Re: DC4420 – London DEFCON – May meet – Tuesday 24th May 2011

0
Posted by Cal Leeming on May 17Just out of curiosity, what's the usual attendance rate of the DC4420 meetup?? I haven't been to DC4420 before.....

Web Edition 6.1.0.2 Local File Inclusion

0
A local file inclusion vulnerability in Web Edition version 6.1.0.2 can be exploited to include arbitrary files. Source: Web Edition 6.1.0.2 Local File Inclusion

GreenPants 0.1.7 SQL Injection

0
GreenPants version 0.1.7 suffers from remote SQL injection vulnerabilities. Source: GreenPants 0.1.7 SQL Injection

Ubuntu Security Notice USN-1160-1

0
Ubuntu Security Notice 1160-1 - Dan Rosenberg discovered that IRDA did not correctly check the size of buffers. On non-x86 systems, a local attacker...

CCAvenue.com Payment Gateway Vulnerable Secret SQL Injection

0
Posted by iSpy Team on May 07****************************************************************** (+) Authors : iSpyTeam (+) WebSite : iSpyTeam.com (+) Date : 06.05.2011 (+) Hour : 22:16 PM (+) Targets : CCAvenue.com (Payment...

Zero Day Initiative Advisory 11-232

0
Zero Day Initiative Advisory 11-232 - This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of HP H3C/3Com iNode Management Center....

Design Extensions SQL Injection / Shell Upload

0
Design Extensions suffers from shell upload and remote SQL injection vulnerabilities. Source: Design Extensions SQL Injection / Shell Upload

Cross-Site Scripting vulnerability in Nagios

0
Posted by sschurtz () t-online de on Jun 01Advisory: Cross-Site Scripting vulnerability in Nagios Advisory...

Mandriva Linux Security Advisory 2011-092

0
Mandriva Linux Security Advisory 2011-092 - IO::Socket::SSL Perl module 1.35, when verify_mode is not VERIFY_NONE, fails open to VERIFY_NONE instead of throwing an error...

HP Security Bulletin HPSBMA02631 SSRT100324

0
HP Security Bulletin HPSBMA02631 SSRT100324 - A potential security vulnerability has been identified with HP OpenView Storage Data Protector. The vulnerability could be remotely...