| Mon | Tue | Wed | Thu | Fri | Sat | Sun |
| 1 | 2 | 3 | 4 | |||
| 5 | 6 | 7 | 8 | 9 | 10 | 11 |
| 12 | 13 | 14 | 15 | 16 | 17 | 18 |
| 19 | 20 | 21 | 22 | 23 | 24 | 25 |
| 26 | 27 | 28 | 29 | 30 | 31 | |
xt:Commerce possible DoS
( 90 days 2 hours ago)
Hello, I've found a suspicious behavior of the xt:Commerce shop software (only verified in their demo shop). When entering "<>>" as a search query in the Quick Purchase field at the left side of the shop, I get: ...
rPSA-2008-0176-1 php php-cgi php-imap php-mcrypt php-mysql php-mysqli php-pgsql php-soap php-xsl php5 php5-cgi php5-imap php5-mcrypt php5-mysql php5-mysqli php5-pear php5-pgsql php5-soap php5-xsl
( 90 days 2 hours ago)
rPath Security Advisory: 2008-0176-1 Published: 2008-05-23 Products: rPath Appliance Platform Linux Service 1 rPath Linux 1 rPath Linux 2 Rating: Critical Exposure Level Classification: Remote System User Deterministic Unauthorized Access Updated Versions: php=conary.rpath.comatrpl:2/5.2.6-0.1-1 php5=conary.rpath.comatrpl:1/5.2.6-1-1 php5-cgi=conary.rpath.comatrpl:1/5.2.6-1-1 php5-imap=conary.rpath.comatrpl:1/5.2.6-1-1 php5-mcrypt=conary.rpath.comatrpl:1/5.2.6-1-1 php5-mysql=conary.rpath.comatrpl:1/5.2.6-1-1 ...
Thieves troll for execs with new Tax Court phish scam
( 90 days 4 hours ago)
Security researchers and the U.S. Tax Court are warning of targeted phishing attacks disguised as overdue tax notices from federal courts.

[DSECRG-08-025] Local File Include in OneCMS 2.5
( 90 days 4 hours ago)
Digital Security Research Group [DSecRG] Advisory #DSECRG-08-025 Application: OneCMS Versions Affected: 2.5 Vendor URL: Bug: Local File Include Exploits: YES Reported: 26.03.2008 Vendor Response: NONE Solution: NONE Date of Public Advisory: 23.05.2008 Author: Digital Security Research Group [DSecRG] (research [at] dsec [dot] ru) Description *********** ...
PR07-15: Cross-site Scripting (XSS) / HTML injection on F5 FirePass 4100 SSL VPN 'my.logon.php3' server-side script
( 90 days 4 hours ago)
Update: To exploit this in both firefox and IE requires an extra char ("=") in the end. Using the same PoC URL we get: ?">
prev · 23.05.2008 · next






