS Local Command Execution Vulnerability
2016-12-15
http://www.securityfocus.com/bid/92408

MIT Kerberos KDC CVE-2016-3120 NULL Pointer Dereference Denial Of Service Vulnerability
2016-12-15
http://www.securityfocus.com/bid/92132

MIT Kerberos 5 CVE-2016-3119 NULL Pointer Dereference Remote Denial of Service Vulnerability
2016-12-15
http://www.securityfocus.com/bid/85392

powerpc-utils CVE-2014-8165 Remote Code Execution Vulnerability
2016-12-15
http://www.securityfocus.com/bid/72537

Apache Struts CVE-2016-0785 Remote Code Execution Vulnerability
2016-12-15
http://www.securityfocus.com/bid/85066

util-linux CVE-2016-5011 Local Denial of Service Vulnerability
2016-12-15
http://www.securityfocus.com/bid/91683

ISC DHCP CVE-2016-2774 Remote Denial of Service Vulnerability
2016-12-15
http://www.securityfocus.com/bid/84208

Linux Kernel CVE-2015-7872 Local Privilege Escalation Vulnerability
2016-12-15
http://www.securityfocus.com/bid/77544

MediaTek Driver CVE-2016-6492 Privilege Escalation Vulnerability
2016-12-15
http://www.securityfocus.com/bid/92207

Google Android Mediaserver Multiple Privilege Escalation Vulnerabilities
2016-12-15
http://www.securityfocus.com/bid/94134

Linux Kernel CVE-2014-4014 Local Privilege Escalation Vulnerability
2016-12-15
http://www.securityfocus.com/bid/67988

OpenSSH 'ssh/kex.c' Denial of Service Vulnerability
2016-12-15
http://www.securityfocus.com/bid/93776cURL/libcURL CVE-2016-8621 Information Disclosure Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94101

cURL/libcURL CVE-2016-8616 Remote Security Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94094

NVIDIA Windows Kernel Mode Driver CVE-2016-8708 Local Denial of Service Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94918

cURL/libcURL CVE-2016-8622 Remote Security Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94105

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2016-12-15
http://www.securityfocus.com/bid/93150

Apple tvOS/Mac OS X/iOS CVE-2016-1823 Memory Corruption Vulnerability
2016-12-15
http://www.securityfocus.com/bid/90698

OpenSSL CVE-2016-6303 Integer Overflow Vulnerability
2016-12-15
http://www.securityfocus.com/bid/92984

Apple Mac OS X Server APPLE-SA-2016-03-21-7 Multiple Security Vulnerabilities
2016-12-15
http://www.securityfocus.com/bid/85054

cURL/libcURL CVE-2016-8625 Remote Security Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94107

cURL/libcURL CVE-2016-8624 Remote Security Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94103

cURL/libcURL CVE-2016-8623 Information Disclosure Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94106

cURL/libcURL CVE-2016-8618 Remote Security Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94098

cURL CVE-2016-8620 Remote Security Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94102

cURL CVE-2016-8619 Remote Security Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94100

cURL/libcURL CVE-2016-8617 Remote Security Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94097

curl/libcURL CVE-2016-7167 Multiple Integer Overflow Vulnerabilities
2016-12-15
http://www.securityfocus.com/bid/92975

cURL/libcURL CVE-2016-7141 Certificate Validation Security Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/92754

cURL/libcURL CVE-2016-8615 Cookie Injection Security Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94096

cURL/libcURL CVE-2016-5420 Certificate Validation Security Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/92309

cURL/libcurl CVE-2016-5421 Local Use After Free Denial of Service Vulnerability
2016-12-15
http://www.securityfocus.com/bid/92306

cURL/libcURL CVE-2016-5419 Remote Security Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/92292

PHP CVE-2016-7418 Out-of-Bounds Read Denial of Service Vulnerability
2016-12-15
http://www.securityfocus.com/bid/93011

PHP CVE-2016-7414 Heap Buffer Overflow Vulnerability
2016-12-15
http://www.securityfocus.com/bid/93004

PHP CVE-2016-7416 Stack Buffer Overflow Vulnerability
2016-12-15
http://www.securityfocus.com/bid/93008

PHP 'ext/spl/spl_array.c' Remote Denial Of Service Vulnerability
2016-12-15
http://www.securityfocus.com/bid/93007

PHP 'ext/standard/var_unserializer.c' Memory Corruption Vulnerability
2016-12-15
http://www.securityfocus.com/bid/93009

PHP CVE-2016-7412 Heap Based Buffer Overflow Vulnerability
2016-12-15
http://www.securityfocus.com/bid/93005

PHP CVE-2016-7413 Use After Free Denial of Service Vulnerability
2016-12-15
http://www.securityfocus.com/bid/93006

SAP Download Manager Weak Encryption Local Security Weakness
2016-12-15
http://www.securityfocus.com/bid/84286

Apple iOS/WatchOS/tvOS CVE-2016-7626 Memory Corruption Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94852Apple iOS/WatchOS/tvOS CVE-2016-7626 Memory Corruption Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94852

Apple iOS/macOS/tvOS/watchOS CVE-2016-4688 Buffer Overflow Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94572

Multiple IBM Products CVE-2016-8943 Cross Site Scripting Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94917

Multiple IBM Products CVE-2016-8941 Cross Site Request Forgery Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94914

Adobe Flash Player APSB16-39 Unspecified Use After Free Remote Code Execution Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94877

Adobe Flash Player CVE-2016-7890 Unspecified Security Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94870

Adobe Flash Player APSB16-39 Multiple Unspecified Memory Corruption Vulnerabilities
2016-12-15
http://www.securityfocus.com/bid/94866

Adobe Flash Player APSB16-39 Multiple Unspecified Remote Code Execution Vulnerabilities
2016-12-15
http://www.securityfocus.com/bid/94873

Adobe Flash Player APSB16-39 Multiple Unspecified Buffer Overflow Vulnerabilities
2016-12-15
http://www.securityfocus.com/bid/94871

Apple Transporter CVE-2016-7666 Information Disclosure Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94912

Apple iCloud for Windows CVE-2016-7614 Local Information Disclosure Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94911

IBM Tivoli Storage Productivity Center CVE-2016-8942 Security Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94916

Apple Safari and iOS CVE-2016-7650 Cross Site Scripting Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94915

WebKit CVE-2016-7623 Information Disclosure Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94913

Apple iOS/WatchOS/tvOS/Safari/iTunes/iCloud CVE-2016-7589 Memory Corruption Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94908

Apple macOS/watchOS/iOS/tvOS Multiple Security Vulnerabilities
2016-12-15
http://www.securityfocus.com/bid/94905

Apple Safari/Cloud/iTunes/iOS/tvOS Multiple Security Vulnerabilities
2016-12-15
http://www.securityfocus.com/bid/94907

SAP HANA Cockpit Information Disclosure Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94910

WebKit CVE-2016-7592 Denial of Service Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94909

Apple macOS APPLE-SA-2016-12-13-1 Multiple Security Vulnerabilities
2016-12-15
http://www.securityfocus.com/bid/94903

Apple macOS/iOS/tvOS Multiple Security Vulnerabilities
2016-12-15
http://www.securityfocus.com/bid/94906

Apple iOS/watchOS/macOS CVE-2016-7644 Remote Code Execution Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94904

SAP Mobile Defense & Security Remote Authorization Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94902

SAP HANA Cockpit Cross Site Scripting Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94897

SAP HANA Remote Authorization Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94898

SAP HANA XS Classic Information Disclosure Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94896

Cisco Email Security Appliance CVE-2016-6465 Remote Security Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94901

SAP Netweaver ABAP Remote Authorization Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94900

Visonic PowerLink2 Cross Site Scripting And Information Disclosure Vulnerabilities
2016-12-15
http://www.securityfocus.com/bid/94894

SAP Netweaver ABAP EA-DFPS Remote Authorization Bypass Vulnerability
2016-12-15
http://www.securityfocus.com/bid/94895

SANS News

Domaincop malpsam

Threatpostpost

Apple Fixes 97 Vulnerabilities Across macOS, iTunes, Safari, iCloud

Google Discloses Contents of Eight National Security Letters

Mirai Giving DDoS-as-a-Service Industry a Boost

Bug Hunters Prefer Communication Ovear Compensation

Exploit

APT - Repository Signing Bypass via Memory Allocation Failure

Adobe Animate 15.2.1.95 - Memory Corruption

14.12.2016

Bugtraq

CVE-2013-3143: MSIE 9 IEFRAME CMarkup..Remove­Pointer­Pos use-after-free 2016-12-14
Berend-Jan Wever (berendj nwever nl)

[slackware-security] mozilla-firefox (SSA:2016-348-01) 2016-12-13
Slackware Security Team (security slackware com)

MSIE 9 MSHTML CMarkup::ReloadInCompatView use-after-free 2016-12-13
Berend-Jan Wever (berendj nwever nl)

APPLE-SA-2016-12-13-7 Additional information for APPLE-SA-2016-12-12-2 watchOS 3.1.1 2016-12-13
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2016-12-13-8 Transporter 1.9.2 2016-12-13
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2016-12-13-5 Additional information for APPLE-SA-2016-12-12-1 iOS 10.2 2016-12-13
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2016-12-13-2 Safari 10.0.2 2016-12-13
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2016-12-13-3 iTunes 12.5.4 2016-12-13
Apple Product Security (product-security-noreply lists apple com)

[slackware-security] kernel (SSA:2016-347-01) 2016-12-12
Slackware Security Team (security slackware com)

[slackware-security] php (SSA:2016-347-03) 2016-12-12
Slackware Security Team (security slackware com)

Malware

BrowserModifier:Win32/Clodaconas
BrowserModifer:Win32/Clodaconas

Backdoor.Telebot

Phishing

Pastor.Fred Wilson

13th December 2016

Here is the information;MTCN;
2133097115

AOL

12th December 2016

new message

Vulnerebility

Cisco Email Security Appliance CVE-2016-6465 Remote Security Bypass Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94901

SAP Netweaver ABAP Remote Authorization Bypass Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94900

Visonic PowerLink2 Cross Site Scripting And Information Disclosure Vulnerabilities
2016-12-14
http://www.securityfocus.com/bid/94894

SAP Netweaver ABAP EA-DFPS Remote Authorization Bypass Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94895

Joomla! Core CVE-2016-9838 Remote Privilege Escalation Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94893

Apache Struts CVE-2016-8738 Denial of Service Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94657

Multiple Delta Electronics Products Local Buffer Overflow and Arbitrary File Access Vulnerabilities
2016-12-14
http://www.securityfocus.com/bid/94887

SAP NetWeaver Directory Creation Security Bypass Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94890

Moxa DACenter Local Privilege Escalation and Denial of Service Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94891

SAP BusinessObjects BI Platform Remote Command Execution Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94889

Joomla! CVE-2016-9837 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94892

SAP Business Objects Explorer Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94888

Multiple Huawei Smart Phones Drivers Stack Buffer Overflow and Heap Buffer Overflow Vulnerabilities
2016-12-14
http://www.securityfocus.com/bid/93530

McAfee VirusScan Enterprise for Windows DLL Loading Remote Code Execution Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94886

Mozilla Firefox MFSA2016-94 and MFSA2016-95 Multiple Security Vulnerabilities
2016-12-14
http://www.securityfocus.com/bid/94885

Mozilla Firefox MFSA2016-94 Multiple Security Vulnerabilities
2016-12-14
http://www.securityfocus.com/bid/94883

Mozilla Firefox ESR CVE-2016-9905 Denial of Service Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94884

SIMATIC S7-300 and S7-400 CPUs Denial of Service and Information Disclosure Vulnerabilities
2016-12-14
http://www.securityfocus.com/bid/94820

SIMATIC WinCC and SIMATIC PCS 7 CVE-2016-9160 ActiveX Control Security Bypass Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94825

Apache ActiveMQ CVE-2016-6810 HTML Injection Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94882

XFINITY Gateway Technicolor CVE-2016-7454 Cross Site Request Forgery Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94881

Microsoft Office CVE-2016-7263 Memory Corruption Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94668

Microsoft Office CVE-2016-7266 Remote Code Execution Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94662

Microsoft Office CVE-2016-7267 Security Bypass Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94664

Microsoft Office CVE-2016-7268 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94672

Microsoft Office CVE-2016-7291 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94671

Microsoft Office CVE-2016-7276 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94666

Microsoft Office CVE-2016-7290 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94670

Microsoft Office CVE-2016-7275 DLL Loading Remote Code Execution Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94665

Microsoft Windows Graphics Component CVE-2016-7259 Local Privilege Escalation Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94771SIMATIC S7-300 and S7-400 CPUs Denial of Service and Information Disclosure Vulnerabilities
2016-12-14
http://www.securityfocus.com/bid/94820

SIMATIC WinCC and SIMATIC PCS 7 CVE-2016-9160 ActiveX Control Security Bypass Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94825

Apache ActiveMQ CVE-2016-6810 HTML Injection Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94882

XFINITY Gateway Technicolor CVE-2016-7454 Cross Site Request Forgery Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94881

Microsoft Office CVE-2016-7263 Memory Corruption Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94668

Microsoft Office CVE-2016-7266 Remote Code Execution Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94662

Microsoft Office CVE-2016-7267 Security Bypass Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94664

Microsoft Office CVE-2016-7268 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94672

Microsoft Office CVE-2016-7291 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94671

Microsoft Office CVE-2016-7276 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94666

Microsoft Office CVE-2016-7290 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94670

Microsoft Office CVE-2016-7275 DLL Loading Remote Code Execution Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94665

Microsoft Windows Graphics Component CVE-2016-7259 Local Privilege Escalation Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94771

Microsoft Office CVE-2016-7262 Remote Code Execution Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94660

Microsoft Windows CVE-2016-7295 Local Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94787

Microsoft Auto Updater for Mac CVE-2016-7300 Local Privilege Escalation Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94784

Microsoft Windows Kernel CVE-2016-7258 Local Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94736

Microsoft Office CVE-2016-7289 Memory Corruption Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94718

Microsoft Office CVE-2016-7264 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94769

Microsoft Windows Kernel 'Win32k.sys' CVE-2016-7260 Local Privilege Escalation Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94785

Microsoft Windows CVE-2016-7271 Local Privilege Escalation Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94734

Microsoft .NET Framework CVE-2016-7270 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94741

Microsoft Office CVE-2016-7277 Memory Corruption Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94715

Microsoft Windows Graphics Component CVE-2016-7273 Remote Code Execution Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94752

Microsoft Windows Installer CVE-2016-7292 DLL Loading Local Privilege Escalation Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94768

Microsoft Office CVE-2016-7265 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94721

Microsoft Office CVE-2016-7298 Memory Corruption Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94720

Microsoft Windows Crypto Driver CVE-2016-7219 Local Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94764

Microsoft Internet Explorer and Edge CVE-2016-7287 Remote Memory Corruption Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94722

Microsoft Edge CVE-2016-7280 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94750Apache ActiveMQ CVE-2016-6810 HTML Injection Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94882

XFINITY Gateway Technicolor CVE-2016-7454 Cross Site Request Forgery Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94881

Microsoft Office CVE-2016-7263 Memory Corruption Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94668

Microsoft Office CVE-2016-7266 Remote Code Execution Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94662

Microsoft Office CVE-2016-7267 Security Bypass Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94664

Microsoft Office CVE-2016-7268 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94672

Microsoft Office CVE-2016-7291 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94671

Microsoft Office CVE-2016-7276 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94666

Microsoft Office CVE-2016-7290 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94670

Microsoft Office CVE-2016-7275 DLL Loading Remote Code Execution Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94665

Microsoft Windows Graphics Component CVE-2016-7259 Local Privilege Escalation Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94771

Microsoft Office CVE-2016-7262 Remote Code Execution Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94660

Microsoft Windows CVE-2016-7295 Local Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94787

Microsoft Auto Updater for Mac CVE-2016-7300 Local Privilege Escalation Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94784

Microsoft Windows Kernel CVE-2016-7258 Local Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94736

Microsoft Office CVE-2016-7289 Memory Corruption Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94718

Microsoft Office CVE-2016-7264 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94769

Microsoft Windows Kernel 'Win32k.sys' CVE-2016-7260 Local Privilege Escalation Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94785

Microsoft Windows CVE-2016-7271 Local Privilege Escalation Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94734

Microsoft .NET Framework CVE-2016-7270 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94741

Microsoft Office CVE-2016-7277 Memory Corruption Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94715

Microsoft Windows Graphics Component CVE-2016-7273 Remote Code Execution Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94752

Microsoft Windows Installer CVE-2016-7292 DLL Loading Local Privilege Escalation Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94768

Microsoft Office CVE-2016-7265 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94721

Microsoft Office CVE-2016-7298 Memory Corruption Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94720

Microsoft Windows Crypto Driver CVE-2016-7219 Local Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94764

Microsoft Internet Explorer and Edge CVE-2016-7287 Remote Memory Corruption Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94722

Microsoft Edge CVE-2016-7280 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94750

Microsoft Internet Explorer and Edge CVE-2016-7282 Information Disclosure Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94724

Microsoft Windows Graphics Component CVE-2016-7272 Remote Code Execution Vulnerability
2016-12-14
http://www.securityfocus.com/bid/94739

SANS News

UAC Bypass in JScript Dropper

Threatpostpost

Adobe Patches 31 Vulnerabilities, Flash Zero-Day Under Attack

Microsoft Patches Publicly Disclosed IE, Edge Vulnerabilities

Beta Firmware Updates Available for Vulnerable Netgear Routers

Zcash Spurs Rash of Malicious Mining Software

Law Enforcement Targets Users of DDoS-For-Hire Services

Exploit

 

13.12.2016

Bugtraq

[slackware-security] kernel (SSA:2016-347-01) 2016-12-12
Slackware Security Team (security slackware com)

[slackware-security] php (SSA:2016-347-03) 2016-12-12
Slackware Security Team (security slackware com)

Apple iOS/tvOS/watchOS Remote memory corruption through certificate 2016-12-12
submit cxsec org

APPLE-SA-2016-12-12-2 watchOS 3.1.1 2016-12-12
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2016-12-12-3 tvOS 10.1 2016-12-12
Apple Product Security (product-security-noreply lists apple com)

APPLE-SA-2016-12-12-1 iOS 10.2 2016-12-12
Apple Product Security (product-security-noreply lists apple com)

[SECURITY] CVE-2016-8745 Apache Tomcat Information Disclosure 2016-12-12
Mark Thomas (markt apache org)

[SECURITY] [DSA 3730-1] icedove security update 2016-12-11
Salvatore Bonaccorso (carnil debian org)

Malware

BrowserModifier:Win32/Linkhortry

Phishing

AOL

12th December 2016

new message

Wellsfargo Online

12th December 2016

Wells Fargo Fraud Prevention
Inquiry

Vulnerebility

Microsoft Windows Graphics Component CVE-2016-7259 Local Privilege Escalation Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94771

Microsoft Edge CVE-2016-7206 Information Disclosure Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94737

Microsoft Edge CVE-2016-7296 Remote Memory Corruption Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94738

Microsoft Internet Explorer and Edge CVE-2016-7281 Security Bypass Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94723

Microsoft Edge CVE-2016-7286 Remote Memory Corruption Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94748

Microsoft Edge CVE-2016-7288 Remote Memory Corruption Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94749

Microsoft Internet Explorer and Edge CVE-2016-7279 Remote Memory Corruption Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94719

Microsoft Windows Graphics Component CVE-2016-7257 Information Disclosure Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94755

Microsoft Edge CVE-2016-7181 Remote Memory Corruption Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94735

Microsoft Windows Uniscribe CVE-2016-7274 Remote Code Execution Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94758

Microsoft Internet Explorer CVE-2016-7284 Information Disclosure Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94725

Microsoft Internet Explorer CVE-2016-7283 Remote Memory Corruption Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94726

Microsoft Internet Explorer CVE-2016-7278 Information Disclosure Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94716

Roundcube CVE-2016-9920 Remote Code Execution Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94858

Microsoft Edge CVE-2016-7202 Scripting Engine Remote Memory Corruption Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94042

Adobe Digital Editions CVE-2016-7888 Information Disclosure Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94880

Adobe Flash Player APSB16-39 Unspecified Use After Free Remote Code Execution Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94877

EpubCheck CVE-2016-9487 XML External Entity Injection Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94864

Adobe Experience Manager CVE-2016-7885 Cross Site Request Forgery Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94876

Adobe Flash Player APSB16-39 Multiple Unspecified Remote Code Execution Vulnerabilities
2016-12-13
http://www.securityfocus.com/bid/94873

IBM QRadar Security Information and Event Manager Local Information Disclosure Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94861

Adobe ColdFusion Builder CVE-2016-7887 Unspecified Information Disclosure Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94874

Adobe Digital Editions CVE-2016-7889 XML Entity Parsing Information Disclosure Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94879

Adobe DNG Converter CVE-2016-7856 Unspecified Memory Corruption Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94875

Adobe InDesign and InDesign Server CVE-2016-7886 Unspecified Memory Corruption Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94868

Adobe RoboHelp CVE-2016-7891 Cross Site Scripting Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94878

Adobe Animate CVE-2016-7866 Memory Corruption Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94872

Adobe Experience Manager Multiple Cross Site Scripting Vulnerabilities
2016-12-13
http://www.securityfocus.com/bid/94869

Adobe Experience Manager and LiveCycle Multiple Cross Site Scripting Vulnerabilities
2016-12-13
http://www.securityfocus.com/bid/94867

Adobe Flash Player APSB16-39 Multiple Unspecified Buffer Overflow Vulnerabilities
2016-12-13
http://www.securityfocus.com/bid/94871Apple iOS/WatchOS/tvOS CVE-2016-7626 Memory Corruption Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94852

Apple iOS APPLE-SA-2016-12-12-1 Multiple Security Vulnerabilities
2016-12-13
http://www.securityfocus.com/bid/94850

Apple iOS and watchOS CVE-2016-7651 Security Bypass Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94851

PHP 'ext/standard/var.c' Incomplete Fix Use After Free Remote Code Execution Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94849

PHP 'ext/wddx/wddx.c' NULL pointer Dereference Remote Denial of Service Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94845

McAfee VirusScan Enterprise Multiple Security Vulnerabilities
2016-12-13
http://www.securityfocus.com/bid/94823

IBM Jazz Reporting Service CVE-2016-5898 Information Disclosure Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94848

PHP 'ext/wddx/wddx.c' Denial of Service Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94846

IBM Jazz Reporting Service CVE-2016-6047 Cross Site Scripting Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94843

IBM Jazz Reporting Service CVE-2016-5899 Cross Site Scripting Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94844

FFmpeg CVE-2016-7905 Denial of Service Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94837

FFmpeg 'libavcodec/g726.c' Out of Bounds Read Denial of Service Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94841

IBM Jazz Reporting Service CVE-2016-6054 Cross Site Scripting Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94842

Multiple Sony IPELA Engine IP Cameras Unspecified Remote Code Execution Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94840

FFmpeg CVE-2016-7555 Information Disclosure Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94838

FFmpeg 'libavformat/avidec.c' Denial of Service Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94839

FFmpeg CVE-2016-7562 Denial of Service Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94835

Huawei P9 and P9 Lite CVE-2016-8776 Security Bypass Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94836

FFmpeg CVE-2016-7502 Out of Bounds Read Denial of Service Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94834

FFmpeg CVE-2016-7785 Denial of Service Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94833

Sleipnir for Mac CVE-2016-7831 Remote Security Bypass Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94830

Huawei Storage Products CVE-2016-8801 Remote Privilege Escalation Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94832

Linux Kernel CVE-2016-5195 Local Privilege Escalation Vulnerability
2016-12-13
http://www.securityfocus.com/bid/93793

Apache Tomcat CVE-2016-8745 Information Disclosure Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94828

Multiple Huawei CloudEngine Products CVE-2016-8795 Integer Overflow Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94504

Bank of Tokyo Mitsubishi UFJ CVE-2016-7812 Man in the Middle Information Disclosure Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94829

Cybozu Dezie JVN#16781735 Multiple Security Bypass Vulnerabilities
2016-12-13
http://www.securityfocus.com/bid/94831

SIMATIC WinCC and SIMATIC PCS 7 CVE-2016-9160 ActiveX Control Security Bypass Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94825

QEMU 'qemu-char.c' Denial of Service Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94827

Linux Kernel CVE-2016-9576 Use After Free Memory Corruption Vulnerability
2016-12-13
http://www.securityfocus.com/bid/94821

SANS News

December 2016 Patch Tuesday Brief and Updates

Threatpostpost

Netgear Routers Remain Exposed to Critical Flaw

Apple Fixes 12 Vulnerabilities in iOS 10.2

Facebook Releases Free Certificate Transparency Monitoring Tool

Exploit

McAfee Virus Scan Enterprise for Linux - Remote Code Execution

Joomla Component DT Register - 'cat' SQL Injection

Samsung Devices KNOX Extensions - OTP TrustZone Trustlet Stack Buffer Overflow

WordPress Plugin Multisite Post Duplicator 0.9.5.1 - Cross-Site Request Forgery

Smart Guard Network Manager 6.3.2 - SQL Injection

iOS 10.1.x - Certificate File Memory Corruption

TP-LINK TD-W8151N - Denial of Service

Serva 3.0.0 HTTP Server - Denial of Service

Microsoft Internet Explorer 9 IEFRAME -...

12.12.2016

Bugtraq

[SECURITY] CVE-2016-8745 Apache Tomcat Information Disclosure 2016-12-12
Mark Thomas (markt apache org)

[SECURITY] [DSA 3730-1] icedove security update 2016-12-11
Salvatore Bonaccorso (carnil debian org)

MSIE 9 MSHTML CElement::Has­Flag memory corruption 2016-12-09
Berend-Jan Wever (berendj nwever nl)

Symantec VIP Access Desktop Arbitrary DLL Execution 2016-12-09
apparitionsec gmail com - hyp3rlinx

Malware

Backdoor:Win32/Wingbird.A!dha

Linux.Mirai

Trojan.Gen.8

Phishing

 

Vulnerebility

Google Chrome Prior to 44.0.2403.89 Multiple Security Vulnerabilities
2016-12-12
http://www.securityfocus.com/bid/75973

Expat XML Parsing Multiple Remote Denial of Service Vulnerabilities
2016-12-12
http://www.securityfocus.com/bid/52379

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/93150

Apple iOS/macOS/tvOS/watchOS CVE-2016-4688 Buffer Overflow Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94572

Apple macOS CVE-2016-7584 Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94571

iCloud Setup for Windows CVE-2016-7583 Remote Code Execution Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94570

Mozilla Firefox CVE-2016-9078 URL Redirection Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94569

Red Hat JBoss BRMS and BPM Suite CVE-2016-8608 Incomplete Fix HTML Injection Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94568

Drools CVE-2016-7041 Directory Traversal Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94566

WordPress Dukapress Plugin 'dukapress/download.php' SQL Injection Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94567

WordPress Image Gallery Plugin HTML Injection Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94565

WordPress simple-image-manipulator Plugin 'download.php' Arbitrary File Download Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94563

Guidance Software EnCase Multiple Security Vulnerabilities
2016-12-12
http://www.securityfocus.com/bid/94564

Core FTP Client Buffer Overflow Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94562

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2016-12-12
http://www.securityfocus.com/bid/94499

metapixel 'rwgif.c' Heap Buffer Overflow Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94466

IBM BigFix Remote Control CVE-2016-2927 Information Disclosure Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94561

IBM BigFix Remote Control CVE-2016-2929 Information Disclosure Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94560

WebKit CVE-2016-9642 Memory Corruption Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94554

WebKit CVE-2016-9643 Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94559

Multiple IBM Products CVE-2016-0284 XML External Entity Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94555

IBM iNotes CVE-2016-0282 Cross Site Scripting Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94558

IBM BigFix Remote Control CVE-2016-2928 Information Disclosure Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94556

Multiple IBM Products CVE-2016-0273 Cross Site Scripting Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94557

Multiple IBM Products CVE-2016-0285 HTML Injection Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94550

Cybozu Kintone App CVE-2016-7816 SSL Certificate Validation Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94547

Siemens SICAM PAS Products CVE-2016-8566 Local Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94552

Siemens SICAM PAS Multiple Security Vulnerabilities
2016-12-12
http://www.securityfocus.com/bid/94549

SaltStack Salt CVE-2016-9639 Information Disclosure Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94553

InPage '.inp' File Parser Remote Code Execution Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94548FFmpeg CVE-2016-7502 Out of Bounds Read Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94834

FFmpeg CVE-2016-7785 Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94833

Sleipnir for Mac CVE-2016-7831 Remote Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94830

Huawei Storage Products CVE-2016-8801 Remote Privilege Escalation Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94832

Linux Kernel CVE-2016-5195 Local Privilege Escalation Vulnerability
2016-12-12
http://www.securityfocus.com/bid/93793

Apache Tomcat CVE-2016-8745 Information Disclosure Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94828

Multiple Huawei CloudEngine Products CVE-2016-8795 Integer Overflow Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94504

McAfee VirusScan Enterprise Multiple Security Vulnerabilities
2016-12-12
http://www.securityfocus.com/bid/94823

Bank of Tokyo Mitsubishi UFJ CVE-2016-7812 Man in the Middle Information Disclosure Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94829

Cybozu Dezie JVN#16781735 Multiple Security Bypass Vulnerabilities
2016-12-12
http://www.securityfocus.com/bid/94831

SIMATIC WinCC and SIMATIC PCS 7 CVE-2016-9160 ActiveX Control Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94825

QEMU 'qemu-char.c' Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94827

Linux Kernel CVE-2016-9576 Use After Free Memory Corruption Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94821

Linux Kernel 'net/ipv6/icmp.c' Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94824

OpenJPEG Multiple Remote Heap Based Buffer Overflow Vulnerabilities
2016-12-12
http://www.securityfocus.com/bid/94822

SIMATIC S7-300 and S7-400 CPUs Denial of Service and Information Disclosure Vulnerabilities
2016-12-12
http://www.securityfocus.com/bid/94820

Multiple Netgear Routers VU#582384 Remote Command Injection Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94819

Cisco Hybrid Media Service CVE-2016-6470 Local Privilege Escalation Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94818

Multiple Cisco Products CVE-2016-9209 Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94817

Cisco Nexus 1000V InterCloud CVE-2016-9204 Default Credentials Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94816

Cisco IOS Software CVE-2016-6473 Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94815

Cisco IOS XR Software CVE-2016-9205 Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94813

Cisco FireAMP Connector Endpoint Software CVE-2016-6449 Local Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94814

Cisco IOS XR Software CVE-2016-9215 Default Credential Local Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94812

Cisco IOS and Cisco IOS XE Software CVE-2016-9201 Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94811

Cisco Identity Services Engine CVE-2016-9198 Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94810

IBM Tivoli Storage Manager Client CVE-2016-5985 Local Buffer Overflow Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94808

Microsoft Remote Desktop Client for Mac Remote Code Execution Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94809

Cisco Identity Services Engine CVE-2016-9214 Cross Site Scripting Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94807

Drupal JavaScript Callback Handler Module Multiple Unspecified Security Vulnerabilities
2016-12-12
http://www.securityfocus.com/bid/94804Cisco Hybrid Media Service CVE-2016-6470 Local Privilege Escalation Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94818

Multiple Cisco Products CVE-2016-9209 Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94817

Cisco Nexus 1000V InterCloud CVE-2016-9204 Default Credentials Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94816

Cisco IOS Software CVE-2016-6473 Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94815

Cisco IOS XR Software CVE-2016-9205 Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94813

Cisco FireAMP Connector Endpoint Software CVE-2016-6449 Local Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94814

Cisco IOS XR Software CVE-2016-9215 Default Credential Local Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94812

Cisco IOS and Cisco IOS XE Software CVE-2016-9201 Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94811

Cisco Identity Services Engine CVE-2016-9198 Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94810

IBM Tivoli Storage Manager Client CVE-2016-5985 Local Buffer Overflow Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94808

Microsoft Remote Desktop Client for Mac Remote Code Execution Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94809

Cisco Identity Services Engine CVE-2016-9214 Cross Site Scripting Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94807

Drupal JavaScript Callback Handler Module Multiple Unspecified Security Vulnerabilities
2016-12-12
http://www.securityfocus.com/bid/94804

QEMU Divide By Zero Multiple Denial of Service Vulnerabilities
2016-12-12
http://www.securityfocus.com/bid/94803

Cisco Prime Collaboration Assurance CVE-2016-9200 Cross Site Scripting Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94806

QEMU VirtFS Multiple Denial of Service Vulnerabilities
2016-12-12
http://www.securityfocus.com/bid/94729

Cisco Firepower Management Center CVE-2016-6471 Information Disclosure Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94805

Cisco Firepower Management Center and FireSIGHT System Software Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94801

Cisco Unified Communications Manager IM and Presence Service Information Disclosure Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94802

Cisco Emergency Responder CVE-2016-9208 Directory Traversal Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94800

Asterisk Open Source AST-2016-008 Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94792

Cisco AsyncOS Software CVE-2016-9202 Cross Site Scripting Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94799

Multiple Cisco Products CVE-2016-9207 Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94797

Cisco ASR 5000 Series Software CVE-2016-9203 Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94790

Cisco Emergency Responder CVE-2016-6468 Cross Site Request Forgery Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94786

Cisco Unified Communications Manager CVE-2016-9210 Directory Traversal Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94798

Cisco ONS 15454 Series Multiservice Provisioning Platforms Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94795

Cisco AsyncOS Software CVE-2016-1411 Man in the Middle Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94791

Cisco Unified Communications Manager CVE-2016-9206 Cross Site Scripting Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94793

Asterisk Open Source and Certified Asterisk 'chan_sip' Driver Authentication Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94789Cisco Hybrid Media Service CVE-2016-6470 Local Privilege Escalation Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94818

Multiple Cisco Products CVE-2016-9209 Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94817

Cisco Nexus 1000V InterCloud CVE-2016-9204 Default Credentials Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94816

Cisco IOS Software CVE-2016-6473 Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94815

Cisco IOS XR Software CVE-2016-9205 Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94813

Cisco FireAMP Connector Endpoint Software CVE-2016-6449 Local Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94814

Cisco IOS XR Software CVE-2016-9215 Default Credential Local Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94812

Cisco IOS and Cisco IOS XE Software CVE-2016-9201 Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94811

Cisco Identity Services Engine CVE-2016-9198 Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94810

IBM Tivoli Storage Manager Client CVE-2016-5985 Local Buffer Overflow Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94808

Microsoft Remote Desktop Client for Mac Remote Code Execution Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94809

Cisco Identity Services Engine CVE-2016-9214 Cross Site Scripting Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94807

Drupal JavaScript Callback Handler Module Multiple Unspecified Security Vulnerabilities
2016-12-12
http://www.securityfocus.com/bid/94804

QEMU Divide By Zero Multiple Denial of Service Vulnerabilities
2016-12-12
http://www.securityfocus.com/bid/94803

Cisco Prime Collaboration Assurance CVE-2016-9200 Cross Site Scripting Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94806

QEMU VirtFS Multiple Denial of Service Vulnerabilities
2016-12-12
http://www.securityfocus.com/bid/94729

Cisco Firepower Management Center CVE-2016-6471 Information Disclosure Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94805

Cisco Firepower Management Center and FireSIGHT System Software Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94801

Cisco Unified Communications Manager IM and Presence Service Information Disclosure Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94802

Cisco Emergency Responder CVE-2016-9208 Directory Traversal Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94800

Asterisk Open Source AST-2016-008 Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94792

Cisco AsyncOS Software CVE-2016-9202 Cross Site Scripting Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94799

Multiple Cisco Products CVE-2016-9207 Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94797

Cisco ASR 5000 Series Software CVE-2016-9203 Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94790

Cisco Emergency Responder CVE-2016-6468 Cross Site Request Forgery Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94786

Cisco Unified Communications Manager CVE-2016-9210 Directory Traversal Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94798

Cisco ONS 15454 Series Multiservice Provisioning Platforms Denial of Service Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94795

Cisco AsyncOS Software CVE-2016-1411 Man in the Middle Security Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94791

Cisco Unified Communications Manager CVE-2016-9206 Cross Site Scripting Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94793

Asterisk Open Source and Certified Asterisk 'chan_sip' Driver Authentication Bypass Vulnerability
2016-12-12
http://www.securityfocus.com/bid/94789

SANS News

5 Questions to Ask your IoT Vendors; But Do Not Expect an Answer.

Threatpostpost

German Industrial Giant Victim of Cyber Espionage

Exploit

OpenSSL 1.1.0a/1.1.0b - Denial of Service

Smart Guard Network Manager 6.3.2 - SQL Injection

ARG-W4 ADSL Router - Multiple Vulnerabilities

Netgear R7000 - Cross-Site Scripting

EasyPHP Devserver 16.1.1 - Insecure File Permissions Privilege Escalation

11.12.2016

Bugtraq

 

Malware

Trojan:Win64/Depriz.D!dha
Trojan:Win32/Depriz.C!dha

Trojan:Win32/Depriz.A!dha

Trojan:Win32/Depriz.B!dha

Trojan:Win32/Cadlotcorg.A

Win32/Depriz

X97M.Goldendrop

Phishing

Email Administrator

10th December 2016

Account Suspection Notice

Bank of America

9th December 2016

Bank of America Alert: Your
Online Access is Temporarily
Locked

Vulnerebility

Cisco Hybrid Media Service CVE-2016-6470 Local Privilege Escalation Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94818

Multiple Cisco Products CVE-2016-9209 Security Bypass Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94817

Cisco Nexus 1000V InterCloud CVE-2016-9204 Default Credentials Security Bypass Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94816

Cisco IOS Software CVE-2016-6473 Denial of Service Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94815

Cisco IOS XR Software CVE-2016-9205 Denial of Service Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94813

Cisco FireAMP Connector Endpoint Software CVE-2016-6449 Local Denial of Service Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94814

Cisco IOS XR Software CVE-2016-9215 Default Credential Local Security Bypass Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94812

Cisco IOS and Cisco IOS XE Software CVE-2016-9201 Security Bypass Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94811

Cisco Identity Services Engine CVE-2016-9198 Denial of Service Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94810

IBM Tivoli Storage Manager Client CVE-2016-5985 Local Buffer Overflow Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94808

Microsoft Remote Desktop Client for Mac Remote Code Execution Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94809

Cisco Identity Services Engine CVE-2016-9214 Cross Site Scripting Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94807

Drupal JavaScript Callback Handler Module Multiple Unspecified Security Vulnerabilities
2016-12-11
http://www.securityfocus.com/bid/94804

QEMU Divide By Zero Multiple Denial of Service Vulnerabilities
2016-12-11
http://www.securityfocus.com/bid/94803

Cisco Prime Collaboration Assurance CVE-2016-9200 Cross Site Scripting Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94806

QEMU VirtFS Multiple Denial of Service Vulnerabilities
2016-12-11
http://www.securityfocus.com/bid/94729

Cisco Firepower Management Center CVE-2016-6471 Information Disclosure Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94805

Cisco Firepower Management Center and FireSIGHT System Software Security Bypass Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94801

Cisco Unified Communications Manager IM and Presence Service Information Disclosure Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94802

Cisco Emergency Responder CVE-2016-9208 Directory Traversal Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94800

Asterisk Open Source AST-2016-008 Denial of Service Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94792

Cisco AsyncOS Software CVE-2016-9202 Cross Site Scripting Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94799

Multiple Cisco Products CVE-2016-9207 Security Bypass Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94797

Cisco ASR 5000 Series Software CVE-2016-9203 Denial of Service Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94790

Cisco Emergency Responder CVE-2016-6468 Cross Site Request Forgery Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94786

Cisco Unified Communications Manager CVE-2016-9210 Directory Traversal Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94798

Cisco ONS 15454 Series Multiservice Provisioning Platforms Denial of Service Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94795

Cisco AsyncOS Software CVE-2016-1411 Man in the Middle Security Bypass Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94791

Cisco Unified Communications Manager CVE-2016-9206 Cross Site Scripting Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94793

Asterisk Open Source and Certified Asterisk 'chan_sip' Driver Authentication Bypass Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94789
Cisco Hybrid Media Service CVE-2016-6470 Local Privilege Escalation Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94818

Multiple Cisco Products CVE-2016-9209 Security Bypass Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94817

Cisco Nexus 1000V InterCloud CVE-2016-9204 Default Credentials Security Bypass Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94816

Cisco IOS Software CVE-2016-6473 Denial of Service Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94815

Cisco IOS XR Software CVE-2016-9205 Denial of Service Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94813

Cisco FireAMP Connector Endpoint Software CVE-2016-6449 Local Denial of Service Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94814

Cisco IOS XR Software CVE-2016-9215 Default Credential Local Security Bypass Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94812

Cisco IOS and Cisco IOS XE Software CVE-2016-9201 Security Bypass Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94811

Cisco Identity Services Engine CVE-2016-9198 Denial of Service Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94810

IBM Tivoli Storage Manager Client CVE-2016-5985 Local Buffer Overflow Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94808

Microsoft Remote Desktop Client for Mac Remote Code Execution Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94809

Cisco Identity Services Engine CVE-2016-9214 Cross Site Scripting Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94807

Drupal JavaScript Callback Handler Module Multiple Unspecified Security Vulnerabilities
2016-12-11
http://www.securityfocus.com/bid/94804

QEMU Divide By Zero Multiple Denial of Service Vulnerabilities
2016-12-11
http://www.securityfocus.com/bid/94803

Cisco Prime Collaboration Assurance CVE-2016-9200 Cross Site Scripting Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94806

QEMU VirtFS Multiple Denial of Service Vulnerabilities
2016-12-11
http://www.securityfocus.com/bid/94729

Cisco Firepower Management Center CVE-2016-6471 Information Disclosure Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94805

Cisco Firepower Management Center and FireSIGHT System Software Security Bypass Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94801

Cisco Unified Communications Manager IM and Presence Service Information Disclosure Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94802

Cisco Emergency Responder CVE-2016-9208 Directory Traversal Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94800

Asterisk Open Source AST-2016-008 Denial of Service Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94792

Cisco AsyncOS Software CVE-2016-9202 Cross Site Scripting Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94799

Multiple Cisco Products CVE-2016-9207 Security Bypass Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94797

Cisco ASR 5000 Series Software CVE-2016-9203 Denial of Service Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94790

Cisco Emergency Responder CVE-2016-6468 Cross Site Request Forgery Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94786

Cisco Unified Communications Manager CVE-2016-9210 Directory Traversal Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94798

Cisco ONS 15454 Series Multiservice Provisioning Platforms Denial of Service Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94795

Cisco AsyncOS Software CVE-2016-1411 Man in the Middle Security Bypass Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94791

Cisco Unified Communications Manager CVE-2016-9206 Cross Site Scripting Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94793

Asterisk Open Source and Certified Asterisk 'chan_sip' Driver Authentication Bypass Vulnerability
2016-12-11
http://www.securityfocus.com/bid/94789Cisco Hybrid Media Service CVE-2016-6470 Local Privilege Escalation Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94818

Multiple Cisco Products CVE-2016-9209 Security Bypass Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94817

Cisco Nexus 1000V InterCloud CVE-2016-9204 Default Credentials Security Bypass Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94816

Cisco IOS Software CVE-2016-6473 Denial of Service Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94815

Cisco IOS XR Software CVE-2016-9205 Denial of Service Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94813

Cisco FireAMP Connector Endpoint Software CVE-2016-6449 Local Denial of Service Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94814

Cisco IOS XR Software CVE-2016-9215 Default Credential Local Security Bypass Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94812

Cisco IOS and Cisco IOS XE Software CVE-2016-9201 Security Bypass Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94811

Cisco Identity Services Engine CVE-2016-9198 Denial of Service Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94810

IBM Tivoli Storage Manager Client CVE-2016-5985 Local Buffer Overflow Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94808

Microsoft Remote Desktop Client for Mac Remote Code Execution Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94809

Cisco Identity Services Engine CVE-2016-9214 Cross Site Scripting Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94807

Drupal JavaScript Callback Handler Module Multiple Unspecified Security Vulnerabilities
2016-12-10
http://www.securityfocus.com/bid/94804

QEMU Divide By Zero Multiple Denial of Service Vulnerabilities
2016-12-10
http://www.securityfocus.com/bid/94803

Cisco Prime Collaboration Assurance CVE-2016-9200 Cross Site Scripting Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94806

QEMU VirtFS Multiple Denial of Service Vulnerabilities
2016-12-10
http://www.securityfocus.com/bid/94729

Cisco Firepower Management Center CVE-2016-6471 Information Disclosure Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94805

Cisco Firepower Management Center and FireSIGHT System Software Security Bypass Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94801

Cisco Unified Communications Manager IM and Presence Service Information Disclosure Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94802

Cisco Emergency Responder CVE-2016-9208 Directory Traversal Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94800

Asterisk Open Source AST-2016-008 Denial of Service Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94792

Cisco AsyncOS Software CVE-2016-9202 Cross Site Scripting Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94799

Multiple Cisco Products CVE-2016-9207 Security Bypass Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94797

Cisco ASR 5000 Series Software CVE-2016-9203 Denial of Service Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94790

Cisco Emergency Responder CVE-2016-6468 Cross Site Request Forgery Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94786

Cisco Unified Communications Manager CVE-2016-9210 Directory Traversal Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94798

Cisco ONS 15454 Series Multiservice Provisioning Platforms Denial of Service Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94795

Cisco AsyncOS Software CVE-2016-1411 Man in the Middle Security Bypass Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94791

Cisco Unified Communications Manager CVE-2016-9206 Cross Site Scripting Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94793

Asterisk Open Source and Certified Asterisk 'chan_sip' Driver Authentication Bypass Vulnerability
2016-12-10
http://www.securityfocus.com/bid/94789

SANS News

Mirai - now with DGA

Threatpostpost

Yahoo Mail XSS Bug Worth Another $10K to Researcher

Ransomware Gives Free Decryption Keys to Victims Who Infect Others

Exploit

Microsoft Internet Explorer 9 MSHTML - CElement::Has­Flag Memory Corruption

Microsoft Internet Explorer 9 MSHTML - CDisp­Node::Insert­Sibling­Node Us...

Microsoft Internet Explorer 9 MSHTML - CDisp­Node::Insert­Sibling­Node Us...

Splunk Enterprise 6.4.3 - Server-Side Request Forgery

Roundcube 1.2.2 - Remote Code Execution

9.12.2016

Bugtraq

MSIE 9 MSHTML CElement::Has­Flag memory corruption 2016-12-09
Berend-Jan Wever (berendj nwever nl)

Symantec VIP Access Desktop Arbitrary DLL Execution 2016-12-09
apparitionsec gmail com - hyp3rlinx

AST-2016-009: <br> 2016-12-08
Asterisk Security Team (security asterisk org)

AST-2016-008: Crash on SDP offer or answer from endpoint using Opus 2016-12-08
Asterisk Security Team (security asterisk org)

CVE-2013-1306: MSIE 9 MSHTML CDisp­Node::Insert­Sibling­Node use-after-free details 2016-12-08
Berend-Jan Wever (berendj nwever nl)

[security bulletin] HPSBHF03674 rev.1 HPE Comware 5 and Comware 7 Network Products using SSL/TLS, Remote Disclosure of Information 2016-12-07
security-alert hpe com

Malware

 

Phishing

AOL

8th December 2016

Somebody seems to have marked
your current account

Chase online

8th December 2016

New Security Alert

MR. Don C.John

8th December 2016

RE: 2016 VICTIMS COMPENSATION
FROM THE IMF BENIN

Vulnerebility

Cisco Emergency Responder CVE-2016-6468 Cross Site Request Forgery Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94786

Cisco AsyncOS Software CVE-2016-1411 Man in the Middle Security Bypass Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94791

Cisco Unified Communications Manager CVE-2016-9206 Cross Site Scripting Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94793

Asterisk Open Source and Certified Asterisk 'chan_sip' Driver Authentication Bypass Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94789

Cisco IOS and IOS XE Software CVE-2016-9199 Directory Traversal Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94788

Multiple Moxa MiiNePort Products Information Disclosure and Security Bypass Vulnerabilities
2016-12-09
http://www.securityfocus.com/bid/94783

Sauter NovaWeb Web HMI CVE-2016-5782 Authentication Bypass Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94782

A850 Telemetry Gateway Base Station CVE-2016-2274 Cross Site Scripting Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94781

PHP FormMail Generator VU#494015 Multiple Security Vulnerabilities
2016-12-09
http://www.securityfocus.com/bid/94778

INTERSCHALT VDR G4e CVE-2016-9339 Directory Traversal Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94776

Symantec VIP Access Desktop DLL Loading CVE-2016-6593 Local Code Execution Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94731

Cisco AsyncOS CVE-2016-6469 Remote Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94775

Cisco IOS and IOS XE Software CVE-2016-6474 Authentication Bypass Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94773

Cisco Web Security Appliance CVE-2016-9212 Remote Security Bypass Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94774

Cisco ASR 5000 Series Aggregation Services Routers CVE-2016-6467 Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94772

Cisco AnyConnect Secure Mobility Client CVE-2016-9192 Local Privilege Escalation Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94770

QEMU '/hw/display/virtio-gpu.c b/hw/display/virtio-gpu.c' Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94765

libming 'parser.c' Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94767

Apache CouchDB CVE-2016-8742 Local Privilege Escalation Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94766

QEMU 'ehci_init_transfer()' Function Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94762

QEMU 'hw/display/virtio-gpu.c' Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94760

QEMU '/hw/usb/redirect.c' Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94759

QEMU 'virtio-gpu-3d.c' Information Disclosure Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94761

QEMU '/hw/display/virtio-gpu-3d.c' Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94763

RETIRED: LibTIFF Multiple Security Vulnerabilites
2016-12-09
http://www.securityfocus.com/bid/94484

LibTIFF CVE-2016-9539 Memory Corruption Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94754

LibTIFF CVE-2016-9538 Integer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94753

LibTIFF CVE-2016-9534 Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94743

LibTIFF CVE-2016-9536 Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94745

LibTIFF CVE-2016-9535 Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94744PHP FormMail Generator VU#494015 Multiple Security Vulnerabilities
2016-12-09
http://www.securityfocus.com/bid/94778

INTERSCHALT VDR G4e CVE-2016-9339 Directory Traversal Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94776

Symantec VIP Access Desktop DLL Loading CVE-2016-6593 Local Code Execution Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94731

Cisco AsyncOS CVE-2016-6469 Remote Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94775

Cisco IOS and IOS XE Software CVE-2016-6474 Authentication Bypass Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94773

Cisco Web Security Appliance CVE-2016-9212 Remote Security Bypass Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94774

Cisco ASR 5000 Series Aggregation Services Routers CVE-2016-6467 Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94772

Cisco AnyConnect Secure Mobility Client CVE-2016-9192 Local Privilege Escalation Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94770

QEMU '/hw/display/virtio-gpu.c b/hw/display/virtio-gpu.c' Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94765

libming 'parser.c' Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94767

Apache CouchDB CVE-2016-8742 Local Privilege Escalation Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94766

QEMU 'ehci_init_transfer()' Function Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94762

QEMU 'hw/display/virtio-gpu.c' Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94760

QEMU '/hw/usb/redirect.c' Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94759

QEMU 'virtio-gpu-3d.c' Information Disclosure Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94761

QEMU '/hw/display/virtio-gpu-3d.c' Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94763

RETIRED: LibTIFF Multiple Security Vulnerabilites
2016-12-09
http://www.securityfocus.com/bid/94484

LibTIFF CVE-2016-9539 Memory Corruption Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94754

LibTIFF CVE-2016-9538 Integer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94753

LibTIFF CVE-2016-9534 Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94743

LibTIFF CVE-2016-9536 Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94745

LibTIFF CVE-2016-9535 Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94744

LibTIFF CVE-2016-9537 Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94746

FFmpeg CVE-2016-8595 Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94757

LibTIFF CVE-2016-9533 Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94742

LibTIFF CVE-2016-9540 Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94747

FFmpeg CVE-2016-9561 Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94756

ForeScout CounterACT SecureConnector Agent Multiple Insecure File Creation Vulnerabilities
2016-12-09
http://www.securityfocus.com/bid/94740

PwC ACE-ABAP CVE-2016-9832 Remote Code Execution Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94733

Libav Multiple Denial of Service Vulnerabilities
2016-12-09
http://www.securityfocus.com/bid/94732Symantec VIP Access Desktop DLL Loading CVE-2016-6593 Local Code Execution Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94731

Cisco AsyncOS CVE-2016-6469 Remote Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94775

Cisco IOS and IOS XE Software CVE-2016-6474 Authentication Bypass Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94773

Cisco Web Security Appliance CVE-2016-9212 Remote Security Bypass Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94774

Cisco ASR 5000 Series Aggregation Services Routers CVE-2016-6467 Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94772

Cisco AnyConnect Secure Mobility Client CVE-2016-9192 Local Privilege Escalation Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94770

QEMU '/hw/display/virtio-gpu.c b/hw/display/virtio-gpu.c' Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94765
Cisco AsyncOS CVE-2016-6469 Remote Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94775

Cisco IOS and IOS XE Software CVE-2016-6474 Authentication Bypass Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94773

Cisco Web Security Appliance CVE-2016-9212 Remote Security Bypass Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94774

Cisco ASR 5000 Series Aggregation Services Routers CVE-2016-6467 Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94772

Cisco AnyConnect Secure Mobility Client CVE-2016-9192 Local Privilege Escalation Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94770

QEMU '/hw/display/virtio-gpu.c b/hw/display/virtio-gpu.c' Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94765

libming 'parser.c' Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94767

Apache CouchDB CVE-2016-8742 Local Privilege Escalation Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94766

QEMU 'ehci_init_transfer()' Function Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94762

QEMU 'hw/display/virtio-gpu.c' Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94760

QEMU '/hw/usb/redirect.c' Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94759

QEMU 'virtio-gpu-3d.c' Information Disclosure Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94761

QEMU '/hw/display/virtio-gpu-3d.c' Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94763

RETIRED: LibTIFF Multiple Security Vulnerabilites
2016-12-09
http://www.securityfocus.com/bid/94484

LibTIFF CVE-2016-9539 Memory Corruption Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94754

LibTIFF CVE-2016-9538 Integer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94753

LibTIFF CVE-2016-9534 Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94743

LibTIFF CVE-2016-9536 Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94745

LibTIFF CVE-2016-9535 Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94744

LibTIFF CVE-2016-9537 Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94746

FFmpeg CVE-2016-8595 Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94757

LibTIFF CVE-2016-9533 Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94742

LibTIFF CVE-2016-9540 Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94747

FFmpeg CVE-2016-9561 Denial of Service Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94756

ForeScout CounterACT SecureConnector Agent Multiple Insecure File Creation Vulnerabilities
2016-12-09
http://www.securityfocus.com/bid/94740

PwC ACE-ABAP CVE-2016-9832 Remote Code Execution Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94733

Libav Multiple Denial of Service Vulnerabilities
2016-12-09
http://www.securityfocus.com/bid/94732

SimpleSAMLphp CVE-2016-9814 Security Bypass Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94730

QEMU VirtFS Multiple Denial of Service Vulnerabilities
2016-12-09
http://www.securityfocus.com/bid/94729

Info-ZIP UnZip 'zipinfo.c' Heap Buffer Overflow Vulnerability
2016-12-09
http://www.securityfocus.com/bid/94728

SANS News

 

Threatpostpost

Yahoo Mail XSS Bug Worth Another $10K to Researcher

NYU Students Apply Blockchain Solution to Electronic Voting Security

Exploit

 

8.12.2016

Bugtraq

CVE-2013-1306: MSIE 9 MSHTML CDisp­Node::Insert­Sibling­Node use-after-free details 2016-12-08
Berend-Jan Wever (berendj nwever nl)

[security bulletin] HPSBHF03674 rev.1 HPE Comware 5 and Comware 7 Network Products using SSL/TLS, Remote Disclosure of Information 2016-12-07
security-alert hpe com

Microsoft Remote Desktop Client for Mac Remote Code Execution 2016-12-07
Filippo Cavallarin (filippo cavallarin wearesegment com)

[ESNC-2041217] Critical Security Vulnerability in PwC ACE Software for SAP Security 2016-12-07
ESNC Security (secure esnc de)

CVE-2015-1730: MSIE jscript9 Java­Script­Stack­Walker memory corruption details and PoC 2016-12-06
Berend-Jan Wever (berendj nwever nl)

Malware

W97M.Downloader.O

W97M.Downloader.N

Phishing

AOL

7th December 2016

Someone has now marked your
current profile page

AOL

7th December 2016

Gertrude78 has posted you a
buddy request

AOL

7th December 2016

Someone has recently tagged
your own account

AOL

7th December 2016

A woman has now marked your
current profile

AOL

7th December 2016

A girl has already tagged your
current profile

Wells Fargo Online Banking

7th December 2016

Wells Fargo Information
Updated

no-reply

7th December 2016

WE NEED YOUR HELP ASAP

service

7th December 2016

ACCOUNT NOTIFICATION

AOL

7th December 2016

Halle65 has placed a new
friend request

Vulnerebility

SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2016-12-08
http://www.securityfocus.com/bid/73684

OpenJPEG CVE-2016-9675 Incomplete Fix Multiple Remote Heap Based Buffer Overflow Vulnerabilities
2016-12-08
http://www.securityfocus.com/bid/94589

Apache Subversion CVE-2016-8734 XML External Entity Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94588

Emerson DeltaV CVE-2016-9345 Local Privilege Escalation Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94584

Multiple Emerson Products CVE-2016-9347 Security Bypass Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94586

Dell iDRAC7 and iDRAC8 Devices CVE-2016-5685 Code Injection Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94585

Emerson Liebert SiteScan CVE-2016-8348 XML External Entity Information Disclosure Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94587

Mozilla Firefox CVE-2016-5290 Multiple Unspecified Memory Corruption Vulnerabilities
2016-12-08
http://www.securityfocus.com/bid/94335

JasPer CVE-2016-8654 Multiple Remote Heap Buffer Overflow Vulnerabilities
2016-12-08
http://www.securityfocus.com/bid/94583

IBM FileNet Workplace XT CVE-2016-8921 Unspecified Arbitrary File Upload Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94582

Xen XSA-201 Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94581

Zurb Foundation tooltip Plugin 'foundation.tooltip.js' Cross Site Scripting Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94580

Neovim CVE-2016-1248 Command Execution Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94478

Multiple Micro Focus Products CVE-2016-5765 Directory Traversal Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94579

QEMU 'v9fs_link()' Function Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/93965

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/93962

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/93964

QEMU CVE-2016-8910 Infinite Loop Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/93844

QEMU CVE-2016-8578 Null Pointer Dereference Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/93474

QEMU 'hw/net/eepro100.c' Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/93957

QEMU 'hw/dma/rc4030.c' Divide By Zero Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/93567

QEMU CVE-2016-8909 Infinite Loop Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/93842

QEMU '/hw/char/serial.c' Divide By Zero Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/93563

QEMU 'hw/9pfs/9p.c' Integer Overflow Vulnerability
2016-12-08
http://www.securityfocus.com/bid/93956

QEMU 'hw/9pfs/9p.c' Information Disclosure Vulnerability
2016-12-08
http://www.securityfocus.com/bid/93955

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/93473

QEMU 'hw/usb/hcd-xhci.c' Infinite Loop Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/93469

QEMU CVE-2016-7170 Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/92904

QEMU 'hw/net/mcf_fec.c' Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/93273

QEMU Infinite Loop CVE-2016-7421 Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/92998
ForeScout CounterACT SecureConnector Agent Multiple Insecure File Creation Vulnerabilities
2016-12-08
http://www.securityfocus.com/bid/94740

PwC ACE-ABAP CVE-2016-9832 Remote Code Execution Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94733

Libav Multiple Denial of Service Vulnerabilities
2016-12-08
http://www.securityfocus.com/bid/94732

SimpleSAMLphp CVE-2016-9814 Security Bypass Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94730

QEMU VirtFS Multiple Denial of Service Vulnerabilities
2016-12-08
http://www.securityfocus.com/bid/94729

Info-ZIP UnZip 'zipinfo.c' Heap Buffer Overflow Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94728

ImageMagick 'coders/tiff.c' Remote Buffer Overflow Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94727

Xen XSA-201 Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94581

LibTIFF CVE-2015-8870 Integer Overflow Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94717

Mozilla Firefox Multiple Security Vulnerabilities
2016-12-08
http://www.securityfocus.com/bid/92258

Mozilla Firefox Multiple Security Vulnerabilities
2016-12-08
http://www.securityfocus.com/bid/92261

Google Nexus CVE-2016-8400 Information Disclosure Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94713

Google Android CVE-2016-8396 Information Disclosure Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94712

Google Nexus CVE-2016-8397 Information Disclosure Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94714

Google Android CVE-2016-8399 Remote Privilege Escalation Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94708

Google Nexus Qualcomm Sound Driver CVE-2016-8410 Information Disclosure Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94709

Google Android NVIDIA Camera Driver CVE-2016-8395 Local Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94710

Google Android Package Manager CVE-2016-6774 Information Disclosure Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94705

Google Android Telephony CVE-2016-6763 Denial of Service Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94711

Google Android Mediaserver CVE-2016-6773 Information Disclosure Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94707

Google Android Framework APIs CVE-2016-6770 Remote Privilege Escalation Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94702

Google Android Smart Lock CVE-2016-6769 Local Privilege Escalation Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94703

Google Android CVE-2016-6771 Remote Privilege Escalation Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94706

Google Android CVE-2016-6762 Remote Privilege Escalation Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94700

Google Android Framesequence Library CVE-2016-6768 Remote Code Execution Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94704

Google Android Wi-Fi CVE-2016-6772 Remote Privilege Escalation Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94701

Xen CVE-2016-9637 Privilege Escalation Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94699

Tesla Gateway ECU CVE-2016-9337 Command Injection Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94697

Multple Locus Energy LGate products Products CVE-2016-5782 Command Injection Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94698

Sungard eTRAKiT3 CVE-2016-6566 SQL Injection Vulnerability
2016-12-08
http://www.securityfocus.com/bid/94696

SANS News

Good Cop; Bad Cop; Domain Cop?

Threatpostpost

New Call to Regulate IoT Security By Design

OpenVPN to Undergo Cryptographic Audit

Researchers Question Security in AMD’s Upcoming Zen Chips

Buffer Overflow in BSD libc Library Patched
 

Buffer Overflow in BSD libc Library Patched

Solar Power Firm Patches Meters Vulnerable to Command Injection Attacks

Old Linux Kernel Code Execution Bug Patched

Exploit

Netgear R7000 - Command Injection

Windows x64 - Bind Shell TCP Shellcode (508 bytes)

7.12.2016

Bugtraq

[ESNC-2041217] Critical Security Vulnerability in PwC ACE Software for SAP Security 2016-12-07
ESNC Security (secure esnc de)

CVE-2015-1730: MSIE jscript9 Java­Script­Stack­Walker memory corruption details and PoC 2016-12-06
Berend-Jan Wever (berendj nwever nl)

Re: CVE-2016-3222: MS Edge CBaseScriptable::PrivateQueryInterface memory corruption 2016-12-06
Berend-Jan Wever (berendj nwever nl)

CVE-2016-8740, Server memory can be exhausted and service denied when HTTP/2 is used 2016-12-05
Eissing Stefan (stefan eissing gmail com)

Malware

Ransom.Goldeneye

Phishing

AOL

7th December 2016

Halle65 has placed a new
friend request

AOL

6th December 2016

A person seems to have marked
your own account

service

6th December 2016

ACCOUNT NOTIFICATION

Vulnerebility

Google Android CVE-2016-6771 Remote Privilege Escalation Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94706

Google Android CVE-2016-6762 Remote Privilege Escalation Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94700

Google Android Framesequence Library CVE-2016-6768 Remote Code Execution Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94704

Google Android Wi-Fi CVE-2016-6772 Remote Privilege Escalation Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94701

Xen CVE-2016-9637 Privilege Escalation Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94699

Tesla Gateway ECU CVE-2016-9337 Command Injection Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94697

Multple Locus Energy LGate products Products CVE-2016-5782 Command Injection Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94698

Sungard eTRAKiT3 CVE-2016-6566 SQL Injection Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94696

BSD libc CVE-2016-6559 Stack Buffer Overflow Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94694

Linux Kernel CVE-2016-2069 TLB Flush Local Security Bypass Vulnerability
2016-12-07
http://www.securityfocus.com/bid/81809

Fortinet FortiOS CVE-2016-7542 Local Information Disclosure Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94690

Linux Kernel CVE-2016-5195 Local Privilege Escalation Vulnerability
2016-12-07
http://www.securityfocus.com/bid/93793

Linux Kernel CVE-2016-8655 Local Race Condition Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94692

Google Nexus Qualcomm components Multiple Information Disclosure Vulnerabilities
2016-12-07
http://www.securityfocus.com/bid/94693

Linux Kernel CVE-2016-7042 Local Denial of Service Vulnerability
2016-12-07
http://www.securityfocus.com/bid/93544

Linux Kernel CVE-2016-6480 Local Information Disclosure Vulnerability
2016-12-07
http://www.securityfocus.com/bid/92214

Linux Kernel 'tcp_xmit_retransmit_queue()' Function Use After Free Denial of Service Vulnerability
2016-12-07
http://www.securityfocus.com/bid/92452

Broadcom Wifi Driver 'brcmf_cfg80211_start_ap()' Function Stack Buffer Overflow Vulnerability
2016-12-07
http://www.securityfocus.com/bid/93541

Linux Kernel Local Security Bypass Vulnerability
2016-12-07
http://www.securityfocus.com/bid/92659

Linux Kernel CVE-2016-6327 Null Pointer Deference Local Denial of Service Vulnerability
2016-12-07
http://www.securityfocus.com/bid/92549

Google Android Multiple Kernel Components Multiple Information Disclosure Vulnerabilites
2016-12-07
http://www.securityfocus.com/bid/93326

Linux Kernel SCSI arcmsr Driver CVE-2016-7425 Local Heap Buffer Overflow Vulnerability
2016-12-07
http://www.securityfocus.com/bid/93037

Linux Kernel 'Ack Challenge' Information Disclosure Vulnerability
2016-12-07
http://www.securityfocus.com/bid/91704

Linux Kernel CVE-2016-6130 Local Information Disclosure Vulnerability
2016-12-07
http://www.securityfocus.com/bid/91540

Linux Kernel NULL Pointer Dereference Local Denial of Service Vulnerability
2016-12-07
http://www.securityfocus.com/bid/61995

Google Android Qualcomm GPS Component CVE-2016-5341 Denial of Service Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94689

Google Nexus NVIDIA Video Driver Multiple Information Disclosure Vulnerabilities
2016-12-07
http://www.securityfocus.com/bid/94691

ARJ 'decode.c' Local Buffer Overflow Vulnerability
2016-12-07
http://www.securityfocus.com/bid/73413

ARJ CVE-2015-0556 Directory Traversal Vulnerability
2016-12-07
http://www.securityfocus.com/bid/71860

ARJ CVE-2015-0557 Directory Traversal Vulnerability
2016-12-07
http://www.securityfocus.com/bid/71895Sungard eTRAKiT3 CVE-2016-6566 SQL Injection Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94696

BSD libc CVE-2016-6559 Stack Buffer Overflow Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94694

Linux Kernel CVE-2016-2069 TLB Flush Local Security Bypass Vulnerability
2016-12-07
http://www.securityfocus.com/bid/81809

Fortinet FortiOS CVE-2016-7542 Local Information Disclosure Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94690

Linux Kernel CVE-2016-5195 Local Privilege Escalation Vulnerability
2016-12-07
http://www.securityfocus.com/bid/93793

Linux Kernel CVE-2016-8655 Local Race Condition Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94692

Google Nexus Qualcomm components Multiple Information Disclosure Vulnerabilities
2016-12-07
http://www.securityfocus.com/bid/94693

Linux Kernel CVE-2016-7042 Local Denial of Service Vulnerability
2016-12-07
http://www.securityfocus.com/bid/93544

Linux Kernel CVE-2016-6480 Local Information Disclosure Vulnerability
2016-12-07
http://www.securityfocus.com/bid/92214

Linux Kernel 'tcp_xmit_retransmit_queue()' Function Use After Free Denial of Service Vulnerability
2016-12-07
http://www.securityfocus.com/bid/92452

Broadcom Wifi Driver 'brcmf_cfg80211_start_ap()' Function Stack Buffer Overflow Vulnerability
2016-12-07
http://www.securityfocus.com/bid/93541

Linux Kernel Local Security Bypass Vulnerability
2016-12-07
http://www.securityfocus.com/bid/92659

Linux Kernel CVE-2016-6327 Null Pointer Deference Local Denial of Service Vulnerability
2016-12-07
http://www.securityfocus.com/bid/92549

Google Android Multiple Kernel Components Multiple Information Disclosure Vulnerabilites
2016-12-07
http://www.securityfocus.com/bid/93326

Linux Kernel SCSI arcmsr Driver CVE-2016-7425 Local Heap Buffer Overflow Vulnerability
2016-12-07
http://www.securityfocus.com/bid/93037

Linux Kernel 'Ack Challenge' Information Disclosure Vulnerability
2016-12-07
http://www.securityfocus.com/bid/91704

Linux Kernel CVE-2016-6130 Local Information Disclosure Vulnerability
2016-12-07
http://www.securityfocus.com/bid/91540

Linux Kernel NULL Pointer Dereference Local Denial of Service Vulnerability
2016-12-07
http://www.securityfocus.com/bid/61995

Google Android Qualcomm GPS Component CVE-2016-5341 Denial of Service Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94689

Google Nexus NVIDIA Video Driver Multiple Information Disclosure Vulnerabilities
2016-12-07
http://www.securityfocus.com/bid/94691

ARJ 'decode.c' Local Buffer Overflow Vulnerability
2016-12-07
http://www.securityfocus.com/bid/73413

ARJ CVE-2015-0556 Directory Traversal Vulnerability
2016-12-07
http://www.securityfocus.com/bid/71860

ARJ CVE-2015-0557 Directory Traversal Vulnerability
2016-12-07
http://www.securityfocus.com/bid/71895

blkid 'blkid.c' Local Command Injection Vulnerability
2016-12-07
http://www.securityfocus.com/bid/71327

Google Android Mediaserver Multiple Denial of Service Vulnerabilities
2016-12-07
http://www.securityfocus.com/bid/94688

Google Android Kernel Components Multiple Information Disclosure Vulnerabilites
2016-12-07
http://www.securityfocus.com/bid/94686

Google Android MediaTek I2C Driver CVE-2016-6788 Privilege Escalation Vulnerability
2016-12-07
http://www.securityfocus.com/bid/94687

Google Android Broadcom Wi-Fi Driver Multiple Privilege Escalation Vulnerabilities
2016-12-07
http://www.securityfocus.com/bid/94685

Google Nexus Qualcomm Component CVE-2016-8411 Multiple Privilege Escalation Vulnerabilities
2016-12-07
http://www.securityfocus.com/bid/94684

Google Android MediaTek Drivers Multiple Privilege Escalation Vulnerabilities
2016-12-07
http://www.securityfocus.com/bid/94683

SANS News

Attacking NoSQL applications

The Passwords You Should Never Use

Threatpostpost

DailyMotion Hack Leaks Emails, Passwords of 87M Users

Flash Exploit Found in Seven Exploit Kits

Hackers Gamify DDoS Attacks With Collaborative Platform

Critical Vulnerability Patched in Roundcube Webmail

Exploit

TP-LINK TD-W8951ND - Denial of Service

OpenSSH 7.2 - Denial of Service

Cisco Unified Communications Manager 7/8/9 - Directory Traversal

Windows 10 x86/x64 WLAN AutoConfig - Denial of Service (POC)

Microsoft Edge - CBase­Scriptable::Private­Query­Interface Memory Corruption (M...

Microsoft Internet Explorer jscript9 - Java­Script­Stack­Walker Memory Corruption (M...

Dual DHCP DNS Server 7.29 - Denial of Service

6.12.2016

Bugtraq

Re: CVE-2016-3222: MS Edge CBaseScriptable::PrivateQueryInterface memory corruption 2016-12-06
Berend-Jan Wever (berendj nwever nl)

CVE-2016-8740, Server memory can be exhausted and service denied when HTTP/2 is used 2016-12-05
Eissing Stefan (stefan eissing gmail com)

Microsoft MSINFO32.EXE ".NFO" Files XML External Entity 2016-12-04
apparitionsec gmail com/hyp3rlinx

Microsoft Windows Media Center "ehshell.exe" XML External Entity 2016-12-04
apparitionsec gmail com/hyp3rlinx

[slackware-security] mozilla-firefox (SSA:2016-336-01) 2016-12-01
Slackware Security Team (security slackware com)

Malware

SoftwareBundler:Win32/Prepscram.B 
SoftwareBundler:Win32/Prepscram.C 
PUA:Win32/Prepscram 
SoftwareBundler:Win32/Prepscram.A 
SoftwareBundler:Win32/Prepscram!rfn 

Phishing

PAYPAL_SUPPORT

6th December 2016

Confirm your account

Vulnerebility

BSD libc CVE-2016-6559 Stack Buffer Overflow Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94694

Linux Kernel CVE-2016-2069 TLB Flush Local Security Bypass Vulnerability
2016-12-06
http://www.securityfocus.com/bid/81809

Fortinet FortiOS CVE-2016-7542 Local Information Disclosure Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94690

Linux Kernel CVE-2016-5195 Local Privilege Escalation Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93793

Linux Kernel CVE-2016-8655 Local Race Condition Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94692

Google Nexus Qualcomm components Multiple Information Disclosure Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94693

Linux Kernel CVE-2016-7042 Local Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93544

Linux Kernel CVE-2016-6480 Local Information Disclosure Vulnerability
2016-12-06
http://www.securityfocus.com/bid/92214

Linux Kernel 'tcp_xmit_retransmit_queue()' Function Use After Free Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/92452

Broadcom Wifi Driver 'brcmf_cfg80211_start_ap()' Function Stack Buffer Overflow Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93541

Linux Kernel Local Security Bypass Vulnerability
2016-12-06
http://www.securityfocus.com/bid/92659

Linux Kernel CVE-2016-6327 Null Pointer Deference Local Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/92549

Google Android Multiple Kernel Components Multiple Information Disclosure Vulnerabilites
2016-12-06
http://www.securityfocus.com/bid/93326

Linux Kernel SCSI arcmsr Driver CVE-2016-7425 Local Heap Buffer Overflow Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93037

Linux Kernel 'Ack Challenge' Information Disclosure Vulnerability
2016-12-06
http://www.securityfocus.com/bid/91704

Linux Kernel CVE-2016-6130 Local Information Disclosure Vulnerability
2016-12-06
http://www.securityfocus.com/bid/91540

Linux Kernel NULL Pointer Dereference Local Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/61995

Google Android Qualcomm GPS Component CVE-2016-5341 Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94689

Google Nexus NVIDIA Video Driver Multiple Information Disclosure Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94691

ARJ 'decode.c' Local Buffer Overflow Vulnerability
2016-12-06
http://www.securityfocus.com/bid/73413

ARJ CVE-2015-0556 Directory Traversal Vulnerability
2016-12-06
http://www.securityfocus.com/bid/71860

ARJ CVE-2015-0557 Directory Traversal Vulnerability
2016-12-06
http://www.securityfocus.com/bid/71895

blkid 'blkid.c' Local Command Injection Vulnerability
2016-12-06
http://www.securityfocus.com/bid/71327

Google Android Mediaserver Multiple Denial of Service Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94688

Google Android Kernel Components Multiple Information Disclosure Vulnerabilites
2016-12-06
http://www.securityfocus.com/bid/94686

Google Android MediaTek I2C Driver CVE-2016-6788 Privilege Escalation Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94687

Google Android Broadcom Wi-Fi Driver Multiple Privilege Escalation Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94685

Google Nexus Qualcomm Component CVE-2016-8411 Multiple Privilege Escalation Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94684

Google Android MediaTek Drivers Multiple Privilege Escalation Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94683

Google Android Synaptics Touchscreen Driver Multiple Privilege Escalation Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94682Google Nexus NVIDIA Video Driver Multiple Local Privilege Escalation Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94667

Joomla! Core CVE-2016-9836 Arbitrary File Upload Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94663

McAfee Application Control and Endpoint Security CVE-2016-8010 Local Security Bypass Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94661

NetApp Plug-in for Symantec NetBackup CVE-2016-7171 Security Bypass Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94659

SPIP CVE-2016-9152 Cross Site Scripting Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94658

Mozilla Firefox CVE-2016-5290 Multiple Unspecified Memory Corruption Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94335

Mozilla Firefox CVE-2016-9065 Location Bar Spoofing Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94342

Mozilla Network Security Services CVE-2016-9074 Multiple Security Bypass Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94341

Mozilla Firefox Multiple Security Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94336

Mozilla Firefox CVE-2016-9078 URL Redirection Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94569

Mozilla Firefox CVE-2016-5296 Heap Buffer Overflow Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94339

Mozilla Firefox CVE-2016-9079 Use After Free Remote Code Execution Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94591

Mozilla Firefox Multiple Security Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94337

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93643

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93636

Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93637

Oracle Java SE CVE-2016-5568 Use-After-Free Remote Code Execution Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93621

Oracle Java SE CVE-2016-5556 Remote Security Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93618

Apache Struts CVE-2016-8738 Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94657

IBM Cloud Orchestrator CVE-2016-0206 Local Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94656

OpenAFS Directory Information Disclosure Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94651

Linux Kernel 'sound/core/pcm_lib.c' Local Use After Free Memory Corruption Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94654

Debian Tomcat Package Multiple Local Privilege Escalation Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94643

Linux Kernel 'lapic.c' Local Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94640

QEMU '/hw/net/mcf_fec.c' Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94638

Linux Kernel CVE-2016-9806 Local Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94653

Linux Kernel 'net/core/sock.c' Multiple Local Memory Corruption Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94655

OpenSSL CVE-2016-2180 Local Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/92117

OpenSSL CVE-2016-2179 Multiple Denial of Service Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/92987NetApp Plug-in for Symantec NetBackup CVE-2016-7171 Security Bypass Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94659

SPIP CVE-2016-9152 Cross Site Scripting Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94658

Mozilla Firefox CVE-2016-5290 Multiple Unspecified Memory Corruption Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94335

Mozilla Firefox CVE-2016-9065 Location Bar Spoofing Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94342

Mozilla Network Security Services CVE-2016-9074 Multiple Security Bypass Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94341

Mozilla Firefox Multiple Security Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94336

Mozilla Firefox CVE-2016-9078 URL Redirection Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94569

Mozilla Firefox CVE-2016-5296 Heap Buffer Overflow Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94339

Mozilla Firefox CVE-2016-9079 Use After Free Remote Code Execution Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94591

Mozilla Firefox Multiple Security Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94337

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93643

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93636

Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93637

Oracle Java SE CVE-2016-5568 Use-After-Free Remote Code Execution Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93621

Oracle Java SE CVE-2016-5556 Remote Security Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93618

Apache Struts CVE-2016-8738 Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94657

IBM Cloud Orchestrator CVE-2016-0206 Local Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94656

OpenAFS Directory Information Disclosure Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94651

Linux Kernel 'sound/core/pcm_lib.c' Local Use After Free Memory Corruption Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94654

Debian Tomcat Package Multiple Local Privilege Escalation Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94643

Linux Kernel 'lapic.c' Local Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94640

QEMU '/hw/net/mcf_fec.c' Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94638

Linux Kernel CVE-2016-9806 Local Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/94653

Linux Kernel 'net/core/sock.c' Multiple Local Memory Corruption Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94655

OpenSSL CVE-2016-2180 Local Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/92117

OpenSSL CVE-2016-2179 Multiple Denial of Service Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/92987

OpenSSL CVE-2016-6309 Remote Code Execution Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93177

BlueZ Buffer Overflow and Denial of Service Vulnerabilities
2016-12-06
http://www.securityfocus.com/bid/94652

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2016-12-06
http://www.securityfocus.com/bid/93153

SANS News

 

Threatpostpost

Dirty Cow Vulnerability Patched in Android Security Bulletin

Exploit

Android - IOMXNodeInstance::enableNativeBuffers Unchecked Index

Microsoft Edge - CMarkup::Ensure­Delete­CFState Use-After-Free (MS15-125)

Microsoft Internet Explorer 9 - CDoc::Execute­Script­Uri Use-After-Free (MS13-009)

Microsoft Edge - CBase­Scriptable::Private­Query­Interface Memory Corruption (M...

Microsoft PowerShell - XML External Entity Injection

Microsoft Internet Explorer jscript9 - Java­Script­Stack­Walker Memory Corruption (M...

Android - Inter-Process munmap with User-Controlled Size in android.graphics.Bitmap

DiskBoss Enterprise 7.4.28 - 'GET' Buffer Overflow

Dup Scout Enterprise 9.1.14 - Buffer Overflow (SEH)

Shuttle Tech ADSL Wireless 920 WM - Multiple Vulnerabilities

Wordpress Plugin Single Personal Message 1.0.3 - SQL Injection

Apache CouchDB 2.0.0 - Local Privilege Escalation

Microsoft MSINFO32.EXE 6.1.7601 - '.NFO' XML External Entity Injection

Microsoft Event Viewer 1.0 - XML External Entity Injection

NetCat 0.7.1 - Denial of Service

5.12.2016

Bugtraq

CVE-2016-8740, Server memory can be exhausted and service denied when HTTP/2 is used 2016-12-05
Eissing Stefan (stefan eissing gmail com)

Microsoft MSINFO32.EXE ".NFO" Files XML External Entity 2016-12-04
apparitionsec gmail com/hyp3rlinx

Microsoft Windows Media Center "ehshell.exe" XML External Entity 2016-12-04
apparitionsec gmail com/hyp3rlinx

[slackware-security] mozilla-firefox (SSA:2016-336-01) 2016-12-01
Slackware Security Team (security slackware com)

Malware

Exploit:SWF/Dlcypt.A

SoftwareBundler:Win32/Bervisec
BrowserModifier:Win32/Riccietex

Phishing

Support Team

4th December 2016

Account Notification !

USAA

3rd December 2016

USAA ONLINE NEW MESSAGE FOR
YOUR VIEW

Vulnerebility

IBM AIX CVE-2016-0266 Information Disclosure Vulnerability
2016-12-05
http://www.securityfocus.com/bid/92150

Buffalo WNC01WH JVN#40613060 Multiple Security Vulnerabilities
2016-12-05
http://www.securityfocus.com/bid/94648

Linux Kernel 'kvm/emulate.c' Information Disclosure Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94615

Adobe Flash Player and AIR (CVE-2010-2216) Unspecified Memory Corruption Vulnerability
2016-12-05
http://www.securityfocus.com/bid/42362

Adobe Flash Player and AIR (CVE-2010-2213) Multiple Unspecified Memory Corruption Vulnerabilities
2016-12-05
http://www.securityfocus.com/bid/42364

Adobe Flash Player and AIR (CVE-2010-2214) Unspecified Memory Corruption Vulnerability
2016-12-05
http://www.securityfocus.com/bid/42358

Adobe Flash Player and AIR (CVE-2010-2215) Unspecified Clickjacking Vulnerability
2016-12-05
http://www.securityfocus.com/bid/42361

Adobe Flash Player and AIR (CVE-2010-2188) ActionScript Memory Corruption Vulnerability
2016-12-05
http://www.securityfocus.com/bid/40798

Adobe Flash Player and AIR ActionScript AVM1 ActionPush Memory Corruption Vulnerability
2016-12-05
http://www.securityfocus.com/bid/42363

Linux Kernel CVE-2016-9755 Out of Bounds Write Security Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94626

Linux Kernel Multiple Local Memory Corruption Vulnerabilities
2016-12-05
http://www.securityfocus.com/bid/91451

Linux Kernel CVE-2016-5195 Local Privilege Escalation Vulnerability
2016-12-05
http://www.securityfocus.com/bid/93793

Google Chrome Prior to 50.0.2661.102 Multiple Security Vulnerabilities
2016-12-05
http://www.securityfocus.com/bid/90584

IBM BigFix Remote Control CVE-2016-2937 Information Disclosure Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94646

IBM BigFix Remote Control CVE-2016-2936 Information Disclosure Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94645

IBM WebSphere Message Broker CVE-2016-6080 Information Disclosure Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94641

IBM Integration Bus CVE-2016-8918 Security Bypass Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94644

Dell SonicWALL Universal Management Suite SQL Injection Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94642

Mozilla Firefox CVE-2016-9079 Use After Free Remote Code Execution Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94591

Debian Tomcat Package Multiple Local Privilege Escalation Vulnerabilities
2016-12-05
http://www.securityfocus.com/bid/94643

DavFS2 'system()' Function Local Privilege Escalation Vulnerability
2016-12-05
http://www.securityfocus.com/bid/62445

QEMU '/hw/net/mcf_fec.c' Denial of Service Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94638

Linux Kernel 'lapic.c' Local Denial of Service Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94640

Dovecot Auth Component CVE-2016-8652 Denial of Service Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94639

IBM UrbanCode Deploy CVE-2016-2994 Cross Site Scripting Vulnerability
2016-12-05
http://www.securityfocus.com/bid/92870

Piwigo 'search_rules.php' Cross Site Scripting Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94637

Red Hat Ceph CVE-2016-8626 Remote Denial of Service Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94488

Arista CloudVision Portal CVE-2016-9012 Security Bypass Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94635

RETIRED: Adobe Flash Player 10.0.45.2 and AIR 1.5.3.9130 Multiple Remote Vulnerabilities
2016-12-05
http://www.securityfocus.com/bid/40759

libming 'read.c' Null Pointer Dereference Denial of Service Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94627IBM BigFix Remote Control CVE-2016-2937 Information Disclosure Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94646

IBM BigFix Remote Control CVE-2016-2936 Information Disclosure Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94645

IBM WebSphere Message Broker CVE-2016-6080 Information Disclosure Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94641

IBM Integration Bus CVE-2016-8918 Security Bypass Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94644

Dell SonicWALL Universal Management Suite SQL Injection Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94642

Mozilla Firefox CVE-2016-9079 Use After Free Remote Code Execution Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94591

Debian Tomcat Package Multiple Local Privilege Escalation Vulnerabilities
2016-12-05
http://www.securityfocus.com/bid/94643

DavFS2 'system()' Function Local Privilege Escalation Vulnerability
2016-12-05
http://www.securityfocus.com/bid/62445

QEMU '/hw/net/mcf_fec.c' Denial of Service Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94638

Linux Kernel 'lapic.c' Local Denial of Service Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94640

Dovecot Auth Component CVE-2016-8652 Denial of Service Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94639

IBM UrbanCode Deploy CVE-2016-2994 Cross Site Scripting Vulnerability
2016-12-05
http://www.securityfocus.com/bid/92870

Piwigo 'search_rules.php' Cross Site Scripting Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94637

Red Hat Ceph CVE-2016-8626 Remote Denial of Service Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94488

Arista CloudVision Portal CVE-2016-9012 Security Bypass Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94635

Adobe Flash Player and AIR (CVE-2010-2216) Unspecified Memory Corruption Vulnerability
2016-12-05
http://www.securityfocus.com/bid/42362

Adobe Flash Player and AIR ActionScript AVM1 ActionPush Memory Corruption Vulnerability
2016-12-05
http://www.securityfocus.com/bid/42363

RETIRED: Adobe Flash Player 10.0.45.2 and AIR 1.5.3.9130 Multiple Remote Vulnerabilities
2016-12-05
http://www.securityfocus.com/bid/40759

Adobe Flash Player and AIR (CVE-2010-2214) Unspecified Memory Corruption Vulnerability
2016-12-05
http://www.securityfocus.com/bid/42358

Adobe Flash Player and AIR (CVE-2010-2215) Unspecified Clickjacking Vulnerability
2016-12-05
http://www.securityfocus.com/bid/42361

Adobe Flash Player and AIR (CVE-2010-2188) ActionScript Memory Corruption Vulnerability
2016-12-05
http://www.securityfocus.com/bid/40798

Adobe Flash Player and AIR (CVE-2010-2213) Multiple Unspecified Memory Corruption Vulnerabilities
2016-12-05
http://www.securityfocus.com/bid/42364

libming 'read.c' Null Pointer Dereference Denial of Service Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94627

GnuPG and Libgcrypt CVE-2016-6313 Local Predictable Random Number Generator Weakness
2016-12-05
http://www.securityfocus.com/bid/92527

Microsoft Windows UAC Protection Security Bypass Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94634

Siemens SICAM PAS Multiple Security Vulnerabilities
2016-12-05
http://www.securityfocus.com/bid/94549

Siemens SICAM PAS Products CVE-2016-8566 Local Security Bypass Vulnerability
2016-12-05
http://www.securityfocus.com/bid/94552

Google Chrome Prior to 55.0.2883.75 Multiple Security Vulnerabilities
2016-12-05
http://www.securityfocus.com/bid/94633

Multiple Moxa NPort Products ICSA-16-336-02 Multiple Security Vulnerabilities
2016-12-05
http://www.securityfocus.com/bid/85965

Smiths-Medical CADD-Solis Medication Safety Software Multiple Security Bypass Vulnerabilities
2016-12-05
http://www.securityfocus.com/bid/94630

SANS News

Hancitor Maldoc Videos

Threatpostpost

EFF Blasts DEA in Ongoing Secret ‘Super Search Engine’ Lawsuit


New Large-Scale DDoS Attacks Follow Schedule

Exploit

Microsoft Event Viewer 1.0 - XML External Entity Injection

Microsoft MSINFO32.EXE 6.1.7601 - '.NFO' XML External Entity Injection

Microsoft Windows Media Center 6.1.7600 - 'ehshell.exe' XML External Entity...

Microsoft Excel Starter 2010 - XML External Entity Injection

Microsoft Authorization Manager 6.1.7601 - 'azman' XML External Entity Injection

Alcatel Lucent Omnivista 8770 - Remote Code Execution

BlackStratus LOGStorm 4.5.1.35/4.5.1.96 - Remote Code Execution

Apache CouchDB 2.0.0 - Local Privilege Escalation

NetCat 0.7.1 - Denial of Service

DiskBoss Enterprise 7.4.28 - 'GET' Buffer Overflow

Dup Scout Enterprise 9.1.14 - Buffer Overflow (SEH)

Shuttle Tech ADSL Wireless 920 WM - Multiple Vulnerabilities

4.12.2016

Bugtraq

[slackware-security] mozilla-firefox (SSA:2016-336-01) 2016-12-01
Slackware Security Team (security slackware com)

[security bulletin] HPSBUX03665 rev.3 - HP-UX Tomcat-based Servlet Engine, Remote Denial of Service (DoS), URL Redirection 2016-11-30
security-alert hpe com

Malware

 

Phishing

WellsfargoOnline

3rd December 2016

Wells Fargo Online

Capital One

2nd December 2016

Capital One Re-Validate
Account for Your Security

Vulnerebility

IBM BigFix Remote Control CVE-2016-2937 Information Disclosure Vulnerability
2016-12-04
http://www.securityfocus.com/bid/94646

IBM BigFix Remote Control CVE-2016-2936 Information Disclosure Vulnerability
2016-12-04
http://www.securityfocus.com/bid/94645

IBM WebSphere Message Broker CVE-2016-6080 Information Disclosure Vulnerability
2016-12-04
http://www.securityfocus.com/bid/94641

IBM Integration Bus CVE-2016-8918 Security Bypass Vulnerability
2016-12-04
http://www.securityfocus.com/bid/94644

Dell SonicWALL Universal Management Suite SQL Injection Vulnerability
2016-12-04
http://www.securityfocus.com/bid/94642

Mozilla Firefox CVE-2016-9079 Use After Free Remote Code Execution Vulnerability
2016-12-04
http://www.securityfocus.com/bid/94591

Debian Tomcat Package Multiple Local Privilege Escalation Vulnerabilities
2016-12-04
http://www.securityfocus.com/bid/94643

DavFS2 'system()' Function Local Privilege Escalation Vulnerability
2016-12-04
http://www.securityfocus.com/bid/62445

QEMU '/hw/net/mcf_fec.c' Denial of Service Vulnerability
2016-12-04
http://www.securityfocus.com/bid/94638

Linux Kernel 'lapic.c' Local Denial of Service Vulnerability
2016-12-04
http://www.securityfocus.com/bid/94640

Dovecot Auth Component CVE-2016-8652 Denial of Service Vulnerability
2016-12-04
http://www.securityfocus.com/bid/94639

IBM UrbanCode Deploy CVE-2016-2994 Cross Site Scripting Vulnerability
2016-12-04
http://www.securityfocus.com/bid/92870

Piwigo 'search_rules.php' Cross Site Scripting Vulnerability
2016-12-04
http://www.securityfocus.com/bid/94637

Red Hat Ceph CVE-2016-8626 Remote Denial of Service Vulnerability
2016-12-04
http://www.securityfocus.com/bid/94488

Arista CloudVision Portal CVE-2016-9012 Security Bypass Vulnerability
2016-12-04
http://www.securityfocus.com/bid/94635

Adobe Flash Player and AIR (CVE-2010-2216) Unspecified Memory Corruption Vulnerability
2016-12-04
http://www.securityfocus.com/bid/42362

Adobe Flash Player and AIR ActionScript AVM1 ActionPush Memory Corruption Vulnerability
2016-12-04
http://www.securityfocus.com/bid/42363

RETIRED: Adobe Flash Player 10.0.45.2 and AIR 1.5.3.9130 Multiple Remote Vulnerabilities
2016-12-04
http://www.securityfocus.com/bid/40759

Adobe Flash Player and AIR (CVE-2010-2214) Unspecified Memory Corruption Vulnerability
2016-12-04
http://www.securityfocus.com/bid/42358

Adobe Flash Player and AIR (CVE-2010-2215) Unspecified Clickjacking Vulnerability
2016-12-04
http://www.securityfocus.com/bid/42361

Adobe Flash Player and AIR (CVE-2010-2188) ActionScript Memory Corruption Vulnerability
2016-12-04
http://www.securityfocus.com/bid/40798

Adobe Flash Player and AIR (CVE-2010-2213) Multiple Unspecified Memory Corruption Vulnerabilities
2016-12-04
http://www.securityfocus.com/bid/42364

libming 'read.c' Null Pointer Dereference Denial of Service Vulnerability
2016-12-04
http://www.securityfocus.com/bid/94627

GnuPG and Libgcrypt CVE-2016-6313 Local Predictable Random Number Generator Weakness
2016-12-04
http://www.securityfocus.com/bid/92527

Microsoft Windows UAC Protection Security Bypass Vulnerability
2016-12-04
http://www.securityfocus.com/bid/94634

Siemens SICAM PAS Multiple Security Vulnerabilities
2016-12-04
http://www.securityfocus.com/bid/94549

Siemens SICAM PAS Products CVE-2016-8566 Local Security Bypass Vulnerability
2016-12-04
http://www.securityfocus.com/bid/94552

Google Chrome Prior to 55.0.2883.75 Multiple Security Vulnerabilities
2016-12-04
http://www.securityfocus.com/bid/94633

Multiple Moxa NPort Products ICSA-16-336-02 Multiple Security Vulnerabilities
2016-12-04
http://www.securityfocus.com/bid/85965

Smiths-Medical CADD-Solis Medication Safety Software Multiple Security Bypass Vulnerabilities
2016-12-04
http://www.securityfocus.com/bid/94630
IBM BigFix Remote Control CVE-2016-2937 Information Disclosure Vulnerability
2016-12-03
http://www.securityfocus.com/bid/94646

IBM BigFix Remote Control CVE-2016-2936 Information Disclosure Vulnerability
2016-12-03
http://www.securityfocus.com/bid/94645

IBM WebSphere Message Broker CVE-2016-6080 Information Disclosure Vulnerability
2016-12-03
http://www.securityfocus.com/bid/94641

IBM Integration Bus CVE-2016-8918 Security Bypass Vulnerability
2016-12-03
http://www.securityfocus.com/bid/94644

Dell SonicWALL Universal Management Suite SQL Injection Vulnerability
2016-12-03
http://www.securityfocus.com/bid/94642

Mozilla Firefox CVE-2016-9079 Use After Free Remote Code Execution Vulnerability
2016-12-03
http://www.securityfocus.com/bid/94591

Debian Tomcat Package Multiple Local Privilege Escalation Vulnerabilities
2016-12-03
http://www.securityfocus.com/bid/94643

DavFS2 'system()' Function Local Privilege Escalation Vulnerability
2016-12-03
http://www.securityfocus.com/bid/62445

QEMU '/hw/net/mcf_fec.c' Denial of Service Vulnerability
2016-12-03
http://www.securityfocus.com/bid/94638

Linux Kernel 'lapic.c' Local Denial of Service Vulnerability
2016-12-03
http://www.securityfocus.com/bid/94640

Dovecot Auth Component CVE-2016-8652 Denial of Service Vulnerability
2016-12-03
http://www.securityfocus.com/bid/94639

IBM UrbanCode Deploy CVE-2016-2994 Cross Site Scripting Vulnerability
2016-12-03
http://www.securityfocus.com/bid/92870

Piwigo 'search_rules.php' Cross Site Scripting Vulnerability
2016-12-03
http://www.securityfocus.com/bid/94637

Red Hat Ceph CVE-2016-8626 Remote Denial of Service Vulnerability
2016-12-03
http://www.securityfocus.com/bid/94488

Arista CloudVision Portal CVE-2016-9012 Security Bypass Vulnerability
2016-12-03
http://www.securityfocus.com/bid/94635

Adobe Flash Player and AIR (CVE-2010-2216) Unspecified Memory Corruption Vulnerability
2016-12-03
http://www.securityfocus.com/bid/42362

Adobe Flash Player and AIR ActionScript AVM1 ActionPush Memory Corruption Vulnerability
2016-12-03
http://www.securityfocus.com/bid/42363

RETIRED: Adobe Flash Player 10.0.45.2 and AIR 1.5.3.9130 Multiple Remote Vulnerabilities
2016-12-03
http://www.securityfocus.com/bid/40759

Adobe Flash Player and AIR (CVE-2010-2214) Unspecified Memory Corruption Vulnerability
2016-12-03
http://www.securityfocus.com/bid/42358

Adobe Flash Player and AIR (CVE-2010-2215) Unspecified Clickjacking Vulnerability
2016-12-03
http://www.securityfocus.com/bid/42361

Adobe Flash Player and AIR (CVE-2010-2188) ActionScript Memory Corruption Vulnerability
2016-12-03
http://www.securityfocus.com/bid/40798

Adobe Flash Player and AIR (CVE-2010-2213) Multiple Unspecified Memory Corruption Vulnerabilities
2016-12-03
http://www.securityfocus.com/bid/42364

libming 'read.c' Null Pointer Dereference Denial of Service Vulnerability
2016-12-03
http://www.securityfocus.com/bid/94627

GnuPG and Libgcrypt CVE-2016-6313 Local Predictable Random Number Generator Weakness
2016-12-03
http://www.securityfocus.com/bid/92527

Microsoft Windows UAC Protection Security Bypass Vulnerability
2016-12-03
http://www.securityfocus.com/bid/94634

Siemens SICAM PAS Multiple Security Vulnerabilities
2016-12-03
http://www.securityfocus.com/bid/94549

Siemens SICAM PAS Products CVE-2016-8566 Local Security Bypass Vulnerability
2016-12-03
http://www.securityfocus.com/bid/94552

Google Chrome Prior to 55.0.2883.75 Multiple Security Vulnerabilities
2016-12-03
http://www.securityfocus.com/bid/94633

Multiple Moxa NPort Products ICSA-16-336-02 Multiple Security Vulnerabilities
2016-12-03
http://www.securityfocus.com/bid/85965

Smiths-Medical CADD-Solis Medication Safety Software Multiple Security Bypass Vulnerabilities
2016-12-03
http://www.securityfocus.com/bid/94630

SANS News

 

Threatpostpost

Google Fixes 12 High-Severity Flaws In Chrome Browser

Exploit

Apache ActiveMQ 5.11.1/5.13.2 - Directory Traversal / Command Execution

Xfinity Gateway - Remote Code Execution

2.12.2016

Bugtraq

[slackware-security] mozilla-firefox (SSA:2016-336-01) 2016-12-01
Slackware Security Team (security slackware com)

[security bulletin] HPSBUX03665 rev.3 - HP-UX Tomcat-based Servlet Engine, Remote Denial of Service (DoS), URL Redirection 2016-11-30
security-alert hpe com

Malware

Exploit:SWF/Netis.C 
SoftwareBundler:Win32/Bervisec 
BrowserModifier:Win32/Riccietex 
SoftwareBundler:Win32/Dlhelper 

Linux.Horsepill

Phishing

Apple Store Service

1st December 2016

Apple Client Support (Ticket
Ref#:32951)

APPSTORE LD

1st December 2016

Renewal required

Vulnerebility

Adobe Flash Player and AIR (CVE-2010-2216) Unspecified Memory Corruption Vulnerability
2016-12-02
http://www.securityfocus.com/bid/42362

Adobe Flash Player and AIR ActionScript AVM1 ActionPush Memory Corruption Vulnerability
2016-12-02
http://www.securityfocus.com/bid/42363

RETIRED: Adobe Flash Player 10.0.45.2 and AIR 1.5.3.9130 Multiple Remote Vulnerabilities
2016-12-02
http://www.securityfocus.com/bid/40759

Adobe Flash Player and AIR (CVE-2010-2214) Unspecified Memory Corruption Vulnerability
2016-12-02
http://www.securityfocus.com/bid/42358

Adobe Flash Player and AIR (CVE-2010-2215) Unspecified Clickjacking Vulnerability
2016-12-02
http://www.securityfocus.com/bid/42361

Adobe Flash Player and AIR (CVE-2010-2188) ActionScript Memory Corruption Vulnerability
2016-12-02
http://www.securityfocus.com/bid/40798

Adobe Flash Player and AIR (CVE-2010-2213) Multiple Unspecified Memory Corruption Vulnerabilities
2016-12-02
http://www.securityfocus.com/bid/42364

libming 'read.c' Null Pointer Dereference Denial of Service Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94627

GnuPG and Libgcrypt CVE-2016-6313 Local Predictable Random Number Generator Weakness
2016-12-02
http://www.securityfocus.com/bid/92527

Siemens SICAM PAS Multiple Security Vulnerabilities
2016-12-02
http://www.securityfocus.com/bid/94549

Siemens SICAM PAS Products CVE-2016-8566 Local Security Bypass Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94552

Google Chrome Prior to 55.0.2883.75 Multiple Security Vulnerabilities
2016-12-02
http://www.securityfocus.com/bid/94633

Multiple Moxa NPort Products ICSA-16-336-02 Multiple Security Vulnerabilities
2016-12-02
http://www.securityfocus.com/bid/85965

Smiths-Medical CADD-Solis Medication Safety Software Multiple Security Bypass Vulnerabilities
2016-12-02
http://www.securityfocus.com/bid/94630

Multiple Mitsubishi Electric MELSEC-Q Series Security Bypass and Denial of Service Vulnerabilities
2016-12-02
http://www.securityfocus.com/bid/94632

Advantech SUSIAccess Server CVE-2016-9353 Local Privilege Escalation Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94631

Advantech SUSIAccess Server Directory Traversal and Information Disclosure Vulnerabilities
2016-12-02
http://www.securityfocus.com/bid/94629

GraphicsMagick 'memory.c' Denial of Service Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94625

Serendipity CVE-2016-9752 SSRF Security Bypass Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94622

Linux Kernel 'IPv6 Implementation' Local Integer Overflow Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94626

IBM BigFix Remote Control CVE-2016-2944 Information Disclosure Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94623

Linux Kernel CVE-2016-9644 Local Privilege Escalation Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94545

Linux Kernel Local Security Bypass Vulnerability
2016-12-02
http://www.securityfocus.com/bid/92659

Linux Kernel SCSI arcmsr Driver CVE-2016-7425 Local Heap Buffer Overflow Vulnerability
2016-12-02
http://www.securityfocus.com/bid/93037

IBM BigFix Remote Control CVE-2016-2948 Local Information Disclosure Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94619

Broadcom Wifi Driver 'brcmf_cfg80211_start_ap()' Function Stack Buffer Overflow Vulnerability
2016-12-02
http://www.securityfocus.com/bid/93541

Mozilla Firefox CVE-2016-5290 Multiple Unspecified Memory Corruption Vulnerabilities
2016-12-02
http://www.securityfocus.com/bid/94335

IBM BigFix Remote Control CVE-2016-2940 Multiple Information Disclosure Vulnerabilites
2016-12-02
http://www.securityfocus.com/bid/94621

Mozilla Firefox CVE-2016-9079 Use After Free Remote Code Execution Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94591

Huawei FusionAccess CVE-2016-8779 Command Injection Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94620Smiths-Medical CADD-Solis Medication Safety Software Multiple Security Bypass Vulnerabilities
2016-12-02
http://www.securityfocus.com/bid/94630

Multiple Mitsubishi Electric MELSEC-Q Series Security Bypass and Denial of Service Vulnerabilities
2016-12-02
http://www.securityfocus.com/bid/94632

Advantech SUSIAccess Server CVE-2016-9353 Local Privilege Escalation Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94631

Advantech SUSIAccess Server Directory Traversal and Information Disclosure Vulnerabilities
2016-12-02
http://www.securityfocus.com/bid/94629

libming 'read.c' Null Pointer Deference Denial of Service Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94627

GraphicsMagick 'memory.c' Denial of Service Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94625

Serendipity CVE-2016-9752 SSRF Security Bypass Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94622

Linux Kernel 'IPv6 Implementation' Local Integer Overflow Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94626

IBM BigFix Remote Control CVE-2016-2944 Information Disclosure Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94623

Linux Kernel CVE-2016-9644 Local Privilege Escalation Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94545

Linux Kernel Local Security Bypass Vulnerability
2016-12-02
http://www.securityfocus.com/bid/92659

Linux Kernel SCSI arcmsr Driver CVE-2016-7425 Local Heap Buffer Overflow Vulnerability
2016-12-02
http://www.securityfocus.com/bid/93037

IBM BigFix Remote Control CVE-2016-2948 Local Information Disclosure Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94619

Broadcom Wifi Driver 'brcmf_cfg80211_start_ap()' Function Stack Buffer Overflow Vulnerability
2016-12-02
http://www.securityfocus.com/bid/93541

Mozilla Firefox CVE-2016-5290 Multiple Unspecified Memory Corruption Vulnerabilities
2016-12-02
http://www.securityfocus.com/bid/94335

IBM BigFix Remote Control CVE-2016-2940 Multiple Information Disclosure Vulnerabilites
2016-12-02
http://www.securityfocus.com/bid/94621

Mozilla Firefox CVE-2016-9079 Use After Free Remote Code Execution Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94591

Huawei FusionAccess CVE-2016-8779 Command Injection Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94620

IBM BigFix Remote Control CVE-2016-2943 Local Information Disclosure Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94617

PHP 'ext/session/session.c' Remote Code Injection Vulnerability
2016-12-02
http://www.securityfocus.com/bid/92552

PHP CVE-2016-7131 NULL pointer Dereference Remote Denial of Service Vulnerability
2016-12-02
http://www.securityfocus.com/bid/92768

ImageMagick CVE-2016-9556 Heap Buffer Overflow Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94492

ImageMagick CVE-2016-8862 Memory Corruption Vulnerability
2016-12-02
http://www.securityfocus.com/bid/93794

ImageMagick CVE-2016-7906 Use After Free Denial of Service Vulnerability
2016-12-02
http://www.securityfocus.com/bid/93271

ImageMagick 'MagickCore/profile.c' Memory Corruption Vulnerability
2016-12-02
http://www.securityfocus.com/bid/93264

ImageMagick 'coders/tiff.c' Memory Corruption Vulnerability
2016-12-02
http://www.securityfocus.com/bid/93598

Multiple Japan Pension Service Products CVE-2016-7818 DLL Loading Local Code Execution Vulnerability
2016-12-02
http://www.securityfocus.com/bid/94616

PHP 'ext/standard/var_unserializer.c' Memory Corruption Vulnerability
2016-12-02
http://www.securityfocus.com/bid/93009

PHP CVE-2016-7418 Out-of-Bounds Read Denial of Service Vulnerability
2016-12-02
http://www.securityfocus.com/bid/93011

PHP CVE-2016-7416 Stack Buffer Overflow Vulnerability
2016-12-02
http://www.securityfocus.com/bid/93008

SANS News

Tap Gigabit Networks on the Cheap

Protecting Powershell Credentials (NOT)

Threatpostpost

Rule 41 Opponents Vow to Fight Government’s New Hacking Powers

Exploit

Disk Savvy Enterprise 9.1.14 - 'GET' Buffer Overflow

1.12.2016

Bugtraq

[slackware-security] mozilla-firefox (SSA:2016-336-01) 2016-12-01
Slackware Security Team (security slackware com)

[security bulletin] HPSBUX03665 rev.3 - HP-UX Tomcat-based Servlet Engine, Remote Denial of Service (DoS), URL Redirection 2016-11-30
security-alert hpe com

[security bulletin] HPSBGN03680 rev.1 - HPE Propel, Local Denial of Service (DoS), Escalation of Privilege 2016-11-30
security-alert hpe com

[security bulletin] HPSBGN03677 rev.1 - HPE Network Automation using RPCServlet and Java Deserialization, Remote Code Execution 2016-11-30
security-alert hpe com

[FOXMOLE SA 2016-05-02] e107 Content Management System (CMS) - Multiple Issues 2016-11-30
FOXMOLE Advisories (advisories foxmole com)

[security bulletin] HPSBHF03682 rev.1 - HPE Comware 7 Network Products using SSL/TLS, Local Gain Privileged Access 2016-11-30
security-alert hpe com

[RT-SA-2016-003] Less.js: Compilation of Untrusted LESS Files May Lead to Code Execution through the JavaScript Less Compiler 2016-11-30
RedTeam Pentesting GmbH (release redteam-pentesting de)

XSS in tooltip plugin of Zurb Foundation 5 2016-11-29
Winni Neessen (winni insecure so)

Malware

W97M.Downloader.M

Phishing

APPSTORE LD

1st December 2016

Renewal required

noreply@amazon.com

30th November 2016

Important message please read

James B. Comey

29th November 2016

Executive Director FBI

Vulnerebility

PHP 'ext/standard/var_unserializer.c' Memory Corruption Vulnerability
2016-12-01
http://www.securityfocus.com/bid/93009

PHP CVE-2016-7418 Out-of-Bounds Read Denial of Service Vulnerability
2016-12-01
http://www.securityfocus.com/bid/93011

PHP CVE-2016-7416 Stack Buffer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/93008

PHP CVE-2016-7414 Heap Buffer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/93004

PHP CVE-2016-7412 Heap Based Buffer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/93005

PHP 'ext/spl/spl_array.c' Remote Denial Of Service Vulnerability
2016-12-01
http://www.securityfocus.com/bid/93007

PHP CVE-2016-7413 Use After Free Denial of Service Vulnerability
2016-12-01
http://www.securityfocus.com/bid/93006

PHP 'fopen_wrappers.c' Integer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/92765

PHP 'ext/wddx/wddx.c' Denial of Service Vulnerability
2016-12-01
http://www.securityfocus.com/bid/92764

PHP CVE-2016-7132 NULL pointer Dereference Remote Denial of Service Vulnerability
2016-12-01
http://www.securityfocus.com/bid/92767

PHP CVE-2016-7134 Heap Based Buffer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/92766

PHP '__wakeup()' Function Remote Code Execution Vulnerability
2016-12-01
http://www.securityfocus.com/bid/92756

PHP 'wddx_deserialize()' Function Denial of Service Vulnerability
2016-12-01
http://www.securityfocus.com/bid/92758

PHP 'ext/gd/gd.c' Information Disclosure Vulnerability
2016-12-01
http://www.securityfocus.com/bid/92757

PHP 'ext/gd/gd.c' Heap Based Buffer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/92755

PHP 'session.c' Use After Free Remote Code Execution Vulnerability
2016-12-01
http://www.securityfocus.com/bid/92097

PHP 'ext/exif/exif.c' Information Disclosure Vulnerability
2016-12-01
http://www.securityfocus.com/bid/92564

PHP CVE-2016-6294 Local Information Disclosure Vulnerability
2016-12-01
http://www.securityfocus.com/bid/92115

PHP 'zip_stream.c' Integer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/92099

PHP '/xmlrpc/libxmlrpc/simplestring.c' Heap Buffer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/92095

PHP 'snmp.c' Denial of Service Vulnerability
2016-12-01
http://www.securityfocus.com/bid/92094

PHP 'ext/exif/exif.c' Multiple Heap Based Buffer Overflow Vulnerabilities
2016-12-01
http://www.securityfocus.com/bid/89844

PHP 'bcmath.c' Multiple Local Heap Overflow Vulnerabilities
2016-12-01
http://www.securityfocus.com/bid/90173

PHP 'grapheme_string.c' Out of Bounds Read Local Memory Corruption Vulnerabilities
2016-12-01
http://www.securityfocus.com/bid/90172

PHP 'exif_process_IFD_in_MAKERNOTE' Out of Bounds Read Information Disclosure Vulnerability
2016-12-01
http://www.securityfocus.com/bid/92073

PHP 'exif.c' NULL Pointer Dereference Denial of Service Vulnerability
2016-12-01
http://www.securityfocus.com/bid/92078

PHP CVE-2016-4539 Remote Denial Of Service Vulnerability
2016-12-01
http://www.securityfocus.com/bid/90174

PHP CVE-2016-5385 Security Bypass Vulnerability
2016-12-01
http://www.securityfocus.com/bid/91821

PHP 'zend_virtual_cwd.c' Integer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/92074

PHP LibGD CVE-2016-3074 Heap Buffer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/87087Linux Kernel 'kvm/emulate.c' Local Information Disclosure Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94615

Mozilla Firefox CVE-2016-9079 Use After Free Remote Code Execution Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94591

Mozilla Firefox CVE-2016-5296 Heap Buffer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94339

Mozilla Firefox CVE-2016-5290 Multiple Unspecified Memory Corruption Vulnerabilities
2016-12-01
http://www.securityfocus.com/bid/94335

Mozilla Firefox Multiple Security Vulnerabilities
2016-12-01
http://www.securityfocus.com/bid/94336

IBM IMS Enterprise Suite Data Provider CVE-2016-2887 Unspecified Security Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94611

Red Hat CloudForms Management Engine CVE-2016-5402 Remote Code Execution Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94612

C-ares CVE-2016-5180 Out of Bounds Write Denial of Service Vulnerability
2016-12-01
http://www.securityfocus.com/bid/93243

HP Network Automation CVE-2016-8511 Remote Code Execution Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94610

Symantec Norton App Lock CVE-2016-6591 Local Security Bypass Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94343

IBM BigFix Remote Control CVE-2016-2950 Unspecified SQL Injection Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94607

IBM BigFix Remote Control CVE-2016-2949 Local Information Disclosure Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94608

Linux Kernel CVE-2016-5195 Local Privilege Escalation Vulnerability
2016-12-01
http://www.securityfocus.com/bid/93793

IBM iNotes and Domino CVE-2016-2939 Cross Site Scripting Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94605

IBM iNotes and Domino CVE-2016-5880 Cross Site Scripting Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94606

IBM iNotes and Domino CVE-2016-5882 Cross Site Scripting Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94604

IBM iNotes and Domino CVE-2016-6113 Cross Site Scripting Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94603

IBM iNotes and Domino CVE-2016-5884 Cross Site Scripting Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94602

IBM BigFix Remote Control CVE-2016-2951 Man in the Middle Information Disclosure Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94601

IBM iNotes and Domino CVE-2016-2938 Cross Site Scripting Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94600

IBM BigFix Remote Control CVE-2016-2963 Cross Site Request Forgery Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94596

Multiple Lenovo Products CVE-2016-8224 Local Privilege Escalation Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94595

Boa Webserver CVE-2016-9564 Stack Buffer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94599

IBM BigFix Remote Control CVE-2016-2952 Information Disclosure Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94598

Lenovo System Interface Foundation CVE-2016-8223 Local Privilege Escalation Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94597

Multiple I-O DATA DEVICE Products Buffer Overflow and Command Injection Vulnerabilities
2016-12-01
http://www.securityfocus.com/bid/94594

HDF5 CVE-2016-4330 Local Heap Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94414

HDF5 CVE-2016-4331 Local Heap Buffer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94411

HDF5 CVE-2016-4332 Local Heap Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94417

HDF5 CVE-2016-4333 Local Heap Buffer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94416Mozilla Firefox CVE-2016-9079 Use After Free Remote Code Execution Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94591

Symantec Norton App Lock CVE-2016-6591 Local Security Bypass Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94343

IBM BigFix Remote Control CVE-2016-2950 Unspecified SQL Injection Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94607

IBM BigFix Remote Control CVE-2016-2949 Local Information Disclosure Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94608

Linux Kernel CVE-2016-5195 Local Privilege Escalation Vulnerability
2016-12-01
http://www.securityfocus.com/bid/93793

IBM iNotes and Domino CVE-2016-2939 Cross Site Scripting Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94605

IBM iNotes and Domino CVE-2016-5880 Cross Site Scripting Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94606

IBM iNotes and Domino CVE-2016-5882 Cross Site Scripting Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94604

IBM iNotes and Domino CVE-2016-6113 Cross Site Scripting Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94603

IBM iNotes and Domino CVE-2016-5884 Cross Site Scripting Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94602

IBM BigFix Remote Control CVE-2016-2951 Man in the Middle Information Disclosure Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94601

IBM iNotes and Domino CVE-2016-2938 Cross Site Scripting Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94600

IBM BigFix Remote Control CVE-2016-2963 Cross Site Request Forgery Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94596

Multiple Lenovo Products CVE-2016-8224 Local Privilege Escalation Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94595

Boa Webserver CVE-2016-9564 Stack Buffer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94599

IBM BigFix Remote Control CVE-2016-2952 Information Disclosure Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94598

Lenovo System Interface Foundation CVE-2016-8223 Local Privilege Escalation Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94597

Multiple I-O DATA DEVICE Products Buffer Overflow and Command Injection Vulnerabilities
2016-12-01
http://www.securityfocus.com/bid/94594

HDF5 CVE-2016-4330 Local Heap Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94414

HDF5 CVE-2016-4331 Local Heap Buffer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94411

HDF5 CVE-2016-4332 Local Heap Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94417

HDF5 CVE-2016-4333 Local Heap Buffer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94416

Exponent CMS CVE-2016-9481 SQL Injection Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94590

Linux Kernel CVE-2016-9685 Multiple Local Denial of Service Vulnerabilities
2016-12-01
http://www.securityfocus.com/bid/94593

SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2016-12-01
http://www.securityfocus.com/bid/73684

OpenJPEG CVE-2016-9675 Incomplete Fix Multiple Remote Heap Based Buffer Overflow Vulnerabilities
2016-12-01
http://www.securityfocus.com/bid/94589

Apache Subversion CVE-2016-8734 XML External Entity Denial of Service Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94588

Emerson DeltaV CVE-2016-9345 Local Privilege Escalation Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94584

Multiple Emerson Products CVE-2016-9347 Security Bypass Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94586

Dell iDRAC7 and iDRAC8 Devices CVE-2016-5685 Code Injection Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94585
Expat XML Parsing Multiple Remote Denial of Service Vulnerabilities
2016-12-01
http://www.securityfocus.com/bid/52379

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2016-12-01
http://www.securityfocus.com/bid/93150

Apple iOS/macOS/tvOS/watchOS CVE-2016-4688 Buffer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94572

Apple macOS CVE-2016-7584 Security Bypass Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94571

iCloud Setup for Windows CVE-2016-7583 Remote Code Execution Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94570

Mozilla Firefox CVE-2016-9078 URL Redirection Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94569

Red Hat JBoss BRMS and BPM Suite CVE-2016-8608 Incomplete Fix HTML Injection Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94568

Drools CVE-2016-7041 Directory Traversal Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94566

WordPress Dukapress Plugin 'dukapress/download.php' SQL Injection Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94567

WordPress Image Gallery Plugin HTML Injection Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94565

WordPress simple-image-manipulator Plugin 'download.php' Arbitrary File Download Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94563

Guidance Software EnCase Multiple Security Vulnerabilities
2016-12-01
http://www.securityfocus.com/bid/94564

Core FTP Client Buffer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94562

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2016-12-01
http://www.securityfocus.com/bid/94499

metapixel 'rwgif.c' Heap Buffer Overflow Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94466

IBM BigFix Remote Control CVE-2016-2927 Information Disclosure Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94561

IBM BigFix Remote Control CVE-2016-2929 Information Disclosure Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94560

WebKit CVE-2016-9642 Memory Corruption Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94554

WebKit CVE-2016-9643 Denial of Service Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94559

Multiple IBM Products CVE-2016-0284 XML External Entity Denial of Service Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94555

IBM iNotes CVE-2016-0282 Cross Site Scripting Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94558

IBM BigFix Remote Control CVE-2016-2928 Information Disclosure Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94556

Multiple IBM Products CVE-2016-0273 Cross Site Scripting Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94557

Multiple IBM Products CVE-2016-0285 HTML Injection Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94550

Cybozu Kintone App CVE-2016-7816 SSL Certificate Validation Security Bypass Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94547

Siemens SICAM PAS Products CVE-2016-8566 Local Security Bypass Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94552

Siemens SICAM PAS Multiple Security Vulnerabilities
2016-12-01
http://www.securityfocus.com/bid/94549

SaltStack Salt CVE-2016-9639 Information Disclosure Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94553

InPage '.inp' File Parser Remote Code Execution Vulnerability
2016-12-01
http://www.securityfocus.com/bid/94548

Linux Kernel CVE-2016-7042 Local Denial of Service Vulnerability
2016-12-01
http://www.securityfocus.com/bid/93544

SANS News

 

Threatpostpost

Microsoft Silently Fixes Kernel Bug That Led to Chrome Sandbox Bypass

Gooligan Malware Breaches 1 Million Google Accounts

Exploit

Disk Savvy Enterprise 9.1.14 - 'GET' Buffer Overflow

Xfinity Gateway - Cross-Site Request Forgery

Joomla! Component Portfolio Gallery 1.0.6 - SQL Injection

Joomla! Component Catalog 1.0.7 - SQL Injection

Wordpress Plugin WP Vault 0.8.6.6 - Local File Inclusion

Xitami Web Server 5.0a0 - Denial of Service

30.11.2016

Bugtraq

[RT-SA-2016-003] Less.js: Compilation of Untrusted LESS Files May Lead to Code Execution through the JavaScript Less Compiler 2016-11-30
RedTeam Pentesting GmbH (release redteam-pentesting de)

XSS in tooltip plugin of Zurb Foundation 5 2016-11-29
Winni Neessen (winni insecure so)

Google Chrome Accessibility blink::Node corruption details 2016-11-29
Berend-Jan Wever (berendj nwever nl)

SEC Consult SA-20161128-0 :: DoS & heap-based buffer overflow in Guidance Software EnCase Forensic 2016-11-28
SEC Consult Vulnerability Lab (research sec-consult com)

Malware

Trojan.Sponkirob

Phishing

noreply@amazon.com

30th November 2016

Important message please read

James B. Comey

29th November 2016

Executive Director FBI

Apple

29th November 2016

About your transaction
#5748573

IAPPIE.LD

29th November 2016

Account Suspended

Vulnerebility

SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2016-11-30
http://www.securityfocus.com/bid/73684

Apache Subversion CVE-2016-8734 XML External Entity Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94588

Emerson DeltaV CVE-2016-9345 Local Privilege Escalation Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94584

Multiple Emerson Products CVE-2016-9347 Security Bypass Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94586

Dell iDRAC7 and iDRAC8 Devices CVE-2016-5685 Code Injection Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94585

Emerson Liebert SiteScan CVE-2016-8348 XML External Entity Information Disclosure Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94587

Mozilla Firefox CVE-2016-5290 Multiple Unspecified Memory Corruption Vulnerabilities
2016-11-30
http://www.securityfocus.com/bid/94335

JasPer CVE-2016-8654 Multiple Remote Heap Buffer Overflow Vulnerabilities
2016-11-30
http://www.securityfocus.com/bid/94583

IBM FileNet Workplace XT CVE-2016-8921 Unspecified Arbitrary File Upload Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94582

Xen XSA-201 Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94581

Zurb Foundation tooltip Plugin 'foundation.tooltip.js' Cross Site Scripting Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94580

Neovim CVE-2016-1248 Command Execution Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94478

Multiple Micro Focus Products CVE-2016-5765 Directory Traversal Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94579

QEMU 'v9fs_link()' Function Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93965

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93962

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93964

QEMU CVE-2016-8910 Infinite Loop Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93844

QEMU CVE-2016-8578 Null Pointer Dereference Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93474

QEMU 'hw/net/eepro100.c' Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93957

QEMU 'hw/dma/rc4030.c' Divide By Zero Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93567

QEMU CVE-2016-8909 Infinite Loop Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93842

QEMU '/hw/char/serial.c' Divide By Zero Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93563

QEMU 'hw/9pfs/9p.c' Integer Overflow Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93956

QEMU 'hw/9pfs/9p.c' Information Disclosure Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93955

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93473

QEMU 'hw/usb/hcd-xhci.c' Infinite Loop Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93469

QEMU CVE-2016-7170 Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/92904

QEMU 'hw/net/mcf_fec.c' Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93273

QEMU Infinite Loop CVE-2016-7421 Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/92998

QEMU 'xilinx_ethlite.c' Heap Based Buffer Overflow Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93141Apache Subversion CVE-2016-8734 XML External Entity Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94588

Emerson DeltaV CVE-2016-9345 Local Privilege Escalation Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94584

Multiple Emerson Products CVE-2016-9347 Security Bypass Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94586

Dell iDRAC7 and iDRAC8 Devices CVE-2016-5685 Code Injection Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94585

Emerson Liebert SiteScan CVE-2016-8348 XML External Entity Information Disclosure Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94587

Mozilla Firefox CVE-2016-5290 Multiple Unspecified Memory Corruption Vulnerabilities
2016-11-30
http://www.securityfocus.com/bid/94335

JasPer CVE-2016-8654 Multiple Remote Heap Buffer Overflow Vulnerabilities
2016-11-30
http://www.securityfocus.com/bid/94583

IBM FileNet Workplace XT CVE-2016-8921 Unspecified Arbitrary File Upload Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94582

Xen XSA-201 Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94581

Zurb Foundation tooltip Plugin 'foundation.tooltip.js' Cross Site Scripting Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94580

Neovim CVE-2016-1248 Command Execution Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94478

Multiple Micro Focus Products CVE-2016-5765 Directory Traversal Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94579

QEMU 'v9fs_link()' Function Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93965

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93962

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93964

QEMU CVE-2016-8910 Infinite Loop Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93844

QEMU CVE-2016-8578 Null Pointer Dereference Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93474

QEMU 'hw/net/eepro100.c' Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93957

QEMU 'hw/dma/rc4030.c' Divide By Zero Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93567

QEMU CVE-2016-8909 Infinite Loop Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93842

QEMU '/hw/char/serial.c' Divide By Zero Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93563

QEMU 'hw/9pfs/9p.c' Integer Overflow Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93956

QEMU 'hw/9pfs/9p.c' Information Disclosure Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93955

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93473

QEMU 'hw/usb/hcd-xhci.c' Infinite Loop Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93469

QEMU CVE-2016-7170 Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/92904

QEMU 'hw/net/mcf_fec.c' Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93273

QEMU Infinite Loop CVE-2016-7421 Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/92998

QEMU 'xilinx_ethlite.c' Heap Based Buffer Overflow Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93141

QEMU Infinite Loop CVE-2016-7909 Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93275Apache Subversion CVE-2016-8734 XML External Entity Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94588

Emerson DeltaV CVE-2016-9345 Local Privilege Escalation Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94584

Multiple Emerson Products CVE-2016-9347 Security Bypass Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94586

Dell iDRAC7 and iDRAC8 Devices CVE-2016-5685 Code Injection Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94585

Emerson Liebert SiteScan CVE-2016-8348 XML External Entity Information Disclosure Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94587

Mozilla Firefox CVE-2016-5290 Multiple Unspecified Memory Corruption Vulnerabilities
2016-11-30
http://www.securityfocus.com/bid/94335

JasPer CVE-2016-8654 Multiple Remote Heap Buffer Overflow Vulnerabilities
2016-11-30
http://www.securityfocus.com/bid/94583

IBM FileNet Workplace XT CVE-2016-8921 Unspecified Arbitrary File Upload Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94582

Xen XSA-201 Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94581

Zurb Foundation tooltip Plugin 'foundation.tooltip.js' Cross Site Scripting Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94580

Neovim CVE-2016-1248 Command Execution Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94478

Multiple Micro Focus Products CVE-2016-5765 Directory Traversal Vulnerability
2016-11-30
http://www.securityfocus.com/bid/94579

QEMU 'v9fs_link()' Function Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93965

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93962

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93964

QEMU CVE-2016-8910 Infinite Loop Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93844

QEMU CVE-2016-8578 Null Pointer Dereference Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93474

QEMU 'hw/net/eepro100.c' Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93957

QEMU 'hw/dma/rc4030.c' Divide By Zero Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93567

QEMU CVE-2016-8909 Infinite Loop Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93842

QEMU '/hw/char/serial.c' Divide By Zero Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93563

QEMU 'hw/9pfs/9p.c' Integer Overflow Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93956

QEMU 'hw/9pfs/9p.c' Information Disclosure Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93955

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93473

QEMU 'hw/usb/hcd-xhci.c' Infinite Loop Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93469

QEMU CVE-2016-7170 Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/92904

QEMU 'hw/net/mcf_fec.c' Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93273

QEMU Infinite Loop CVE-2016-7421 Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/92998

QEMU 'xilinx_ethlite.c' Heap Based Buffer Overflow Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93141

QEMU Infinite Loop CVE-2016-7909 Denial of Service Vulnerability
2016-11-30
http://www.securityfocus.com/bid/93275

SANS News

Unpatched Vulnerability in Firefox used to Attack Tor Browser

Take Back Wednesday? SQL Slammer... still alive but barely kicking

Threatpostpost

New Mirai Variant Targets Routers, Knocks 900,000 Offline

NetWire RAT Back, Stealing Payment Card Data

New Cerber Variant Leverages Tor2Web Proxies, Google Redirects

Exploit

WinPower 4.9.0.4 - Privilege Escalation

Linux Kernel 2.6.22 < 3.9 - 'Dirty COW' /proc/self/mem Race Condition Privilege...

29.11.2016

Bugtraq

XSS in tooltip plugin of Zurb Foundation 5 2016-11-29
Winni Neessen (winni insecure so)

Google Chrome Accessibility blink::Node corruption details 2016-11-29
Berend-Jan Wever (berendj nwever nl)

SEC Consult SA-20161128-0 :: DoS & heap-based buffer overflow in Guidance Software EnCase Forensic 2016-11-28
SEC Consult Vulnerability Lab (research sec-consult com)

[SECURITY] [DSA 3725-1] icu security update 2016-11-27
Luciano Bello (luciano debian org)

Core FTP LE v2.2 Remote SSH/SFTP Buffer Overflow 2016-11-27
apparitionsec gmail com/hyp3rlinx

WorldCIST'2017 - Submission deadline: November 30 2016-11-26
ML (marialemos72 gmail com)

Malware

Ransom.YeeScrLocker

Linux.Gafgyt.B

Phishing

IAPPIE.LD

29th November 2016

Account Suspended

Service Info

29th November 2016

UPDATE

noreply@amazon.com

29th November 2016

Important message please read

Vulnerebility

OpenSSL Padding Oracle Incomplete Fix Information Disclosure Vulnerability
2016-11-29
http://www.securityfocus.com/bid/89760

OpenSSL CVE-2016-2176 Information Disclosure Vulnerability
2016-11-29
http://www.securityfocus.com/bid/89746

Oracle Java SE CVE-2016-5582 Remote Security Vulnerability
2016-11-29
http://www.securityfocus.com/bid/93623

Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2016-11-29
http://www.securityfocus.com/bid/93637

Oracle Java SE CVE-2016-5556 Remote Security Vulnerability
2016-11-29
http://www.securityfocus.com/bid/93618

Oracle Java SE CVE-2016-5568 Use-After-Free Remote Code Execution Vulnerability
2016-11-29
http://www.securityfocus.com/bid/93621

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2016-11-29
http://www.securityfocus.com/bid/93643

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2016-11-29
http://www.securityfocus.com/bid/93636

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2016-11-29
http://www.securityfocus.com/bid/93628

DBD::mysql CVE-2016-1251 Use After Free Remote Code Execution Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94573

Expat CVE-2016-0718 Buffer Overflow Vulnerability
2016-11-29
http://www.securityfocus.com/bid/90729

Expat CVE-2016-5300 Incomplete Fix Remote Denial of Service Vulnerability
2016-11-29
http://www.securityfocus.com/bid/91159

Mozilla Firefox and Thunderbird MFSA 2015-48 through -58 Multiple Vulnerabilities
2016-11-29
http://www.securityfocus.com/bid/74611

Google Chrome Prior to 44.0.2403.89 Multiple Security Vulnerabilities
2016-11-29
http://www.securityfocus.com/bid/75973

Expat XML Parsing Multiple Remote Denial of Service Vulnerabilities
2016-11-29
http://www.securityfocus.com/bid/52379

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2016-11-29
http://www.securityfocus.com/bid/93150

Apple iOS/macOS/tvOS/watchOS CVE-2016-4688 Buffer Overflow Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94572

Apple macOS CVE-2016-7584 Security Bypass Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94571

iCloud Setup for Windows CVE-2016-7583 Remote Code Execution Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94570

Mozilla Firefox CVE-2016-9078 URL Redirection Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94569

Red Hat JBoss BRMS and BPM Suite CVE-2016-8608 Incomplete Fix HTML Injection Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94568

Drools CVE-2016-7041 Directory Traversal Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94566

WordPress Dukapress Plugin 'dukapress/download.php' SQL Injection Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94567

WordPress Image Gallery Plugin HTML Injection Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94565

WordPress simple-image-manipulator Plugin 'download.php' Arbitrary File Download Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94563

Guidance Software EnCase Multiple Security Vulnerabilities
2016-11-29
http://www.securityfocus.com/bid/94564

Core FTP Client Buffer Overflow Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94562

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2016-11-29
http://www.securityfocus.com/bid/94499

metapixel 'rwgif.c' Heap Buffer Overflow Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94466

IBM BigFix Remote Control CVE-2016-2927 Information Disclosure Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94561Apple iOS/macOS/tvOS/watchOS CVE-2016-4688 Buffer Overflow Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94572

Apple macOS CVE-2016-7584 Security Bypass Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94571

iCloud Setup for Windows CVE-2016-7583 Remote Code Execution Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94570

Mozilla Firefox CVE-2016-9078 URL Redirection Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94569

Red Hat JBoss BRMS and BPM Suite CVE-2016-8608 Incomplete Fix HTML Injection Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94568

Drools CVE-2016-7041 Directory Traversal Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94566

WordPress Dukapress Plugin 'dukapress/download.php' SQL Injection Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94567

WordPress Image Gallery Plugin HTML Injection Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94565

WordPress simple-image-manipulator Plugin 'download.php' Arbitrary File Download Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94563

Guidance Software EnCase Multiple Security Vulnerabilities
2016-11-29
http://www.securityfocus.com/bid/94564

Core FTP Client Buffer Overflow Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94562

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2016-11-29
http://www.securityfocus.com/bid/94499

metapixel 'rwgif.c' Heap Buffer Overflow Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94466

IBM BigFix Remote Control CVE-2016-2927 Information Disclosure Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94561

IBM BigFix Remote Control CVE-2016-2929 Information Disclosure Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94560

WebKit CVE-2016-9642 Memory Corruption Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94554

WebKit CVE-2016-9643 Denial of Service Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94559

Multiple IBM Products CVE-2016-0284 XML External Entity Denial of Service Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94555

IBM iNotes CVE-2016-0282 Cross Site Scripting Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94558

IBM BigFix Remote Control CVE-2016-2928 Information Disclosure Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94556

Multiple IBM Products CVE-2016-0273 Cross Site Scripting Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94557

Multiple IBM Products CVE-2016-0285 HTML Injection Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94550

Cybozu Kintone App CVE-2016-7816 SSL Certificate Validation Security Bypass Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94547

Siemens SICAM PAS Products CVE-2016-8566 Local Security Bypass Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94552

Siemens SICAM PAS Multiple Security Vulnerabilities
2016-11-29
http://www.securityfocus.com/bid/94549

SaltStack Salt CVE-2016-9639 Information Disclosure Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94553

InPage '.inp' File Parser Remote Code Execution Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94548

Linux Kernel CVE-2016-7042 Local Denial of Service Vulnerability
2016-11-29
http://www.securityfocus.com/bid/93544

Linux Kernel CVE-2016-6130 Local Information Disclosure Vulnerability
2016-11-29
http://www.securityfocus.com/bid/91540

Linux Kernel SCSI arcmsr Driver CVE-2016-7425 Local Heap Buffer Overflow Vulnerability
2016-11-29
http://www.securityfocus.com/bid/93037Red Hat JBoss BRMS and BPM Suite CVE-2016-8608 Incomplete Fix HTML Injection Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94568

Drools CVE-2016-7041 Directory Traversal Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94566

WordPress Dukapress Plugin 'dukapress/download.php' SQL Injection Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94567

WordPress Image Gallery Plugin HTML Injection Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94565

WordPress simple-image-manipulator Plugin 'download.php' Arbitrary File Download Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94563

Guidance Software EnCase Multiple Security Vulnerabilities
2016-11-29
http://www.securityfocus.com/bid/94564

Core FTP Client Buffer Overflow Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94562

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2016-11-29
http://www.securityfocus.com/bid/94499

metapixel 'rwgif.c' Heap Buffer Overflow Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94466

IBM BigFix Remote Control CVE-2016-2927 Information Disclosure Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94561

IBM BigFix Remote Control CVE-2016-2929 Information Disclosure Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94560

WebKit CVE-2016-9642 Memory Corruption Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94554

WebKit CVE-2016-9643 Denial of Service Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94559

Multiple IBM Products CVE-2016-0284 XML External Entity Denial of Service Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94555

IBM iNotes CVE-2016-0282 Cross Site Scripting Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94558

IBM BigFix Remote Control CVE-2016-2928 Information Disclosure Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94556

Multiple IBM Products CVE-2016-0273 Cross Site Scripting Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94557

Multiple IBM Products CVE-2016-0285 HTML Injection Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94550

Cybozu Kintone App CVE-2016-7816 SSL Certificate Validation Security Bypass Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94547

Siemens SICAM PAS Products CVE-2016-8566 Local Security Bypass Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94552

Siemens SICAM PAS Multiple Security Vulnerabilities
2016-11-29
http://www.securityfocus.com/bid/94549

SaltStack Salt CVE-2016-9639 Information Disclosure Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94553

InPage '.inp' File Parser Remote Code Execution Vulnerability
2016-11-29
http://www.securityfocus.com/bid/94548

Linux Kernel CVE-2016-7042 Local Denial of Service Vulnerability
2016-11-29
http://www.securityfocus.com/bid/93544

Linux Kernel CVE-2016-6130 Local Information Disclosure Vulnerability
2016-11-29
http://www.securityfocus.com/bid/91540

Linux Kernel SCSI arcmsr Driver CVE-2016-7425 Local Heap Buffer Overflow Vulnerability
2016-11-29
http://www.securityfocus.com/bid/93037

Linux Kernel CVE-2016-8666 Stack Overflow Denial of Service Vulnerability
2016-11-29
http://www.securityfocus.com/bid/93562

Linux Kernel 'tcp_xmit_retransmit_queue()' Function Use After Free Denial of Service Vulnerability
2016-11-29
http://www.securityfocus.com/bid/92452

Linux Kernel Local Security Bypass Vulnerability
2016-11-29
http://www.securityfocus.com/bid/92659

Linux Kernel 'Ack Challenge' Information Disclosure Vulnerability
2016-11-29
http://www.securityfocus.com/bid/91704

SANS News

Port 7547 SOAP Remote Code Execution Attack Against DSL Modems

TR-069 NewNTPServer Exploits: What we know so far

Threatpostpost

PayPal Fixes OAuth Token Leaking Vulnerability

Exploit

Android - 'BadKernel' Remote Code Execution

Microsoft Internet Explorer 8 / 9 / 10 / 11 MSHTML - 'DOMImplementation' Type...

Microsoft Internet Explorer 10 MSHTML - 'CEdit­Adorner::Detach' Use-After-Free ...

Microsoft Internet Explorer 11 MSHTML -...

Microsoft Internet Explorer 8 MSHTML - 'SRun­Pointer::Span­Qualifier/Run­Type' Ou...

NTP 4.2.8p3 - Denial of Service

Linux Kernel 2.6.22 < 3.9 - 'Dirty COW' 'PTRACE_POKEDATA' Race Condition Privilege...

Linux Kernel 2.6.22 < 3.9 - 'Dirty COW' 'PTRACE_POKEDATA' Race Condition Privilege...

Red Hat JBoss EAP - Deserialization of Untrusted Data

Tenda/Dlink/Tplink TD-W8961ND - 'DHCP' Cross-Site Scripting

28.11.2016

Bugtraq

SEC Consult SA-20161128-0 :: DoS & heap-based buffer overflow in Guidance Software EnCase Forensic 2016-11-28
SEC Consult Vulnerability Lab (research sec-consult com)

[SECURITY] [DSA 3725-1] icu security update 2016-11-27
Luciano Bello (luciano debian org)

Core FTP LE v2.2 Remote SSH/SFTP Buffer Overflow 2016-11-27
apparitionsec gmail com/hyp3rlinx

WorldCIST'2017 - Submission deadline: November 30 2016-11-26
ML (marialemos72 gmail com)

CVE 2016-6803: Apache OpenOffice Unquoted Search Path Vulnerability 2016-11-25
Apache OpenOffice Security (orcmid apache org)

Call for Participation - 5th International Conference on Cyber Security, Cyber Welfare and Digital Forensic 2016-11-25
Jackie Blanco (jackie sdiwc info)

[SECURITY] [DSA 3724-1] gst-plugins-good0.10 security update 2016-11-24
Salvatore Bonaccorso (carnil debian org)

Call for Participation - 5th International Conference on Cyber Security, Cyber Welfare and Digital Forensic 2016-11-25
Jackie Blanco (jackie sdiwc info)

[SECURITY] [DSA 3723-1] gst-plugins-good1.0 security update 2016-11-24
Salvatore Bonaccorso (carnil debian org)

Malware

HackTool:Win32/AutoKMS!rfn

Phishing

 

Vulnerebility

WebKit CVE-2016-9642 Memory Corruption Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94554

WebKit CVE-2016-9643 Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94559

Multiple IBM Products CVE-2016-0284 XML External Entity Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94555

IBM iNotes CVE-2016-0282 Cross Site Scripting Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94558

IBM BigFix Remote Control CVE-2016-2928 Information Disclosure Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94556

Multiple IBM Products CVE-2016-0273 Cross Site Scripting Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94557

Multiple IBM Products CVE-2016-0285 HTML Injection Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94550

Cybozu Kintone App CVE-2016-7816 SSL Certificate Validation Security Bypass Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94547

Siemens SICAM PAS Products CVE-2016-8566 Local Security Bypass Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94552

Siemens SICAM PAS Multiple Security Vulnerabilities
2016-11-28
http://www.securityfocus.com/bid/94549

SaltStack Salt CVE-2016-9639 Information Disclosure Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94553

InPage '.inp' File Parser Remote Code Execution Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94548

Linux Kernel CVE-2016-7042 Local Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93544

Linux Kernel CVE-2016-6130 Local Information Disclosure Vulnerability
2016-11-28
http://www.securityfocus.com/bid/91540

Linux Kernel SCSI arcmsr Driver CVE-2016-7425 Local Heap Buffer Overflow Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93037

Linux Kernel CVE-2016-8666 Stack Overflow Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93562

Linux Kernel 'tcp_xmit_retransmit_queue()' Function Use After Free Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/92452

Linux Kernel Local Security Bypass Vulnerability
2016-11-28
http://www.securityfocus.com/bid/92659

Linux Kernel 'Ack Challenge' Information Disclosure Vulnerability
2016-11-28
http://www.securityfocus.com/bid/91704

Google Android Multiple Kernel Components Multiple Information Disclosure Vulnerabilites
2016-11-28
http://www.securityfocus.com/bid/93326

Linux Kernel CVE-2016-6327 Null Pointer Deference Local Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/92549

Linux Kernel CVE-2016-6480 Local Information Disclosure Vulnerability
2016-11-28
http://www.securityfocus.com/bid/92214

Broadcom Wifi Driver 'brcmf_cfg80211_start_ap()' Function Stack Buffer Overflow Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93541

Linux Kernel CVE-2016-9313 Null Pointer Deference Local Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94546

Linux Kernel CVE-2016-9644 Local Privilege Escalation Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94545

ICU CVE-2016-6293 Out of Bounds Read Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/92127

ImageMagick 'coders/tiff.c' Memory Corruption Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93598

ImageMagick CVE-2016-7906 Use After Free Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93271

ImageMagick 'MagickCore/profile.c' Memory Corruption Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93264

RedHat Jboss Fuse and Jboss A-MQ CVE-2016-8653 Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94544Linux Kernel CVE-2016-7042 Local Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93544

Linux Kernel CVE-2016-6130 Local Information Disclosure Vulnerability
2016-11-28
http://www.securityfocus.com/bid/91540

Linux Kernel SCSI arcmsr Driver CVE-2016-7425 Local Heap Buffer Overflow Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93037

Linux Kernel CVE-2016-8666 Stack Overflow Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93562

Linux Kernel 'tcp_xmit_retransmit_queue()' Function Use After Free Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/92452

Linux Kernel Local Security Bypass Vulnerability
2016-11-28
http://www.securityfocus.com/bid/92659

Linux Kernel 'Ack Challenge' Information Disclosure Vulnerability
2016-11-28
http://www.securityfocus.com/bid/91704

Google Android Multiple Kernel Components Multiple Information Disclosure Vulnerabilites
2016-11-28
http://www.securityfocus.com/bid/93326

Linux Kernel CVE-2016-6327 Null Pointer Deference Local Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/92549

Linux Kernel CVE-2016-6480 Local Information Disclosure Vulnerability
2016-11-28
http://www.securityfocus.com/bid/92214

Broadcom Wifi Driver 'brcmf_cfg80211_start_ap()' Function Stack Buffer Overflow Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93541

Linux Kernel CVE-2016-9313 Null Pointer Deference Local Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94546

Linux Kernel CVE-2016-9644 Local Privilege Escalation Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94545

ICU CVE-2016-6293 Out of Bounds Read Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/92127

ImageMagick 'coders/tiff.c' Memory Corruption Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93598

ImageMagick CVE-2016-7906 Use After Free Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93271

ImageMagick 'MagickCore/profile.c' Memory Corruption Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93264

RedHat Jboss Fuse and Jboss A-MQ CVE-2016-8653 Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94544

International Components for Unicode CVE-2016-7415 Stack Buffer Overflow Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93022

ICU 'uloc_getDisplayName()' Function Stack Based Buffer Overflow Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94520

Oracle Java SE CVE-2015-4844 Remote Security Vulnerability
2016-11-28
http://www.securityfocus.com/bid/77164

Oracle Java SE CVE-2015-2632 Remote Security Vulnerability
2016-11-28
http://www.securityfocus.com/bid/75861

IBM Security Privileged Identity Manager CVE-2016-0353 Information Disclosure Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94543

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2016-11-28
http://www.securityfocus.com/bid/94499

Multiple IBM Products CVE-2016-0325 Remote Command Injection Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94539

Multiple IBM Products CVE-2016-2864 Cross Site Scripting Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94542

Multiple IBM Rational Products CVE-2016-0372 Remote Information Disclosure Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94541

Multiple Huawei Secospace Products CVE-2016-8802 Buffer Overflow Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94538

Simple Keitai Chat CVE-2016-7817 Cross Site Scripting and HTML Injection Vulnerabilities
2016-11-28
http://www.securityfocus.com/bid/94537

phpMyAdmin PMASA-2016-69 Multiple SQL Injection Vulnerabilities
2016-11-28
http://www.securityfocus.com/bid/94533
Linux Kernel CVE-2016-8666 Stack Overflow Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93562

Linux Kernel 'tcp_xmit_retransmit_queue()' Function Use After Free Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/92452

Linux Kernel Local Security Bypass Vulnerability
2016-11-28
http://www.securityfocus.com/bid/92659

Linux Kernel 'Ack Challenge' Information Disclosure Vulnerability
2016-11-28
http://www.securityfocus.com/bid/91704

Google Android Multiple Kernel Components Multiple Information Disclosure Vulnerabilites
2016-11-28
http://www.securityfocus.com/bid/93326

Linux Kernel CVE-2016-6327 Null Pointer Deference Local Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/92549

Linux Kernel CVE-2016-6480 Local Information Disclosure Vulnerability
2016-11-28
http://www.securityfocus.com/bid/92214

Broadcom Wifi Driver 'brcmf_cfg80211_start_ap()' Function Stack Buffer Overflow Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93541

Linux Kernel CVE-2016-9644 Local Privilege Escalation Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94545

