|
Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com |
551 messages sorted by: [ author ] [ date ] [ thread ]
Starting: Wed Feb 01 2006 - 12:28:42 CST
Ending: Tue Feb 28 2006 - 19:11:27 CST
- (OLD) Eudora WorldMail 3.0 Windows 2000 Remote System Exploit
- (PHP) imap functions bypass safemode and open_basedir restrictions
- (PHP) mb_send_mail security bypass
- 2 SQL Injection in d3jeeb
- 2 SQL Injection in Fantastic News
- [ GLSA 200602-01 ] GStreamer FFmpeg plugin: Heap-based buffer overflow
- [ GLSA 200602-02 ] ADOdb: PostgresSQL command injection
- [ GLSA 200602-03 ] Apache: Multiple vulnerabilities
- [ GLSA 200602-04 ] Xpdf, Poppler: Heap overflow
- [ GLSA 200602-05 ] KPdf: Heap based overflow
- [ GLSA 200602-06 ] ImageMagick: Format string vulnerability
- [ GLSA 200602-08 ] libtasn1, GNU TLS: Security flaw in DER decoding
- [ GLSA 200602-09 ] BomberClone: Remote execution of arbitrary code
- [ GLSA 200602-10 ] GnuPG: Incorrect signature verification
- [ GLSA 200602-11 ] OpenSSH, Dropbear: Insecure use of system() call
- [ GLSA 200602-12 ] GPdf: Heap overflows in included Xpdf code
- [ GLSA 200602-13 ] GraphicsMagick: Format string vulnerability
- [ GLSA 200602-14 ] noweb: Insecure temporary file creation
- [ MDKSA-2005:048 ] - Updated mplayer packages fix integer overflow vulnerabilities
- [ MDKSA-2005:050 ] - Updated unzip packages fix vulnerabilities
- [ MDKSA-2006:028 ] - Updated php packages fix XSS and response splitting vulnerabilities
- [ MDKSA-2006:029 ] - Updated libast packages fixes buffer overflow vulnerability
- [ MDKSA-2006:030 ] - Updated poppler packages fixes heap-based buffer overflow vulnerability
- [ MDKSA-2006:031 ] - Updated kdegraphics packages fixes heap-based buffer overflow vulnerability
- [ MDKSA-2006:032 ] - Updated xpdf packages fixes heap-based buffer overflow vulnerability
- [ MDKSA-2006:033 ] - Updated OpenOffice.org packages fix issue with disabled hyperlinks
- [ MDKSA-2006:034 ] - Updated openssh packages fix vulnerability
- [ MDKSA-2006:035 ] - Updated php packages fix vulnerability
- [ MDKSA-2006:036 ] - Updated mozilla packages to address DoS vulnerability
- [ MDKSA-2006:037 ] - Updated mozilla-firefox packages to address DoS vulnerability
- [ MDKSA-2006:038 ] - Updated groff packages fix temporary file vulnerabilities
- [ MDKSA-2006:039 ] - Updated gnutls packages fix libtasn1 out-of-bounds access vulnerabilities
- [ MDKSA-2006:040 ] - Updated kernel packages fix multiple vulnerabilities
- [ MDKSA-2006:041 ] - Updated bluez-hcidump packages fix buffer overflow vulnerability
- [ MDKSA-2006:042 ] - Updated libtiff packages fix vulnerability
- [ MDKSA-2006:043 ] - Updated gnupg packages fix signature file verification vulnerability
- [ MDKSA-2006:044 ] - Updated kernel packages fix multiple vulnerabilities
- [ MDKSA-2006:045 ] - Updated MySQL packages fix temporary file vulnerability
- [ MDKSA-2006:046 ] - Updated tar packages fix vulnerability
- [ MDKSA-2006:047 ] - Updated metamail packages fix vulnerability
- [ MDKSA-2006:049 ] - Updated squirrelmail packages fix vulnerabilities
- [ MDKSA-2006:051 ] - Updated gettext packages fix temporary file vulnerabilities
- [ Secuobs - Advisory ] Another kind of DoS on Nokia cell phones
- [ Secuobs - Advisory ] Bluetooth : DoS on hcidump 1.29 + PoC
- [ Secuobs - Advisory ] Bluetooth : DoS on Nokia cell phones
- [ Secuobs - Advisory ] Bluetooth : DoS on Sony/Ericsson cell phones
- [ Secuobs - Tools release ] BSS (Bluetooth Stack Smasher) fuzzer
- [AJECT] TrueNorth IA eMailserver 5.3.4 buffer overflow vulnerability
- [BUGZILLA] Security Advisory for Bugzilla 2.20, 2.21.1, and 2.18.4
- [BuHa-Security] DoS Vulnerability in Firefox <= 1.0.7
- [BuHa-Security] Multiple Vulnerabilities in Mantis 1.00rc4
- [ECHO_ADV_27$2006] Indexu <= 5.0.1 Remote File Inclusion
- [EEYEB-20051017] Windows Media Player BMP Heap Overflow
- [eVuln] 2200net Calendar system SQL Injection and Authentication Bypass Vulnerabilities
- [eVuln] BirthSys SQL Injection Vulnerability
- [eVuln] CALimba Authentication Bypass Vulnerability
- [eVuln] Clever Copy 'Referer' & 'X-Forwarded-For' XSS Vulnerabilities
- [eVuln] GuestBookHost Authentication Bypass
- [eVuln] Guestex Shell Command Execution Vulnerability
- [eVuln] Guestex XSS Vulnerability
- [eVuln] M. Blom HTML::BBCode perl module XSS Vulnerabilities
- [eVuln] Magic Calendar Lite Authentication Bypass
- [eVuln] Magic Downloads Unauthorized Data Modification
- [eVuln] Magic News Lite PHP Code Execution & Unauthorized Data Modification
- [eVuln] My Blog BBCode XSS Vulnerabilities
- [eVuln] MyQuiz Arbitrary Command Execution Vulnerability
- [eVuln] PerlBlog Multiple Vulnerabilities
- [eVuln] PHP Event Calendar XSS & User's Data Corruption Vulnerabilities
- [eVuln] PHP iCalendar File Inclusion Vulnerability
- [eVuln] PHP/MYSQL Timesheet Multiple SQL Injection Vulnerabilities
- [eVuln] phphd Multiple Vulnerabilities
- [eVuln] phphg Guestbook Multiple Vulnerabilities
- [eVuln] phpht Topsites Multiple Vulnerabilities
- [eVuln] phpstatus Authentication Bypass
- [eVuln] Quirex Arbitrary File Disclosure Vulnerability
- [eVuln] Scriptme products BBCode 'url' XSS Vulnerability
- [eVuln] SmE GB Host Authentication Bypass Vulnerability
- [eVuln] Teca Diary PE SQL Injection Vulnerability
- [eVuln] Time Tracking Software Multiple Vulnerabilities
- [eVuln] Unknown Domain Shoutbox multiple XSS & SQL Injection Vulnerabilities
- [eVuln] Vanilla Guestbook Multiple XSS & SQL Injection Vulnerabilities
- [FLSA-2006:138098] Updated nfs-utils package fixes security issues
- [FLSA-2006:152809] Updated squid package fixes security issues
- [FLSA-2006:157366] Updated PostgreSQL packages fix security issues
- [FLSA-2006:158543] Updated gaim package fixes security issues
- [FLSA-2006:162750] Updated sudo packages fix security issue
- [FLSA-2006:168935] Updated openssh packages fix security issues
- [FLSA-2006:175406] Updated Apache httpd packages fix security issues
- [FLSA-2006:175818] Updated udev packages fix a security issue
- [FLSA-2006:176731] Updated perl packages fix security issue
- [FLSA-2006:177326] Updated mod_auth_pgsql package fixes security issue
- [FLSA-2006:177694] Updated auth_ldap package fixes security issue
- [FLSA-2006:180036-1] Updated mozilla packages fix security issues
- [FLSA-2006:180036-2] Updated firefox package fixes security issues
- [FLSA-2006:181014] Updated gnutls packages fix a security issue
- [Full-disclosure] Internet Explorer drag&drop 0day
- [Full-disclosure] Mozilla Thunderbird : Multiple Information Disclosure Vulnerabilities
- [Full-disclosure] On the "0-day" term
- [Full-disclosure] Quarantine your infected users spreading malware
- [INetCop Security Advisory] Global Hauri Virobot cookie exploit
- [ISecAuditors Advisories] IMAP/SMTP Injection in SquirrelMail
- [KAPDA::#26] - MyTopix Sql Injection & Path Disclosure
- [KAPDA::#27] - Runcms 1.x Cross_Site_Scripting vulnerability
- [KAPDA::#29]Noah's classifieds multiple vulnerabilities
- [KDE Security Advisory] kpdf/xpdf heap based buffer overflow
- [myimei]CuteNews1.4.1~ Add Comment For Protected UserNames~ XSS Attack
- [myimei]MyBB 1.0.2 XSS attack in search.php
- [myimei]MyBB 1.0.3~private.php~multiple SqlInjection
- [myimei]MyBB1.0.3~managegroup.php~Multiple SqlInjection & XSS
- [myimei]MyBB1.0.3~moderation.php~SqlInject while merging posts
- [myimei]WordPress2.0.0~autorswebsite~XSS attack
- [OpenPKG-SA-2006.001] OpenPKG Security Advisory (gnupg)
- [OpenPKG-SA-2006.002] OpenPKG Security Advisory (sudo)
- [OpenPKG-SA-2006.003] OpenPKG Security Advisory (openssh)
- [OpenPKG-SA-2006.004] OpenPKG Security Advisory (postgresql)
- [OpenPKG-SA-2006.005] OpenPKG Security Advisory (tin)
- [operational update] Looking behind the smoke screen of the Internet
- [security bulletin] SSRT051007 rev.2 - HP Tru64 UNIX Running DNS BIND4/BIND8 with Forwarders: Remote Unauthorized Privileged Access
- [security bulletin] SSRT051023 rev.6 - HP OpenView Network Node Manager (OV NNM) Remote Unauthorized Privileged Access
- [security bulletin] SSRT051045 rev.2 - HP-UX Running DNS BIND4/BIND8 as Forwarders: Remote Unauthorized Privileged Access
- [security bulletin] SSRT051102 rev.1 - HP HTTP Server Running on Windows, Forced Use of Weaker Security Protocol
- [security bulletin] SSRT061108 rev.2 - HP Systems Insight Manager Remote Unauthorized Access - Directory Traversal
- [security bulletin] SSRT061108 rev.3 - HP Systems Insight Manager Remote Unauthorized Access via Directory Traversal
- [security bulletin] SSRT061118 rev.1 - HP System Management Homepage (SMH) Running on Windows: Remote Unauthorized Access
- [SECURITY] [DSA 963-1] New mydns packages fix denial of service
- [SECURITY] [DSA 964-1] New gnocatan packages fix denial of service
- [SECURITY] [DSA 965-1] New ipsec-tools packages fix denial of service
- [SECURITY] [DSA 966-1] New adzapper packages fix denial of service
- [SECURITY] [DSA 967-1] New elog packages fix arbitrary code execution
- [SECURITY] [DSA 968-1] New noweb packages fix insecure temporary file creation
- [SECURITY] [DSA 969-1] New scponly packages fix potential root vulnerability
- [SECURITY] [DSA 970-1] New kronolith packages fix cross-site scripting
- [SECURITY] [DSA 971-1] New xpdf packages fix denial of service
- [SECURITY] [DSA 972-1] New pdfkit.framework packages fix denial of service
- [SECURITY] [DSA 973-1] New OTRS packages fix several vulnerabilities
- [SECURITY] [DSA 974-1] New gpdf packages fix denial of service
- [SECURITY] [DSA 975-1] New nfs-user-server packages fix arbitrary code execution
- [SECURITY] [DSA 976-1] New libast packages fix arbitrary code execution
- [SECURITY] [DSA 977-1] New heimdal packages fix several vulnerabilities
- [SECURITY] [DSA 978-1] New GnuPG packages fix invalid success return
- [SECURITY] [DSA 979-1] New pdfkit.framework packages fix several vulnerabilities
- [SECURITY] [DSA 980-1] New tutos packages fix multiple vulnerabilities
- [SECURITY] [DSA 982-1] New gpdf packages fix several vulnerabilities
- [SECURITY] [DSA 983-1] New pdftohtml packages fix several vulnerabilities
- [SLAB] NetBSD / OpenBSD kernfs_xread patch evasion
- [TZO-062006] Safe'nVulnerable
- [USN-247-1] Heimdal vulnerability
- [USN-248-1] unzip vulnerability
- [USN-248-2] unzip regression fix
- [USN-249-1] xpdf/poppler/kpdf vulnerabilities
- [USN-250-1] Linux kernel vulnerability
- [USN-251-1] libtasn vulnerability
- [USN-252-1] gnupg vulnerability
- [USN-253-1] heimdal vulnerability
- [USN-254-1] noweb vulnerability
- [USN-255-1] openssh vulnerability
- [USN-256-1] bluez-hcidump vulnerability
- [USN-257-1] tar vulnerability
- [USN-258-1] PostgreSQL vulnerability
- [waraxe-2006-SA#044] - XSS in phpNuke 7.8 and older versions
- [waraxe-2006-SA#045] - Bypassing CAPTCHA in phpNuke 6.x-7.9
- [waraxe-2006-SA#046] - Critical sql injection in phpNuke 7.5-7.8
- [waraxe-2006-SA#047] - Evading sql-injection filters in phpNuke 7.8
- [xfocus-SD-060206]BCB compiler incorrect deal sizeof operator vulnerability
- Administrivia: New Bugtraq moderator
- ADOdb Library Cross Site Scripting
- Advisory: CilemNews System <= 1.1 Remote SQL Injection Vulnerability
- Advisory: eZ publish <= 3.7.3 (imagecatalogue module) XSS vulnerability
- Advisory: Internet Explorer Drag and Drop Redeux [CVE-2005-3240] (fwd)
- Advisory: MyPHPNuke <= 1.8.8 multiple XSS vulnerabilities
- Advisory: Pentacle In-Out Board <= 6.03 (login.asp) Authencation ByPass Vulnerability
- Advisory: Pentacle In-Out Board <= 6.03 (newsdetailsview.asp newsid) Remote SQL Injection Vulnerability
- Advisory: Woltlab Burning Board 2.x (JGS-Gallery MOD <= 4.0) multiple XSS vulnerabilities
- Amazon phishing scam on Yahoo servers
- Announcement: Domain Contamination By Amit Klein
- announcement: reporting and mitigating botnets
- AOL Instant Messenger Version 5.9.3861 Local Buffer Overrun Vulnerability
- Applet privilege escalation
- Arbitrary code execution via OProfile
- Archangel Weblog 0.90.02 Admin Authentication Bypass & Remote File Inclusion
- Archive_Tar v 1.2(Tested) (Tar file management class) Directory traversal
- Archive_Zip (Zip file management class) Directory traversal
- ArGoSoft FTP server remote heap overflow
- BCS Asia 2006 - Call for Papers
- Black Hat USA CFP opens, Europe early bird reminder, Federal news
- Blackboard Authentication Error
- Blacklist defenses as a breeding ground for vulnerability variants
- bttlxeForum 2.* XSS Vulnerability
- Buffer Overflow /Font on mIRC
- Bug for libs in php link directory 2.0
- Bugs/Security issues with PatchLink's Update Server
- Bypass Fortinet anti-virus using FTP
- CAID 33581 - CA Message Queuing Denial of Service Vulnerabilities
- CAIDA analysis on CME-24/BlackWorm
- CGI Calendar XSS Vulnerability
- Cisco Security Advisory: TACACS+ Authentication Bypass in Cisco Anomaly Detection and Mitigation Products
- cleartext passwords get into log files
- Coppermine Photo Gallery <=1.4.3 remote code execution
- Corrupt Word file may cause buffer overflow in the Blackberry Attachment Service
- CPAINT AJAX Library Cross Site Scripting
- cPanel 10 handle.html XSS Vulnerability
- cPanel Multiple Cross Site Scripting Vulnerability
- CPGNuke Dragonfly 9.0.6.1 remote commands execution through arbitrary local inclusion
- Critical SQL Injection PHPNuke <= 7.8 - Your_Account module
- Cross Site Cooking
- crypt_blowfish 1.0
- CyberShop Ultimate E-commerce Script Cross Site Scripting
- CYBSEC - Security Pre-Advisory: Arbitrary File Read/Delete in SAP BC
- CYBSEC - Security Pre-Advisory: Phishing Vector in SAP BC
- D-Link DWL-G700AP httpd DoS
- Daffodil CRM - vulnerable to SQL-injection.
- DarkStarlings.com XSS Vulnerability
- Database Manager Default pass
- DB_eSession deleteSession() SQL injection
- DEF CON 14 is now in effect! The Call for Papers is open.
- Digital Armaments Security Advisory 02.14.2006: Gallery web-based photo gallery remote file execution
- directory traversal in DirectContact 0.3b
- DocMGR <= 0.54.2 arbitrary remote inclusion
- dotproject <= 2.0.1 remote code execution
- e107 CMS 0.7.2 Chatbox plugin XSS vulnerability
- Easily exploitable Pseudo Random Number generator in phpbb version 2.0.19 and under.
- EasyCMS vulnerable to XSS injection.
- EGS Enterprise Groupware System 1.0 rc4 remote commands execution & FlySpray 0.9.7 remote commands execution
- EJ3 TOPo - Cross Site Scripting Vulnerability
- eStara SIP softphone several message-processing vulnerabilities
- Event Speaker
- Everyone's loginName variable Cross Site Scripting Vulnerability
- Exchangepop3 rcpt buffer overflow vulnerability
- eyeOS <= 0.8.9 Remote Code Execution
- False positive signature verification in GnuPG
- FarsiNews 2.5 Multiple Vulnerabilities
- FarsiNews 2.5Pro Exploit
- Fcrontab - memory corruption on heap.
- Fedex Kinkos Smart Card Authentication Bypass
- First WMF mass mailer ItW (phishing Trojan)
- First WMF mass mailer ItW (phishing Trojan) - think singularities
- Folder Guard password protection bypass
- FreeBSD Security Advisory FreeBSD-SA-06:08.sack
- fwd: SuSE Security Announcement: heimdal (SUSE-SA:2006:011)
- Fwd: Trend Micro ServerProtect version 5.58 can be easily circumvented via the mechanism that limits how many files to scan.
