Computer Security
[EN] securityvulns.ru
no-pyccku



mailmgr symbolic links problem
Published:16.02.2004
Source:BUGTRAQ
SecurityVulns ID:3445
Type:local
Level:5/10
Description:Symlink problem during temporary files creation.
Affected:MAILMGR : Mailmgr 1.2
Original documentdocumentMarco van Berkum, Symlink vulnerabilities in mailmgr (16.02.2004)
Discuss:Read or add your comments to this news (0 comments)

Sami FTP Server DoS
Published:16.02.2004
Source:BUGTRAQ
SecurityVulns ID:3446
Type:remote
Level:5/10
Description:Multiple conditions leading to server crash.
Affected:KARJA : Sami FTP Server 1.1
Original documentdocumentintuit bug_hunter, Sami FTP Server 1.1.3 multiple vulnerabilities (16.02.2004)
Discuss:Read or add your comments to this news (0 comments)

Symantec AntiVirus Scan Engine for Red Hat Linux symbolic links problem
Published:16.02.2004
Source:FULL-DISCLOSURE
SecurityVulns ID:3447
Type:local
Level:5/10
Description:Symbolic links problem during LiveUpdate logging.
Affected:SYMANTEC : Symantec AntiVirus Scan Engine for Red Hat Linux 4.3
Original documentdocumentDr. Peter Bieringer, [Full-Disclosure] Possible race condition in Symantec AntiVirus Scan Engine for Red Hat Linux during LiveUpdate (16.02.2004)
Discuss:Read or add your comments to this news (0 comments)

SignatureDB buffer overflow
Published:16.02.2004
Source:BUGTRAQ
SecurityVulns ID:3448
Type:local
Level:5/10
Description:Buffer overflow in sdbscan.
Affected:PLDANIELS : SignatureDB 0.1
Original documentdocumentLynX, problems with database files in 'SignatureDB' (16.02.2004)
Discuss:Read or add your comments to this news (0 comments)

Purge Jihad buffer overflow
Published:16.02.2004
Source:BUGTRAQ
SecurityVulns ID:3449
Type:client
Level:5/10
Description:Buffer overflow on parsing server reply.
Affected:PURGE : Purge 1.4
 PURGE : Purge Jihad 2.0
Original documentdocumentLuigi Auriemma, Broadcast client buffer-overflow in Purge Jihad <= 2.0.1 (16.02.2004)
Discuss:Read or add your comments to this news (0 comments)

Multiple XLite FTP bugs
updated since 18.12.2003
Published:16.02.2004
Source:SECURITEAM
SecurityVulns ID:3325
Type:remote
Level:5/10
Description:Directory traversal, DoS.
Affected:XLIGHTFTPD : Xlight FTP Server 1.40
 XLIGHTFTPD : Xlight FTP Server 1.51
 XLIGHTFTPD : Xlight FTP Server 1.52
Original documentdocumentintuit bug_hunter, Xlight ftp server 1.52 RETR bug (16.02.2004)
 documentintuit bug_hunter, Remote crash Xlight ftp server 1.52 (06.02.2004)
 documentSECURITEAM, [NT] Xlight FTP Server Directory Traversal and DoS (18.12.2003)
Discuss:Read or add your comments to this news (0 comments)

CGI bugs
updated since 16.02.2004
Published:20.02.2004
Source:
SecurityVulns ID:3444
Type:remote
Level:5/10
Affected:VBULLETIN : vBulletin 3.0
 EARLYIMPACT : ProductCart
 YABB : YaBB 1.5
 CGIEMAIL : cgiemail 1.6
 MONOGOSEARCH : mnogosearch 3.2
 ASPPORTAL : ASP Portal
 ALLMYGUESTS : AllMyGuests
 ALLMYVISITORS : AllMyVisitors
 ALLMYLINK : AllMyLinks
 YABB : YaBB 1.3
 GGMATE : ShopCartCGI 2.3
 ECOMMERCE : Online Store Kit 3.0
 OWLS : OWLS 1.0
 WEBCORTEX : Webstores2000 6.0
 PBDB : PunkBuster
Original documentdocumentJust1n T1mberlake, PunkBuster SQL Injection Attack (20.02.2004)
 documentNick Gudov, WebCortex Webstores2000 version 6.0 multiple security vulnerabilities (18.02.2004)
 documentZetaLabs, ZH2004-07SA (security advisory): Multiple Sql injection vulnerabilities in Online Store Kit 3.0 Products (Lite - Standard and Pro) (18.02.2004)
 documentSECURITEAM, [UNIX] OWLS Remote Arbitrary Files Disclosure (18.02.2004)
 documentSECURITEAM, [UNIX] Online Store Kit SQL Injection Vulnerability (17.02.2004)
 documentZetaLabs, ZH2004-06SA (security advisory): ShopCartCGI v2.3 Remote arbitrary file retrieving (17.02.2004)
 documentDavid Cantrell, YABB information leakage on failed login (17.02.2004)
 documentbackspace, Another YabbSE SQL Injection (17.02.2004)
 documentPablo Santana, AllMyLinks PHP Code Injection vulnerability (17.02.2004)
 documentPablo Santana, AllMyVisitors PHP Code Injection vulnerability (17.02.2004)
 documentPablo Santana, AllMyGuests PHP Code Injection vulnerability (17.02.2004)
 documentS-Quadra Security Research, [Full-Disclosure] EarlyImpact ProductCart shopping cart software multiple security vulnerabilities (17.02.2004)
 documentManuel López, ASP Portal Multiple Vulnerabilities (16.02.2004)
 documentJedi/Sector One, Buffer overflow in mnoGoSearch (16.02.2004)
 documentDEBIAN, [SECURITY] [DSA 437-1] New cgiemail packages fix open mail relaying (16.02.2004)
 documentJamie Fisher, Cross Site Scripting in VBulletin forum software (16.02.2004)
 documentRafel Ivgi, vBulletin PHP Forum Version (16.02.2004)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server