[Full-disclosure] SEC Consult SA-20101021-0 :: Multiple critical vulnerabilities in Sawmill log analysis software

2010-10-21 Thread Johannes Greil
SEC Consult Security Advisory < 20101021-0 > === title: Multiple critical vulnerabilities product: Sawmill - Universal Log File Analysis vulnerable version: Sawmill Enterprise < v8.1.7.3 fixed versi

[Full-disclosure] SEC Consult SA-20090901-0 :: File disclosure vulnerability in JSFTemplating, Mojarra Scales and GlassFish Application Server v3 Admin console

2009-09-01 Thread Johannes Greil
SEC Consult Security Advisory < 20090901-0 > === title: File disclosure vulnerability in JSFTemplating, Mojarra Scales and GlassFish Application Server v3 Admin console

[Full-disclosure] SEC Consult SA-20070722-0 :: Remote command execution in Joomla! CMS

2007-07-22 Thread Johannes Greil
erable too! impact: critical homepage: http://www.joomla.org found: 2007-05-20 by: Johannes Greil / SEC Consult / www.sec-consult.com === Vendor descr

[Full-disclosure] SEC Consult SA-20070509-0 :: Multiple vulnerabilites in Nokia Intellisync Mobile Suite & Wireless Email Express

2007-05-09 Thread Johannes Greil
versions were not tested! impact: medium homepage: http://www.intellisync.com/ found: 2007-03-14 by: Johannes Greil / SEC Consult / www.sec-consult.com === Vend

[Full-disclosure] SEC Consult SA-20051223-1 :: File Disclosure using df_next_page parameter in OracleAS Discussion Forum Portlet

2005-12-23 Thread Johannes Greil
iscussion Forum Portlet > vulnerable version: < Version of May 2005 > homepage: < http://www.oracle.com > found: < 2005-09-16 > by: < Johannes Greil > SEC-CONSULT / www.sec-consult.com ==

[Full-disclosure] SEC Consult SA-20051223-0 :: Multiple Cross Site Scripting Vulnerabilities in OracleAS Discussion Forum Portlet

2005-12-23 Thread Johannes Greil
iscussion Forum Portlet > vulnerable version: < Version of May 2005 > homepage: < http://www.oracle.com > found: < 2005-09-16 > by: < Johannes Greil > SEC Consult / www.sec-consult.com ===

[Full-disclosure] SEC Consult SA-20051211-0 :: Several XSS issues in Horde Framework, Kronolith Calendar, Mnemo Notes, Nag Tasks and Turba Addressbook

2005-12-11 Thread Johannes Greil
homepage: < http://www.horde.org > found: < 2005-12-02 > by: < Johannes Greil > / SEC Consult / www.sec-consult.com == --- vendor description: