BugTraq Mode:
(Page 1147 of 1748)  < Prev  1142 1143 1144 1145 1146 1147 1148 1149 1150 1151 1152  Next >
[FLSA-2006:164512] Updated fetchmail packages fix security issues 2006-05-13
Marc Deslauriers (marcdeslauriers videotron ca)
---------------------------------------------------------------------
Fedora Legacy Update Advisory

Synopsis: Updated fetchmail packages fix security issues
Advisory ID: FLSA:164512
Issue date: 2006-05-12
Product: Red Hat Linux, Fedora Core
Keywords:

[ more ]  [ reply ]
Server crash in Empire 4.3.2 2006-05-12
Luigi Auriemma (aluigi autistici org)

#######################################################################

Luigi Auriemma

Application: Empire
http://www.wolfpackempire.com
http://sourceforge.net/projects/empserver
Versions: <= 4.3.2
Platforms: Windows, *nix, *BSD and

[ more ]  [ reply ]
SQL-Injection in e107 allows attacker to become a site admininstrator 2006-05-13
socsam linuxmail org
Software: e107 (CMS)

Versions: <= 0.7.2

Type: SQL-injection

Homepage: www.e107.org

Description:

----------------------------

SQL-Injection in e107 allows attacker to become a site admininstrator.

Requirements:

----------------------------

Magic_quotes_gpc = Off

[ more ]  [ reply ]
Gphotos Directory Traversal and Cross Site Scripting 2006-05-13
doz bsdmail com
Details

The first vulnerability issue is due to an input validation error in "index.php" "diapo.php" and "affich.php" scripts that do not validate "rep","image" variables, which may be exploited to cross site scripting attacks.

http://traget/index.php?rep=[xss]

http://traget/diapo.php?rep=[

[ more ]  [ reply ]
[FLSA-2006:152923] Updated xloadimage package fixes security issues 2006-05-13
Marc Deslauriers (marcdeslauriers videotron ca)
---------------------------------------------------------------------
Fedora Legacy Update Advisory

Synopsis: Updated xloadimage package fixes security issues
Advisory ID: FLSA:152923
Issue date: 2006-05-12
Product: Red Hat Linux, Fedora Core
Keywords:

[ more ]  [ reply ]
RE: How secure is software X? 2006-05-12
Ferguson, Justin (IARC) (FergusonJ nv doe gov) (1 replies)
David,

One thing you have to keep in mind is that a lot of things are incredibly
variable when dealing with this subject. For instance, suppose you want to
ensure that the URI in a web server is not overflowable. So you test with
something like

GET /[AAAAAAAAA x 4096] HTTP/1.1
Host: foobar.com
Con

[ more ]  [ reply ]
Re: How secure is software X? 2006-05-13
David Litchfield (davidl ngssoftware com)
Socket unreachable in GNUnet rev 2780 2006-05-12
Luigi Auriemma (aluigi autistici org)

#######################################################################

Luigi Auriemma

Application: GNUnet
http://www.gnunet.org
Versions: <= 0.7.0d and revision 2780
Platforms: Windows, *nix, *BSD, Mac and more
Bug: UDP socket unreachab

[ more ]  [ reply ]
Multiple vulnerabilities in Outgun 1.0.3 bot 2 2006-05-12
Luigi Auriemma (aluigi autistici org)

#######################################################################

Luigi Auriemma

Application: Outgun
http://koti.mbnet.fi/outgun/
Versions: <= 1.0.3 bot 2
Platforms: Windows, *nix, *BSD and more
Bugs: A] data_file_request buffer-ove

[ more ]  [ reply ]
[FLSA-2006:185355] Updated gnupg package fixes security issues 2006-05-13
Marc Deslauriers (marcdeslauriers videotron ca)
---------------------------------------------------------------------
Fedora Legacy Update Advisory

Synopsis: Updated gnupg package fixes security issues
Advisory ID: FLSA:185355
Issue date: 2006-05-12
Product: Red Hat Linux, Fedora Core
Keywords:

[ more ]  [ reply ]
Multiple vulnerabilities in Raydium rev 309 2006-05-12
Luigi Auriemma (aluigi autistici org)

#######################################################################

Luigi Auriemma

Application: Raydium
http://raydium.org
Versions: <= SVN revision 309
(newer versions can be vulnerable to some of the bugs
which are

[ more ]  [ reply ]
Buffer-overflow and NULL pointer crash in Genecys 0.2 2006-05-12
Luigi Auriemma (aluigi autistici org)

#######################################################################

Luigi Auriemma

Application: Genecys
http://www.genecys.org
Versions: <= 0.2 and current CVS
Platforms: *nix and *BSD
Bugs: A] tell_player_surr_changes buffer-overflow

[ more ]  [ reply ]
[FLSA-2006:152898] Updated emacs packages fix a security issue 2006-05-13
Marc Deslauriers (marcdeslauriers videotron ca)
---------------------------------------------------------------------
Fedora Legacy Update Advisory

Synopsis: Updated emacs packages fix a security issue
Advisory ID: FLSA:152898
Issue date: 2006-05-12
Product: Red Hat Linux, Fedora Core
Keywords:

[ more ]  [ reply ]
[FLSA-2006:152904] Updated ncpfs package fixes security issues 2006-05-13
Marc Deslauriers (marcdeslauriers videotron ca)
---------------------------------------------------------------------
Fedora Legacy Update Advisory

Synopsis: Updated ncpfs package fixes security issues
Advisory ID: FLSA:152904
Issue date: 2006-05-12
Product: Red Hat Linux, Fedora Core
Keywords:

[ more ]  [ reply ]
[FLSA-2006:152868] Updated tetex packages fix security issues 2006-05-13
Marc Deslauriers (marcdeslauriers videotron ca)
---------------------------------------------------------------------
Fedora Legacy Update Advisory

Synopsis: Updated tetex packages fix security issues
Advisory ID: FLSA:152868
Issue date: 2006-05-12
Product: Red Hat Linux, Fedora Core
Keywords:

[ more ]  [ reply ]
Re: Firefox 1.5.0.3 - DoS 2006-05-10
marrob interfree it
ROTFL ! Wonderful Italian *Haccher* !!

*Only* 3 (I say three) years this bug is known.

https://bugzilla.mozilla.org/show_bug.cgi?id=181860

Do you know this guy, P4 ? NO ?! A stroke of luck!

[ more ]  [ reply ]
# MHG Security Team --- Gallery Upload Vulnerabilities 2006-05-10
Dj_ReMix_20 hotmail com
# Milli-Harekat Advisory ( www.milli-harekat.org )

# Gallery Upload Vulnerabilities

# Risk : High

# Class: Remote

# Script : Gallery Scripts

# Credits : Dj ReMix

# Thanks : ßy Korsan , Liz0zim ,ESOBAR, PoizinBo0x ,TR_IP ,ERNE ,CyberWolf...

# Vulnerable Scripts :

DUGallery v1.

[ more ]  [ reply ]
PHP Live Helper ASP(chat.php) XSS 2006-05-12
mster-X hotmail com
==================

Credit: Mr-X

Site: www.alshmokh.com

Email: Mster-X (at) hotmail (dot) com [email concealed]

==================

Example:-

/chat.php?action=showmain&PHPSESSID=XSS

[ more ]  [ reply ]
Dovecot IMAP: Mailbox names list disclosure with mboxes 2006-05-12
Timo Sirainen (tss iki fi)
Giving "1 LIST .. *" IMAP command allows the user to see all files and
directories under the mbox root's parent directory, so potentially you
could see other users' mailbox names. Nothing can be done with them
though, so it's not possible to read or modify them.

There are also some other less than

[ more ]  [ reply ]
SEC Consult SA-20060512-0 :: Symantec Enterprise Firewall NAT/HTTP Proxy Private IP Exposure 2006-05-12
Bernhard Mueller (research sec-consult com)
SEC Consult Security Advisory 20060512-0
==============================================================
title: Symantec Enterprise Firewall NAT/HTTP
Proxy Private IP Exposure
program: Symantec Enterprise FW
vulnerable version: 8.0

[ more ]  [ reply ]
Re: IGNORING SSH CONNECTION USES ARP CACHE POISSONING 2006-05-11
king_purba yahoo co uk
Hii, i'm king_purba,

Sorry, i made miss analysis on ssh case

All connection trough IP will die caused

by ARP cache poissoning, this isn't ssh problem

since the goal of attack is IP.

regards

[ more ]  [ reply ]
Re: Re: Phil's Bookmark script admin By-pass 2006-05-09
theproffx gmail com
Yes, there really is a issue here. If you take

time and don't just look at the first 2-3 pages

in google.

Phil's Bookmark is a bookmark script.

[ more ]  [ reply ]
Dokeos LDAP hole fixed 2006-05-12
thomas depraetere dokeos com
THere was a LDAP backdoor security hole in Dokeos last week. Dokeos has released a patch for this : http://www.dokeos.com/download/dokeos-1.6.4-patch1.zip

Thomas De Praetere

DOKEOS

[ more ]  [ reply ]
PHPBB 2.0.20 persistent issues with avatars 2006-05-12
rgod autistici org
PHPBB 2.0.20 multiple issues with avatars

some problems persistently lie in the way it handles remote and uploaded avatars:

a remote user can:

(1) saturate the server with unuseful files, 'cause phpbb do not delete

the previous one when you upload a new avatar

(2) use PhpBB installatio

[ more ]  [ reply ]
(Page 1147 of 1748)  < Prev  1142 1143 1144 1145 1146 1147 1148 1149 1150 1151 1152  Next >


 

Privacy Statement
Copyright 2010, SecurityFocus