Secunia Security Advisory - Multiple vulnerabilities have been reported in IBM DB2, which can be exploited by malicious users to disclose potentially sensitive information, bypass certain security restrictions, and compromise a vulnerable system.
f670ee1e7cd0e7c5179c2f3586cb8040d947b96c3c5d66afff5c8304b8f9a8fd
Secunia Security Advisory - Some security issues and multiple vulnerabilities have been reported in Moodle, which can be exploited by malicious users to bypass certain security restrictions and by malicious people to bypass certain security restrictions, conduct cross-site scripting attacks, disclose potentially sensitive information, and conduct SQL injection attacks.
871bacd68b52437a1558603d20c98c337fbe61f0173f83a12a76f962901f6d5a
Secunia Security Advisory - A security issue has been discovered in easyCMSlite, which can be exploited by malicious people to disclose sensitive information.
9028ed891af6586d5ea9f5a39483f56dea6a5a30316047fb5c54f5d6d6a2ebab
Secunia Security Advisory - Multiple vulnerabilities have been discovered in the LeagueManager plugin for WordPress, which can be exploited by malicious people to conduct cross-site scripting attacks.
fae682b16c4fbc8c4a25e9be32b3c204b9bf272256aba18a459d92d35269f1a6
Secunia Security Advisory - A vulnerability has been reported in Big Faceless PDF Library, which can be exploited by malicious people to bypass certain security restrictions.
016de276ed9fd9e985fee7fb46c60899413ab9c1488e85f858a99632bd882777
Secunia Security Advisory - IBM has acknowledged a vulnerability in BIND included in AIX, which can be exploited by malicious people to disclose potentially sensitive information or cause a DoS (Denial of Service).
4e270b6dd10fbdac6e527b7a6a33af680650126bcd021a219270db158186b306
Secunia Security Advisory - OpenSysCom has discovered a vulnerability in EmbryoCore, which can be exploited by malicious people to disclose sensitive information.
7d564c7ed7b2dcdec9d059dee18f8abaf1d25270002d9f2e9910a6f78cd38545
Secunia Security Advisory - Vulnerability Lab has reported two vulnerabilities in Event Calendar PHP, which can be exploited by malicious people to conduct cross-site scripting attacks.
e9af4da3f018b38df037e17c6767170c0fcee29251e0e4451c034a436e0b508c
Secunia Security Advisory - A vulnerability has been reported in Niagara Framework, which can be exploited by malicious people to disclose system information.
b14606598cf00b5cdb0c07bc78dcb25db8fbc506d9d0a9cc94e5ddf58b3a9663
afick is another file integrity checker, designed to be fast and fully portable between Unix and Windows platforms. It works by first creating a database that represents a snapshot of the most essential parts of your computer system. Then a user can run the script to discover all modifications made since the snapshot was taken (i.e. files added, changed, or removed). The configuration syntax is very close to that of aide or tripwire, and a graphical interface is provided.
a3e1d27385876c05c08eb1166b11ec93813315173953b748a1e2149f47a31761
WordPress plugin Count Per Day version 3.1.1 suffers from multiple cross site scripting vulnerabilities.
28361cdd395c57304d759e3a7c3969bfc5d760b11accedd798ecce30a9dacbee
MGB OpenSource Guestbook version 0.6.9.1 suffers from cross site scripting and remote SQL injection vulnerabilities.
e30d0db62fbca895bd77c358db965a0d775079ae38b45f678fdec8aa710f86ac
Metasploit plugin 'pcap_log' is vulnerable to an arbitrary file overwrite bug which can further be leveraged to insert user-controlled data resulting in potential escalation of privileges. Metasploit module included.
a3608689ff5f6a56679189ea8149e0e805de1c706fb7d3fedff592abe11d622b
Slackware Security Advisory - New pidgin packages are available for Slackware 12.2, 13.0, 13.1, 13.37, and -current to fix security issues.
a88e26046b8bc391e0c4c84f585e2c060fb72db3a90cd34e037858c1ff507966
Slackware Security Advisory - New php packages are available for Slackware 12.0, 12.1, 12.2, 13.0, 13.1, 13.37, and -current to fix security issues.
3ff04ee32668e3d12cde5cacdf554aa5ecd59402e6b6782ca20ce833c430d0c8
easyCMSlite version 1.0.9 suffers from a remote database information disclosure vulnerability.
d76b243f67795b89da6846818d5643c0c788edbdf1c583ff25b07a351804feaa
Google Chrome developers, while trying to be adaptive and current, added some windows 8 helper functions to aid the development of Metro style behavior, but does not include the library file itself, thus resulting in an unqualified dynamic-link library call to 'metro_driver.dll'. A user with local disk access can carefully construct a DLL that suits the pattern that is being traversed by the client and implement it somewhere along the search path and the client will load it seamlessly.
dbb9d62577ac5b978fa6419192db9f6b4808436e28a90885a8548c968b26a7d8