 |
|
|
|
28.09.2007 Detailed | |
| | 8! | Multiple OpenSSL security vulnerabilities updated since 29.09.2006
|  | | Multiple DoS conditions in server and client functions, SSL_get_shared_ciphers() buffer overflow. |
| | Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) updated since 28.09.2007
|  | | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. |
| | Linux kernel JFFS2 filesystem permissions vulnerability
|  | | New permissions are not saved to media, cause the use of older permissions on media remount. |
| | |
|
24.09.2007 Detailed | |
| | 7! | CA ARCServe Backup multiple security vulnerabilities
|  | | Authentication bypass, multiple buffer overflows TCP/1900. |
| 6! | ImageMagic multiple security vulnerabilities
|  | | Multiple vulnerabilities on BMP, DCM and another graphics formats parsing. |
| | Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)
|  | | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. |
|
| | PHP safemode bypass
|  | | By using LOAD_FILE, INTO DUMPFILE, INTO OUTFILE SQL modifiers it's possible to access files behind basedir. |
|
| 6! | PHP multiple DoS conditions updated since 06.09.2007
|  | | Crash on oversized strings in fnmatch(), iconv_substr(), glob() and setlocale() functions. |
|
04.09.2007 Detailed | |
| | 6! | Mailmarshal mail gateway directory traversal
|  | | Vulnerable outdated ported version of 'tar' utility is used, making it's possible to overwrite system files via directory traversal vulnerability. |
| | Tor cross application scripting
|  | | Cross applicaiton scripting via Tor proxy erro message. |
| | Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)
|  | | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. |
|
|
|
|
|
|
|
|
|