New User, Welcome!     Login

Next Page >>

Administrator of Websecurity

Re: Multiple vulnerabilities in XAMPP (advisory #7)

attention that he didn't write to Bugtraq about all these holes in XAMPP, so
I decided to write about them by myself :-).

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua

----- Original Message ----- 
From: advisories@intern0t.net
To: bugtraq@securityfocus.com ; MustLive

Re: Multiple vulnerabilities in XAMPP (advisory #7)

1.7.1, when I informed them, and didn't answer if they fixed the holes (so
it's possible that these holes are still not fixed).

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua

----- Original Message ----- 
From: S?bastien H?nar?s
To: MustLive

Re: DoS vulnerabilities in Firefox, Internet Explorer, Chrome, Opera and other browsers

Which must give you a ground for thoughts.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua

----- Original Message ----- 
From: "Susan Bradley" <sbradcpa@pacbell.net>
To: "MustLive" <mustlive@websecurity.com.ua>; <bugtraq@securityfocus.com>

Re: DoS vulnerabilities in Firefox, Internet Explorer, Chrome and Opera

> time
> ago" and have more and more days to fix these holes.
>
> Best wishes & regards,
> MustLive
> Administrator of Websecurity web site
> http://websecurity.com.ua
>
> ----- Original Message ----- 
> From: "Susan Bradley" <sbradcpa@pacbell.net>
> To: "MustLive" <mustlive@websecurity.com.ua>

Re: DoS vulnerabilities in Firefox, Internet Explorer, Chrome and Opera

worry, because with every day they become more and more "informed long time
ago" and have more and more days to fix these holes.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua

----- Original Message ----- 
From: "Susan Bradley" <sbradcpa@pacbell.net>
To: "MustLive" <mustlive@websecurity.com.ua>

Re: DoS vulnerabilities in Firefox, Internet Explorer, Chrome, Opera and other browsers

> This
> decision I made in August 2009 and it's final decision.
>
> Best wishes & regards,
> MustLive
> Administrator of Websecurity web site
> http://websecurity.com.ua
>
> ----- Original Message ----- 
> From: "Susan Bradley" <sbradcpa@pacbell.net>
> To: "MustLive" <mustlive@websecurity.com.ua>

Re: DoS vulnerabilities in Firefox, Internet Explorer, Chrome, Opera and other browsers

letters. But as said, I'll not be more informing them about DoS holes. This
decision I made in August 2009 and it's final decision.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua

----- Original Message ----- 
From: "Susan Bradley" <sbradcpa@pacbell.net>
To: "MustLive" <mustlive@websecurity.com.ua>

Re: Vulnerability in 3D user cloud for Joomla

version) and two paid ones. And the hole in 3D user cloud module (in all its
versions) is still not fixed.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua

----- Original Message ----- 
From: JoomlaJabber
To: MustLive

Re: DoS vulnerabilities in Firefox, Internet Explorer, Opera and Chrome

as it can be at not powerful computers. And many people in the world have
not so powerful computers.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua

----- Original Message ----- 
From: "Jeremiah Gowdy" <Jeremiah.Gowdy@freedomvoice.com>
To: "MustLive" <mustlive@websecurity.com.ua>; <bugtraq@securityfocus.com>

Re: DoS vulnerabilities in Firefox, Internet Explorer, Opera and Chrome

that in Firefox 3.5 he had no problems (with this exploit). And maybe he has
last Firefox 3.5.1. After that he answered me and confirmed it.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua

> -----Original Message-----
> From: MustLive [mailto:mustlive@websecurity.com.ua]
> Sent: Sunday, July 19, 2009 10:33 AM

Re: Vulnerabilities in Dunia Soccer

ignoring and not fixing, or badly fixing, or hiddenly fixing without
thanking me, like it was with securityfocus.com in 2006 and many others.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua

----- Original Message ----- 
From: "Susan Bradley" <sbradcpa@pacbell.net>
To: "MustLive" <mustlive@websecurity.com.ua>

Re: Vulnerabilities in Dunia Soccer

> ignoring and not fixing, or badly fixing, or hiddenly fixing without
> thanking me, like it was with securityfocus.com in 2006 and many others.
>
> Best wishes & regards,
> MustLive
> Administrator of Websecurity web site
> http://websecurity.com.ua
>
> ----- Original Message ----- From: "Susan Bradley" <sbradcpa@pacbell.net>
> To: "MustLive" <mustlive@websecurity.com.ua>
> Cc: <bugtraq@securityfocus.com>

Re: DoS vulnerabilities in Firefox, Internet Explorer, Chrome, Opera and other browsers

>
> Which must give you a ground for thoughts.
>
> Best wishes & regards,
> MustLive
> Administrator of Websecurity web site
> http://websecurity.com.ua
>
> ----- Original Message ----- From: "Susan Bradley" <sbradcpa@pacbell.net>
> To: "MustLive" <mustlive@websecurity.com.ua>; <bugtraq@securityfocus.com>
> Sent: Tuesday, May 18, 2010 8:38 PM

Re: Insufficient Authentication vulnerability in Acer notebooks

vulnerability in XP Home. So I'm planning to investigate different versions
of Windows Vista to be sure.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua

----- Original Message ----- 
From: "Susan Bradley" <sbradcpa@pacbell.net>
To: "MustLive" <mustlive@websecurity.com.ua>

Re: Insufficient Authentication vulnerability in Acer notebooks

> versions
> of Windows Vista to be sure.
>
> Best wishes & regards,
> MustLive
> Administrator of Websecurity web site
> http://websecurity.com.ua
>
> ----- Original Message ----- From: "Susan Bradley" <sbradcpa@pacbell.net>
> To: "MustLive" <mustlive@websecurity.com.ua>
> Cc: <bugtraq@securityfocus.com>

Re: Saved XSS vulnerability in Internet Explorer

concerning this kind of vulnerabilities in browsers. How the attack can be
elevated from XSS to CE.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua

----- Original Message ----- 
From: "Hans Wolters" <j.wolters@piramide.nl>
To: "MustLive" <mustlive@websecurity.com.ua>; <bugtraq@securityfocus.com>

Re: Vulnerability in CB Captcha for Joomla and Mambo

uses another method to work with sessions and for it another code must be
used (for clearing of session).

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua

----- Original Message ----- 
From: "Matteo Valenza" <ilmetu@gmail.com>
To: "Susan Bradley" <sbradcpa@pacbell.net>

Vulnerabilities in CMS SiteLogic

http://site/?fun=-1

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua



Vulnerability in CB Captcha for Joomla and Mambo

developers. Everyone who want can create such PoC from exploit provided in
above-mentioned article from MoBiC project.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua



Re: Vulnerability in CB Captcha for Joomla and Mambo

> provided in
> above-mentioned article from MoBiC project.
>
> Best wishes & regards,
> MustLive
> Administrator of Websecurity web site
> http://websecurity.com.ua
>
>



Vulnerabilities in Dunia Soccer

With setting of large values of width and height it's possible to create
large load at the server.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua



Vulnerability in widget Flash Tag Cloud for Blogsa and other ASP.NET engines

http://site/Widgets/FlashTagCloud/tagcloud.swf?mode=tags&tagcloud=%3Ctags%3E%3Ca+href='http://websecurity.com.ua'+style='font-size:+40pt'%3EClick%20me%3C/a%3E%3C/tags%3E

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua



Vulnerabilities in DS-Syndicate for Joomla

Just after disclosure of these vulnerabilities, I also found new
vulnerabilities in DS-Syndicate which I wrote about in separate advisory.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua



Vulnerabilities in NovaBoard

With setting of large values of width and height it's possible to create
large load at the server.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua



Vulnerability in Referer for DataLife Engine

Referer:
http://www.google.com/search?q=xss"><script>alert(document.cookie)</script>

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua 



Re: New vulnerabilities in CMS SiteLogic

There is no "Arbitrary File Upload" class not in WASC TC v.1, not in TC v.2.
And in my work I'm using only WASC TC v.1 and TC v.2.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua

----- Original Message ----- 
From: "Salvatore Fresta aka Drosophila" <drosophilaxxx@gmail.com>
To: "MustLive" <mustlive@websecurity.com.ua>; "Bugtraq"

Re: Vulnerability in CB Captcha for Joomla and Mambo

Client-side Attacks (TC v.1), but to Logical Attacks (TC v.1) and is using
against site itself. And it can be used for different malicious actions.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua

Re: Vulnerability in CB Captcha for Joomla and Mambo Apr 16 2010 02:04PM
nant joomlapolis com


Vulnerabilities in CCMS

With setting of large values of width and height it's possible to create
large load at the server.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua



Vulnerabilities in Hydra Engine

Vulnerable is Hydra Engine 1.0.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua 



Vulnerabilities in Abton

Vulnerable are all versions of Abton before the version where developers
fixed these holes.

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua



Next Page>>

Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!