Section: .. / 0707-advisories /
| /// File Name: |
blizzard-sanity.txt |
Description:
|
Blizzard.com fails to properly sanitize user supplied input allow for information disclosure attacks.
| | Author: | kefka | | File Size: | 942 | | Last Modified: | Jul 3 02:56:57 2007 |
| MD5 Checksum: | f33730885fccc5c55f09d2847a78a347 |
|
| /// File Name: |
NGS-java.txt |
Description:
|
NGSSoftware has discovered a high risk vulnerability in Sun Microsystem's Java Web Start that ships with the JRE and JDK on Windows platforms. The vulnerability affects Java Web Start in JDK and JRE 5.0 Update 11 and earlier versions and Java Web Start in SDK and JRE 1.4.2_13 and earlier versions.
| | Author: | John Heasman | | Homepage: | http://www.ngssoftware.com/ | | File Size: | 2510 | | Last Modified: | Jul 3 02:55:14 2007 |
| MD5 Checksum: | d95b26009be58db3165d46d2da6486ff |
|
| /// File Name: |
freedomain-sql.txt |
Description:
|
FreeDomain.co.nr Clone suffers from a SQL injection vulnerability.
| | Author: | Kw3rLn | | Homepage: | http://rst-crew.net/ | | File Size: | 486 | | Last Modified: | Jul 3 02:51:52 2007 |
| MD5 Checksum: | 90fd929019175514f70f18d2b0321132 |
|
| /// File Name: |
eticket1511-xss.txt |
Description:
|
eTicket version 1.5.1.1 suffers from multiple cross site scripting vulnerabilities.
| | Author: | Attila Gerendi | | File Size: | 2537 | | Last Modified: | Jul 3 01:37:13 2007 |
| MD5 Checksum: | 4fc533c3667cc35c39ff502c5d0e278e |
|
| /// File Name: |
glsa-200707-03.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200707-03 - The imap_rescan() function of the file camel-imap-folder.c does not properly sanitize the SEQUENCE response sent by an IMAP server before being used to index arrays. Versions less than 1.8.3-r5 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2736 | | Related CVE(s): | CVE-2007-3257 | | Last Modified: | Jul 3 01:13:47 2007 |
| MD5 Checksum: | 07ccd44fc4ac88311def3d9431d2cb24 |
|
| /// File Name: |
glsa-200707-02.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200707-02 - John Heasman of NGSSoftware has discovered a heap-based buffer overflow when parsing the prdata tag in RTF files where the first token is smaller than the second one (CVE-2007-0245). Additionally, the OpenOffice binary program is shipped with a version of FreeType that contains an integer signedness error in the n_points variable in file truetype/ttgload.c, which was covered by GLSA 200705-22 (CVE-2007-2754). Versions less than 2.2.1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 3582 | | Related CVE(s): | CVE-2007-0245, CVE-2007-2754 | | Last Modified: | Jul 3 01:13:16 2007 |
| MD5 Checksum: | 039aac205f958932d3e5426c0060d9c3 |
|
| /// File Name: |
glsa-200707-01.txt |
Description:
|
Gentoo Linux Security Advisory GLSA 200707-01 - Cody Pierce from TippingPoint DVLabs has discovered a buffer overflow when processing connect requests with an overly large p_cnct_count value. Versions less than 2.0.1 are affected.
| | Homepage: | http://security.gentoo.org | | File Size: | 2581 | | Related CVE(s): | CVE-2007-3181 | | Last Modified: | Jul 3 01:12:42 2007 |
| MD5 Checksum: | 8628d04073e673f5898c6540f81d1fb2 |
|
| /// File Name: |
sa25923.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been acknowledged in Knowledgeroot Knowledgebase, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/25923/ | | File Size: | 2078 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | 4b4bd9792cf4bef049064081c2d02395 |
|
| /// File Name: |
sa25922.txt |
Description:
|
Secunia Security Advisory - t0pP8uZz & xprog has reported a vulnerability in Youtube Script, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/25922/ | | File Size: | 2185 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | 108c3424ac45e90394458defc90c8f29 |
|
| /// File Name: |
sa25915.txt |
Description:
|
Secunia Security Advisory - Iron has discovered a vulnerability in phpEventCalendar, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/25915/ | | File Size: | 2391 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | 6a9f7e53e5e7f541dc08e4b9f1bfd779 |
|
| /// File Name: |
sa25914.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for gsambad. This fixes a security issue, which can be exploited by malicious, local users to perform certain actions with escalated privileges.
| | Homepage: | http://secunia.com/advisories/25914/ | | File Size: | 4272 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | cc8aa069e423eaecaa2dab6418e658c9 |
|
| /// File Name: |
sa25913.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for fireflier-server. This fixes a security issue, which can be exploited by malicious, local users to delete arbitrary files.
| | Homepage: | http://secunia.com/advisories/25913/ | | File Size: | 14954 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | 7670b9f7dc5176aa9dd5785d1535523d |
|
| /// File Name: |
sa25912.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for unicon-imc2. This fixes a vulnerability, which potentially can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/25912/ | | File Size: | 4510 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | b8d2844c8399727cfc2dceb16ec9d14e |
|
| /// File Name: |
sa25910.txt |
Description:
|
Secunia Security Advisory - Steve Kemp has reported a vulnerability in UNICON, which potentially can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/25910/ | | File Size: | 2320 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | 3f9d386b07e81c4fa6049150d71637b2 |
|
| /// File Name: |
sa25909.txt |
Description:
|
Secunia Security Advisory - Steve Kemp has reported a security issue in GSAMBAD, which can be exploited by malicious, local users to perform certain actions with escalated privileges.
| | Homepage: | http://secunia.com/advisories/25909/ | | File Size: | 2348 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | aceec5d400181ea99612c513547cfd36 |
|
| /// File Name: |
sa25908.txt |
Description:
|
Secunia Security Advisory - GeFORC3 has reported some vulnerabilities in Gorki Online Santrac Sitesi, which can be exploited by malicious people to conduct script insertion attacks.
| | Homepage: | http://secunia.com/advisories/25908/ | | File Size: | 2301 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | 919d33dd7cc4fe98253947be9b2cc5b2 |
|
| /// File Name: |
sa25907.txt |
Description:
|
Secunia Security Advisory - nights_shadow has discovered a vulnerability in PHP-Fusion, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/25907/ | | File Size: | 2604 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | 516f3ea017b2e314137d3c166e0689ff |
|
| /// File Name: |
sa25904.txt |
Description:
|
Secunia Security Advisory - Carl Hardwick has discovered a weakness in Firefox, which potentially can be exploited by malicious people to disclose sensitive information.
| | Homepage: | http://secunia.com/advisories/25904/ | | File Size: | 2630 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | 80790f4248c2bcc5d56a2949ff44644b |
|
| /// File Name: |
sa25903.txt |
Description:
|
Secunia Security Advisory - E.Minaev has discovered two vulnerabilities in Wheatblog, which can be exploited by malicious people to conduct SQL injection attacks, disclose sensitive information, or compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/25903/ | | File Size: | 2949 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | 833481c517daaf72aa021f322f6281f1 |
|
| /// File Name: |
sa25900.txt |
Description:
|
Secunia Security Advisory - Steve Kemp has reported a security issue in FireFlier, which can be exploited by malicious, local users to delete arbitrary files.
| | Homepage: | http://secunia.com/advisories/25900/ | | File Size: | 2346 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | 4a0e8eaa319b4e6b286160949e9b7357 |
|
| /// File Name: |
sa25899.txt |
Description:
|
Secunia Security Advisory - t0pP8uZz & xprog have reported a vulnerability in TotalCalendar, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/25899/ | | File Size: | 2406 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | 02c0dc7270fe6115caa2b2489ab51f7d |
|
| /// File Name: |
sa25898.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Ripe Website Manager, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/25898/ | | File Size: | 2820 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | b024b575b9e0e2bf83b9301c4916f9f7 |
|
| /// File Name: |
sa25895.txt |
Description:
|
Secunia Security Advisory - A security issue has been reported in the Linux Kernel, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/25895/ | | File Size: | 2299 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | b556950b39412df127694b4adfd4cffc |
|
| /// File Name: |
sa25887.txt |
Description:
|
Secunia Security Advisory - munozferna has reported a vulnerability in Claroline, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/25887/ | | File Size: | 2289 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | 400a37741a1b6d93e0ec71af76e82bee |
|
| /// File Name: |
sa25880.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for evolution. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/25880/ | | File Size: | 14814 | | Last Modified: | Jul 3 01:11:38 2007 |
| MD5 Checksum: | a1b736a352e3e6d8039cbb348d7cf5a6 |
|
|
|
|
|