Computer Security
[EN] securityvulns.ru
no-pyccku



PHP, ASP, CGI web applications security vulnerabilities
updated since 22.03.2005
Published:26.03.2005
Source:
SecurityVulns ID:4596
Type:remote
Level:5/10
Description:PHP inclusions, SQL injections, directory traversals, crossite scripting, etc.
Affected:INVISION : Invision Power Board 2.0
 PHORUM : Phorum 5.0
 COOLFORUM : CoolForum 0.8
 BETAPRACTICE : BetaParticle 3.0
 KAYAKO : eSupport 2.3
 CZARNEWS : CzarNews 1.13
 TRG : TRG News 3.0
 BETAPRACTICE : betaparticle 4.0
 FILEZILLA : Filezilla 0.9
 ARTICLELIVE : ArticleLive 2005
 VORTEXPORTAL : VortexPortal
 PHPSYSINFO : phpSysInfo 2.3
 PHPBB : Topic Calendar 1.0
 DOUBLECHOCOLATTE : Double Choco Latte 0.9
 DREAM4 : Koobi CMS 4.2
 PHPMYDIRECTORY : phpMyDirectory 10.1
 DIGITALHIVE : DigitalHive 2.0
 NUKEBOOKMARKS : NukeBookmarks 0.6
Original documentdocumentAstharot, [Full-disclosure] ZH2005-03SA -- multiple vulnerabilities in NukeBookmarks .6 (26.03.2005)
 documentSECUNIA, [SA14702] DigitalHive Two Cross-Site Scripting Vulnerabilities (25.03.2005)
 documentmircia mircia, phpMyDirectory 10.1.3-rel cross site scripting (25.03.2005)
 documentmircia mircia, Multipe flaws in Koobi CMS 4.2.3 (25.03.2005)
 documentSECUNIA, [SA14688] Double Choco Latte Cross-Site Scripting and PHP Code Execution (24.03.2005)
 documentSECUNIA, [SA14679] MercuryBoard "title" Script Insertion Vulnerability (24.03.2005)
 documentWoody, [Full-disclosure] Invision Iframe Bug (24.03.2005)
 documentAlberto Trivero, Multiple vulnerabilities in Topic Calendar 1.0.1 for phpBB (24.03.2005)
 documentMaksymilian Arciemowicz, [SECURITYREASON.COM] phpSysInfo 2.3 Multiple vulnerabilities cXIb8O3.11 (24.03.2005)
 documentmircia mircia, Interspire ArticleLive 2005 (php version) is vulnerable to XSS (24.03.2005)
 documentSECUNIA, [SA14664] FileZilla Server Denial of Service Vulnerabilities (22.03.2005)
 documentSECUNIA, [SA14668] betaparticle blog Exposure of Sensitive Information and Security Bypass (22.03.2005)
 documentSECUNIA, [SA14669] TRG News Script "dir" File Inclusion Vulnerability (22.03.2005)
 documentSECUNIA, [SA14670] CzarNews "tpath" File Inclusion Vulnerability (22.03.2005)
 documentAlexander Anisimov, [ Positive Technologies #SA] Phorum "location" HTTP Response Splitting Vulnerability (22.03.2005)
 documentJeiAr, Kayako eSupport Cross Site Scripting (22.03.2005)
 documentfarhad koosha, 2 vulnerabilities in BetaParticle (22.03.2005)
 documentHaCkZaTaN, -==CoolForum Path Disclosure & Possible SQL Injection==- (22.03.2005)
Discuss:Read or add your comments to this news (0 comments)

OpenMosixView symbolic links problem
Published:26.03.2005
Source:BUGTRAQ
SecurityVulns ID:4610
Type:local
Level:5/10
Description:Unsafe temporary files handling.
Affected:OPENMOSIXVIEW : OpenMosixView 1.5
Original documentdocumentrexolab, RX250305 - OpenMosixView : Multiple Race conditions - advisory and exploit (26.03.2005)
Discuss:Read or add your comments to this news (0 comments)

smail mail transfer agent multiple vulnerabilities
Published:26.03.2005
Source:BUGTRAQ
SecurityVulns ID:4611
Type:remote
Level:5/10
Description:Remote buffer overflow, signals handling problem.
Affected:SMAIL : smail 3.2
Original documentdocumentinfamous41md_(at)_hotpop.com, smail remote and local root holes (26.03.2005)
Discuss:Read or add your comments to this news (0 comments)

Netcomm 1300NB DSL modem DoS
Published:26.03.2005
Source:BUGTRAQ
SecurityVulns ID:4612
Type:remote
Level:5/10
Description:Device hangs after strong network activity.
Affected:NETCOMM : Netcomm 1300NB
Original documentdocumentChris Rock, Netcomm 1300NB DSL Modem Denial of Service (26.03.2005)
Discuss:Read or add your comments to this news (0 comments)

Microsoft Outlook digitally signed e-mail and name spoofing
updated since 26.03.2005
Published:10.04.2005
Source:BUGTRAQ
SecurityVulns ID:4609
Type:client
Level:6/10
Description:E-mail and name of digital certificate is not checked against message's From: address.
Affected:MICROSOFT : Outlook 2003
Original documentdocumentIDEFENSE, iDEFENSE Security Advisory 04.08.05: Microsoft Multiple E-Mail Client Address Spoofing Vulnerability (10.04.2005)
 documentRoberto Franceschetti, Security Flaw with Digital signatures in Microsoft Outlook (26.03.2005)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru