Section: .. / 0603-advisories /
| /// File Name: |
TUVSA-0603-004.txt |
Description:
|
Technical University of Vienna Security Advisory - arbitrary php script execution in txtForum Versions 1.0.4-dev and prior.
| | Homepage: | http://www.seclab.tuwien.ac.at | | File Size: | 1946 | | Last Modified: | Mar 10 02:09:03 2006 |
| MD5 Checksum: | 9eae9577ad84b66a3fad4de429de11d2 |
|
| /// File Name: |
TUVSA-0603-001.txt |
Description:
|
Technical University of Vienna Security Advisory - Multiple XSS vulnerabilities in DCP Portal Versions 6.1.1 and prior.
| | Homepage: | http://www.seclab.tuwien.ac.at | | File Size: | 10156 | | Last Modified: | Mar 10 02:08:01 2006 |
| MD5 Checksum: | 2727ec564f17d6bb3d430463f467a7a3 |
|
| /// File Name: |
TUVSA-0603-002.txt |
Description:
|
Technical University of Vienna Security Advisory - multiple XSS vulnerabilities in MyBloggie Versions 2.1.3 beta and prior.
| | Homepage: | http://www.seclab.tuwien.ac.at | | File Size: | 4978 | | Last Modified: | Mar 10 02:06:41 2006 |
| MD5 Checksum: | 3a213e83ef483a4df17bd0a411dcaec3 |
|
| /// File Name: |
MDKSA-2006-035-1.txt |
Description:
|
Mandriva Linux Security Advisory - A flaw in the PHP gd extension in versions prior to 4.4.1 could allow a remote attacker to bypass safe_mode and open_basedir restrictions via unknown attack vectors.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 5663 | | Last Modified: | Mar 10 01:48:11 2006 |
| MD5 Checksum: | 1970a235a2024637bb6f04418d6248a5 |
|
| /// File Name: |
INFIGO-2006-03-01.txt |
Description:
|
INFIGO IS Security Advisory #INFIGO-2006-03-01 - After short research, a high-risk vulnerability was discovered in PeerCast Streaming server v0.1215 and lower. Unauthenticated remote users can send specially crafted request to the HTTP server that will cause stack overflow, what can be easily exploited for remote code execution. The problem is present in URL handling code.
| | Author: | INFIGO IS | | Homepage: | http://www.infigo.hr | | File Size: | 3375 | | Last Modified: | Mar 10 01:26:41 2006 |
| MD5 Checksum: | a57cb0ea93e156cf42d501fb817f72e2 |
|
| /// File Name: |
MDKSA-20060035-1.txt |
Description:
|
Mandriva Linux Security Advisory - A flaw in the PHP gd extension in versions prior to 4.4.1 could allow a remote attacker to bypass safe_mode and open_basedir restrictions via unknown attack vectors.
| | Homepage: | http://www.mandriva.com/security/ | | File Size: | 5663 | | Last Modified: | Mar 10 01:23:25 2006 |
| MD5 Checksum: | 1970a235a2024637bb6f04418d6248a5 |
|
| /// File Name: |
dsa-989-1.txt |
Description:
|
Debian Security Advisory DSA 989-1 - Neil McBride discovered that Zoph, a web based photo management system performs insufficient sanitizing for input passed to photo searches, which may lead to the execution of SQL commands through a SQL injection attack.
| | Author: | Martin Schulze | | Homepage: | http://www.debian.org/security/ | | File Size: | 2923 | | Last Modified: | Mar 10 01:22:58 2006 |
| MD5 Checksum: | 9330c95c989fef3f32a6290e9d5a808a |
|
| /// File Name: |
nCipher14.txt |
Description:
|
nCipher Security Advisory No. 14 - During a major code review carried out for a recent release, nCipher discovered some undesirable features in the nCore code base.
| | Homepage: | http://www.ncipher.com/ | | File Size: | 11044 | | Last Modified: | Mar 10 01:21:11 2006 |
| MD5 Checksum: | 4b59279633529c99b631997833b7cb7d |
|
| /// File Name: |
nCipher13.txt |
Description:
|
nCipher Security Advisory No. 13 - Application programmers using the nCore API to calculate and verify CBC MACs may have accidentally implemented a MAC protocol which fails to detect certain modifications to messages it is supposed to protect.
| | Homepage: | http://www.ncipher.com/ | | File Size: | 12727 | | Last Modified: | Mar 10 01:20:39 2006 |
| MD5 Checksum: | 0aa4ad3331d28e689d50b2109f68a692 |
|
| /// File Name: |
nCipher12.txt |
Description:
|
nCipher Security Advisory No. 12 - In some circumstances, Diffie-Hellman keys generated by an HSM may be less secure than previously thought. An attack which recovers a vulnerable private key is (for typical parameters), expensive but possible.
| | Homepage: | http://www.ncipher.com/ | | File Size: | 8480 | | Last Modified: | Mar 10 01:20:01 2006 |
| MD5 Checksum: | 63cb4a58e3b6e0f6f4a52a8e1d68fdc2 |
|
| /// File Name: |
qwikiwiki_1.0.5_xss.txt |
Description:
|
QwikiWiki 1.5 suffers from multiple script injection vulnerabilities in index.php, login.php, and pageindex.php.
| | Author: | Kiki | | Homepage: | http://kiki91.altervista.org | | File Size: | 2254 | | Last Modified: | Mar 10 01:13:14 2006 |
| MD5 Checksum: | ba327624af3bb96f9f030f8146f8c316 |
|
| /// File Name: |
adpforum2.txt |
Description:
|
ADP Forum 2.0.x is vulnerable to script injection while posting messages.
| | Author: | Liz0ziM | | Homepage: | http://www.biyosecurity.com | | File Size: | 1133 | | Last Modified: | Mar 10 01:10:39 2006 |
| MD5 Checksum: | 1e50c7244e3c6d74e4ea0e145109f04e |
|
| /// File Name: |
sa19183.txt |
Description:
|
Secunia Security Advisory - SGI has issued a patch for SGI Advanced Linux Environment. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service), cause files to be extracted to arbitrary locations on a user's system, and potentially compromise a user's system.
| | Homepage: | http://secunia.com/advisories/19183/ | | File Size: | 1940 | | Last Modified: | Mar 10 00:50:11 2006 |
| MD5 Checksum: | f62fc1fa487d919c370a887b91720bea |
|
| /// File Name: |
sa19181.txt |
Description:
|
Secunia Security Advisory - x128 has discovered a vulnerability in RedBLoG, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/19181/ | | File Size: | 1766 | | Last Modified: | Mar 10 00:50:11 2006 |
| MD5 Checksum: | 6719c49fe17f940a1204faaa69f7777d |
|
| /// File Name: |
sa19177.txt |
Description:
|
Secunia Security Advisory - KAPDA has discovered two vulnerabilities in D2KBlog, which can be exploited by malicious people to conduct script insertion and SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/19177/ | | File Size: | 2193 | | Last Modified: | Mar 10 00:50:11 2006 |
| MD5 Checksum: | 43a46708ca5a216869fa10d0d89ddcc8 |
|
| /// File Name: |
sa19176.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for squirrelmail. This fixes some vulnerabilities, which can be exploited by malicious users to manipulate certain information and by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/19176/ | | File Size: | 3178 | | Last Modified: | Mar 10 00:50:11 2006 |
| MD5 Checksum: | 29877e915ed7b8afcc7fc29551a40697 |
|
| /// File Name: |
sa19175.txt |
Description:
|
Secunia Security Advisory - rgod has discovered a vulnerability in Gallery, which can be exploited by malicious people to disclose sensitive information and compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/19175/ | | File Size: | 2164 | | Last Modified: | Mar 10 00:50:11 2006 |
| MD5 Checksum: | 1c89c1b0fe494941a945dacfb645b44b |
|
| /// File Name: |
sa19165.txt |
Description:
|
Secunia Security Advisory - Hamid Ebadi has discovered two vulnerabilities in Nodez, which can be exploited by malicious people to conduct cross-site scripting attacks and compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/19165/ | | File Size: | 2288 | | Last Modified: | Mar 10 00:50:11 2006 |
| MD5 Checksum: | 8d94d402d190347b83b626d1d6bcb442 |
|
| /// File Name: |
sa19150.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Kerio MailServer, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/19150/ | | File Size: | 1840 | | Last Modified: | Mar 10 00:50:11 2006 |
| MD5 Checksum: | 7c3d904eb68e40289ed9a8a711b6a615 |
|
| /// File Name: |
sa19149.txt |
Description:
|
Secunia Security Advisory - retard has discovered a vulnerability in textfileBB, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/19149/ | | File Size: | 1864 | | Last Modified: | Mar 10 00:50:11 2006 |
| MD5 Checksum: | 09c0913e255f8221a4b694df1df9a487 |
|
| /// File Name: |
netcoolLeak.txt |
Description:
|
Another credential leak was found in the Netcool/NeuSecure Security Information Management platform which allows for remote backend database access with administrative privileges by an unauthenticated remote user.
| | Author: | Dimitry Snezhkov | | File Size: | 5887 | | Last Modified: | Mar 9 05:36:07 2006 |
| MD5 Checksum: | 7abf0cff0bf78afdc44b2ddf1fdf2bb2 |
|
| /// File Name: |
capi4hylafax.txt |
Description:
|
capi4hylafax version 01.03.00 is susceptible to a symbolic link creation vulnerability.
| | Author: | DrFrancky | | File Size: | 1325 | | Last Modified: | Mar 9 05:30:08 2006 |
| MD5 Checksum: | 2489f487fa9ebab1f038e1db3add250a |
|
| /// File Name: |
aa2k6x.txt |
Description:
|
Alien Arena 2006 Gold Edition versions 5.00 and below suffer from format string and buffer overflow vulnerabilities.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.altervista.org | | Related Exploit: | aa2k6x.zip | | File Size: | 5205 | | Last Modified: | Mar 9 05:20:29 2006 |
| MD5 Checksum: | a417e8140e93aa291ab0fe5109b1f627 |
|
| /// File Name: |
SSRT050979.txt |
Description:
|
HPSBTU02100 SSRT050979 rev.1 - HP Tru64 UNIX IPSEC/ISAKMP Remote Denial of Service (DoS) - Multiple potential vulnerabilities have been identified on HP Tru64 UNIX operating systems running IPSEC, which uses the Internet Security Association and Key Management Protocol (ISAKMP). The vulnerabilities could be exploited remotely to cause Denial of Service (DoS) .
| | Author: | HP | | Homepage: | http://www.hp.com | | File Size: | 6226 | | Last Modified: | Mar 9 04:53:12 2006 |
| MD5 Checksum: | f2da1b8bff53e9c86df505e9833d9a54 |
|
| /// File Name: |
kapda-32.txt |
Description:
|
KAPDA advisory #32 - d2kBlog versions less than or equal to 1.0.3 suffer from SQL and script insertion vulnerabilities.
| | Author: | KAPDA | | Homepage: | http://www.KAPDA.ir | | File Size: | 1623 | | Last Modified: | Mar 9 04:52:05 2006 |
| MD5 Checksum: | ab0df06514c44ef35191e99283338f62 |
|
|
|
|
|