Computer Security
[EN] securityvulns.ru no-pyccku


Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)
Published:13.07.2009
Source:
SecurityVulns ID:10062
Type:remote
Threat Level:
5/10
Description:PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc.
Affected:HORDE : Passwd module 3.1 for Horde
 LOGROVER : LogRover 2.3
CVE:CVE-2009-2360 (Cross-site scripting (XSS) vulnerability in passwd/main.php in the Passwd module before 3.1.1 for Horde allows remote attackers to inject arbitrary web script or HTML via the backend parameter.)
Original documentdocumentddivulnalert_(at)_ddifrontline.com, DDIVRT-2009-26 LogRover SQL Injection Authentication Bypass (13.07.2009)
 documentDEBIAN, [SECURITY] [DSA 1829-1] New sork-passwd-h3 packages fix cross-site scripting (13.07.2009)

Wyse terminals buffer overflow
Published:13.07.2009
Source:
SecurityVulns ID:10063
Type:remote
Threat Level:
7/10
Description:Buffer overflow in hagent.exe
Files:'Secure' Wyse thin clients vulnerable to remote exploit bugs

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod