Debian Linux Security Advisory 1968-2 - It was discovered that pdns-recursor, the PowerDNS recursive name server, contains a cache poisoning vulnerability which may allow attackers to trick the server into serving incorrect DNS data (CVE-2009-4010).
206a48ca48247cafa78ec670f4c0480d
CemaListe version 2.3 suffers from a database disclosure vulnerability.
40b53ea1725aff2642267b86a7700c2f
AIC Audio Player version 1.4.1.587 local crash denial of service proof of concept exploit.
bb70a1f61201c6a977a457ad8f4cd175
Ubuntu Security Notice 892-1 - Ronald Volgers discovered that FUSE did not correctly check mount locations. A local attacker, with access to use FUSE, could unmount arbitrary locations, leading to a denial of service.
8d6d9887d42f1d9e81abcc3b43ffd594
PHP Product Catalog suffers from a cross site request forgery vulnerability.
9990443596e72946bcc911b1d41edd05
Debian Linux Security Advisory 1981-2 - The latest DSA for maildrop introduced two regressions. The maildrop program stopped working when invoked as a non-root user, such as with postfix. Also, the lenny version dropped a dependency on the courier-authlib package.
00664f6329ad84b6d0353790886ea97b
The Joomla JE Quiz component suffers from a remote blind SQL injection vulnerability.
bdde6cbe47024bcb8c72905c703a04b9
XAMPP versions 1.6.8 and below suffer from cross site request forgery, cross site scripting, path disclosure, remote SQL injection and directory traversal vulnerabilities.
d934d9380ec1f23797936d5bc2f1c657
The Joomla CCNewsLetter component suffers from a local file inclusion vulnerability.
3c8c3fb4a90be768bdcd05608de94694
Ubuntu Security Notice 893-1 - Ronald Volgers discovered that the mount.cifs utility, when installed as a setuid program, suffered from a race condition when verifying user permissions. A local attacker could trick samba into mounting over arbitrary locations, leading to a root privilege escalation.
6d7694cdc9b4cf486e8c305a1e883f1e
The Joomla CCNewsLetter component suffers from a directory traversal vulnerability.
28bcbd792bc663b5dc4d701b8085ff74
Rising AntiVirus 2008 through 2010 local privilege escalation proof of concept exploit.
bf5bc5705505b6ba0c2581aa7bcf9bb1
CommonSpot Server suffers from a cross site scripting vulnerability.
7144d772c8cbadba806662ced571db18
Debian Linux Security Advisory 1981-1 - Christoph Anton Mitterer discovered that maildrop, a mail delivery agent with filtering abilities, is prone to a privilege escalation issue that grants a user root group privileges.
d71498bde7e9b947d97c068eb038aff8
Arraid version 1. suffers from an insecure cookie handling vulnerability.
05ffa129dd1824cbc172ceacf2c8317b
The Joomla jVideoDirect component version 1.1 RC3b suffers from a remote blind SQL injection vulnerability.
b73a79491f87bdbe3d56e4250c65d66c
The Joomla CCNewsLetter component suffers from a remote SQL injection vulnerability.
8b4e8703e47b99addf52859cc4104155
Ubuntu Security Notice 891-1 - It was discovered that lintian did not correctly validate certain filenames when processing input. If a user or an automated system were tricked into running lintian on a specially crafted set of files, a remote attacker could execute arbitrary code with user privileges.
1a2a6112f1845b7aa041854dc1d14266
fipsForum version 2.6 suffers from a database disclosure vulnerability.
d63571fbaa05101a1ad09918be37b0d5
The Joomla Autartitarot component suffers from a directory traversal vulnerability.
76b8485d97f1ee5a65622b450079d1d7
phpBB version 2.0.1 suffers from a cross site scripting vulnerability.
30401ea5d194b2d04f8f3d43ccc6c2a3
NovaBoard version 1.1.2 suffers from a remote SQL injection vulnerability.
763fd08c90b965b75f7609ab33388134
LandShop suffers from a cross site scripting vulnerability.
f231415caf2a7e08faf7e1619ebc63d8
Debian Linux Security Advisory 1980-1 - David Leadbeater discovered an integer underflow that could be triggered via the LINKS command and can lead to a denial of service or the execution of arbitrary code (CVE-2009-4016). This issue affects both, ircd-hybrid and ircd-ratbox.
6abd38406438648094718cf58d2701eb
Nmap is a utility for port scanning large networks, although it works fine for single hosts. Sometimes you need speed, other times you may need stealth. In some cases, bypassing firewalls may be required. Not to mention the fact that you may want to scan different protocols (UDP, TCP, ICMP, etc.). Nmap supports Vanilla TCP connect() scanning, TCP SYN (half open) scanning, TCP FIN, Xmas, or NULL (stealth) scanning, TCP ftp proxy (bounce attack) scanning, SYN/FIN scanning using IP fragments (bypasses some packet filters), TCP ACK and Window scanning, UDP raw ICMP port unreachable scanning, ICMP scanning (ping-sweep), TCP Ping scanning, Direct (non portmapper) RPC scanning, Remote OS Identification by TCP/IP Fingerprinting, and Reverse-ident scanning. Nmap also supports a number of performance and reliability features such as dynamic delay time calculations, packet timeout and retransmission, parallel port scanning, detection of down hosts via parallel pings.
f77fa51d89ab27d35e5cd87bb086b858