Computer Security
[EN] securityvulns.ru
no-pyccku



LuxMan game buffer overflow
Published:16.03.2005
Source:BUGTRAQ
SecurityVulns ID:4578
Type:local
Level:5/10
Original documentdocumentKevin Finisterre, DMA[2005-0310a] - 'Frank McIngvale LuxMan buffer overflow' (16.03.2005)
Files:LuxMan buffer overflow exploit
Discuss:Read or add your comments to this news (0 comments)

GoodTech telnet server buffer overflow
Published:16.03.2005
Source:BUGTRAQ
SecurityVulns ID:4579
Type:remote
Level:5/10
Description:Buffer overflow in web administration interface.
Affected:GOODTECH : GoodTech Telnet Server 5.0
Original documentdocumentKomrade, GoodTech Telnet Server Buffer Overflow Vulnerability (16.03.2005)
Discuss:Read or add your comments to this news (0 comments)

Apache Tomcat JavaServer Page technology server AJP12 DoS
Published:16.03.2005
Source:CERT
SecurityVulns ID:4580
Type:remote
Level:5/10
Affected:APACHE : Tomcat 3.3
Original documentdocumentCERT, Apache Tomcat fails to properly handle certain requests (16.03.2005)
Discuss:Read or add your comments to this news (0 comments)

Multiple Microsoft Internet Explorer browser security vulnerabilities
updated since 09.02.2005
Published:16.03.2005
Source:MICROSOFT
SecurityVulns ID:4461
Type:remote
Level:8/10
Description:Drag-n-Drop vulnerability, URL Decoding Zone Spoofing Vulnerability, DHTML Method Heap Memory Corruption Vulnerability, Channel Definition Format (CDF) Cross Domain Vulnerability. This vulnerability can potentially be used for silent spyware or adware installation.
Affected:MICROSOFT : Internet Explorer 5.5
 MICROSOFT : Internet Explorer 6.0
Original documentdocumentliudieyu_(at)_umbrella.name, "Drop to STARTUP Folder II" published on 2005/02/08 (16.03.2005)
 documentValentin Avram, [Full Disclosure] Using DHTML XSS to launch HHCTRL exploit (16.02.2005)
 documentSECUNIA, [Full-Disclosure] Secunia Research: Microsoft Internet Explorer Multiple Vulnerabilities (11.02.2005)
 documentSECUNIA, [Full-Disclosure] Secunia Research: Microsoft Internet Explorer "createControlRange()" Memory Corruption (11.02.2005)
 documentMICROSOFT, Microsoft Security Bulletin MS05-014 Cumulative Security Update for Internet Explorer (867282) (09.02.2005)
Files:Drop to STARTUP Folder II exploit
 Microsoft Security Bulletin MS05-014 Cumulative Security Update for Internet Explorer (867282)
Discuss:Read or add your comments to this news (0 comments)

Multiple MySQL database vulnerabilities
updated since 11.03.2005
Published:16.03.2005
Source:VULNWATCH
SecurityVulns ID:4571
Type:remote
Level:6/10
Description:Symbolic links problem during tamporary database tables creation, loading dynamic library from untrusted source, buffer overflows, DoS.
Affected:MYSQL : MySQL 4.0
 MYSQL : MySQL 4.1
Original documentdocumentLuca Ercoli, Denial of Service Vulnerability in MySQL Server for Windows (16.03.2005)
 documentSECUNIA, [SA14564] MySQL MS-DOS Device Names Denial of Service Vulnerability (14.03.2005)
 documentStefano Di Paola, [VulnWatch] Mysql CREATE FUNCTION libc arbitrary code execution. (11.03.2005)
 documentStefano Di Paola, [VulnWatch] Mysql CREATE FUNCTION mysql.func table arbitrary library injection (11.03.2005)
 documentStefano Di Paola, [VulnWatch] Mysql insecure temporary file creation with CREATE TEMPORARY TABLE privilege escalation (11.03.2005)
Files:Mysql CREATE FUNCTION func table arbitrary library injection exploit
 Mysql CREATE FUNCTION libc arbitrary code execution exploit
Discuss:Read or add your comments to this news (0 comments)

LimeWire Gnutella peer-to-peer network agent directory traversal
Published:16.03.2005
Source:BUGTRAQ
SecurityVulns ID:4577
Type:remote
Level:6/10
Description:Directory traversal and absolute path during GET request profcessing.
Affected:LIMEWIRE : LimeWire 4.5
Original documentdocumentKevin Walsh, LimeWire Gnutella client two vulnerabilities (16.03.2005)
Discuss:Read or add your comments to this news (0 comments)

Novell iChain access control solution multiple bugs
updated since 30.08.2004
Published:16.03.2005
Source:SECUNIA
SecurityVulns ID:3954
Type:remote
Level:6/10
Description:DoS, information leak (including authentication data), crossite scripting, session hijacking.
Affected:NOVELL : iChain 2.3
Original documentdocumentFrancisco Amato, [ISR] Insecure communication and Reproduce the Session authentication (16.03.2005)
 documentFrancisco Amato, [ISR] - Novell iChain Mini FTP Server Bruteforce Problem (16.03.2005)
 documentFrancisco Amato, [ISR] - Novell iChain Mini FTP Server Unauthorized Remote Path Disclosure Vulnerability (16.03.2005)
 documentFrancisco Amato, [ISR] - Novell iChain Mini FTP Server Valid User Disclosure Vulnerability (16.03.2005)
 documentSECUNIA, [SA14537] Novell iChain FTP Server Path Disclosure Weakness (09.03.2005)
 documentSECUNIA, [SA14527] Novell iChain Administrator Session Hijacking Vulnerability (09.03.2005)
 documentSECUNIA, [SA14010] iChain Mutual Authentication Unauthorised Resource Access (27.01.2005)
 documentSECUNIA, [SA12366] iChain Multiple Vulnerabilities (30.08.2004)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru