APPLE-SA-2016-12-13-6 Additional information for APPLE-SA-2016-12-12-3 tvOS 10.1
https://goo.gl/aC0akU
https://goo.gl/aC0akU
seclists.org
Full Disclosure: APPLE-SA-2016-12-13-6 Additional information for APPLE-SA-2016-12-12-3 tvOS 10.1
Nagios Core < 4.2.4 Root Privilege Escalation [CVE-2016-9566]
https://goo.gl/3KB4JW
https://goo.gl/3KB4JW
seclists.org
Full Disclosure: Nagios Core < 4.2.4 Root Privilege Escalation [CVE-2016-9566]
Nagios Core < 4.2.2 Curl Command Injection leading to Remote Code Execution [CVE-2016-9565]
https://goo.gl/tn7ScU
https://goo.gl/tn7ScU
seclists.org
Full Disclosure: Nagios Core < 4.2.2 Curl Command Injection leading to Remote Code Execution [CVE-2016-9565]
CVE-2013-3143: MSIE 9 IEFRAME CMarkup..RemovePointerPos use-after-free
https://goo.gl/ECLPZV
https://goo.gl/ECLPZV
seclists.org
Full Disclosure: CVE-2013-3143: MSIE 9 IEFRAME CMarkup..RemovePointerPos use-after-free
XenForo 1.5.x Unauthenticated Remote Code Injection
https://goo.gl/1wPSkR
https://goo.gl/1wPSkR
seclists.org
Full Disclosure: XenForo 1.5.x Unauthenticated Remote Code Injection
CSRF/stored XSS in Quiz And Survey Master (Formerly Quiz Master Next) allows unauthenticated attackers to do almost anything an admin can (WordPress plugin)
https://goo.gl/mxv6h8
https://goo.gl/mxv6h8
seclists.org
Full Disclosure: CSRF/stored XSS in Quiz And Survey Master (Formerly Quiz
Master Next) allows unauthenticated attackers to do almost…
Master Next) allows unauthenticated attackers to do almost…
Re: XenForo 1.5.x Unauthenticated Remote Code Injection
https://goo.gl/8wq2uA
https://goo.gl/8wq2uA
seclists.org
Full Disclosure: Re: XenForo 1.5.x Unauthenticated Remote Code Injection
CVE-2013-0090: MSIE 9 IEFRAME CView::EnsureSize use-after-free
https://goo.gl/zKzmnH
https://goo.gl/zKzmnH
seclists.org
Full Disclosure: CVE-2013-0090: MSIE 9 IEFRAME CView::EnsureSize use-after-free
MSIE 9 IEFRAME CMarkupPointer::MoveToGap use-after-free
https://goo.gl/EdXnw0
https://goo.gl/EdXnw0
seclists.org
Full Disclosure: MSIE 9 IEFRAME CMarkupPointer::MoveToGap use-after-free
Re: SQL injection in Joomla extension DT Register
https://goo.gl/xqFqXD
https://goo.gl/xqFqXD
seclists.org
Full Disclosure: Re: SQL injection in Joomla extension DT Register
CVE-2013-6627: Chrome Chrome HTTP 1xx base::StringTokenizerT<...>::QuickGetNext OOBR
https://goo.gl/yoCedj
https://goo.gl/yoCedj
seclists.org
Full Disclosure: CVE-2013-6627: Chrome Chrome HTTP 1xx base::StringTokenizerT::QuickGetNext OOBR
Hotlinking Vulnerability in Glype (All Versions)
https://goo.gl/0nupt2
https://goo.gl/0nupt2
seclists.org
Full Disclosure: Hotlinking Vulnerability in Glype (All Versions)
[ERPSCAN-16-035] SAP Solman - user accounts disclosure
https://goo.gl/i038Yn
https://goo.gl/i038Yn
seclists.org
Full Disclosure: [ERPSCAN-16-035] SAP Solman - user accounts disclosure
New BlackArch Linux ISOs (2016.12.20) released!
https://goo.gl/ptJKk0
https://goo.gl/ptJKk0
seclists.org
Full Disclosure: New BlackArch Linux ISOs (2016.12.20) released!
CVE-2014-1785: MSIE 11 MSHTML CSpliceTreeEngine::RemoveSplice use-after-free
https://goo.gl/rpa7No
https://goo.gl/rpa7No
seclists.org
Full Disclosure: CVE-2014-1785: MSIE 11 MSHTML CSpliceTreeEngine::RemoveSplice use-after-free
NEW VMSA-2016-0023 VMware ESXi updates address a cross-site scripting issue
https://goo.gl/pptiUA
https://goo.gl/pptiUA
seclists.org
Full Disclosure: NEW VMSA-2016-0023 VMware ESXi updates address a cross-site scripting issue
copy-me vulnerable to CSRF allowing unauthenticated attacker to copy posts (WordPress plugin)
https://goo.gl/ZVMXYq
https://goo.gl/ZVMXYq
seclists.org
Full Disclosure: copy-me vulnerable to CSRF allowing unauthenticated attacker
to copy posts (WordPress plugin)
to copy posts (WordPress plugin)
[0-day] RCE and admin credential disclosure in NETGEAR WNR2000
https://goo.gl/trVIWl
https://goo.gl/trVIWl
seclists.org
Full Disclosure: [0-day] RCE and admin credential disclosure in NETGEAR WNR2000
CVE-2014-4138: MSIE 11 MSHTML CPasteCommand::ConvertBitmaptoPng heap-based buffer overflow
https://goo.gl/y9mDsJ
https://goo.gl/y9mDsJ
seclists.org
Full Disclosure: CVE-2014-4138: MSIE 11 MSHTML CPasteCommand::ConvertBitmaptoPng heap-based buffer overflow
[RT-SA-2016-001] Padding Oracle in Apache mod_session_crypto
https://goo.gl/ezFz1N
https://goo.gl/ezFz1N
seclists.org
Full Disclosure: [RT-SA-2016-001] Padding Oracle in Apache mod_session_crypto
Re: [RT-SA-2016-001] Padding Oracle in Apache mod_session_crypto
https://goo.gl/kAbd3j
https://goo.gl/kAbd3j
seclists.org
Full Disclosure: Re: [RT-SA-2016-001] Padding Oracle in Apache
mod_session_crypto
mod_session_crypto