Computer Security
[EN] securityvulns.ru
no-pyccku



CGI bugs
Published:11.05.2004
Source:
SecurityVulns ID:3674
Type:remote
Level:5/10
Affected:PHPNUKE : NukeJokes 1.7
 PHPSHOP : phpShop 0.7
 OPENWEBMAIL : Open Webmail 2.20
 OPENWEBMAIL : Open Webmail 2.21
 OPENWEBMAIL : Open Webmail 2.30
 MANLIX : Manlix
Original documentdocumenttristram, Выложите везде где можно мой Remote exploit for Manlix scripts (x).(x).(x) (11.05.2004)
 documentMichel Blomgren, [Full-Disclosure] CSA-200402-1: Previous Open Webmail vulnerability is exploitable (11.05.2004)
 documentCalum Power, Arbitrary code inclusion in phpShop (11.05.2004)
 documentJanek Vind, [waraxe-2004-SA#028 - Multiple vulnerabilities in NukeJokes module for PhpNuke] (11.05.2004)
Discuss:Read or add your comments to this news (0 comments)

eMule DoS
Published:11.05.2004
Source:BUGTRAQ
SecurityVulns ID:3675
Type:remote
Level:5/10
Description:Combination of different HTTP requests causes application to crash.
Affected:EMULE : eMule 0.42
Original documentdocumentRafel Ivgi, Emule 0.42e Remote Denial Of Service Exploit (11.05.2004)
Discuss:Read or add your comments to this news (0 comments)

IceCast buffer overflow
Published:11.05.2004
Source:FULL-DISCLOSURE
SecurityVulns ID:3676
Type:remote
Level:6/10
Description:Authorization: HTTP header buffer overflow.
Affected:ICECAST : Icecast 2.0
Original documentdocumentned, [Full-Disclosure] Icecast 2.0.0 preauth overflow (11.05.2004)
Discuss:Read or add your comments to this news (0 comments)

MyWeb buffer overflow
Published:11.05.2004
Source:SECURITEAM
SecurityVulns ID:3678
Type:remote
Level:5/10
Description:Buffer overflow on oversized GET request.
Affected:MYWEB : MyWeb 3.3
Original documentdocumentSECURITEAM, [NT] MyWeb Buffer Overflow (11.05.2004)
Discuss:Read or add your comments to this news (0 comments)

Pound format string bug
Published:11.05.2004
Source:SECURITEAM
SecurityVulns ID:3679
Type:remote
Level:5/10
Description:Format string bug during request processing.
Affected:APSIS : pound 1.5
Original documentdocumentSECURITEAM, [EXPL] Pound Format String Exploit (11.05.2004)
Files:Pound <=1.5 remote format string exploit (public version)
Discuss:Read or add your comments to this news (0 comments)

MailEnable Buffer overflow
Published:11.05.2004
Source:SECURITEAM
SecurityVulns ID:3680
Type:remote
Level:5/10
Description:Heap overflow in MEHTTPS on oversized GET reqauest and in SMTP component.
Affected:MAILENABLE : MailEnable Professional 1.72
Original documentdocumentSECURITEAM, [NT] Remote Heap Corruption overflow Vulnerability in MailEnable (11.05.2004)
Discuss:Read or add your comments to this news (0 comments)

SMC routers unauthorized access
Published:11.05.2004
Source:SECURITEAM
SecurityVulns ID:3681
Type:remote
Level:6/10
Description:Administration web interface TCP/1900 is available from WAN without authentication.
Affected:SMC : SMC Router 7008ABR
 SMC : SMC Router 7004VBR
Original documentdocumentSECURITEAM, [NEWS] SMC Routers Passwordless Remote Administration (11.05.2004)
Discuss:Read or add your comments to this news (0 comments)

McAfee ePolicy Orchestrator unauthorized access
Published:11.05.2004
Source:X-FORCE
SecurityVulns ID:3673
Type:remote
Level:7/10
Description:Invalid HTTP POST request allows to upload files on server.
Affected:MCAFEE : ePolicy Orchestrator 2.5
 MCAFEE : ePolicy Orchestrator 3.0
Original documentdocumentX-FORCE, ISS Security Brief: McAfee ePolicy Orchestrator Remote Compromise Vulnerability (11.05.2004)
Files:McAfee ePolicy Orchestrator Remote Compromise Vulnerabi
Discuss:Read or add your comments to this news (0 comments)

NetBSD systrace privilege escalation
updated since 11.05.2004
Published:13.05.2004
Source:FULL-DISCLOSURE
SecurityVulns ID:3677
Type:local
Level:7/10
Description:By using invalid handling of error condition it's possible to obtain superuser privileges.
Affected:NETBSD : NetBSD 1.6
Original documentdocumentNETBSD, NetBSD Security Advisory 2004-007: Systrace systrace_exit() local root (13.05.2004)
 documentStefan Esser, [Full-Disclosure] Advisory 04/2004: Net(Free)BSD Systrace local root vulnerabilitiy (11.05.2004)
Discuss:Read or add your comments to this news (0 comments)

Outlook Express HTML file writing
updated since 11.05.2004
Published:19.05.2004
Source:BUGTRAQ
SecurityVulns ID:3672
Type:client
Level:6/10
Description:During reply to a message with HTML file attached this file is saved to known location.
Affected:MICROSOFT : Outlook 2003
Original documentdocumenthttp-equiv@excite.com, ROCKET SCIENCE: Outllook 2003 (19.05.2004)
 documenthttp-equiv@excite.com, OUTLOOK 2003: OuchLook (11.05.2004)
Files:Outlook 2003 silent delivery and installation demonstration
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru