Full Disclosure: by author

17 messages starting Feb 14 23 and ending Feb 14 23
Date index | Thread index | Author index


Apple Product Security via Fulldisclosure

APPLE-SA-2023-02-13-2 macOS Ventura 13.2.1 Apple Product Security via Fulldisclosure (Feb 14)
APPLE-SA-2023-02-13-1 iOS 16.3.1 and iPadOS 16.3.1 Apple Product Security via Fulldisclosure (Feb 14)
APPLE-SA-2023-02-13-3 Safari 16.3.1 Apple Product Security via Fulldisclosure (Feb 14)

Benjamin Mar-Conrad

[CVE-Request] Multiple vulnerabilities in BMC Control-M before 9.0.20.214 Benjamin Mar-Conrad (Feb 14)

dammitjosie--- via Fulldisclosure

Sumo Logic keep api credentials on endpoints dammitjosie--- via Fulldisclosure (Feb 22)

Eric Flokstra

Multiple vulnerabilities in Audiocodes Device Manager Express Eric Flokstra (Feb 22)

hyp3rlinx

Microsoft Windows Contact File / Remote Code Execution (Resurrected) CVE-2022-44666 hyp3rlinx (Feb 27)

Julien Ahrens (RCE Security)

[CVE-2023-0291] Quiz And Survey Master <= 8.0.8 - Unauthenticated Arbitrary Media Deletion Julien Ahrens (RCE Security) (Feb 14)
[CVE-2023-0292] Quiz And Survey Master <= 8.0.8 - Cross-Site Request Forgery to Arbitrary Media Deletion Julien Ahrens (RCE Security) (Feb 14)

Martin Heiland via Fulldisclosure

OXAS-ADV-2022-0002: OX App Suite Security Advisory Martin Heiland via Fulldisclosure (Feb 14)

Patrick Hener

Remote Code Execution in Kardex MLOG Patrick Hener (Feb 16)

Peter Ohm

[NetworkSEC NWSSA] CVE-2023-26602: ASUS ASMB8 iKVM RCE and SSH Root Access Peter Ohm (Feb 27)
[NetworkSEC NWSSA] CVE-2023-26609: ABUS Security Camera LFI, RCE and SSH Root Peter Ohm (Feb 27)

SEC Consult Vulnerability Lab, Research via Fulldisclosure

SEC Consult SA-20230214-0 :: Multiple XSS Vulnerabilities in B&R Systems Diagnostics Manager SEC Consult Vulnerability Lab, Research via Fulldisclosure (Feb 14)

Stefan Kanthak

Defense in depth -- the Microsoft way (part 82): INVALID/BOGUS AppLocker rules disable SAFER on Windows 11 22H2 Stefan Kanthak (Feb 22)
Defense in depth -- the Microsoft way (part 81): enabling UTF-8 support breaks existing code Stefan Kanthak (Feb 14)

Thomas Weber

CyberDanube Security Research 20230213-0 | Multiple Vulnerabilities in JetWave Series Thomas Weber (Feb 14)