SecurityFocus Bugtraq
By Thread
444 messages sorted by: [ author ] [ date ] [ subject ] [ attachment ]
Starting: 01/01/70
Ending: 08/31/05
- Vulnerability in Symantec Anti Virus Corporate Edition v9.x golovast_at_gmail.com (08/31/05)
- CMS Made Simple <= 0.10 - PHP injection groszynskif_at_gmail.com (08/31/05)
- RE: secure client-side platform Beauford, Jason (08/31/05)
- Simple Machine Forum 1-0-5 (possibly prior versions) user IP address / information disclosure retrogod_at_aliceposta.it (08/31/05)
- Obsidis #1 Call for Papers angelo_at_rosiello.org (08/31/05)
- XSS in GreyMatter blog poizon_at_securityinfo.ru (08/31/05)
- [SECURITY] [DSA 792-1] New pstotext packages fix arbitrary command execution Martin Schulze (08/31/05)
- [security bulletin] SSRT051003 rev.0 - HP-UX Java Web Start remote unauthorized privileged access security-alert_at_hp.com (08/30/05)
- Flatnuke 2.5.6 (possibly prior versions) Underlying system information disclosure / Administrative & users credentials disclosure retrogod_at_aliceposta.it (08/30/05)
- [ GLSA 200508-21 ] phpWebSite: Arbitrary command execution through XML-RPC and SQL injection Sune Kloppenborg Jeppesen (08/31/05)
- Indiatimes Messenger 6.0 Buffer Overflow (Remote) ViPeR (08/31/05)
- [ GLSA 200508-22 ] pam_ldap: Authentication bypass vulnerability Sune Kloppenborg Jeppesen (08/31/05)
- [security bulletin] SSRT051004 rev.0 - HP-UX Java Runtime Environment (JRE) Untrusted Applet Elevates Privilege security-alert_at_hp.com (08/30/05)
- secure client-side platform liudieyu_at_umbrella.name (08/31/05)
- Call for new mailing lists @ SecurityFocus Alfred Huger (08/31/05)
- MS05-042 Security Update Problems Andrew McCullough (08/30/05)
- [SECURITY] [DSA 791-1] New maildrop packages fix arbitrary group mail command execution Martin Schulze (08/30/05)
- Fetchmail 6.2.5 exploit for Bugtraq ID: 14349 bannedit_at_frontiernet.net (08/30/05)
- [SECURITY] [DSA 790-1] New phpldapadmin packages fix unauthorised access Martin Schulze (08/30/05)
- [UNTRUE] Gadu-Gadu supposedly fixed the invisible detection vulnerability? Maciej Soltysiak (08/30/05)
- e107 0.6 forum_post.php create new topics in non-existing forums Marc Ruef (08/30/05)
- [ GLSA 200508-20 ] phpGroupWare: Multiple vulnerabilities Thierry Carrez (08/30/05)
- [ GLSA 200508-19 ] lm_sensors: Insecure temporary file creation Thierry Carrez (08/30/05)
- [USN-173-3] Fixed apache2 packages for USN-173-2 Martin Pitt (08/30/05)
- phpLDAPadmin 0.9.6 - 0.9.7/alpha5 (possibly prior versions) system disclosure, retrogod_at_aliceposta.it (08/29/05)
- iDEFENSE Security Advisory 08.29.05: Symantec AntiVirus 9 Corporate Edition Local Privilege Escalation Vulnerability iDEFENSE Labs (08/29/05)
- iDEFENSE Security Advisory 08.29.05: Adobe Version Cue VCNative Arbitrary File Overwrite Vulnerability iDEFENSE Labs (08/29/05)
- iDEFENSE Security Advisory 08.29.05: Adobe Version Cue VCNative Arbitrary Library Loading Vulnerability iDEFENSE Labs (08/29/05)
- SUSE Security Announcement: pcre integer overflows (SUSE-SA:2005:048) Marcus Meissner (08/30/05)
- BNBT EasyTracker Remote Denial of Service Vulnerability Sowhat . (08/30/05)
- SUSE Security Announcement: php4/php5 Pear::XML_RPC code injection and PCRE integer overflow problems (SUSE-SA:2005:049) Marcus Meissner (08/30/05)
- Re: Sophos Antivirus Library Remote Heap Overflow list_at_rem0te.com (08/28/05)
- AutoLinks Pro 2.1 none_at_none.com (08/28/05)
- [SECURITY] [DSA 789-1] New PHP 4 packages fix several vulnerabilities Martin Schulze (08/29/05)
- Member.php SQL Injection in MyBB W7ED_at_HOTMAIL.COM (08/28/05)
- PunBB BBCode IMG Tag Script Injection Vulnerability y3dips_at_echo.or.id (08/29/05)
- WASC-Articles: 'Preventing Log Evasion in IIS' contact_at_webappsec.org (08/29/05)
- Vulnerability in Helpdesk software Hesk 0.92 s2b_at_hotmail.com (08/29/05)
- SimplePHPBlog Arbitrary File Deletion and Sample Exploit 'ken'_at_FTU (08/29/05)
- Land Down Under 801 And Prior Multiple SQL Injection Vulnerabilities h4cky0u.org_at_gmail.com (08/29/05)
- [SECURITY] [DSA 788-1] New kismet packages fix arbitrary code execution Martin Schulze (08/29/05)
- [cosmoshop <= 8.10.78] be the shopadmin in one step innate_at_gmx.de (08/29/05)
- Multiple vulnerabilities in BFCommand & Control for Battlefield 1942 and Vietnam Luigi Auriemma (08/29/05)
- Secunia Research: SqWebMail HTML Emails Script Insertion Vulnerability Secunia Research (08/29/05)
- Land Down Under bendeniz_avci_at_hotmail.com (08/28/05)
- FUD Forum < 2.7.1 PHP code injection vurnelability riklaunim_at_gmail.com (08/28/05)
- PHP-Fusion <= v6.00.107 XSS exploit slacker4ever_1_at_juno.com (08/29/05)
- Xcon2005 papers released alert7 (08/29/05)
- Multiple CMS/Forum Vulnablilties pacifico\ (08/28/05)
- XSS security hole in phpwebnotes. nf2 (08/27/05)
- MDKSA-2005:153 - Updated gnumeric packages fix integer overflow vulnerability Mandriva Security Team (08/27/05)
- MDKSA-2005:154 - Updated python packages fix integer overflow vulnerability Mandriva Security Team (08/27/05)
- Looking Glass v20040427 arbitrary commands execution / cross site scripting retrogod_at_aliceposta.it (08/27/05)
- Sophos Antivirus Library Remote Heap Overflow list_at_rem0te.com (08/26/05)
- MDKSA-2005:149 - Updated lm_sensors packages fix temporary file vulnerability Mandriva Security Team (08/26/05)
- DMA[2005-0826a] - 'Nokia Affix Bluetooth btsrv poor use of popen()' KF (lists) (08/27/05)
- [SECURITY] [DSA 786-1] New simpleproxy packages fix arbitrary code execution Martin Schulze (08/26/05)
- Simple PHP Blog File Upload and User Credentials Exposure Vulnerabilities Scott Dewey (08/26/05)
- Multiple PHP Images Galleries EXIF Metadata XSS Vulnerabilities Cedric Cochin (08/26/05)
- MDKSA-2005:151 - Updated pcre packages fix integer overflow vulnerability Mandriva Security Team (08/26/05)
- [ GLSA 200508-18 ] PhpWiki: Arbitrary command execution through XML-RPC Thierry Carrez (08/26/05)
- MDKSA-2005:150 - Updated bluez-utils packages fix vulnerability Mandriva Security Team (08/26/05)
- [security bulletin] SSRT051023 rev.0 - HP Openview Network Node Manager (OV NNM) Remote Unauthorized Access Boren, Rich (HP SSRT) (08/26/05)
- AWstats Path Disclosure Vulnerability fournaux_at_khmerdev.com (08/26/05)
- MDKSA-2005:152 - Updated php packages fix integer overflow vulnerability Mandriva Security Team (08/26/05)
- [SECURITY] [DSA 787-1] New backup-manager package fixes several vulnerabilities Martin Schulze (08/26/05)
- 22nd Chaos Communication Congress 2005: Call for Papers fukami (08/26/05)
- [USN-174-1] courier vulnerability Martin Pitt (08/26/05)
- CORRECTION: Remote IIS 5.x and IIS 6.0 Server Name Spoof Mark Burnett (08/25/05)
- Astaro Security Linux 6.0 - HTTP CONNECT Access Localhost Weakness oliver karow (08/25/05)
- Tool Announcement: AIRT -- the Advanced Incident Response Tool 0.4.2 released madsys (08/25/05)
- ssl-login-checkbox faked in Lycos webmail-frontend Fischer, Andreas (08/25/05)
- [ GLSA 200508-16 ] Tor: Information disclosure Sune Kloppenborg Jeppesen (08/25/05)
- An Illustrated Guide to IPSec Steve Friedl (08/25/05)
- Quake 2 Lithium Mod V 1.24 Macro Expansion Vuln? nukemmeister_at_gmail.com (08/25/05)
- Tool for Identifying Rogue Linksys Routers Martin Mkrtchian (08/25/05)
- Re: Tool for Identifying Rogue Linksys Routers Mike Frantzen (08/26/05)
- RE: Tool for Identifying Rogue Linksys Routers Thomas Guyot-Sionnest (08/25/05)
- Re: Tool for Identifying Rogue Linksys Routers Joshua Wright (08/25/05)
- Re: Tool for Identifying Rogue Linksys Routers Graham Wilson (08/26/05)
- RE: Tool for Identifying Rogue Linksys Routers Matt Mercer (08/25/05)
- Re: Tool for Identifying Rogue Linksys Routers Dave Hull (08/26/05)
- Re: Tool for Identifying Rogue Linksys Routers Tony Rall (08/27/05)
- [security bulletin] SSRT4702 rev.0 - HP-UX running Veritas 3.3/3.5 unauthorized data access Boren, Rich (HP SSRT) (08/25/05)
- [ GLSA 200508-17 ] libpcre: Heap integer overflow Stefan Cornelius (08/25/05)
- MS05_039 Exploitation (different languages) Roman Medina-Heigl Hernandez (08/25/05)
- [SECURITY] [DSA 785-1] New libpam-ldap packages fix authentication bypass Martin Schulze (08/25/05)
- Portcullis Security Advisory 05-014 HP Openview Remote Command Execution Vulnerability Paul J Docherty (08/25/05)
- [SECURITY] [DSA 784-1] New courier packages fix denial of service Martin Schulze (08/25/05)
- [ GLSA 200508-15 ] Apache 2.0: Denial of Service vulnerability Sune Kloppenborg Jeppesen (08/25/05)
- Advisory: iTAN not as secure as claimed release_at_redteam-pentesting.de (08/25/05)
- [ GLSA 200508-14 ] TikiWiki, eGroupWare: Arbitrary command execution through XML-RPC Thierry Carrez (08/24/05)
- [USN-173-2] PCRE vulnerability Martin Pitt (08/24/05)
- [ GLSA 200508-13 ] PEAR XML-RPC, phpxmlrpc: New PHP script injection vulnerability Thierry Carrez (08/24/05)
- unload event in ie/mozilla/opera Tobias Boonstoppel (08/23/05)
- RE: unload event in ie/mozilla/opera David Gillett (08/24/05)
- RE: unload event in ie/mozilla/opera Early, Clint (08/25/05)
- Re: unload event in ie/mozilla/opera Stefan Kelm (08/25/05)
- Re: unload event in ie/mozilla/opera gegegz_at_aol.com (08/28/05)
- Foojan PHP Weblog Information Disclosure - Refferer Html Injection ali202_at_fastermail.com (08/24/05)
- LeapFTP .lsq Buffer Overflow Vulnerability Sowhat . (08/24/05)
- [SECURITY] [DSA 783-1] New mysql packages fix insecure temporary file Martin Schulze (08/24/05)
- Re: Beehive Forum Multiple Vulnerabilities wibble_at_wobble.securityfocus.com (08/24/05)
- Secunia Research: HAURI Anti-Virus ACE Archive Handling Buffer Overflow Secunia Research (08/24/05)
- PaFileDB 3.1 - SQL-Injection astovidatu_at_security-project.org (08/24/05)
- Secunia Research: SqWebMail Attached File Script Insertion Vulnerability Secunia Research (08/24/05)
- Cross-site scripting vulnerability in BEA WebLogic administration console GomoR (08/24/05)
- Multiple Vulnerabilities in Home Ftp Server 1.0.7 Donato Ferrante (08/24/05)
- New Whitepaper - The Pharming Guide NGSSoftware Insight Security Research (08/24/05)
- [RLSA_01-2005] QNX inputtrap arbitrary file read vulnerability julio_at_rfdslabs.com.br (08/24/05)
- MDKSA-2005:147 - Updated slocate packages fix vulnerability Mandriva Security Team (08/23/05)
- Re: Interspire ArticleLive 2005 (php version) is vulnerable to XSS eddie_at_interspire.com (08/23/05)
- ZipTorrent 1.3.7.3 Discloses Proxy Passwords to Local Users kozan_at_spyinstructors.com (08/23/05)
- [USN-173-1] PCRE vulnerability Martin Pitt (08/23/05)
- [USN-172-1] lm-sensors vulnerability Martin Pitt (08/23/05)
- Mercora IMRadio 4.0.0.0 Discloses Passwords to Local Users kozan_at_spyinstructors.com (08/23/05)
- Server crash in Ventrilo 2.3.0 Luigi Auriemma (08/23/05)
- [ GLSA 200508-12 ] Evolution: Format string vulnerabilities Stefan Cornelius (08/26/05)
- Oracle Password Checker ak_at_red-database-security.com (08/23/05)
- MDKSA-2005:148 - Updated vim packages fix vulnerability Mandriva Security Team (08/23/05)
- MDKSA-2005:146 - Updated php-pear packages fix more PEAR XML-RPC vulnerabilities Mandriva Security Team (08/23/05)
- MDKSA-2005:145 - Updated openvpn packages fix several vulnerabilities Mandriva Security Team (08/23/05)
- [SECURITY] [DSA 782-1] New bluez-utils packages fix arbitrary command execution Martin Schulze (08/23/05)
- [SECURITY] [DSA 781-1] New Mozilla Thunderbird packages fix several vulnerabilities Martin Schulze (08/23/05)
- 32919 - Computer Associates Message Queuing (CAM/CAFT) multiple vulnerabilities Williams, James K (08/22/05)
- [ Suresec Advisories ] - Several MacOS X vulnerabilities Suresec Advisories (08/22/05)
- Remote IIS 5.x and IIS 6.0 Server Name Spoof inge_eivind.henriksen_at_chello.no (08/22/05)
- [SECURITYREASON.COM] Multiple vulnerabilities in PostNuke 0.760-RC4b=>x cXIb8O3.15 max_at_jestsuper.pl (08/22/05)
- SQL Injection and PHP Code Injection Vulnerabilities in PHPKit 1.6.1 phuket (08/22/05)
- Cisco Security Advisory: Cisco Intrusion Prevention System Vulnerable to Privilege Escalation Cisco Systems Product Security Incident Response Team (08/22/05)
- DMA[2005-0818a] - 'Apple OSX dsidentity privilege abuse' KF (lists) (08/22/05)
- Cisco Security Advisory: SSL Certificate Validation Vulnerability in IDS Management Software Cisco Systems Product Security Incident Response Team (08/22/05)
- ELM < 2.5.8 Remote Exploit POC c0ntexb_at_gmail.com (08/22/05)
- SUSE Security Announcement: Adobe Reader Plugin buffer overflow (SUSE-SA:2005:047) Marcus Meissner (08/22/05)
- Nephp Publisher Enterprise 3.04 Cross Site Scripting bl2k_at_shabgard.org (08/22/05)
- ToorCon 7 Lineup Finalized & Pre-Registration Ending h1kari_at_toorcon.org (08/20/05)
- Bugs Land Down Under v800 bl2k_at_shabgard.org (08/20/05)
- [SECURITY] [DSA 779-1] New Mozilla Firefox packages fix several vulnerabilities Martin Schulze (08/20/05)
- [USN-171-1] PHP4 vulnerabilities Martin Pitt (08/20/05)
- Woltlab Burning Board <= 2.2.2/2.3.3 modcp.php SQL injection admin_at_batznet.com (08/20/05)
- IBM Lotus Notes multiple disclosures of password hashes Shalom Carmel (08/20/05)
- Vul in MyBB s2b_at_hotmail.com (08/19/05)
- [ GLSA 200508-11 ] Adobe Reader: Buffer Overflow Thierry Carrez (08/19/05)
- Secunia Research: HAURI Anti-Virus Compressed Archive Directory Traversal Secunia Research (08/19/05)
- Fwd: Tor security advisory: DH handshake flaw Chris Palmer (08/19/05)
- [USN-169-1] Linux kernel vulnerabilities Martin Pitt (08/19/05)
- [ GLSA 200508-10 ] Kismet: Multiple vulnerabilities Sune Kloppenborg Jeppesen (08/19/05)
- [USN-170-1] gnupg vulnerability Martin Pitt (08/19/05)
- Cisco Clean Access Agent (Perfigo) bypass llhansen-bugtraq_at_adams.edu (08/19/05)
- [SECURITY] [DSA 778-1] New mantis packages fix several vulnerabilities Martin Schulze (08/19/05)
- WinAce Temporary File Parsing Buffer Overflow Vulnerability atmaca_at_icqmail.com (08/19/05)
- ATutor 1.5.1 and prior multiple XSS Vulnerabilities h4cky0u_at_gmail.com (08/18/05)
- w-agora 4.2.0 and prior Remote Directory Travel Vulnerability h4cky0u_at_gmail.com (08/18/05)
- UnixWare 7.1.4 UnixWare 7.1.3 : cpio race condition and directory traversal issues fixed. please_reply_to_security_at_sco.com (08/18/05)
- MDKSA-2005:144 - Updated wxPythonGTK packages several vulnerabilities Mandriva Security Team (08/18/05)
- DevC++ V.4.9.9.2 NULL BYTE INSERTION / OBFUSCATION FLAW (by rgod) retrogod_at_aliceposta.it (08/18/05)
- PHPFreeNews V1.40 and prior Multiple Vulnerabilities h4cky0u_at_gmail.com (08/17/05)
- runcms highlight.php hole Security Lists (08/18/05)
- MDKSA-2005:141 - Updated evolution packages fixes format string vulnerabilities Mandriva Security Team (08/18/05)
- MDKSA-2005:142 - Updated libtiff packages fixes vulnerability Mandriva Security Team (08/18/05)
- MDKSA-2005:143 - Updated kdegraphics packages fix kfax vulnerability Mandriva Security Team (08/18/05)
- BBCaffe 2.0 cross site scripting poc retrogod_at_liceposta.it (08/18/05)
- Sensitive Information Disclosure Vulnerability in Kinetics Kiosk Product Jason Coombs (08/18/05)
- Password Disclosure in Whisper32 Alexey Agapov (08/18/05)
- Zorum 3.5 remote code execution poc exploit retrogod_at_aliceposta.it (08/18/05)
- mutt buffer overflow Peter Valchev (08/18/05)
- Bluez hcid popen() explained. KF (lists) (08/18/05)
- Juniper Netscreen VPN Username Enumeration Vulnerability Roy Hills (08/18/05)
- Internet Explorer 6 Meta Refresh Parsing Weakness Moritz Naumann (08/17/05)
- MSN Messenger Password Decrypter for WinXP/2003 ViPeR (08/17/05)
- [ GLSA 200508-09 ] bluez-utils: Bluetooth device name validation vulnerability Sune Kloppenborg Jeppesen (08/17/05)
- [PHPADSNEW-SA-2005-001] phpAdsNew and phpPgAds 2.0.6 fix multiple vulnerabilities Matteo Beccati (08/17/05)
- Unicode Buffer Overflow in WinFtp Server 1.6.8 Donato Ferrante (08/17/05)
- PHPTB Topic Board <= 20: Multiple PHP injection vulnerabilities goszynskif_at_gmail.com (08/17/05)
- [SECURITY] [DSA 777-1] New Mozilla packages fix frame injection spoofing vulnerability Martin Schulze (08/17/05)
- SQL injection in mediabox404 v1.2 cedric_at_securityfocus.com (08/17/05)
- Buffer-overflow in Chris Moneymaker's World Poker Championship 1.0 Luigi Auriemma (08/17/05)
- [SECURITYREASON.COM] phpAdsNew/phpPgAds 2.0.5 Local file inclusion cXIb8O3.16 max_at_jestsuper.pl (08/17/05)
- NOVL-2005010098073 GroupWise Password Caching Ed Reed (08/17/05)
- Cisco Security Advisory: Cisco Clean Access Unauthenticated API Access Cisco Systems Product Security Incident Response Team (08/17/05)
- [security bulletin] SSRT4874 rev.0 - HP-UX Ignite-UX Remote Unauthorized Access Boren, Rich (HP SSRT) (08/16/05)
- Win32 Port of Nessusd Tom Stracener (08/16/05)
- Re: [Full-disclosure] Privilege escalation in Network Associates ePolicy Orchestrator Agent 3.5.0 (patch 3) NoBrain NoPain (08/15/05)
- Hummingbird FTP Weak Password Encryption nnposter_at_users.sourceforge.net (08/14/05)
- SQL injection in Persianblog alireza hassani (08/16/05)
- [ GLSA 200508-08 ] Xpdf, Kpdf, GPdf: Denial of Service vulnerability Sune Kloppenborg Jeppesen (08/16/05)
- [ GLSA 200508-07 ] AWStats: Arbitrary code execution using malicious Referrer information Sune Kloppenborg Jeppesen (08/16/05)
- [NOBYTES.COM: #9] ECW Shop 6.0.2 - Multiple Vulnerabilities John Cobb (08/16/05)
- SUSE Security Announcement: apache, apache2 request smuggling problem (SUSE-SA:2005:046) Marcus Meissner (08/16/05)
- [SECURITY] [DSA 776-1] New clamav packages fix several problems Martin Schulze (08/16/05)
- Corsaire Security Advisory: HP Ignite-UX filesystem permissions issue advisories (08/16/05)
- 249bytes reverse shellcode with "nooil tricks methods" msuiche_at_gmail.com (08/15/05)
- MDKSA-2005:140 - Updated proftpd packages fix format string vulnerabilities Mandriva Security Team (08/16/05)
- Corsaire Security Advisory: HP Ignite-UX passwd file disclosure issue advisories (08/16/05)
- MDKSA-2005:139 - Updated gaim packages fix yet more vulnerabilities Mandriva Security Team (08/16/05)
- Serious flaw in Linksys wireless AP password security Steve Scherf (08/14/05)
- Re: FunkBoard V0.66CF (possibly prior versions) cross site scripting, possible database username/password disclosure & board takeover,possible remote code execution colin_at_funkboard.co.uk (08/13/05)
- Serious flaw in Linksys wireless AP password security Steve Scherf (08/15/05)
- Technical Note by Amit Klein: Detecting and Preventing HTTP Response Splitting and HTTP Request Smuggling Attacks at the TCP Le Amit Klein (AKsecurity) (08/15/05)
- [ GLSA 200508-06 ] Gaim: Remote execution of arbitrary code Sune Kloppenborg Jeppesen (08/15/05)
- [SECURITY] [DSA 775-1] New Mozilla packages fix frame injection spoofing vulnerability Martin Schulze (08/15/05)
- drone armies C&C report - July/2005 Gadi Evron (08/15/05)
- [SECURITY] [DSA 761-2] New heartbeat packages fix insecure temporary files Martin Schulze (08/15/05)
- Vulnerability found in CPAINT Ajax Toolkit wiley14_at_gmail.com (08/15/05)
- Advisory 14/2005: PEAR XML_RPC Remote PHP Code Injection Vulnerability Stefan Esser (08/15/05)
- Advisory 15/2005: PHPXMLRPC Remote PHP Code Injection Vulnerability Stefan Esser (08/15/05)
- [DRUPAL-SA-2005-004] Drupal 4.6.3 / 4.5.5 fixes critical XML-RPC issue Uwe Hermann (08/15/05)
- SQL in PHPTB Topic Boards 2.0 almaster_at_hotmail.com (08/13/05)
- JaguarControl Activex Buffer Overflow Tacettin Karadeniz (08/13/05)
- Low security hole affecting Mentor's ADSLFR4II router Tim Brown (08/13/05)
- [USN-168-1] Gaim vulnerabilities Martin Pitt (08/12/05)
- Grandstream Budge Tone 101/102 DoS Vulnerability Kroma Pierre (08/12/05)
- Privilege escalation in Linksys WLAN Monitor v2.0 Reed Arvin (08/12/05)
- Windows 2000 universal exploit for MS05-039 sl0ppy_at_hush.ai (08/12/05)
- Insecure directory permissions of default installation of Kaspersky Anti-Virus for Unix/Linux File Servers will lead to local root exploit Dr. Peter Bieringer (08/12/05)
- My Bulletin Board RC 4 Vulnerabilities phuket (08/12/05)
- FW: Updated Version & Exploit - Privilege escalation in Nortel Contivity VPN Client V05_01.030 Jeff Peadro (08/12/05)
- (MS05-039) Microsoft Windows Plug-and-Play Service Remote Overflow (Universal Exploit + no crash shellcode) houseofdabus (08/12/05)
- [SECURITY] [DSA 774-1] New fetchmail packages fix arbitrary code execution Martin Schulze (08/12/05)
- Xoops 2.2.1 Full Path Disclosure none_at_none.com (08/12/05)
- Bluetooth: Theft of Link Keys for Fun and Profit? KF (lists) (08/12/05)
- MDKSA-2005:134 - Updated xpdf packages fix vulnerability Mandriva Security Team (08/11/05)
- MDKSA-2005:136 - Updated gpdf packages fix vulnerability Mandriva Security Team (08/11/05)
- [FLSA-2005:157701] Updated Apache httpd packages fix security issues Marc Deslauriers (08/11/05)
- [FLSA-2005:157696] Updated gzip package fixes security issues Marc Deslauriers (08/11/05)
- [FLSA-2005:152889] Updated mc packages fix security issues Marc Deslauriers (08/11/05)
- [FLSA-2005:129284] Updated spamassassin package fixes security issue Marc Deslauriers (08/11/05)
- MDKSA-2005:135 - Updated kdegraphics packages fix vulnerability Mandriva Security Team (08/11/05)
- MDKSA-2005:137 - Updated ucd-snmp packages fix a DoS vulnerability Mandriva Security Team (08/11/05)
- remote DOS on Wyse thin client 1125SE Josh Zlatin-Amishav (08/10/05)
- MDKSA-2005:138 - Updated cups packages fix vulnerability Mandriva Security Team (08/11/05)
- Privilege escalation in Network Associates ePolicy Orchestrator Agent 3.5.0 (patch 3) Reed Arvin (08/11/05)
- [SECURITY] [DSA 773-1] New amd64 packages fix several bugs Martin Schulze (08/11/05)
- SUSE Security Announcement: Mozilla various security problems (SUSE-SA:2005:045) Marcus Meissner (08/11/05)
- [USN-165-1] heartbeat vulnerability Martin Pitt (08/11/05)
- [USN-164-1] netpbm vulnerability Martin Pitt (08/11/05)
- Re: Compromising pictures of Microsoft Internet Explorer! Michal Zalewski (08/11/05)
- [USN-166-1] Evolution vulnerabilities Martin Pitt (08/11/05)
- High Risk Vulnerability in Novell eDirectory Server NGSSoftware Insight Security Research (08/11/05)
- ISS vs. Cisco: Chapter 2 FX (08/11/05)
- Privilege escalation in Nortel Contivity VPN Client V05_01.030 Jeff Peadro (08/10/05)
- Evolution multiple remote format string bugs sitic_at_pts.se (08/10/05)
- MDKSA-2005:133 - Updated netpbm packages fix temporary file vulnerabilities Mandriva Security Team (08/10/05)
