Computer Security
[EN] securityvulns.ru
no-pyccku



Sun Java System Web Proxy Server DoS
Published:10.09.2005
Source:SECUNIA
SecurityVulns ID:5195
Type:remote
Level:5/10
Description:Three different vulnerabilities leading to server crash.
Affected:SUN : Sun Java System Web Proxy Server 3.6
Original documentdocumentSECUNIA, [SA16757] Sun Java System Web Proxy Server Denial of Service Vulnerabilities (10.09.2005)
Discuss:Read or add your comments to this news (0 comments)

IBM OS/400 SNMP agent DoS
Published:10.09.2005
Source:SECUNIA
SecurityVulns ID:5196
Type:remote
Level:5/10
Description:Malformed SNMP message causes SNMP Agent and Trap Manager service to fail.
Affected:IBM : OS/400 5.3
Original documentdocumentSECUNIA, [SA16735] OS/400 SNMP Message Handling Denial of Service (10.09.2005)
Discuss:Read or add your comments to this news (0 comments)

IBM OS/400 multiple certificate handling vulnerabilities
Published:10.09.2005
Source:SECUNIA
SecurityVulns ID:5197
Type:library
Level:5/10
Description:Multiple vulnerabilities in certificates storing and validation.
Affected:IBM : OS/400 5.3
Original documentdocumentSECUNIA, [SA16751] OS/400 osp-cert Certificate Handling Vulnerabilities (10.09.2005)
Discuss:Read or add your comments to this news (0 comments)

Netscape / Mozilla / Firefox buffer overflow
updated since 09.09.2005
Published:10.09.2005
Source:BUGTRAQ
SecurityVulns ID:5190
Type:client
Level:7/10
Description:Buffer overflow on the links with international domain names (IDN).
Affected:MOZILLA : Mozilla 1.7
 NETSCAPE : Netscape 7.2
 MOZILLA : Firefox 1.0
 NETSCAPE : Netscape 8.0
Original documentdocumentTom Ferris, [Full-disclosure] Mozilla Firefox "Host:" Buffer Overflow (09.09.2005)
Discuss:Read or add your comments to this news (0 comments)

Zebedee encrypted tunnel server DoS
Published:10.09.2005
Source:BUGTRAQ
SecurityVulns ID:5193
Type:remote
Level:5/10
Description:Some internal protocol header parameters lead to assert() in server application.
Affected:ZEBEDEE : Zebedee 2.4
Original documentdocumentShiraishi.M, Zebedee DoS Vulnerability (10.09.2005)
Files:Zebedee DoS Vulnerability
Discuss:Read or add your comments to this news (0 comments)

Web applications security vulnerabilities (PHP, ASP, CGI, Perl, etc)
updated since 05.09.2005
Published:10.09.2005
Source:
SecurityVulns ID:5174
Type:remote
Level:5/10
Description:PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc.
Affected:PHPNUKE : PHP-Nuke 7.6
 PBLANG : PBLang 4.65
 MYBLOGGIE : myBloggie 2.1
 MYBB : MyBB 1.0
 SAWMILL : Sawmill 7.1
 CLASS1 : Class-1 0.24
 COURIER : SqWebMail 5.0
 GUPPY : Guppy 4.5
 PHPCOMMUNITYCALE : phpCommunityCalendar 4.0
 AMEMBER : aMember Pro 2.3
 MAN2WEB : man2web 0.88
 STYLEMOTION : WEB//NEWS 1.4
 CHITTA : mimic2 0.86
 IPSWITCH : Whatsup Gold 8.04
 IPSWITCH : Whatsup small Business 2004
 UNCLASSIFIED : Unclassified NewsBoard 1.5
 MAXDEV : MD-Pro 1.0
 CJDESIGN : CjTagBoard 3.0
 CJDESIGN : CjLinkOut 1.0
 CJDESIGN : CjWeb2Mail 3.0
Original documentdocumentpsymera_(at)_hotmail.com, Cj Desing Three Aplications One Bug (10.09.2005)
 documentretrogod_(at)_aliceposta.it, class-1 Forum Software v 0.24.4 Remote code execution (10.09.2005)
 documentSECUNIA, [SA16731] MAXdev MD-Pro Cross-Site Scripting and File Upload Vulnerabilities (09.09.2005)
 documentSECUNIA, [SA16726] Unclassified NewsBoard "Description" Script Insertion Vulnerability (09.09.2005)
 documentCIRT Advisory, [Full-disclosure] 3 minor vulnerabilities in IPSwitch products (09.09.2005)
 documentmorning_wood, [Full-disclosure] mimicboard2 (09.09.2005)
 documentretrogod_(at)_aliceposta.it, PBLang 4.65 (possibly prior versions) remote code execution (09.09.2005)
 documentr.verton_(at)_gmail.com, [NewAngels Advisory #5] Stylemotion WEB//NEWS 1.4 Vulnerabilities (09.09.2005)
 documentSECURITEAM, [EXPL] Man2web CGI Command Execution (09.09.2005)
 documentr0t3d3Vil, aMember Pro 2.3.X - Remote File Include Vulnerability (09.09.2005)
 documentbhfh_(at)_walla.com, PHP-Nuke (07.09.2005)
 documentretrogod_(at)_aliceposta.it, UNB 1.5.3 cross site scripting (07.09.2005)
 document4Degrees_(at)_46and2.com , [NewAngels Advisory] aMember Pro 2.3.X - Remote File Include Vulnerability (07.09.2005)
 documentretrogod_(at)_aliceposta.it, phpCommunityCalendar 4.0.3 (possibly prior versions) sql injection / login bypass / cross site scripting (07.09.2005)
 documentSECUNIA, GuppY Multiple Vulnerabilities (06.09.2005)
 documentSECUNIA, [Full-disclosure] Secunia Research: SqWebMail Conditional Comments Script Insertion Vulnerability (06.09.2005)
 documentParikh, Dominic, [Full-disclosure] XSS VULN IN ALL MYBB VERSIONS (INCLUDING PR2) (06.09.2005)
 documentSECUNIA, myBloggie "username" SQL Injection Vulnerability (05.09.2005)
Files:Man2web CGI Command Execution
 Class-1 Forum sql injection / remote code execution poc exploit
Discuss:Read or add your comments to this news (0 comments)

KillProcess administration utility buffer overflow
Published:10.09.2005
Source:BUGTRAQ
SecurityVulns ID:5192
Type:local
Level:5/10
Description:Buffer overflow on oversized process PE FileDescription field.
Affected:KILLPROCESS : KillProcess 2.20
Original documentdocumentfRoGGz_(at)_securityfocus.com, KillProcess 2.20 and priors "FileDescription" Local Buffer Overflow Issue (10.09.2005)
Files:KillProcess 2.20 and priors "FileDescription" Local Buffer Overflow PoC
Discuss:Read or add your comments to this news (0 comments)

Multiple Linux kernel vulnerabilities
updated since 10.09.2005
Published:28.09.2005
Source:BUGTRAQ
SecurityVulns ID:5194
Type:remote
Level:7/10
Description:Remote DoS with netfilter ipt_recent module. Privilege escalation with sendmsg() for amd64 platform. Reading kernel memory and IO ports with raw_sendmsg(). Memory leaks with procfs for SCSI drivers. USB DoS.
Affected:LINUX : kernel 2.6
Original documentdocumentSECUNIA, [SA16969] Linux Kernel URB Handling Denial of Service Vulnerability (28.09.2005)
 documentUBUNTU, [USN-178-1] Linux kernel vulnerabilities (10.09.2005)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru