Acer Portal Android Application - MITM SSL Certificate Vulnerability (CVE-2016-5648)

2016-07-06 Thread David Coomber
Acer Portal Android Application - MITM SSL Certificate Vulnerability (CVE-2016-5648) -- http://www.info-sec.ca/advisories/Acer-Portal.html Overview "Acer BYOC’s suite of Apps allows you to start building your own cloud to connect and share everything in your life between your smart devices and

[SECURITY] [DSA 3617-1] horizon security update

2016-07-06 Thread Moritz Muehlenhoff
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - - Debian Security Advisory DSA-3617-1 secur...@debian.org https://www.debian.org/security/ Moritz Muehlenhoff July 06, 2016

Re: Putty (beta 0.67) DLL Hijacking Vulnerability

2016-07-06 Thread wsachin092
Can you please assign the CVE for http://seclists.org/bugtraq/2016/Jul/26 1. Create malicious dll file and save it as UxTheme.dll or ntmarta.dll in your "Downloads" directory. 2. Download https://the.earth.li/~sgtatham/putty/latest/x86/putty.exe and save it in your "Downloads" directory.

ESA-2016-054: EMC Avamar Data Store and Avamar Virtual Edition Unauthorized Data Access Vulnerability

2016-07-06 Thread Security Alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ESA-2016-054: EMC Avamar Data Store and Avamar Virtual Edition Unauthorized Data Access Vulnerability EMC Identifier: ESA-2016-054 CVE Identifier: CVE-2016-0906 Severity Rating: 8.8 (AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H) Affected products: •

Micron CMS v5.3 - (cat_id) SQL Injection Vulnerability

2016-07-06 Thread Vulnerability Lab
Document Title: === Micron CMS v5.3 - (cat_id) SQL Injection Vulnerability References (Source): http://www.vulnerability-lab.com/get_content.php?id=1872 Release Date: = 2016-07-06 Vulnerability Laboratory ID (VL-ID):

Teampass 2.1.26 - Authenticated File Upload Vulnerability

2016-07-06 Thread Vulnerability Lab
Document Title: === Teampass 2.1.26 - Authenticated File Upload Vulnerability References (Source): http://www.vulnerability-lab.com/get_content.php?id=1866 Release Date: = 2016-07-06 Vulnerability Laboratory ID (VL-ID):

IBM BlueMix Cloud - (API) Persistent Web Vulnerability

2016-07-06 Thread Vulnerability Lab
Document Title: === IBM BlueMix Cloud - (API) Persistent Web Vulnerability References (Source): http://www.vulnerability-lab.com/get_content.php?id=1846 IBM Security Tracking ID: 5377-12593283 Release Date: = 2016-07-04 Vulnerability Laboratory