[Full-disclosure] Cisco Security Advisory: Cisco Nexus 1000V Series Switch Software Release 4.2(1)SV1(5.2) Virtual Security Gateway Bypass Issue

2012-11-07 Thread Cisco Systems Product Security Incident Response Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Cisco Nexus 1000V Series Switch Software Release 4.2(1)SV1(5.2) Virtual Security Gateway Bypass Issue Document ID: cisco-sr-20121107-n1k Revision 1.0 For Public Release 2012 November 7 16:00 UTC (GMT

[Full-disclosure] Cisco Security Advisory: Cisco Secure Access Control System TACACS+ Authentication Bypass Vulnerability

2012-11-07 Thread Cisco Systems Product Security Incident Response Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Cisco Secure Access Control System TACACS+ Authentication Bypass Vulnerability Advisory ID: cisco-sa-20121107-acs Revision 1.0 For Public Release 2012 November 7 16:00 UTC (GMT

[Full-disclosure] [Security-news] SA-CONTRIB-2012-161 - Webform CiviCRM Integration - Access Bypass

2012-11-07 Thread security-news
View online: http://drupal.org/node/1834868 * Advisory ID: DRUPAL-SA-CONTRIB-2012-161 * Project: Webform CiviCRM Integration [1] (third-party module) * Version: 7.x * Date: 2012-November-07 * Security risk: Moderately critical [2] * Exploitable from: Remote * Vulnerability: Access

[Full-disclosure] [Security-news] SA-CONTRIB-2012-160 - OM Maximenu - Cross Site Scripting (XSS)

2012-11-07 Thread security-news
View online: http://drupal.org/node/1834866 * Advisory ID: DRUPAL-SA-CONTRIB-2012-160 * Project: OM Maximenu [1] (third-party module) * Version: 6.x, 7.x * Date: 2012-November-07 * Security risk: Moderately critical [2] * Exploitable from: Remote * Vulnerability: Cross Site

[Full-disclosure] When those who say to represent computing/IT students have serious security vulnerabilities? (XSS and data disclosure on http://ritsi.org )

2012-11-07 Thread klondike
This full disclosure is made mainly to protest against how the politics work between the Spanish computing and IT student councils. If you just don't give a fuck the issues are lower. The political reasons: Turn out this year the RITSI is supposed to get 20 years old, also turns out they seem to