what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 26 - 50 of 147 RSS Feed

Files

Secunia Security Advisory 12374
Posted Aug 26, 2004
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in ignitionServer, which can be exploited by malicious people to cause a DoS (Denial of Service) on vulnerable systems. The vulnerability is caused due to insufficient restrictions on the SERVER command. The command is designed for server to server communication, but can be exploited by clients to introduce non-existing servers to the network. This can further be exploited to cause a DoS by introducing multiple servers, which can potentially flood the network. The vulnerability reportedly affect versions 0.1.2 through 0.3.1.

tags | advisory, denial of service
SHA-256 | 5152ff943389a15abfd3eaec1d413ffe8878ade13f23e88ee36889021e6c7d42
rediffnewreport.txt
Posted Aug 26, 2004
Authored by Gregory R. Panakkal

Multiple filter bypass vulnerabilities have been discovered in rediffmail.com.

tags | advisory, vulnerability
SHA-256 | 60835bc34e6715cb1ccaea02926f87509ad74ac27b49ff275d9a0384cbfbcad7
outlookNoBCC.html
Posted Aug 26, 2004
Site support.microsoft.com

E-mail recipients who are listed in the BCC box can be viewed by e-mail recipients who are listed in the To and CC boxes when you send a multi-part e-mail message by using Outlook Express 6.0

tags | advisory
SHA-256 | a3e2886d907651ad76611dcdbb2ab55198ef903ff5a237fd417cea52d0e01890
Next Generation Security Advisory 2004.7
Posted Aug 26, 2004
Authored by FJ Serna, NGSSoftware | Site ngsec.com

Next Generation Advisory NGSEC-2004-7 - NtRegmon, the Registry monitoring utility for Windows, suffers from an unvalidated pointer referencing. While any privileged user is using NtRegmon, any local and unauthorized user can crash the system. Versions below 6.12 are susceptible.

tags | advisory, local, registry
systems | windows
SHA-256 | 25183dcc3f859b4639c3d21491f15da6b81da0e387b46e9c99dcf6f07cb351fa
entrust-sgs20-readme.txt
Posted Aug 26, 2004

The Model 5400 Series Symantec Gateway Security 2.0 has released hotfixes that address the denial of service attack issue reported against isakmpd.

tags | advisory, denial of service
advisories | CVE-2004-0369
SHA-256 | deffa512afcdbd22f1b06b95302cfb62e4a31cd4a5998bed1edad3270d8d4f09
entrust-sgs10-readme.txt
Posted Aug 26, 2004

Symantec Gateway Security 1.0 has released hotfixes that address the denial of service attack issue reported against isakmpd.

tags | advisory, denial of service
advisories | CVE-2004-0369
SHA-256 | a44b2ae4b9fc7e3ebb3e0ca8d8c5aea506b43f951e09cb26876406012635b62c
entrust-vr15-readme.txt
Posted Aug 26, 2004

Symantec VelociRaptor 1.5 has released hotfixes that address the denial of service attack reported against isakmpd.

tags | advisory, denial of service
advisories | CVE-2004-0369
SHA-256 | 7c12070c1f88045cc5dc5d0c7a4b1f44d0dfcfc6aa7c843223410dd5a8a8ad4c
phpcodeXSS.txt
Posted Aug 26, 2004
Authored by nikyt0x | Site nikyt0x.webcindario.com

The PHP Code Snippet Library suffers from multiple cross site scripting flaws.

tags | advisory, php, xss
SHA-256 | a16e148c1a56fe523fc219611a5c7718feb71d496bde3a990090d68dd7e0c44c
Secunia Security Advisory 12360
Posted Aug 26, 2004
Authored by Secunia | Site secunia.com

Secunia Security Advisory - The vendor has reported a vulnerability in PvPGN, potentially allowing malicious people to see sensitive information. An unspecified problem with statsreq may expose sensitive information. This has been fixed in version 1.6.4.

tags | advisory
SHA-256 | eb13bde7441f7919b0f7a01be5de38099cd8a59db84f8b2a42db26a9b75864d8
painkiller131.txt
Posted Aug 26, 2004
Authored by Luigi Auriemma | Site aluigi.altervista.org

Painkiller versions 1.3.1 and below have a memory corruption flaw with limited code execution possibilities.

tags | advisory, code execution
SHA-256 | 9f3fbf17f9fbeaebbb20c73ce8470c4497975e358be471e51bb0a326a7eac154
00044-08232004.txt
Posted Aug 26, 2004
Authored by James Bercegay | Site gulftech.org

GulfTech Security Advisory - Multiple Liveworld products suffer from cross site scripting flaws.

tags | advisory, xss
SHA-256 | ebc7c3c7aae2e82bed1c14b4ed71a11fb9c443b20dfa4e4c5326466ff63aae6e
sredird.txt
Posted Aug 26, 2004
Authored by Max Vozeler

sredird versions 2.2.1-1 and below suffer from a format string bug and a buffer overflow that may let remote users execute arbitrary code.

tags | advisory, remote, overflow, arbitrary
SHA-256 | b1e0ac8fc476c2edf91a769ccfb968ff2145d0af5c80f3a90373bbf293b01c15
57627.html
Posted Aug 26, 2004
Site sunsolve.sun.com

Sun Security Advisory - A buffer overflow in the Sun Solaris CDE Mailer dtmail allows for arbitrary code execution with mail group privileges.

tags | advisory, overflow, arbitrary, code execution
systems | solaris
SHA-256 | ca18021130a1e5ab89ea6203a8ebcbdbfa538c3854cd33b9f2f569a74b080e0d
DynixWebpac.txt
Posted Aug 26, 2004
Authored by Wil Allsopp

Epixtech Dynix Webpac suffers from SQL injection attacks that allow for login bypass, command execution, and more.

tags | advisory, sql injection
SHA-256 | 7842802db764f0b8ea08e0baaa91d45b1bd5d2155471489b26a70d4c7f3867d8
IEdetect.txt
Posted Aug 26, 2004
Authored by Martin Aberastegue | Site rzw.com.ar

Much like in the recent advisory about detection of directories in Opera, a similar method of detection has been discovered in Internet Explorer versions 6 and 5.

tags | advisory
SHA-256 | a94516d00047679677f625607045687b8c609c3ed6725c2e200f39e5a865492d
dsa-541.txt
Posted Aug 26, 2004
Authored by Debian | Site debian.org

Debian Security Advisory DSA 541-1 - In icecast-server, the UserAgent variable is not properly html_escaped allowing an an attacker the ability to cause the client to execute arbitrary Java script commands.

tags | advisory, java, arbitrary
systems | linux, debian
advisories | CVE-2004-0781
SHA-256 | 9daf4bbd5722447c08923b0aa6f406682997d55613d9eb4df95195f4068203c7
windowWasher55.txt
Posted Aug 26, 2004
Authored by wbglinks

Window Washer 5.5 fails to actually full wipe files as the product functionality claims. After deletion, files can still be recovered, and only their metadata is actually wiped.

tags | advisory
SHA-256 | 89a7d8436364d56f477bfb3214d6f7e95b44c08435d95d303a6ca67f7911277b
Secunia Security Advisory 12337
Posted Aug 26, 2004
Authored by Secunia | Site secunia.com

Secunia Security Advisory - A vulnerability has been reported in Davenport WebDAV-CIFS Gateway, which can be exploited by malicious users to cause a DoS (Denial of Service). The vulnerability is caused due to insufficient validation of XML documents sent from clients. This can be exploited by using a specially crafted overly long XML document, which will require excessive resources on expansion. The vulnerability affects versions prior to 0.9.10.

tags | advisory, denial of service
SHA-256 | e69794a5a1f7e7bd97b1bfc29879ad648aec0a8c01d3bbde37f944ab688eeb90
HS04-005_e.html
Posted Aug 26, 2004
Site hitachi-support.com

Hitachi Security Advisory - The JP1/File Transmission Server/FTP is susceptible to a denial of service attack. It would be seriously impressive if their advisories could be more vague.

tags | advisory, denial of service
SHA-256 | c4584dc5d034d76b53e99bf3511f5dd3c0d268faee1e697f1b6a7b9f1abdedc7
hastysec.html
Posted Aug 26, 2004
Site hastymail.sourceforge.net

Hastymail version 1.0.1 stable and below and 1.1 development and below suffer from a cross site scripting flaw.

tags | advisory, xss
SHA-256 | 709201c79d2b06cd0e09ff4c5a021b7bada568a87a090c48e68a4d882a3b9128
suphp-advisory.txt
Posted Aug 26, 2004
Authored by Steven Van Acker

MOD_SUPHP is an Apache module that allows php scripts to run as users rather than the www-data user. A condition exists that would allow an attacker to use this module to run arbitrary code.

tags | advisory, arbitrary, php
SHA-256 | 2df871582e14a312ba3d2a736b2e170795092c7ed83f2ab6a61ffbb8d9d3729c
Secunia Security Advisory 12334
Posted Aug 26, 2004
Authored by Secunia | Site secunia.com

Secunia Security Advisory - Dmitriy Baranov has reported a vulnerability in aGSM, which potentially can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to a boundary error when receiving information from a game server. This can be exploited by a malicious server to cause a buffer overflow by returning a specially crafted, overly long Half-life server name (about 148 bytes). Successful exploitation may lead to execution of arbitrary code. The vulnerability has been reported in versions 2.35c and 2.51c. Other versions may also be affected.

tags | advisory, overflow, arbitrary
SHA-256 | ee5db3a2b52cbf78b74a4e4bb258b22506364ddbee3e62112ece9e4436efa926
birdChat161.txt
Posted Aug 24, 2004
Authored by Donato Ferrante | Site autistici.org

Bird Chat version 1.61 is susceptible to a denial of service attack.

tags | advisory, denial of service
SHA-256 | 3fd39ba61940268943a877e48620af76ea13d357c808d10f8725f4e5f0bf3a91
TID10094233.txt
Posted Aug 24, 2004

An unspecified vulnerability with an unknown impact has been reported in Novell Web Manager on Novell NetWare 6.5.

tags | advisory, web
SHA-256 | 622530c4e4842b852d35adf6494b6a01eb2c009199653f013e352bc3558626ce
KDE Security Advisory 2004-08-23.1
Posted Aug 24, 2004
Authored by KDE Desktop | Site kde.org

KDE Security Advisory - Konqueror suffers from a Cross-Domain Cookie Injection vulnerability.

tags | advisory
advisories | CVE-2004-0746
SHA-256 | b677033eae041feccfc0d629be666a7a4a676bbb34a2b617d81f358a7e7b56b9
Page 2 of 6
Back12345Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Social Media Users Lack Control Over Data Used By AI, US FTC Says
Posted Sep 19, 2024

tags | headline, government, privacy, usa, data loss, botnet
Hackers Demand $6 Million From Seattle Airport Operators
Posted Sep 19, 2024

tags | headline, hacker, cybercrime, data loss, fraud, cryptography
Recent WhatsUp Gold Vulnerabilities Possibly Exploited In Ransomware Attacks
Posted Sep 19, 2024

tags | headline, malware, cybercrime, flaw, cryptography
14 Dead As Hezbollah Walkie Talkies Explode In Second, Deadlier Attack
Posted Sep 19, 2024

tags | headline, cyberwar, israel, terror, backdoor
UK Activists Targeted With Pegasus Spyware Ask Police To Charge NSO Group
Posted Sep 19, 2024

tags | headline, government, privacy, britain, israel, spyware
Pip Dreams And Security Schemes: Chaos In Your Configuration Files
Posted Sep 18, 2024

tags | headline, backdoor
Apple Suddenly Drops NSO Group Spyware Lawsuit
Posted Sep 18, 2024

tags | headline, privacy, phone, flaw, israel, spyware, apple
11 Dead, Thousands Injured In Explosive Supply Chain Attack On Hezbollah Pagers
Posted Sep 18, 2024

tags | headline, wireless, cyberwar, israel, terror, backdoor
CloudImposer Attack Targets Google Cloud Services
Posted Sep 18, 2024

tags | headline, hacker, google
AT&T Fined $13 Million For Data Breach
Posted Sep 18, 2024

tags | headline, privacy, phone, data loss
View More News →
packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close