Contao CMS version 2.9.2 suffers from a cross site scripting vulnerability.
689c90da0c703b57483653cc085150361aca36df954ce857454f1903b3702027
The Rocky Mountain Information Security Conference has announced its call for papers. It will be held Friday, May 13, 2001 in Denver, Colorado, USA.
a66583474f7cd4e4922ddc80781bf8e40c9be8d2d5dfc987ad432dcb0d66b284
iDefense Security Advisory 01.10.11 - Remote exploitation of a command injection vulnerability in Hewlett-Packard Development Co. LP (HP)'s Network Node Manager could allow an attacker to execute arbitrary commands with the privileges of the affected service. The vulnerability exists within CGI scripts provided with the NNM HTTP Server. These scripts do not effectively sanitize a particular parameter. It is possible for an attacker to supply a parameter containing a specially crafted command line string. The command line string will be executed on the affected NNM HTTP Server.
f5153b8e449537f0d6fc7c75cff355f01a92d7f35341bab532d9ce10312394bf
Klaus-rabus Dipl.Graphics-Designer Ecommerce version 1.x suffers from cross site scripting and local file inclusion vulnerabilities.
37e6b73e3ddd10b6028b6f79df03838d1752f2eea080cd766b6adb7039f4ba4b
SiteScape Forums suffers from a remote TCL injection vulnerability. SiteScape Enterprise Forums version 7 is affected. Other versions may also be affected. Both an advisory and exploit are included in this archive.
7620c4ffc191f14b35ab86f7bddcefbecdaadbde0acf0524ee884952f17bbc37
Whitepaper called Exploiting the otherwise non-exploitable - Windows Kernel-mode GS Cookies subverted.
9cb55c04b174ac68214accb5e07ace84657f40f962aea69afc09f7ac5daa6f55
Lifetype version 1.2.10 suffers from a HTTP referer persistent cross site scripting vulnerability.
8561472683c237f97e479ff45778a4766cfc551b2fe037369ecf260a0e801a25
PHP-Nuke versions 8.1 and below suffer from cross site scripting and anti-automation vulnerabilities.
f1285ada41fa310a77762c721c95d90fdbb184416cf14b0114d430516c828111
ProxBrute is a custom firmware written for the proxmark3. It extends the currently available firmware (revision 465) to support brute force attacks against proximity card access control systems. This version of ProxBrute requires the knowledge of a [once] valid tag value to vertically or horizontally escalate the tag's privileges.
a155a9dd000312c20ecbe6ca6bab1bc991183e9dea73578a76754b148ab1332a
Secunia Security Advisory - A vulnerability has been reported in libpng, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise an application using the library.
62e3c32ce8e7b0c5c4cc4dcf06491201aa5838a72913c9c0e67c77624a87b096
Secunia Security Advisory - A vulnerability has been reported in Vaadin, which can be exploited by malicious people to conduct cross-site scripting attacks.
42aa3ea2f4c128cebe3e05272a42dfbb6b14d060a2ec32ec7848d1b4f4b64b4d
Secunia Security Advisory - Fedora has issued an update for bip. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
4077776a3f87fed0e7c770765761b88242ca4d38337cd720b918bf975fada61d
Secunia Security Advisory - Red Hat has issued an update for kernel. This fixes multiple vulnerabilities, which can be exploited by malicious, local users to cause a DoS (Denial of Service), disclose sensitive information, potentially gain escalated privileges, and bypass certain security restrictions and by malicious people to cause a DoS (Denial of Service).
adb2cfd7606dcd06df6e181269e062afaba5082baebca9f5c2ac8fedae859488
Secunia Security Advisory - A vulnerability has been discovered in Sudo, which can be exploited by malicious, local users to perform certain actions with escalated privileges.
3ff5295157890d803225f7ea7b160b81d166f13537e0e376fd75f1a056aae64f
Secunia Security Advisory - Ubuntu has issued an update for php5. This fixes multiple security issues and multiple vulnerabilities, which can be exploited by malicious users to disclose sensitive information and by malicious people to disclose sensitive information, bypass certain security restrictions, and cause a DoS (Denial of Service).
440aee9e574c608cbfb5ac802d4650866160c79342a671e304481e041bcf70a0
Go Null Yourself E-zine Issue 3 - Topics in this issue include HP Hash Cracking with MapReduce, Port Knocking Primer, Abusing phpBB's Tell-A-Friend, Decoding Trillian Password Files, Numbers Stations FOIA, and more.
cd59dd97dff05dc906338a8c980aa8120caeff545f0ee265468dba9d7e5e88a4
Proof of concept code for the Microsoft Data Access components vulnerability as disclosed in MS11-002.
02c9d2b9d3b5ecbcba0b02245ace1b6c1e7edd1e0320a89cc9bd03d9d017ce3f
Secunia Security Advisory - A vulnerability has been reported in BlackBerry Enterprise Server, which can be exploited by malicious people to compromise a vulnerable system.
8ff88f7eb608fcd1fab9bbd4accd449d8eeec16d8ad6aa29b7413f7b5ab804a4
Secunia Security Advisory - A vulnerability has been discovered in Nokia Multimedia Player, which can be exploited by malicious people to compromise a user's system.
b947c6e97273b8a50672db047239590c7bf1beae5a3cdfca0804fef4e3369aaa
Secunia Security Advisory - A vulnerability has been reported in Easy File Uploader module for Joomla!, which can be exploited by malicious users to compromise a vulnerable system.
aa85c7a5efa2a3e214699b4b50949590aa8d60a16ae2f7b2bbed8c9d5ecf35cc
Secunia Security Advisory - A vulnerability has been discovered in DriveCrypt, which can be exploited by malicious, local users to gain escalated privileges.
100823168884b3a16a0f371a4c5f47c529b7709342b4b281b8c16fea6a8d8594
Secunia Security Advisory - Some vulnerabilities have been reported in FishEye and Crucible, which can be exploited by malicious users to conduct script insertion attacks, gain knowledge of sensitive information, and bypass certain security restrictions and by malicious people to disclose potentially sensitive information.
ba08b3caa0dce612458d5c40ccff3774f755741ff92f93d82fc70f1a8fb59b6d
Secunia Security Advisory - SUSE has issued an update for multiple packages. This fixes a weakness and multiple vulnerabilities, which can be exploited by malicious, local users to disclose sensitive information and gain escalated privileges and by malicious people to conduct HTTP response splitting attacks, bypass certain security restrictions, cause a DoS (Denial of Service), and potentially compromise a vulnerable system.
d7a69757c040659448467c80f85d92428ee7bab6b571b7f6b991f21cdee0b0a9
Secunia Security Advisory - Ubuntu has issued an update for lcms. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
35165d6cd02b61cc2b9fd4c57c72b44a2ed43fd2e4932ee63ef5cfcebd16013f
Technical Cyber Security Alert 2011-11A - There are multiple vulnerabilities in Microsoft Data Access Components and Windows Backup Manager. Microsoft has released updates to address these vulnerabilities.
d7f2df7ba5b3aaa4340d69d7f699b187b45c6b7571458c63e0a807f6616ceafe