X2Engine version 5.0.4 Platinum Edition suffers from a cross site request forgery vulnerability.
Monthly Archives: March 2015
Bugtraq: Jolla Phone tel URI Spoofing
Jolla Phone tel URI Spoofing
Bugtraq: [ MDVSA-2015:058 ] kernel
[ MDVSA-2015:058 ] kernel
Bugtraq: Serendipity CMS – XSS Vulnerability in Version 2.0
Serendipity CMS – XSS Vulnerability in Version 2.0
Bugtraq: [ MDVSA-2015:059 ] nss
[ MDVSA-2015:059 ] nss
HostingTakip 3.0 Cross Site Scripting
HostingTakip version 3.0 suffers from a persistent cross site scripting vulnerability.
HP Security Bulletin HPSBMU03267 1
HP Security Bulletin HPSBMU03267 1 – Potential security vulnerabilities have been identified with the HP Matrix Operating Environment and HP CloudSystem Matrix running OpenSSL. These vulnerabilities comprise the SSLv3 vulnerability known as “Padding Oracle on Downgraded Legacy Encryption” or “POODLE”, which could be exploited remotely to allow disclosure of information. Revision 1 of this advisory.
HP Security Bulletin HPSBMU03259 1
HP Security Bulletin HPSBMU03259 1 – A potential security vulnerability has been identified with the HP Version Control Repository Manager running OpenSSL on Linux and Windows. This vulnerability is the SSLv3 vulnerability known as “Padding Oracle on Downgraded Legacy Encryption” or “POODLE”, which could be exploited remotely to allow disclosure of information. Revision 1 of this advisory.
HP Security Bulletin HPSBMU03283 1
HP Security Bulletin HPSBMU03283 1 – Potential security vulnerabilities have been identified with the HP Virtual Connect Enterprise Manager SDK running OpenSSL on Windows. This vulnerability is the SSLv3 vulnerability known as “Padding Oracle on Downgraded Legacy Encryption” or “POODLE”, which could be exploited remotely to allow disclosure of information. A second vulnerability could be exploited remotely to cause a Denial of Service (DoS). Revision 1 of this advisory.
HP Security Bulletin HPSBMU03262 1
HP Security Bulletin HPSBMU03262 1 – A potential security vulnerability has been identified with the HP Version Control Agent running OpenSSL on Linux and Windows. This vulnerability is the SSLv3 vulnerability known as “Padding Oracle on Downgraded Legacy Encryption” or “POODLE”, which could be exploited remotely to allow disclosure of information. A second vulnerability could be exploited to cause a Denial of Service (Dos). Revision 1 of this advisory.