|
Colapse all |
Post message
crashing firefox <= 1.5.0.4 2006-07-11 reywen gmail com hi, We send any file by the form with ENCTYPE="multipart/form-data" and method="POST" when file upload successful try refresh page (F5 or refresh button). steps: 1) upload file by form 2) refresh page 3) firefox crash example code: <form action="" ENCTYPE="multipart/form-data" method="POST"> [ more ] [ reply ] Linux sys_prctl LKM based hotfix 2006-07-13 Abhisek Datta (abhisek datta gmail com) Hello, Recently a critical vulnerability/behavioural flaw has been discovered in sys_prctl() in kernel/sys.c in Linux kernel. Exploitation of this bug may lead a local attacker to gain root privileges on systems running a vulnerable version of the linux kernel. Original advisory from RedHat Secur [ more ] [ reply ] Re: [Full-disclosure] Re: Linux Kernel 2.6.x PRCTL Core Dump Handling - Local r00t Exploit ( BID 18874 / CVE-2006-2451 ) 2006-07-13 Jon Hart (jhart spoofed org) On Thu, Jul 13, 2006 at 01:23:10AM +0300, Ariel Biener wrote: > On Wednesday 12 July 2006 03:15, Roman Medina-Heigl Hernandez wrote: > > Ignore my previous post, it does create a setuid bash version in /tmp/sh, the > reason it doesn't work is due to SELinux contexts. This is an important note, IM [ more ] [ reply ] Re: LAMP vs Microsoft 2006-07-12 Darren Reed (avalon caligula anu edu au) In some mail from Bob Beck, sie said: > > > > And I think vulnerabilities disclosed are a much better indicator > > of the changes to QA/development of products than any hyperbole > > from those responsible (be it management or developers.) > > No, I think vulnerabilities disclosed is simply a m [ more ] [ reply ] Kerio Terminating 'kpf4ss.exe' using internal runtime error Vulnerability 2006-07-15 David Matousek (david matousec com) Hello, I would like to inform you about a vulnerability in Sunbelt Kerio Personal Firewall found by Matousec - Transparent security. Detailed information is available here http://www.matousec.com/info/advisories/Kerio-Terminating-kpf4ss-exe-usi ng-internal-runtime-error.php -- David Matousek Foun [ more ] [ reply ] Norton Insufficient protection of Norton service registry keys 2006-07-15 David Matousek (david matousec com) Hello, I would like to inform you about a vulnerability in the driver of Norton Personal Firewall component found by Matousec - Transparent security. Detailed information is available here http://www.matousec.com/info/advisories/Norton-Insufficient-protection-o f-Norton-service-registry-keys.php -- [ more ] [ reply ] MS Power Point Multiple Vulnerabilities - (memory corruption) POC 2006-07-15 naveed (naveedafzal gmail com) /*---------------------------------------------------------------------- ------------------- * MS Power Point mem. corruption POC * try to close this file ..... * modifying some personal bytes :P :P :P * thanks to "psycho" * Tested against Power Point ' 03 * -- naveed afzal *------------------------- [ more ] [ reply ] MS Power Point Multiple Vulnerabilities - (mso.dll) POC 2006-07-15 naveed (naveedafzal gmail com) /*---------------------------------------------------------------------- ------------------- * MS Power Point mso.dll vulnerability * similar to the first one but no : we land in mso.dll * with a different situation :D :D * some greetz goes to zeeshan , salman:) * Tested against Power Point ' 03 * -- [ more ] [ reply ] MS Power Point Multiple Vulnerabilities (powerpnt.exe)- POC 2006-07-15 naveed (naveedafzal gmail com) /*---------------------------------------------------------------------- ------------------- * MS Power Point Unspecified vulnerability POC * nice SYS 49152 what about rar ? * sorry no more comments :( figure it yourself * some greetz goes to waqas :) * Tested against Power Point ' 03 * -- naveed af [ more ] [ reply ] Bybass HTTP ( extension files ) in ISA 2004 2006-07-15 medozero yahoo com hi ppl i just discover a bug in Microsoft Internet Security and Acceleration (ISA) Server which make you able to Bybass HTTP ( extension files ) just add # to the end of the file extension ex: www.site.com/file.zip# that will make you bybass the filter rule if the admin prevent you from downlaodin [ more ] [ reply ] EEYE: McAfee ePolicy Orchestrator Remote Compromise 2006-07-14 eEye Advisories (Advisories eeye com) McAfee ePolicy Orchestrator Remote Compromise Release Date: July 13, 2006 Severity: High (Remote Code Execution) Vendor: McAfee Systems Affected: McAfee Common Management (EPO) Agent versions below version 3.5.5.438 Overview: McAfee ePolicy Orchestrator is the remote security management softwar [ more ] [ reply ] Microsoft Works - Buffer Overflows / Denial of Service (DoS)-Vulnerabilities 2006-07-14 Benjamin Tobias Franz (0-1-2-3 gmx de) Microsoft Works - Buffer Overflows / Denial of Service (DoS)-Vulnerabilities ... discovered by Benjamin Tobias Franz Affected Vendor: Microsoft Affected Product: Microsoft Works Description: Microsoft Works Spreadsheet (wksss.exe) fails to handle specially crafted files. All supported file format [ more ] [ reply ] Phorum 5.1.15 security release (fixes "PHORUM 5 arbitrary local inclusion") 2006-07-14 Maurice Makaay (maurice makaay internl net) Today, Phorum 5.1.15 was released. This version of Phorum addresses a couple of security related issues: * Some minor input validation issues were fixed. These were incorrectly flagged as SQL injection vulnerabilities by some websites, probably due to automatic vulnerability checking without [ more ] [ reply ] IE <= 6 DoS vulnerability 2006-07-13 jonasschaub gmail com <!-- # Internet Explorer <= 6 DoS vulnerability # # tested IE6 on XPx64 and IE 5.1, 5.5 and 6 on XP SP2 (eng) # all versions are vulnerable # ie 7 (beta 2 and 3) are not affected # # this malicious css code freezes/ dos the internet explorer # prior version 7 and stops any user interaction [ more ] [ reply ] rPSA-2006-0122-2 kernel 2006-07-13 Justin M. Forbes (jmforbes rpath com) (1 replies) rPath Security Advisory: 2006-0122-2 Published: 2006-07-07 Updated: 2006-07-13 Upgraded to Critical status with additional information Products: rPath Linux 1 Rating: Critical Exposure Level Classification: Local Root Deterministic Privilege Escalation Updated Versions: kernel=/conary.rp [ more ] [ reply ] Linux Kernel 2.6.x PRCTL Core Dump Handling -- Simple workaround 2006-07-14 Caveo Internet BV - Security (security caveo nl) (1 replies) Re: Linux Kernel 2.6.x PRCTL Core Dump Handling -- Simple workaround 2006-07-14 Hugo van der Kooij (hvdkooij vanderkooij org) perForms <= 1.0 ([mosConfig_absolute_path]) Remote File Inclusion 2006-07-13 endeneu linuxmail com ------------------------------------------------------------------------ --- perForms <= 1.0 ([mosConfig_absolute_path]) Remote File Inclusion ------------------------------------------------------------------------ --- Remote : Yes Critical Level : High Vuln founded in a log file: lazy [ more ] [ reply ] [security bulletin] HPSBUX02120 SSRT051057 rev.2 - HP-UX Local Denial of Service (DoS) 2006-07-13 security-alert hp com -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c00676467 Version: 2 HPSBUX02120 SSRT051057 rev.2 - HP-UX Local Denial of Service (DoS) NOTICE: The information in this Security Bulletin should be acted upon as soon as possible. Release Date: [ more ] [ reply ] [ MDKSA-2006:123 ] - Updated kernel packages fixes multiple vulnerabilities 2006-07-13 security mandriva com phpbb 3.x sql injection (with global moderator rights) 2006-07-13 rgod autistici org #!/usr/bin/php -q -d short_open_tag=on <? echo "PhpBB 3 memberlist.php/'ip' argument SQL injection / admin credentials disclosure\n"; echo "by rgod rgod (at) autistici (dot) org [email concealed]\n"; echo "site: http://retrogod.altervista.org\n"; echo "dork, version specific: \"Powered by phpBB * 2002, 2006 phpBB Group\"\n [ more ] [ reply ] PHORUM 5 arbitrary local inclusion 2006-07-13 rgod autistici org #!/usr/bin/php -q -d short_open_tag=on <? echo "PHORUM 5 arbitrary local inclusion exploit\n"; echo "by rgod rgod (at) autistici (dot) org [email concealed]\n"; echo "site: http://retrogod.altervista.org\n"; echo "dork: \"This forum powered by Phorum.\"\n\n"; /* works with: register_globals=On magic_quotes_gpc=Off */ [ more ] [ reply ] |
|
Privacy Statement |
======================================
Source Code:
There is th
[ more ] [ reply ]