 |
|
|
|
| Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) | | Published: |  | 25.04.2006 | | Source: |  | | | SecurityVulns ID: |  | 6044 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. |
| Original document |  | SECUNIA, [SA19801] PhpWebGallery "picture.php" Disclosure of Arbitrary Pictures (25.04.2006) |
| |  | spam_(at)_we11er.co.uk, Invision Vulnerabilities, including remote code execution (25.04.2006) |
| |  | arko.dhar_(at)_gmail.com, PhpWebFtp Cross Site Scripting Vulnerability (25.04.2006) |
| |  | aminrayden_(at)_yahoo.com, NextAge Shopping Cart Software XSS (25.04.2006) |
| |  | Dr-Jr7_(at)_hotmail.com, photokorn 1.53 , 1.542 << Sql (25.04.2006) |
| |  | SECUNIA, [SA19776] Help Center Live osTicket SQL Injection Vulnerabilities (25.04.2006) |
| |  | SECUNIA, [SA19792] SL_site Multiple Vulnerabilities and Weakness (25.04.2006) |
| |  | SECUNIA, [SA19749] built2go Movie Review "full_path" File Inclusion Vulnerability (25.04.2006) |
| |  | omnipresent_(at)_email.it, RIblog Remote SQL Injection Exploit (25.04.2006) |
| |  | arko.dhar_(at)_gmail.com, VWar Path Disclosure (25.04.2006) |
| |  | Aesthetico, [MajorSecurity] phpMyAgenda 3.0 Final - Remote File Include Vulnerability (25.04.2006) |
| |  | r0t, ampleShop™ eCommerce Software vuln. (25.04.2006) |
| Safari MacOS X DoS | | Published: |  | 25.04.2006 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 6046 | | Type: |  | client | | Level: |  | 5/10 | | Description: |  | Large rowspan number leads to CPU and memory consumption. |
| Winny P2Pclient buffer overflow | | Published: |  | 25.04.2006 | | Source: |  | EEYE | | SecurityVulns ID: |  | 6049 | | Type: |  | remote | | Level: |  | 5/10 |
| Multiple Ethereal security vulnerabilities | | Published: |  | 25.04.2006 | | Source: |  | ETHEREAL | | SecurityVulns ID: |  | 6050 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | ~30 errors on parsing different protocols. |
| dnsmasq DNS forwarder / DHCP server DoS | | Published: |  | 25.04.2006 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 6051 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | Crash on parsing malformed DHCP client request. |
| Nessus buffer overflow | | Published: |  | 25.04.2006 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 6052 | | Type: |  | local | | Level: |  | 5/10 | | Description: |  | Buffer overflow on parsing NASL (Nessus Attack Scripting Language) scripts. |
| Quick 'n Easy FTP Server buffer overflow | | Published: |  | 25.04.2006 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 6047 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | Buffer overflow on oversized command during logging. |
| iOpus Secure Email protection bypass | | Published: |  | 25.04.2006 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 6045 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | Any part of password can be used for decryption. |
abc2ps / abcmidi abc music files to postscript converter buffer overflow updated since 25.04.2006 | | Published: |  | 26.04.2006 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 6048 | | Type: |  | client | | Level: |  | 5/10 | | Description: |  | Buffer overflow on abc format parsing. |
|
|
|
|
|
|
|
|