 |
|
|
|
| OpenSSH + OpenPAM configuration DoS | | Published: |  | 01.03.2006 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 5838 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PAM connection is not terminated if SSH connection is terminated before password validated. |
| SAP Web Application Server crossite scripting | | Published: |  | 01.03.2006 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 5844 | | Type: |  | remote | | Level: |  | 5/10 |
Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) updated since 28.02.2006 | | Published: |  | 01.03.2006 | | Source: |  | | | SecurityVulns ID: |  | 5832 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. |
| Original document |  | SECUNIA, [SA19019] StoreBot 2005 Professional Edition "Pwd" SQL Injection (01.03.2006) |
| |  | SECUNIA, [SA19060] StoreBot 2002 Standard Edition "ShipMethod" Script Insertion (01.03.2006) |
| |  | SECUNIA, [SA19039] PunBB "header.php" Cross-Site Scripting Vulnerability (01.03.2006) |
| |  | SECUNIA, [SA19061] MyBB "comma" Parameter SQL Injection Vulnerability (01.03.2006) |
| |  | SECUNIA, [SA19061] MyBB "comma" Parameter SQL Injection Vulnerability (01.03.2006) |
| |  | mail_(at)_yunusemreyilmaz.com, EJ3 TOPo - Cross Site Scripting Vulnerability (28.02.2006) |
| |  | Hessam Salehi, FarsiNews 2.5Pro Exploit (28.02.2006) |
| |  | :) :), n8cms 1.1 & 1.2 version Sql Эnjection And XSS (28.02.2006) |
| |  | SECUNIA, [SA19031] JFacets "ProfileID" Profile Change Vulnerability (28.02.2006) |
| |  | SECUNIA, [SA19044] CrossFire "oldsocketmode" Denial of Service Vulnerability (28.02.2006) |
| |  | SECUNIA, [SA19045] EKINboard Multiple Vulnerabilities (28.02.2006) |
| |  | SECUNIA, [SA19018] Issue Dealer Unpublished Content Disclosure Weakness (28.02.2006) |
| |  | SECUNIA, [SA19052] MyPHPNuke Cross-Site Scripting Vulnerabilities (28.02.2006) |
| |  | SECUNIA, [SA19023] PwsPHP "sondage" Module SQL Injection Vulnerability (28.02.2006) |
| |  | SECUNIA, [SA19026] 4images "template" Parameter File Inclusion Vulnerability (28.02.2006) |
| |  | SECUNIA, [SA19036] iGENUS Webmail File Inclusion Vulnerability (28.02.2006) |
| |  | SECUNIA, [SA19048] LanSuite LanParty Intranet System "fid" SQL Injection (28.02.2006) |
| |  | k4p0k4p0_(at)_hotmail.com, WordPress 2.0.1 Multiple Vulnerabilities (28.02.2006) |
| |  | Donato Ferrante, directory traversal in DirectContact 0.3b (28.02.2006) |
| |  | botan_(at)_linuxmail.org, PixelArtKingdom TopSites Remote Command Exucetion (28.02.2006) |
| |  | botan_(at)_linuxmail.org, Knowledgebases Remote Command Exucetion (28.02.2006) |
| |  | ISecAuditors Security Advisories, [ISecAuditors Advisories] IMAP/SMTP Injection in SquirrelMail (28.02.2006) |
| |  | Aliaksandr Hartsuyeu, [eVuln] PerlBlog Multiple Vulnerabilities (28.02.2006) |
| |  | MANDRIVA, [ MDKSA-2006:049 ] - Updated squirrelmail packages fix vulnerabilities (28.02.2006) |
| |  | revnic_(at)_gmail.com, CGI Calendar XSS Vulnerability (28.02.2006) |
| |  | s3ude_(at)_hotmail.com, 2 SQL Injection in d3jeeb (28.02.2006) |
| |  | s3ude_(at)_hotmail.com, 2 SQL Injection in Fantastic News (28.02.2006) |
| |  | JeiAr, phpRPC Library Remote Code Execution (28.02.2006) |
| |  | Aliaksandr Hartsuyeu, [eVuln] Quirex Arbitrary File Disclosure Vulnerability (28.02.2006) |
| |  | kingofska_(at)_gmail.com, Archangel Weblog 0.90.02 Admin Authentication Bypass & Remote File Inclusion (28.02.2006) |
| gettext symbolic links problem | | Published: |  | 01.03.2006 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 5842 | | Type: |  | local | | Level: |  | 5/10 | | Description: |  | autopoint and gettextize scripts insecure temporary files creation. |
| NetworkActiv Web Server script source code leak | | Published: |  | 01.03.2006 | | Source: |  | FULL-DISCLOSURE | | SecurityVulns ID: |  | 5843 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | Invalid processing of requests with forward slash character. |
| Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) | | Published: |  | 01.03.2006 | | Source: |  | | | SecurityVulns ID: |  | 5839 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. |
mb_send_mail() PHP safe mode protection bypass updated since 28.02.2006 | | Published: |  | 01.03.2006 | | Source: |  | SECUNIA | | SecurityVulns ID: |  | 5836 | | Type: |  | local | | Level: |  | 6/10 | | Description: |  | mb_send_mail() and imap_* unfctions allow to access system files. |
FreeBSD bfsd DoS updated since 28.02.2006 | | Published: |  | 01.03.2006 | | Source: |  | SECUNIA | | SecurityVulns ID: |  | 5834 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | Malcrafted NFS bind request to TCP/2049 causes kernel panic. |
| McAfee Virex antivirus protection bypass | | Published: |  | 01.03.2006 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 5840 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | On access scan doesn't function. |
| M4 Project enigma-suite unauthorized access | | Published: |  | 01.03.2006 | | Source: |  | SECUNIA | | SecurityVulns ID: |  | 5845 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | "enigma-client" / "nominal" system account is created dusring installation. |
Lighttpd web server source code disclosure updated since 16.02.2006 | | Published: |  | 01.03.2006 | | Source: |  | SECUNIA | | SecurityVulns ID: |  | 5784 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | Source code leak on case-insensitive file systems. |
DoS против HP ProCurve updated since 01.03.2002 | | Published: |  | 01.03.2006 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 1826 | | Type: |  | remote | | Level: |  | 5/10 | | Описание: |  | До полной установки TCP-соединения не принимаются другие TCP-соединения. |
HP System Management Homepage unauthorized access updated since 01.03.2006 | | Published: |  | 12.04.2006 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 5841 | | Type: |  | remote | | Level: |  | 6/10 |
|
|
|
|
|
|
|
|