Bluelog is a Bluetooth scanner/logger written with speed in mind. It is intended to be used as a site survey tool, concerned more about accurately detecting the number of discoverable Bluetooth devices than individual device specifics. Bluelog also includes the unique "Bluelog Live" mode, which puts discovered devices into a constantly updating live webpage which you can serve up with your HTTP daemon of choice.
Kloxo LxCenter CP version 6.1.10 suffers from a cross site scripting vulnerability.
Mandriva Linux Security Advisory 2012-017 - Use-after-free vulnerability in Mozilla Firefox 10.x before 10.0.1, Thunderbird 10.x before 10.0.1, and SeaMonkey 2.7 allows remote attackers to cause a denial of service or possibly execute arbitrary code.
Zimbra suffers from a cross site scripting vulnerability.
Fork CMS version 3.2.4 suffers from cross site scripting and local file inclusion vulnerabilities.
Codetective is a simple tool to determine the crypto/encoding algorithm used according to traces of its representation. Written in Python.
Whitepaper called Wi-Fi Security with Wi-Fi Protection Plus. Wi-Fi P+ is a new security architecture proposed by the authors.
PBBoard version 2.1.4 suffers from cross site request forgery and shell upload vulnerabilities.
Razor CMS version 1.2 suffers from multiple file disclosure vulnerabilities.
eFront Community++ version 3.6.10 suffers from a remote SQL injection vulnerability.
Yahoo! Messenger version 11.5 suffers from a buffer overflow vulnerability.
Win32 speaking shellcode that says "You are owned!" when injected into a process.
Mandriva Linux Security Advisory 2012-016 - A File Inclusion vulnerability was discovered and corrected in GLPI. This advisory provides the latest version of GLPI that is not vulnerable to this issue.
OnxShop CMS version 1.5.0 suffers from multiple cross site scripting vulnerabilities.
This is an advance notification of 9 security bulletins that Microsoft is intending to release on February 14, 2012.
CubeCart versions 3.0.20 and below suffer from an open URL redirection vulnerability.
The D-Link DAP 1150 suffers from cross site request forgery, cross site scripting and denial of service vulnerabilities.
Zen-Cart version 1.3.9h suffers from a cross site request forgery vulnerability.
The Astaro Security Gateway suffers from a whitelist bypass vulnerability due to a poorly formed regex.
Dolibarr CMS version 3.2.0 Alpha suffers from a remote SQL injection vulnerability.
Dolibarr CMS version 3.2.0 Alpha suffers from multiple local file inclusion vulnerabilities.
Pfile version 1.02 suffers from cross site scripting and remote SQL injection vulnerabilities.
Nova CMS suffers from multiple remote file inclusion vulnerabilities.
This is a patch for OpenSSH version 5.9p1 that adds a magic root password backdoor, logs usernames and passwords and keeps connections from being logged in wtmp, utmp, etc.
Kloxo LxCenter Server CP version 6.1.10 suffers from multiple cross site scripting vulnerabilities.