Computer Security
[EN] securityvulns.ru
no-pyccku



Buffer overflow in Microsoft IIS HTR
Published:13.06.2002
Source:MICROSOFT
SecurityVulns ID:2085
Type:remote
Level:7/10
Description:Buffer overflow on chunk-encoded POST request.
Affected:MICROSOFT : Internet Information Server 4.0
 MICROSOFT : Internet Information Server 5.0
 MICROSOFT : Internet Information Server 5.1
Original documentdocumentEEYE, ADVISORY: Windows 2000 and NT4 IIS .HTR Remote Buffer Overflow [AD20020612] (13.06.2002)
 documentMICROSOFT, Security Bulletin MS02-028: Heap Overrun in HTR Chunked Encoding Could Enable Web Server Compromise (Q321599) (13.06.2002)
Discuss:Read or add your comments to this news (0 comments)

Microsoft SQL Server 2000 SQLXML buffer overflow
Published:13.06.2002
Source:BUGTRAQ
SecurityVulns ID:2086
Type:remote
Level:5/10
Description:Buffer overflow in ISAPI filter and crossite scripting.
Affected:MICROSOFT : SQL Server 2000
Original documentdocumentMatt Moore, wp-02-0007: Microsoft SQLXML ISAPI Overflow and Cross Site Scripting (13.06.2002)
 documentMICROSOFT, Security Bulletin MS02-030: Unchecked Buffer in SQLXML Could Lead to Code Execution (Q321911) (13.06.2002)
Discuss:Read or add your comments to this news (0 comments)

Format string bugs in mmmail/mmftpd
Published:13.06.2002
Source:BUGTRAQ
SecurityVulns ID:2087
Type:remote
Level:5/10
Description:Format string bugs in logging.
Affected:MONDOR : mmmail 0.0
 MONDOR : mmftpd 0.0
Original documentdocumentBenoît Roussel, [CERT-intexxia] mmftpd FTP Daemon Format String Vulnerability (13.06.2002)
 documentBenoît Roussel, [CERT-intexxia] mmmail POP3-SMTP Daemon Format String Vulnerability (13.06.2002)
Discuss:Read or add your comments to this news (0 comments)

Buffer overflow in Oracle 9iAS Reports Server
Published:13.06.2002
Source:BUGTRAQ
SecurityVulns ID:2088
Type:remote
Level:6/10
Description:Buffer overflow in CGI script.
Affected:ORACLE : Oracle 9iAS
Original documentdocumentNGSSoftware Insight Security Research Advisory (NISR), Oracle Reports Server Buffer Overflow (#NISR12062002B) (13.06.2002)
Discuss:Read or add your comments to this news (0 comments)

Buffer overflow in IRCIt
Published:13.06.2002
Source:BUGTRAQ
SecurityVulns ID:2089
Type:client
Level:5/10
Description:Buffer overflow on invite command.
Affected:ASSYMETRICA : ircit 0.3
Original documentdocumentGOBBLES_(at)_hushmail.com, Remote Hole in IRC Client and Stuff (13.06.2002)
Discuss:Read or add your comments to this news (0 comments)

Privelege escalation via simpleinit
Published:13.06.2002
Source:BUGTRAQ
SecurityVulns ID:2090
Type:local
Level:5/10
Description:File descriptor doesn't closed after priveleges are dropped.
Affected:LINUX : util-linux 2.11
Original documentdocumentPatrick Smith, simpleinit root exploit - file descriptor left open (13.06.2002)
Discuss:Read or add your comments to this news (0 comments)

Buffer overflow in AnalogX SimpleServer
updated since 13.06.2002
Published:13.06.2002
Source:BUGTRAQ
SecurityVulns ID:2091
Type:remote
Level:5/10
Description:Buffer overflow on loong '@' http request.
Affected:ANALOGX : SimpleSever 1.16
Original documentdocumentFort _, Remote DoS in AnalogX SimpleServer:www 1.16 (13.06.2002)
Discuss:Read or add your comments to this news (0 comments)

SQL modification in <Body>Builder
Published:13.06.2002
Source:MAM0NT
SecurityVulns ID:2092
Type:remote
Level:5/10
Description:' is not checked during authorization.
Affected:RUSLAN-COM : <BODY>Builder
Original documentdocumentMAM0NT, [LBYTE] Ruslan Communications <BODY>Builder SQL modification (13.06.2002)
Discuss:Read or add your comments to this news (0 comments)

Port translation bypass in 3Com OfficeConnect Remote 812 ADSL
updated since 28.05.2002
Published:13.06.2002
Source:BUGTRAQ
SecurityVulns ID:2047
Type:remote
Level:5/10
Affected:3COM : OfficeConnect Remote 812
Original documentdocumentIsmael Briones, Part II: Vulnerability in 3Com® OfficeConnect® Remote 812 ADSL Router (13.06.2002)
 documentIsmael Briones, Vulnerability in 3Com® OfficeConnect® Remote 812 ADSL Router (28.05.2002)
Discuss:Read or add your comments to this news (0 comments)

Multiple bugs in QNX
updated since 01.06.2002
Published:13.06.2002
Source:BUGTRAQ
SecurityVulns ID:2061
Type:local
Level:7/10
Description:User can create the hard link for a file not owned by him. ptrace() can be attached to suid process, signals may be passed to any process, buffer overflows and privelege escalations in many utilities.
Affected:QNX : QNX 4.25
Original documentdocumentEgor Egorov, madcr: QnX 4.25 - multiples bof in suid/no suid files (13.06.2002)
 documentbadc0ded_(at)_badc0ded.com, QNX (04.06.2002)
 documentSimon Ouellette, Multiple vulnerabilities in QNX (01.06.2002)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Ðåéòèíã@Mail.ru