[Full-disclosure] 0day

2008-10-18 Thread Kathib Karffi
for interested pplz (windows only) mail me in private. = Candy Gift Baskets by Adorable Gifts Send a great gift, a candy gift basket from Adorable Gift Baskets. Shipped nationwide, easy online ordering. http://a8-asy.a8ww.net/a8-ads/adftrclick?redirectid=0e283bd761205270a4ba8a9eda68b075 -- Pow

Re: [Full-disclosure] 0day

2008-10-18 Thread Plantain
Kathib Karffi wrote: > for interested pplz (windows only) > mail me in private. > > = > Candy Gift Baskets by Adorable Gifts > Send a great gift, a candy gift basket from Adorable Gift Baskets. Shipped > nationwide, easy online ordering. > http://a8-asy.a8ww.net/a8-ads/adftrclick?redirectid=0e283b

Re: [Full-disclosure] 0day

2008-10-18 Thread Freeman Y.
Kathib Karffi wrote: > for interested pplz (windows only) > mail me in private. > > = > Candy Gift Baskets by Adorable Gifts > Send a great gift, a candy gift basket from Adorable Gift Baskets. Shipped > nationwide, easy online ordering. > http://a8-asy.a8ww.net/a8-ads/adftrclick?redirectid=0e283b

Re: [Full-disclosure] security industry software license

2008-10-18 Thread wishi
[EMAIL PROTECTED] schrieb: > On Fri, 17 Oct 2008 09:37:59 EDT, n3td3v said: >> I've realized that I don't really understand what Metasploit is or does and >> generally have a weak grasp on the security industry as a whole. So, please >> disregard any of my previous, ignorant comments. > > I have

Re: [Full-disclosure] security industry software license

2008-10-18 Thread Kathib Karffi
Dear, Sorry I did a mistake about the price. The price is 2500 $ for this exploit. > - Original Message - > From: wishi <[EMAIL PROTECTED]> > To: full-disclosure@lists.grok.org.uk > Subject: Re: [Full-disclosure] security industry software license > Date: Sat, 18 Oct 2008 16:01:05 +0200

Re: [Full-disclosure] 0day

2008-10-18 Thread anonymous pimp
> for interested pplz (windows only) > mail me in private. Let's look at what he's doing. He's offering something for free to a bunch of people he doesn't know. Not only that, but he wrote it "pplz". I think it's safe to assume that he's 12 and discovered ardamax or something similar and thinks th

Re: [Full-disclosure] security industry software license

2008-10-18 Thread Razi Shaban
> That's the proof: Trolling causes braindamage! On Sat, Oct 18, 2008 at 7:52 PM, Kathib Karffi <[EMAIL PROTECTED]>wrote: > Dear, > > Sorry I did a mistake about the price. The price is 2500 $ for this > exploit. > > I think that's the proof. -- Razi Shaban __

Re: [Full-disclosure] security industry software license

2008-10-18 Thread Razi Shaban
> That's the proof: braindamage causes Trolling ! fix'd -- Razi Shaban ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] MS OWA 2003 Redirection Vulnerability - [MSRC7368br]

2008-10-18 Thread Morning Wood
Discovered and reported 3 years ago http://www.google.com/search?hl=en&q=oaw+exploit+exploitlabs.com+ http://www.exploitlabs.com/files/advisories/EXPL-A-2005-001-owa.txt http://seclists.org/fulldisclosure/2005/Feb/0101.html http://forums.techarena.in/small-business-server/1006421.htm Micr

Re: [Full-disclosure] MS OWA 2003 Redirection Vulnerability - [MSRC7368br]

2008-10-18 Thread .
On Sat, Oct 18, 2008 at 10:19 PM, Morning Wood <[EMAIL PROTECTED]>wrote: > Discovered and reported 3 years ago > Also, lame. ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by S

[Full-disclosure] [ MDVSA-2008:208-1 ] pam_mount

2008-10-18 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2008:208-1 http://www.mandriva.com/security/

Re: [Full-disclosure] MS OWA 2003 Redirection Vulnerability - [MSRC7368br]

2008-10-18 Thread Davide Dante Del Vecchio
Morning Wood Scrive: > Discovered and reported 3 years ago What is the part of > Note that this vulnerability is very similar to the one affecting > "owalogin.asp" described here: > http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0420 that you cannot understand? d. - - - http://ww

Re: [Full-disclosure] MS OWA 2003 Redirection Vulnerability - [MSRC7368br]

2008-10-18 Thread n3td3v
morning_wood is dyslexic, give the boy a chance to read down that far, hehehe. On Sun, Oct 19, 2008 at 2:16 AM, Davide Dante Del Vecchio <[EMAIL PROTECTED]> wrote: > Morning Wood Scrive: > >> Discovered and reported 3 years ago > > What is the part of > >> Note that this vulnerability is very simi

Re: [Full-disclosure] security industry software license

2008-10-18 Thread n3td3v
On Fri, Oct 17, 2008 at 1:47 PM, <[EMAIL PROTECTED]> wrote: > 'n3td3v' is the mailing list for fans (fictitious and otherwise) of 'clueness > newb' humor. you're not a member of the group but you *think* you know everything that goes on inside it, try being a member of the group first, before you

Re: [Full-disclosure] security industry software license

2008-10-18 Thread Freeman Y.
n3td3v wrote: > On Fri, Oct 17, 2008 at 1:47 PM, <[EMAIL PROTECTED]> wrote: > >> 'n3td3v' is the mailing list for fans (fictitious and otherwise) of 'clueness >> newb' humor. >> > > you're not a member of the group but you *think* you know everything > that goes on inside it, > try being a

Re: [Full-disclosure] security industry software license

2008-10-18 Thread n3td3v
tell valdis to leave me alone then and stop trying to ruin my reputation with false accusations. On Sun, Oct 19, 2008 at 5:05 AM, Freeman Y. <[EMAIL PROTECTED]> wrote: > Sounds like stalking to me.. > Do everybody a favor and just stop posting to this list unless you have > something constructive

Re: [Full-disclosure] security industry software license

2008-10-18 Thread Freeman Y.
n3td3v wrote: > tell valdis to leave me alone then and stop trying to ruin my > reputation with false accusations. > > On Sun, Oct 19, 2008 at 5:05 AM, Freeman Y. <[EMAIL PROTECTED]> wrote: > >> Sounds like stalking to me.. >> Do everybody a favor and just stop posting to this list unless you ha

Re: [Full-disclosure] security industry software license

2008-10-18 Thread n3td3v
no thanks to robert lemos, neal krawetz, valdis kletnieks, michael simpson, ureleet and others. On Sun, Oct 19, 2008 at 6:00 AM, Freeman Y. <[EMAIL PROTECTED]> wrote: > Believe it or not n3td3v, your reputation is ALREADY ruined. > You seem not to have noticed though. > >

[Full-disclosure] CVE-2008-2625: Oracle DBMS - Proxy Authentication Vulnerability

2008-10-18 Thread Amichai Shulman
Oracle DBMS - Proxy Authentication Vulnerability Background Oracle is a widely-deployed Database Management System (DBMS) that supports a variety of applications. Many multi-tier applications are designed to use proxy authentication, restricting a middle tier to establish the database connect