 |
|
|
|
| Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) | | Published: |  | 18.08.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 9228 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc.
WP-ContactForm for WordPress: Spamming,
Envolution: crossite scripting, informaiton leak. |
| MicroWorld MailScan multiple security vulnerabilities | | Published: |  | 18.08.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 9229 | | Type: |  | remote | | Level: |  | 6/10 | | Description: |  | Durectory traversal, authenticatio bypass, crossite scripting, informaiton leak via Web admin page (TCP/10443). |
| Cisco WebEx Meeting Manager ActiveX buffer overflow | | Published: |  | 18.08.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 9230 | | Type: |  | client | | Level: |  | 5/10 | | Description: |  | atucfobj.dll buffer overflow |
| CVE: |  | CVE-2008-2737 (** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2008-3558. Reason: This candidate is a duplicate of CVE-2008-3558. Notes: All CVE users should reference CVE-2008-3558 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.) |
| Amarok symbolic links vulnerability | | Published: |  | 18.08.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 9231 | | Type: |  | local | | Level: |  | 5/10 | | Description: |  | Unsafe temporary files creation. |
| Affected: |  | AMAROK : Amarok 1.4 | | CVE: |  | CVE-2008-3699 (The MagnatuneBrowser::listDownloadComplete function in magnatunebrowser/magnatunebrowser.cpp in Amarok before 1.4.10 allows local users to overwrite arbitrary files via a symlink attack on the album_info.xml temporary file.) |
| Nokia 6131 phones multiple security vulnerabilities | | Published: |  | 18.08.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 9232 | | Type: |  | client | | Level: |  | 5/10 | | Description: |  | URI spoofing, device crash. |
|
|
|
|
|
|
|
|