Computer Security
[EN] securityvulns.ru
no-pyccku



CGI bugs
updated since 18.03.2003
Published:20.03.2003
Source:BUGTRAQ
SecurityVulns ID:2667
Type:remote
Level:5/10
Affected:PHPNUKE : PHP-Nuke 6.0
 MAMBO : Mambo Site Server 4.0
 NUKEDCLAN : Nuked-Klan 1.3
 MYABRACADAWEB : MyABraCaDaWeb 1.0
 PHPNUKE : PHP-Nuke 5.5
 NARA : Kebi Academy 2001
 SIPS : SIPS 0.2
 EZ : ezPublish 2.2
 DCPPORTAL : DCP-Portal 5.3
 SITEFRAME : Siteframe 2.2
 BASITONLINE : Basit cms 1.0
 2YD : WF-Chat 1.0
 XOOPS : xoops 2.0
Original documentdocumentDaniel Alcántara de la Hoz, [IPS] osCommerce multiple XSS vulnerabilities (20.03.2003)
 documentGregory Le Bras | Security Corporation, [SCSA-011] Path Disclosure Vulnerability in XOOPS (20.03.2003)
 documentsubj, WF-Chat (19.03.2003)
 documentErtan Kurt, Some XSS vulns (19.03.2003)
 documentsubj, PHP Message Board/Guestbook (19.03.2003)
 documentsubj, SIPS (PHP) (19.03.2003)
 documentdong-h0un U, [INetCop Security Advisory #2002-0x82-013] Kebi Academy 2001 Web Solution Directory Traversing Vulnerability. (18.03.2003)
 documentRynho Zeros Web, PHP-Nuke 5.5 and 6.0: Path Disclosure (18.03.2003)
 documentGregory Le Bras | Security Corporation, [SCSA-010] Path Disclosure & Cross Site Scripting Vulnerability in MyABraCaDaWeb (18.03.2003)
Discuss:Read or add your comments to this news (0 comments)

Multiple linux kernel problems
updated since 19.03.2003
Published:20.03.2003
Source:BUGTRAQ
SecurityVulns ID:2668
Type:local
Level:6/10
Description:Standard bug set: problems with ptrace, mmap and ethernet drivers.
Affected:LINUX : kernel 2.2
 LINUX : kernel 2.4
Original documentdocumentAndrzej Szombierski, linux kmod/ptrace bug - details (20.03.2003)
 documentENGARDE, [ESA-20030318-009] Several 'kernel' vulnerabilities (19.03.2003)
Files:Linux kernel ptrace/kmod local root exploit
Discuss:Read or add your comments to this news (0 comments)

Windows Script Engine integer overflow
Published:20.03.2003
Source:MICROSOFT
SecurityVulns ID:2669
Type:client
Level:7/10
Description:Integer overflow on array's sort() function.
Affected:MICROSOFT : Windows NT 4.0 Workstation
 MICROSOFT : Windows NT 4.0 Server
 MICROSOFT : Windows 2000 Server
 MICROSOFT : Windows 2000 Professional
 MICROSOFT : Windows 98
 MICROSOFT : Windows ME
 MICROSOFT : Windows XP
Original documentdocumentMICROSOFT, Microsoft Security Bulletin MS03-008: Flaw in Windows Script Engine Could Allow Code Execution (814078) (20.03.2003)
 documentIDEFENSE, iDEFENSE Security Advisory 03.19.03: Heap Overflow in Windows Script Engine (20.03.2003)
Discuss:Read or add your comments to this news (0 comments)

Microsoft ISA Server DNS publishing DoS
Published:20.03.2003
Source:BUGTRAQ
SecurityVulns ID:2670
Type:remote
Level:5/10
Description:Incomplete DNS request DoS.
Affected:MICROSOFT : ISA Server 2000
Original documentdocumentMICROSOFT, Microsoft Security Bulletin MS03-009: Flaw In ISA Server DNS Intrusion Detection Filter Can Cause Denial Of Service (331065) (20.03.2003)
Discuss:Read or add your comments to this news (0 comments)

Kaspersky Antihacker DoS
Published:20.03.2003
Source:BUGTRAQ
SecurityVulns ID:2671
Type:remote
Level:5/10
Description:By performing attack from spoofed addresses it's possible to block user's access to legitimate sites.
Affected:KASPERSKY : Kaspersky Anti-Hacker 1.0
Original documentdocumentBojan Zdrnja, Easy DoS on Kaspersky Anti-Hacker v1.0 (20.03.2003)
Discuss:Read or add your comments to this news (0 comments)