ICU CVE-2016-6293 Out of Bounds Read Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/92127

ImageMagick 'coders/tiff.c' Memory Corruption Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93598

ImageMagick CVE-2016-7906 Use After Free Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93271

ImageMagick 'MagickCore/profile.c' Memory Corruption Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93264

RedHat Jboss Fuse and Jboss A-MQ CVE-2016-8653 Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94544

International Components for Unicode CVE-2016-7415 Stack Buffer Overflow Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93022

ICU 'uloc_getDisplayName()' Function Stack Based Buffer Overflow Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94520

Oracle Java SE CVE-2015-4844 Remote Security Vulnerability
2016-11-28
http://www.securityfocus.com/bid/77164

Oracle Java SE CVE-2015-2632 Remote Security Vulnerability
2016-11-28
http://www.securityfocus.com/bid/75861

IBM Security Privileged Identity Manager CVE-2016-0353 Information Disclosure Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94543

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2016-11-28
http://www.securityfocus.com/bid/94499

Multiple IBM Products CVE-2016-0325 Remote Command Injection Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94539

Multiple IBM Products CVE-2016-2864 Cross Site Scripting Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94542

Multiple IBM Rational Products CVE-2016-0372 Remote Information Disclosure Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94541

Multiple Huawei Secospace Products CVE-2016-8802 Buffer Overflow Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94538

Simple Keitai Chat CVE-2016-7817 Cross Site Scripting and HTML Injection Vulnerabilities
2016-11-28
http://www.securityfocus.com/bid/94537

phpMyAdmin PMASA-2016-69 Multiple SQL Injection Vulnerabilities
2016-11-28
http://www.securityfocus.com/bid/94533

Linux Kernel CVE-2016-8650 Null Pointer Deference Local Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94532

phpMyAdmin PMASA-2016-71 Security Bypass Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94536

Multiple Huawei Products CVE-2016-8768 Local Privilege Escalation
2016-11-28
http://www.securityfocus.com/bid/93885

phpMyAdmin PMASA-2016-66 Remote Security Bypass Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94535IBM Security Privileged Identity Manager CVE-2016-0353 Information Disclosure Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94543

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2016-11-28
http://www.securityfocus.com/bid/94499

Multiple IBM Products CVE-2016-0325 Remote Command Injection Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94539

Multiple IBM Products CVE-2016-2864 Cross Site Scripting Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94542

Multiple IBM Rational Products CVE-2016-0372 Remote Information Disclosure Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94541

Multiple Huawei Secospace Products CVE-2016-8802 Buffer Overflow Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94538

Simple Keitai Chat CVE-2016-7817 Cross Site Scripting and HTML Injection Vulnerabilities
2016-11-28
http://www.securityfocus.com/bid/94537

phpMyAdmin PMASA-2016-69 Multiple SQL Injection Vulnerabilities
2016-11-28
http://www.securityfocus.com/bid/94533

Linux Kernel CVE-2016-8650 Null Pointer Deference Local Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94532

phpMyAdmin PMASA-2016-71 Security Bypass Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94536

Multiple Huawei Products CVE-2016-8768 Local Privilege Escalation
2016-11-28
http://www.securityfocus.com/bid/93885

phpMyAdmin PMASA-2016-66 Remote Security Bypass Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94535

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/93153

phpMyAdmin PMASA-2016-62 Security Bypass Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94534

Multiple Cisco Products CVE-2016-1409 Remote Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/90872

phpMyAdmin PMASA-2016-64 Multiple Cross Site Scripting Vulnerabilities
2016-11-28
http://www.securityfocus.com/bid/94530

phpMyAdmin 'BBCode' Code Injection Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94528

phpMyAdmin PMASA-2016-61 Security Bypass Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94529

phpMyAdmin PMASA-2016-65 Multiple Denial of Service Vulnerabilities
2016-11-28
http://www.securityfocus.com/bid/94525

phpMyAdmin PMASA-2016-70 Security Bypass Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94531

phpMyAdmin Multiple Full Path Information Disclosure Vulnerabilities
2016-11-28
http://www.securityfocus.com/bid/94527

phpMyAdmin Table Partitioning Function PMASA-2016-68 Denial of Service Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94526

phpMyAdmin PMASA-2016-58 Insecure Key Generation Security Weakness
2016-11-28
http://www.securityfocus.com/bid/94524

PHP libicu 'locale_get_display_name()' Stack Buffer Overflow Vulnerability
2016-11-28
http://www.securityfocus.com/bid/68549

Multiple Huawei Products Local Multiple Security Vulnerabilities
2016-11-28
http://www.securityfocus.com/bid/94509

phpMyAdmin PMASA-2016-59 Remote Information Disclosure Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94523

phpMyAdmin PMASA-2016-60 Remote Multiple Security Bypass Vulnerabilities
2016-11-28
http://www.securityfocus.com/bid/94521

Moxa SoftCMS Multiple Security Vulnerabilities
2016-11-28
http://www.securityfocus.com/bid/94394

ICU 'uloc_getDisplayName()' Function Stack Based Buffer Overflow Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94520

Xen CVE-2016-9386 Privilege Escalation Vulnerability
2016-11-28
http://www.securityfocus.com/bid/94471

SANS News

Port 7547 SOAP Remote Code Execution Attack Against DSL Modems

Scapy vs. CozyDuke

Threatpostpost

 

Exploit

Disk Pulse Enterprise 9.1.16 - Buffer Overflow

Disk Savvy Enterprise 9.1.14 - Buffer Overflow

Dup Scout Enterprise 9.1.14 - Buffer Overflow

Disk Sorter Enterprise 9.1.12 - Buffer Overflow

Sync Breeze Enterprise 9.1.16 - Buffer Overflow

VX Search Enterprise 9.1.12 - Buffer Overflow

27.11.2016

Bugtraq

Call for Participation - 5th International Conference on Cyber Security, Cyber Welfare and Digital Forensic 2016-11-25
Jackie Blanco (jackie sdiwc info)

Malware

 

Phishing

Apple

27th November 2016

[Norton Anti]Please Review
Your Account Informations

Virgin Media

26th November 2016

AN UPDATE FROM VIRGIN MEDIA

Support

26th November 2016

[PAYPAL] PLEASE CONFIRM YOUR
INFORMATIONS

Vulnerebility

IBM Security Privileged Identity Manager CVE-2016-0353 Information Disclosure Vulnerability
2016-11-27
http://www.securityfocus.com/bid/94543

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2016-11-27
http://www.securityfocus.com/bid/94499

Multiple IBM Products CVE-2016-0325 Remote Command Injection Vulnerability
2016-11-27
http://www.securityfocus.com/bid/94539

Multiple IBM Products CVE-2016-2864 Cross Site Scripting Vulnerability
2016-11-27
http://www.securityfocus.com/bid/94542

Multiple IBM Rational Products CVE-2016-0372 Remote Information Disclosure Vulnerability
2016-11-27
http://www.securityfocus.com/bid/94541

Multiple Huawei Secospace Products CVE-2016-8802 Buffer Overflow Vulnerability
2016-11-27
http://www.securityfocus.com/bid/94538

Simple Keitai Chat CVE-2016-7817 Cross Site Scripting and HTML Injection Vulnerabilities
2016-11-27
http://www.securityfocus.com/bid/94537

phpMyAdmin PMASA-2016-69 Multiple SQL Injection Vulnerabilities
2016-11-27
http://www.securityfocus.com/bid/94533

Linux Kernel CVE-2016-8650 Null Pointer Deference Local Denial of Service Vulnerability
2016-11-27
http://www.securityfocus.com/bid/94532

phpMyAdmin PMASA-2016-71 Security Bypass Vulnerability
2016-11-27
http://www.securityfocus.com/bid/94536

Multiple Huawei Products CVE-2016-8768 Local Privilege Escalation
2016-11-27
http://www.securityfocus.com/bid/93885

phpMyAdmin PMASA-2016-66 Remote Security Bypass Vulnerability
2016-11-27
http://www.securityfocus.com/bid/94535

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2016-11-27
http://www.securityfocus.com/bid/93153

phpMyAdmin PMASA-2016-62 Security Bypass Vulnerability
2016-11-27
http://www.securityfocus.com/bid/94534

Multiple Cisco Products CVE-2016-1409 Remote Denial of Service Vulnerability
2016-11-27
http://www.securityfocus.com/bid/90872

phpMyAdmin PMASA-2016-64 Multiple Cross Site Scripting Vulnerabilities
2016-11-27
http://www.securityfocus.com/bid/94530

phpMyAdmin 'BBCode' Code Injection Vulnerability
2016-11-27
http://www.securityfocus.com/bid/94528

phpMyAdmin PMASA-2016-61 Security Bypass Vulnerability
2016-11-27
http://www.securityfocus.com/bid/94529

phpMyAdmin PMASA-2016-65 Multiple Denial of Service Vulnerabilities
2016-11-27
http://www.securityfocus.com/bid/94525

phpMyAdmin PMASA-2016-70 Security Bypass Vulnerability
2016-11-27
http://www.securityfocus.com/bid/94531

phpMyAdmin Multiple Full Path Information Disclosure Vulnerabilities
2016-11-27
http://www.securityfocus.com/bid/94527

phpMyAdmin Table Partitioning Function PMASA-2016-68 Denial of Service Vulnerability
2016-11-27
http://www.securityfocus.com/bid/94526

phpMyAdmin PMASA-2016-58 Insecure Key Generation Security Weakness
2016-11-27
http://www.securityfocus.com/bid/94524

PHP libicu 'locale_get_display_name()' Stack Buffer Overflow Vulnerability
2016-11-27
http://www.securityfocus.com/bid/68549

Multiple Huawei Products Local Multiple Security Vulnerabilities
2016-11-27
http://www.securityfocus.com/bid/94509

phpMyAdmin PMASA-2016-59 Remote Information Disclosure Vulnerability
2016-11-27
http://www.securityfocus.com/bid/94523

phpMyAdmin PMASA-2016-60 Remote Multiple Security Bypass Vulnerabilities
2016-11-27
http://www.securityfocus.com/bid/94521

Moxa SoftCMS Multiple Security Vulnerabilities
2016-11-27
http://www.securityfocus.com/bid/94394

ICU 'uloc_getDisplayName()' Function Stack Based Buffer Overflow Vulnerability
2016-11-27
http://www.securityfocus.com/bid/94520

Xen CVE-2016-9386 Privilege Escalation Vulnerability
2016-11-27
http://www.securityfocus.com/bid/94471
IBM Security Privileged Identity Manager CVE-2016-0353 Information Disclosure Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94543

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94499

Multiple IBM Products CVE-2016-0325 Remote Command Injection Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94539

Multiple IBM Products CVE-2016-2864 Cross Site Scripting Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94542

Multiple IBM Rational Products CVE-2016-0372 Remote Information Disclosure Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94541

Multiple Huawei Secospace Products CVE-2016-8802 Buffer Overflow Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94538

Simple Keitai Chat CVE-2016-7817 Cross Site Scripting and HTML Injection Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94537

phpMyAdmin PMASA-2016-69 Multiple SQL Injection Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94533

Linux Kernel CVE-2016-8650 Null Pointer Deference Local Denial of Service Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94532

phpMyAdmin PMASA-2016-71 Security Bypass Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94536

Multiple Huawei Products CVE-2016-8768 Local Privilege Escalation
2016-11-26
http://www.securityfocus.com/bid/93885

phpMyAdmin PMASA-2016-66 Remote Security Bypass Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94535

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2016-11-26
http://www.securityfocus.com/bid/93153

phpMyAdmin PMASA-2016-62 Security Bypass Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94534

Multiple Cisco Products CVE-2016-1409 Remote Denial of Service Vulnerability
2016-11-26
http://www.securityfocus.com/bid/90872

phpMyAdmin PMASA-2016-64 Multiple Cross Site Scripting Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94530

phpMyAdmin 'BBCode' Code Injection Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94528

phpMyAdmin PMASA-2016-61 Security Bypass Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94529

phpMyAdmin PMASA-2016-65 Multiple Denial of Service Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94525

phpMyAdmin PMASA-2016-70 Security Bypass Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94531

phpMyAdmin Multiple Full Path Information Disclosure Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94527

phpMyAdmin Table Partitioning Function PMASA-2016-68 Denial of Service Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94526

phpMyAdmin PMASA-2016-58 Insecure Key Generation Security Weakness
2016-11-26
http://www.securityfocus.com/bid/94524

PHP libicu 'locale_get_display_name()' Stack Buffer Overflow Vulnerability
2016-11-26
http://www.securityfocus.com/bid/68549

Multiple Huawei Products Local Multiple Security Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94509

phpMyAdmin PMASA-2016-59 Remote Information Disclosure Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94523

phpMyAdmin PMASA-2016-60 Remote Multiple Security Bypass Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94521

Moxa SoftCMS Multiple Security Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94394

ICU 'uloc_getDisplayName()' Function Stack Based Buffer Overflow Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94520

Xen CVE-2016-9386 Privilege Escalation Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94471
IBM Security Privileged Identity Manager CVE-2016-0353 Information Disclosure Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94543

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94499

Multiple IBM Products CVE-2016-0325 Remote Command Injection Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94539

Multiple IBM Products CVE-2016-2864 Cross Site Scripting Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94542

Multiple IBM Rational Products CVE-2016-0372 Remote Information Disclosure Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94541

Multiple Huawei Secospace Products CVE-2016-8802 Buffer Overflow Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94538

Simple Keitai Chat CVE-2016-7817 Cross Site Scripting and HTML Injection Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94537

phpMyAdmin PMASA-2016-69 Multiple SQL Injection Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94533

Linux Kernel CVE-2016-8650 Null Pointer Deference Local Denial of Service Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94532

phpMyAdmin PMASA-2016-71 Security Bypass Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94536

Multiple Huawei Products CVE-2016-8768 Local Privilege Escalation
2016-11-26
http://www.securityfocus.com/bid/93885

phpMyAdmin PMASA-2016-66 Remote Security Bypass Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94535

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2016-11-26
http://www.securityfocus.com/bid/93153

phpMyAdmin PMASA-2016-62 Security Bypass Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94534

Multiple Cisco Products CVE-2016-1409 Remote Denial of Service Vulnerability
2016-11-26
http://www.securityfocus.com/bid/90872

phpMyAdmin PMASA-2016-64 Multiple Cross Site Scripting Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94530

phpMyAdmin 'BBCode' Code Injection Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94528

phpMyAdmin PMASA-2016-61 Security Bypass Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94529

phpMyAdmin PMASA-2016-65 Multiple Denial of Service Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94525

phpMyAdmin PMASA-2016-70 Security Bypass Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94531

phpMyAdmin Multiple Full Path Information Disclosure Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94527

phpMyAdmin Table Partitioning Function PMASA-2016-68 Denial of Service Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94526

phpMyAdmin PMASA-2016-58 Insecure Key Generation Security Weakness
2016-11-26
http://www.securityfocus.com/bid/94524

PHP libicu 'locale_get_display_name()' Stack Buffer Overflow Vulnerability
2016-11-26
http://www.securityfocus.com/bid/68549

Multiple Huawei Products Local Multiple Security Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94509

phpMyAdmin PMASA-2016-59 Remote Information Disclosure Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94523

phpMyAdmin PMASA-2016-60 Remote Multiple Security Bypass Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94521

Moxa SoftCMS Multiple Security Vulnerabilities
2016-11-26
http://www.securityfocus.com/bid/94394

ICU 'uloc_getDisplayName()' Function Stack Based Buffer Overflow Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94520

Xen CVE-2016-9386 Privilege Escalation Vulnerability
2016-11-26
http://www.securityfocus.com/bid/94471

SANS News

 

Threatpostpost

 

Exploit

Linux/x86 - Egg-hunter Shellcode (25 bytes)

Core FTP LE 2.2 - 'SSH/SFTP' Remote Buffer Overflow (PoC)

25.11.2016

Bugtraq

Call for Participation - 5th International Conference on Cyber Security, Cyber Welfare and Digital Forensic 2016-11-25
Jackie Blanco (jackie sdiwc info)

[SECURITY] [DSA 3724-1] gst-plugins-good0.10 security update 2016-11-24
Salvatore Bonaccorso (carnil debian org)

Call for Participation - 5th International Conference on Cyber Security, Cyber Welfare and Digital Forensic 2016-11-25
Jackie Blanco (jackie sdiwc info)

[SECURITY] [DSA 3723-1] gst-plugins-good1.0 security update 2016-11-24
Salvatore Bonaccorso (carnil debian org)

WorldCIST'17 - Submission deadline: November 27 2016-11-24
ML (marialemos72 gmail com)

Malware

 

Phishing

Apple

25th November 2016

Your Apple ID was used to sign
in to iMessage on an iPhone 6.

info

24th November 2016

PAYPAL - VERIFICATION REQUIRED

Tesco Credit Card Services

23rd November 2016

Your Account

NatWest

23rd November 2016

New online login
authentication procedures

Vulnerebility

2016-11-25
http://www.securityfocus.com/bid/93885

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93153

phpMyAdmin PMASA-2016-62 Security Bypass Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94534

Multiple Cisco Products CVE-2016-1409 Remote Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/90872

phpMyAdmin PMASA-2016-64 Multiple Cross Site Scripting Vulnerabilities
2016-11-25
http://www.securityfocus.com/bid/94530

phpMyAdmin 'BBCode' Code Injection Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94528

phpMyAdmin PMASA-2016-61 Security Bypass Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94529

phpMyAdmin PMASA-2016-65 Multiple Denial of Service Vulnerabilities
2016-11-25
http://www.securityfocus.com/bid/94525

phpMyAdmin PMASA-2016-70 Security Bypass Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94531

phpMyAdmin Multiple Full Path Information Disclosure Vulnerabilities
2016-11-25
http://www.securityfocus.com/bid/94527

phpMyAdmin Table Partitioning Function PMASA-2016-68 Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94526

phpMyAdmin PMASA-2016-58 Insecure Key Generation Security Weakness
2016-11-25
http://www.securityfocus.com/bid/94524

PHP libicu 'locale_get_display_name()' Stack Buffer Overflow Vulnerability
2016-11-25
http://www.securityfocus.com/bid/68549

Multiple Huawei Products Local Multiple Security Vulnerabilities
2016-11-25
http://www.securityfocus.com/bid/94509

phpMyAdmin PMASA-2016-59 Remote Information Disclosure Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94523

phpMyAdmin PMASA-2016-60 Remote Multiple Security Bypass Vulnerabilities
2016-11-25
http://www.securityfocus.com/bid/94521

Moxa SoftCMS Multiple Security Vulnerabilities
2016-11-25
http://www.securityfocus.com/bid/94394

ICU 'uloc_getDisplayName()' Function Stack Based Buffer Overflow Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94520

Xen CVE-2016-9386 Privilege Escalation Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94471

Xen CVE-2016-9382 Privilege Escalation Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94470

Xen CVE-2016-9383 Memory Corruption Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94474

Xen CVE-2016-9385 Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94472

Xen CVE-2016-9381 Privilege Escalation Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94476

Xen PyGrub Multiple Privilege Escalation Vulnerabilities
2016-11-25
http://www.securityfocus.com/bid/94473

phpMyAdmin CVE-2016-4412 Open Redirection Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94519

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2016-11-25
http://www.securityfocus.com/bid/94499

IBM FileNet Workplace CVE-2016-5981 Unspecified Cross Site Scripting Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94517

IBM Jazz Foundation CVE-2016-2947 Information Disclosure Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94518

IBM Tealeaf Customer Experience Server Side Request Forgery Security Bypass Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94516

IBM Sterling Connect:Direct CVE-2016-5991 Local Privilege Escalation Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94515
Xen CVE-2016-9386 Privilege Escalation Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94471

Xen CVE-2016-9382 Privilege Escalation Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94470

Xen CVE-2016-9383 Memory Corruption Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94474

Xen CVE-2016-9385 Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94472

Xen CVE-2016-9381 Privilege Escalation Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94476

Xen PyGrub Multiple Privilege Escalation Vulnerabilities
2016-11-25
http://www.securityfocus.com/bid/94473

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2016-11-25
http://www.securityfocus.com/bid/94499

IBM FileNet Workplace CVE-2016-5981 Unspecified Cross Site Scripting Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94517

IBM Jazz Foundation CVE-2016-2947 Information Disclosure Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94518

IBM Tealeaf Customer Experience Server Side Request Forgery Security Bypass Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94516

IBM Sterling Connect:Direct CVE-2016-5991 Local Privilege Escalation Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94515

IBM Sterling Connect:Direct CVE-2016-5992 Local Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94514

Apache Karaf CVE-2016-8648 Remote Code Execution Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94513

Sivann ITDB 'examples_support/editable_ajax.php' Cross Site Scripting Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94511

QEMU 'v9fs_link()' Function Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93965

QEMU CVE-2016-8909 Infinite Loop Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93842

QEMU 'hw/net/eepro100.c' Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93957

QEMU CVE-2016-8578 Null Pointer Dereference Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93474

QEMU 'hw/9pfs/9p.c' Integer Overflow Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93956

QEMU '/hw/char/serial.c' Divide By Zero Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93563

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93964

QEMU 'hw/9pfs/9p.c' Information Disclosure Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93955

QEMU 'hw/dma/rc4030.c' Divide By Zero Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93567

QEMU CVE-2016-8910 Infinite Loop Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93844

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93962

QEMU CVE-2016-7170 Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/92904

QEMU 'xilinx_ethlite.c' Heap Based Buffer Overflow Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93141

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93473

QEMU 'hw/net/mcf_fec.c' Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93273

QEMU Infinite Loop CVE-2016-7909 Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93275Apache Karaf CVE-2016-8648 Remote Code Execution Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94513

Sivann ITDB 'examples_support/editable_ajax.php' Cross Site Scripting Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94511

QEMU 'v9fs_link()' Function Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93965

QEMU CVE-2016-8909 Infinite Loop Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93842

QEMU 'hw/net/eepro100.c' Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93957

QEMU CVE-2016-8578 Null Pointer Dereference Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93474

QEMU 'hw/9pfs/9p.c' Integer Overflow Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93956

QEMU '/hw/char/serial.c' Divide By Zero Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93563

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93964

QEMU 'hw/9pfs/9p.c' Information Disclosure Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93955

QEMU 'hw/dma/rc4030.c' Divide By Zero Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93567

QEMU CVE-2016-8910 Infinite Loop Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93844

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93962

QEMU CVE-2016-7170 Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/92904

QEMU 'xilinx_ethlite.c' Heap Based Buffer Overflow Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93141

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93473

QEMU 'hw/net/mcf_fec.c' Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93273

QEMU Infinite Loop CVE-2016-7909 Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93275

QEMU 'hw/usb/hcd-xhci.c' Infinite Loop Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93469

Less Compiler Arbitrary Code Execution Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94512

Huawei NEM CVE-2016-8775 Local Buffer Overflow Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94506

BigTree CMS 'redraw-field.php' Multiple Cross Site Scripting Vulnerabilities
2016-11-25
http://www.securityfocus.com/bid/94510

BigTree CMS 'check-module-integrity.php' Cross Site Scripting Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94508

Multiple Huawei Products CVE-2016-8774 Local Buffer Overflow Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94503

Huawei FusionStorage CVE-2016-8803 Local Privilege Escalation Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94507

TomatoCart 'step_5.php' Multiple Cross Site Scripting Vulnerabilities
2016-11-25
http://www.securityfocus.com/bid/94505

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/93814

Multiple Huawei CloudEngine Products CVE-2016-8795 Integer Overflow Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94504

ISC BIND CVE-2016-8864 Remote Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/94067

Expat CVE-2016-5300 Incomplete Fix Remote Denial of Service Vulnerability
2016-11-25
http://www.securityfocus.com/bid/91159

SANS News

Extracting Shellcode From JavaScript

Free Software Quick Security Checklist

Threatpostpost

 

Exploit

Osticket 1.9.14 - 'X-Forwarded-For' Cross-Site Scripting

Microsoft Windows Kernel win32k.sys - 'NtSetWindowLongPtr' Privilege Escalation...

Remote Utilities Host 6.3 - Denial of Service

24.11.2016

Bugtraq

[SYSS-2016-107] EASY HOME Alarmanlagen-Set - Cryptographic Issues (CWE-310) 2016-11-24
gerhard klostermeier syss de

[SYSS-2016-071] Blaupunkt Smart GSM Alarm SA 2500 Kit - Missing Protection against Replay Attacks 2016-11-24
matthias deeg syss de

[SYSS-2016-064] Multi Kon Trade M2B GSM Wireless Alarm System - Improper Restriction of Excessive Authentication Attempts (CWE-307) 2016-11-24
gerhard klostermeier syss de

[SYSS-2016-066] Multi Kon Trade M2B GSM Wireless Alarm System - Missing Protection against Replay Attacks 2016-11-24
gerhard klostermeier syss de

[CVE-2016-7098] GNU Wget < 1.18 Access List Bypass / Race Condition 2016-11-24
Dawid Golunski (dawid legalhackers com)

Malware

TrojanDownloader:JS/Nemucod  
JS/Nemucod  
Ransom:Win32/Locky.A
 

Trojan.Ismdoor

Ransom.OzozaLocker

Phishing

info

24th November 2016

PAYPAL - VERIFICATION REQUIRED

Tesco Credit Card Services

23rd November 2016

Your Account

Vulnerebility

BigTree CMS 'check-module-integrity.php' Cross Site Scripting Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94508

Multiple Huawei Products CVE-2016-8774 Local Buffer Overflow Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94503

Huawei FusionStorage CVE-2016-8803 Local Privilege Escalation Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94507

TomatoCart 'step_5.php' Multiple Cross Site Scripting Vulnerabilities
2016-11-24
http://www.securityfocus.com/bid/94505

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93814

Multiple Huawei CloudEngine Products CVE-2016-8795 Integer Overflow Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94504

ISC BIND CVE-2016-8864 Remote Denial of Service Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94067

Expat CVE-2016-5300 Incomplete Fix Remote Denial of Service Vulnerability
2016-11-24
http://www.securityfocus.com/bid/91159

Linux Kernel 'usbhid/hiddev.c' Local Heap Buffer Overflow Vulnerability
2016-11-24
http://www.securityfocus.com/bid/91450

Linux Kernel CVE-2016-7117 Use-After-Free Remote Code Execution Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93304

Linux Kernel CVE-2016-5195 Local Privilege Escalation Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93793

PHP 'ext/session/session.c' Remote Code Injection Vulnerability
2016-11-24
http://www.securityfocus.com/bid/92552

CakePHP Multiple Security Bypass Vulnerabilities
2016-11-24
http://www.securityfocus.com/bid/94502

SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2016-11-24
http://www.securityfocus.com/bid/73684

MoinMoin 'action/fckdialog.py' Cross-Site Scripting Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94501

SSL/TLS RC4 CVE-2013-2566 Information Disclosure Weakness
2016-11-24
http://www.securityfocus.com/bid/58796

IETF RFC 3279 X.509 Certificate MD5 Signature Collision Vulnerability
2016-11-24
http://www.securityfocus.com/bid/33065

Apache Tomcat Security Manager CVE-2016-5018 Security Bypass Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93942

Apache Tomcat Security Manager CVE-2016-6796 Security Bypass Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93944

Apache Tomcat CVE-2016-6794 Security Bypass Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93943

libTIFF CVE-2016-5320 Remote Code Execution Vulnerability
2016-11-24
http://www.securityfocus.com/bid/91195

LibTIFF 'NeXTDecode()' Function Out of Bounds Write Memory Corruption Vulnerability
2016-11-24
http://www.securityfocus.com/bid/81696

Linux Kernel 'ip_tunnel.c' Local Integer Overflow Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94500

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2016-11-24
http://www.securityfocus.com/bid/94499

w3m Multiple Security Vulnerabilities
2016-11-24
http://www.securityfocus.com/bid/94464

Multiple Symantec Products CVE-2016-5311 DLL Loading Local Privilege Escalation Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94295

LXC CVE-2016-8649 Directory Traversal Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94498

MoinMoin Multiple HTML Injection Vulnerabilities
2016-11-24
http://www.securityfocus.com/bid/94259

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93643

Wordpress csv2wpec-coupon Plugin CVE-2015-1000013 Arbitrary File Upload Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94497Linux Kernel 'usbhid/hiddev.c' Local Heap Buffer Overflow Vulnerability
2016-11-24
http://www.securityfocus.com/bid/91450

Linux Kernel CVE-2016-7117 Use-After-Free Remote Code Execution Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93304

Linux Kernel CVE-2016-5195 Local Privilege Escalation Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93793

PHP 'ext/session/session.c' Remote Code Injection Vulnerability
2016-11-24
http://www.securityfocus.com/bid/92552

SSL/TLS RC4 CVE-2015-2808 Information Disclosure Weakness
2016-11-24
http://www.securityfocus.com/bid/73684

SSL/TLS RC4 CVE-2013-2566 Information Disclosure Weakness
2016-11-24
http://www.securityfocus.com/bid/58796

IETF RFC 3279 X.509 Certificate MD5 Signature Collision Vulnerability
2016-11-24
http://www.securityfocus.com/bid/33065

Apache Tomcat Security Manager CVE-2016-5018 Security Bypass Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93942

Apache Tomcat Security Manager CVE-2016-6796 Security Bypass Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93944

Apache Tomcat CVE-2016-6794 Security Bypass Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93943

libTIFF CVE-2016-5320 Remote Code Execution Vulnerability
2016-11-24
http://www.securityfocus.com/bid/91195

LibTIFF 'NeXTDecode()' Function Out of Bounds Write Memory Corruption Vulnerability
2016-11-24
http://www.securityfocus.com/bid/81696

Linux Kernel 'ip_tunnel.c' Local Integer Overflow Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94500

GStreamer Good Plug-ins Multiple Buffer Overflow Vulnerabilities
2016-11-24
http://www.securityfocus.com/bid/94499

w3m Multiple Security Vulnerabilities
2016-11-24
http://www.securityfocus.com/bid/94464

Multiple Symantec Products CVE-2016-5311 DLL Loading Local Privilege Escalation Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94295

LXC CVE-2016-8649 Directory Traversal Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94498

