[FD] Multiple SQL injections in core Orion service affecting many Solarwinds products (CVE-2014-9566)

2015-03-03 Thread Brandon Perry
I found a couple SQL injection vulnerabilities in the core Orion service used in most of the Solarwinds products (SAM, IPAM, NPM, NCM, etc…). This service provides a consistent configuration and authentication layer across the products. To be exact, the vulnerable applications and versions are: N

[FD] PHPMoAdmin Unauthorized Remote Code Execution (0-Day)

2015-03-03 Thread Pichaya Morimoto
## # _ ___ _ _ _ _ # | | / _ \| \ | |/ ___|/ ___| / \|_ _| # | | | | | | \| | | _| | / _ \ | | # | |__| |_| | |\ | |_| | |___ / ___ \| | # |_\___/|_| \_|\|\/_/ \_\_| # # PH

[FD] [Call for Papers] SOURCE Boston (May 27/28)

2015-03-03 Thread Squirrel Herder Productions
The SOURCE Boston CFP is open through March 9th SOURCE Conference brings security experts and business professionals together in an intimate and personal environment to discuss the security industry’s most important issues, technologies, and business trends. SOURCE places the technical excellence