[Full-disclosure] Pico Server (pServ) Local Information Disclosure

2005-05-16 Thread Claus R. F. Overbeck
Advisory: Pico Server (pServ) Local Information Disclosure RedTeam found a local information disclosure vulnerability in Pico Server (pServ) which results in a local user reading all files on the server with pServ's permissions. Details === Product: Pico Server (pServ) Affected

[Full-disclosure] Pico Server (pServ) Information Disclosure Of CGI Sources

2005-05-16 Thread Claus R. F. Overbeck
Advisory: Pico Server (pServ) Information Disclosure Of CGI Sources RedTeam found a Information Disclosure vulnerability in Pico Server (pServ) which gives an attacker the ability to read all files from cgi-bin. Details === Product: Pico Server (pServ) Affected Version: 3.2(verified),

[Full-disclosure] Pico Server (pServ) Remote Command Injection

2005-05-16 Thread Claus R. F. Overbeck
Advisory: Pico Server (pServ) Remote Command Injection RedTeam found a remote command injection in Pico Server (pServ) which results in a remote attacker being able to issue arbitrary commands on the server. Details === Product: Pico Server (pServ) Affected Version:

[Full-disclosure] Tor 0.1.0.6-rc is out

2005-05-16 Thread Tarapia Tapioco
This is the sixth release candidate for the 0.1.0.x series. This is an actual release candidate--it's going to be the final release if there are no bugs--we promise. :) We fixed the last known major problems: we don't use threading on netbsd now, and the new libevent 1.1 detects and disables the

Re: [Full-disclosure] Javascript Bug in Firefox

2005-05-16 Thread Brian Anderson
Adblock extension for firefox with a filter for *domain* for whatever domains you choose, can stop a lot of such things. Raymond Joyal wrote: Other than disabling Javascript, what are my options for these new annoying popups? !-- FASTCLICK.COM POP-UNDER CODE v1.7e for macdailynews.com -- script

[Full-disclosure] RE: Javascript Bug in Firefox

2005-05-16 Thread Raymond Joyal
Other than disabling Javascript, what are my options for these new annoying popups? !-- FASTCLICK.COM POP-UNDER CODE v1.7e for macdailynews.com -- ok, this isn't new. My bad for being lazy and not checking with bugzilla first. https://bugzilla.mozilla.org/show_bug.cgi?id=282931

[Full-disclosure] Google hacking tools

2005-05-16 Thread Scot Shunn
List, I know about SiteDigger and Wikto Any more out there? Thanks Guys!! ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] Javascript Bug in Firefox

2005-05-16 Thread Mike Hoye
On Mon, May 16, 2005 at 11:45:03AM -0500, Raymond Joyal wrote: Other than disabling Javascript, what are my options for these new annoying popups? A greasemonkey script, possibly. Pointing *.fastclick.com at localhost in your hosts file might help, too. I'm a big fan of Mike Skallas'

Re: [Full-disclosure] Google hacking tools

2005-05-16 Thread Robert Wesley McGrew
Shameless self-promotion: http://cse.msstate.edu/~rwm8/googlesweep/-- Robert Wesley McGrewhttp://cse.msstate.edu/~rwm8/ ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by