 |
|
|
|
| Agnitum Outpost protection bypass | | Published: |  | 24.07.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 9169 | | Type: |  | local | | Level: |  | 5/10 | | Description: |  | File protection bypass with special characters in filenames. |
| Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) | | Published: |  | 24.07.2008 | | Source: |  | | | SecurityVulns ID: |  | 9168 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc.
Nucleus: information leak, SQL injection, crossite scripting, automation protection bypass. |
| Wireshark sniffer DoS | | Published: |  | 24.07.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 9170 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | Application crash on network traffic parsing. |
| Affected: |  | WIRESHARK : Wireshark 1.0 | | |  | WIRESHARK : Tshark 1.0 | | CVE: |  | CVE-2008-3145 (The fragment_add_work function in epan/reassemble.c in Wireshark 0.8.19 through 1.0.1 allows remote attackers to cause a denial of service (crash) via a series of fragmented packets with non-sequential fragmentation offset values, which lead to a buffer over-read.) |
| Asterisk multiple security vulnerabilities | | Published: |  | 24.07.2008 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 9171 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | Traffic amplification, DoS with resouurces exhaustion. |
| Affected: |  | ASTERISK : Asterisk 1.0 | | |  | ASTERISK : Asterisk 1.2 | | |  | ASTERISK : Asterisk 1.4 | | CVE: |  | CVE-2008-3264 (The FWDOWNL firmware-download implementation in Asterisk Open Source 1.0.x, 1.2.x before 1.2.30, and 1.4.x before 1.4.21.2; Business Edition A.x.x, B.x.x before B.2.5.4, and C.x.x before C.1.10.3; AsteriskNOW; Appliance Developer Kit 0.x.x; and s800i 1.0.x before 1.2.0.1 allows remote attackers to cause a denial of service (traffic amplification) via an IAX2 FWDOWNL request.) | | |  | CVE-2008-3263 (The IAX2 protocol implementation in Asterisk Open Source 1.0.x, 1.2.x before 1.2.30, and 1.4.x before 1.4.21.2; Business Edition A.x.x, B.x.x before B.2.5.4, and C.x.x before C.1.10.3; AsteriskNOW; Appliance Developer Kit 0.x.x; and s800i 1.0.x before 1.2.0.1 allows remote attackers to cause a denial of service (call-number exhaustion and CPU consumption) by quickly sending a large number of IAX2 (IAX) POKE requests.) |
|
|
|
|
|
|
|
|