[Full-disclosure] CFP RootedCON 2014

2013-12-05 Thread Omar Benbouazza
Hello dudes, The due date has been postponed until 16th December. As we told previously, this year the conference allows English and Spanish talks. If you want good weather, great food and nice people... come to Spain! ;-)

[Full-disclosure] Reflected XSS Attacks XSS vulnerabilities in NagiosQL 3.2.0 Servicepack 2 (CVE: CVE-2013-6039)

2013-12-05 Thread William Costa
I. VULNERABILITY - Reflected XSS Attacks XSS vulnerabilities in NagiosQL 3.2.0 Servicepack 2 II. BACKGROUND - NagiosQL is a web based administration tool designed for Nagios, but might also work with forks. It helps you to easily build a complex

Re: [Full-disclosure] Any not annoying help welcome

2013-12-05 Thread Mr OverBlue
the app traffic isn't present... Try the Shark app it uses tcpdump and it's very quick to setup. I used it on the ZON Remote app and others with success. Em 03/12/13 21:06, ICSS Security escreveu: Making a turn here, let's see what turns out! I know that using Wireshark we can capture traffic

[Full-disclosure] Sonicwall GMS v7.x - Filter Bypass Persistent Vulnerability

2013-12-05 Thread Vulnerability Lab
Document Title: === Sonicwall GMS v7.x - Filter Bypass Persistent Vulnerability References (Source): http://www.vulnerability-lab.com/get_content.php?id=1099 Bulletin: Dell SonicWALL GMS Service Bulletin for Cross-Site Scripting Vulnerability

[Full-disclosure] Wireless Transfer App 3.7 iOS - Multiple Web Vulnerabilities

2013-12-05 Thread Vulnerability Lab
Document Title: === Wireless Transfer App 3.7 iOS - Multiple Web Vulnerabilities References (Source): http://www.vulnerability-lab.com/get_content.php?id=1152 Release Date: = 2013-12-04 Vulnerability Laboratory ID (VL-ID):

[Full-disclosure] NEW VMSA-2013-0015 VMware ESX updates to third party libraries

2013-12-05 Thread Edward Hawkins
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 VMware Security Advisory Advisory ID: VMSA-2013-0015 Synopsis: VMware ESX updates to third party libraries Issue date: 2013-12-05 Updated on: 2013-12-05 (initial release) CVE numbers: --- kernel (service console) ---