 |
|
|
|
| Lyris list manager multiple security vulnerabilities | | Published: |  | 20.02.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8705 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | Privilege escalation. |
| NowSMS SMS/MMS gateway multiple security vulnerabilities | | Published: |  | 20.02.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8708 | | Type: |  | remote | | Level: |  | 6/10 | | Description: |  | Buffer overflows on authentication and on SMPP packets parsing. |
| Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) | | Published: |  | 20.02.2008 | | Source: |  | | | SecurityVulns ID: |  | 8704 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc.
Power Phlogger: multiple XSS. |
| Original document |  | ProCheckUp Research, PR06-12: XSS on BEA Plumtree Foundation and AquaLogic Interaction portals (20.02.2008) |
| |  | jplopezy_(at)_gmail.com, SmarterMail Enterprise 4.3 - malformed mail XSS (20.02.2008) |
| |  | nbbn_(at)_gmx.net, WoltLab Burning Board 3.0.3 PL1 SQL-Injection Vulnerability (20.02.2008) |
| |  | Digital Security Research Group [DSecRG], bugtraq@securityfocus.com, vuln@secunia.com, packet@packetstormsecurity.org (20.02.2008) |
| |  | ProCheckUp Research, PR08-01: Several XSS, a cross-domain redirect and a webroot disclosure on Spyce - Python Server Pages (PSP) (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, PHP-Nuke Module Web_Links SQL Injection(cid) (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, XOOPS Module eEmpregos SQL Injection(cid) (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, XOOPS Module wflinks SQL Injection(cid) (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, XOOPS Module classifieds SQL Injection(cid) (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, joomla SQL Injection(com_magazine) (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, XOOPS Module seminars SQL Injection (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, XOOPS Module badliege SQL Injection (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, XOOPS Module events SQL Injection (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, XOOPS Module vacatures SQL Injection (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, joomla SQL Injection(com_foevpartners) (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, joomla SQL Injection(com_genealogy) (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, joomla SQL Injection(com_listoffreeads) (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, joomla SQL Injection(com_facileforms) (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, XOOPS Module myTopics-print SQL Injection(articleid) (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, joomla SQL Injection(com_geoboerse) (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, XOOPS Module wflinks SQL Injection(cid) (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, joomla SQL Injection(com_detail) (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, joomla SQL Injection(com_team (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, joomla SQL Injection(com_formtool) (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, joomla SQL Injection(com_iigcatalog) (20.02.2008) |
| |  | hackturkiye.hackturkiye_(at)_gmail.com, XOOPS Module section SQL Injection(articleid) (20.02.2008) |
| |  | Digital Security Research Group [DSecRG], [DSECRG-08-015] Multiple Security Vulnerabilities in Dokeos 1.8.4 (20.02.2008) |
| FreeSSHd DoS | | Published: |  | 20.02.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8707 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | NULL pointer dereference on SSH2_MSG_NEWKEYS message. |
| Foxit Remote Access Server (WAC Server) multiple security vulnerabilities | | Published: |  | 20.02.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8709 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | Buffer overflow with telnet options, buffer overflow on oversized SSH packet. |
| webcamXP information leak | | Published: |  | 20.02.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8710 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | Memory content leakage. |
PCRE library buffer overflow updated since 20.02.2008 | | Published: |  | 17.04.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 8706 | | Type: |  | library | | Level: |  | 7/10 | | Description: |  | Buffer overflows on regular expressins with codepoints greatr than 255. |
| Affected: |  | PCRE : pcre 4.5 | | |  | CHIKEN : chicken 3.1 | | CVE: |  | CVE-2008-1026 | | |  | CVE-2008-0674 | | |  | CVE-2006-7228 (Integer overflow in Perl-Compatible Regular Expression (PCRE) library before 6.7 might allow context-dependent attackers to execute arbitrary code via a regular expression that involves large (1) min, (2) max, or (3) duplength values that cause an incorrect length calculation and trigger a buffer overflow, a different vulnerability than CVE-2006-7227. NOTE: this issue was originally subsumed by CVE-2006-7224, but that CVE has been REJECTED and split.) |
|
|
|
|
|
|
|
|