Sybase Anywhere multiple bugs Published: 11.12.2003 Source: BUGTRAQ SecurityVulns ID: 3305 Type: remote Level: 6/10 Description: Buffer overflows, format string bugs, etc in multiple SQL functions.
Affected: SYBASE : SQL Anywhere 9.0
Original document Mark Litchfield , Multiple Vulnerabilities Sybase Anywhere 9 (11.12.2003 )
Cisco ACNS buffer overflow Published: 11.12.2003 Source: BUGTRAQ SecurityVulns ID: 3306 Type: remote Level: 6/10 Description: Buffer overflow on oversized password.
Affected: CISCO : ACNS 4.2 CISCO : ACNS 5.0 CISCO : Content Router 4400 CISCO : Content Distribution Manager 4600 CISCO : Content Engine 500 CISCO : Content Engine 7300
Original document CISCO , Cisco Security Advisory: Vulnerability in Authentication Library for ACNS (11.12.2003 )
Cisco Unity multiple bugs Published: 11.12.2003 Source: BUGTRAQ SecurityVulns ID: 3307 Type: remote Level: 5/10 Description: Local account with predefined passsword, server awaits for connection from statically compiled address. etc/
Affected: CISCO : UNITY SVRX255 CISCO : UNITY SVRX232 CISCO : UNITY SVRX205 CISCO : UNITY SVRX342 CISCO : UNITY SVRX345 CISCO : MCS-7815i CISCO : MCS-7835i CISCO : MCS-7845i CISCO : MCS-7855i CISCO : MCS-7865i
Original document CISCO , Cisco Security Advisory: Unity Vulnerabilities on IBM-based Servers (11.12.2003 )
Multiple NetGear WAB 102 bugs Published: 11.12.2003 Source: BUGTRAQ SecurityVulns ID: 3308 Type: remote Level: 5/10 Description: It's possible to access device with any password containing space, device resets to default password on reboot, information is leaked about wireless devices.
Affected: NETGEAR : WAB102
Original document Jon Kamm @hotmail , NetGear WAB102 (11.12.2003 )
sipD DoS Published: 11.12.2003 Source: SECURITEAM SecurityVulns ID: 3309 Type: remote Level: 5/10 Description: Because of insufficient check of gethostbyname_r results is's possible to crash service with unresolvable hostname.
Affected: SIPD : sipd 0.1
Original document SECURITEAM , [UNIX] sipD gethostbyname_r DoS (11.12.2003 )
CGI bugs updated since 02.12.2003Published: 11.12.2003 Source: SecurityVulns ID: 3288 Type: remote Level: 5/10
Affected: XOOPS : xoops 2.0 XOOPS : xoops 1.3 VPASP : VP-ASP Shopping Cart 5.0 SURFBOARD : Surfboard 1.1 AESTHETIC : Jason Maloney's CGI Guestbook 3.0 CUTEPHP : CuteNews 1.3 ALABANZA : AlaCart 1.0 BITFOLGE : Snif 1.2 TODSAH : PieterPost 0.10 RNN : RNN Guestbook 1.2 ALANWARD : Alan Ward Acart 2.0 NEOCROME : Land Down Under 601 BMCWEB : BNCweb MAMBOSERVER : Mambo Server 4.0 MAMBOSERVER : Mambo Server 4.5 FREESCRIPTS : VisitorBook LE
Original document Paul Johnston , Mozilla/5.0 (Windows; U; Windows NT 5.0; en-US; rv:1.4) Gecko/20030624 Netscape/7.1 (ax) (11.12.2003 )
Chintan Trivedi , Mambo Open Source 4.0.14 SQL injection (11.12.2003 )
Security Corporation Security Advisory , [SCSA-023] Multiple vulnerabilities in Mambo Server (11.12.2003 )
Matthias Bethke , BNCweb File Disclosure Vulnerability (09.12.2003 )
SECURITEAM , [UNIX] Snif Script Cross Site Scripting Vulnerability (09.12.2003 )
SECURITEAM , [UNIX] Land Down Under auth.php SQL Injection (09.12.2003 )
Shaun Moore , Jason Maloney's Guestbook XSS Vulnerability. (09.12.2003 )
Xnuxer Research Laboratory , Cross Site Scripting in VP-ASP (09.12.2003 )
Security Corporation Security Advisory , [SCSA-022] Multiple vulnerabilities in Xoops (06.12.2003 )
parag0d_(at)_phreaker.net , Improper authentication checking in Alan Ward Acart (05.12.2003 )
parag0d_(at)_phreaker.net , XSS vulnerabilities in register.asp in Alan Ward Acart (05.12.2003 )
parag0d_(at)_phreaker.net , Plaintext Vulnerability in Alan Ward Acart (05.12.2003 )
parag0d_(at)_phreaker.net , XSS Vulnerabilities in Alan Ward Acart (05.12.2003 )
Martin Maèok , XBoard < 4.2.7: pxboard insecure tmp file handling (05.12.2003 )
Peter Winter-Smith , eZphotoshare Multiple Overflow Vulnerabilities (04.12.2003 )
SECURITEAM , [UNIX] RNN's Guestbook Multiple Vulnerabilities (03.12.2003 )
datasink_(at)_op.pl , Pieterpost - access to "vitual" account (02.12.2003 )
SECURITEAM , [UNIX] Snif File Disclosure Vulnerability (02.12.2003 )
SECURITEAM , [NEWS] Alabanza AlaCart SQL Injection Vulnerability (02.12.2003 )
Securiteinfo.com , [Full-Disclosure] Cutenews 1.3 information disclosure (02.12.2003 )
Shaun Moore , Jason Maloney's CGI Guestbook Remote Command Execution Vulnerability. (02.12.2003 )
Luigi Auriemma , Surfboard <= 1.1.8 vulns (02.12.2003 )
S-Quadra Security Research , Virtual Programming VP-ASP Shopping Cart 5.0 multiple SQL Injection Vulnerabilities (02.12.2003 )