<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"><channel><atom:link rel="hub" href="http://tumblr.superfeedr.com/" xmlns:atom="http://www.w3.org/2005/Atom"/><description>
Pulse is the need to know information about the Internet threat landscape. Aggregating and analyzing the top vulnerability and malicious code advisories from commercial, government, education, and open source sources Pulse provides a complete picture of today’s vulnerabilities that may become tomorrows exploits. Questions, concerns, suggestions: pulse [at] vulnerableminds [dot] com
  
Pulse was created and maintained by Vulnerable Minds.
home | blog 

  
var gaJsHost = (("https:" == document.location.protocol) ? "https://ssl." : "http://www.");
document.write(unescape("%3Cscript src='" + gaJsHost + "google-analytics.com/ga.js' type='text/javascript'%3E%3C/script%3E"));

var pageTracker = _gat._getTracker("UA-2815366-1");
pageTracker._initData();
pageTracker._trackPageview();
</description><title>Vulnerable Minds Pulse</title><generator>Tumblr (3.0; @vm-threats)</generator><link>http://pulse.vulnerableminds.com/</link><item><title>Windows 7 Launch Party hosted by JTTF and Andrew Auernheimer</title><description>&lt;a href="http://seclists.org/fulldisclosure/2009/Sep/0382.html"&gt;Windows 7 Launch Party hosted by JTTF and Andrew Auernheimer&lt;/a&gt;: Posted by David Kernell rubico on Sep 27
&lt;p&gt;
&lt;br/&gt;
Hello. &lt;/p&gt;
&lt;p&gt;
My name is Gary McKinnon. I’m from the Joint Terrorism Task Force. &lt;/p&gt;
&lt;p&gt;
I create terrorism by tricking dumb people. Further, we fulfill our goal of…&lt;/p&gt;</description><link>http://pulse.vulnerableminds.com/post/199023010</link><guid>http://pulse.vulnerableminds.com/post/199023010</guid><pubDate>Mon, 28 Sep 2009 05:24:58 -0400</pubDate></item><item><title>Drupal Bibliography 6.x-1.6 XSS Vuln</title><description>&lt;a href="http://seclists.org/fulldisclosure/2009/Sep/0374.html"&gt;Drupal Bibliography 6.x-1.6 XSS Vuln&lt;/a&gt;: Posted by Black Packeteer on Sep 25
&lt;p&gt;
&lt;br/&gt;
The Drupal Bibliography Module 6.x-1.6 (&lt;a href="http://drupal.org/project/biblio" target="_blank"&gt;http://drupal.org/project/biblio&lt;/a&gt;)
contains a cross site scripting vulnerability because it fails to sanitize
the…&lt;/p&gt;</description><link>http://pulse.vulnerableminds.com/post/197425328</link><guid>http://pulse.vulnerableminds.com/post/197425328</guid><pubDate>Sat, 26 Sep 2009 09:24:58 -0400</pubDate></item><item><title>Attacks via redirectors</title><description>&lt;a href="http://seclists.org/fulldisclosure/2009/Sep/0372.html"&gt;Attacks via redirectors&lt;/a&gt;: Posted by MustLive on Sep 25
&lt;p&gt;
&lt;br/&gt;
Hello participants of Full-Disclosure! &lt;/p&gt;
&lt;p&gt;
In case if you don’t read WASC Mailing List, where I often make announcements of my articles (or even post articles directly…&lt;/p&gt;</description><link>http://pulse.vulnerableminds.com/post/197425331</link><guid>http://pulse.vulnerableminds.com/post/197425331</guid><pubDate>Sat, 26 Sep 2009 09:24:58 -0400</pubDate></item><item><title>CFS 09October 5-6 Updated SpeakerSession List</title><description>&lt;a href="http://seclists.org/fulldisclosure/2009/Sep/0362.html"&gt;CFS 09October 5-6 Updated SpeakerSession List&lt;/a&gt;: Posted by Trish M on Sep 23
&lt;p&gt;         &lt;/p&gt;
&lt;p&gt;
      The Computer Forensics Show is the Don’t miss event of the year for all Litigation, Accounting and IT Professionals! &lt;/p&gt;
&lt;p&gt;
      Register Now &lt;/p&gt;
&lt;p&gt;…&lt;/p&gt;</description><link>http://pulse.vulnerableminds.com/post/196460472</link><guid>http://pulse.vulnerableminds.com/post/196460472</guid><pubDate>Fri, 25 Sep 2009 03:36:10 -0400</pubDate></item><item><title>PakBugs.com Aftermath.</title><description>&lt;a href="http://seclists.org/fulldisclosure/2009/Sep/0366.html"&gt;PakBugs.com Aftermath.&lt;/a&gt;: Posted by Catch Them on Sep 24
&lt;p&gt; &lt;/p&gt;
&lt;p&gt;
Here are some clarifications after doing considerable reading on the internet about the PakBugs.com Hack/Crack or whatever you want to call it. I have no group, i…&lt;/p&gt;</description><link>http://pulse.vulnerableminds.com/post/196460465</link><guid>http://pulse.vulnerableminds.com/post/196460465</guid><pubDate>Fri, 25 Sep 2009 03:36:09 -0400</pubDate></item><item><title>Cross-Site Scripting vulnerability in E107</title><description>&lt;a href="http://seclists.org/fulldisclosure/2009/Sep/0367.html"&gt;Cross-Site Scripting vulnerability in E107&lt;/a&gt;: Posted by MustLive on Sep 24
&lt;p&gt;
&lt;br/&gt;
Hello Full-Disclosure! &lt;/p&gt;
&lt;p&gt;
I want to warn you about Cross-Site Scripting vulnerability in E107. Which I
found at 31.01.2009 and disclosed recently. &lt;/p&gt;
&lt;p&gt;
XSS: At page for…&lt;/p&gt;</description><link>http://pulse.vulnerableminds.com/post/196460438</link><guid>http://pulse.vulnerableminds.com/post/196460438</guid><pubDate>Fri, 25 Sep 2009 03:36:07 -0400</pubDate></item><item><title>Avast aswMon2.sys kernel memory corruption and Local Privilege Escalation</title><description>&lt;a href="http://seclists.org/fulldisclosure/2009/Sep/0353.html"&gt;Avast aswMon2.sys kernel memory corruption and Local Privilege Escalation&lt;/a&gt;: Posted by evil fingers on Sep 23
&lt;p&gt;
&lt;br/&gt;
Source:
&lt;br/&gt;
&lt;a href="https://www.evilfingers.com/advisory/Advisory/Avast_aswMon2.sys_kernel_memory_corruption_and_Local_Privilege_Escalation.php" target="_blank"&gt;https://www.evilfingers.com/advisory/Advisory/Avast_aswMon2.sys_kernel_memory_corruption_and_Local_Privilege_Escalation.php&lt;/a&gt; &lt;/p&gt;
&lt;p&gt;
—————-[Avast…&lt;/p&gt;</description><link>http://pulse.vulnerableminds.com/post/195499660</link><guid>http://pulse.vulnerableminds.com/post/195499660</guid><pubDate>Wed, 23 Sep 2009 23:57:54 -0400</pubDate></item><item><title>Audited by Netcraft... any feedback</title><description>&lt;a href="http://seclists.org/fulldisclosure/2009/Sep/0356.html"&gt;Audited by Netcraft... any feedback&lt;/a&gt;: Posted by jk3380_at_naida.org on Sep 23
&lt;p&gt; &lt;/p&gt;
&lt;p&gt;
Hi &lt;/p&gt;
&lt;p&gt;
I’m looking for feedback on the results and worthliness of the “Audited by
Netcraft” service as an alternative of manye self appointed…&lt;/p&gt;</description><link>http://pulse.vulnerableminds.com/post/195499604</link><guid>http://pulse.vulnerableminds.com/post/195499604</guid><pubDate>Wed, 23 Sep 2009 23:57:49 -0400</pubDate></item><item><title>Microsoft Security Advisory (975497): Vulnerabilities in SMB Could Allow Remote Code Execution</title><description>&lt;a href="http://www.microsoft.com/technet/security/advisory/975497.MSpx?pubDate=2009-09-23"&gt;Microsoft Security Advisory (975497): Vulnerabilities in SMB Could Allow Remote Code Execution&lt;/a&gt;: &lt;p&gt;Revision Note: V1.2 (September 23, 2009): Clarified the FAQ, What is Server Message Block Version 2 (SMBv2)? Also clarified the impact of the workaround, Disable SMB v2.Summary: Security Advisory&lt;/p&gt;</description><link>http://pulse.vulnerableminds.com/post/195386805</link><guid>http://pulse.vulnerableminds.com/post/195386805</guid><pubDate>Wed, 23 Sep 2009 20:44:42 -0400</pubDate></item><item><title>Winplot (.wp2 File) Local Buffer Overflow Exploit</title><description>&lt;a href="http://www.milw0rm.com/exploits/9725"&gt;Winplot (.wp2 File) Local Buffer Overflow Exploit&lt;/a&gt;</description><link>http://pulse.vulnerableminds.com/post/193634477</link><guid>http://pulse.vulnerableminds.com/post/193634477</guid><pubDate>Mon, 21 Sep 2009 17:42:41 -0400</pubDate></item><item><title>cP Creator 2.7.1 (Cookie tickets) Remote SQL Injection Exploit</title><description>&lt;a href="http://www.milw0rm.com/exploits/9726"&gt;cP Creator 2.7.1 (Cookie tickets) Remote SQL Injection Exploit&lt;/a&gt;</description><link>http://pulse.vulnerableminds.com/post/193634465</link><guid>http://pulse.vulnerableminds.com/post/193634465</guid><pubDate>Mon, 21 Sep 2009 17:42:40 -0400</pubDate></item><item><title>CMScontrol 7.x (index.php id_menu) SQL Injection Vulnerability</title><description>&lt;a href="http://www.milw0rm.com/exploits/9727"&gt;CMScontrol 7.x (index.php id_menu) SQL Injection Vulnerability&lt;/a&gt;</description><link>http://pulse.vulnerableminds.com/post/193634442</link><guid>http://pulse.vulnerableminds.com/post/193634442</guid><pubDate>Mon, 21 Sep 2009 17:42:38 -0400</pubDate></item><item><title>ProdLer &lt;= 2.0 (prodler.class.php sPath) RFI Vulnerability</title><description>&lt;a href="http://www.milw0rm.com/exploits/9728"&gt;ProdLer &lt;= 2.0 (prodler.class.php sPath) RFI Vulnerability&lt;/a&gt;</description><link>http://pulse.vulnerableminds.com/post/193634425</link><guid>http://pulse.vulnerableminds.com/post/193634425</guid><pubDate>Mon, 21 Sep 2009 17:42:36 -0400</pubDate></item><item><title>Loggix Project &lt;= 9.4.5 Multiple Remote File Inclusion Vulnerabilities</title><description>&lt;a href="http://www.milw0rm.com/exploits/9729"&gt;Loggix Project &lt;= 9.4.5 Multiple Remote File Inclusion Vulnerabilities&lt;/a&gt;</description><link>http://pulse.vulnerableminds.com/post/193634395</link><guid>http://pulse.vulnerableminds.com/post/193634395</guid><pubDate>Mon, 21 Sep 2009 17:42:33 -0400</pubDate></item><item><title>WX Guest Book 1.1.208 (SQL/XSS) Multiple Remote Vulnerabilities</title><description>&lt;a href="http://www.milw0rm.com/exploits/9730"&gt;WX Guest Book 1.1.208 (SQL/XSS) Multiple Remote Vulnerabilities&lt;/a&gt;</description><link>http://pulse.vulnerableminds.com/post/193634327</link><guid>http://pulse.vulnerableminds.com/post/193634327</guid><pubDate>Mon, 21 Sep 2009 17:42:26 -0400</pubDate></item><item><title>Snort &lt; 2.8.5 Unified1 Output Denial of Service Exploit</title><description>&lt;a href="http://www.milw0rm.com/exploits/9731"&gt;Snort &lt; 2.8.5 Unified1 Output Denial of Service Exploit&lt;/a&gt;</description><link>http://pulse.vulnerableminds.com/post/193634233</link><guid>http://pulse.vulnerableminds.com/post/193634233</guid><pubDate>Mon, 21 Sep 2009 17:42:19 -0400</pubDate></item><item><title>Joomla com_jinc (newsid) Blind SQL Injection Vulnerability</title><description>&lt;a href="http://www.milw0rm.com/exploits/9732"&gt;Joomla com_jinc (newsid) Blind SQL Injection Vulnerability&lt;/a&gt;</description><link>http://pulse.vulnerableminds.com/post/193634118</link><guid>http://pulse.vulnerableminds.com/post/193634118</guid><pubDate>Mon, 21 Sep 2009 17:42:07 -0400</pubDate></item><item><title>Joomla com_mytube (user_id) Blind SQL Injection Exploit</title><description>&lt;a href="http://www.milw0rm.com/exploits/9733"&gt;Joomla com_mytube (user_id) Blind SQL Injection Exploit&lt;/a&gt;</description><link>http://pulse.vulnerableminds.com/post/193633929</link><guid>http://pulse.vulnerableminds.com/post/193633929</guid><pubDate>Mon, 21 Sep 2009 17:41:49 -0400</pubDate></item><item><title>BigAnt Server &lt;= 2.50 SP6 Local (ZIP File) Buffer Overflow PoC #2</title><description>&lt;a href="http://www.milw0rm.com/exploits/9734"&gt;BigAnt Server &lt;= 2.50 SP6 Local (ZIP File) Buffer Overflow PoC #2&lt;/a&gt;</description><link>http://pulse.vulnerableminds.com/post/193633667</link><guid>http://pulse.vulnerableminds.com/post/193633667</guid><pubDate>Mon, 21 Sep 2009 17:41:22 -0400</pubDate></item><item><title>DoS vulnerability in Mozilla Firefox</title><description>&lt;a href="http://seclists.org/fulldisclosure/2009/Sep/0271.html"&gt;DoS vulnerability in Mozilla Firefox&lt;/a&gt;: Posted by MustLive on Sep 20
&lt;p&gt;
&lt;br/&gt;
Hello Full-Disclosure! &lt;/p&gt;
&lt;p&gt;
This is my second letter to this list. &lt;/p&gt;
&lt;p&gt;
Like in case of my previous letter to this list, I already sent this letter
to Bugtraq (at 15th of…&lt;/p&gt;</description><link>http://pulse.vulnerableminds.com/post/193385580</link><guid>http://pulse.vulnerableminds.com/post/193385580</guid><pubDate>Mon, 21 Sep 2009 10:48:54 -0400</pubDate></item></channel></rss>
