Section: .. / 0603-advisories /
| /// File Name: |
sa19348.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Pubcookie, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/19348/ | | File Size: | 2228 | | Last Modified: | Mar 27 02:53:51 2006 |
| MD5 Checksum: | 2f28f80d3d5a3031b1b99df7ded683b8 |
|
| /// File Name: |
sa19327.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in multiple ISS products, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/19327/ | | File Size: | 2609 | | Last Modified: | Mar 27 02:53:51 2006 |
| MD5 Checksum: | 00078cc65c4a7f6fe45a0c25bff46ae9 |
|
| /// File Name: |
sa19312.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered a vulnerability in Baby Web Server, which can be exploited by malicious people to disclose potentially sensitive information.
| | Homepage: | http://secunia.com/advisories/19312/ | | File Size: | 2028 | | Last Modified: | Mar 27 02:53:51 2006 |
| MD5 Checksum: | 0a6542f4b268d4a521fb251c389d631e |
|
| /// File Name: |
sa19306.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered a vulnerability in Quick 'n Easy Web Server, which can be exploited by malicious people to disclose potentially sensitive information.
| | Homepage: | http://secunia.com/advisories/19306/ | | File Size: | 1948 | | Last Modified: | Mar 27 02:53:51 2006 |
| MD5 Checksum: | dabd07a47a4520b5b4f2436e6e85e75d |
|
| /// File Name: |
borders.txt |
Description:
|
bordersstores.com suffers from XSS in search.jsp.
| | Author: | Headz Shotz | | Homepage: | http://hs.elimate.co.uk | | File Size: | 599 | | Last Modified: | Mar 24 00:31:11 2006 |
| MD5 Checksum: | edaacd290b6fae20370c4884d0783dad |
|
| /// File Name: |
gov-xss.txt |
Description:
|
Several US Government sites, including ic3.gov and house.gov suffer from XSS vulnerabilities.
| | Author: | HeadzShotz | | Homepage: | http://hs.elimate.co.uk | | File Size: | 1499 | | Last Modified: | Mar 24 00:29:42 2006 |
| MD5 Checksum: | e9494d2b818a54d85b222aa5960861dd |
|
| /// File Name: |
CT22-03-2006.txt |
Description:
|
Computer Terrorism (UK) :: Incident Response Centre :: Security Advisory :: CT22-03-2006 :: Microsoft Internet Explorer (mshtml.dll) - Remote Code Execution
| | Homepage: | http://www.computerterrorism.com | | File Size: | 2403 | | Last Modified: | Mar 24 00:14:29 2006 |
| MD5 Checksum: | 8076d7f717f3b054472ae37e45b6b7ed |
|
| /// File Name: |
EV0094.txt |
Description:
|
eVuln ID: EV0094 - PHP SimpleNEWS, PHP SimpleNEWS MySQL suffer from a weak authentication mechanism.
| | Author: | Aliaksandr Hartsuyeu | | Homepage: | http://evuln.com/ | | File Size: | 1170 | | Last Modified: | Mar 24 00:13:03 2006 |
| MD5 Checksum: | 6b5ec07bdee3fad56d2e430a69be95b6 |
|
| /// File Name: |
php_live-3.0.txt |
Description:
|
PHP Live! 3.0 suffers from XSS in status_image.php.
| | Author: | kspecial | | File Size: | 315 | | Last Modified: | Mar 24 00:11:53 2006 |
| MD5 Checksum: | 8030838d7c8a6e9014d9a236f24736f6 |
|
| /// File Name: |
WinHKI1.6x.txt |
Description:
|
WinHKI 1.6x Archive Extraction Directory traversal: Due to an input validation error when extracting files compressed with certain formats, it is possible to have files extracted to arbitrary locations on the filesystem.
| | Author: | h e | | Homepage: | http://www.hamid.ir | | File Size: | 1495 | | Last Modified: | Mar 24 00:10:04 2006 |
| MD5 Checksum: | 76b1ffaf3637e8207ea496345a74f5cd |
|
| /// File Name: |
cutenews1.4.1.txt |
Description:
|
cutenews 1.4.1 allows any user to access arbitrary files due to lack of sanitization of the "archive" parameter.
| | Author: | h e | | Homepage: | http://hamid.ir/security | | File Size: | 2442 | | Last Modified: | Mar 24 00:07:27 2006 |
| MD5 Checksum: | fc853dcc2c44970a467e6d441b701a60 |
|
| /// File Name: |
Mini-Nuke.1.8.2.txt |
Description:
|
Mini-Nuke versions less than or equal to 1.8.2 suffer from multiple sql injection vulnerabilities.
| | Author: | Moroccan Security | | File Size: | 866 | | Last Modified: | Mar 23 23:58:40 2006 |
| MD5 Checksum: | 1641a29e5bbb17fafeda377b80cf1de1 |
|
| /// File Name: |
99articles.txt |
Description:
|
Free Articles from 99articles.com suffers from a remote command execution vulnerability.
| | Author: | botan | | Homepage: | http://www.PatrioticHackers.com | | File Size: | 1076 | | Last Modified: | Mar 23 23:35:30 2006 |
| MD5 Checksum: | 5fc46be876ff2247688225cfaa1a12be |
|
| /// File Name: |
F5Firepass4100.txt |
Description:
|
5 Firepass 4100 SSL VPN v. 5.4.2 suffers from XSS in in my.support.php3. This allows an attacker to submit a crafted link to users of the vulnerable Web application in order to abuse their trust and steal their authentication credentials or hijack their sessions.
| | Author: | ILION Research Labs | | File Size: | 1111 | | Last Modified: | Mar 23 23:33:19 2006 |
| MD5 Checksum: | 5877c46acf3579ed1dd2ca9b3207f90d |
|
| /// File Name: |
CORE-2006-0124.txt |
Description:
|
Core Security Technologies Advisory ID: CORE-2006-0124 - Cross-Site Scripting in Verisigns haydn.exe CGI script: A cross-site scripting vulnerability found in Verisigns haydn.exe could allow an attacker to execute scripting code in the machine of a user within the user's web browser with the same trust level as that of the site hosting the haydn.exe file (this is usually a trusted site, since it is used to enroll, revoke or validate certificates).
| | Homepage: | http://www.coresecurity.com/corelabs/ | | File Size: | 6962 | | Last Modified: | Mar 23 22:18:30 2006 |
| MD5 Checksum: | 3e07374c4cb9157b78fca5d6ec1510a3 |
|
| /// File Name: |
MS-Commerce.txt |
Description:
|
It is possible to bypass authentication in Microsoft Commerce Server pre SP2
| | Author: | Dimitri van de Giessen | | File Size: | 2116 | | Last Modified: | Mar 23 22:10:04 2006 |
| MD5 Checksum: | 0646f520a4145a70eff7fec380cfec1a |
|
| /// File Name: |
dsa-1013-1.txt |
Description:
|
Debian Security Advisory DSA 1013-1 - Will Aoki discovered that snmptrapfmt, a configurable snmp trap handler daemon for snmpd, does not prevent overwriting existing files when writing to a temporary log file.
| | Author: | Martin Schulze | | Homepage: | http://www.debian.org/security/ | | File Size: | 7596 | | Last Modified: | Mar 23 21:45:53 2006 |
| MD5 Checksum: | fd25fc65d9ca0d6667b2034cb8dee2af |
|
| /// File Name: |
TA06-081A.txt |
Description:
|
Technical Cyber Security Alert TA06-081A - Sendmail contains a race condition caused by the improper handling of asynchronous signals. In particular, by forcing the SMTP server to have an I/O timeout at exactly the correct instant, an attacker may be able to execute arbitrary code with the privileges of the Sendmail process.
| | Homepage: | http://www.us-cert.gov | | File Size: | 3721 | | Last Modified: | Mar 23 21:45:18 2006 |
| MD5 Checksum: | ec8b48a4c9fdd7f27a04358327fdefa5 |
|
| /// File Name: |
glsa-200603-21.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200603-21 - ISS discovered that Sendmail is vulnerable to a race condition in the handling of asynchronous signals. Versions less than 8.13.6 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2957 | | Last Modified: | Mar 23 21:44:00 2006 |
| MD5 Checksum: | 91efedcdb1d58da7efb31edba5a5d2a8 |
|
| /// File Name: |
sa19368.txt |
Description:
|
Secunia Security Advisory - Slackware has issued an update for sendmail. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/19368/ | | File Size: | 2583 | | Last Modified: | Mar 23 21:22:03 2006 |
| MD5 Checksum: | c9015db94e9bab11aba58be4c712a3ae |
|
| /// File Name: |
sa19367.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for sendmail. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/19367/ | | File Size: | 16429 | | Last Modified: | Mar 23 21:22:03 2006 |
| MD5 Checksum: | 7e50d29c1ab0ba7b0085e68dfd3b863d |
|
| /// File Name: |
sa19366.txt |
Description:
|
Secunia Security Advisory - A security issue has been reported in FreeBSD, which potentially can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/19366/ | | File Size: | 2680 | | Last Modified: | Mar 23 21:22:03 2006 |
| MD5 Checksum: | a0c2146fd860ce09f53774f6bc696fa5 |
|
| /// File Name: |
sa19363.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for sendmail. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/19363/ | | File Size: | 1543 | | Last Modified: | Mar 23 21:22:03 2006 |
| MD5 Checksum: | b33e5c0f28af85eaf4b1a53ed7e8db14 |
|
| /// File Name: |
sa19362.txt |
Description:
|
Secunia Security Advisory - Red Hat has issued an update for RealPlayer. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/19362/ | | File Size: | 1650 | | Last Modified: | Mar 23 21:22:03 2006 |
| MD5 Checksum: | 0bff5fc2e898c6d3e3fddf0e8c61f1eb |
|
|
|
|
|