Computer Security
[EN] securityvulns.ru
no-pyccku



Mozilla XUL interface spoofing
Published:02.08.2004
Source:ATHIAS
SecurityVulns ID:3876
Type:client
Level:5/10
Description:By using XML based language it's possible to spoof browser interface.
Affected:MOZILLA : Firefox 0.9
Original documentdocumentJérôme ATHIAS, Mozilla Firefox 0.9.X XUL spoofing vulnerability (02.08.2004)
Discuss:Read or add your comments to this news (0 comments)

Multiple Internet Explorer vulnerabilities
Published:02.08.2004
Source:MICROSOFT
SecurityVulns ID:3877
Type:client
Level:7/10
Description:Integer overflow on .BMP parsing, double free() on GIF parsing, new ms-its: vulnerability variant.
Affected:MICROSOFT : Internet Explorer 5.5
 MICROSOFT : Internet Explorer 6.0
Original documentdocumentCERT, US-CERT Technical Cyber Security Alert TA04-212A -- Critical Vulnerabilities in Microsoft Windows (02.08.2004)
 documentMICROSOFT, Microsoft Security Bulletin MS04-025 Cumulative Security Update for Internet Explorer (867801) (02.08.2004)
Files:New Internet Explorer crossite scripting problems
Discuss:Read or add your comments to this news (0 comments)

Citadel/UX buffer overflow
Published:02.08.2004
Source:BUGTRAQ
SecurityVulns ID:3879
Type:remote
Level:6/10
Description:Stack overflow on oversized USER command to citadel (TCP/504) port.
Affected:CITADEL : Citadel/UX 6.23
Original documentdocumentCoKi, Citadel/UX Remote DoS Vulnerability (02.08.2004)
Files:Citadel/UX Remote Buffer Overflow Exploit
Discuss:Read or add your comments to this news (0 comments)

UnixWare/OpenServer/Open Unix XSco buffer overflow
Published:02.08.2004
Source:BUGTRAQ
SecurityVulns ID:3880
Type:local
Level:6/10
Description:Buffer overflow on fonts aliases reading.
Affected:SCO : OpenServer 5.0
 SCO : UnixWare 7.1
 SCO : Open UNIX 8.0
Original documentdocumentSCO, OpenServer 5.0.6 OpenServer 5.0.7 : Xsco contains a buffer overflow that could be exploited to gain root privileges. (02.08.2004)
 documentSCO, UnixWare 7.1.3 Open UNIX 8.0.0 : Xsco contains a buffer overflow that could be exploited to gain root privileges. (02.08.2004)
Discuss:Read or add your comments to this news (0 comments)

Windows XP/Windows 2003 DoS
Published:02.08.2004
Source:FULL-DISCLOSURE
SecurityVulns ID:3881
Type:remote
Level:5/10
Description:Flood with WinKey+U from consoles or via RDP before logon causes memory exhaustion.
Affected:MICROSOFT : Windows XP
 MICROSOFT : Windows 2003 Server
Original documentdocumentNick Lowe, [Full-Disclosure] Remotely Exploitable DoS Flaw in XP and 2003 (02.08.2004)
Discuss:Read or add your comments to this news (0 comments)

MailEnable HTTPMail buffer overflow
Published:02.08.2004
Source:FULL-DISCLOSURE
SecurityVulns ID:3882
Type:remote
Level:5/10
Description:Buffer overflow on oversized Content-Length.
Original documentdocumentCoolICE, [Full-Disclosure] DOS@MEHTTPS (02.08.2004)
Files:MailEnable Professional HTTPMail DoS PoC
Discuss:Read or add your comments to this news (0 comments)

Webbsyte Chat DoS
Published:02.08.2004
Source:BUGTRAQ
SecurityVulns ID:3883
Type:remote
Level:5/10
Description:DoS on large number of connections.
Affected:WCHAT : Webbsyte Chat 0.9
Original documentdocumentDonato Ferrante, [Full-Disclosure] DoS in Webbsyte Chat 0.9.0 (02.08.2004)
Discuss:Read or add your comments to this news (0 comments)

CGI bugs
updated since 02.08.2004
Published:06.08.2004
Source:
SecurityVulns ID:3878
Type:remote
Level:5/10
Affected:FUSIONPHP : Fusion News 3.6
 COMERSUS : Comersus ASP Shopping Cart 5.09
 WHMAUTOPILOT : WHM AutoPilot 2.4
 WIREPLASTIK : WpQuiz 2.60
 JETBOXONE : JetboxOne 2.0
 GOSCRIPT : GoScript 2.0
 ENDONESIA : eNdonesia 8.3
 FREEWEBCHAT : Free Web Chat
 CVSTRAC : CVSTrac 1.1
Original documentdocumentOpenPKG, [Full-Disclosure] [OpenPKG-SA-2004.036] OpenPKG Security Advisory (cvstrac) (06.08.2004)
 documentRichard Ngo, CVStrac Remote Arbitrary Code Execution exploit (06.08.2004)
 documentDonato Ferrante, Multiple Vulnerabilities in Free Web Chat (06.08.2004)
 documentahmad muammar, Multiple vulnerabilities in eNdonesia CMS (05.08.2004)
 documentFrancisco Alisson, GoScript Remote Command Execution (05.08.2004)
 documentahmad muammar, vulnerabilities in JetboxOne CMS (05.08.2004)
 documentAbdul Azis, Comersus 5.098 XSS Vulnerable (03.08.2004)
 documentJoseph Moniz, Fusion News Yet Another Unauthorized Account Addition Vulnerability (02.08.2004)
 documentjonathan tough, WpQuiz Gain Admin Rightd Exploit found (02.08.2004)
 documentMS Blows, [Full-Disclosure] Benchmark Designs' WHM Autopilot backdoor vulnerability to plain-text password. (02.08.2004)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server