Section: .. / 0606-advisories /
| /// File Name: |
sa20643.txt |
Description:
|
Secunia Security Advisory - Tamriel has reported a vulnerability in Chipmailer, which can be exploited by malicious users to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/20643/ | | File Size: | 2148 | | Last Modified: | Jun 17 03:13:40 2006 |
| MD5 Checksum: | de5557f5b088a0dfdabf8a14fbe0852e |
|
| /// File Name: |
sa20628.txt |
Description:
|
Secunia Security Advisory - Two vulnerabilities have been reported in Wikkawiki, which can be exploited by malicious people to conduct script insertion attacks and potentially to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/20628/ | | File Size: | 2653 | | Last Modified: | Jun 17 03:13:40 2006 |
| MD5 Checksum: | 6f8d4c339aeee8b6c20ea0bcf2870de9 |
|
| /// File Name: |
sa20689.txt |
Description:
|
Secunia Security Advisory - Ubuntu has issued an update for wv2. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/20689/ | | File Size: | 4812 | | Last Modified: | Jun 15 20:39:50 2006 |
| MD5 Checksum: | 86b90302ef475ab3c7cd4e1a55fdbdac |
|
| /// File Name: |
sa20688.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for wv2. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/20688/ | | File Size: | 6351 | | Last Modified: | Jun 15 20:39:50 2006 |
| MD5 Checksum: | ed8c8cafb0bdf91413e022945ddd4a62 |
|
| /// File Name: |
sa20687.txt |
Description:
|
Secunia Security Advisory - RedTeam has reported a vulnerability in phpBannerExchange, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/20687/ | | File Size: | 2324 | | Last Modified: | Jun 15 20:39:50 2006 |
| MD5 Checksum: | ecadbdfc3c94c495c8c5b90e6ddb7a47 |
|
| /// File Name: |
sa20676.txt |
Description:
|
Secunia Security Advisory - SUSE has issued an update for php. This fixes some vulnerabilities, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) or to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/20676/ | | File Size: | 22445 | | Last Modified: | Jun 15 20:39:50 2006 |
| MD5 Checksum: | d71023901afe73bd80dabd079123db6a |
|
| /// File Name: |
sa20675.txt |
Description:
|
Secunia Security Advisory - IBM has acknowledged a vulnerability in sendmail, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/20675/ | | File Size: | 2070 | | Last Modified: | Jun 15 20:39:50 2006 |
| MD5 Checksum: | 34ac6e45b52d2887af8f0b1be8ca2044 |
|
| /// File Name: |
sa20672.txt |
Description:
|
Secunia Security Advisory - Debian has issued an update for horde3. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/20672/ | | File Size: | 2753 | | Last Modified: | Jun 15 20:39:50 2006 |
| MD5 Checksum: | 41825a959320a521108920e285207187 |
|
| /// File Name: |
sa20669.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for DokuWiki. This fixes some vulnerabilities, which can be exploited by malicious users to bypass certain security restrictions and by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/20669/ | | File Size: | 2162 | | Last Modified: | Jun 15 20:39:50 2006 |
| MD5 Checksum: | 282f2f53ab038895191eb4afcf97ced4 |
|
| /// File Name: |
sa20665.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in wvWare wv2 Library, which potentially can be exploited by malicious people to compromise an application using the library.
| | Homepage: | http://secunia.com/advisories/20665/ | | File Size: | 2440 | | Last Modified: | Jun 15 20:39:50 2006 |
| MD5 Checksum: | b227837318d333ade819896a0d61896c |
|
| /// File Name: |
sa20661.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in Horde, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/20661/ | | File Size: | 2564 | | Last Modified: | Jun 15 20:39:50 2006 |
| MD5 Checksum: | d992a9c4c3ddb6fdb5b51529320f612b |
|
| /// File Name: |
sa20658.txt |
Description:
|
Secunia Security Advisory - Gentoo has issued an update for asterisk. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/20658/ | | File Size: | 1982 | | Last Modified: | Jun 15 20:39:50 2006 |
| MD5 Checksum: | d4ed92d2000fb625b4e02d21aa255191 |
|
| /// File Name: |
sa20656.txt |
Description:
|
Secunia Security Advisory - spykids has discovered some vulnerabilities in PictureDis products, which can be exploited by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/20656/ | | File Size: | 2406 | | Last Modified: | Jun 15 20:39:50 2006 |
| MD5 Checksum: | f968e2e7e1e30940e6951b65df08ffd1 |
|
| /// File Name: |
sa20576.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities with unknown impacts have been reported in Adobe Reader.
| | Homepage: | http://secunia.com/advisories/20576/ | | File Size: | 2043 | | Last Modified: | Jun 15 20:39:50 2006 |
| MD5 Checksum: | 17fb0db51755e9963ea5bcf695fe3891 |
|
| /// File Name: |
sa15779.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Sendmail, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/15779/ | | File Size: | 2976 | | Last Modified: | Jun 15 20:39:50 2006 |
| MD5 Checksum: | d85a02cfa2295e708eef8b3fbef6fc29 |
|
| /// File Name: |
secunia-zipinfo.txt |
Description:
|
Secunia Research has discovered a vulnerability in PicoZip version 4.01, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to a boundary error within the "zipinfo.dll" info tip shell extension when reading a ACE, RAR, or ZIP archive that contains a file with an overly long filename. This can be exploited to cause a stack-based buffer overflow when the user moves the mouse cursor over a malicious archive either in Windows Explorer or from any program that uses the file-open dialog box. Successful exploitation allows arbitrary code execution.
| | Author: | Tan Chew Keong | | Homepage: | http://secunia.com/ | | File Size: | 3645 | | Related CVE(s): | CVE-2006-2909 | | Last Modified: | Jun 15 11:04:50 2006 |
| MD5 Checksum: | bea72ef5b0f040b96557a8b38bfddea9 |
|
| /// File Name: |
SEC-20060613-0.txt |
Description:
|
SEC-CONSULT Security Advisory 20060613-0 - Microsoft Outlook Web Access is vulnerable to an HTML code injection/cross site scripting attack. A malicious user could craft a mail containing HTML and Javascript code. Such code could be used to steal session information from the victims cookies, and thus enable the attacker to get access to the victim's emails. Vulnerable versions are Exchange 2000 (SP3), 2003 (SP1), 2003 (SP2).
| | Author: | D. Fabian, T. Kerbl | | Homepage: | http://www.sec-consult.com/ | | File Size: | 3463 | | Last Modified: | Jun 15 11:03:25 2006 |
| MD5 Checksum: | 7f38fada882239ce16eb4a77004df1f7 |
|
| /// File Name: |
tikiwiki1932.txt |
Description:
|
TikiWiki version 1.9.3.2 has been reported as being susceptible to SQL injection and cross site scripting vulnerabilities.
| | Homepage: | http://securitynews.ir/ | | File Size: | 924 | | Last Modified: | Jun 15 10:00:30 2006 |
| MD5 Checksum: | 24b2d5e312138e5168f11dd8fcf56ffa |
|
| /// File Name: |
rasman.txt |
Description:
|
Peter Winter-Smith of NGSSoftware has discovered a high risk vulnerability in the Microsoft Windows Remote Access Connection Manager (RASMAN) service which (under certain versions of the OS) can allow a remote, anonymous attacker to gain complete control over a vulnerable system.
| | Author: | Peter Winter-Smith | | Homepage: | http://www.nextgenss.com/ | | File Size: | 1489 | | Last Modified: | Jun 15 09:55:46 2006 |
| MD5 Checksum: | 0166eb830dc1f396dcf4fb1f31431818 |
|
| /// File Name: |
secunia-mybb.txt |
Description:
|
Secunia Research has discovered a vulnerability in MyBB, which can be exploited by malicious people to compromise a vulnerable system. Input passed to the username field when registering is not properly sanitized before being used in a "preg_replace" call with the "e" modifier in the "domecode()" function in inc/functions_post.php. This can be exploited to execute arbitrary PHP code by first registering with a specially crafted username and then previewing a post containing the "/slap" string. The vulnerability has been confirmed in version 1.1.2. Prior versions may also be affected.
| | Author: | Andreas Sandblad | | Homepage: | http://secunia.com/ | | File Size: | 4151 | | Related CVE(s): | CVE-2006-2908 | | Last Modified: | Jun 15 08:31:20 2006 |
| MD5 Checksum: | e051b4cd8b35a8d1158abb7af2484605 |
|
| /// File Name: |
Myscrap31.txt |
Description:
|
Myscrapbook version 3.1 is susceptible to cross site scripting attacks.
| | Author: | luny | | File Size: | 1323 | | Last Modified: | Jun 15 08:02:33 2006 |
| MD5 Checksum: | 611bafd9fcbd79d27c9cd9ff68d30fa5 |
|
| /// File Name: |
sa20667.txt |
Description:
|
Secunia Security Advisory - Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system.
| | Homepage: | http://secunia.com/advisories/20667/ | | File Size: | 2480 | | Last Modified: | Jun 15 01:41:40 2006 |
| MD5 Checksum: | 126dda03ced74481476e93f930cd51c8 |
|
| /// File Name: |
sa20666.txt |
Description:
|
Secunia Security Advisory - Avaya has acknowledged a vulnerability in various products, which can be exploited by malicious, local users to read arbitrary cron files.
| | Homepage: | http://secunia.com/advisories/20666/ | | File Size: | 2542 | | Last Modified: | Jun 15 01:41:40 2006 |
| MD5 Checksum: | 8308b913c43e17dce19db60f79c1b44d |
|
| /// File Name: |
sa20653.txt |
Description:
|
Secunia Security Advisory - Avaya has acknowledged two vulnerabilities and a weakness in various Avaya products, which potentially can be exploited by malicious, local users to bypass certain security restrictions, and by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/20653/ | | File Size: | 2998 | | Last Modified: | Jun 15 01:41:40 2006 |
| MD5 Checksum: | 2b39a3352b0a6eb84ee5760d36f2acb2 |
|
| /// File Name: |
sa20648.txt |
Description:
|
Secunia Security Advisory - securitynews has reported some vulnerabilities in TikiWiki, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/20648/ | | File Size: | 2410 | | Last Modified: | Jun 15 01:41:40 2006 |
| MD5 Checksum: | d283257b1b6cc8db85101156961e42bd |
|
|
|
|
|