Section: .. / 0602-advisories /
| /// File Name: |
AD20060216.txt |
Description:
|
Winamp versions up to and including 5.13 suffer from a .m3u buffer overflow vulnerability
| | Homepage: | http://secway.org/advisory/AD20060216.txt | | File Size: | 1024 | | Last Modified: | Feb 20 22:58:36 2006 |
| MD5 Checksum: | 6ce8097aa8fb6b01da815588d5251346 |
|
| /// File Name: |
EV0053.txt |
Description:
|
SZUserMgmt version 1.4 suffers from an authentication bypass flaw.
| | Author: | Aliaksandr Hartsuyeu | | File Size: | 1017 | | Last Modified: | Feb 2 13:29:28 2006 |
| MD5 Checksum: | cc279f0015b5587403a87350f7c932b8 |
|
| /// File Name: |
cpanel10-mime_handle.txt |
Description:
|
The mime/handle.html of cPanel 10 is vulnerable to an XSS vulnerability.
| | Author: | Shell | | File Size: | 934 | | Last Modified: | Feb 7 22:30:50 2006 |
| MD5 Checksum: | 589b97b0065eac85bd7e7665b9aad032 |
|
| /// File Name: |
pearAuthSQL.txt |
Description:
|
PEAR::Auth version less than 1.2.4 and 1.3.0r4 suffer from SQL injection flaws.
| | Author: | Matt Van Gundy | | File Size: | 886 | | Last Modified: | Feb 25 23:34:39 2006 |
| MD5 Checksum: | 73272548cc7945988381dfc4bdc028fa |
|
| /// File Name: |
DarkStarlings.txt |
Description:
|
DarkStarlings products are vulnerable to arbitrary script code inclusion sue to improperly sanitized user inputs.
| | Homepage: | http://willboyce.com | | File Size: | 841 | | Last Modified: | Feb 7 22:39:04 2006 |
| MD5 Checksum: | 2d2a4eba0a14730c864ab1b68c9afd56 |
|
| /// File Name: |
mozillaDoS.txt |
Description:
|
The Mozilla Thunderbird 1.5 address book allows fields of an unlimited size, allowing for a denial of service condition to be exploited.
| | Author: | DrFrancky | | File Size: | 785 | | Last Modified: | Feb 25 23:24:03 2006 |
| MD5 Checksum: | c91a10c627d9c38958f668c6b6fd0aab |
|
| /// File Name: |
snews.txt |
Description:
|
sNews suffers from a XSS vulnerability in the comments section.
| | Homepage: | http://securitydot.net | | File Size: | 739 | | Last Modified: | Feb 17 01:17:20 2006 |
| MD5 Checksum: | 026e8f0f70b21a6e022a7e83c4fa4b35 |
|
| /// File Name: |
mybbInclude.txt |
Description:
|
MyBB version 1.2 suffers from a local file inclusion vulnerability in plugins.php.
| | Author: | D3vil-0x1 | | File Size: | 670 | | Last Modified: | Feb 2 11:13:12 2006 |
| MD5 Checksum: | ae6356a2db2fa7a21ffc549e4a33cd82 |
|
| /// File Name: |
SoftMakerShop.txt |
Description:
|
Inputs in the SoftMaker Shop are not properly sanitized, and XSS is possible in a lot of the systems input fields and url parameters.
| | Author: | Preben Nyløkken | | File Size: | 658 | | Last Modified: | Feb 3 01:19:40 2006 |
| MD5 Checksum: | 4ce8985bad052dcb5026f0200694b4c4 |
|
| /// File Name: |
easyCMSxss.txt |
Description:
|
EasyCMS is susceptible to cross site scripting attacks.
| | Author: | Preben | | File Size: | 565 | | Last Modified: | Feb 2 11:10:49 2006 |
| MD5 Checksum: | d71fe71311cb793ae27816d0268bedc9 |
|
| /// File Name: |
sNews.txt |
Description:
|
sNews suffers from XSS and SQL injection vulnerabilities.
| | Author: | Alexander Hristov | | Homepage: | http://securitydot.net | | File Size: | 529 | | Last Modified: | Feb 15 00:49:35 2006 |
| MD5 Checksum: | 37be0e60f879d251978ef2a630611377 |
|
| /// File Name: |
folderGuard.txt |
Description:
|
By renaming or moving the password file, Folder Guard version 4.11 fails to protect anything.
| | Author: | ShadowBeast | | File Size: | 448 | | Last Modified: | Feb 14 06:19:08 2006 |
| MD5 Checksum: | 99b26ce4dbb6515378723f13a5709441 |
|
| /// File Name: |
aimOverflow.txt |
Description:
|
It appears that there may be a buffer overflow in AIM when supplied a large username to obtain buddy info.
| | Author: | Shell | | File Size: | 436 | | Last Modified: | Feb 2 11:12:04 2006 |
| MD5 Checksum: | 4f72fdf12607db2fa2746124edc2b77e |
|
| /// File Name: |
mgXSS.txt |
Description:
|
MG2 Image Gallery version 0.5.1 suffers from cross site scripting flaws.
| | Author: | Preben Nylokken | | File Size: | 362 | | Last Modified: | Feb 2 11:48:18 2006 |
| MD5 Checksum: | 917271602cd17a7793b3b747e9b1575d |
|
|
|
|
|