Computer Security
[EN] securityvulns.ru
no-pyccku



RogerWilco buffer overflow
updated since 03.07.2003
Published:09.09.2003
Source:BUGTRAQ
SecurityVulns ID:2953
Type:remote
Level:5/10
Description:Buffer overflow on oversized nickname.
Affected:ROGERWILCO : Roger Wilco 1.4
Original documentdocumentAuriemma Luigi, Rogerwilco: server's buffer overflow (09.09.2003)
 documentAuriemma Luigi, Broadcast BoF and server freeze in RogerWilco (2001) (03.07.2003)
Discuss:Read or add your comments to this news (0 comments)

RealOne player privilege escalation
Published:09.09.2003
Source:FULL-DISCLOSURE
SecurityVulns ID:3098
Type:local
Level:5/10
Description:Program installs with group writable executable files.
Affected:REAL : realpplayer 9
Original documentdocumentJon Hart, [Full-Disclosure] RealOne Player local privilege escalation (09.09.2003)
Discuss:Read or add your comments to this news (0 comments)

WinAmp buffer overflow
Published:09.09.2003
Source:BUGTRAQ
SecurityVulns ID:3099
Type:client
Level:6/10
Description:Buffer overflow on MIDI files parsing.
Affected:NULLSOFT : Winamp 2.91
Original documentdocumentAuriemma Luigi, Winamp 2.91 lets code execution through MIDI files (09.09.2003)
Discuss:Read or add your comments to this news (0 comments)

ICQ Webfront crossite scripting
Published:09.09.2003
Source:BUGTRAQ
SecurityVulns ID:3100
Type:remote
Level:5/10
Description:Crossite scripting in guestbook.
Affected:ICQ : ICQ Webfront
Original documentdocumentmorning_wood, ICQ Webfront - Persistant XSS (09.09.2003)
Discuss:Read or add your comments to this news (0 comments)

Apache:Gallery Symbolic link problems
Published:09.09.2003
Source:BUGTRAQ
SecurityVulns ID:3101
Type:local
Level:5/10
Description:Unsafe temporary files creation.
Affected:APACHEGALLERY : Apache::Gallery
Original documentdocumentJon Hart, Apache::Gallery local webserver compromise, privilege escalation (09.09.2003)
Discuss:Read or add your comments to this news (0 comments)

ASP.NET crossite scripting protection bypass
Published:09.09.2003
Source:BUGTRAQ
SecurityVulns ID:3102
Type:remote
Level:5/10
Description:It's possible to insert null character after tag opening.
Affected:MICROSOFT : ASP.Net 1.1
Original documentdocumentWebCohort Research, Advisory: Incorrect Handling of XSS Protection in ASP.Net (09.09.2003)
Discuss:Read or add your comments to this news (0 comments)

FTP Desktop multiple bugs
Published:09.09.2003
Source:BUGTRAQ
SecurityVulns ID:3103
Type:client
Level:5/10
Description:Multiple buffer overflows.
Affected:FTPDESKTOP : FTP Desktop 3.5
Original documentdocumentBahaa Naamneh, Multiple Heap Overflows in FTP Desktop (09.09.2003)
Discuss:Read or add your comments to this news (0 comments)

escapade crossite scripting
Published:09.09.2003
Source:BUGTRAQ
SecurityVulns ID:3104
Type:remote
Level:5/10
Affected:ESCAPADE : escapade 0.2
Original documentdocumentBahaa Naamneh, Escapade Scripting Engine XSS Vulnerability and Path Disclosure (09.09.2003)
Discuss:Read or add your comments to this news (0 comments)

Microsoft Internet Explorer multiple bugs
updated since 21.08.2003
Published:09.09.2003
Source:MICROSOFT
SecurityVulns ID:3065
Type:client
Level:10/10
Description:New rollaup fix released: crossite scripting, buffer overflow during <OBJECT> tag parsing, temporary internet files path disclosure, code execution via OBJECT tag.
Affected:MICROSOFT : Internet Explorer 5.01
 MICROSOFT : Internet Explorer 5.5
 MICROSOFT : Internet Explorer 6.0
Original documentdocumentGreyMagic Software, Re: BAD NEWS: Microsoft Security Bulletin MS03-032 (09.09.2003)
 documentmorning_wood, Re: [Full-Disclosure] BAD NEWS: Microsoft Security Bulletin MS03-032 (08.09.2003)
 documenthttp-equiv_(at)_excite.com, [Full-Disclosure] BAD NEWS: Microsoft Security Bulletin MS03-032 (08.09.2003)
 documentCERT, CERT Advisory CA-2003-22 Multiple Vulnerabilities in Microsoft Internet Explorer (27.08.2003)
 documentEEYE, EEYE: Internet Explorer Object Data Remote Execution Vulnerability (21.08.2003)
 documentSECURITEAM, [NT] Internet Explorer Object Type Buffer Overflow in Double-Byte Character Set Environment (21.08.2003)
 documentSECURITEAM, [NT] The Return of the Content-Disposition Vulnerability in IE (21.08.2003)
 documentMICROSOFT, Microsoft Security Bulletin MS03-032: Cumulative Patch for Internet Explorer (Q822925) (21.08.2003)
Files:Internet Explorer <OBJECT> code execution PoC "webserver"
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru