Read More: [local exploits] – Windows 8 Developer Preview DEP bypass
>> CATEGORY: m$
Read More: [local exploits] – Windows 8 Developer Preview DEP bypass
See more here: [webapps / 0day] – Edimax IC-3030iWn Web Admin Auth Bypass exploit
Read more here: [remote exploits] – F5 BIG-IP SSH Private Key Exposure
Secunia Security Advisory – Apple has issued an update for Java for Mac OS X.
Secunia Security Advisory – Apple has reported two vulnerabilities in Apple iTunes, which can be exploited by malicious people to compromise a user’s system.
Apple Security Advisory 2012-06-11-1 – iTunes 10.6.3 is now available and addresses multiple issues. Importing a maliciously crafted .m3u playlist may lead to an unexpected application termination or arbitrary code execution Description: A heap buffer overflow existed in the handling of .m3u playlists. Visiting a maliciously crafted website may lead to an unexpected application termination or arbitrary code execution Description: A memory corruption issue existed in WebKit.
Apple iTunes version 10.6.1.7 M3U playlist file walking heap buffer overflow proof of concept exploit. This also affects 10.6.0.40.
Original post: [local exploits] – Total Video Player V1.31 Memmory Corruption
More: [webapps / 0day] – Symantec Web Gateway 5.0.2.8 ipchange.php Command Injection
View the original here: [webapps / 0day] – WordPress Plugins – Annonces Arbitrary File Upload Vulnerability