Computer Security
[EN] securityvulns.ru
no-pyccku



JDownloader download manager code execution
Published:09.02.2010
Source:BUGTRAQ
SecurityVulns ID:10597
Type:client
Level:6/10
Description:TCP/9666 port HTTP interface used for application management is vulnerable to form redirection attacks.
Affected:JDOWNLOADER : JDownloader 0.9
Original documentdocumentMatthias -apoc- Hecker, JDownloader Remote Code Execution (09.02.2010)
Discuss:Read or add your comments to this news (0 comments)

Clearweb GeFest Web HomeServer directory traversal
Published:09.02.2010
Source:BUGTRAQ
SecurityVulns ID:10599
Type:remote
Level:5/10
Description:It's possible to access files behind web root.
Affected:CLEARWEB : GeFest Web HomeServer 1.0
Original documentdocumentsecurity_(at)_corelan.be, CORELAN-10-010 - GeFest Web HomeServer v1.0 Remote Directory Traversal Vulnerability (09.02.2010)
Discuss:Read or add your comments to this news (0 comments)

Multiple Web servers information leak
Published:09.02.2010
Source:BUGTRAQ
SecurityVulns ID:10598
Type:remote
Level:7/10
Description:It's possible to access script sources and/or bypass access restrictions by using Windows 8.3 filenames and space characters.
Affected:CHEROKEE : Cherokee 0.99
 NGINX : Nginx Web Server 0.7
 NGINX : Nginx Web Server 0.8
 MONGOOSE : Mongoose 2.8
 WLMP : WLMP 1.1
Original documentdocumentinfo_(at)_securitylab.ir, mongoose Space Character Remote File Disclosure Vulnerability (09.02.2010)
 documentCORE SECURITY TECHNOLOGIES ADVISORIES, [CORE-2010-0121] Multiple Vulnerabilities with 8.3 Filename Pseudonyms in Web Servers (09.02.2010)
Discuss:Read or add your comments to this news (0 comments)

TVUPlayer ActiveX code execution
Published:09.02.2010
Source:BUGTRAQ
SecurityVulns ID:10600
Type:remote
Level:5/10
Description:Insecure method allows local files access.
Affected:TVUNETWORKS : TVUPlayer 2.4
Original documentdocumentAlexandr Polyakov, [DSECRG-09-065] TVUPlayer PlayerOcx.ocx ActiveX - Insecure method (09.02.2010)
Discuss:Read or add your comments to this news (0 comments)

Microsoft Windows TCP/IP and TCP/IPv6 multiple security vulnerabilities
updated since 09.02.2010
Published:10.02.2010
Source:MICROSOFT
SecurityVulns ID:10601
Type:remote
Level:9/10
Description:Multiple memory corruptions in ICMPv6, IPSec, TCP implementations.
Affected:MICROSOFT : Windows Vista
 MICROSOFT : Windows 2008 Server
CVE:CVE-2010-0242
 CVE-2010-0241
 CVE-2010-0240
 CVE-2010-0239
Original documentdocumentMICROSOFT, Microsoft Security Bulletin MS10-009 - Critical Vulnerabilities in Windows TCP/IP Could Allow Remote Code Execution (974145) (09.02.2010)
Files:Microsoft Security Bulletin MS10-009 - Critical Vulnerabilities in Windows TCP/IP Could Allow Remote Code Execution (974145)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 



Rating@Mail.ru