[Full-disclosure] [CVE-2014-0683]Router Cisco RV110W - RV215W - CVR100W - Bypass Login Page - Admin Password Disclosure

2014-03-05 Thread Gustavo Speranza
Title: == Router CISCO RV110W - RV215W - CVR100W - Bypass Login Page Date: = 05/03/2014 CVE Number: CVE-2014-0683 Cisco Security Advisory: === http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140305-rpd Status: Reported to

[Full-disclosure] Orion SolarWinds XSS attack

2011-09-12 Thread Gustavo
Software : Orion SolarWinds 10.1.2 - SP1 XSS - http://orion.xxx.xxx/Orion/NetPerfMon/CustomChart.aspx?ChartName=AvgRTLoss&NetObject=N:355&

[Full-disclosure] Facebook vuln.

2011-05-22 Thread Gustavo
https://www.facebook.com/connect/connect_to_node_error.php?body=VULNERABLE :( ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

[Full-disclosure] WTF

2011-05-06 Thread Gustavo
WTF ? notebook:~$ ping www.compusa.com PING bh.georedirector.akadns.net (127.0.0.1) 56(84) bytes of data. 64 bytes from localhost.localdomain (127.0.0.1): icmp_req=1 ttl=64 time=0.019 ms notebook:~$ ping www.tigerdirect.com PING bh.georedirector.akadns.net (127.0.0.1) 56(84) bytes of data. 64 byt

Re: [Full-disclosure] connect back PHP hack

2009-02-10 Thread Gustavo Castro
=="; > > this has to do with old php 4.x.x version with magic quotes enabled. > i'm just trying to figure out what the connect back code does. > > any input is much appreciated. > > thx, > > sr. -- Saludos, Gustavo Castro Puig. E-Mail: gcast...@gmail.c

Re: [Full-disclosure] Most common keystroke loggers?

2005-12-01 Thread Gustavo
ed as he would have realized he > was aiming at doing the impossible). Agree. I answered based on the premise he wanted to get rid of the keylogging, only. Regards, Gustavo ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] Most common keystroke loggers?

2005-12-01 Thread Gustavo
If you want to provide reliable authentication, given that the user has a keystroke logger installed, you may simply use a visual keyboard written in Java. regards, Gustavo 2005/12/1, Shannon Johnston <[EMAIL PROTECTED]>: > Hi All, > I'm looking for input on what you all believ