Computer Security
[EN] securityvulns.ru
no-pyccku



SCO Internet Manager privilege escalation
Published:16.09.2003
Source:BUGTRAQ
SecurityVulns ID:3116
Type:local
Level:6/10
Description:It's possible to spoof authentication data lockally for suid CGI application.
Affected:SCO : OpenServer 5.0
Original documentdocumentSCO, OpenServer 5.0.7 OpenServer 5.0.6 OpenServer 5.0.5 : SCO Internet Manager - local users can gain root level privileges. (16.09.2003)
Discuss:Read or add your comments to this news (0 comments)

IBM Rational Clearcase buffer overflow
Published:16.09.2003
Source:SECURITEAM
SecurityVulns ID:3117
Type:local
Level:6/10
Description:Buffer overflows in few executables.
Affected:IBM : Rational Clearcase
Original documentdocumentSECURITEAM, [EXPL] Rational Clearcase Exploit Code Released (16.09.2003)
Files:ClearCase Smack_Crack_And_Hack_Attack Version 1.0.1
Discuss:Read or add your comments to this news (0 comments)

WideChapter buffer overflow
Published:16.09.2003
Source:BUGTRAQ
SecurityVulns ID:3118
Type:client
Level:5/10
Description:Buffer overflow on oversized URL.
Affected:WIDECHAPTER : WideChapter Browser 3.0
Original documentdocumentBahaa Naamneh, Buffer Overflow in WideChapter Browser (16.09.2003)
Discuss:Read or add your comments to this news (0 comments)

ChatZilla DoS
Published:16.09.2003
Source:BUGTRAQ
SecurityVulns ID:3119
Type:client
Level:5/10
Description:Large CPU consumption on oversized server requests.
Affected:CHATZILLA : ChatZilla 0.8
Original documentdocumentD4rkGr3y, ChatZilla <=v0.8.23 remote DoS vulnerability (16.09.2003)
Files:ChatZilla <=v0.8.23 remote DoS exploit
Discuss:Read or add your comments to this news (0 comments)

Multiple Nokia Electronic Documentation bugs
Published:16.09.2003
Source:BUGTRAQ
SecurityVulns ID:3120
Type:remote
Level:5/10
Description:Crossite scripting, path disclosure, open proxy.
Affected:NOKIA : Nokia Electronic Documentation 5.0
Original documentdocumentL0PHT, Nokia Electronic Documentation - Multiple Vulnerabilities (16.09.2003)
Discuss:Read or add your comments to this news (0 comments)

asterisk multiple bugs
updated since 08.09.2003
Published:16.09.2003
Source:SECURITEAM
SecurityVulns ID:3096
Type:remote
Level:6/10
Description:Buffer overflow during SIP negotiation, SQL injection.
Affected:ASTERISK : asterisk 0.4
Original documentdocumentSECURITEAM, [UNIX] Asterisk CallerID CDR SQL Injection (16.09.2003)
 documentSECURITEAM, [NEWS] Asterisk SIP Implementation Issue (08.09.2003)
Discuss:Read or add your comments to this news (0 comments)

CGI bugs
updated since 16.09.2003
Published:19.09.2003
Source:
SecurityVulns ID:3121
Type:remote
Level:5/10
Affected:JELSOFT : vBulletin 2.2
 BANDSITE : Bandsite Portal System 1.5
 SPAIZNUKE : SPAIZ-NUKE 1.1
 MAMBO : Mambo 4.0
Original documentdocumentLifo Fifo, Several Mambo 4.0.14 Stable Exploits (19.09.2003)
 documentRoberto, vBulletin Multiple Cross Site Scripting Vulnerabilities (19.09.2003)
 document1dt.w0lf, SPAIZ-NUKE v1.1 XSS bug (19.09.2003)
 documentSECURITEAM, [UNIX] Vulnerability in Bandsite Allows Gaining Admin Access (16.09.2003)
Discuss:Read or add your comments to this news (0 comments)

Unauthorized Solaris sadmind access
updated since 16.09.2003
Published:19.09.2003
Source:SECURITEAM
SecurityVulns ID:3122
Type:remote
Level:8/10
Description:It's possible to bypass authentication process by sequence of specially crafted RPC calls.
Original documentdocumentH D Moore, Solaris SADMIND Exploitation (19.09.2003)
 documentSECURITEAM, [UNIX] Remote Root Exploitation of Default Solaris sadmind Setting (16.09.2003)
Files:Remote command executiong via sadmind
Discuss:Read or add your comments to this news (0 comments)

OpenSSD memory corruption
updated since 16.09.2003
Published:19.09.2003
Source:BUGTRAQ
SecurityVulns ID:3123
Type:remote
Level:6/10
Description:Because of memory allocation problems it's possible to overwrite memory block with zeros.
Affected:OPENSSH : openssh 3.4
 CISCO : CiscoWorks 1105
 CISCO : Cisco SN 5428
 LSH : lsh 1.4
Original documentdocumentCISCO, Cisco Security Advisory: OpenSSH Server Vulnerabilities (17.09.2003)
 documentCERT, CERT Advisory CA-2003-24 Buffer Management Vulnerability in OpenSSH (17.09.2003)
 documentX-FORCE, ISS Security Brief: OpenSSH Memory Corruption Vulnerability (17.09.2003)
 documentENGARDE, [ESA-20030916-023] OpenSSH buffer management error. (16.09.2003)
Files:exploit for lsh 1.4.x
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru