Computer Security
[EN] securityvulns.ru
no-pyccku



CGI bugs
updated since 23.10.2002
Published:14.11.2002
Source:BUGTRAQ
SecurityVulns ID:2362
Type:remote
Level:5/10
Affected:W3MAIL : W3Mail 1.0
 PHPBB : phpBB 2.0
 NOCC : NOCC 0.9
 ICEWARP : IceWarp Webmail 3.3
 PHPNUKE : PHP-Nuke 5.6
 XOOPS : Xoops RC3.0
 GULFTECH : PAFileDB
 GBOOK : gBook 1.4
 MYMARKET : MyMarket 1.71
 CGI : Mojo Bug Tracker
 CGI : vpopmail-CGIApps
 PROMETHEUS : Prometheus 6.0
 CGI : ion-p
 ZONEEDIT : ZoneEdit
 CGI : networking_utils.php
 SNORTCENTER : SnortCenter 0.9
 CUTECAST : Cutecast Forum 1.2
 POSTNUKE : Postnuke 0.72
 EZ : httpbench 1.1
 APBOARD : APBoard 2.02
 APBOARD : APBoard 2.03
Original documentdocumentDarC KonQuesT, IceWarp 3.4.5 XSS *AGAIN* (14.11.2002)
 documentHai Nam Luke, Code Injection in phpBB Advanced Quick Reply Mod (13.11.2002)
 documentProXy, APBoard - post threads to protected forums and possibility to hijack forum-password (13.11.2002)
 documentTim Brown, Fresh hole in W3Mail (13.11.2002)
 documentVALDEUX_(at)_aol.com, WebChat for XOOPS RC3 SQL INJECTION (12.11.2002)
 documentmagistrat, xoops Quizz Module IMG bug (12.11.2002)
 documentTacettin Karadeniz, benchmark tool for HTTP pages. (11.11.2002)
 documentMuhammad Faisal Rauf Danka, XSS in Postnuke Rogue release (0.72) (10.11.2002)
 documentZero-X ScriptKiddy, Vulnerability in Cutecast Forum v1.2 (08.11.2002)
 documentClint Byrum, SnortCenter 0.9.5 temp file naming problems... (06.11.2002)
 documentTacettin Karadeniz, networking_utils.php (06.11.2002)
 document[secondmotion]-Matt Thompson, ZoneEdit Account Hijack Vulnerability (06.11.2002)
 documentZero-X ScriptKiddy, ion-p.exe allows Remote File Retrieving (02.11.2002)
 documentIDEFENSE, iDEFENSE Security Advisory 10.31.02c: PHP-Nuke SQL Injection Vulnerability (02.11.2002)
 documentIDEFENSE, iDEFENSE Security Advisory 10.31.02b: Prometheus Application Framework Code Injection (02.11.2002)
 documentIgnacio Vazquez, vpopmail CGIapps vadddomain multiple vulnerabilities (25.10.2002)
 documentIgnacio Vazquez, vpopmail CGIapps vpasswd vulnerabilities (25.10.2002)
 documentDaniel Boland, XSS vulnerability in Mojo Mail Sign-Up Form (25.10.2002)
 documentqber66, XSS bug in MyMarket 1.71 (24.10.2002)
 documentfrog frog, gBook (23.10.2002)
 documentersatz_(at)_unixhideout.com, XSS vulnerabilites in Pafiledb (23.10.2002)
 documentUlf Harnhammar, NOCC: XSS (23.10.2002)
Discuss:Read or add your comments to this news (0 comments)

Format string vulnerability in KDE talkd
updated since 24.05.2002
Published:14.11.2002
Source:BUGTRAQ
SecurityVulns ID:2037
Type:remote
Level:5/10
Affected:SCO : UnixWare 7.1
 SCO : Open UNIX 8.0
 KDE : KDE 3.0
Original documentdocumentCALDERA, Security Update: [CSSA-2002-SCO.42] UnixWare 7.1.1 Open UNIX 8.0.0 : in.talkd format string vulnerabilities (14.11.2002)
 documentSGI, Xinet K-Talk Appletalk(tm) xkas vulnerability on IRIX (12.06.2002)
 documentSGI, IRIX talkd vulnerability (12.06.2002)
 documentGOBBLES_(at)_hushmail.com, route of #phrack is a funny man! (24.05.2002)
Files:talkd [WAS: Re: OpenBSD Security Advisory]
Discuss:Read or add your comments to this news (0 comments)

Unauthorized Surecom Broadband Router SNMP access
Published:14.11.2002
Source:BUGTRAQ
SecurityVulns ID:2409
Type:remote
Level:5/10
Description:Commuinities public and secret are accessable by default.
Affected:SURECOM : EP-4501
Original documentdocumentAndrei Mikhailovsky, Default SNMP community in Surecom Broadband Router (14.11.2002)
Discuss:Read or add your comments to this news (0 comments)

Buffalo access point DoS
Published:14.11.2002
Source:BUGTRAQ
SecurityVulns ID:2410
Type:remote
Level:5/10
Description:Incomplete HTTP GET request causes device to reboot.
Affected:BUFFALOTECH : WLA-L11G
Original documentdocumentAndrei Mikhailovsky, Buffalo AP Denial of Service (14.11.2002)
Discuss:Read or add your comments to this news (0 comments)

Multiple bugs in bind
updated since 12.11.2002
Published:14.11.2002
Source:X-FORCE
SecurityVulns ID:2401
Type:remote
Level:10/10
Description:Multiple vulnerabilities: DoS, buffer overflows.
Affected:ISC : bind 4.9
 BIND : bind 8.3
Original documentdocumentCERT, CERT Advisory CA-2002-31 Multiple Vulnerabilities in BIND (14.11.2002)
 documentX-FORCE, ISS Security Advisory: Multiple Remote Vulnerabilities in BIND4 and BIND8 (12.11.2002)
Files:Multiple Remote Vulnerabilities in BIND4 and BIND8
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru