Computer Security
[EN] securityvulns.ru no-pyccku


BlooMooWeb ActiveX unauthorized access
Published:01.11.2006
Source:
SecurityVulns ID:6757
Type:remote
Threat Level:
5/10
Description:Control has unsafe functions.
Affected:BLOOMOOWEB : BlooMooWeb 1.0
Original documentdocumentmaxgipeh_(at)_yahoo.com, ActiveX security leaks in the TV owned web game platform (01.11.2006)

Hawking Technology WR254-CA wireless routers hardcoded DNS server address
Published:01.11.2006
Source:
SecurityVulns ID:6758
Type:remote
Threat Level:
4/10
Description:139.175.55.244 DNS address is hardcoded.
Affected:HAWKING : WR254-CA
Original documentdocumentNikolai Grigoriev, Hawking Technology wireless router WR254-CA DNS issue (01.11.2006)

B-FOCuS Wireless routers unauthorized access
Published:01.11.2006
Source:
SecurityVulns ID:6760
Type:remote
Threat Level:
5/10
Description:It's possible to access router's internal information with URL like http://target/html/defs/.
Original documentdocumentLegendaryZion, Directory listing on B-FOCuS Wireless 802.11b/g ADSL2+ Router by "ECI Telecom LTD" (01.11.2006)

Novell iManager DoS
Published:01.11.2006
Source:
SecurityVulns ID:6761
Type:remote
Threat Level:
5/10
Description:Oversized TREE parameter of HTTP POST request causes NULL pointer dereference.
Affected:NOVELL : iManager 2.5
Original documentdocumentIDEFENSE, iDefense Security Advisory 10.31.06: Novell iManager Tomcat DoS Vulnerability (01.11.2006)

Novell eDirectory DoS
Published:01.11.2006
Source:
SecurityVulns ID:6762
Type:remote
Threat Level:
5/10
Description:Service crash on malformed login request.
Affected:NOVELL : eDirectory 8.8
Original documentdocumentIDEFENSE, iDefense Security Advisory 10.27.06: Novell eDirectory NMAS BerDecodeLoginDataRequeset DoS Vulnerability (01.11.2006)

Multiple Asterisk security vulnerabilities
Published:01.11.2006
Source:
SecurityVulns ID:6763
Type:remote
Threat Level:
5/10
Description:Different malcrafted packets sequences cause service to crash.
Affected:ASTERISK : Asterisk 1.2
Original documentdocumentJ. Oquendo, [Full-disclosure] Asterisk Local and Remote Denial of Service Vulnerability (01.11.2006)
Files:Asteroid is a lame SIP denial of service attack

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod