Computer Security
[EN] securityvulns.ru
no-pyccku



OpenLdap pam_ldap / nss_ldap weak password change encryption
updated since 04.07.2005
Published:14.07.2005
Source:SECUNIA
SecurityVulns ID:4956
Type:m-i-t-m
Level:5/10
Description:TLS is not used with LDAP server during password change, password is transmitted in cleartext.
Affected:OPENLDAP : OpenLDAP 2.2
 PAMLDAP : pam_ldap 177
 NSSLDAP : nss_ldap 238
Original documentdocumentGENTOO, [Full-disclosure] [ GLSA 200507-13 ] pam_ldap and nss_ldap: Plain text authentication leak (14.07.2005)
 documentRob Holland, pam_ldap/nss_ldap password leak in a master+slave+start_tls LDAP setup (05.07.2005)
 documentSECUNIA, [SA15906] OpenLDAP / pam_ldap Password Disclosure Security Issue (04.07.2005)
Discuss:Read or add your comments to this news (0 comments)

Cisco ONS telnet service DoS
Published:14.07.2005
Source:BUGTRAQ
SecurityVulns ID:5000
Type:remote
Level:5/10
Description:Sending a specially crafted stream of data to a telnet session can cause the session to lock up.
Affected:CISCO : Cisco ONS 15216
Original documentdocumentCISCO, Cisco Security Advisory: Cisco ONS 15216 OADM Telnet Denial-of-Service Vulnerability (14.07.2005)
Discuss:Read or add your comments to this news (0 comments)

Cisco Security Agent IP packet DoS
Published:14.07.2005
Source:BUGTRAQ
SecurityVulns ID:5001
Type:remote
Level:6/10
Description:If a crafted IP packets with certain characteristics are sent to a Windows platform running CSA 4.5, Windows will halt with a blue screen and system crash.
Affected:CISCO : Cisco Security Agent 4.5
Original documentdocumentCISCO, Cisco Security Advisory:Cisco Security Agent Vulnerable to Crafted IP attack (14.07.2005)
Discuss:Read or add your comments to this news (0 comments)

Multiple SquirrelMail vulnerabilities
updated since 14.07.2005
Published:15.07.2005
Source:BUGTRAQ
SecurityVulns ID:4998
Type:remote
Level:5/10
Description:Crossite scripting, possibility to verwrite other user settings.
Affected:SQUIRRELMAIL : Squirrelmail 1.4
Original documentdocumentJeiAr, SquirrelMail Arbitrary Variable Overwriting Vulnerability (15.07.2005)
 documentJonathan Angliss, [SM-ANNOUNCE] SquirrelMail 1.4.5 Released (14.07.2005)
Discuss:Read or add your comments to this news (0 comments)

NetPanzer game DoS
updated since 14.07.2005
Published:25.05.2006
Source:BUGTRAQ
SecurityVulns ID:4999
Type:remote
Level:5/10
Description:Server enters to endless loop on the packet with zero data.
Affected:NETPANZER : netPanzer 0.8
Original documentdocumentLuigi Auriemma, Endless loop in NetPanzer 0.8 (14.07.2005)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru