Computer Security
[EN] securityvulns.ru
no-pyccku



sup format string bug
Published:21.06.2004
Source:FULL-DISCLOSURE
SecurityVulns ID:3771
Type:remote
Level:5/10
Description:Format string bug on syslog() call.
Affected:SUP : sup 1.8
Discuss:Read or add your comments to this news (0 comments)

ircd-ratbox/ircd-hybrid message flood DoS
Published:21.06.2004
Source:BUGTRAQ
SecurityVulns ID:3769
Type:remote
Level:5/10
Description:If sender type is unknown message rate limitation causes messages to be accumulated in memory.
Affected:HYBRID : ircd-hybrid 7.0
 RATBOX : ircd-ratbox 1.5
 RATBOX : ircd-ratbox 2.0
Original documentdocumentErik Sperling Johansen, ircd-hybrid-7 / ircd-ratbox low-bandwidth DoS (21.06.2004)
Files:Proof of concept - remote ircd-hybrid-7/ircd-ratbox DoS
Discuss:Read or add your comments to this news (0 comments)

Format string bug in super
updated since 31.07.2002
Published:21.06.2004
Source:BUGTRAQ
SecurityVulns ID:2198
Type:local
Level:5/10
Description:Format string bug on syslog call
Affected:SUPER : super 3.18
 SUPER : super 3.16
Original documentdocumentDEBIAN, [Full-Disclosure] [SECURITY] [DSA 522-1] New super packages fix format string vulnerability (21.06.2004)
 documentGOBBLES_(at)_hushmail.com, The SUPER Bug (31.07.2002)
Discuss:Read or add your comments to this news (0 comments)

rlpr format string bug
updated since 21.06.2004
Published:25.06.2004
Source:FULL-DISCLOSURE
SecurityVulns ID:3772
Type:remote
Level:5/10
Description:syslog() format string bug.
Affected:RLPR : rlpr 2.02
Original documentdocumentjaguar_(at)_felinemenace.org, Rlpr Advisory (25.06.2004)
 documentDEBIAN, [Full-Disclosure] [SECURITY] [DSA 524-1] New rlpr packages fix multiple vulnerabilities (21.06.2004)
Files:rlprd 2.0.4 remote root exploit
Discuss:Read or add your comments to this news (0 comments)

CGI bugs
updated since 21.06.2004
Published:26.06.2004
Source:BUGTRAQ
SecurityVulns ID:3770
Type:remote
Level:5/10
Affected:VBULLETIN : vBulletin 3.0
 PHPNUKE : Php-Nuke 7.3
 WEBMIN : Usermin 1.070
 WWWSQL : www-sql 0.5
 SQWEBMAIL : Sqwebmail 4.0
 OSTICKET : osTicket STS 1.2
 ARBITROWEB : ArbitroWeb
 ZWS : ZWS Newsletter
 SWSOFT : Confixx
 WEBSOFT : Help Desk Pro 2.0
Original documentdocumentD'Amato Luigi, [Full-Disclosure] ZH2004-13SA (security advisory): Sql Injection in Help Desp Pro 2.0 (26.06.2004)
 documentAdam n30n Simuntis, artmedic_links5 PHP Script (include path) vuln (26.06.2004)
 documentDirk Pirschel, [Full-Disclosure] Security hole in Confixx backup script (25.06.2004)
 documentGaMeS GaMeS, ZWS Newsletter & Mailing List Manager (25.06.2004)
 documentCheng Peng Su, vBulletin HTML Injection Vuln (25.06.2004)
 documentJanek Vind, [Full-Disclosure] [waraxe-2004-SA#033 - Multiple security holes in PhpNuke - part 1] (23.06.2004)
 documentJosh Gilmour, ArbitroWeb v0.6 Javascript injection vulnerability (23.06.2004)
 documentGuy Pearce, Multiple osTicket exploits! (23.06.2004)
 documentLuca Legato, XSS vulnerability in Sqwebmail 4.0.4 (23.06.2004)
 documentDEBIAN, [Full-Disclosure] [SECURITY] [DSA 523-1] New www-sql packages fix buffer overflow (21.06.2004)
 documentSNS, [SNS Advisory No.73] Usermin Cross-site Scripting Vulnerability (21.06.2004)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server