 |
|
|
|
| No-IP.com DDNS client for Unix/Linux buffer overflow | | Published: |  | 15.12.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 9516 | | Type: |  | client | | Level: |  | 5/10 | | Description: |  | Buffer overflow on HTTP response parsing. |
| Affected: |  | NOIP : No-IP DUC 2.1 | | CVE: |  | CVE-2008-5297 (Buffer overflow in No-IP DUC 2.1.7 and earlier allows remote HTTP servers to execute arbitrary code via a crafted response to a DNS update request, related to a missing length check in the GetNextLine function.) |
| aview symbolic links vulnerability | | Published: |  | 15.12.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 9515 | | Type: |  | local | | Level: |  | 5/10 | | Description: |  | Insecure temporary file creation. |
| Affected: |  | AVIEW : aview 1.3 | | CVE: |  | CVE-2008-4935 (asciiview in aview 1.3.0 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/aview#####.pgm temporary file.) |
| MPlayer buffer overflow | | Published: |  | 15.12.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 9518 | | Type: |  | client | | Level: |  | 5/10 | | Description: |  | Buffer overflow on TwinVQ format parsing. |
| Affected: |  | MPLAYER : MPlayer 1.0 | | CVE: |  | CVE-2008-5616 (Stack-based buffer overflow in the demux_open_vqf function in libmpdemux/demux_vqf.c in MPlayer 1.0 rc2 before r28150 allows remote attackers to execute arbitrary code via a malformed TwinVQ file.) |
| honeyd symbolic links vulnerability | | Published: |  | 15.12.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 9514 | | Type: |  | local | | Level: |  | 5/10 | | Description: |  | test.sh script insecure temporary files creation. |
| Affected: |  | HONEYD : honeyd 1.5 | | CVE: |  | CVE-2008-3928 (test.sh in Honeyd 1.5c might allow local users to overwrite arbitrary files via a symlink attack on a temporary file.) |
| Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) | | Published: |  | 15.12.2008 | | Source: |  | | | SecurityVulns ID: |  | 9517 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc.
CapCC for WordPress - SQL injection, automation protection bypass, crossite request forgery. |
|
|
|
|
|
|
|
|