- Geeklog Remote Code Execution
- grab cookie information with Melange Chat Server 1.10
- Guestbox XSS/an admin bypass
- H&R Block contact
- High Risk Vulnerability in Lexmark Printer Sharing Service
- HiveMail <= 1.3 Multiple Vulnerabilities
- honeyd security advisory: remote detection
- how to crash apache/php in cpanel
- HYSA-2006-003 Oi! Email Marketing 3.0 SQL Injection
- iDefense Labs Quarterly Hacking Challenge
- iDefense Security Advisory 02.01.06: Winamp m3u Parsing Stack Overflow Vulnerability
- iDefense Security Advisory 02.01.06: Winamp m3u/pls .WMA Extension Buffer Overflow Vulnerability
- iDefense Security Advisory 02.07.06: QNX Neutrino RTOS crttrap Arbitrary Library Loading Vulnerability
- iDefense Security Advisory 02.07.06: QNX Neutrino RTOS fontsleuth Command Format String Vulnerability
- iDefense Security Advisory 02.07.06: QNX Neutrino RTOS libAp ABLPATH Buffer Overflow Vulnerability
- iDefense Security Advisory 02.07.06: QNX Neutrino RTOS libph PHOTON_PATH Buffer Overflow Vulnerability
- iDefense Security Advisory 02.07.06: QNX Neutrino RTOS passwd Command Buffer Overflow
- iDefense Security Advisory 02.07.06: QNX Neutrino RTOS phfont Race Condition Vulnerability
- iDefense Security Advisory 02.07.06: QNX Neutrino RTOS phgrafx Command Buffer Overflow
- iDefense Security Advisory 02.07.06: QNX Neutrino RTOS su Command Buffer Overflow
- iDefense Security Advisory 02.07.06: QNX RTOS 6.3.0 Local Denial of Service Vulnerability
- iDefense Security Advisory 02.07.06: QNX RTOS 6.3.0 rc.local Insecure File Permissions Vulnerability
- iDEFENSE Security Advisory 02.10.06: IBM Lotus Domino Server LDAP DoS Vulnerability
- iDefense Security Advisory 02.14.06: Microsoft Windows Media Player Plugin Buffer Overflow Vulnerability
- iDefense Security Advisory 02.24.06: SCO Unixware Setuid ptrace Local Privilege Escalation Vulnerability
- imageVue16.1 upload vulnerability
- InqTana Through the eyes of Dr. Frankenstein.
- Internet Explorer drag&drop 0day
- Internet Explorer Phishing mouseover issue
- Internet Explorer remotely exploitable vulnerability in JScript's document.write() method
- Invision Power Board 2.1.4 Multiple Vulnerabilities
- Invision Power Board Army System Mod <= 2.1 SQL Injection Exploit
- IpSwitch WhatsUp Professional 2006 DoS
- IRM 017: Multiple Vulnerabilities in Infovista Portal SE
- IRM 018: Winamp 5.13 m3u Playlist Buffer Overflow
- IronMail-5.0.1-Denial of-Service-Protection-Lets-Remote-Users-Deny-Service
- Java script exploit
- John the Ripper 1.7; pam_passwdqc 1.0+; tcb 1.0; phpass 0.0
- Kadu Remote Denial Of Service Fun
- Knowledgebases Remote Command Exucetion
- Latest wu-ftpd exploit :-s
- LayerOne 2006 - Event Update and Announcement
- Linpha <= 1.0 multiple arbitrary local inclusion
- LoudBlog <= 0.4 arbitrary remote inclusion
- Mail Transport System Professional--Open Relay Hole
- mailback script exploit
- Malware that breaks SSL via Pharming {Emerging Threat}
- Mambo Multiple Vulnerabilities
- memory leak in IE?
- MiniNuke CMS System all versions (pages.asp) SQL Injection
- Mirabiliz ICQ 2002/2003/ LITE 4.0/4.1 LONG (DIRECTORY + FILENAME) EXPLOIT
- More info: gBook Multiple Unspecified Cross-Site Scripting Vulnerabilities
- More on the workaround for the unpatched Oracle PLSQL Gateway flaw
- Mozila Thunderbird 1.5 Address Book DoS
- Mozilla Thunderbird : Multiple Information Disclosure Vulnerabilities
- Mozilla Thunderbird : Remote Code Execution & Denial of Service
- Multiple Injection Vulnerabilities in PHP PEAR::Auth Module
- mwcollect Alliance Launch
- MyBB 1.03 Multible xss and sql injections
- MyBB 1.3 NewSQL Injection
- MyBB1.0.3~managegroup.php~Multiple SqlInjection & XSS
- MyCO multiple vulnerabilities
- MyQuiz Arbitrary Command Execution Exploit (perl)
- Neomail Cross Site Scripting Vulnerability
- NETGEAR WGT624 Wireless DSL Firewall/Router vulnerability
- NETGEAR WGT624 Wireless DSL router default user name/password vulnerability
- new linux malware
- new linux malware]
- New winamp m3u/pls .WMA & .M3U Extension overflows
- New worm crawling trough blogs?!
