Posted by Stefan Kanthak via Fulldisclosure on Aug 04
Hi @ll,Posted by Sandro Gauci via Fulldisclosure on Aug 02
Rtpengine: RTP Inject and RTP Bleed vulnerabilities despite proper configuration (CVSS v4.0 Score: 9.3 / Critical)Posted by Apple Product Security via Fulldisclosure on Aug 02
APPLE-SA-07-30-2025-1 Safari 18.6Posted by Stefan Kanthak via Fulldisclosure on Jul 29
Hi @ll,Posted by Thomas Weber | CyberDanube via Fulldisclosure on Jul 29
St. PΓΆlten UAS 20250721-0Posted by Apple Product Security via Fulldisclosure on Jul 29
APPLE-SA-07-29-2025-8 visionOS 2.6Posted by Apple Product Security via Fulldisclosure on Jul 29
APPLE-SA-07-29-2025-7 tvOS 18.6Posted by Apple Product Security via Fulldisclosure on Jul 29
APPLE-SA-07-29-2025-6 watchOS 11.6Posted by Apple Product Security via Fulldisclosure on Jul 29
APPLE-SA-07-29-2025-5 macOS Ventura 13.7.7Posted by Apple Product Security via Fulldisclosure on Jul 29
APPLE-SA-07-29-2025-4 macOS Sonoma 14.7.7Posted by Apple Product Security via Fulldisclosure on Jul 29
APPLE-SA-07-29-2025-3 macOS Sequoia 15.6Posted by Apple Product Security via Fulldisclosure on Jul 29
APPLE-SA-07-29-2025-2 iPadOS 17.7.9Posted by Apple Product Security via Fulldisclosure on Jul 29
APPLE-SA-07-29-2025-1 iOS 18.6 and iPadOS 18.6Posted by Egidio Romano on Jul 29
----------------------------------------------------------------------------Posted by Sanjay Singh on Jul 29
Hello Full Disclosure community,Posted by Egidio Romano on Jul 29
-----------------------------------------------------------------------------------------Posted by Palula Brasil on Jul 29
The following snippet in the text is associated to the wrong CVE number:Posted by Andrey Stoykov on Jul 29
# Exploit Title: Stored XSS "Edit General Info" Functionality -Posted by Andrey Stoykov on Jul 29
# Exploit Title: Stored XSS "Create Page" Functionality - seotoasterv2.5.0Posted by Andrey Stoykov on Jul 29
# Exploit Title: Open Redirect "Login Page" Functionality - seotoasterv2.5.0Posted by Andrey Stoykov on Jul 29
# Exploit Title: Stored XSS "Edit Header" Functionality - seotoasterv2.5.0Posted by Egidio Romano on Jul 29
------------------------------------------------------------------Posted by Marcus Krueppel on Jul 29
================== Overview ==================Posted by KoreLogic Disclosures via Fulldisclosure on Jul 28
KL-001-2025-016: Xorux LPAR2RRD File Upload Directory TraversalPosted by KoreLogic Disclosures via Fulldisclosure on Jul 28
KL-001-2025-015: Xorux LPAR2RRD Read Only User Log Download Exposing Sensitive InformationPosted by KoreLogic Disclosures via Fulldisclosure on Jul 28
KL-001-2025-014: Xorux LPAR2RRD Read Only User Denial of ServicePosted by KoreLogic Disclosures via Fulldisclosure on Jul 28
KL-001-2025-013: Xorux XorMon-NG Web Application Privilege Escalation to AdministratorPosted by KoreLogic Disclosures via Fulldisclosure on Jul 28
KL-001-2025-012: Xorux XorMon-NG Read Only User Export Device Configuration Exposing Sensitive InformationPosted by Gabriel Augusto Vaz de Lima via Fulldisclosure on Jul 19
=====[Tempest Security