new facebook and twitter flaw
Posted by StrawHat on Apr 07The facebook and twitter like button are bugued. You can easily increase their counters using a bug, and trick...
XSS on NIC Chile
Posted by Zerial. on Apr 20* Main URI: http://www.nic.cl
* Type: Cross Site Scripting
* Exploitable URI:
http://www.nic.cl/cgi-bin/show-form?f=/example/201001191941%3Cbody%20onload=alert%28this%29%3E3a6
* Status: *Reported*
* Date: April 20, 2011, 12:27 p.m.
Reported on:...
Launching SecurityPhresh Beta Edition
Here comes our new SecurityPhresh Beta edition. Since last couple of months we have been actively working on it. Here are...
[webapps] – Tele Data Contact Management Server Directory Traversal
Source: - Tele Data Contact Management Server Directory Traversal
Sonexis ConferenceManager 9.2.11.0 / 9.3.14.0 Cross Site Scripting
Sonexis ConferenceManager versions 9.2.11.0 and 9.3.14.0 suffer from multiple cross site scripting vulnerabilities.
Source: Sonexis ConferenceManager 9.2.11.0 / 9.3.14.0 Cross Site Scripting
b2evolution 4.0.5 Remote File Inclusion
b2evolution version 4.0.5 suffers from a remote file inclusion vulnerability.
Source: b2evolution 4.0.5 Remote File Inclusion
[SECURITY] [DSA 2227-1] iceape security update
Posted by Moritz Muehlenhoff on Apr 30-------------------------------------------------------------------------
Debian Security Advisory DSA-2227-1 ...
Debian Security Advisory 2237-1
Debian Linux Security Advisory 2237-1 - A flaw was found in the APR library, which could be exploited through Apache HTTPD's mod_autoindex. If a...
Someone Wanted to Attack me :)
Today I opened my Gmail account to check my emails. I always check my spam folder to see the spammers’ trend...
[webapps] – iGiveTest 2.1.0 SQL Injection Vulnerability
Source: - iGiveTest 2.1.0 SQL Injection Vulnerability



