New User, Welcome!     Login

Next Page >>

Visit

LayerOne 2008 - CFP Released

- Cryptographic Cracking Using FPGA Technology

We would love to see the same breadth and depth of submissions as we
have in previous years, so if you have an idea you're on the fence
about - please send it in! For a complete list of past presentations,
visit www.layerone.info.

Please be sure to include the following information in your submission:

- Presentation name
- A one-sentence synopsis of your topic

CFP C H A S E - 2 0 0 7 Lahore Pakistan

first organized previous year in 2006 and proved to be 
successful with the participation of the community.

In addition to presentations and talks, CHASE-2007 
introduces trainings, CTF and other contests. For details, 
please visit the website at:

http://www.chase.org.pk/


** CALL FOR PAPERS ** 

CHASE - 2009 Lahoe Pakistan | Call for Papers

In addition to presentations and talks, CHASE-2009 will 
include gaming competition and four tracks of trainings. 


Limited travel funds are vailable for speakers coming
outside of Pakistan. For details, please visit the website 
at: 


http://www.chase.org.pk/


Olate Download 3.4.2 ~ userupload.php ~ Upload Executable Files

VISIT ORIGINAL ADVISORY FOR MORE DETAILS
http://myimei.com/security/2007-09-01/olate-download-342-useruploadphp-upload-executable-files.html
 VISIT ORIGINAL ADVISORY FOR MORE DETAILS/
——-Summary——
 Software: Olate Download
 Sowtware's Web Site: http://www.olate.co.uk/
 Versions: 3.4.2
 Class: Remote
 Status: Unpatched
 Exploit: Available

Olate Download 3.4.2~uploads folder ~ directory traversal

VISIT ORIGINAL ADVISORY FOR MORE DETAILS
http://myimei.com/security/2007-09-01/olate-download-342uploads-folder-directory-traversal.html
VISIT ORIGINAL ADVISORY FOR MORE DETAILS
——-Summary——
 Software: Olate Download
 Sowtware's Web Site: http://www.olate.co.uk/
 Versions: 3.4.2
 Class: Remote
  Status: Unpatched
 Exploit: Available

Olate Download 3.4.1 ~ admin.php ~ Admin authentication bypassing

VISIT ORIGINAL LINK FOR MORE DETAILES
http://myimei.com/security/2007-08-16/olate-download-341adminphpauthentication-bypassing.html
VISIT ORIGINAL LINK FOR MORE DETAILES

oftware: Olate Download
 Sowtware's Web Site: http://www.olate.co.uk/
 Versions: 3.4.1
 Status: Unpatched
 Exploit: Available
 Solution: Not Available

Olate Download 3.4.2~modules/core/uim.php~XSS

VISIT ORIGINAL ADVISORY FOR MORE DETAILES
http://myimei.com/security/2007-08-22/olate-download-342modulescoreuimphpxss.html
VISIT ORIGINAL ADVISORY FOR MORE DETAILES
——————-Summary—————-
Software: Olate Download
Sowtware's Web Site: http://www.olate.co.uk/
Versions: 3.4.2
Class: Remote
Status: Unpatched
Exploit: Available

vOlk Botnet Framework v4.0 - Multiple Web Vulnerabilities

operating systems The code created by [byvOlk] PHP and Visual Basic 6.0.

Features:
[+] Add Startup
[+] Download & Execute.
[+] Visit Webpage [Visible].
[+] Visit Webpage [Invisible].
[+] Mutex
[+] Stealer FTP(Filezilla)
[+] Msn Stealer(Messenger Save User)
[+] Statistics Bot s

Re: Olate Download 3.4.2 ~ userupload.php ~ Upload Executable Files

                {

Good Luck.

On Friday 31 August 2007, imei Addmimistrator wrote:
> VISIT ORIGINAL ADVISORY FOR MORE DETAILS
> http://myimei.com/security/2007-09-01/olate-download-342-useruploadphp-uplo
>ad-executable-files.html VISIT ORIGINAL ADVISORY FOR MORE DETAILS/
> ——-Summary——
>  Software: Olate Download
>  Sowtware's Web Site: http://www.olate.co.uk/

THOTCON 0x2 - Call For Papers is Open -> 10.01.10

talks. We anticipate having all speakers selected by 02.01.11.

Note: We will not accept CFP submissions as PDF attachments. No need to 
get fancy on us.

Visit: <http://www.thotcon.org/cfp.html> for more information.

*** Tickets ****************************
Tickets will officially go on sale on 11.01.10 (yep, that's 3.1.2 for
those playing along at home).


=?iso-8859-1?Q?Exploiting_Chrome_and_Opera's_inbuilt_ATOM/RSS_reader_with?= =?iso-8859-1?Q?_Script_Execution_and_more?=

Exploiting Chrome and Opera’s inbuilt ATOM/RSS reader with Script Execution
and more
----------------------------------------------------------------------------
---------
For complete post (with images), please visit -
http://securethoughts.com/2009/09/exploiting-chrome-and-operas-inbuilt-atomr
ss-reader-with-script-execution-and-more/

=============================================
SECURETHOUGHTS.COM ADVISORY

[security bulletin] HPSBGN02305 SSRT080004 rev.1 - HP Compaq Business Notebook PC BIOS, Local Denial of Service (DoS)

Method 1: 

The updates are available for download using the following procedures:

1. Open a web browser and visit http://www.hp.com 

2. In the Search field, type the applicable SoftPaq number from the list below. Start the search.

3. Select an item from the search results. 


[security bulletin] HPSBGN02305 SSRT080004 rev.1 - HP Compaq Business Notebook PC BIOS, Local Denial of Service (DoS)

Method 1: 

The updates are available for download using the following procedures:

1. Open a web browser and visit http://www.hp.com 

2. In the Search field, type the applicable SoftPaq number from the list below. Start the search.

3. Select an item from the search results. 


CORE-2010-1021: IBM WebSphere Application Server Cross-Site Request Forgery

The administrative console of IBM WebSphere Application Server is
vulnerable to Cross-Site Request Forgery (CSRF) attacks, which can be
exploited by remote attackers to force a logged-in administrator to
perform unwanted actions on the IBM WebSphere administrative console, by
enticing him to visit a malicious web page.


4. *Vulnerable packages*

   . IBM WebSphere Application Server 7.0.0.11

ZDI-10-096: Apple Webkit Recursive Use Element Remote Code Execution Vulnerability

Apple WebKit

-- TippingPoint(TM) IPS Customer Protection:
TippingPoint IPS customers have been protected against this
vulnerability by Digital Vaccine protection filter ID 9849. 
For further product information on the TippingPoint IPS, visit:

    http://www.tippingpoint.com

-- Vulnerability Details:
This vulnerability allows remote attackers to execute arbitrary code on

ZDI-08-083: Microsoft Animation ActiveX Control Malformed AVI Parsing Code Execution Vulnerability

Microsoft Windows XP

-- TippingPoint(TM) IPS Customer Protection:
TippingPoint IPS customers have been protected against this
vulnerability by Digital Vaccine protection filter ID 6539. 
For further product information on the TippingPoint IPS, visit:

    http://www.tippingpoint.com

-- Vulnerability Details:
This vulnerability allows remote attackers to execute arbitrary code

ZDI-10-040: Apple QuickTime RLE Bit Depth Remote Code Execution Vulnerability

Apple Quicktime

-- TippingPoint(TM) IPS Customer Protection:
TippingPoint IPS customers have been protected against this
vulnerability by Digital Vaccine protection filter ID 8437. 
For further product information on the TippingPoint IPS, visit:

    http://www.tippingpoint.com

-- Vulnerability Details:
This vulnerability allows remote attackers to execute arbitrary code on

ZDI-10-111: Adobe Flash Player LocalConnection Memory Corruption Remote Code Execution Vulnerability

Adobe Flash Player

-- TippingPoint(TM) IPS Customer Protection:
TippingPoint IPS customers have been protected against this
vulnerability by Digital Vaccine protection filter ID 9912. 
For further product information on the TippingPoint IPS, visit:

    http://www.tippingpoint.com

-- Vulnerability Details:
This vulnerability allows remote attackers to execute arbitrary code on

ZDI-10-109: Adobe Flash Player Multiple Atom MP4 Parsing Remote Code Execution Vulnerability

Adobe Flash Player

-- TippingPoint(TM) IPS Customer Protection:
TippingPoint IPS customers have been protected against this
vulnerability by Digital Vaccine protection filter ID 9397. 
For further product information on the TippingPoint IPS, visit:

    http://www.tippingpoint.com

-- Vulnerability Details:
This vulnerability allows attackers to execute arbitrary code on

ZDI-09-045: Microsoft DirectShow Quicktime Atom Parsing Memory Corruption Vulnerability

Microsoft Windows Server 2003

-- TippingPoint(TM) IPS Customer Protection:
TippingPoint IPS customers have been protected against this
vulnerability by Digital Vaccine protection filter ID 8307.
For further product information on the TippingPoint IPS, visit:

    http://www.tippingpoint.com

-- Vulnerability Details:
This vulnerability allows remote attackers to execute arbitrary code on

ZDI-09-056: Microsoft Office OWC10.Spreadsheet ActiveX BorderAround() Heap Corruption Vulnerability

Microsoft Office Excel

-- TippingPoint(TM) IPS Customer Protection:
TippingPoint IPS customers have been protected against this
vulnerability by Digital Vaccine protection filter ID 8298.
For further product information on the TippingPoint IPS, visit:

    http://www.tippingpoint.com

-- Vulnerability Details:
This vulnerability allows attackers to execute arbitrary code on

ZDI-09-043: Apple Java CColorUIResource Pointer Derference Code Execution Vulnerability

Apple Java

-- TippingPoint(TM) IPS Customer Protection:
TippingPoint IPS customers have been protected against this
vulnerability by Digital Vaccine protection filter ID 6800.
For further product information on the TippingPoint IPS, visit:

    http://www.tippingpoint.com

-- Vulnerability Details:
his vulnerability allows remote attackers to execute arbitrary code on

ZDI-10-029: Apple WebKit innerHTML element Substitution Remote Code Execution Vulnerability

Apple Safari

-- TippingPoint(TM) IPS Customer Protection:
TippingPoint IPS customers have been protected against this
vulnerability by Digital Vaccine protection filter ID 9590. 
For further product information on the TippingPoint IPS, visit:

    http://www.tippingpoint.com

-- Vulnerability Details:
This vulnerability allows remote attackers to execute arbitrary code on

ZDI-10-113: Mozilla Firefox XSLT Sort Remote Code Execution Vulnerability

Mozilla Firefox 3.6.x

-- TippingPoint(TM) IPS Customer Protection:
TippingPoint IPS customers have been protected against this
vulnerability by Digital Vaccine protection filter ID 9910. 
For further product information on the TippingPoint IPS, visit:

    http://www.tippingpoint.com

-- Vulnerability Details:
This vulnerability allows remote attackers to execute arbitrary code on

ZDI-09-088: Microsoft Internet Explorer IFrame Attributes Circular Reference Dangling Pointer Vulnerability

Microsoft Internet Explorer 8

-- TippingPoint(TM) IPS Customer Protection:
TippingPoint IPS customers have been protected against this
vulnerability by Digital Vaccine protection filter ID 9325. 
For further product information on the TippingPoint IPS, visit:

    http://www.tippingpoint.com

-- Vulnerability Details:
This vulnerability allows remote attackers to execute arbitrary code on

ZDI-10-089: Adobe Shockwave Director PAMI Chunk Remote Code Execution Vulnerability

Adobe Shockwave Player

-- TippingPoint(TM) IPS Customer Protection:
TippingPoint IPS customers have been protected against this
vulnerability by Digital Vaccine protection filter ID 9689. 
For further product information on the TippingPoint IPS, visit:

    http://www.tippingpoint.com

-- Vulnerability Details:
This vulnerability allows remote attackers to execute arbitrary code on

ZDI-09-054: Microsoft Office OWC10.Spreadsheet ActiveX msDataSourceObject() Heap Corruption Vulnerability

Microsoft Office Excel

-- TippingPoint(TM) IPS Customer Protection:
TippingPoint IPS customers have been protected against this
vulnerability by Digital Vaccine protection filter ID 8322.
For further product information on the TippingPoint IPS, visit:

    http://www.tippingpoint.com

-- Vulnerability Details:
This vulnerability allows attackers to execute arbitrary code on

ZDI-10-093: Apple Webkit CSS Charset Text Transformation Remote Code Execution Vulnerability

Apple WebKit

-- TippingPoint(TM) IPS Customer Protection:
TippingPoint IPS customers have been protected against this
vulnerability by Digital Vaccine protection filter ID 9858. 
For further product information on the TippingPoint IPS, visit:

    http://www.tippingpoint.com

-- Vulnerability Details:
This vulnerability allows remote attackers to execute arbitrary code on

ZDI-09-014: Adobe Acrobat getIcon() Stack Overflow Vulnerability

Adobe Acrobat

-- TippingPoint(TM) IPS Customer Protection:
TippingPoint IPS customers have been protected against this
vulnerability by Digital Vaccine protection filter ID 6255.
For further product information on the TippingPoint IPS, visit:

    http://www.tippingpoint.com

-- Vulnerability Details:
This vulnerability allows remote attackers to execute arbitrary code on

ZDI-10-052: Sun Java Runtime Environment XNewPtr Remote Code Execution Vulnerability

Sun Microsystems Java Runtime

-- TippingPoint(TM) IPS Customer Protection:
TippingPoint IPS customers have been protected against this
vulnerability by Digital Vaccine protection filter ID 9648. 
For further product information on the TippingPoint IPS, visit:

    http://www.tippingpoint.com

-- Vulnerability Details:
This vulnerability allows remote attackers to execute arbitrary code on

Next Page>>

Copyright © 1995-2013 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!