Computer Security
[EN] securityvulns.ru
no-pyccku



Acer TravelMate notebooks smart cards protection bypass
Published:26.09.2005
Source:BUGTRAQ
SecurityVulns ID:5247
Type:local
Level:5/10
Description:It's possible to bypass screen locking with help system.
Affected:ACER : TravelMate C300
 ACER : TravelMate 8100
Original documentdocumentacidemon_(at)_gmail.com, Platinum Secure smartcard security bypass (26.09.2005)
Discuss:Read or add your comments to this news (0 comments)

PowerArchiver buffer overflow
Published:26.09.2005
Source:BUGTRAQ
SecurityVulns ID:5248
Type:local
Level:5/10
Description:Buffer overflow on ARJ and ACE archives parsing.
Affected:POWERARCHIVER : PowerArchiver 2006
 POWERARCHIVER : PowerArchiver 2004
Original documentdocumentSECUNIA, Secunia Research: PowerArchiver ACE/ARJ Archive Handling Buffer Overflow (26.09.2005)
Discuss:Read or add your comments to this news (0 comments)

Qpopper poppassd shared library privilege escalation
Published:26.09.2005
Source:FULL-DISCLOSURE
SecurityVulns ID:5253
Type:local
Level:7/10
Description:User can specify shared library path for suid application.
Affected:QUALCOMM : Qpopper 4.08
Files:Linux Qpopper poppassd latest version local r00t exploit by kcope
 FreeBSD Qpopper poppassd latest version local r00t exploit by kcope
Discuss:Read or add your comments to this news (0 comments)

Stoney FTPd buffer overflow
Published:26.09.2005
Source:SECURITEAM
SecurityVulns ID:5251
Type:remote
Level:5/10
Description:Buffer overflow in PORT FTP command.
Files:[EXPL] Stoney FTPd Buffer Overflow (PORT, Exploit)
Discuss:Read or add your comments to this news (0 comments)

Multiple MultiTheftAuto game server vulnerabilities
Published:26.09.2005
Source:BUGTRAQ
SecurityVulns ID:5256
Type:remote
Level:5/10
Description:DoS (unallocated memory access), anonymous message-of-the-day (mod) modification.
Affected:MULTITETHTAUTO : MultiTheftAuto 0.5
Original documentdocumentLuigi Auriemma, [Full-disclosure] Server crash and motd deletion in MultiTheftAuto 0.5 patch 1 (26.09.2005)
Discuss:Read or add your comments to this news (0 comments)

7-Zip archiver buffer overflow
Published:26.09.2005
Source:BUGTRAQ
SecurityVulns ID:5249
Type:local
Level:5/10
Description:Buffer overflow on parsing ARJ archives.
Affected:7ZIP : 7-Zip 4.23
 7ZIP : 7-Zip 4.26
 7ZIP : 7-Zip 3.13
Original documentdocumentSECUNIA, Secunia Research: 7-Zip ARJ Archive Handling Buffer Overflow (26.09.2005)
Discuss:Read or add your comments to this news (0 comments)

Courier mail server crossite scripting
Published:26.09.2005
Source:BUGTRAQ
SecurityVulns ID:5250
Type:remote
Level:5/10
Description:Internet Explorer Conditional Comments crossite scripting with sqwebmail.
Affected:DOUBLEPRECISION : courier 0.38
 DOUBLEPRECISION : courier 0.37
Original documentdocumentDEBIAN, [SECURITY] [DSA 820-1] New courier packages fix cross-site scripting (26.09.2005)
Discuss:Read or add your comments to this news (0 comments)

Linux kernel fget() DoS
Published:26.09.2005
Source:SECUNIA
SecurityVulns ID:5258
Type:local
Level:5/10
Description:sockfd_put() call is missed in routing_ioctl(), leading to resource consumption and system crash.
Affected:LINUX : kernel 2.6
Original documentdocumentSECUNIA, [SA16897] Linux Kernel "fget()" Potential Denial of Service Vulnerability (26.09.2005)
Discuss:Read or add your comments to this news (0 comments)

Ruby safe level protection bypass
Published:26.09.2005
Source:SECUNIA
SecurityVulns ID:5260
Type:library
Level:5/10
Description:Error in eval.c in enforcing safe level protection.
Affected:RUBY : Ruby 1.6
 RUBY : ruby 1.8
Original documentdocumentSECUNIA, [SA16904] Ruby Safe-Level Security Bypass Vulnerability (26.09.2005)
Discuss:Read or add your comments to this news (0 comments)

Microsoft Windows win32k.sys DoS
Published:26.09.2005
Source:******
SecurityVulns ID:5245
Type:local
Level:5/10
Description:WM_CLOSE event for active drop-down menu causes system to crash.
Affected:MICROSOFT : Windows XP
Original documentdocumentmail.27.ru_(at)_mail.27.ru, bsod in win32k.sys(Multi-User Win32 Driver) (26.09.2005)
Files:bug in Multi-User Win32 Driver,win32k.sys PoC (run before test)
Discuss:Read or add your comments to this news (0 comments)

wzdftpd unfiltered shell characters problem
Published:26.09.2005
Source:BUGTRAQ
SecurityVulns ID:5252
Type:remote
Level:6/10
Description:popen() unfiltered characters on SITE EXEC command.
Affected:WZDFTPD : wzdftpd 0.5
Files: wzdftpd <= 0.5.4 "SITE" Command Handling Remote Command Execution Exploit (metasploit)
 wzdftpd remote exploit
Discuss:Read or add your comments to this news (0 comments)

Mozilla / Netscape / Firefox browsers buffer overflow
Published:26.09.2005
Source:SECURITEAM
SecurityVulns ID:5254
Type:client
Level:6/10
Description:Buffer oveflow on "zero-width non-joiner" sequence of Arabic Unicode characters.
Affected:MOZILLA : Firefox 1.0
 SUN : K-Meleon 0.9
 NETSCAPE : Netscape 8.0
Original documentdocumentSECURITEAM, [NEWS] Gecko based browsers Stack Corruption (26.09.2005)
Discuss:Read or add your comments to this news (0 comments)

SecureW2 weak encryption
Published:26.09.2005
Source:FULL-DISCLOSURE
SecurityVulns ID:5255
Type:m-i-t-m
Level:5/10
Description:Weak PRNG generation algorithm for TLS pre-master key.
Affected:ALFAARISS : SecureW2 3.1
Original documentdocumentSimon Josefsson, [Full-disclosure] SecureW2 TLS security problem (26.09.2005)
Discuss:Read or add your comments to this news (0 comments)

MacOS X malloc() privilege escalation
Published:26.09.2005
Source:FULL-DISCLOSURE
SecurityVulns ID:5257
Type:library
Level:7/10
Description:With MallocLogFile it's possible to overwrite any system file with application which uses malloc() function.
Affected:APPLE : Mac OS X 10.4
Original documentdocumentadvisories, [Full-disclosure] Mac OS X - malloc() local privilege escalation vulnerability. (26.09.2005)
Discuss:Read or add your comments to this news (0 comments)

HylaFax symbolic links problem
Published:26.09.2005
Source:SECUNIA
SecurityVulns ID:5259
Type:local
Level:5/10
Description:Symbolic links problem on temporary file creation in xferfaxstats script.
Affected:HYLAFAX : hylafax 4.2
Original documentdocumentSECUNIA, [SA16906] HylaFAX Insecure Temporary File Creation Vulnerability (26.09.2005)
Discuss:Read or add your comments to this news (0 comments)

Web applications security vulnerabilities (PHP, ASP, CGI, Perl, etc)
updated since 26.09.2005
Published:30.09.2005
Source:
SecurityVulns ID:5246
Type:remote
Level:5/10
Description:PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc.
Affected:JPORTAL : jPortal 2.2
 MANTIS : Mantis 0.19
 PUNBB : PunBB 1.2
 POSTNUKE : PostNuke 0.760
 JPORTAL : Jportal 2.3
 S9Y : Serendipity 0.8
 PHPFUSION : PHP-Fusion 6.0
 PHPMYFAQ : phpMyFAQ 1.5
 MANTIS : Mantis 1.0
 MAXDEV : MD-Pro 1.0
 PERLDRIVER : perldriver 2.0
 MYLITTLEFORUM : My Little Forum 1.5
 ALSTRASOFT : E-Friends 4.0
 MAILGUST : MailGust 1.9
 GESHI : GeSHi 1.0
 CONTENTSERV : ContentServ 3.1
 MALL23 : Mall23 eCommerce 4.10
 ICDEVGROUP : Interchange 5.2
 MOVABLETYPE : Movable Type 3.1
 SEOBOARD : SEO-Board 1.03
 IPB : Riverdark RSS Syndicator 2.1
 PHPZENER : PHP Zener 1.4
 LUCIDCMS : lucidCMS 1.0
 CJDESIGN : CJLinkOut 1.0
 CJDESIGN : CJ Tag Board 3.0
 CJDESIGN : CJ Web2Mail 3.0
 SQMAIL : SquirrelMail Address Add Plugin 2.0
 JSHOP : Jshop Server 1.3
Original documentdocumentdurito, просмотр файлов в JShop Server 1.3.0 (30.09.2005)
 documentSECURITEAM, [UNIX] MAXdev MD-Pro Multiple Vulnerabilities (Code Execution, Path Disclosure and CSS) (29.09.2005)
 documentNenad Jovanovic, [Full-disclosure] Serendipity: Account Hijacking / CSRF Vulnerability (29.09.2005)
 documentMoritz Naumann, [Full-disclosure] SquirrelMail Address Add Plugin XSS (29.09.2005)
 documentretrogod_(at)_aliceposta.it, PHP-Fusion v6.00.109 SQL Injection / admin|users credentials disclosure (29.09.2005)
 documentSECUNIA, [SA16963] CJ Web2Mail Cross-Site Scripting Vulnerabilities (28.09.2005)
 documentSECUNIA, [SA16966] CJ Tag Board Cross-Site Scripting Vulnerabilities (28.09.2005)
 documentSECUNIA, [SA16970] CJ LinkOut "123" Cross-Site Scripting Vulnerability (28.09.2005)
 documentSECUNIA, [SA16945] jPortal Download Search SQL Injection Vulnerability (28.09.2005)
 documentghc_(at)_ghc.ru, SEO borad: SQL injection (28.09.2005)
 documentx1ngbox_(at)_gmail.com, lucidCMS 1.0.11 is susceptible to a cross site scripting attack (28.09.2005)
 documentJose Antonio, Mantis Bugtracker - Remote Database Scanner and XSS Vulnerabilities (28.09.2005)
 documentSECUNIA, [SA16934] IPB Riverdark RSS Syndicator Module Cross-Site Scripting (27.09.2005)
 documentSECUNIA, [SA16949] SEO-Board admin.php SQL Injection Vulnerability (27.09.2005)
 documentSECUNIA, [SA16899] Movable Type Multiple Weaknesses and Vulnerabilities (26.09.2005)
 documentSECUNIA, [SA16923] Interchange Catalog Skeleton SQL Injection and ITL Injection Vulnerabilities (26.09.2005)
 documentSECUNIA, [SA16908] PunBB Two Vulnerabilities (26.09.2005)
 documentSECUNIA, [SA16903] Mall23 eCommerce "idOption_Dropdown_2" SQL Injection Vulnerability (26.09.2005)
 documentqobaiashi_(at)_gmx.net, [Full-disclosure] ContentServ features remote file disclosure (26.09.2005)
 documentMaksymilian Arciemowicz, [Full-disclosure] GeSHi Local PHP file inclusion 1.0.7.2 (26.09.2005)
 documentretrogod_(at)_aliceposta.it, My Little Forum 1.5 / 1.6beta SQL Injection (26.09.2005)
 documentretrogod_(at)_aliceposta.it, MailGust 1.9 SQL Injection (26.09.2005)
 documentkhc_(at)_bsdmail.org, AlstraSoft E-Friends Remote Command Exucetion (26.09.2005)
 documentretrogod_(at)_aliceposta.it, PhpMyFAQ 1.5.1 multiple vulnerabilities (26.09.2005)
 documentkrasza_(at)_gmail.com, Sql injection in jPortal version 2.3.1 (module download) (26.09.2005)
 documentretrogod_(at)_aliceposta.it, My Little Forum 1.5 / 1.6beta SQL Injection (26.09.2005)
 documentmorning_wood, [Full-disclosure] perldiver (26.09.2005)
Files:My Little Forum 1.5 ( possibly prior versions) SQL Injection / MD5 password hash disclosure poc exploit with proxy support
 PHP Zener <=1.4 get user-admin exploit
 Mantis Bugtracker Remote Database Scanner Exploit v 1.0 (with targets)
 PHP-Fusion v6.00.109 SQL Injection / admin|users credentials disclosure
 PhpMyFaq 1.5.1 ( possibly prior versions) shell inject
 Mantis Bugtracker Remote Database Scanner Exploit v 1.0
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server