- NOCC Webmail <= 1.0 multiple vulnerabilities
- Norton Monitoring Systems funny problems
- Not completely fixed?
- Not completely fixed? (was: False positive signature verification in GnuPG)
- NSA Group Security Advisory NSAG-¹195-23.02.2006 Vulnerability FCKeditor 2.0 FC
- NSA Group Security Advisory NSAG-¹196-23.02.2006 Vulnerability FCKeditor 2.2
- NSA Group Security Advisory NSAG-¹197-23.02.2006 Vulnerability CubeCart 3.0.0 – 3.0.6
- NSA Group Security Advisory NSAG-¹198-23.02.2006 Vulnerability ArGoSoft Mail Server Pro
- NSA Group Security Advisory NSAG-¹198-23.02.2006 Vulnerability The Bat v. 3.60.07
- NSA Group Security Advisory NSAG-¹200-24.02.2006 Vulnerability ArGoSoft Mail Server Pro IMAP
- NSA Group Security Advisory NSAG-¹201-25.02.2006 Vulnerability SPiD v1.3.1
- NSA Group Security Advisory NSAG-¹202-25.02.2006 Vulnerability WEBSITE GENERATOR 3.3
- NSFOCUS SA2006-01 : Winamp m3u File Processing Buffer Overflow Vulnerability
- On the "0-day" term
- Openwall GNU/*/Linux (Owl) 2.0 release
- orbicule.com "Undercover"
- Outblaze Cross Site Scripting Vulnerability
- Password disclosure and remote access in Netcool/NeuSecure Security information management platform
- PEAR LiveUser File Access Vulnerabilities
- PEHEPE Membership Management System Multiple Vulnerabilities
- PeopleSoft (Oracle) PSCipher Encryption Weakness
- PHPKIT >= 1.6.1r2 arbitrary local/remote inclusion (unproperly patched in previous versions)
- phpRPC Library Remote Code Execution
- PixelArtKingdom TopSites Remote Command Exucetion
- PluggedOut Blog SQL injection and XSS
- PostgreSQL security releases 8.1.3, 8.0.7, 7.4.12, 7.3.14
- ProtoVer LDAP vs CommuniGate Pro 5.0.7
- ProtoVer Sample LDAP testsuite release
- ProtoVer SSL: GnuTLS
- PunBB 1.2.10 Multiple DoS Vulnerabilities
- PwsPHP Injection SQL on Index.php
- Quarantine your infected users spreading malware
- QwikiWiki v1.4 XSS Vulnerability
- RCblog exploit [fun]
- recursive DNS servers DDoS as a growing DDoS problem
- Research paper on covert channels
- RS-2006-1: Multiple flaws in VHCS 2.x
- RUNCMS 1.3a SQL injection
- runCMS <= 1.3a2 possible remote code execution through the integrated FCKEditor package
- Secunia Research: ArGoSoft Mail Server Pro viewheaders Script Insertion
- Secunia Research: IBM Lotus Domino iNotes Client Script Insertion Vulnerabilities
- Secunia Research: Lotus Notes HTML Speed Reader Link Buffer Overflows
- Secunia Research: Lotus Notes Multiple Archive Handling Directory Traversal
- Secunia Research: Lotus Notes TAR Reader File Extraction Buffer Overflow
- Secunia Research: Lotus Notes UUE File Handling Buffer Overflow
- Secunia Research: Lotus Notes ZIP File Handling Buffer Overflow
- Secunia Research: NJStar Word Processor Font Name Buffer Overflow
- Secunia Research: Visnetic AntiVirus Plug-in for MailServer Privilege Escalation
- Secunia Research: WinACE ARJ Archive Handling Buffer Overflow
- Security advisory: Windows IME Vulnerability (MS06-009)
- security contact
lycos.com
- SECURITY.NNOV: The Bat! 2.x message headers spoofing
- Sending exact replicas of Distributed.net's worked OGR project files could increase individual's stats.
- Siteframe Beaumont 5.0.1a <== Cross-Site Scripting Vulnerability
- Siteframe Beaumont 5.0.2 <== User Comment Cross-Site Scripting Vulnerability
- SLQ Injection vulnerability in WPCeasy
- SNORT Incorrect fragmented packet reassembly
- SoftMaker Shop is vulnerable to XSS
- Soldier of Fortune II format string through PunkBuster 1.180
- Sourceforge XSS
- South River WebDrive Buffer Overflow Vulnerability
- SpeedCommander 11.0 & ZipStar 5.1 & Squeez 5.1 Directory traversal
- sql injection in ASP Survey
- SQL Injection in DCI-Taskeen
- SQL injection in PHP Classifieds 6.20
- Stack overflow vulnerability in Internet Explorer exploitable trough VBScript and JScript scripting engines.
- StuffIt and ZipMagic Family of products Directory traversal
- SUSE Security Announcement: binutils,kdelibs3,kdegraphics3,koffice,dia,lyx (SUSE-SA:2006:007)
- SUSE Security Announcement: gpg,liby2util signature checking problems (SUSE-SA:2006:009)
- SuSE Security Announcement: heimdal (SUSE-SA:2006:010)
- Tasarim Rehberi Index.PHP Remote Command Exucetion
- The Domain Name Service as an IDS
- The History of the Oracle PLSQL Gateway Flaw
- The New Face of Phishing
- Thomson SpeedTouch 500 modems vulnerable to XSS
- Trend Micro ServerProtect version 5.58 can be easily circumvented via the mechanism that limits how many files to scan.
- TSLSA-2006-0006 - multi
- TSLSA-2006-0008 - multi
- TSLSA-2006-0010 - multi
- Uniden UIP1868P (VoIP phone/gateway) default easy-to-guess password vulnerability
- update on the linux worm
- URL filter bypass in Fortinet
- Verified evasion in Snort
- Virex on-access scanning unreliable
- VSR Advisory: IBM Tivoli Access Manager - Web Server Plug-in File Retrieval Vulnerability
- Vulnerabilites in new laws on computer hacking
- Vulnerabilities in vBulltin(3.0.7 - 3.5.3) and IPB(2.0.0 - 2.1.4).
- Vulnerability in Crypt::CBC Perl module, versions <= 2.16
- Vulnerability in WinRAR - Phishing based
- What can a Remote Vulnerability Scanner do in Future?
- What is the state of vulnerability research?
- Whitepaper by Amit Klein: "HTTP Response Smuggling"
- Whomp Real Estate Manager XP 2005 Sql Injection
- WinAce Archiver v2.6 Directory traversal
- Winamp .m3u fun again ;)
- Winamp 5.12 - 0day exploit - code execution through playlist
- Windows Media Player BMP Heap Overflow (MS06-005)
- WiredRed EPOP XSS Vulnerability
- WordPress 2.0.1 Multiple Vulnerabilities
- Workaround for unpatched Oracle PLSQL Gateway flaw
- XMB Forums Multiple Vulnerabilities
- XSS bugs and SQL injection in sNews
- XSS vulnerability in guestbook-php-script
- ZDI-06-002: Adobe Macromedia ShockWave Code Execution
- Zen-Cart <= 1.2.6d blind SQL injection / remote commands execution:
- zoo contains exploitable buffer overflows
Last message date: Tue Feb 28 2006 - 19:11:27 CST
Archived on: Mon Mar 20 2006 - 14:43:07 CST
551 messages sorted by: [ author ] [ date ] [ thread ]