Computer Security
[EN] securityvulns.ru
no-pyccku



CGI bugs
updated since 03.03.2003
Published:09.03.2003
Source:BUGTRAQ
SecurityVulns ID:2628
Type:remote
Level:5/10
Affected:PHPNUKE : PHP-Nuke 6.0
 3D3 : ShopFactory 5.8
 PY : PY-Livredor 1.0
 WEBERP : web-erp 0.1
 TYPO3 : TYPO3 3.5
 CGI : uploader.php
 PHPAPPS : PHP Ping 0.1
 WORDIT : Wordit Limited 2000
 SIMPLEBBS : SimpleBBS 1.0
 UPLOADLITE : Upload Lite 3.22
Original documentdocumentSil, Vulnerability in Upload Lite 3.22 that could allow somebody to upload/execute code on a remote host. (09.03.2003)
 documentflur, SimpleBBS 1.0.6 Default Permissions Vuln (09.03.2003)
 documentAleksey Sintsov, Wordit Logbook Version 0.98b3 (07.03.2003)
 documentfrog frog, PHP-Nuke 6.0 (& 6.5?) : Serious SQL Injection Security Holes (06.03.2003)
 documentGrégory Le Bras | Security Corporation, [SCSA-009] Remote Command Execution Vulnerability in PHP Ping (06.03.2003)
 documentMaarten, shopfactory shopping cart (06.03.2003)
 documentkingcope_(at)_gmx.net, uploader.php vulnerability (04.03.2003)
 documentMartin Eiszner, typo3 issues (04.03.2003)
 documentMartin Eiszner, typo3 issues (03.03.2003)
 documentRyan Fox, web-erp 0.1.4 database access vulnerability (03.03.2003)
 documentfrog frog, WebChat (PHP) (03.03.2003)
 documentGrégory Le Bras | Security Corporation, [SCSA-008] Cross Site Scripting & Script Injection Vulnerability in PY-Livredor (03.03.2003)
Files:typo 3 exploit
 typo 3 exploit
Discuss:Read or add your comments to this news (0 comments)

MySQL privelege escalation
Published:09.03.2003
Source:BUGTRAQ
SecurityVulns ID:2640
Type:local
Level:5/10
Description:By spoofing datadir/my.cnf with SELECT INTO it's possible to launch MySQL with any account, including root.
Affected:MYSQL : MySQL 3.23
Original documentdocumentbugsman_(at)_libero.it, MySQL user can be changed to root (09.03.2003)
Discuss:Read or add your comments to this news (0 comments)

SQLBase buffer overflow
updated since 11.02.2003
Published:09.03.2003
Source:BUGTRAQ
SecurityVulns ID:2582
Type:local
Level:5/10
Description:EXECUTE command buffer overflow.
Affected:GUPTA : SQLBase 8.1
Original documentdocumentNetwork Intelligence India Pvt. Ltd., NII Advisory - Buffer Overflow in SQLBase (Revised) (09.03.2003)
 documentArjun Pednekar, Buffer OverFlow in SQLBase 8.1.0 - NII Advisory (11.02.2003)
Discuss:Read or add your comments to this news (2 comments)

Clearswift MAILsweeper protection bypass
updated since 09.03.2003
Published:12.03.2003
Source:BUGTRAQ
SecurityVulns ID:2639
Type:remote
Level:5/10
Description:If MIME-Version header is missed or binary encoding is used attachments are not recognized.
Affected:CLEARSWIFT : MAILsweeper 4.0
Original documentdocumenthttp-equiv_(at)_excite.com, Re: Corsaire Security Advisory - Clearswift MAILsweeper MIME attachme nt evasion issue (12.03.2003)
 documentMartin O'Neal, Corsaire Security Advisory - Clearswift MAILsweeper MIME attachme nt evasion issue (09.03.2003)
Files:Bypassing content filtering software
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru