[Full-disclosure] Nagios XI Login XSS

2010-08-20 Thread Adam Baldwin
Nagios XI Login XSS Advisory ID: NGENUITY-2010-007 Vulnerability Information Class: Cross-Site Scripting (XSS) Software Description Nagios XI is the commercial / enterprise version of the open source Nagios project. Vulnerability Description The login page for the Nagios XI management

[Full-disclosure] [SECURITY] [DSA 2094-1] New Linux 2.6.26 packages fix several issues

2010-08-20 Thread dann frazier
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - -- Debian Security Advisory DSA-2094-1secur...@debian.org http://www.debian.org/security/ dann frazier August 19, 2010

[Full-disclosure] Ruxcon 2010 Final Call For Papers

2010-08-20 Thread cfp
RUXCON 2010 FINAL CALL FOR PAPERS Ruxcon would like to announce the final call for papers for the sixth annual Ruxcon conference. This year the conference will take place over the weekend of 20th and 21st of November. Ruxcon will be held at CQ, Melbourne, Australia. The deadline for

[Full-disclosure] phpMyAdmin 3.3.5 / 2.11.10 = Cross Site Scripting (XSS) Vulnerability

2010-08-20 Thread YGN Ethical Hacker Group
== phpMyAdmin 3.3.5 / 2.11.10 = Cross Site Scripting (XSS) Vulnerability == 1. OVERVIEW The phpMyAdmin web application was vulnerable to Cross

[Full-disclosure] [ MDVSA-2010:155 ] mysql

2010-08-20 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2010:155 http://www.mandriva.com/security/