Computer Security
[EN] securityvulns.ru
no-pyccku



Mantis weak permisions
Published:30.06.2003
Source:FULL-DISCLOSURE
SecurityVulns ID:2942
Type:local
Level:5/10
Original documentdocumentDEBIAN, [Full-Disclosure] [SECURITY] [DSA-335-1] New mantis packages fix insecure file permissions (30.06.2003)
Discuss:Read or add your comments to this news (0 comments)

Imagemagic symlink problem
Published:30.06.2003
Source:FULL-DISCLOSURE
SecurityVulns ID:2943
Type:library
Level:5/10
Description:Unsafe temporary files handling.
Affected:IMAGEMAGIC : imagemagic 5.4
Original documentdocumentDEBIAN, [Full-Disclosure] [SECURITY] [DSA-331-1] New imagemagick packages fix insecure temporary file creation (30.06.2003)
Discuss:Read or add your comments to this news (0 comments)

gtksee buffer overflow
Published:30.06.2003
Source:FULL-DISCLOSURE
SecurityVulns ID:2944
Type:client
Level:5/10
Description:Hep overflow on PNG files viewing.
Original documentdocumentDEBIAN, [Full-Disclosure] [SECURITY] [DSA-337-1] New gtksee packages fix buffer overflow (30.06.2003)
Discuss:Read or add your comments to this news (0 comments)

Abyss Webserver multiple bugs
Published:30.06.2003
Source:BUGTRAQ
SecurityVulns ID:2945
Type:remote
Level:5/10
Description:Buffer overflow, HTTP reply spoofing.
Affected:APRELIUM : Abyss Webserver 1.1
Original documentdocumentfozzy_(at)_dmpfrance.com, [Full-Disclosure] Aprelium Abyss webserver X1 arbitrary code execution and header injection (30.06.2003)
Discuss:Read or add your comments to this news (0 comments)

CGI bugs
updated since 30.06.2003
Published:13.07.2003
Source:
SecurityVulns ID:2946
Type:remote
Level:5/10
Affected:PHPGROUPWARE : phpGroupWare 0.9
 VPASP : VP-ASP
 WAGORA : W-Agora 4.1
 INVISION : Invision Power Board 1.1
 MEGABOOK : MegaBook 2.0
 VERITY : K2 Toolkit 2.20
 CYBERSTRONG : CyberStrong eShop 4.2
 GREYSOFT : Greymatter 1.21
 CCBILL : CCBill
 EARLYIMPACT : ProductCart 2
 EARLYIMPACT : ProductCart 1.5
 EARLYIMPACT : ProductCart 1.6
 OODIE : ODFaq 1.21
 BITSHIFTERS : bitboard2
 QSHOP : QShop 2.5
 PHPSYSINFO : phpsysinfo 2.0
 LAFORGE : board51 2.0
 LAFORGE : forum51 2.6
 LAFORGE : news51 1.5
 PHPMYFORUM : phpforum 2
Original documentdocumentMartin Eiszner, Invision Power Board v1.1.2 (13.07.2003)
 documentMartin Eiszner, W-Agora 4.1.5 (13.07.2003)
 documentMarc Bromm, PHP-Include-Hack-Possibility in phpforum 2 RC-1 (11.07.2003)
 documentMarc Bromm, Information Disclosure Vulnerability in board51, forum51 and news51 (10.07.2003)
 documentDEBIAN, [SECURITY] [DSA-346-1] New phpsysinfo packages fix directory traversal (10.07.2003)
 documentG00db0y, ZH2003-2SA (security advisory): QShop priviledge escalation (10.07.2003)
 documentMarc Bromm, Information Disclosure Vulnerability in bitboard2 (10.07.2003)
 documentnimber, Multiple bugs in ODFaq 1.21b (10.07.2003)
 documentaresu_(at)_bosen.net, Advisory Name: VPASP SQL Injection Vulnerability & Exploit CODE (04.07.2003)
 documentBosen, Another ProductCart SQL Injection Vulnerability (04.07.2003)
 documenttrihuynh_(at)_zeeup.com, [Full-Disclosure] Vulnerability in CCBill script (04.07.2003)
 documentFraMe, Greymatter v1.21d: Remote PHP command injection/execution. (03.07.2003)
 documentNC Agent, [KSA-003] Cross Site Scripting Vulnerability in Phpgroupware (03.07.2003)
 documentaresu_(at)_bosen.net, CyberStrong Shopping Cart - Advisory & Exploit Code (02.07.2003)
 documentSSR Team, [Full-Disclosure] STG Security Advisory: [SSA-20030701-02] Verity K2 Toolkit Query Builder XSS Vulnerability (02.07.2003)
 documentmorning_wood, [Full-Disclosure] Megabook 2.0 -XSS & UA execution (30.06.2003)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru