[FD] SCP client multiple vulnerabilities

2019-01-15 Thread Harry Sintonen
scp client multiple vulnerabilities === The latest version of this advisory is available at: https://sintonen.fi/advisories/scp-client-multiple-vulnerabilities.txt Overview SCP clients from multiple vendors are susceptible to a malicious scp server

[FD] secuvera-SA-2016-01: Multiple authentication weaknesses in Arvato Systems Streamworks Job Scheduler

2019-01-15 Thread Simon Bieber
Affected Products Streamworks Job Scheduler Release 7 (older/newer releases have not been tested) References Secuvera-SA-2016-01 https://www.secuvera.de/advisories/secuvera-SA-2016-01.txt (used for updates) No CVE number could be assigned (vendor not listed under

[FD] EuskalHack Security Congress Call For Papers

2019-01-15 Thread Joxean Koret via Fulldisclosure
                                                                _  _ _ _   __    | |   _ ___| | _| | | | | __ _  ___| | __    |  _|| | | / __| |/ / _` | | |_| |/ _` |/ __| |/ /    | |__| |_| \__ \   < (_| | |  _  | (_| | (__| 

Re: [FD] Reflected Cross-site Scripting Vulnerability in CubeCart 6.2.2

2019-01-15 Thread Henri Salo
On Wed, Jan 09, 2019 at 10:45:51AM +0200, Henri Salo wrote: > On Mon, Dec 03, 2018 at 03:37:25PM +0100, Daniel Bishtawi wrote: > > https://www.netsparker.com/web-applications-advisories/ns-18-025-reflected-cross-site-scripting-in-cubecart/ Please use CVE-2018-20703. -- Henri Salo