Klima-Pokorny-Rosa attack on PKCS #1 v1.5 padding
Published:20.03.2003
Source:BUGTRAQ
SecurityVulns ID:2672
Type:remote
Level:7/10
Description:On some conditions it's possible server's private key to be applied to attacker choosen ciphertext.
Affected:OPENSSL : OpenSSL 0.9
Original documentdocumentBodo Moeller, [OpenSSL Advisory] Klima-Pokorny-Rosa attack on PKCS #1 v1.5 padding (20.03.2003)
Discuss:Read or add your comments to this news (0 comments)

Multiple vulnerabilities in Ximian 's Evolution
Published:20.03.2003
Source:COBALT
SecurityVulns ID:2673
Type:remote
Level:6/10
Description:Heap corruption in UUEncode handling, crossite scripting, client fingerprinting.
Affected:XIMIAN : Ximian Evolution 1.2
Original documentdocumentCORE SECURITY TECHNOLOGIES ADVISORIES, CORE-2003-03-04-01: Multiple vulnerabilities in Ximian 's Evolution Mail User Agent (20.03.2003)
Discuss:Read or add your comments to this news (0 comments)

mutt/balsa buffer overflow
updated since 20.03.2003
Published:20.03.2003
Source:BUGTRAQ
SecurityVulns ID:2674
Type:client
Level:5/10
Description:Buffer overflow in IMAP code.
Affected:MUTT : mutt 1.4
 MUTT : Mutt 1.5
 BALSA : Balsa 1.2
Original documentdocumentCONECTIVA, [CLA-2003:630] Conectiva Security Announcement - balsa (23.04.2003)
 documentCORE SECURITY TECHNOLOGIES ADVISORIES, CORE-20030304-02: Vulnerability in Mutt Mail User Agent (21.03.2003)
 documentThomas Roessler, mutt-1.4.1 fixes a buffer overflow. (20.03.2003)
Discuss:Read or add your comments to this news (0 comments)

IBM Tivoli Firewall Security Toolbox buffer overflow
Published:20.03.2003
Source:BUGTRAQ
SecurityVulns ID:2675
Type:remote
Level:6/10
Description:Buffer overflow from client side.
Affected:IBM : Tivoli Firewall Toolbox 1.2
Original documentdocumentNiels Heinen, IBM Tivoli Firewall Security Toolbox buffer overflow vulnerability (20.03.2003)
Discuss:Read or add your comments to this news (0 comments)

Buffer overflow in Sun rpc
updated since 31.07.2002
Published:20.03.2003
Source:X-FORCE
SecurityVulns ID:2200
Type:remote
Level:10/10
Description:Buffer overflow in xdr_array primitive
Affected:IBM : AIX 4.3
 SUN : Solaris 2.6
 MIT : Kerberos 5
 SGI : IRIX 6.5
 SUN : Solaris 8
 SUN : Solaris 7
 GNU : glibc 2.2
 IBM : AIX 5.1
 GNU : glibc 2.1
 FREEBSD : FreeBSD 4.4
 FREEBSD : FreeBSD 4.5
 SUN : Solaris 9
 FREEBSD : FreeBSD 4.6
 OPENAFS : OpenAFS 1.0
 OPENAFS : OpenAFS 1.1
 OPENAFS : OpenAFS 1.2
 OPENAFS : OpenAFS 1.3
 MICROSOFT : Services for Unix 3.0
 IBM : AIX 5.2
 GLIBC : glibc 2.3
Original documentdocumentTom Yu, MITKRB5-SA-2003-003: faulty length checks in xdrmem_getbytes (20.03.2003)
 documentCERT, CERT Advisory CA-2003-10 Integer overflow in Sun RPC XDR library routines (20.03.2003)
 documentREDHAT, [RHSA-2003:089-00] Updated glibc packages fix vulnerabilities in RPC XDR decoder (20.03.2003)
 documentEEYE, EEYE: XDR Integer Overflow (20.03.2003)
 documentMICROSOFT, Security Bulletin MS02-057: Flaw in Services for Unix 3.0 Interix SDK Could Allow Code Execution (Q329209) (03.10.2002)
 documentCERT, Advisory CA-2002-25 Integer Overflow In XDR Library (06.08.2002)
 documentMIT, MITKRB5-SA-2002-001: Remote root vulnerability in MIT krb5 admin system (03.08.2002)
 documentX-FORCE, ISS Security Brief: Remote Buffer Overflow Vulnerability in Sun RPC (31.07.2002)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru