Section: .. / 0603-advisories /
| /// File Name: |
sa19334.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for pngcrush. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/19334/ | | File Size: | 1538 | | Last Modified: | Mar 22 14:23:07 2006 |
| MD5 Checksum: | 9544de945133057c3b23003c81b3b256 |
|
| /// File Name: |
thttpd-htpasswd.txt |
Description:
|
The htpasswd program shipped with thttpd-2.25b can be tricked into executing arbitrary programs.
| | Author: | Larry Cashdollar | | Homepage: | http://vapid.dhs.org | | File Size: | 1511 | | Last Modified: | Mar 8 07:26:37 2006 |
| MD5 Checksum: | eab8f95491dc8f2fc1aaae66bee535c1 |
|
| /// File Name: |
gov-xss.txt |
Description:
|
Several US Government sites, including ic3.gov and house.gov suffer from XSS vulnerabilities.
| | Author: | HeadzShotz | | Homepage: | http://hs.elimate.co.uk | | File Size: | 1499 | | Last Modified: | Mar 24 00:29:42 2006 |
| MD5 Checksum: | e9494d2b818a54d85b222aa5960861dd |
|
| /// File Name: |
WinHKI1.6x.txt |
Description:
|
WinHKI 1.6x Archive Extraction Directory traversal: Due to an input validation error when extracting files compressed with certain formats, it is possible to have files extracted to arbitrary locations on the filesystem.
| | Author: | h e | | Homepage: | http://www.hamid.ir | | File Size: | 1495 | | Last Modified: | Mar 24 00:10:04 2006 |
| MD5 Checksum: | 76b1ffaf3637e8207ea496345a74f5cd |
|
| /// File Name: |
advisory-277.txt |
Description:
|
CuteNews version 1.4.1 is susceptible to cross site scripting attacks.
| | Author: | Roozbeh Afrasiabi, imei addmimistrator | | Homepage: | http://www.kapda.ir | | File Size: | 1451 | | Last Modified: | Mar 8 05:40:07 2006 |
| MD5 Checksum: | a11e772427fa8b60960adae024b484f9 |
|
| /// File Name: |
hithost_v1.0.0.txt |
Description:
|
HitHost 1.0.0 suffers from XSS and other vulnerabilities due to improper input sanitization.
| | Author: | retard | | File Size: | 1412 | | Last Modified: | Mar 8 07:03:47 2006 |
| MD5 Checksum: | 218e1abec2eb66c55e5793e6416e9e0d |
|
| /// File Name: |
EV0092.txt |
Description:
|
eVuln Advisory: discussion - xhawk.net BBCode 'img' XSS & SQL Injection Vulnerabilities
| | Author: | Aliaksandr Hartsuyeu | | Homepage: | http://evuln.com/ | | File Size: | 1403 | | Last Modified: | Mar 15 21:14:11 2006 |
| MD5 Checksum: | a55830d2b96808ebd4e629d986bc775d |
|
| /// File Name: |
antivirNotepad.txt |
Description:
|
AntiVir Personal Edition Classic version 7 suffers from a local privilege escalation issue due to launching notepad.exe with SYSTEM privileges.
| | Author: | Ramon Kukla | | File Size: | 1362 | | Last Modified: | Mar 12 22:56:48 2006 |
| MD5 Checksum: | b1d3df71ca414fb4d85a729575c764c7 |
|
| /// File Name: |
lsoftLISTSERV.txt |
Description:
|
Peter Winter-Smith of NGSSoftware has discovered a number of vulnerabilities in L-Soft's LISTSERV list management system. The worst of these carries a critical risk rating.
| | Author: | Peter Winter-Smith | | Homepage: | http://www.ngssoftware.com/ | | File Size: | 1359 | | Last Modified: | Mar 6 10:55:25 2006 |
| MD5 Checksum: | ec1f4e19483f5759a966abf900bbb886 |
|
| /// File Name: |
capi4hylafax.txt |
Description:
|
capi4hylafax version 01.03.00 is susceptible to a symbolic link creation vulnerability.
| | Author: | DrFrancky | | File Size: | 1325 | | Last Modified: | Mar 9 05:30:08 2006 |
| MD5 Checksum: | 2489f487fa9ebab1f038e1db3add250a |
|
| /// File Name: |
rapidshare.de.txt |
Description:
|
The file hosting company rapidshare.de suffers from XSS.
| | Author: | Ironfist | | File Size: | 1322 | | Last Modified: | Mar 14 23:52:57 2006 |
| MD5 Checksum: | c4275e083dd97c87bc2b3fba39548fc3 |
|
| /// File Name: |
EV0093.txt |
Description:
|
eVuln Advisory EV0093 - NMDeluxe XSS & SQL Injection Vulnerabilities
| | Author: | Aliaksandr Hartsuyeu | | Homepage: | http://evuln.com/ | | File Size: | 1312 | | Last Modified: | Mar 21 23:45:30 2006 |
| MD5 Checksum: | 079b3cb72730a0496c01cbe2fff3d17f |
|
| /// File Name: |
SYM06-004.txt |
Description:
|
Symantec Security Advisory - SYM06-004 - Veritas Backup Exec: Application Memory Denial of Service Revision History
| | Homepage: | http://www.symantec.com/avcenter | | File Size: | 1286 | | Last Modified: | Mar 21 23:10:02 2006 |
| MD5 Checksum: | fb6b3694dad14707759a6e2146fbe820 |
|
| /// File Name: |
SLAB500.txt |
Description:
|
Due to insufficient sanity checking, SLAB500 suffers from arbitrary file read and full path disclosure vulnerabilities.
