[FD] Easy FTP Pro v4.2 iOS - Command Inject Vulnerabilities

2014-08-07 Thread Vulnerability Lab
Document Title: === Easy FTP Pro v4.2 iOS - Command Inject Vulnerabilities References (Source): http://www.vulnerability-lab.com/get_content.php?id=1291 Release Date: = 2014-08-06 Vulnerability Laboratory ID (VL-ID): ===

[FD] nullcon CFP is open

2014-08-07 Thread nullcon
Dear Security Gurus, 6th year | CFP opens on 6th Aug 2014 | conference on 6th Feb 2015. Welcome to nullcon 666! Bring out the beast in you. http://en.wikipedia.org/wiki/666_(number) we are happy to open the CFP. Time to tickle your gray cells and submit your research. Training: 4th-5th Feb 2015

[FD] Outlook XML Bomb?

2014-08-07 Thread Melchior Limacher
Before: [cid:image001.png@01CFB157.75C3A1A0] Paste this in a new Mail: [cid:image002.png@01CFB157.75C3A1A0] I got this: [cid:image003.png@01CFB158.215B8C80] [cid:image004.png@01CFB158.85FD4480] Regards, ___ Sent through the Full Disclosure maili

[FD] Vulnerabilities in Vembu Backup and Disaster Recovery addressed

2014-08-07 Thread Len Srinivasan
The company logically secure has mentioned about multiple vulnerabilities in Vembu Backup and Disaster Recovery product and we would like to address those concerns in detail. We certainly welcome security related feedback on the product as we are constantly addressing those on a regular basis as w

[FD] TomatoCart v1.x (latest-stable) Multiple Vulnerabilities

2014-08-07 Thread Kenny Mathis
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 CVE-2014-3978 - Remote SQL Injection Vulnerability CVE-2014-3830 - Reflected Cross Site Scripting - -- Title: TomatoCart v1.x (latest-stable) Remote SQL Injection Vulnera