Section: .. / 0802-advisories /
| /// File Name: |
webcamxp-disclose.txt |
Description:
|
webcamXP versions 3.72.440.0 and below and versions beta 4.05.280 and below suffer from an access violation with limited information disclosure vulnerability.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | File Size: | 2463 | | Last Modified: | Feb 20 01:29:49 2008 |
| MD5 Checksum: | ccaf68187ba924d8ffddd132f13137f8 |
|
| /// File Name: |
wincomalpd.txt |
Description:
|
WinCom LPD Total line printer daemon versions 3.0.2.623 and below suffer from buffer overflow and bypass vulnerabilities.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org/ | | Related Exploit: | wincomalpd.zip | | File Size: | 3481 | | Last Modified: | Feb 4 19:38:04 2008 |
| MD5 Checksum: | c43c737c8bf8212ecd4dbbfbb0a0e92e |
|
| /// File Name: |
ZDI-08-003.txt |
Description:
|
A vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Symantec Backup Exec System Recovery Manager. Authentication is not required to exploit this vulnerability. Backup Exec System Recovery Manager versions 7.0 and 7.0.1 are affected.
| | Author: | Titon | | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 3088 | | Related CVE(s): | CVE-2008-0457 | | Last Modified: | Feb 6 17:46:12 2008 |
| MD5 Checksum: | be7b33818fa9723d29f832bc0b43af58 |
|
| /// File Name: |
ZDI-08-004.txt |
Description:
|
A vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Adobe Acrobat and Adobe Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious web address or open a malicious file.. The specific flaw exists in the parsing of embedded JavaScript code within PDF documents. When the function printSepsWithParams() is called with certain malicious parameter values an integer overflow can occur resulting in a memory corruption. This may be subsequently leveraged to execute arbitrary code under the privileges of the current user. Adobe Reader and Acrobat versions 8.1.1 and below are affected.
| | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 3391 | | Last Modified: | Feb 11 18:02:18 2008 |
| MD5 Checksum: | 73dc5babd19c9a4d5a7b01ab630f35af |
|
| /// File Name: |
ZDI-08-005.txt |
Description:
|
A vulnerability allows remote attackers to execute arbitrary code on systems with vulnerable installations of the Novell Netware Client. Authentication is not required to exploit this vulnerability. The specific flaw exists in nwspool.dll which is responsible for handling RPC requests through the spoolss named pipe. The EnumPrinters function exposed by this DLL contains a logical flaw allowing an attacker to bypass a patch introduced to prevent the vulnerability described in ZDI-07-045. Exploitation of this vulnerability leads to arbitrary code execution in the context of the SYSTEM user.
| | Author: | Avosani Gabriele | | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 3352 | | Related CVE(s): | CVE-2008-0639 | | Last Modified: | Feb 11 18:01:16 2008 |
| MD5 Checksum: | ea09c47183c7cdc55b42a0c3c8a949cd |
|
| /// File Name: |
ZDI-08-006.txt |
Description:
|
A vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Microsoft Internet Explorer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page. Versions 6 and 7 are affected.
| | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 3359 | | Related CVE(s): | CVE-2008-0077 | | Last Modified: | Feb 12 22:05:39 2008 |
| MD5 Checksum: | da7140d01af19b3603eb9f159f3ea5d6 |
|
| /// File Name: |
ZDI-08-007.txt |
Description:
|
A vulnerability allows attackers to execute arbitrary code on vulnerable installations of Symantec VERITAS Storage Foundation. Authentication is not required to exploit this vulnerability. Veritas Storage Foundation version 5.0 is affected.
| | Homepage: | http://www.zerodayinitiative.com/ | | File Size: | 3373 | | Related CVE(s): | CVE-2008-0638 | | Last Modified: | Feb 20 23:55:04 2008 |
| MD5 Checksum: | 19f8ca1ea86080cbc7c2fd4cbbb58a9a |
|
|
|
|
|