Re: [Full-disclosure] [ESNC-2013-005] Remote Code Injection in SAP ERP Central Component - Project System

2013-05-08 Thread Ron Yount
Please unsubscribe. Address to be inactive. -Original Message- From: Full-Disclosure [mailto:full-disclosure-boun...@lists.grok.org.uk] On Behalf Of ESNC Security Sent: Monday, May 6, 2013 10:31 PM To: full-disclosure@lists.grok.org.uk Subject: [Full-disclosure] [ESNC-2013-005] Remote

Re: [Full-disclosure] Vulnerabilities in VideoJS

2013-05-08 Thread Ron Yount
Please unsubscribe. Address to be inactive -Original Message- From: Full-Disclosure [mailto:full-disclosure-boun...@lists.grok.org.uk] On Behalf Of MustLive Sent: Monday, May 6, 2013 4:45 PM To: submissi...@packetstormsecurity.org; full-disclosure@lists.grok.org.uk; 1337 Exploit

[Full-disclosure] Unscribe

2013-05-08 Thread Ron Yount
Email address to be inactive. Please unsubscribe. -Original Message- From: Full-Disclosure [mailto:full-disclosure-boun...@lists.grok.org.uk] On Behalf Of SEC Consult Vulnerability Lab Sent: Tuesday, May 7, 2013 12:57 AM To: bugtraq; full-disclosure@lists.grok.org.uk Subject:

[Full-disclosure] [2.0 Update] Cisco Security Advisory: Cisco Prime Data Center Network Manager Remote Command Execution Vulnerability

2013-05-08 Thread Cisco Systems Product Security Incident Response Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Cisco Security Advisory: Cisco Prime Data Center Network Manager Remote Command Execution Vulnerability Advisory ID: cisco-sa-20121031-dcnm Revision 2.0 Last Updated 2013 May 08 16:00 UTC (GMT) For Public Release 2012 October 31 16:00 UTC

[Full-disclosure] Cisco Security Advisory: Multiple Vulnerabilities in Cisco Unified Customer Voice Portal Software

2013-05-08 Thread Cisco Systems Product Security Incident Response Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Cisco Security Advisory: Multiple Vulnerabilities in Cisco Unified Customer Voice Portal Software Advisory ID: cisco-sa-20130508-cvp Revision 1.0 For Public Release 2013 May 8 16:00 UTC (GMT

Re: [Full-disclosure] Vulnerabilities in VideoJS

2013-05-08 Thread illwill
learn to fucking internet. -illwill illw...@illmob.org http://illmob.org On 5/7/2013 11:09 AM, Ron Yount wrote: Please unsubscribe.

[Full-disclosure] Vulnerabilities in multiple web applications with VideoJS

2013-05-08 Thread MustLive
Hello list! These are Cross-Site Scripting vulnerabilities in multiple web applications with VideoJS. Earlier I've wrote about vulnerabilities in VideoJS (http://seclists.org/fulldisclosure/2013/May/21). This is popular video and audio player, which is used at hundreds thousands of web sites

[Full-disclosure] Vulnerability in Fujitsu Desktop Update (for Windows)

2013-05-08 Thread Stefan Kanthak
Hi @ll, Fujitsu's update utility Fujitsu Desktop Update (see http://support.ts.fujitsu.com/DeskUpdate/Index.asp), which is factory-preinstalled on every Fujitsu (Siemens) PC with Windows, has a vulnerability which allows the execution of a rogue program in the security context of the current

Re: [Full-disclosure] Vulnerabilities in Windows 8 Professional x64 factory preinstallation of Fujitsu Lifebook A512 [continued]

2013-05-08 Thread Stefan Kanthak
On Sunday, May 05, 2013 10:13 PM I wrote: Hi @ll, Fujitsus http://www.fsc-pc.de/ factory preinstallation (as found on a Fujitsu Lifebook A512 purchased a month ago) of Windows 8 Professional x64 (I'm VERY confident that other variants of Fujitsu's Windows 8 factory installation are just

[Full-disclosure] AlienVault OSSIM multiple SQL Injection vulnerabilities

2013-05-08 Thread run run level
RunRunLevel Web Security Research - AlienVault OSSIM multiple SQL Injection vulnerabilities Vendor Website : http://www.alienvault.com  INDEX ---     1. Background     2. Description     3. Affected Products     4. Vulnerabilities     5. Solution     6.

[Full-disclosure] List Charter

2013-05-08 Thread John Cartwright
[Full-Disclosure] Mailing List Charter John Cartwright jo...@grok.org.uk - Introduction Purpose - This document serves as a charter for the [Full-Disclosure] mailing list hosted at lists.grok.org.uk. The list was created on 9th July 2002 by Len Rose, and is primarily concerned with