gmane.comp.security.penetration archive
395 archived articles, newest first (page 2 of 4). Latest articles →
[ERPSCAN-15-027] Oracle E-Business Suite - Cross Site Scripting Vulnerability
Tue, 27 Oct 2015 13:19:27 +0300[ERPSCAN-15-026] Oracle E-Business Suite - SQL injection Vulnerability
Tue, 27 Oct 2015 13:17:23 +0300[ERPSCAN-15-025] Oracle E-Business Suite Database user enumeration Vulnerability
Tue, 27 Oct 2015 13:14:31 +0300Re: hsecscan v0 (https://github.com/riramar/hsecscan)
Tue, 20 Oct 2015 14:52:36 +0100Re: hsecscan v0 (https://github.com/riramar/hsecscan)
Tue, 20 Oct 2015 13:52:33 -0200Re: hsecscan v0 (https://github.com/riramar/hsecscan)
Tue, 20 Oct 2015 11:24:46 -0200Re: hsecscan v0 (https://github.com/riramar/hsecscan)
Tue, 20 Oct 2015 13:21:09 +0100Re: hsecscan v0 (https://github.com/riramar/hsecscan)
Tue, 20 Oct 2015 10:14:42 -0200Re: hsecscan v0 (https://github.com/riramar/hsecscan)
Tue, 20 Oct 2015 11:24:23 +0100Re: hsecscan v0 (https://github.com/riramar/hsecscan)
Mon, 19 Oct 2015 13:49:23 -0200hsecscan v0 (https://github.com/riramar/hsecscan)
Fri, 16 Oct 2015 09:52:21 -0300ERPSCAN Research Advisory [ERPSCAN-15-017] SAP NetWeaver J2EE DAS service - Unauthorized Access
Fri, 16 Oct 2015 14:09:01 +0300Drupal 8.0.0-beta14 Vendor Script Vulnerable to XSS
Tue, 6 Oct 2015 13:58:13 +0530Arachni Framework v1.3 & WebUI v0.5.8 have been released (Web Application Security Scanner)
Wed, 7 Oct 2015 20:42:51 +0300[Onapsis Security Advisory 2015-013] SAP Business Objects Memory Corruption
Tue, 22 Sep 2015 15:10:36 -0300t2'15: Challenge to be released 2015-09-19 10:00 EEST
Mon, 14 Sep 2015 08:29:00 +0300[ERPSCAN-15-016] SAP NetWeaver – Hardcoded credent ials
Wed, 9 Sep 2015 18:29:35 +0300[ERPSCAN-15-015] SAP NetWeaver AS ABAP– Hardcoded Credentials
Wed, 9 Sep 2015 18:24:59 +0300[ERPSCAN-15-014] SAP Mobile Platform 3 – XXE in Ad d Repository
Wed, 9 Sep 2015 18:20:49 +0300nullcon se7en CFP is open
Wed, 26 Aug 2015 10:58:51 +0530[ERPSCAN-15-013] SAP NetWeaver AS Java CIM UPLOAD – XXE
Mon, 17 Aug 2015 17:16:03 +0300[ERPSCAN-15-012] SAP Afaria 7 XComms – Buffer Over flow
Mon, 17 Aug 2015 17:12:56 +0300ERPSCAN Research Advisory [ERPSCAN-15-012] SAP Afaria 7 XComms – Buffer Overflow
Fri, 14 Aug 2015 18:53:54 +0300[Onapsis Security Advisory 2015-012] SAP Mobile Platform DataVault Predictable Encryption Password for Secure Storage
Wed, 12 Aug 2015 11:52:17 -0300[Onapsis Security Advisory 2015-010] SAP Mobile Platform DataVault Keystream Recovery
Wed, 12 Aug 2015 11:50:53 -0300[Onapsis Security Advisory 2015-011] SAP Mobile Platform DataVault Predictable encryption passwords for Configuration Values
Wed, 12 Aug 2015 11:51:31 -0300SpiderFoot 2.5.0 released
Tue, 04 Aug 2015 22:05:10 +0200Arachni Framework v1.2 & WebUI v0.5.7.1 have been released (Web Application Security Scanner)
Fri, 17 Jul 2015 01:12:13 +0300Ruxcon 2015 Final Call For Presentations
Mon, 06 Jul 2015 02:04:30 +0000[ERPSCAN-15-011] SAP Mobile Platform 3.0 - XXE
Thu, 25 Jun 2015 15:20:49 +0300[ERPSCAN-15-008] SAP Afaria 7 XcListener - DoS in the module XeClient.Dll
Thu, 25 Jun 2015 15:11:13 +0300[ERPSCAN-15-010] SYBASE SQL Anywhere 12 and 16 - DoS
Thu, 25 Jun 2015 15:17:49 +0300[ERPSCAN-15-009] SAP Afaria 7 XcListener - Missing authorization check
Thu, 25 Jun 2015 15:14:49 +0300[ERPSCAN-15-007] SAP Management Console ReadProfile Parameters - Information disclosure
Thu, 25 Jun 2015 15:08:01 +0300[ERPSCAN-15-005] SAP Mobile Platform - XXE
Thu, 25 Jun 2015 15:01:10 +0300[ERPSCAN-15-006] SAP NetWeaver Portal ReportXmlViewer - XXE
Thu, 25 Jun 2015 15:05:56 +0300[ERPSCAN-15-004] SAP NetWeaver Portal XMLValidationComponent - XXE
Thu, 25 Jun 2015 14:52:48 +0300[ERPSCAN-15-003] SAP NetWeaver Dispatcher Buffer Overflow - RCE, DoS
Thu, 25 Jun 2015 14:49:25 +0300new firmware security blog
Tue, 09 Jun 2015 18:02:14 -0700[HITB-Announce] FINAL CALL: HITB GSEC Call for Papers
Thu, 11 Jun 2015 15:57:42 +0800t2'15: Call for Papers 2015 (Helsinki / Finland)
Mon, 01 Jun 2015 23:03:11 +0300hardwear.io - Hardware Security Conference Call for Papers
Fri, 29 May 2015 15:41:15 +0530c0c0n 2015 | The cy0ps c0n - CFP & CFW - Extended Deadline: 14 June, 2015
Mon, 1 Jun 2015 07:53:29 -0400 (EDT)[Onapsis Security Advisory 2015-006] SAP HANA Information Disclosure via SQL IMPORT FROM statement
Wed, 27 May 2015 15:27:56 -0300[Onapsis Security Advisory 2015-007] SAP HANA Log Injection Vulnerability
Wed, 27 May 2015 15:28:05 -0300[HITB-Announce] REMINDER: Call for Papers for HITB GSEC
Mon, 25 May 2015 19:35:48 +0800Breakpoint 2015 Call For Presentations
Sun, 17 May 2015 09:20:04 +000044CON London CFP Open
Wed, 13 May 2015 16:53:09 +0100Arachni Framework v1.1 & WebUI v0.5.7 have been released (Web Application Security Scanner)
Fri, 01 May 2015 18:18:52 +0300Ruxcon 2015 Call For Presentations
Mon, 13 Apr 2015 03:40:04 +0000Positive Hack Days V — Call for Papers Stage 2
Wed, 25 Feb 2015 13:33:04 +0000[FD] [Onapsis Security Advisory 2015-004] SAP Business Objects Unauthorized Audit Information Delete via CORBA
Wed, 25 Feb 2015 11:41:37 -0300[FD] [Onapsis Security Advisory 2015-005] SAP Business Objects Unauthorized Audit Information Access via CORBA
Wed, 25 Feb 2015 11:41:46 -0300[FD] [Onapsis Security Advisory 2015-003] SAP Business Objects Unauthorized File Repository Server Write via CORBA
Wed, 25 Feb 2015 11:41:19 -0300[FD] [Onapsis Security Advisory 2015-002] SAP Business Objects Unauthorized File Repository Server Read via CORBA
Wed, 25 Feb 2015 11:41:00 -0300[FD] [Onapsis Security Advisory 2015-001] Multiple Reflected Cross Site Scripting Vulnerabilities in SAP HANA Web-based Development Workbench
Wed, 25 Feb 2015 11:40:18 -0300SpiderFoot 2.3.0 released
Thu, 12 Feb 2015 20:14:26 +0100Symantec Encryption Management Server < 3.2.0MP6 - Remote Command Injection
Fri, 30 Jan 2015 11:59:07 +0800[FD] Symantec Encryption Management Server < 3.2.0 MP6 - Remote Command Injection
Fri, 30 Jan 2015 11:49:20 +0800Recon 2015 Call For Papers - June 19 - 21, 2015 - Montreal, Canada
Thu, 8 Jan 2015 12:58:42 -0500 (EST)[FD] [Onapsis Security Advisory 2014-034] SAP Business Objects Search Token Privilege Escalation via CORBA
Tue, 16 Dec 2014 11:48:18 -0300[HITB-Announce] #HITB2015AMS Call for Papers is Open
Tue, 9 Dec 2014 17:52:20 +0800[FD] [Onapsis Security Advisory 2014-032] SAP BusinessObjects Persistent Cross Site Scripting
Wed, 08 Oct 2014 11:07:18 -0300[FD] [Onapsis Security Advisory 2014-029] SAP Business Objects Information Disclosure
Wed, 08 Oct 2014 11:00:57 -0300[FD] [Onapsis Security Advisory 2014-030] SAP Business Objects Denial of Service via CORBA
Wed, 08 Oct 2014 11:00:29 -0300[FD] [Onapsis Security Advisory 2014-031] SAP Business Objects Information Disclosure via CORBA
Wed, 08 Oct 2014 11:00:12 -0300[FD] [Onapsis Security Advisory 2014-033] SAP Business Warehouse Missing Authorization Check
Wed, 08 Oct 2014 10:59:58 -0300[FD] [Onapsis Security Advisory 2014-027] SAP HANA Multiple Reflected Cross Site Scripting Vulnerabilities
Wed, 08 Oct 2014 10:59:44 -0300[FD] [Onapsis Security Advisory 2014-028] SAP HANA Web-based Development Workbench Code Injection
Wed, 08 Oct 2014 10:58:35 -0300t2’14 Challenge to be released 2014-09-13 10:00 EEST
Sun, 07 Sep 2014 10:28:25 +0300Arachni v1.0 (WebUI v0.5) has been released (Open Source Web Application Security Scanner Framework)
Sat, 30 Aug 2014 02:45:28 +0300Re: How to deal with the company that doesn't react on providing them information about serious security vulnerability?
Thu, 31 Jul 2014 13:08:23 -0400Re: How to deal with the company that doesn't react on providing them information about serious security vulnerability?
Thu, 31 Jul 2014 09:43:08 -0400RE: How to deal with the company that doesn't react on providing them information about serious security vulnerability?
Wed, 30 Jul 2014 17:18:06 +0000Re: How to deal with the company that doesn't react on providing them information about serious security vulnerability?
Wed, 30 Jul 2014 09:36:28 -0700[FD] [Onapsis Security Advisory 2014-026] Missing authorization check in function modules of BW-SYS-DB-DB4
Tue, 29 Jul 2014 11:54:49 -0300[FD] [Onapsis Security Advisory 2014-025] Multiple Cross Site Scripting Vulnerabilities in SAP HANA XS Administration Tool
Tue, 29 Jul 2014 11:54:41 -0300[FD] [Onapsis Security Advisory 2014-024] Hard-coded Username in SAP FI Manager Self-Service
Tue, 29 Jul 2014 11:54:33 -0300[FD] [Onapsis Security Advisory 2014-023] HTTP verb tampering issue in SAP_JTECHS
Tue, 29 Jul 2014 11:54:26 -0300[FD] [Onapsis Security Advisory 2014-022] SAP HANA IU5 SDK Authentication Bypass
Tue, 29 Jul 2014 11:54:11 -0300[FD] [Onapsis Security Advisory 2014-021] SAP HANA XS Missing encryption in form-based authentication
Tue, 29 Jul 2014 11:53:47 -0300Re: How to deal with the company that doesn't react on providing them information about serious security vulnerability?
Sat, 26 Jul 2014 09:08:26 +0000Re: failure notice
Fri, 25 Jul 2014 16:26:29 +0100How to deal with the company that doesn't react on providing them information about serious security vulnerability?
Wed, 23 Jul 2014 11:06:29 +0100Ruxcon 2014 Final Call For Presentations
Tue, 15 Jul 2014 15:16:38 +1000SmartPentester 1.0 released
Fri, 27 Jun 2014 15:17:15 +0300[HITB-Announce] #HITB2014KUL round 1 CFP submission deadline in < 1 week
Tue, 24 Jun 2014 22:28:20 +0800Embedded Device Security Conference 2014 // CFP
Tue, 10 Jun 2014 13:36:19 -0700[FD] [Onapsis Security Advisory 2014-020] SAP SLD Information Tampering
Fri, 06 Jun 2014 12:27:49 -0300[FD] [Onapsis Security Advisories] Multiple Hard-coded Usernames in SAP Components
Fri, 06 Jun 2014 12:27:29 -0300t2'14: Call for Papers 2014 (Helsinki / Finland)
Mon, 19 May 2014 23:57:00 +0300Ruxcon 2014 Call For Papers
Mon, 5 May 2014 20:17:04 +1000 (EST)Ruxcon 2014 Call For Papers
Mon, 5 May 2014 20:17:04 +1000 (EST)Ruxcon 2014 Call For Papers
Mon, 5 May 2014 20:17:04 +1000 (EST)Ruxcon 2014 Call For Papers
Mon, 5 May 2014 20:17:03 +1000 (EST)Ruxcon 2014 Call For Papers
Mon, 5 May 2014 20:17:04 +1000 (EST)[FD] [Onapsis Security Advisory 2014-010] SAP BusinessObjects InfoView Reflected Cross Site Scripting
Mon, 28 Apr 2014 17:59:55 -0300[FD] [Onapsis Security Advisory 2014-009] SAP BASIS Missing Authorization Check
Mon, 28 Apr 2014 17:59:43 -0300[FD] [Onapsis Security Advisory 2014-008] SAP NW Portal WD Information Disclosure
Mon, 28 Apr 2014 17:59:25 -0300[FD] [Onapsis Security Advisory 2014-007] Missing authorization check in SAP Profile Maintenance
Mon, 28 Apr 2014 17:59:11 -0300
lmpx.com only provides a reader for public news (NNTP) servers. It is not
affiliated with the servers or forums shown here and is not responsible for
the content of articles, which is written by their respective authors.