 |
|
|
|
| Airdesense Airsensor M520 multiple security vulnerabilites | | Published: |  | 01.10.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8202 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | DoS and buffer overflow. |
| Promise NAS NS4300N superuser access protection bypass | | Published: |  | 01.10.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8199 | | Type: |  | remote | | Level: |  | 3/10 | | Description: |  | It's possible to bypass resttrictions for direct remote root access. |
| Ruby Net::HTTPS library certificates validation cryptographic vulnerability | | Published: |  | 01.10.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8200 | | Type: |  | library | | Level: |  | 6/10 | | Description: |  | Certificate's CN field is not validated against DNS name, making it's possible to use valid certificate with wrong CN. |
| Affected: |  | RUBY : ruby 1.8 | | CVE: |  | CVE-2007-5770 | | |  | CVE-2007-5162 (The connect method in lib/net/http.rb in the (1) Net::HTTP and (2) Net::HTTPS libraries in Ruby 1.8.5 and 1.8.6 does not verify that the commonName (CN) field in a server certificate matches the domain name in an HTTPS request, which makes it easier for remote attackers to intercept SSL transmissions via a man-in-the-middle attack or spoofed web site.) |
Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) updated since 01.10.2007 | | Published: |  | 01.10.2007 | | Source: |  | | | SecurityVulns ID: |  | 8198 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. |
| Axis IP cameras crossite scripting | | Published: |  | 01.10.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8201 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | It's possible to spoof video content by using crossite scripting attacks. |
| Cisco Catalist loopback address access protection bypass | | Published: |  | 01.10.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8203 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | SNMP access by address 127.0.0.x is possible, making it possible to bypass IP filtering. |
|
|
|
|
|
|
|
|