Computer Security
[EN] securityvulns.ru
no-pyccku



Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)
Published:16.06.2009
Source:
SecurityVulns ID:9993
Type:remote
Level:5/10
Description:PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc.
Affected:TRANSLUCID : transLucid 1.75
 WEBMADIAEXPLORER : Webmedia Explorer 5.0
 TBDEV : TBDev 01-01-2008
 SKYBLUECANVAS : SkyBlueCanvas 1.1
 SUGARCRM : SugarCRM 5.2
 PIVOT : Pivot 1.40
Original documentdocumentJanek Vind, [waraxe-2009-SA#074] - Multiple Vulnerabilities in TorrentTrader Classic 1.09 (16.06.2009)
 documentascii, SugarCRM 5.2.0e Remote Code Execution (16.06.2009)
 documentonur.turkeshan_(at)_hotmail.com, CakeCMS XSRF Vulnerability (16.06.2009)
 documentsecurity_(at)_intern0t.net, [InterN0T] Pivot 1.40.4-7 - Multiple Vulnerabilities (16.06.2009)
 documentsecurity_(at)_intern0t.net, [InterN0T] SkyBlueCanvas 1.1 r237 - Multiple Vulnerabilities (16.06.2009)
 documentsecurity_(at)_intern0t.net, [InterN0T] TBDev 01-01-2008 - Multiple Vulnerabilities (16.06.2009)
 documentsecurity_(at)_intern0t.net, [InterN0T] transLucid 1.75 - Multiple Vulnerabilities (16.06.2009)
 documentsecurity_(at)_intern0t.net, [InterN0T] Webmedia Explorer - XSS Vulnerability (16.06.2009)
Discuss:Read or add your comments to this news (0 comments)

Netgear DG632 router multiple security vulnerabilities
Published:16.06.2009
Source:BUGTRAQ
SecurityVulns ID:9995
Type:remote
Level:5/10
Description:Authentication bypass and DoS via web interface.
Affected:NETGEAR : Netgear DG632
Original documentdocumentTom Neaves, Netgear DG632 Router Authentication Bypass Vulnerability (16.06.2009)
 documentTom Neaves, Netgear DG632 Router Remote DoS Vulnerability (16.06.2009)
Discuss:Read or add your comments to this news (0 comments)

CA ARCserve Backup DoS
Published:16.06.2009
Source:FULL-DISCLOSURE
SecurityVulns ID:9996
Type:remote
Level:5/10
Description:Crash on malfrmed TCP/6503 RPC messages parsing.
Affected:CA : ARCserve Backup 12.0
CVE:CVE-2009-1761 (The message engine in CA ARCserve Backup r12.0 and r12.0 SP1 for Windows allows remote attackers to cause a denial of service (crash) via (1) an invalid 0x13 message, which is not properly handled in the ASCORE module, or (2) a 0x3B message with invalid stub data that triggers an RPC marshalling error.)
Original documentdocumentCA, [Full-disclosure] CA20090615-01: CA ARCserve Backup Message Engine Denial of Service Vulnerabilities (16.06.2009)
 documentiViZ Security Advisories, [Full-disclosure] [IVIZ-09-004] CA ARCserve Denial of Service (16.06.2009)
 documentiViZ Security Advisories, [Full-disclosure] [IVIZ-09-003] CA ARCserve Denial of Service (16.06.2009)
Discuss:Read or add your comments to this news (0 comments)

Link Logger syslogd DoS
Published:16.06.2009
Source:BUGTRAQ
SecurityVulns ID:9994
Type:remote
Level:5/10
Description:Crash on syslog traffic flood.
Affected:LINKLOGGER : Link Logger
Original documentdocumentmcyr2_(at)_csc.com, Link Logger syslogd resource overwhelm DoS (16.06.2009)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server