Computer Security
[EN] securityvulns.ru
no-pyccku



XFree XDM TCP port protection bypass
Published:06.07.2004
Source:BUGTRAQ
SecurityVulns ID:3821
Type:remote
Level:5/10
Description:XDM will open TCP sockets for its chooser, even if the DisplayManager.requestPort setting is set to 0.
Affected:XFREE : XFree86 4.6
 XORG : X11 6.7
Original documentdocumentGENTOO, [ GLSA 200407-05 ] XFree86, X.org: XDM ignores requestPort setting (06.07.2004)
Discuss:Read or add your comments to this news (0 comments)

MySQL unauthorized access
Published:06.07.2004
Source:BUGTRAQ
SecurityVulns ID:3822
Type:remote
Level:7/10
Description:During password check length of the user-supplied password is used.
Affected:MYSQL : MySQL 4.1
 MYSQL : MySQL 5.0
Original documentdocumentNGSSoftware Insight Security Research, MySQL Authentication Bypass (06.07.2004)
Files:MySQL Authentication Bypass Client Patch Proof Of Concept Exploit
Discuss:Read or add your comments to this news (0 comments)

Multiple Webmail systems crossite scripting
updated since 31.05.2004
Published:06.07.2004
Source:FULL-DISCLOSURE
SecurityVulns ID:3720
Type:remote
Level:5/10
Description:Crossite scripting via Content-Type.
Affected:SQUIRRELMAIL : SquirrelMail 1.5
 SQUIRRELMAIL : Squirrelmail 1.4
 OPENWEBMAIL : Openwebmail 2.32
 SQWEBMAIL : Sqwebmail 4.0
 HORDE : IMP 3.2
 ILOHAMAIL : IlohaMail 0.8
Original documentdocumentRoman Medina, [Full-Disclosure] RS-2004-2: "Content-Type" XSS vulnerability affecting other webmail systems (06.07.2004)
 documentA. Ramos, [openwebmail] Fw: Re: XSS bug. (05.06.2004)
 documentRoman Medina, SquirrelMail "Content-Type" XSS vulnerability (31.05.2004)
 documentRoman Medina, [Full-Disclosure] RS-2004-1: SquirrelMail "Content-Type" XSS vulnerability (31.05.2004)
Discuss:Read or add your comments to this news (0 comments)

conexant chipset ADSL modems unauthorized access
updated since 06.07.2004
Published:27.10.2004
Source:BUGTRAQ
SecurityVulns ID:3823
Type:remote
Level:5/10
Description:It's possible to manage device with built-in passord via TCP/254
Affected:ZooM : Zoom X3
 HAWKING : HAR11A
Original documentdocumentMarcus Garvey, Hawking Technologies HAR11A router considered insecure (27.10.2004)
 documentAdam Laurie, [Full-Disclosure] backdoor menu on conexant chipset dsl router (Zoom X3) (06.07.2004)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru