Section: .. / 0603-advisories /
| /// File Name: |
sa19100.txt |
Description:
|
Secunia Security Advisory - imei addmimistrator has reported a vulnerability in vBulletin, which can be exploited by malicious people to conduct script insertion attacks.
| | Homepage: | http://secunia.com/advisories/19100/ | | File Size: | 2153 | | Last Modified: | Mar 4 02:29:24 2006 |
| MD5 Checksum: | c5a6c050c0da64d622fc53e16fac55af |
|
| /// File Name: |
sa19096.txt |
Description:
|
Secunia Security Advisory - lorenzo has discovered a vulnerability in Aztek Forum, which can be exploited by malicious people to conduct script insertion attacks.
| | Homepage: | http://secunia.com/advisories/19096/ | | File Size: | 1946 | | Last Modified: | Mar 4 02:29:24 2006 |
| MD5 Checksum: | f6edd2ca4f1ec7f175b2359d55edd159 |
|
| /// File Name: |
sa19087.txt |
Description:
|
Secunia Security Advisory - Avaya has acknowledged some vulnerabilities in CMS and IR, which can be exploited by malicious, local users to gain escalated privileges and to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/19087/ | | File Size: | 1910 | | Last Modified: | Mar 4 02:29:24 2006 |
| MD5 Checksum: | 53b36c2675494b0492f895840ce4ce67 |
|
| /// File Name: |
sa19085.txt |
Description:
|
Secunia Security Advisory - Arnold Grossmann has reported a vulnerability in SAP Web Application Server, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/19085/ | | File Size: | 1939 | | Last Modified: | Mar 4 02:29:24 2006 |
| MD5 Checksum: | bceee732e703cf47923ff6cfbbd0424d |
|
| /// File Name: |
sa19075.txt |
Description:
|
Secunia Security Advisory - Yog and KeyShore have discovered a security issue in Kwik-Pay Payroll, which can be exploited by malicious, local users to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/19075/ | | File Size: | 1725 | | Last Modified: | Mar 4 02:29:24 2006 |
| MD5 Checksum: | d11a85243b77a130453d66a7a12385f4 |
|
| /// File Name: |
sa19032.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered a vulnerability in RaidenHTTPD, which can be exploited by malicious people to disclose potentially sensitive information.
| | Homepage: | http://secunia.com/advisories/19032/ | | File Size: | 1962 | | Last Modified: | Mar 4 02:29:24 2006 |
| MD5 Checksum: | 368246423dc8d524b0ce4e9cbfc4eb46 |
|
| /// File Name: |
sa19097.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in EMC Retrospect Client for Windows, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/19097/ | | File Size: | 2035 | | Last Modified: | Mar 3 11:23:09 2006 |
| MD5 Checksum: | cbdc6190f71b7f786ea7330d24a3fd55 |
|
| /// File Name: |
03.02.06-3.txt |
Description:
|
iDefense Security Advisory 03.02.06 - The EWC Dantz Retrospect 7 backup client listens on TCP port 497 for commands from the central backup server. Sending a specially crafted malformed packet to this socket can force the backup client to terminate. This allows for an unauthenticated attacker to effectively disable the network backup services for a target network. This exploit has been tested with the Dantz Retrospect Client version 7.0.107. This is the latest available on the vendor's website.
| | Homepage: | http://www.idefense.com/ | | File Size: | 3746 | | Last Modified: | Mar 3 11:22:57 2006 |
| MD5 Checksum: | 325e42b6a20e68235663afc6dc043a87 |
|
| /// File Name: |
03.02.06-2.txt |
Description:
|
iDefense Security Advisory 03.02.06 - Local exploitation of a design error in version 10.3.9 of Apple Computer Inc.'s Mac OS X could allow arbitrary files to be overwritten with user supplied contents. iDefense has confirmed the existence of this vulnerability in Mac OS X Version 10.3.9. In addition, the following versions been confirmed by the vendor to be vulnerable: Mac OS X Server Version 10.3.9, Mac OS X Version 10.4.5, Mac OS X Server Version 10.4.5.
| | Author: | vade79 | | Homepage: | http://www.idefense.com/ | | File Size: | 4699 | | Related CVE(s): | CVE-2005-2713, CVE-2005-2714 | | Last Modified: | Mar 3 11:19:50 2006 |
| MD5 Checksum: | 713561ccc67de4e8e0127687de6ca534 |
|
| /// File Name: |
03.02.06-1.txt |
Description:
|
iDefense Security Advisory 03.02.06 - Remote exploitation of a directory traversal vulnerability in Apple Computer Inc.'s MacOS X could allow attackers to overwrite arbitrary files with user-supplied contents. iDefense has confirmed the existence of this vulnerability in MacOS X 10.4.2. Versions 10.4.5 and earlier of the 10.4.x family and versions 10.3.9 of the 10.3.x family of both Mac OS X and Mac OS X Server are vulnerable.
| | Homepage: | http://www.idefense.com/ | | File Size: | 2755 | | Related CVE(s): | CVE-2006-0391 | | Last Modified: | Mar 3 11:17:29 2006 |
| MD5 Checksum: | 656c5102cd9e61c84c5e848188976217 |
|
| /// File Name: |
sa19089.txt |
Description:
|
Secunia Security Advisory - Hamid Ebadi has discovered a vulnerability in PluggedOut Nexus, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/19089/ | | File Size: | 1880 | | Last Modified: | Mar 3 10:46:44 2006 |
| MD5 Checksum: | 831fc0c20a4faa0c68d743adedf39563 |
|
| /// File Name: |
sa19040.txt |
Description:
|
Secunia Security Advisory - A vulnerability with an unknown impact has been reported in SecureCRT and SecureFX.
| | Homepage: | http://secunia.com/advisories/19040/ | | File Size: | 2016 | | Last Modified: | Mar 3 10:46:15 2006 |
| MD5 Checksum: | 46b49eaa4a99fc2d3239599da12c5b11 |
|
| /// File Name: |
sa19095.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Oreka, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/19095/ | | File Size: | 1708 | | Last Modified: | Mar 3 10:41:09 2006 |
| MD5 Checksum: | 83c0590c225c47d600bc3cdf49122697 |
|
| /// File Name: |
sa19083.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in the Linux kernel, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/19083/ | | File Size: | 2097 | | Last Modified: | Mar 3 10:12:54 2006 |
| MD5 Checksum: | f2c3e8ea2005ad98d2b1c5814f72d01c |
|
| /// File Name: |
dsa-984-1.txt |
Description:
|
Debian Security Advisory DSA 984-1 - Derek Noonburg has fixed several potential vulnerabilities in xpdf, the Portable Document Format (PDF) suite.
| | Author: | Martin Schulze | | Homepage: | http://www.debian.org/security/ | | File Size: | 6944 | | Last Modified: | Mar 3 10:10:06 2006 |
| MD5 Checksum: | 0d5ee648aa6febe452629991b0779803 |
|
| /// File Name: |
USN-259-1.txt |
Description:
|
Ubuntu Security Notice USN-259-1 - A Denial of Service vulnerability was discovered in irssi. The DCC ACCEPT command handler did not sufficiently verify the remotely specified arguments. A remote attacker could exploit this to crash irssi by sending a specially crafted DCC commands.
| | Homepage: | http://security.ubuntu.com/ | | File Size: | 1973 | | Related CVE(s): | CVE-2006-0458 | | Last Modified: | Mar 3 09:23:35 2006 |
| MD5 Checksum: | 3ac71d0afd37c1ee6901fb49adacbf1f |
|
| /// File Name: |
dsa-981-1.txt |
Description:
|
Debian Security Advisory DSA 981-1 - felinemalice discovered an integer overflow in BMV, a post script viewer for SVGAlib, that may lead to the execution of arbitrary code through specially crafted Postscript files.
| | Author: | Moritz Muehlenhoff | | Homepage: | http://www.debian.org/security/ | | File Size: | 3578 | | Related CVE(s): | CVE-2005-3278 | | Last Modified: | Mar 3 09:22:17 2006 |
| MD5 Checksum: | 5850aae2a7639d588eb4775ea14fcb1c |
|
| /// File Name: |
phpNukeXSS.txt |
Description:
|
A cross site scripting vulnerability exists in PHP-NUKE Submit-News.
| | Author: | 0o_zeus_o0 | | Homepage: | http://www.elitemexico.org | | File Size: | 5699 | | Last Modified: | Mar 3 09:11:55 2006 |
| MD5 Checksum: | 081329f54ad57971720188b76e7aeee2 |
|
| /// File Name: |
APPLE-SA-2006-03-01.txt |
Description:
|
APPLE-SA-2006-03-01 Security Update 2006-001 - A new update has been released for Mac OS X that addresses vulnerabilities in apache_mod_php, automount, COM, Directory Services, FileVault, IPSec, LibSystem, Mail, perl, rsync, Safari, LaunchServices, and Syndication.
| | Homepage: | http://www.apple.com | | File Size: | 10972 | | Related CVE(s): | CVE-2005-3319, CVE-2005-3353, CVE-2005-3391, CVE-2005-3392, CVE-2006-0384, CVE-2006-0391, CVE-2005-2713, CVE-2005-2714, CVE-2006-0386, CVE-2006-0383, CVE-2005-3706, CVE-2006-0395, CVE-2005-4217, CVE-2005-3712, CVE-2005-4504, CVE-2006-0387, CVE-2006-0388, CVE-2006-0394, CVE-2006-0389 | | Last Modified: | Mar 3 09:09:05 2006 |
| MD5 Checksum: | 6f0b844d25580b154ac7c81e21114787 |
|
| /// File Name: |
ncpVPNPKI.txt |
Description:
|
The NCP VPN/PKI client version 8.11 Build 146 is susceptible to local privilege escalation and denial of service attacks.
| | Author: | Ramon Kukla | | File Size: | 3728 | | Last Modified: | Mar 3 04:41:28 2006 |
| MD5 Checksum: | 7b36afd10ec1824c97de7072867633ff |
|
| /// File Name: |
secunia-NetworkActiv.txt |
Description:
|
Secunia Research has discovered a vulnerability in NetworkActiv Web Server, which can be exploited by malicious people to disclose potentially sensitive information. The vulnerability is caused due to a validation error of the filename extension supplied by the user in the URL. This can be exploited to retrieve the source code of script files (e.g. PHP) from the server via specially-crafted requests containing the forward slash character. Version affected: NetworkActiv Web Server 3.5.15. Other versions may also be affected.
| | Author: | Tan Chew Keong | | Homepage: | http://secunia.com/ | | File Size: | 3451 | | Related CVE(s): | CVE-2006-0815 | | Last Modified: | Mar 3 04:22:38 2006 |
| MD5 Checksum: | e06479d1b3172495c9e27bbc974c0463 |
|
| /// File Name: |
secunia-Lighttpd.txt |
Description:
|
Secunia Research has discovered a vulnerability in Lighttpd, which can be exploited by malicious people to disclose potentially sensitive information. The vulnerability is caused due to a validation error of the filename extension supplied by the user in the URL. This can be exploited to retrieve the source code of script files (e.g. PHP) from the server via specially-crafted requests containing dot and space characters. Version affected: Lighttpd version 1.4.10 for Windows. Other versions may also be affected.
| | Author: | Tan Chew Keong | | Homepage: | http://secunia.com/ | | File Size: | 3441 | | Related CVE(s): | CVE-2006-0814 | | Last Modified: | Mar 3 04:21:20 2006 |
| MD5 Checksum: | 0eaa305cfe356373fa0c374e8b6e41fe |
|
| /// File Name: |
FreeBSD-SA-06-10.nfs.txt |
Description:
|
FreeBSD Security Advisory FreeBSD-SA-06:10.nfs - A part of the NFS server code charged with handling incoming RPC messages via TCP had an error which, when the server received a message with a zero-length payload, would cause a NULL pointer dereference which results in a kernel panic. The kernel will only process the RPC messages if a userland nfsd daemon is running.
| | Author: | Evgeny Legerov. | | Homepage: | http://www.freebsd.org/security/ | | File Size: | 5606 | | Related CVE(s): | CVE-2006-0900 | | Last Modified: | Mar 3 04:18:49 2006 |
| MD5 Checksum: | ee30ed632966c7ffab3f51db0f0ca472 |
|
| /// File Name: |
FreeBSD-SA-06-09.openssh.txt |
Description:
|
FreeBSD Security Advisory FreeBSD-SA-06:09.openssh - Because OpenSSH and OpenPAM have conflicting designs (one is event-driven while the other is callback-driven), it is necessary for OpenSSH to fork a child process to handle calls to the PAM framework. However, if the unprivileged child terminates while PAM authentication is under way, the parent process incorrectly believes that the PAM child also terminated. The parent process then terminates, and the PAM child is left behind. Due to the way OpenSSH performs internal accounting, these orphaned PAM children are counted as pending connections by the master OpenSSH server process. Once a certain number of orphans has accumulated, the master decides that it is overloaded and stops accepting client connections.
| | Homepage: | http://www.freebsd.org/security/ | | File Size: | 7234 | | Related CVE(s): | CVE-2006-0883 | | Last Modified: | Mar 3 04:17:28 2006 |
| MD5 Checksum: | c7a571211f30729cc3ab9b9b33605a91 |
|
| /// File Name: |
sapManipulate.txt |
Description:
|
SAP Web Application Server was found to be vulnerable to an URL manipulation allowing an attacker to prefix the http response to a request containing a manipulated URL with a sequence of bytes of their choice.
| | Author: | A. Grossmann | | File Size: | 2183 | | Last Modified: | Mar 3 04:14:36 2006 |
| MD5 Checksum: | 892254ee77be5c03bc68762360ed30e4 |
|
|
|
|
|