Section: .. / 0606-advisories /
| /// File Name: |
sa20864.txt |
Description:
|
Secunia Security Advisory - Claus Berghammer has discovered a vulnerability in QuickZip, which potentially can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/20864/ | | File Size: | 2387 | | Last Modified: | Jun 29 20:48:34 2006 |
| MD5 Checksum: | f61ef99eb2c743dc37166beffe2f9be9 |
|
| /// File Name: |
sa20860.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Cisco Wireless Access Point, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/20860/ | | File Size: | 3290 | | Last Modified: | Jun 29 20:48:34 2006 |
| MD5 Checksum: | d634d47a0e5726453368c9646f7e2e01 |
|
| /// File Name: |
sa20859.txt |
Description:
|
Secunia Security Advisory - rgod has discovered a vulnerability in BLOG:CMS, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/20859/ | | File Size: | 2179 | | Last Modified: | Jun 29 20:48:34 2006 |
| MD5 Checksum: | d30e20a8b683af2e3e31a319a69e4520 |
|
| /// File Name: |
sa20854.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for mutt. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system.
| | Homepage: | http://secunia.com/advisories/20854/ | | File Size: | 1994 | | Last Modified: | Jun 29 20:48:34 2006 |
| MD5 Checksum: | 26b21267c3e3fc63d9526fe3a286b489 |
|
| /// File Name: |
sa20850.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for tikiwiki. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/20850/ | | File Size: | 2008 | | Last Modified: | Jun 29 20:48:34 2006 |
| MD5 Checksum: | c11bdfc9c39f956d0d1ed2965366d2c5 |
|
| /// File Name: |
sa20849.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for horde. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/20849/ | | File Size: | 1956 | | Last Modified: | Jun 29 20:48:34 2006 |
| MD5 Checksum: | 2cc1396c81b13af37f13c585236fb590 |
|
| /// File Name: |
sa20799.txt |
Description:
|
Secunia Security Advisory - Persian-Defacer has reported a vulnerability in phpMySms, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/20799/ | | File Size: | 2166 | | Last Modified: | Jun 29 20:48:34 2006 |
| MD5 Checksum: | b5a41763882ba443dcf005d8b655af93 |
|
| /// File Name: |
sa20659.txt |
Description:
|
Secunia Security Advisory - Bartek Ryniec has discovered a vulnerability in MyBB, which can be exploited by malicious people to conduct cross-site request forgery attacks.
| | Homepage: | http://secunia.com/advisories/20659/ | | File Size: | 2520 | | Last Modified: | Jun 29 20:48:34 2006 |
| MD5 Checksum: | 8d4b2c8a37958090e2c4aa158b45a4f6 |
|
| /// File Name: |
sa20200.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered some vulnerabilities in phpRaid, which can be exploited by malicious people to conduct SQL injection attacks or compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/20200/ | | File Size: | 3395 | | Last Modified: | Jun 29 20:48:34 2006 |
| MD5 Checksum: | 84057e142c83b4e6a2639adf0ec13097 |
|
| /// File Name: |
SA-20060613-0.txt |
Description:
|
Microsoft Outlook Web Access is vulnerable to an HTML code injection/cross site scripting attack. A malicous user could craft a mail containing HTML and Javascript code. Such code could be used to steal session information from the victims cookies, and thus enable the attacker to get access to the victim's emails.
| | Homepage: | http://www.sec-consult.com/270.html | | File Size: | 8745 | | Last Modified: | Jun 29 06:23:20 2006 |
| MD5 Checksum: | b0974b833779ca06fab225828f9f2754 |
|
| /// File Name: |
MyBB-1.1.3 |
Description:
|
MyBB 1.1.3 suffers from cross site scripting
| | Homepage: | http://kapda.ir/page-advisory.html | | File Size: | 626 | | Last Modified: | Jun 29 06:21:39 2006 |
| MD5 Checksum: | adb3c4757e8a48bf66347bc0266e1ce4 |
|
| /// File Name: |
UsenetScriptv0.5.txt |
Description:
|
Usenet Script v0.5 suffers from cross site scripting in index.php
| | Author: | luny | | File Size: | 562 | | Last Modified: | Jun 29 06:14:55 2006 |
| MD5 Checksum: | db947c663cd8c2629c760dbab976a72e |
|
| /// File Name: |
WingedGalleryv1.0.txt |
Description:
|
Winged Gallery v1.0 suffers from cross site scripting
| | Author: | luny | | File Size: | 296 | | Last Modified: | Jun 29 06:14:18 2006 |
| MD5 Checksum: | 6041dca3a4f429b350bed254d26e9ce1 |
|
| /// File Name: |
MU-200606-02.txt |
Description:
|
Apple Open Directory Pre-Authentication Denial of Service: A denial of service condition exists in slapd (OpenLDAP-2.2.19) during the anonymous bind operation. By sending a malformed ldap-bind message, the slapd server can be forced to abort
| | Homepage: | http://labs.musecurity.com | | File Size: | 2547 | | Last Modified: | Jun 29 06:09:19 2006 |
| MD5 Checksum: | f96978fa079818553cd2a21579c6fed6 |
|
| /// File Name: |
cisco-sa-20062806-ap.txt |
Description:
|
Cisco Security Advisory: Access Point Web-Browser Interface Vulnerability: The Cisco web-browser interface for Cisco access points contains a vulnerability that could, under certain circumstances, remove the default security configuration from the managed access point and allow administrative access without validation of administrative user credentials.
| | Homepage: | http://www.cisco.com | | File Size: | 16020 | | Last Modified: | Jun 29 06:08:08 2006 |
| MD5 Checksum: | fc558a356a71a3547f858c7ce75185b3 |
|
| /// File Name: |
cisco-sa-20060628-wcs.txt |
Description:
|
Cisco Security Advisory: Multiple Vulnerabilities in Wireless Control System
| | Homepage: | http://www.cisco.com | | File Size: | 17136 | | Last Modified: | Jun 29 06:06:40 2006 |
| MD5 Checksum: | db1f3535136905e588bf525b6c75fe90 |
|
| /// File Name: |
OpenPKG-SA-2006.011.txt |
Description:
|
OpenPKG Security Advisory OpenPKG-SA-2006.011 - The Portable Network Graphics (PNG) [1] library contains a vulnerability caused by a potential sprintf(3) related buffer overflow.
| | Homepage: | http://www.openpkg.org/ | | File Size: | 1804 | | Last Modified: | Jun 29 06:04:47 2006 |
| MD5 Checksum: | 49434e43f522674b1b1cc52010c2bd84 |
|
| /// File Name: |
secunia-Opera.txt |
Description:
|
Secunia Research 28/06/2006: Opera SSL Certificate "Stealing" Weakness - Secunia Research has discovered a weakness in Opera, which can be exploited to display the SSL certificate from a trusted site on an untrusted site.
| | Homepage: | http://secunia.com/secunia_research/ | | File Size: | 3289 | | Last Modified: | Jun 29 06:03:56 2006 |
| MD5 Checksum: | b758d7056b1bcd21c655d2b2b53a6178 |
|
| /// File Name: |
MDKSA-2006-114.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-114: Integer overflows were reported in the GD Graphics Library (libgd) 2.0.28, and possibly other versions. These overflows allow remote attackers to cause a denial of service and possibly execute arbitrary code via PNG image files with large image rows values that lead to a heap-based buffer overflow in the gdImageCreateFromPngCtx() function. Libwmf contains an embedded copy of the GD library code.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 4573 | | Last Modified: | Jun 29 05:59:04 2006 |
| MD5 Checksum: | 168e15a401a6cc8b08eb1534f762d707 |
|
| /// File Name: |
MDKSA-2006-113.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-113: Integer overflows were reported in the GD Graphics Library (libgd) 2.0.28, and possibly other versions. These overflows allow remote attackers to cause a denial of service and possibly execute arbitrary code via PNG image files with large image rows values that lead to a heap-based buffer overflow in the gdImageCreateFromPngCtx() function. Tetex contains an embedded copy of the GD library code.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 7907 | | Last Modified: | Jun 29 05:58:52 2006 |
| MD5 Checksum: | 0907f87cc3b7d85efc8016d20b55432c |
|
| /// File Name: |
MDKSA-2006-112.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-112: The LZW decoding in the gdImageCreateFromGifPtr function in the Thomas Boutell graphics draw (GD) library (aka libgd) 2.0.33 allows remote attackers to cause a denial of service (CPU consumption) via malformed GIF data that causes an infinite loop.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 3967 | | Last Modified: | Jun 29 05:58:41 2006 |
| MD5 Checksum: | 9174f8121c7d76d843b2d0f6432895c6 |
|
| /// File Name: |
LD-CAeTrust.txt |
Description:
|
A format string vulnerability was discovered within etrust Antivirus 8.0. The vulnerability is due to improper processing of format strings within the scan job description field. An attacker could create a scan job containing special crafted format strings that could potential lead to execution of arbitrary code, rights escalation and at a minimum denial of service.
| | Author: | Deral Heiland | | Homepage: | http://www.LayeredDefense.com | | File Size: | 2421 | | Last Modified: | Jun 29 05:58:34 2006 |
| MD5 Checksum: | f885ce8cc2ec636a62a4c907cc19aed2 |
|
| /// File Name: |
smartsite-v1.0.txt |
Description:
|
smartsite cms v1.0 suffers from a remote file inclusion vulnerability.
| | Author: | CrAsh_oVeR_rIdE | | File Size: | 2064 | | Last Modified: | Jun 29 05:57:17 2006 |
| MD5 Checksum: | a650772ca91f24eea2fc1221de025e96 |
|
|
|
|
|