127 messages starting May 17 03 and ending Apr 16 03 Date index | Thread index | Author index
Buffer overflow vulnerability found in MailMax version 5 0x36
Plaintext Password in Settings.ini of CesarFTP Andreas Constantinides
Abyss X1 1.1.2 remote crash Auriemma Luigi
Misuse of Macromedia Flash Ads clickTAG Option May Lead to Privacy Breach Aviram Jenik
Coppermine Photo Gallery remote compromise Berend-Jan Wever
Black Hat 2003 Speaker Lineup; Phil Zimmermann to Keynote B.K. DeLong
Firebird local root compromise bob
Windows Media Services Remote Command Execution Brett Moore Windows Media Services Remote Command Execution #2 Brett Moore
Secunia Research: Xeneo Web Server URL Encoding Denial of Service Carsten H. Eiram Secunia Research: FTPServer/X Response Buffer Overflow Vulnerability Carsten H. Eiram
Cisco Security Advisory: Cisco Secure Access Control Server for Windows Admin Buffer Overflow Vulnerability Cisco Systems Product Security Incident Response Team Cisco Security Advisory: Cisco Catalyst Enable Password Bypass Vulnerability Cisco Systems Product Security Incident Response Team Cisco Security Advisory: Cisco Content Service Switch 11000 Series DNS Negative Cache of Information Denial-of-Service Cisco Systems Product Security Incident Response Team Cisco Security Advisory: Cisco ONS15454, ONS15327, ONS15454SDH, and ONS15600 Nessus Vulnerabilities Cisco Systems Product Security Incident Response Team Cisco Security Advisory: Cisco VPN 3000 Concentrator Vulnerabilities Cisco Systems Product Security Incident Response Team Cisco Security Advisory: Cisco IOS Software Processing of SAA Packets Cisco Systems Product Security Incident Response Team
CORE-2003-0307: Snort TCP Stream Reassembly Integer Overflow Vulnerability CORE Security Technologies Advisories CORE-2003-0305-02: Vulnerabilities in Kerio Personal Firewall CORE Security Technologies Advisories CORE-2003-0303: Multiple Vulnerabilities in Mirabilis ICQ client CORE Security Technologies Advisories CORE-2003-0403: Axis Network Camera HTTP Authentication Bypass CORE Security Technologies Advisories
Buffer Overflow Vulnerability Found in MailMax Version 5 Dennis Rand Multiple Buffer Overflow Vulnerabilities Found in FTGate Pro Mail Server v. 1.22 (1328) Dennis Rand Multiple Buffer Overflow Vulnerabilities Found in CMailServer 4.0 Dennis Rand
[INetCop Security Advisory] Remote Multiple Buffer Overflow vulnerability in passlogd sniffer. dong-h0un U [INetCop Security Advisory] Qpopper v4.0.x poppassd local root exploit dong-h0un U [INetCop Security Advisory] WsMP3d Directory Traversing Vulnerability. dong-h0un U [INetCop Security Advisory] Remote Heap Corruption Overflow vulnerability in WsMp3d. dong-h0un U GNATS (The GNU bug-tracking system) multiple buffer overflow vulnerabilities. dong-h0un U
[DDI-1013] Buffer Overflow in Samba allows remote root compromise Erik Parker
Algorithmic Complexity Attacks and the Linux Networking Code Florian Weimer
[KSA-001] Multiple vulnerabilities in Tutos François SORIN [KSA-002] Multiple Vulnerabilities In Moregroupware François SORIN
PY-Membres 4.0 (PHP) Frog Man True Galerie 1.0 : Admin Access & File Copy Frog Man OneOrZero Security Problems (PHP) Frog Man pMachine (PHP) : Include() Security Hole Frog Man
XSS Vulnerability in LedNews (CGI/Perl) v0.7 gilbert vilvoorde
[SCSA-018] Disclosure of authentication information in Sambar Server Gregory LEBRAS
[SCSA-015] Remote Denial of Service Vulnerability in PowerFTP Gregory Le Bras | Security Corporation [SCSA-016] Multiple vulnerabilities in Ez publish Gregory Le Bras | Security Corporation [SCSA-017] Directory Traversal Vulnerability in EZ Server Gregory Le Bras | Security Corporation
Script Injection to Custom HTTP Errors in Local Zone (GM#014-IE) GreyMagic Software
iDEFENSE Security Advisory 03.31.03: Buffer Overflow in Windows QuickTime Player iDEFENSE Labs iDEFENSE Security Advisory 04.08.03: Denial of Service in Apache HTTP Server 2.x iDEFENSE Labs iDEFENSE Security Advisory 04.09.03: Denial of Service in Microsoft Proxy Server and Internet Security and Acceleration (ISA) S iDEFENSE Labs iDEFENSE Security Advisory 05.22.03: Authentication Bypass in iisPROTECT iDEFENSE Labs iDEFENSE Security Advisory 05.30.03: Apache Portable Runtime Denial of Service and Arbitrary Code Execution Vulnerability iDEFENSE Labs iDEFENSE Security Advisory 06.16.03: Linux-PAM getlogin() Spoofing Vulnerability iDEFENSE Labs
Integrigy Security Advisory - Oracle Applications FNDFS Vulnerability Integrigy Security Alerts
Secunia Research: Opera browser filename extension buffer overflows Jakob Balle
Buffer overflow in Internet Explorer's HTTP parsing code Jouko Pynnonen Windows Media Player directory traversal vulnerability Jouko Pynnonen
Re: CORE-2003-0403: Axis Network Camera HTTP Authentication Bypass Kee Hinckley
SRT2003-04-03-1300 - Interbase ISC_LOCK_ENV overflow KF SRT2003-04-04-1106 - AOLServer Proxy Daemon API unformatted syslog() call KF SRT2003-04-15-1029 - Progres BINPATHX overflow KF SRT2003-04-22-1336 - SAP DB Development Tools install flaw KF SRT2003-04-24-1532 - Options Parsing Tool library buffer overflows. KF SRT2003-05-08-1137 - ListProc mailing list ULISTPROC_UMASK overflow KF SRT2003-06-12-0853 - ike-scan local root format string issue KF SRT2003-06-13-1009 - Progress _dbagent -installdir dlopen() issue KF SRT2003-06-13-0945 - Progress PATH based dlopen() issue KF SRT2003-06-20-1232 - Progress 4GL Compiler datatype overflow KF
NII Advisory - Buffer Overflow in Analogx Proxy K. K. Mookhey
youbin local root exploit + advisory Knud Erik Højgaard gid bin from /usr/ports/korean/elm (FreeBSD) Knud Erik Højgaard
[NGSEC-2003-5] YABB SE, remote command execution labs
Java Agent freezes Lotus Notes and Domino 6.0.1 (fwd) Marc Schoenefeld Opera 7.11 java.util.zip.* Vulnerability (fwd) Marc Schoenefeld
Flooding Internet Explorer 6.0.2800 (6.x?) security zones ! - UPDATED Marek Bialoglowy
Re: Buffer Overflow Vulnerability Found in MailMax Version 5 Mark Litchfield Remote Buffer Overrun WebAdmin.exe Mark Litchfield
Race in XP SCM Service Shutdown Mechanism Matthew Murphy BadBlue Remote Administrative Access Vulnerability Matthew Murphy Monkey HTTPd Remote Buffer Overflow Matthew Murphy Remote Vulnerabilties in mod_ntlm Matthew Murphy AN HTTPd Sample Script File Truncation Matthew Murphy eServ Memory Leak Enables Denial of Service Attacks Matthew Murphy
BadBlue Remote Administrative Interface Access Vulnerability mattmurphy () kc rr com
3Com OfficeConnect Remote 812 ADSL router exposes internal LAN computer's ports during outbound and inbound TCP and UDP sessions Michael Puchol
3com NBX IP Phone Call manager Denial of Service - Update Michael Scheidell
Hotmail & Passport (.NET Accounts) Vulnerability Muhammad Faisal Rauf Danka
Internet Explorer Plugin.ocx heap overflow (#NISR24042003) NGSSoftware Insight Security Research Oracle Database Server Buffer Overflow Vulnerability (#NISR29042003) NGSSoftware Insight Security Research Multiple Buffer Overflow Vulnerabilities in SLMail (#NISR07052003A) NGSSoftware Insight Security Research Multiple Vulnerabilities in SLWebmail NGSSoftware Insight Security Research
NSFOCUS SA2003-04 : Remote Buffer Overflow Vulnerability in Web Management Interface of Cisco Secure ACS NSFOCUS Security Team NSFOCUS SA2003-05: Microsoft IIS ssinc.dll Over-long Filename Buffer Overflow Vulnerability NSFOCUS Security Team
Fw: Alert: Microsoft Security Bulletin - MS03-011 OC Hosting - Lance L
Vulnerability in ' poster version.two' Peter Winter-Smith P-News 1.16 Admin Access Vulnerability Peter Winter-Smith Admin Account Creation Vulnerability in CuteNews 1.x Peter Winter-Smith
Webfroot Shoutbox 2.32 directory traversal and code injection. pokleyzz Geeklog 1.3.7sr1 and below multiple vulnerabilities. pokleyzz b2 cafelog 0.6.1 remote command execution. pokleyzz
Linux 2.4 kernel ioperm vuln Rain Forest Puppy Linux 2.4 kernel ioperm vuln *is* for 2.4 Rain Forest Puppy More S21sec Vignette advisories Rain Forest Puppy Administrivia: Vulnwatch DNS issues affecting availability Rain Forest Puppy Ethereal < 0.9.13 vulns Rain Forest Puppy
R7-0013: Heap Corruption in Gaim-Encryption Plugin Rapid 7 Security Advisories
phpBB password disclosure by sql injection Rick
S21SEC-016-en - Vignette SSI Injection S21SEC S21SEC-017-en - Vignette /vgn/legacy/save SQL access S21SEC
SECNAP Security Advisory: Invalid HTML processing in GoldMine(tm) scheidell
PTNews v1.7.7 - Access to administrator functions without authentification scrap
Multiple Vulnerabilities Found in Mailtraq (DoS, Password Decryption, Directory Traversal) SecurITeam BugTraq Monitoring
serious vulnerability present. all doomed. over. Security Experts, Liability Limited
SQL injection in BttlxeForum SecurityTracker Happymall E-Commerce Remote Command Execution SecurityTracker
MIPSPro Compiler Predictable Temp File vulnerability SGI Security Coordinator Multiple IPv6-Induced Bugs & Vulnerabilities on IRIX SGI Security Coordinator
Snitz Forum 3.3.03 Remote Command Execution sharpiemarker
Multiple vulnerabilities in paBox silentscripter
Multiple Vulnerabilities in Sun-One Application Server SPI Labs Internet Information Services 5.0 Denial of service SPI Labs
Vignette Story Server sensitive information disclosure (a040703-1) @stake Advisories MacOS X DirectoryService Privilege Escalation (a041003-1) @stake Advisories Apple AirPort Administrative Password Obfuscation (a051203-1) @stake Advisories Nokia GGSN (IP650 Based) DoS @stake Advisories
Administrivia - VulnWatch.Org still down Steve Administrivia - Temporary fix for VulnWatch.org Steve
SFAD03-001: iWeb Mini Web Server Remote Directory Traversal subversive
R7-0014: RSA SecurID ACE Agent Cross Site Scripting vulnwatch-return-887-lists_vulnwatch=insecure.org
ChiTeX local root vulnerability zillion Apache mod_access_referer denial of service issue zillion