Computer Security
[EN] securityvulns.ru
no-pyccku



CGI bugs
updated since 22.09.2003
Published:25.09.2003
Source:
SecurityVulns ID:3131
Type:remote
Level:5/10
Affected:MONDOSOFT : MondoSearch 4.4
 MYPHPNUKE : myPHPNuke 1.8
 POWERSLAVE : Powerslave 4.3
 SEPCITY : Community Wizard 5.1
 NETUP : UserTraffManager 3.0
 NETUP : UserTraffManager 4.0
 MONDOSOFT : MondoSearch 5.0
 MONDOSOFT : Mondosearch 5.1
 YMONDA : Thread-IT Message Board
 REBOOTD : Re-Boot Design ASP Forum Version 1.01
 YMONDA : Comment Board
 YMONDA : Thread-ITSQL
Original documentdocumentBahaa Naamneh, Thread-ITSQL XSS Vulnerability (25.09.2003)
 documentBahaa Naamneh, Comment Board XSS Vulnerability (25.09.2003)
 documentBahaa Naamneh, Re-Boot Design ASP Forum SQL injection Vulnerability (25.09.2003)
 documentBahaa Naamneh, Thread-IT Message Board XSS Vulnerability (25.09.2003)
 documentJens H. Christensen, [Full-Disclosure] MondoSoft File Creation vulnerability (24.09.2003)
 documentGleb Smirnoff, Multiple Security Issues in Netup UTM (22.09.2003)
 documentBahaa Naamneh, Admin Access Vulnerability in Community Wizard (22.09.2003)
 documentEnrico Kern, [Advisory] Powerslave 4.3 Information Leak Vuln. (22.09.2003)
 documentLifo Fifo, Vulnrability in myPHPnuke 1.8.8 (22.09.2003)
Discuss:Read or add your comments to this news (0 comments)

Guardian Digital WebTool information leak
Published:25.09.2003
Source:BUGTRAQ
SecurityVulns ID:3138
Type:remote
Level:5/10
Description:ssh passphrase can be seen in log files.
Affected:ENGARDE : EnGarde Secure Community 2
 ENGARDE : EnGarde Secure Professional 1.5
Original documentdocumentENGARDE, [ESA-20030924-026] 'WebTool-userpass' passphrase disclosure vulnerability. (25.09.2003)
Discuss:Read or add your comments to this news (0 comments)

TCLHttpd multiple bugs
Published:25.09.2003
Source:BUGTRAQ
SecurityVulns ID:3139
Type:remote
Level:6/10
Description:Directory traversal, crosite scripting.
Affected:TCL : TCLHttpd 3.4
Original documentdocumentPhuong Nguyen, TCLHttpd Server - Multiple Vulnerabilities (25.09.2003)
Discuss:Read or add your comments to this news (0 comments)

BSD arp DoS
Published:25.09.2003
Source:BUGTRAQ
SecurityVulns ID:3140
Type:remote
Level:5/10
Description:By sending spoofed arp-replies it's possible to cause memory starvation with arp table leading to system crash.
Affected:FREEBSD : FreeBSD 5.0
 FREEBSD : FreeBSD 4.3
 FREEBSD : FreeBSD 4.4
 FREEBSD : FreeBSD 4.5
 FREEBSD : FreeBSD 4.6
 FREEBSD : FreeBSD 4.8
 FREEBSD : FreeBSD 5.1
 FREEBSD : FreeBSD 4.7
 FREEBSD : FreeBSD 4.9
Original documentdocumentFREEBSD, FreeBSD Security Advisory FreeBSD-SA-03:14.arp (25.09.2003)
Discuss:Read or add your comments to this news (0 comments)

Gauntlet SQL gateway DoS
Published:25.09.2003
Source:BUGTRAQ
SecurityVulns ID:3141
Type:remote
Level:5/10
Description:Few sequential connects to SQL gateway causes firewall to crash.
Affected:NAI : Gauntlet 6
Original documentdocumentOliver Heinz, Denial of Service against Gauntlet-Firewall / SQL-Gateway (25.09.2003)
Discuss:Read or add your comments to this news (0 comments)

NULLhttp multiple bugs
Published:25.09.2003
Source:BUGTRAQ
SecurityVulns ID:3142
Type:remote
Level:5/10
Description:DoS, crossite scripting.
Affected:NULLHTTPD : NULLhttpd 0.5
Original documentdocumentLuigi Auriemma, NULLhttpd <= 0.5.1 XSS through Bad request (25.09.2003)
 documentLuigi Auriemma, NULLhttpd <= 0.5.1 remote resources consumption (25.09.2003)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru