Computer Security
[EN] securityvulns.ru
no-pyccku



SAP sapdba for Informix database administration utility privilege escalation
Published:18.05.2006
Source:FULL-DISCLOSURE
SecurityVulns ID:6154
Type:local
Level:5/10
Description:Improper environment cariables validation allows to run any command with informix rights.
Affected:SAP : sapdba 700
Original documentdocumentLeandro Meiners, [Full-disclosure] CYBSEC - Security Pre-Advisory: Local Privilege Escalation in SAP sapdba Command (18.05.2006)
Discuss:Read or add your comments to this news (0 comments)

libextractor buffer overflow
Published:18.05.2006
Source:BUGTRAQ
SecurityVulns ID:6155
Type:library
Level:6/10
Description:Heap memory overflow on ASF streams and QuickTime parsing.
Affected:LIBEXTRACTOR : libextractor 0.5
Original documentdocumentLuigi Auriemma, Two heap overflow in libextractor 0.5.13 (rev 2832) (18.05.2006)
Discuss:Read or add your comments to this news (0 comments)

Mobotix network cameras crossite scripting
Published:18.05.2006
Source:BUGTRAQ
SecurityVulns ID:6156
Type:remote
Level:5/10
Description:Multiple crossite scriptign possibilities.
Affected:MOBOTIX : Mobotix M1
 MOBOTIX : Mobotix M10
Original documentdocumentjaime.blasco_(at)_eazel.es, Mobotix IP Network Cameras Multiple XSS (18.05.2006)
Discuss:Read or add your comments to this news (0 comments)

Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)
Published:18.05.2006
Source:BUGTRAQ
SecurityVulns ID:6153
Type:remote
Level:5/10
Description:PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc.
Affected:PHPBB : phpBB 2.0
 BOASTMACHINE : boastMachine 3.1
 OPENWIKI : OpenWiki 0.78
 SNITZ : Snitz Forums Avatar MOD 1.3
 BITRIX : Bitrix CMS 4.1
 DIESEL : Diesel PHP Job Site
 SCOZNEWS : ScozNews 1.2
Original documentdocumentSECUNIA, [SA20155] Serendipity Entry Manager Cross-Site Request Forgery (18.05.2006)
 documentSECUNIA, [SA20156] ScozNews "CONFIG[main_path]" File Inclusion Vulnerabilities (18.05.2006)
 documentMatt Gibson, [Full-disclosure] [Info Disclosure] Diesel PHP Job Site Latest Version (18.05.2006)
 documentGogi The Georgian, [Full-disclosure] Multiple Vulns in Bitrix CMS (18.05.2006)
 documentCodeScan Labs, [Full-disclosure] CodeScan Advisory: Avatar MOD v1.3 for Snitz Forums v3.4 - Arbitrary File Upload (18.05.2006)
 documentLiNuX_rOOt1_(at)_hotmail.com, OpenWiki<--v0.78 Cross-Site Scripting (18.05.2006)
 documentSpiderZ, phpBB Mod [2.0.20] SQL Backup ( Remote File Inclusion ) (18.05.2006)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru