Section: .. / 0606-advisories /
| /// File Name: |
sa20755.txt |
Description:
|
Secunia Security Advisory - r0t has discovered a vulnerability in Azureus, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/20755/ | | File Size: | 2492 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | 0f2c39ebcb28ee5c3b06f6baf68a30e9 |
|
| /// File Name: |
sa20754.txt |
Description:
|
Secunia Security Advisory - Florian Hackenberger has reported a vulnerability in dhcdbd, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/20754/ | | File Size: | 2359 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | 59811aeb2a95686267b279f9a2cb1926 |
|
| /// File Name: |
sa20751.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in cjGuestbook, which can be exploited by malicious people to conduct script insertion attacks.
| | Homepage: | http://secunia.com/advisories/20751/ | | File Size: | 2834 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | 6a0ed26ab36f5c9aa936684041e643b1 |
|
| /// File Name: |
sa20749.txt |
Description:
|
Secunia Security Advisory - Anon Sricharoenchai has discovered some vulnerabilities in MiMMS, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/20749/ | | File Size: | 2433 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | dcfc54efc38a1e94d71d96579d4f73b7 |
|
| /// File Name: |
sa20747.txt |
Description:
|
Secunia Security Advisory - r0t has reported some vulnerabilities in thinkWMS, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/20747/ | | File Size: | 2288 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | 48d80356b5a63d406590fcca1c7e48eb |
|
| /// File Name: |
sa20742.txt |
Description:
|
Secunia Security Advisory - r0t has reported a vulnerability in UltimateGoogle, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/20742/ | | File Size: | 2189 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | 5576b2b0a504eae734228b69b34ad92d |
|
| /// File Name: |
sa20740.txt |
Description:
|
Secunia Security Advisory - r0t has reported some vulnerabilities in phpTRADER, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/20740/ | | File Size: | 2550 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | 1ba305487aad117abc78c4f9a2432b2f |
|
| /// File Name: |
sa20737.txt |
Description:
|
Secunia Security Advisory - r0t has reported a vulnerability in Ultimate eShop, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/20737/ | | File Size: | 2290 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | d69c00fadd750e4b8c7b0be62e8e9c8e |
|
| /// File Name: |
sa20732.txt |
Description:
|
Secunia Security Advisory - Some vulnerabilities have been reported in IBM Websphere Application Server, which can be exploited by malicious, local users and malicious people to gain knowledge of sensitive information.
| | Homepage: | http://secunia.com/advisories/20732/ | | File Size: | 2362 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | d5b421d6e6c618881e0eff39d9ceb735 |
|
| /// File Name: |
sa20726.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in FortiMail, which potentially can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/20726/ | | File Size: | 2314 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | 266d5a99e8155476902670127dd7f4e7 |
|
| /// File Name: |
sa20723.txt |
Description:
|
Secunia Security Advisory - IBM has acknowledged a vulnerability and a weakness in IBM HMC, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges, and by malicious people to compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/20723/ | | File Size: | 2360 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | 93af5a806dd6ecf3032a56fc6ba70f34 |
|
| /// File Name: |
sa20722.txt |
Description:
|
Secunia Security Advisory - BassReFLeX has discovered a vulnerability in WinAmp, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system.
| | Homepage: | http://secunia.com/advisories/20722/ | | File Size: | 2632 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | ad5823b5c7998e6b6cb923702cbb6cc0 |
|
| /// File Name: |
sa20720.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in FortiGate, which can be exploited by malicious people to bypass certain security restrictions.
| | Homepage: | http://secunia.com/advisories/20720/ | | File Size: | 2512 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | 743baac13fec6d5bdc7d429b1abc7373 |
|
| /// File Name: |
sa20714.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Open WebMail, which can be exploited by malicious people to conduct cross-site scripting attacks.
| | Homepage: | http://secunia.com/advisories/20714/ | | File Size: | 2189 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | 522a63fca2c4b020e67622a8c5193c70 |
|
| /// File Name: |
sa20701.txt |
Description:
|
Secunia Security Advisory - CrAzY CrAcKeR has reported a vulnerability in VBZooM, which can be exploited by malicious people to conduct SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/20701/ | | File Size: | 2147 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | 03a29033f7e1ecfaa74674df491e33ac |
|
| /// File Name: |
sa20649.txt |
Description:
|
Secunia Security Advisory - luny has reported some vulnerabilities in V3 Chat Instant Messenger, which can be exploited by malicious users to conduct SQL injection attacks, script insertion attacks, and bypass certain security restrictions, and by malicious people to conduct cross-site scripting attacks and SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/20649/ | | File Size: | 3288 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | 3156923760739705f27c00d8e84dcf8c |
|
| /// File Name: |
sa19180.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered two vulnerabilities in BlueDragon Server/Server JX, which can be exploited by malicious people to conduct cross-site scripting attacks and cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/19180/ | | File Size: | 3279 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | e8141edb6ae6b4c61a8378e0da33d612 |
|
| /// File Name: |
MDKSA-2006-103.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-103 - A flaw was discovered in the way that spamd processes the virtual POP usernames passed to it. If running with the --vpopmail and --paranoid flags, it is possible for a remote user with the ability to connect to the spamd daemon to execute arbitrary commands as the user running spamd.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 5431 | | Last Modified: | Jun 21 10:25:46 2006 |
| MD5 Checksum: | c86f342d5840ff2c6fcf27e1c9b1b43a |
|
| /// File Name: |
MDKSA-2006-102.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-102- A buffer overflow in the t2p_write_pdf_string function in tiff2pdf in libtiff 3.8.2 and earlier allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a TIFF file with a DocumentName tag that contains UTF-8 characters, which triggers the overflow when a character is sign extended to an integer that produces more digits than expected in a sprintf call. Corporate Server 3 and Corporate Desktop 3 are not affected by this vulnerability as tiff2pdf was not part of the libtiff version shipped in those products.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 4871 | | Last Modified: | Jun 21 10:22:14 2006 |
| MD5 Checksum: | 15dd14dfe851008600447d167b67425e |
|
| /// File Name: |
MDKSA-2006-101.txt |
Description:
|
Mandriva Linux Security Advisory MDKSA-2006-101- A PHP remote file inclusion vulnerability in functions/plugin.php in SquirrelMail 1.4.6 and earlier, if register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary PHP code via a URL in the plugins array parameter.
| | Homepage: | http://www.mandriva.com/security/advisories | | File Size: | 2850 | | Last Modified: | Jun 21 10:21:35 2006 |
| MD5 Checksum: | 9419a6bec30457102b19ef911872d974 |
|
| /// File Name: |
dsa-1099-1.txt |
Description:
|
Debian Security Advisory 1099-1 - Michael Marek discovered that the Horde web application framework performs insufficient input sanitising, which might lead to the injection of web script code through cross-site scripting.
| | Homepage: | http://www.debian.org/security | | File Size: | 2886 | | Related CVE(s): | CVE-2006-2195 | | Last Modified: | Jun 21 10:18:42 2006 |
| MD5 Checksum: | 9132086aee8d862b09c9b8ec5766ebc0 |
|
| /// File Name: |
dsa-1098-1.txt |
Description:
|
Debian Security Advisory 1098-1 - Michael Marek discovered that the Horde web application framework performs insufficient input sanitising, which might lead to the injection of web script code through cross-site scripting.
| | Homepage: | http://www.debian.org/security | | File Size: | 2898 | | Related CVE(s): | CVE-2006-2195 | | Last Modified: | Jun 21 10:17:55 2006 |
| MD5 Checksum: | 3f4a2115940b75b3a05e2d014053db78 |
|
| /// File Name: |
USN-301-1.txt |
Description:
|
Ubuntu Security Notice 301-1 - Ludwig Nussel discovered that kdm managed the ~/.dmrc file in an insecure way. By performing a symlink attack, a local user could exploit this to read arbitrary files on the system, like private files of other users, /etc/shadow, and similarly sensitive data.
| | Homepage: | http://www.ubuntu.com/ | | File Size: | 43555 | | Related CVE(s): | CVE-2006-2449 | | Last Modified: | Jun 21 10:13:19 2006 |
| MD5 Checksum: | aa8dcf4058ea749afff1517e87b9f476 |
|
| /// File Name: |
USN-300-1.txt |
Description:
|
Ubuntu Security Notice 300-1 - libwv2 did not sufficiently check the validity of its input. Certain invalid Word documents caused a buffer overflow. By tricking a user into opening a specially crafted Word file with an application that uses libwv2, this could be exploited to execute arbitrary code with the user's privileges.
| | Homepage: | http://www.ubuntu.com/ | | File Size: | 5919 | | Related CVE(s): | CVE-2006-2197 | | Last Modified: | Jun 21 10:12:32 2006 |
| MD5 Checksum: | 6d2adb80b154a8231ab527c08485f094 |
|
|
|
|
|