MoinMoin Multiple HTML Injection Vulnerabilities
2016-11-24
http://www.securityfocus.com/bid/94259

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93643

Wordpress csv2wpec-coupon Plugin CVE-2015-1000013 Arbitrary File Upload Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94497

WordPress mypixs Plugin CVE-2015-1000012 Local File Include Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94495

Ipswitch WhatsUp Gold CVE-2016-1000000 SQL Injection Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94496

Multiple Samsung Galaxy Product CVE-2016-9567 Security Bypass Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94494

Oracle Java SE CVE-2016-5582 Remote Security Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93623

Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93637

Oracle Java SE CVE-2016-5556 Remote Security Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93618

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93636

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5568 Use-After-Free Remote Code Execution Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93621

libdwarf CVE-2016-9558 Integer Overflow Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94491OpenSSL 'crypto/asn1/a_d2i_fp.c' Local Denial of Service Vulnerability
2016-11-24
http://www.securityfocus.com/bid/87940

OpenSSL CVE-2016-2105 Buffer Overflow Vulnerability
2016-11-24
http://www.securityfocus.com/bid/89757

Palo Alto Networks PAN-OS CVE-2016-9151 Local Privilege Escalation Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94400

GNU Bash CVE-2016-9401 Local Security Bypass Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94398

Multiple IBM Products CVE-2015-2017 HTTP Response Splitting Vulnerability
2016-11-24
http://www.securityfocus.com/bid/78457

OpenSSH CVE-2016-6210 User Enumeration Vulnerability
2016-11-24
http://www.securityfocus.com/bid/91812

Linux-PAM '_unix_run_helper_binary()' Function Denial of Service Vulnerability
2016-11-24
http://www.securityfocus.com/bid/75428

OpenSSH PAM Support Multiple Remote Code Execution Vulnerabilities
2016-11-24
http://www.securityfocus.com/bid/76317

OpenSSH 'x11_open_helper()' Function Security Bypass Vulnerability
2016-11-24
http://www.securityfocus.com/bid/75525

'pam_userdb' Module CVE-2013-7041 Password Hashes Security Weakness
2016-11-24
http://www.securityfocus.com/bid/64180

Oracle Java SE CVE-2016-3598 Remote Code Execution Vulnerability
2016-11-24
http://www.securityfocus.com/bid/91918

IBM Tivoli Storage Manager CVE-2016-0371 Local Information Disclosure Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94148

Apache Tomcat CVE-2016-5388 Security Bypass Vulnerability
2016-11-24
http://www.securityfocus.com/bid/91818

Teeworlds 'client.cpp' Memory Corruption Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94381

OpenSSL CVE-2016-0797 Multiple Integer Overflow Vulnerabilities
2016-11-24
http://www.securityfocus.com/bid/83763

OpenSSL CVE-2016-0705 Denial of Service Vulnerability
2016-11-24
http://www.securityfocus.com/bid/83754

OpenSSL CVE-2016-0798 Memory Leak Denial of Service Vulnerability
2016-11-24
http://www.securityfocus.com/bid/83705

OpenSSL CVE-2016-2176 Information Disclosure Vulnerability
2016-11-24
http://www.securityfocus.com/bid/89746

OpenSSL CVE-2016-2106 Integer Overflow Vulnerability
2016-11-24
http://www.securityfocus.com/bid/89744

MyBB Versions Prior To 1.8.8 Multiple Security Vulnerabilities
2016-11-24
http://www.securityfocus.com/bid/94396

MyBB Prior to 1.8.6 Multiple Security Vulnerabilities
2016-11-24
http://www.securityfocus.com/bid/94397

MyBB Prior to 1.8.7 Multiple Security Vulnerabilities
2016-11-24
http://www.securityfocus.com/bid/94395

Multiple Symantec Products CVE-2016-5311 DLL Loading Local Privilege Escalation Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94295

Multiple Android Products CVE-2016-6564 Man in the Middle Security Bypass Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94393

Moxa SoftCMS Multiple Security Vulnerabilities
2016-11-24
http://www.securityfocus.com/bid/94394

Multiple Siemens IP CCTV Cameras CVE-2016-9155 Information Disclosure Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94392

IBM Sterling B2B Integrator CVE-2016-5890 Security Bypass Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94391

IBM Kenexa LCMS Premier on Cloud CVE-2016-5948 Cross Site Scripting Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94388

IBM Sterling B2B Integrator CVE-2016-3057 Unspecified Cross Site Scripting Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94389

IBM Kenexa LCMS Premier on Cloud CVE-2016-5937 Cross Site Request Forgery Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94390Multiple Symantec Products CVE-2016-5311 DLL Loading Local Privilege Escalation Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94295

LXC CVE-2016-8649 Directory Traversal Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94498

MoinMoin Multiple HTML Injection Vulnerabilities
2016-11-24
http://www.securityfocus.com/bid/94259

Oracle Java SE CVE-2016-5542 Remote Security Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93643

Wordpress csv2wpec-coupon Plugin CVE-2015-1000013 Arbitrary File Upload Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94497

WordPress mypixs Plugin CVE-2015-1000012 Local File Include Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94495

Ipswitch WhatsUp Gold CVE-2016-1000000 SQL Injection Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94496

Multiple Samsung Galaxy Product CVE-2016-9567 Security Bypass Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94494

Oracle Java SE CVE-2016-5582 Remote Security Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93623

Oracle Java SE CVE-2016-5554 Remote Security Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93637

Oracle Java SE CVE-2016-5556 Remote Security Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93618

Oracle Java SE CVE-2016-5597 Remote Security Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93636

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93628

Oracle Java SE CVE-2016-5568 Use-After-Free Remote Code Execution Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93621

libdwarf CVE-2016-9558 Integer Overflow Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94491

ImageMagick CVE-2016-9556 Heap Buffer Overflow Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94492

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2016-11-24
http://www.securityfocus.com/bid/93150

OpenSSL CVE-2016-6303 Integer Overflow Vulnerability
2016-11-24
http://www.securityfocus.com/bid/92984

OpenSSL 'BN_bn2dec()' Function Out of Bounds Write Denial of Service Vulnerability
2016-11-24
http://www.securityfocus.com/bid/92557

OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability
2016-11-24
http://www.securityfocus.com/bid/91081

Foxit Reader and PhantomPDF Multiple Security Vulnerabilities
2016-11-24
http://www.securityfocus.com/bid/94370

OpenSSL CVE-2016-6302 Denial of Service Vulnerability
2016-11-24
http://www.securityfocus.com/bid/92628

Red Hat Ceph CVE-2016-8626 Remote Denial of Service Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94488

JasPer 'jas_image.c' Integer Overflow Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94490

ImageMagick CVE-2016-9559 Denial of Service Vulnerability
2016-11-24
http://www.securityfocus.com/bid/94489

Apache HttpComponents Incomplete Fix CVE-2014-3577 SSL Validation Security Bypass Vulnerability
2016-11-24
http://www.securityfocus.com/bid/69258

TestDisk 'Check_OS2MB()' Method Stack Buffer Overflow Vulnerability
2016-11-24
http://www.securityfocus.com/bid/74410

OpenSSL CVE-2016-2181 Denial of Service Vulnerability
2016-11-24
http://www.securityfocus.com/bid/92982

OpenSSL CVE-2016-2180 Local Denial of Service Vulnerability
2016-11-24
http://www.securityfocus.com/bid/92117

OpenSSL CVE-2016-2179 Multiple Denial of Service Vulnerabilities
2016-11-24
http://www.securityfocus.com/bid/92987

SANS News

 

Threatpostpost

 

Exploit

UCanCode - Multiple Vulnerabilities

Linux Kernel 2.6.32-642 / 3.16.0-4 - 'inode' Integer Overflow

Windows x64 - Download & Execute Shellcode (358 bytes)

GNU Wget < 1.18 - Access List Bypass / Race Condition

Microsoft Windows Kernel win32k.sys - 'NtSetWindowLongPtr' Privilege Escalation...

23.11.2016

Bugtraq

CVE-2015-1251: Chrome blink Speech­Recognition­Controller use-after-free details 2016-11-23
Berend-Jan Wever (berendj nwever nl)

[SYSS-2016-106] EASY HOME Alarmanlagen-Set - Missing Protection against Replay Attacks 2016-11-23
matthias deeg syss de

[SYSS-2016-072] Olympia Protect 9061 - Missing Protection against Replay Attacks 2016-11-23
matthias deeg syss de

[CORE-2016-0007] - TP-LINK TDDP Multiple Vulnerabilities 2016-11-22
CORE Advisories Team (advisories coresecurity com)

CVE-2015-0050: Microsoft Internet Explorer 8 MSHTML SRunPointer::SpanQualifier/RunType OOB read details 2016-11-22
Berend-Jan Wever (berendj nwever nl)

Web vulnerabilities in Siemens S7-300/S7-400/CP343-1/CP443-1 2016-11-21
Andrea Barisani (andrea inversepath com)

[SECURITY] [DSA 3719-1] wireshark security update 2016-11-21
Sebastien Delafond (seb debian org)

Malware

Ransom.PrincessLocker

W32.Disttrack.B

Phishing

NatWest

23rd November 2016

New online login
authentication procedures

Apple Support

21st November 2016

Apple Account

USAA

19th November 2016

MY SUBJECT

Vulnerebility

Apache Commons FileUpload CVE-2014-0050 Denial Of Service Vulnerability
2016-11-23
http://www.securityfocus.com/bid/65400

Spring Framework CVE-2013-6429 Multiple XML External Entity Injection Vulnerabilities
2016-11-23
http://www.securityfocus.com/bid/64947

Apache Tomcat CVE-2016-5388 Security Bypass Vulnerability
2016-11-23
http://www.securityfocus.com/bid/91818

Apache Commons FileUpload CVE-2016-3092 Denial Of Service Vulnerability
2016-11-23
http://www.securityfocus.com/bid/91453

dotCMS Multiple SQL Injection Vulnerabilities
2016-11-23
http://www.securityfocus.com/bid/94311

ImageMagick ' MagickCore/fx.c' Heap Buffer Overflow Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94310

Linux Kernel 'crypto/algif_hash.c' Local Denial of Service Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94309

Jenkins 'Java Deserialization' Remote Code Execution Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94281

IBM Security Privileged Identity Manager Brute Force Authentication Bypass Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94308

pycsw CVE-2016-8640 SQL Injection Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94302

IBM Kenexa LMS on Cloud CVE-2016-6123 Unspecified Cross-Site Scripting Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94305

IBM Kenexa LMS on Cloud CVE-2016-6124 Arbitrary File Upload Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94306

IBM Connections CVE-2016-2957 Information Disclosure Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94300

IBM Kenexa LMS on Cloud CVE-2016-8913 Directory Traversal Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94304

BigTree CMS SQL Injection and Cross Site Scripting Vulnerabilities
2016-11-23
http://www.securityfocus.com/bid/94299

Exponent CMS SQL Injection Vulnerability and Information Disclosure Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94296

IBM Kenexa LMS on Cloud CVE-2016-8920 Unspecified Cross-Site Scripting Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94303

IBM Kenexa LMS on Cloud CVE-2016-6126 Directory Traversal Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94301

TYPO3 TC Directmail Extension Open Redirection Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94291

MuJS CVE-2016-9294 Null Pointer Deference Denial of Service Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94293

Git for Windows CVE-2016-9274 Unspecified Untrusted Search Path vulnerability
2016-11-23
http://www.securityfocus.com/bid/94289

p7zip Null Pointer Dereference CVE-2016-9296 Denial of Service Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94294

Samsung Mobile Phones SystemUI CVE-2016-9277 Denial of Service Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94292

TYPO3 Secure Download Form Extension Unspecified Cross Site Scripting Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94288

TYPO3 Member Infosheets Extension SQL Injection Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94290

Multiple Huawei Products CVE-2016-8773 Denial of Service Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94285

Samsung Mobile Phones Information Disclosure and Denial of Service Vulnerabilities
2016-11-23
http://www.securityfocus.com/bid/94283

TYPO3 Code Highlighter Extension Multiple Security Vulnerabilities
2016-11-23
http://www.securityfocus.com/bid/94287

TYPO3 Shibboleth Authentication Extension Unspecified SQL Injection Vulnerability
2016-11-23
http://www.securityfocus.com/bid/94286

libdwarf Multiple Heap Based Buffer Overflow Vulnerabilities
2016-11-23
http://www.securityfocus.com/bid/94284OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability
2016-11-23
http://www.securityfocus.com/bid/91081

Novell NetIQ Identity Manager CVE-2015-0787 HTML Injection Vulnerability
2016-11-23
http://www.securityfocus.com/bid/93972

Wordpress contus-video-comments Plugin 'save.php' Arbitrary File Upload Vulnerability
2016-11-23
http://www.securityfocus.com/bid/93967

Moodle CVE-2016-7919 Information Disclosure Vulnerability
2016-11-23
http://www.securityfocus.com/bid/93971

OpenSSL 'BN_bn2dec()' Function Out of Bounds Write Denial of Service Vulnerability
2016-11-23
http://www.securityfocus.com/bid/92557

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2016-11-23
http://www.securityfocus.com/bid/93153

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2016-11-23
http://www.securityfocus.com/bid/92630

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2016-11-23
http://www.securityfocus.com/bid/91319

SAP Hybris Management Console CVE-2016-6858 HTML Injection Vulnerability
2016-11-23
http://www.securityfocus.com/bid/93966

Joomla! Core CVE-2016-9081 Security Bypass Vulnerability
2016-11-23
http://www.securityfocus.com/bid/93969

HP ThinkPwn UEFI BIOS 'SmmRuntime' Remote Privilege Escalation Vulnerability
2016-11-23
http://www.securityfocus.com/bid/93958

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-11-23
http://www.securityfocus.com/bid/93964

Cisco AsyncOS CVE-2016-1480 Remote Security Bypass Vulnerability
2016-11-23
http://www.securityfocus.com/bid/93914

HP System Management Homepage Multiple Security Vulnerabilities
2016-11-23
http://www.securityfocus.com/bid/93961

SAP Hybris Management Console CVE-2016-6857 HTML Injection Vulnerability
2016-11-23
http://www.securityfocus.com/bid/93960

QEMU 'v9fs_link()' Function Denial of Service Vulnerability
2016-11-23
http://www.securityfocus.com/bid/93965

PHP CVE-2016-5385 Security Bypass Vulnerability
2016-11-23
http://www.securityfocus.com/bid/91821

Apache HTTP Server CVE-2016-5387 Security Bypass Vulnerability
2016-11-23
http://www.securityfocus.com/bid/91816

OpenSSL CVE-2016-2106 Integer Overflow Vulnerability
2016-11-23
http://www.securityfocus.com/bid/89744

PHP 'snmp.c' Remote Format String Vulnerability
2016-11-23
http://www.securityfocus.com/bid/85800

Apache Tomcat CVE-2016-5388 Security Bypass Vulnerability
2016-11-23
http://www.securityfocus.com/bid/91818

QEMU 'hw/9pfs/9p.c' Integer Overflow Vulnerability
2016-11-23
http://www.securityfocus.com/bid/93956

SAP Hybris CVE-2016-6859 Information Disclosure Vulnerability
2016-11-23
http://www.securityfocus.com/bid/93959

QEMU 'hw/9pfs/9p.c' Denial of Service Vulnerability
2016-11-23
http://www.securityfocus.com/bid/93962

SAP Hybris Management Console CVE-2016-6856 Cross Site Scripting Vulnerability
2016-11-23
http://www.securityfocus.com/bid/93954

QEMU 'hw/net/eepro100.c' Denial of Service Vulnerability
2016-11-23
http://www.securityfocus.com/bid/93957

PHP 'php_raw_url_encode()' Function Integer Overflow Vulnerability
2016-11-23
http://www.securityfocus.com/bid/85801

PHP 'ext/phar/phar_object.c' Heap Buffer Overflow Vulnerability
2016-11-23
http://www.securityfocus.com/bid/89154

PHP CVE-2016-4539 Remote Denial Of Service Vulnerability
2016-11-23
http://www.securityfocus.com/bid/90174

PHP 'bcmath.c' Multiple Local Heap Overflow Vulnerabilities
2016-11-23
http://www.securityfocus.com/bid/90173

SANS News

Mapping Attack Methodology to Controls

Threatpostpost

Microsoft Cutting Off SHA-1 Support in February for Edge, IE 11

InPage Zero Day Used in Attacks Against Banks

Uber Portal Leaked Names, Phone Numbers, Email Addresses, Unique Identifiers

Exploit

Linux Kenrel 2.6.10 < 2.6.31.5 - 'pipe.c' Privilege Escalation

Linux Kernel 2.6.32-rc1 (x86-64) - Register Leak

Linux Kernel 2.6.18 - 'move_pages()' Information Leak

Linux Kernel 2.6.32-642 / 3.16.0-4 - 'inode' Integer Overflow (PoC)

Linux/x86-64 - /bin/sh -c reboot Shellcode (89 bytes)

Crestron AM-100 - Multiple Vulnerabilities

SAP NetWeaver AS JAVA - 'BC-BMT-BPM-DSK' XML External Entity Injection

EasyPHP Devserver 16.1.1 - Cross-Site Request Forgery / Remote Command Execution

AppFusions Doxygen for Atlassian Confluence 1.3.2 - Cross-Site Scripting

Microsoft Internet Explorer 8 MSHTML - 'Ptls5::Ls­Find­Span­Visual­Boundaries' Mem...

TP-LINK TDDP - Multiple Vulnerabilities

22.11.2016

Bugtraq

[CORE-2016-0007] - TP-LINK TDDP Multiple Vulnerabilities 2016-11-22
CORE Advisories Team (advisories coresecurity com)

CVE-2015-0050: Microsoft Internet Explorer 8 MSHTML SRunPointer::SpanQualifier/RunType OOB read details 2016-11-22
Berend-Jan Wever (berendj nwever nl)

Web vulnerabilities in Siemens S7-300/S7-400/CP343-1/CP443-1 2016-11-21
Andrea Barisani (andrea inversepath com)

[SECURITY] [DSA 3719-1] wireshark security update 2016-11-21
Sebastien Delafond (seb debian org)

[ERPSCAN-16-034] SAP NetWeaver AS JAVA - XXE vulnerability in BC-BMT-BPM-DSK component 2016-11-21
ERPScan inc (erpscan online gmail com)

Nginx (Debian-based distros) - Root Privilege Escalation (CVE-2016-1247) 2016-11-21
Dawid Golunski (dawid legalhackers com)

[RCESEC-2016-009] AppFusions Doxygen for Atlassian Confluence v1.3.2 renderContent() Persistent Cross-Site Scripting 2016-11-20
Julien Ahrens (info rcesecurity com)

[RCESEC-2016-008] AppFusions Doxygen for Atlassian Confluence v1.3.2 renderContent() Full Path Information Disclosure 2016-11-20
Julien Ahrens (info rcesecurity com)

Malware

 

Phishing

 

Vulnerebility

IBM Business Process Manager Advanced and WebSphere Process Server Security Bypass Vulnerability
2016-11-22
http://www.securityfocus.com/bid/85089

IBM Mashups Center CVE-2015-7400 XML External Entity Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/77986

IBM Mashups CVE-2015-7407 Cross Site Request Forgery Vulnerability
2016-11-22
http://www.securityfocus.com/bid/78455

OpenSSL CVE-2015-3197 Security Bypass Vulnerability
2016-11-22
http://www.securityfocus.com/bid/82237

Cryptsetup CVE-2016-4484 Multiple Local Security Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/94315

OpenSSL CVE-2016-0701 Security Bypass Vulnerability
2016-11-22
http://www.securityfocus.com/bid/82233

OpenSSL CVE-2016-0797 Multiple Integer Overflow Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/83763

Oracle Java SE CVE-2016-5573 Remote Security Vulnerability
2016-11-22
http://www.securityfocus.com/bid/93628

mongodb-clients CVE-2016-6494 Local Information Disclosure Vulnerability
2016-11-22
http://www.securityfocus.com/bid/92204

Apache Commons FileUpload CVE-2016-3092 Denial Of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/91453

Multiple IBM DB2 Products CVE-2016-5995 Local Privilege Escalation Vulnerability
2016-11-22
http://www.securityfocus.com/bid/93012

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2016-11-22
http://www.securityfocus.com/bid/91319

OpenSSL 'BN_bn2dec()' Function Out of Bounds Write Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/92557

SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability
2016-11-22
http://www.securityfocus.com/bid/92630

XStream CVE-2016-3674 XML External Entity Multiple Information Disclosure Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/85381

Perl CVE-2016-1238 Local Privilege Escalation Vulnerability
2016-11-22
http://www.securityfocus.com/bid/92136

Perl CVE-2015-8853 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/86707

Perl 'perl.c' CVE-2016-2381 Security Bypass Vulnerability
2016-11-22
http://www.securityfocus.com/bid/83802

Apache Tomcat CVE-2016-6816 Security Bypass Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94461

Apache Tomcat CVE-2016-6817 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94462

w3m Multiple Security Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/94464

w3m Multiple Security Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/94407

Multiple Siemens Products Cross Site Request Forgery and Information Disclosure Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/94460

Google Chrome Multiple Security Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/94196

OpenSSL CVE-2016-2181 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/92982

OpenSSL CVE-2016-7052 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/93171

OpenSSL CVE-2016-2179 Multiple Denial of Service Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/92987

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/93153

OpenSSH CVE-2016-6210 User Enumeration Vulnerability
2016-11-22
http://www.securityfocus.com/bid/91812

OpenSSL CVE-2016-6304 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/93150

Microsoft Windows Kernel 'Win32k.sys' CVE-2016-7255 Local Privilege Escalation Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94064

LibTIFF 'tools/tiffcrop.c' Multiple Heap Buffer Overflow Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/94424

PHP CVE-2016-7418 Out-of-Bounds Read Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/93011

PHP CVE-2016-7413 Use After Free Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/93006

PHP 'ext/spl/spl_array.c' Remote Denial Of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/93007

PHP CVE-2016-7131 NULL pointer Dereference Remote Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/92768

PHP 'ext/standard/var_unserializer.c' Memory Corruption Vulnerability
2016-11-22
http://www.securityfocus.com/bid/93009

PHP 'ext/exif/exif.c' Information Disclosure Vulnerability
2016-11-22
http://www.securityfocus.com/bid/92564

PHP CVE-2016-7132 NULL pointer Dereference Remote Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/92767

PHP 'ext/gd/gd.c' Information Disclosure Vulnerability
2016-11-22
http://www.securityfocus.com/bid/92757

PHP 'ext/wddx/wddx.c' Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/92764

PHP 'wddx_deserialize()' Function Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/92758

PHP 'ext/gd/gd.c' Heap Based Buffer Overflow Vulnerability
2016-11-22
http://www.securityfocus.com/bid/92755

PHP 'ext/session/session.c' Remote Code Injection Vulnerability
2016-11-22
http://www.securityfocus.com/bid/92552

PHP '__wakeup()' Function Remote Code Execution Vulnerability
2016-11-22
http://www.securityfocus.com/bid/92756

Mozilla Firefox Multiple Security Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/92258

Mozilla Firefox Multiple Security Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/92261

Moodle CVE-2016-8644 Information Disclosure Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94458

Moodle MSA-16-0026 Information Disclosure Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94456

Moodle CVE-2016-8643 Security Bypass Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94457

NTP CVE-2016-7433 Local Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94455

NTP CVE-2016-7426 Local Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94451

NTP CVE-2016-7429 Local Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94453

NTP CVE-2016-9310 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94452

NTP CVE-2016-7431 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94454

NTP CVE-2016-7434 Local Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94448

NTP CVE-2016-9312 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94450

AppFusions Doxygen for Atlassian Confluence HTML Injection Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94449

NTP CVE-2016-7428 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94446

Ipsilon CVE-2016-8638 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94439Mozilla Firefox Multiple Security Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/92258

Mozilla Firefox Multiple Security Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/92261

Moodle CVE-2016-8644 Information Disclosure Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94458

Moodle MSA-16-0026 Information Disclosure Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94456

Moodle CVE-2016-8643 Security Bypass Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94457

NTP CVE-2016-7433 Local Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94455

NTP CVE-2016-7426 Local Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94451

NTP CVE-2016-7429 Local Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94453

NTP CVE-2016-9310 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94452

NTP CVE-2016-7431 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94454

NTP CVE-2016-7434 Local Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94448

NTP CVE-2016-9312 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94450

AppFusions Doxygen for Atlassian Confluence HTML Injection Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94449

NTP CVE-2016-7428 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94446

Ipsilon CVE-2016-8638 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94439

NTP CVE-2016-7427 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94447

PHP 'unserialize()' Function Use After Free Remote Code Execution Vulnerability
2016-11-22
http://www.securityfocus.com/bid/93577

Wireshark Multiple Denial of Service Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/94369

MIT Kerberos 5 CVE-2015-2695 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/90687

MIT Kerberos 5 CVE-2015-2696 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/90675

MIT Kerberos 5 CVE-2015-2697 Remote Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/77581

AppFusions Doxygen for Atlassian Confluence Full Path Information Disclosure Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94445

Multiple IBM Products CVE-2016-0203 Local Information Disclosure Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94440

IBM Social Rendering Templates for Digital Data Connector Cross Site Scripting Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94443

AppFusions Doxygen for Atlassian Confluence Directory Traversal Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94442

NTP CVE-2016-9311 NULL Pointer Dereference Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94444

Moodle CVE-2016-8642 Security Bypass Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94441

Multiple IBM Products CVE-2015-7494 Local Security Bypass Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94438

imlib2 CVE-2014-9764 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/90962

Imlib2 'image.h' Integer Overflow Vulnerability
2016-11-22
http://www.securityfocus.com/bid/86073OpenSSL CVE-2016-2180 Local Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/92117

OpenSSL CVE-2016-6302 Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/92628

OpenSSL CVE-2016-6306 Local Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/93153

Barco ClickShare CVE-2016-3152 Arbitrary File Disclosure Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94326

Barco ClickShare CVE-2016-3149 Remote Code Execution Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94323

Exponent CMS CVE-2016-9287 SQL Injection Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94322

Google Pixel Unspecified Remote Code Execution Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94321

OwnCloud Multiple Security vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/94318

Apache Commons FileUpload CVE-2016-3092 Denial Of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/91453

Apache Struts CVE-2016-1181 Remote Code Execution Vulnerability
2016-11-22
http://www.securityfocus.com/bid/91068

Apache Struts CVE-2016-1182 Security Bypass Vulnerability
2016-11-22
http://www.securityfocus.com/bid/91067

DERAEMON-CMS CVE-2016-7813 Multiple Cross Site Scripting Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/94320

IBM WebSphere Application Server CVE-2016-0359 HTTP Response Splitting Vulnerability
2016-11-22
http://www.securityfocus.com/bid/91484

Adobe Flash Player Unspecified Privilege Escalation Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94319

OpenSSL 'crypto/asn1/a_d2i_fp.c' Local Denial of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/87940

OpenSSL CVE-2016-2105 Buffer Overflow Vulnerability
2016-11-22
http://www.securityfocus.com/bid/89757

OpenSSL CVE-2016-2176 Information Disclosure Vulnerability
2016-11-22
http://www.securityfocus.com/bid/89746

Cryptsetup CVE-2016-4484 Multiple Local Security Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/94315

OpenSSL CVE-2016-2106 Integer Overflow Vulnerability
2016-11-22
http://www.securityfocus.com/bid/89744

Apple Safari Unspecified Remote Code Execution Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94317

Ubuntu Linux 'libgstnsf.so' Remote Code Execution Vulnerability
2016-11-22
http://www.securityfocus.com/bid/94316

Python DLL Loading 'readline.pyd' Remote Code Execution Vulnerability
2016-11-22
http://www.securityfocus.com/bid/76929

Apache Struts ClassLoader Manipulation CVE-2014-0114 Security Bypass Vulnerability
2016-11-22
http://www.securityfocus.com/bid/67121

VMware Workstation Multiple Unspecified Remote Privilege Escalation Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/94314

Microsoft Edge Multiple Unspecified Privilege Escalation Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/94313

Apache Groovy CVE-2015-3253 Remote Code Execution Vulnerability
2016-11-22
http://www.securityfocus.com/bid/75919

Apache Xalan-Java Library CVE-2014-0107 Security Bypass Vulnerability
2016-11-22
http://www.securityfocus.com/bid/66397

Apache Tomcat CVE-2016-0763 Security Bypass Vulnerability
2016-11-22
http://www.securityfocus.com/bid/83326

Apache Commons FileUpload CVE-2014-0050 Denial Of Service Vulnerability
2016-11-22
http://www.securityfocus.com/bid/65400

Spring Framework CVE-2013-6429 Multiple XML External Entity Injection Vulnerabilities
2016-11-22
http://www.securityfocus.com/bid/64947

SANS News

ZIP With Comment

Threatpostpost

Microsoft Cutting Off SHA-1 Support in February for Edge, IE 11

Office 365 Vulnerability Identified Bogus Microsoft.com Email as Valid

DoD Publishes Vulnerability Disclosure Policy

WordPress Plugins Leave Black Friday Shoppers Vulnerable

Exploit Code Released for NTP Vulnerability

Exploit

EasyPHP Devserver 16.1.1 - Cross-Site Request Forgery / Remote Command Execution

Wordpress Plugin Olimometer 2.56 - SQL Injection

Huawei UTPS - Unquoted Service Path Privilege Escalation

Linux/x86-64 - /bin/sh -c reboot Shellcode (89 bytes)

Tetris Heap Spraying: Spraying the Heap on a Budget

Microsoft Internet Explorer 8 jscript - 'Reg­Exp­Base::FBad­Header' Use-After-Free (...

Microsoft Edge - 'CText­Extractor::Get­Block­Text' Out-of-Bounds Read (MS16-104)

Microsoft Edge Scripting Engine - Memory Corruption (MS16-129)

Dlink DIR Routers - Unauthenticated HNAP Login Stack Buffer Overflow (Metasploit)

Wordpress Plugin Olimometer 2.56 - SQL Injection

FUDforum 3.0.6 - Local File Inclusion

FUDforum 3.0.6 - Cross-Site Scripting / Cross-Site Request Forgery

LEPTON 2.2.2 - Remote Code Execution

LEPTON 2.2.2 - SQL Injection

Mezzanine 4.2.0 - Cross-Site Scripting

WordPress Plugin Instagram Feed 1.4.6.2 - Cross-Site Request Forgery

NTP 4.2.8p8 - Denial of Service

21.11.2016

Bugtraq

[SECURITY] [DSA 3719-1] wireshark security update 2016-11-21
Sebastien Delafond (seb debian org)

[ERPSCAN-16-034] SAP NetWeaver AS JAVA - XXE vulnerability in BC-BMT-BPM-DSK component 2016-11-21
ERPScan inc (erpscan online gmail com)

Nginx (Debian-based distros) - Root Privilege Escalation (CVE-2016-1247) 2016-11-21
Dawid Golunski (dawid legalhackers com)

[RCESEC-2016-009] AppFusions Doxygen for Atlassian Confluence v1.3.2 renderContent() Persistent Cross-Site Scripting 2016-11-20
Julien Ahrens (info rcesecurity com)

[RCESEC-2016-008] AppFusions Doxygen for Atlassian Confluence v1.3.2 renderContent() Full Path Information Disclosure 2016-11-20
Julien Ahrens (info rcesecurity com)

[RCESEC-2016-007] AppFusions Doxygen for Atlassian Confluence v1.3.0 getTemporaryDirectory() tempId Path Traversal/Remote Code Execution 2016-11-20
Julien Ahrens (julien ahrens rcesecurity com)

Multiple issues in OpManager 12100 & 12200 2016-11-20
Michael Heydon (michael mheydon net)

[security bulletin] HPSBHF03675 rev.1 - HPE Integrated Lights-Out 3 and 4 (iLO 3, iLO 4), Cross-Site Scripting (XSS) 2016-11-20
security-alert hpe com

Putty Cleartext Password Storage 2016-11-20
apparitionsec gmail com/hyp3rlinx

Malware

Ransom.Crypton

Backdoor.Freeload

W97M.Downloader.L

Exp.CVE-2016-7857

Exp.CVE-2016-7858

Exp.CVE-2016-7859

Exp.CVE-2016-7860

Exp.CVE-2016-7861

Exp.CVE-2016-7862

Exp.CVE-2016-7863

Exp.CVE-2016-7864

Exp.CVE-2016-7865

Phishing

Apple Support

21st November 2016

Apple Account

USAA

19th November 2016

MY SUBJECT

Vulnerebility

Apple iOS and Mac OS Multiple Security Bypass Vulnerabilities
2016-11-21
http://www.securityfocus.com/bid/94429

Apple iOS Information Disclosure and Denial of Service Vulnerabilities
2016-11-21
http://www.securityfocus.com/bid/94432

Jasper 'jpc_tsfb.c' Stack Buffer Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94428

Apple Mac OS X Multiple Remote Code Execution Vulnerabilities
2016-11-21
http://www.securityfocus.com/bid/94431

WebKit CVE-2016-4764 Multiple Memory Corruption Vulnerabilities
2016-11-21
http://www.securityfocus.com/bid/94430

HP Integrated Lights-Out CVE-2016-4406 Unspecified Cross Site Scripting Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94426

Google Android '/native/libs/binder/Parcel.cpp' Security Bypass Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94425

GStreamer Bad Plug-ins CVE-2016-9447 Buffer Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94427

LibTIFF 'tools/tiffcrop.c' Multiple Heap Buffer Overflow Vulnerabilities
2016-11-21
http://www.securityfocus.com/bid/94424

GStreamer Bad Plug-ins 'vmnc/vmncdec.c' Information Disclosure Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94423

ISC BIND 'buffer.c' Remote Denial of Service Vulnerability
2016-11-21
http://www.securityfocus.com/bid/93188

ISC BIND CVE-2016-2775 Remote Denial of Service Vulnerability
2016-11-21
http://www.securityfocus.com/bid/92037

Multiple Symantec Products CVE-2016-5311 DLL Loading Local Privilege Escalation Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94295

GStreamer Bad Plug-ins CVE-2016-9445 Integer Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94421

Drupal Core Multiple Security Vulnerabilities
2016-11-21
http://www.securityfocus.com/bid/94367

LibTIFF 'tif_dirread.c' Incomplete Fix Denial of Service Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94420

LibTIFF 'tiff2pdf.c' Out Of Bounds Write Denial of Service Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94406

LibTIFF 'tif_print.c' Out Of Bounds Read Denial of Service Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94419

Apache OpenOffice CVE-2016-6803 Local Privilege Escalation Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94418

HDF5 CVE-2016-4333 Local Heap Buffer Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94416

HDF5 CVE-2016-4332 Local Heap Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94417

IBM Connections CVE-2016-2953 Man in the Middle Information Disclosure Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94415

HDF5 CVE-2016-4330 Local Heap Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94414

IBM Web Content Manager Production Analytics Unspecified Cross Site Scripting Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94413

w3m Multiple Security Vulnerabilities
2016-11-21
http://www.securityfocus.com/bid/94407

RETIRED: Oracle Integrated Lights Out Manager CVE-2015-5600 Remote Security Vulnerability
2016-11-21
http://www.securityfocus.com/bid/92012

OpenSSH Login Handling Security Bypass Weakness
2016-11-21
http://www.securityfocus.com/bid/75990

HDF5 CVE-2016-4331 Local Heap Buffer Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94411

WordPress Post Indexer Plugin 'classes/class.model.php' SQL Injection Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94410

Huawei Flybox B660 3G/4G Router Authentication Bypass Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94408ISC BIND 'buffer.c' Remote Denial of Service Vulnerability
2016-11-21
http://www.securityfocus.com/bid/93188

ISC BIND CVE-2016-2775 Remote Denial of Service Vulnerability
2016-11-21
http://www.securityfocus.com/bid/92037

Multiple Symantec Products CVE-2016-5311 DLL Loading Local Privilege Escalation Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94295

Drupal Core Multiple Security Vulnerabilities
2016-11-21
http://www.securityfocus.com/bid/94367

LibTIFF 'tiff2pdf.c' Out Of Bounds Write Denial of Service Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94406

LibTIFF 'tif_print.c' Out Of Bounds Read Denial of Service Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94419

Apache OpenOffice CVE-2016-6803 Local Privilege Escalation Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94418

HDF5 CVE-2016-4333 Local Heap Buffer Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94416

HDF5 CVE-2016-4332 Local Heap Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94417

IBM Connections CVE-2016-2953 Man in the Middle Information Disclosure Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94415

HDF5 CVE-2016-4330 Local Heap Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94414

IBM Web Content Manager Production Analytics Unspecified Cross Site Scripting Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94413

w3m Multiple Security Vulnerabilities
2016-11-21
http://www.securityfocus.com/bid/94407

RETIRED: Oracle Integrated Lights Out Manager CVE-2015-5600 Remote Security Vulnerability
2016-11-21
http://www.securityfocus.com/bid/92012

OpenSSH Login Handling Security Bypass Weakness
2016-11-21
http://www.securityfocus.com/bid/75990

HDF5 CVE-2016-4331 Local Heap Buffer Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94411

WordPress Post Indexer Plugin 'classes/class.model.php' SQL Injection Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94410

Huawei Flybox B660 3G/4G Router Authentication Bypass Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94408

Lepton Multiple Security Vulnerabilities
2016-11-21
http://www.securityfocus.com/bid/94412

ImageMagick Multiple Heap Overflow Vulnerabilities
2016-11-21
http://www.securityfocus.com/bid/90611

RETIRED: Linux Kernel Random Memory Pointer Dereference Denial of Service Vulnerability
2016-11-21
http://www.securityfocus.com/bid/66775

Multiple Lenovo ThinkPad Products CVE-2016-8222 Local Security Bypass Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94409

Multiple Huawei Products CVE-2016-8796 Denial of Service Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94405

Huawei Smart Phones Multiple Local Denial of Service Vulnerabilities
2016-11-21
http://www.securityfocus.com/bid/94404

Huawei UTPS CVE-2016-8769 Local Privilege Escalation Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94403

Multiple Huawei CloudEngine Products CVE-2016-8790 Buffer Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94402

Palo Alto Networks PAN-OS CVE-2016-9150 Buffer Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94399

IBM Spectrum Scale and IBM GPFS Local Command Execution Vulnerability
2016-11-21
http://www.securityfocus.com/bid/92408

IBM Spectrum Scale and IBM GPFS CVE-2016-2984 Local Command Execution Vulnerability
2016-11-21
http://www.securityfocus.com/bid/92410

IBM WebSphere Application Server CVE-2016-5986 Information Disclosure Vulnerability
2016-11-21
http://www.securityfocus.com/bid/93013Apache OpenOffice CVE-2016-6803 Local Privilege Escalation Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94418

HDF5 CVE-2016-4333 Local Heap Buffer Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94416

HDF5 CVE-2016-4332 Local Heap Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94417

IBM Connections CVE-2016-2953 Man in the Middle Information Disclosure Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94415

HDF5 CVE-2016-4330 Local Heap Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94414

IBM Web Content Manager Production Analytics Unspecified Cross Site Scripting Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94413

w3m Multiple Security Vulnerabilities
2016-11-21
http://www.securityfocus.com/bid/94407

RETIRED: Oracle Integrated Lights Out Manager CVE-2015-5600 Remote Security Vulnerability
2016-11-21
http://www.securityfocus.com/bid/92012

OpenSSH Login Handling Security Bypass Weakness
2016-11-21
http://www.securityfocus.com/bid/75990

HDF5 CVE-2016-4331 Local Heap Buffer Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94411

WordPress Post Indexer Plugin 'classes/class.model.php' SQL Injection Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94410

Huawei Flybox B660 3G/4G Router Authentication Bypass Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94408

Lepton Multiple Security Vulnerabilities
2016-11-21
http://www.securityfocus.com/bid/94412

ImageMagick Multiple Heap Overflow Vulnerabilities
2016-11-21
http://www.securityfocus.com/bid/90611

RETIRED: Linux Kernel Random Memory Pointer Dereference Denial of Service Vulnerability
2016-11-21
http://www.securityfocus.com/bid/66775

Multiple Lenovo ThinkPad Products CVE-2016-8222 Local Security Bypass Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94409

Multiple Huawei Products CVE-2016-8796 Denial of Service Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94405

LibTIFF 'tiff2pdf.c' Out Of Bounds Write Denial of Service Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94406

Huawei Smart Phones Multiple Local Denial of Service Vulnerabilities
2016-11-21
http://www.securityfocus.com/bid/94404

Huawei UTPS CVE-2016-8769 Local Privilege Escalation Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94403

Multiple Huawei CloudEngine Products CVE-2016-8790 Buffer Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94402

Palo Alto Networks PAN-OS CVE-2016-9150 Buffer Overflow Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94399

IBM Spectrum Scale and IBM GPFS Local Command Execution Vulnerability
2016-11-21
http://www.securityfocus.com/bid/92408

IBM Spectrum Scale and IBM GPFS CVE-2016-2984 Local Command Execution Vulnerability
2016-11-21
http://www.securityfocus.com/bid/92410

IBM WebSphere Application Server CVE-2016-5986 Information Disclosure Vulnerability
2016-11-21
http://www.securityfocus.com/bid/93013

Palo Alto Networks PAN-OS CVE-2016-9149 XPath Injection Vulnerability
2016-11-21
http://www.securityfocus.com/bid/94401

curl/libcURL CVE-2016-7167 Multiple Integer Overflow Vulnerabilities
2016-11-21
http://www.securityfocus.com/bid/92975

Apache Struts CVE-2016-4003 Cross Site Scripting Vulnerability
2016-11-21
http://www.securityfocus.com/bid/86311

Apache Struts CVE-2016-3093 Denial of Service Vulnerability
2016-11-21
http://www.securityfocus.com/bid/90961

OpenSSL CVE-2016-2176 Information Disclosure Vulnerability
2016-11-21
http://www.securityfocus.com/bid/89746

SANS News

How many ?Epoch? times? Epocalypse.py timestamp converter

Threatpostpost

Nemucod Infections Spreading Locky Over Facebook

Credentials Accessible in Siemens-Branded CCTV Cameras

Exploit

CMS Made Simple 2.1.5 - Cross-Site Scripting

ScriptCase 8.1.053 - Multiple Vulnerabilities

20.11.2016

Bugtraq

CVE-2016-3247 Microsoft Edge CTextExtractor::GetBlockText OOB read details 2016-11-18
Berend-Jan Wever (berendj nwever nl)

Reason Core Security v1.2.0.1 - Unqoted Path Privilege Escalation Vulnerability 2016-11-18
Vulnerability Lab (research vulnerability-lab com)

Malware

 

Phishing

Apple Support

19th November 2016

Apple Account

SunTrust Bank

18th November 2016

Online Access Suspended

Chase Online

18th November 2016

Chase Online Notification

SERVICE ACCOUNT

18th November 2016

Account update - Receipt
#97548978

Vulnerebility

Node.js CVE-2015-6764 Out of Bounds Denial of Service Vulnerability
2016-11-19
http://www.securityfocus.com/bid/78209

Google Chrome Prior to 50.0.2661.102 Multiple Security Vulnerabilities
2016-11-19
http://www.securityfocus.com/bid/90584

OpenSSL CVE-2015-3194 Denial of Service Vulnerability
2016-11-19
http://www.securityfocus.com/bid/78623

Node.js CVE-2016-2216 HTTP Response Splitting Vulnerability
2016-11-19
http://www.securityfocus.com/bid/83141

Node.js CVE-2016-2086 HTTP Request Smuggling Vulnerability
2016-11-19
http://www.securityfocus.com/bid/83282

Node.js CVE-2015-8027 Unspecified Denial of Service Vulnerability
2016-11-19
http://www.securityfocus.com/bid/78207

OpenSSL CVE-2016-0705 Denial of Service Vulnerability
2016-11-19
http://www.securityfocus.com/bid/83754

OpenSSL CVE-2016-0797 Multiple Integer Overflow Vulnerabilities
2016-11-19
http://www.securityfocus.com/bid/83763

Honeywell Experion PKS CVE-2016-8344 Denial of Service Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93950

WebKit Memory Corruption and Information Disclosure Vulnerabilities
2016-11-19
http://www.securityfocus.com/bid/93949

BMC Server Automation RSCD Agent CVE-2016-5063 Authorization Bypass Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93948

Citrix NetScaler ADC CVE-2016-9028 Open Redirection Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93947

Adobe Flash Player CVE-2016-7855 Use After Free Remote Code Execution Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93861

Juniper Junos 'udp6_ctlinput()' Function Denial of Service Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93946

Linux Kernel CVE-2016-5195 Local Privilege Escalation Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93793

Apache CloudStack CVE-2016-6813 Authorization Bypass Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93945

FreeImage CVE-2016-5684 Remote Code Execution Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93287

dcraw 'dcraw.cc' Integer Overflow Vulnerability
2016-11-19
http://www.securityfocus.com/bid/74590

Apache Tomcat Security Manager CVE-2016-6796 Security Bypass Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93944

Apache Tomcat CVE-2016-6794 Security Bypass Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93943

Apache Commons FileUpload CVE-2016-3092 Denial Of Service Vulnerability
2016-11-19
http://www.securityfocus.com/bid/91453

Apache Tomcat Security Manager CVE-2016-5018 Security Bypass Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93942

Apache Tomcat CVE-2016-6797 Security Bypass Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93940

Apache Tomcat CVE-2016-0762 Information Disclosure Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93939

Python urllib3 CVE-2016-9015 TLS Certificate Validation Security Bypass Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93941

Iceni Argus 'ipfSetColourStroke()' Function Remote Stack Buffer Overflow Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93938

Iceni Argus 'ipNameAdd()' Function Remote Stack Buffer Overflow Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93936

GNU Tar CVE-2016-6321 Security Bypass Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93937

Huawei Mate 8 CVE-2016-8756 Local Denial of Service Vulnerability
2016-11-19
http://www.securityfocus.com/bid/93935

Cisco ACE CVE-2016-6399 Denial of Service Vulnerability
2016-11-19
http://www.securityfocus.com/bid/92867

SANS News

2016-11-18 example of KaiXin EK activity

VBA Shellcode and Windows 10

Threatpostpost

Qualcomm and HackerOne Partner on Bounty Program

Drupal Fixes ‘Moderately Critical’ Vulnerabilities in Core Engine

Exploit

Microsoft Edge - 'Array.reverse' Overflow

Microsoft Edge - 'Array.filter' Info Leak

Microsoft Edge - 'FillFromPrototypes' Type Confusion

Palo Alto Networks PanOS root_reboot - Privilege Escalation

Palo Alto Networks PanOS root_trace - Privilege Escalation

Palo Alto Networks PanOS appweb3 - Stack Buffer Overflow

18.11.2016

Bugtraq

CVE-2016-3247 Microsoft Edge CTextExtractor::GetBlockText OOB read details 2016-11-18
Berend-Jan Wever (berendj nwever nl)

Reason Core Security v1.2.0.1 - Unqoted Path Privilege Escalation Vulnerability 2016-11-18
Vulnerability Lab (research vulnerability-lab com)

[ERPSCAN-16-031] SAP NetWeaver AS ABAP â?? directory traversal using READ DATASET 2016-11-18
ERPScan inc (erpscan online gmail com)

[ERPSCAN-16-032] SAP Telnet Console â?? Directory traversal vulnerability 2016-11-18

Executable installers are vulnerable^WEVIL (case 41): EmsiSoft's Emergency Kit allows elevation of privilege for everybody 2016-11-17
Stefan Kanthak (stefan kanthak nexgo de)

[SECURITY] [DSA 3716-1] firefox-esr security update 2016-11-16
Moritz Muehlenhoff (jmm debian org)

[security bulletin] HPSBGN03676 rev.1 - HPE Helion OpenStack Glance Image Service, Remote Denial of Service (DoS) 2016-11-16
security-alert hpe com

CVE-2015-2482 MSIE 8 jscript RegExpBase::FBadHeader use-after-free details 2016-11-16
Berend-Jan Wever (berendj nwever nl)

[security bulletin] HPSBST03671 rev.1 - HPE StoreEver MSL6480 Tape Library, Remote Unauthorized Disclosure of Information 2016-11-15
security-alert hpe com

Actiontec WCB3000N (Telus Branded) Local Unauthenticated Privilege Elevation and Password Reset 2016-11-15
Andrew Klaus (andrewklaus gmail com)

CVE-2016-4484: - Cryptsetup Initrd root Shell 2016-11-14
Hector Marco (hmarco hmarco org) (1 replies)

Re: [oss-security] CVE-2016-4484: - Cryptsetup Initrd root Shell 2016-11-15
Leo Famulari (leo famulari name)

[security bulletin] HPSBUX03665 rev.2 - HP-UX Tomcat-based Servlet Engine, Remote Denial of Service (DoS) and URL Redirection 2016-11-14
security-alert hpe com

[security bulletin] HPSBGN03669 rev.1 - HPE SiteScope, Local Elevation of Privilege, Remote Denial of Service, Arbitrary Code Execution and Cross-Site Request Forgery 2016-11-14
security-alert hpe com

SEC Consult SA-20161114-0 :: Multiple vulnerabilities in I-Panda SolarEagle - Solar Controller Administration Software / MPPT Solar Controller SMART2 2016-11-14
SEC Consult Vulnerability Lab (research sec-consult com)

WHM Panel Mail Delivery Reports crash database Vulnerability 2016-11-13
iedb team gmail com

Multiple vulnerabilities in Barco Clickshare 2016-11-14
vincent ruijter kpn com

WHM Panel Mail Delivery Reports crash database Vulnerability 2016-11-12
iedb team gmail com

CVE-2015-0040: Microsoft Internet Explorer 11 MSHTML CMapElement::Notify use-after-free details 2016-11-14
Berend-Jan Wever (berendj nwever nl)

[CVE-2016-8736] Apache Openmeetings RMI Registry Java Deserialization RCE 2016-11-13
Maxim Solodovnik (solomax apache org)

CVE-2016-9277: A IDX Out of Bound vulnerability in systemui can make crash and ui restart 2016-11-12
unlimitsec gmail com

[SECURITY] [DSA 3711-1] mariadb-10.0 security update 2016-11-11
Salvatore Bonaccorso (carnil debian org)

Malware

PWS:Win32/Hoardy
Trojan:Win32/Godzilia.A

TrojanDownloader:JS/Crimace.A

Ransom:Win32/WinPlock.A

TrojanSpy:MSIL/Omaneat.H!bit

TrojanDropper:Win32/Sality!rfn

Trojan.Flokibot

W97M.Empstage

Trojan.Powerduke

Ransom.PCsurveyLocker

Ransom.Ransoc

Phishing

SERVICE ACCOUNT

18th November 2016

Account update - Receipt
#97548978

Wells Fargo

18th November 2016

Alert: Unread new SECURED
message

Martin Cox

17th November 2016

Account Overdue (Please Review
Today)

Martin Cox

17th November 2016

Verification Required

noreply@amazon.com

17th November 2016

Important message please read

Apple

17th November 2016

Your Apple ID was used to sign
in to iMessage on an iPhone 6.

USAA

17th November 2016

INCOMING PAYMENT PENDING YOUR
APPROVAL

PayPal

17th November 2016

Second reminder to respond to
PayPal claim: Case ID
#PP-003-153-234-760

No reply

16th November 2016

Request to Close Your Account

USAA

16th November 2016

Urgent - Incoming Payment
Transfer On Hold

HM Revenue &

16th November 2016

HM Revenue & Customs - You are
eligible to receive a tax
refund !

Warning from Amazon

16th November 2016

PLEASE CHECK YOUR BILLING
ADDRESS AND PAYMENT WITHIN 24
HOURS OR YOUR ACCOUNT WILL BE
REMOVED PERMANENTLY !

PayPal

16th November 2016

Your account has been limited
until you confirm your
personal data

Chase Online

15th November 2016

Dear Chase OnlineSM Customer

Amazon.com

15th November 2016

Security Alerts - Act Now!

SunTrust Bank

15th November 2016

Online Access Suspended

Vulnerebility

RETIRED: Linux Kernel Random Memory Pointer Dereference Denial of Service Vulnerability
2016-11-18
http://www.securityfocus.com/bid/66775

Multiple Lenovo ThinkPad Products CVE-2016-8222 Local Security Bypass Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94409

Multiple Huawei Products CVE-2016-8796 Denial of Service Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94405

LibTIFF 'tiff2pdf.c' Out Of Bounds Write Denial of Service Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94406

Huawei Smart Phones Multiple Local Denial of Service Vulnerabilities
2016-11-18
http://www.securityfocus.com/bid/94404

Huawei UTPS CVE-2016-8769 Local Privilege Escalation Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94403

Multiple Huawei CloudEngine Products CVE-2016-8790 Buffer Overflow Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94402

Palo Alto Networks PAN-OS CVE-2016-9150 Buffer Overflow Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94399

IBM Spectrum Scale and IBM GPFS Local Command Execution Vulnerability
2016-11-18
http://www.securityfocus.com/bid/92408

IBM Spectrum Scale and IBM GPFS CVE-2016-2984 Local Command Execution Vulnerability
2016-11-18
http://www.securityfocus.com/bid/92410

IBM WebSphere Application Server CVE-2016-5986 Information Disclosure Vulnerability
2016-11-18
http://www.securityfocus.com/bid/93013

Palo Alto Networks PAN-OS CVE-2016-9149 XPath Injection Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94401

curl/libcURL CVE-2016-7167 Multiple Integer Overflow Vulnerabilities
2016-11-18
http://www.securityfocus.com/bid/92975

Apache Struts CVE-2016-4003 Cross Site Scripting Vulnerability
2016-11-18
http://www.securityfocus.com/bid/86311

Apache Struts CVE-2016-3093 Denial of Service Vulnerability
2016-11-18
http://www.securityfocus.com/bid/90961

OpenSSL CVE-2016-2176 Information Disclosure Vulnerability
2016-11-18
http://www.securityfocus.com/bid/89746

OpenSSL 'crypto/asn1/a_d2i_fp.c' Local Denial of Service Vulnerability
2016-11-18
http://www.securityfocus.com/bid/87940

OpenSSL CVE-2016-2105 Buffer Overflow Vulnerability
2016-11-18
http://www.securityfocus.com/bid/89757

Palo Alto Networks PAN-OS CVE-2016-9151 Local Privilege Escalation Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94400

GNU Bash CVE-2016-9401 Local Security Bypass Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94398

Multiple IBM Products CVE-2015-2017 HTTP Response Splitting Vulnerability
2016-11-18
http://www.securityfocus.com/bid/78457

OpenSSH CVE-2016-6210 User Enumeration Vulnerability
2016-11-18
http://www.securityfocus.com/bid/91812

Linux-PAM '_unix_run_helper_binary()' Function Denial of Service Vulnerability
2016-11-18
http://www.securityfocus.com/bid/75428

OpenSSH PAM Support Multiple Remote Code Execution Vulnerabilities
2016-11-18
http://www.securityfocus.com/bid/76317

OpenSSH 'x11_open_helper()' Function Security Bypass Vulnerability
2016-11-18
http://www.securityfocus.com/bid/75525

'pam_userdb' Module CVE-2013-7041 Password Hashes Security Weakness
2016-11-18
http://www.securityfocus.com/bid/64180

Oracle Java SE CVE-2016-3598 Remote Code Execution Vulnerability
2016-11-18
http://www.securityfocus.com/bid/91918

IBM Tivoli Storage Manager CVE-2016-0371 Local Information Disclosure Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94148

Apache Tomcat CVE-2016-5388 Security Bypass Vulnerability
2016-11-18
http://www.securityfocus.com/bid/91818

Teeworlds 'client.cpp' Memory Corruption Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94381Multiple Android Products CVE-2016-6564 Man in the Middle Security Bypass Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94393

Moxa SoftCMS Multiple Security Vulnerabilities
2016-11-18
http://www.securityfocus.com/bid/94394

Multiple Siemens IP CCTV Cameras CVE-2016-9155 Information Disclosure Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94392

IBM Sterling B2B Integrator CVE-2016-5890 Security Bypass Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94391

IBM Kenexa LCMS Premier on Cloud CVE-2016-5948 Cross Site Scripting Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94388

IBM Sterling B2B Integrator CVE-2016-3057 Unspecified Cross Site Scripting Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94389

IBM Kenexa LCMS Premier on Cloud CVE-2016-5937 Cross Site Request Forgery Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94390

IBM Kenexa LCMS Premier on Cloud CVE-2016-5951 Unspecified Cross-Site Scripting Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94385

IBM Kenexa LCMS Premier on Cloud CVE-2016-5950 Information Disclosure Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94387

Veritas NetBackup Appliance CVE-2016-7399 Arbitrary Command Execution Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94384

Apereo Webproxy Portlet Information Disclosure Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94383

Teeworlds 'client.cpp' Memory Corruption Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94381

JasPer CVE-2016-9398 Denial of Service Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94382

JasPer Assertion Failure Multiple Denial of Service Vulnerabilities
2016-11-18
http://www.securityfocus.com/bid/94377

Apple Mac OS X APPLE-SA-2016-09-20 Multiple Security Vulnerabilities
2016-11-18
http://www.securityfocus.com/bid/93055

JasPer CVE-2016-9396 Denial of Service Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94379

JasPer CVE-2016-9399 Assertion Failure Denial of Service Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94380

OpenStack Glance CVE-2016-8611 Denial of Service Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94378

JasPer CVE-2016-9395 Assertion Failure Denial of Service Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94376

JasPer CVE-2016-9397 Denial of Service Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94373

JasPer CVE-2016-9387 Integer Overflow Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94374

JasPer CVE-2016-9394 Denial of Service Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94372

Jenkins 'Java Deserialization' Remote Code Execution Vulnerability
2016-11-18
http://www.securityfocus.com/bid/94281

JasPer Multiple Assertion Failures Denial of Service Vulnerabilities
2016-11-18
http://www.securityfocus.com/bid/94371

Foxit Reader and PhantomPDF Multiple Security Vulnerabilities
2016-11-18
http://www.securityfocus.com/bid/94370

Adobe Flash Player Type Confusion Multiple Remote Code Execution Vulnerabilities
2016-11-18
http://www.securityfocus.com/bid/94151

Wireshark Multiple Denial of Service Vulnerabilities
2016-11-18
http://www.securityfocus.com/bid/94369

Adobe Flash Player APSB16-37 Multiple Remote Code Execution Vulnerabilities
2016-11-18
http://www.securityfocus.com/bid/94153

Apache Struts CVE-2016-0785 Remote Code Execution Vulnerability
2016-11-18
http://www.securityfocus.com/bid/85066

Apache Struts CVE-2016-2162 Cross Site Scripting Vulnerability
2016-11-18
http://www.securityfocus.com/bid/85070

SANS News

Example of Getting Analysts & Researchers Away

Threatpostpost

Mozilla Patches 29 Vulnerabilities, Prevents MIME Confusion Attacks, in Firefox 50

IBM Opens Attack Simulation Test Center

iOS 10 Passcode Bypass Can Access Photos, Contacts

Google Removing SHA-1 Support in Chrome 56

Exploit

Windows x64 - Reverse Shell TCP Shellcode (694 bytes)

Wordpress Plugin Sirv 1.3.1 - SQL Injection

Wordpress Plugin Answer My Question 1.3 - SQL Injection

Microsoft Edge - 'eval' Type Confusion

FTPShell Client 5.24 - 'PWD' Remote Buffer Overflow

EditMe CMS - Cross-Site Request Forgery (Add New Admin)

Moxa SoftCMS 1.5 - Denial of Service (PoC)

Nagios 4.2.2 - Privilege Escalation