BugTraq Mode:
(Page 1425 of 1748)  < Prev  1420 1421 1422 1423 1424 1425 1426 1427 1428 1429 1430  Next >
[ GLSA 200411-19 ] Pavuk: Multiple buffer overflows 2004-11-10
Luke Macken (lewk gentoo org)
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Gentoo Linux Security Advisory GLSA 200411-19
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
http://security.gentoo.org/
- - - - - -

[ more ]  [ reply ]
security hole (http response splitting) in phpwebsite 2004-11-11
Maestro De-Seguridad (maestrodeseguridad lycos com)
ADVISORY

Author: Maestro (me!)

Date: 11-NOV-04

Vendor: Appalachian State University (http://phpwebsite.appstate.edu/)

Product: phpWebSite 0.9.3-4

Product description (from vendor website):
phpWebSite provides a complete web site content management system. Web-based administration allows for

[ more ]  [ reply ]
Zone Labs IMsecure Active Link Filter Bypass 2004-11-11
Kurczaba Associates advisories (advisories kurczaba com)
Zone Labs IMsecure Active Link Filter Bypass
http://www.kurczaba.com/html/security/0410141.htm
-------------------------------------------------

Overview:
A vulnerability has been discovered in the Zone Labs IMsecure Active Link Filter

Vendor:
Zone Labs (http://www.zonelabs.com)

Affected Systems/

[ more ]  [ reply ]
[waraxe-2004-SA#037 - Sql injection bug in Phorum 5.0.12 and older versions] 2004-11-12
Janek Vind (come2waraxe yahoo com)


{=======================================================================
=========}

{ [waraxe-2004-SA#037] }

{=======================================================================
=========}

{

[ more ]  [ reply ]
[CLA-2004:889] Conectiva Security Announcement - sasl2 2004-11-11
Conectiva Updates (secure conectiva com br)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
--
CONECTIVA LINUX SECURITY ANNOUNCEMENT
- ------------------------------------------------------------------------
--

PACKAGE : sasl2
SUMMARY : Fix for buffer overflow vulne

[ more ]  [ reply ]
Cisco Security Advisory: Crafted Timed Attack Evades Cisco Security Agent Protections 2004-11-11
Cisco Systems Product Security Incident Response Team (psirt cisco com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Cisco Security Advisory:
========================
Crafted Timed Attack Evades Cisco Security Agent Protections
============================================================

Document ID: 63326

Revision 1.0: FINAL

For Public Release 2004 November 11 1

[ more ]  [ reply ]
[ GLSA 200411-20 ] ez-ipupdate: Format string vulnerability 2004-11-11
Sune Kloppenborg Jeppesen (jaervosz gentoo org)
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Gentoo Linux Security Advisory GLSA 200411-20
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
http://security.gentoo.org/
- - - - - -

[ more ]  [ reply ]
SQL injection in vBulletin forums (last10.php) 2004-11-11
Dr. Death (drdeath4ever hotmail com)
hi all,

a new SQL injection found in VBulletin Forums 3.0.x

the Vulnerabilite found in last.php, last 10 topics hack.

last.php?fsel=,user.password%20as%20title,user.%20
%20%20%20username%20as%20lastposter%20FROM%20user,
thread%20%20%20%20%20WHERE%20usergroupid=6%20LIMIT %201

to solve the prob

[ more ]  [ reply ]
Hotfoon Ver 4.0 Highv Risk 2004-11-10
saudi linux (ksa2ksa yahoo com)


What is Hotfoon?

Hotfoon is a new type of Internet telephony that is very inexpensive, easy to setup and use.

Hotfoon's current service enables you to:

Make long distance calls at near local rates.

Talk to other Hotfoon users for free.

Ver:4.0

APP web site :http://www.hotfoon.com/

[ more ]  [ reply ]
Re: Nortel Networks Contivity VPN Client information leakage vulnerability 2004-11-10
Quincy Jackson (qjacks0n yahoo com)
> IV. Solution
> This issue is resolved in Contivity VPN Client for
Windows V5.01_030

Obviously this can't be fixed by changing the client
software. The full advisory makes it clear that an
attacker willing to reverse engineer the proprietary
hash used to obscure usernames in Nortel's software
cou

[ more ]  [ reply ]
Unsecure Ftpd on HP PSC 2510 Printer 2004-11-10
Justin Rush (jrush scout wisc edu)
Product Name: HP PSC 2510
Summary: Ftp print service is not configurable

This printer comes with an ftp daemon which allows anonymous
access, and drops the user into a write only directory. By default
anyone from anywhere can drop a file into this directory and the
printer will print the document

[ more ]  [ reply ]
04WebServer Three Vulnerabilities 2004-11-10
Jérôme ATHIAS (jerome athias fr)


Summary

04WebServer is a HTTP server developed by Soft3304 for Windows platforms. It is an easy-to-configure personal HTTP server that supports CGI, SSI, WebDAV and SSL/TLS. This advisory documents three vulnerabilities that were found in version 1.42 of 04WebServer.

Tested System

04W

[ more ]  [ reply ]
Security Contact Info for IPSWITCH 2004-11-10
Tom (tommy providesecurity com)
Anyone have the Security Contact Info for Ipswitch?
If you dont own the product, support wont guide you in the right direction.

Thanks,

Tom

[ more ]  [ reply ]
BNC 2.8.9 remote buffer overflow 2004-11-10
LSS Security (exposed lss hr)


LSS Security Advisory #LSS-2004-11-3
http://security.lss.hr

---

Title : BNC 2.8.9 remote buffer overflow
Advisory ID : LSS-2004-11-3
Date : November 10th, 2004
Advisory URL: : http://security.lss.hr/en/index.php?page=details&ID=LSS-2004-11-03
Impact : Remot

[ more ]  [ reply ]
Nortel Networks Contivity VPN Client information leakage vulnerability 2004-11-10
Network Intelligence (I) Pvt. Ltd. (info nii co in)
Name: User Account Enumeration in Nortel Contivity VPN
Vendor: Nortel Networks
Products Affected: Nortel Networks Contivity VPN Client
Type: Remote User Account Enumeration
Severity: Medium

I. Overview
The Nortel Networks Contivity VPN Client authentication error message
provides more information t

[ more ]  [ reply ]
Cisco Security Advisory: Cisco IOS DHCP Blocked Interface Denial-of-Service 2004-11-10
Cisco Systems Product Security Incident Response Team (psirt cisco com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Cisco Security Advisory: Cisco IOS DHCP Blocked Interface Denial-of-Service
========================================================================
=======

Revision 1.0

For Public Release 2004 November 10 1700 UTC (GMT)

- ----------------------------

[ more ]  [ reply ]
[SquirrelMail Security Advisory] Cross Site Scripting in encoded text 2004-11-10
Jonathan Angliss (jon squirrelmail org)
SquirrelMail Security Notice
============================

About
-----
SquirrelMail is a standards-based webmail package written in PHP4. It
includes built-in pure PHP support for the IMAP and SMTP protocols,
and all pages render in pure HTML 4.0 (with no JavaScript required)
for maximum compatibili

[ more ]  [ reply ]
Multiple Vulnerabilities in WebCalendar 2004-11-09
Joxean Koret (joxeankoret yahoo es)


------------------------------------------------------------------------
---

Multiple Vulnerabilities in WebCalendar

------------------------------------------------------------------------
---

Author: Jose Antonio Coret (Joxean Koret)

Date: 2004

Location: Basque Country

[ more ]  [ reply ]
Linux ELF loader vulnerabilities 2004-11-10
Paul Starzetz (ihaquer isec pl) (2 replies)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Synopsis: Linux kernel binfmt_elf loader vulnerabilities
Product: Linux kernel
Version: 2.4 up to to and including 2.4.27, 2.6 up to to and
including 2.6.8
Vendor: http://www.kernel.org/
URL: http://isec.pl/vulnerabilities/isec

[ more ]  [ reply ]
Re: Linux ELF loader vulnerabilities 2004-11-11
Pavel Kankovsky (peak argo troja mff cuni cz)
Re: Linux ELF loader vulnerabilities 2004-11-11
Ted Percival (ted mrphp com au) (1 replies)
Re: [Full-Disclosure] Re: Linux ELF loader vulnerabilities 2004-11-11
Jirka Kosina (jikos jikos cz)
[ GLSA 200411-16 ] zip: Path name buffer overflow 2004-11-09
Sune Kloppenborg Jeppesen (jaervosz gentoo org)
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Gentoo Linux Security Advisory GLSA 200411-16
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
http://security.gentoo.org/
- - - - - -

[ more ]  [ reply ]
(Page 1425 of 1748)  < Prev  1420 1421 1422 1423 1424 1425 1426 1427 1428 1429 1430  Next >


 

Privacy Statement
Copyright 2010, SecurityFocus