Computer Security
[EN] securityvulns.ru
no-pyccku



Knox Arkeya backup agent unauthorized access
Published:21.02.2005
Source:METASPLOIT
SecurityVulns ID:4512
Type:remote
Level:6/10
Description:It's possible to access remote filesystem with Arkeia backup agent installed.
Affected:KNOX : Arkeia Backup 5.3
Files:Arkeia Network Backup Client Remote Access
Discuss:Read or add your comments to this news (0 comments)

PuTTY SSH client integer overflow
updated since 21.02.2005
Published:22.02.2005
Source:SECUNIA
SecurityVulns ID:4511
Type:remote
Level:5/10
Description:Integer overflow in SFTP (SSH File Transfer Protocol) implementation.
Affected:PUTTY : PuTTY 0.56
Original documentdocumentIDEFENSE, iDEFENSE Security Advisory 02.21.05: Multiple PuTTY SFTP Client Packet Parsing Integer Overflow Vulnerabilities (22.02.2005)
 documentSECUNIA, [SA14333] PuTTY Two Integer Overflow Vulnerabilities (21.02.2005)
Discuss:Read or add your comments to this news (0 comments)

PHP, ASP, CGI web applications security vulnerabilities
updated since 21.02.2005
Published:27.02.2005
Source:
SecurityVulns ID:4510
Type:remote
Level:5/10
Description:PHP inclusions, SQL injections, directory traversals, crossite scripting, etc.
Affected:PHPBB : phpBB 2.0
 VBULLETIN : vBulletin 3.0
 PHPNUKE : PHP-Nuke 7.4
 MEDIAWIKI : MediaWiki 1.3
 PHPMYADMIN : phpMyAdmin 2.6
 MAMBO : Mambo 4.5
 PANEWS : paNews 2.0
 WEBCONNECT : WebConnect 6.4
 WEBCONNECT : WebConnect 6.5
 INL : Ulog-php 1.0
 IRM : IRM 1.5
 VERITY : Ultraseek 5.3
 IGENERIC : iGeneric eShop 1.2
 PBLANG : PBLang 4.65
 CYCLADES : AlterPath Manager 1.2
 GINP : ginp 0.21
 CHATANYWHERE : Chat Anywhere 2.72
 PUNBB : PunBB 1.2
 PHPWEBSITE : phpWebSite 0.10
 TWIKI : ImageGalleryPlugin 1.0
Original documentdocumentHaCkZaTaN, -==phpBB 2.0.12 Full path disclosure==- (27.02.2005)
 documentkreon, PHP-Nuke 7.4 WebLinks SQL-Injection (27.02.2005)
 documentSECUNIA, [SA14384] TWiki ImageGalleryPlugin Shell Command Injection (25.02.2005)
 documentHaCkZaTaN, phpWebSite 0.10.0 Full Path disclosure (25.02.2005)
 documentJohn Gumbel, Multiple vulns in punBB (25.02.2005)
 documentMaksymilian Arciemowicz, [SECURITYREASON.COM] phpMyAdmin 2.6.1 Remote file inclusion and XSS cXIb8O3.4 (25.02.2005)
 documenttjomka_(at)_navigator.lv, phpWebSite-0.10.0_exploit (25.02.2005)
 documenttjomka_(at)_navigator.lv, phpWebSite-0.10.0 эксплоит (25.02.2005)
 documentSECUNIA, [SA14382] phpMyAdmin Local File Inclusion and Cross-Site Scripting (24.02.2005)
 documentSECUNIA, [SA14385] Chat Anywhere User Credentials Disclosure (24.02.2005)
 documentSECUNIA, [SA14373] ginp Directory Traversal Vulnerability (24.02.2005)
 documentsullo, [Full-Disclosure] Cyclades AlterPath Manager Vulnerabilities (24.02.2005)
 documentRaven, Software PBLang 4.65 pm.php XSS vulnerability (24.02.2005)
 documentRaven, Software PBLang 4.65 pmpshow.php XSS vulnerability (24.02.2005)
 documentRaven, Software PBLang 4.65 search.php XSS vulnerability (24.02.2005)
 documentIDEFENSE, iDEFENSE Security Advisory 02.22.05: phpBB Group phpBB2 Arbitrary File Unlink Vulnerability (24.02.2005)
 documentpokleyzz, [SCAN Associates Security Advisory] vbulletin 3.0.6 and below php code injection (24.02.2005)
 documentJohn Cobb, [NOBYTES.COM: #5] iGeneric eShop 1.2 - Information Disclosure & Possible SQL Injection (24.02.2005)
 documentIDEFENSE, iDEFENSE Security Advisory 02.22.05: phpBB Group phpBB Arbitrary File Disclosure Vulnerability (24.02.2005)
 documentmatrix_killer ma3x, PHPBB 2.0.12 bug (24.02.2005)
 documentSECUNIA, [SA14367] Verity Ultraseek Search Request Cross-Site Scripting (22.02.2005)
 documentpokleyzz, [Full-Disclosure] : [SCAN Associates Security Advisory] vbulletin 3.0.6 and below php code injection (22.02.2005)
 documentSECUNIA, [SA14360] MediaWiki Multiple Vulnerabilities (22.02.2005)
 documentSECUNIA, [SA14362] phpBB Avatar Functions Information Disclosure and Deletion (22.02.2005)
 documentSECUNIA, [SA14342] IRM LDAP Login Security Bypass Vulnerability (22.02.2005)
 documentSECUNIA, [SA14337] Mambo "GLOBALS['mosConfig_absolute_path']" File Inclusion (22.02.2005)
 documentSECUNIA, [SA14321] Ulog-php SQL Injection Vulnerabilities (22.02.2005)
 documentCIRT Advisory, [Full-Disclosure] The WebConnect 6.4.4 and 6.5 contains several vulnerabilities (21.02.2005)
 documenttjomka_(at)_navigator.lv, paNews v2.0b4 - PHP Injection (21.02.2005)
Files:phpWebSite-0.10.0 exploit
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server