Computer Security
[EN] securityvulns.ru no-pyccku


IBM Lotus Sametime buffer overflow
Published:24.05.2008
Source:
SecurityVulns ID:9023
Type:remote
Threat Level:
5/10
Description:TCP/1533 oversized URL buffer overflow.
Original documentdocumentZDI, ZDI-08-028: IBM Lotus Sametime Community Services Multiplexer Stack Overflow Vulnerability (24.05.2008)

Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)
Published:24.05.2008
Source:
SecurityVulns ID:9024
Type:remote
Threat Level:
5/10
Description:PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc.
Affected:ABLEDATING : abledating 2.4
 QUATE : Quate CMS 0.3
 E107 : Blog Engine 2.2 plugin for e107
 ONECMS : OneCMS 2.5
Original documentdocumenthadihadi_zedehal_2006_(at)_yahoo.com, [DSECRG-08-025] Local File Include in OneCMS 2.5 (24.05.2008)
 documenthadihadi_zedehal_2006_(at)_yahoo.com, e107 Plugin BLOG Engine v2.2 (macgurublog.php/uid) Blind SQL Injection Vulnerability (24.05.2008)
 documentDigital Security Research Group [DSecRG], [DSECRG-08-024] Multiple Security Vulnerabilities (RFI,LFI,XSS) in QuateCMS (24.05.2008)
 documenta.jasbi_(at)_yahoo.com, abledating 2.4 >> Sql injection and cross site scripting on search_results.php (24.05.2008)

F5 BIG-IP crossite scripting
updated since 12.02.2008
Published:24.05.2008
Source:
SecurityVulns ID:8661
Type:remote
Threat Level:
4/10
Description:Crossite scripting in web admin console.
Affected:F5 : BIG-IP 9.4
Original documentdocumentRicardo Martins - Chief Security Officers, PR07-15: Cross-site Scripting (XSS) / HTML injection on F5 FirePass 4100 SSL VPN 'my.logon.php3' server-side script (24.05.2008)
 documentnnposter_(at)_disclosed.not, F5 BIG-IP Web Management Audit Log XSS (24.03.2008)
 documentnnposter_(at)_disclosed.not, F5 BIG-IP Web Management Console XSS (09.03.2008)
 documentnnposter_(at)_disclosed.not, F5 BIG-IP Web Management Console CSRF (with example) (12.02.2008)

Barracuda Spam Firewall crossite scripting
updated since 24.09.2007
Published:24.05.2008
Source:
SecurityVulns ID:8180
Type:remote
Threat Level:
5/10
Description:Crossite scripting with Web Syslog, with web administration login page.
Affected:BARRACUDENETWORK : Barracuda Spam Firewall 3.4
Original documentdocumentMark Crowther, IRM Security Advisory : Barracuda Networks Spam Firewall Cross-Site Scripting Vulnerability (24.05.2008)
 documentISR-noreply, [ISR] - Barracuda Spam Firewall. Cross-Site Scripting (24.09.2007)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod