Computer Security
[EN] securityvulns.ru
no-pyccku



Adobe Acrobat / Acrobat Reader local file access
Published:15.10.2004
Source:BUGTRAQ
SecurityVulns ID:4094
Type:client
Level:7/10
Description:SWF files embedded to document may access local files.
Affected:ADOBE : Acrobat Reader 6.0
 ADOBE : Acrobat 6.0
Original documentdocumentjelmer, Adobe acrobat / Adobe Reader 6 can read local files (15.10.2004)
Discuss:Read or add your comments to this news (0 comments)

Multiple Macromedia JRun bugs
updated since 28.09.2004
Published:15.10.2004
Source:SECUNIA
SecurityVulns ID:4046
Type:remote
Level:7/10
Description:DoS, source code leakage, session hijacking, crossite scripting, buffer overflow.
Affected:MACROMEDIA : JRun 3.0
 MACROMEDIA : JRun 3.1
 ADOBE : JRun 4.0
 MACROMEDIA : ColdFusion MX 6.0
 MACROMEDIA : ColdFusion MX 6.1
CVE:CVE-2006-5860 (Cross-site scripting (XSS) vulnerability in the administrator console for Adobe JRun 4.0, as used in ColdFusion, allows remote attackers to inject arbitrary web script or HTML via unknown vectors.)
Original documentdocumentACROS Security, ACROS Security: Unsanitized Session ID Cookie Allows Modifying Server Response (15.10.2004)
 documentACROS Security, ACROS Security: Session Fixation in JRun Management Console (15.10.2004)
 documentACROS Security, ACROS Security: HTML Injection in JRun Management Console (15.10.2004)
 documentIDEFENSE, [Full-Disclosure] iDEFENSE Security Advisory 10.05.04a: ColdFusion MX 6.1 on IIS File Contents Disclosure (06.10.2004)
 documentEric Lackey, CFMX vulnerability (01.10.2004)
 documentIDEFENSE, [Full-Disclosure] iDEFENSE Security Advisory 09.29.04 - Macromedia JRun 4 mod_jrun Apache Module Buffer Overflow Vulnerability (30.09.2004)
 documentSECUNIA, [SA12647] ColdFusion MX Sensitive Information Disclosure and Denial of Service (28.09.2004)
 documentSECUNIA, [SA12638] Macromedia JRun Server Multiple Vulnerabilities (28.09.2004)
Discuss:Read or add your comments to this news (0 comments)

Tridcomm directory traversal
updated since 07.10.2004
Published:15.10.2004
Source:BUGTRAQ
SecurityVulns ID:4071
Type:remote
Level:5/10
Affected:TRIDCOMM : Tridcomm 1.3
Original documentdocumentlkelemen_(at)_kolumbus.fi, directory traversal vulberability in TriDComm (15.10.2004)
 documentLuigi Auriemma, Directory traversal in Tridcomm 1.3 (07.10.2004)
Discuss:Read or add your comments to this news (0 comments)

ShixxNOTE buffer overflow
Published:15.10.2004
Source:BUGTRAQ
SecurityVulns ID:4096
Type:remote
Level:5/10
Description:Buffer overflow on parsing network message.
Affected:SHIXXNOTE : ShixxNote 6.net
Original documentdocumentLuigi Auriemma, Buffer-overflow in ShixxNOTE 6.net (15.10.2004)
Discuss:Read or add your comments to this news (0 comments)

Valve CS source format string bug
Published:15.10.2004
Source:BUGTRAQ
SecurityVulns ID:4097
Type:remote
Level:6/10
Description:Format string bug in name command.
Original documentdocumentSome One, UPDATE: Format String Vulnerability in Valve's CS-Source (15.10.2004)
Discuss:Read or add your comments to this news (0 comments)

3CRADSL72 information leak
Published:15.10.2004
Source:BUGTRAQ
SecurityVulns ID:4098
Type:remote
Level:5/10
Description:http://[routerIP]/app_sta.stm Contains information with administration user name and password.
Affected:3COM : 3CRADSL72
Original documentdocumentKarb0nOxyde, 3COM Wireless router (3CRADSL72) information disclosure (15.10.2004)
Discuss:Read or add your comments to this news (0 comments)

BNC protection bypass
Published:15.10.2004
Source:BUGTRAQ
SecurityVulns ID:4099
Type:remote
Level:5/10
Description:By using backspace it's possible to bypass command protection.
Affected:BNC : bnc 2.8
Original documentdocumentGENTOO, [Full-Disclosure] [ GLSA 200410-13 ] BNC: Input validation flaw (15.10.2004)
Discuss:Read or add your comments to this news (0 comments)

Multiple libtiff buffer overflows
updated since 15.10.2004
Published:06.01.2005
Source:BUGTRAQ
SecurityVulns ID:4095
Type:library
Level:7/10
Description:Multiple dynami memory overflows.
Affected:KDE : KDE 3.3
 LIBTIFF : libtiff 3.6
 XV : xv 3.10
 WXGTK : wxGTK 2.5
 PDFLIB : PDFLib 5.0
 LIBTIFF : libtiff 3.5
 LIBTIFF : libtiff 3.7
Original documentdocumentThierry Carrez, [ GLSA 200501-06 ] tiff: New overflows in image decoding (06.01.2005)
 documentIDEFENSE, iDEFENSE Security Advisory 12.21.04: libtiff STRIPOFFSETS Integer Overflow Vulnerability (22.12.2004)
 documentIDEFENSE, iDEFENSE Security Advisory 12.21.04: libtiff Directory Entry Count Integer Overflow Vulnerability (22.12.2004)
 documentKDE, KDE Security Advisory: kfax libtiff vulnerabilities (10.12.2004)
 documentGENTOO, [Full-Disclosure] [ GLSA 200412-02 ] PDFlib: Multiple overflows in the included TIFF library (06.12.2004)
 documentMANDRAKE, MDKSA-2004:111 - Updated wxGTK2 packages fix vulnerabilities (22.10.2004)
 documentGENTOO, [ GLSA 200410-11 ] tiff: Buffer overflows in image decoding (15.10.2004)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server