| | Author: | Justin_T | | File Size: | 1246 | | Last Modified: | Mar 22 01:54:48 2006 |
| MD5 Checksum: | 676395ef3486ece5cb04ebae37ceaf02 |
|
| /// File Name: |
2006-06-03-dokuwiki-xss.txt |
Description:
|
DokuWiki suffers from an XSS vulnerability in the "Picture List" of the "mediamanager" It is possible to upload a picture with a specially crafted EXIF tag, containing script code. This code will be executed every time a user views the "mediamanager".
| | Author: | yorn | | File Size: | 1243 | | Last Modified: | Mar 8 07:37:15 2006 |
| MD5 Checksum: | 3957e113737ff82bda11674ef5e5e717 |
|
| /// File Name: |
linkbankexec.txt |
Description:
|
Link Bank does not properly sanitize user inputted data, which leads to a XSS vulnerability.
| | Author: | retard | | File Size: | 1229 | | Last Modified: | Mar 8 07:06:59 2006 |
| MD5 Checksum: | 5c29868dcf65876da70ba3b5a32718b4 |
|
| /// File Name: |
javaDoS.txt |
Description:
|
There is a vulnerability in the Internet Explorer java applet handling engine. It occurs while running the Sun Microsystems Java VM and is caused by improper HTML 'INPUT' control focus handling.
| | Author: | porkythepig | | File Size: | 1171 | | Last Modified: | Mar 8 05:59:46 2006 |
| MD5 Checksum: | c1afc82f5e2bfc41ffa14c35216a997c |
|
| /// File Name: |
EV0094.txt |
Description:
|
eVuln ID: EV0094 - PHP SimpleNEWS, PHP SimpleNEWS MySQL suffer from a weak authentication mechanism.
| | Author: | Aliaksandr Hartsuyeu | | Homepage: | http://evuln.com/ | | File Size: | 1170 | | Last Modified: | Mar 24 00:13:03 2006 |
| MD5 Checksum: | 6b5ec07bdee3fad56d2e430a69be95b6 |
|
| /// File Name: |
adpforum2.txt |
Description:
|
ADP Forum 2.0.x is vulnerable to script injection while posting messages.
| | Author: | Liz0ziM | | Homepage: | http://www.biyosecurity.com | | File Size: | 1133 | | Last Modified: | Mar 10 01:10:39 2006 |
| MD5 Checksum: | 1e50c7244e3c6d74e4ea0e145109f04e |
|
| /// File Name: |
EV0091.txt |
Description:
|
CyBoards PHP Lite v1.25 suffers from SQL injection in post.php if magic_quotes_gpc is turned off.
| | Author: | Aliaksandr Hartsuyeu | | Homepage: | http://evuln.com/ | | File Size: | 1124 | | Last Modified: | Mar 14 23:41:57 2006 |
| MD5 Checksum: | 0bc13481d404abe8ca63f3acdc600b6b |
|
| /// File Name: |
F5Firepass4100.txt |
Description:
|
5 Firepass 4100 SSL VPN v. 5.4.2 suffers from XSS in in my.support.php3. This allows an attacker to submit a crafted link to users of the vulnerable Web application in order to abuse their trust and steal their authentication credentials or hijack their sessions.
| | Author: | ILION Research Labs | | File Size: | 1111 | | Last Modified: | Mar 23 23:33:19 2006 |
| MD5 Checksum: | 5877c46acf3579ed1dd2ca9b3207f90d |
|
| /// File Name: |
SYM06-005.txt |
Description:
|
Symantec Security Advisory SYM06-005 Veritas Backup Exec for Windows Servers: Media Server BENGINE Service Job log Format String Overflow
| | Homepage: | http://www.symantec.com/avcenter/ | | File Size: | 1088 | | Last Modified: | Mar 21 23:12:26 2006 |
| MD5 Checksum: | 2710dea9b438c4a72d27d722b24cd0b5 |
|
| /// File Name: |
99articles.txt |
Description:
|
Free Articles from 99articles.com suffers from a remote command execution vulnerability.
| | Author: | botan | | Homepage: | http://www.PatrioticHackers.com | | File Size: | 1076 | | Last Modified: | Mar 23 23:35:30 2006 |
| MD5 Checksum: | 5fc46be876ff2247688225cfaa1a12be |
|
| /// File Name: |
BetaParticle-6.0.txt |
Description:
|
BetaParticle Blog versions less than or equal to 6.0 suffer from multiple SQL injection vulnerabilities.
| | Author: | nukedx | | Homepage: | http://www.nukedx.com | | File Size: | 1053 | | Last Modified: | Mar 22 01:56:15 2006 |
| MD5 Checksum: | e625792db5649f23b38f3140204feebc |
|
|
|
|
|