- MDKSA-2005:132 - Updated heartbeat packages fix temporary file vulnerabilities Mandriva Security Team (08/10/05)
- CoolWebSearch found in massive spyware ring Paul Laudanski (08/10/05)
- Full path disclosure in CaLogic 1.22 and possible in older versions. gb.network_at_gmail.com (08/10/05)
- Help put a stop to incompetent computer forensics Jason Coombs (08/10/05)
- [KDE Security Advisory] kpdf temp file writing DoS vulnerability Dirk Mueller (08/09/05)
- NSFOCUS SA2005-02 : Microsoft IE Devenum.dll COM Instantiation Remote Code Execution Vulnerability NSFOCUS Security Team (08/10/05)
- [security bulletin] SSRT5998 rev.1 - HP System Management Homepage (v2.0.x) Denial of Service (DoS) and XSS security-alert_at_hp.com (08/10/05)
- [security bulletin] SSRT5957 rev.0 - HP Tru64 UNIX IPSEC Tunnel ESP Mode Remote Unauthorized Disclosure of Encrypted Data Security Alert (08/10/05)
- [security bulletin] SSRT051005 rev.0 - HP ProLiant DL585 Servers Unauthorized Remote Access security-alert_at_hp.com (08/10/05)
- Design Flaw at Microsoft's AntiSpyware manolisgavriil_at_hotmail.com (08/06/05)
- [security bulletin] SSRT5940 rev.1 - HP-UX Mozilla remote, unauthorized user may execute privileged code security-alert_at_hp.com (08/09/05)
- BID 14355, VERITAS NetBackup 5.1 Time Stamp Vulnerability secure_at_symantec.com (08/09/05)
- Mozilla Firefox up to 1.0.6 and Mozilla Thunderbird up to 1.0 url string obfuscation Marc Ruef (08/09/05)
- iDEFENSE Security Advisory 08.09.05: AWStats ShowInfoURL Remote Command Execution Vulnerability iDEFENSE Labs (08/09/05)
- Bugtraq ID: 14460 : Coldfusion Fusebox V4.1.0 Vulnerability Adrocknaphobia (08/09/05)
- Sql injection and global variables poisoning in XMB Forum 1.9.1 heintz_at_hotmail.com (08/09/05)
- Apple Safari & Javascript - KERN_INVALID_ADDRESS (0x0001) Patrick Webster (08/09/05)
- [USN-163-1] xpdf vulnerability Martin Pitt (08/09/05)
- FunkBoard V0.66CF (possibly prior versions) cross site scripting, possible database username/password disclosure & board takeover,possible remote code execution retrogod_at_aliceposta.it (08/08/05)
- [AppSecInc Advisory MYSQL05-V0003] Multiple Issues with MySQL User Defined Functions Team SHATTER (08/09/05)
- [AppSecInc Advisory MYSQL05-V0001] Improper Filtering of Directory Traversal Characters in MySQL User Defined Functions Team SHATTER (08/09/05)
- nbSMTP v0.99 remote format string exploit coki_at_nosystem.com.ar (08/05/05)
- Nate User Password Disclosed By Anonymous saintlinu_at_null2root.org (08/05/05)
- Creating a secret web site on IIS 5.x using Alternative Data Streams inge_eivind.henriksen_at_chello.no (08/04/05)
- [USN-162-1] ekg and Gadu library vulnerabilities Martin Pitt (08/08/05)
- Re: Kent's Guestbook database exploit security curmudgeon (08/06/05)
- [AppSecInc Advisory MYSQL05-V0002] Buffer Overflow in MySQL User Defined Functions Team SHATTER (08/09/05)
- Advisory 13/2005: Remote code execution in SysCP Christopher Kunz (08/08/05)
- XSS in forums CFBB v1.1.0 stormhacker_at_hotmail.com (08/05/05)
- iDEFENSE Security Advisory 08.05.05: EMC Navisphere Manager Directory Traversal Vulnerability iDEFENSE Labs (08/05/05)
- E107 + IPB XSS Exploit edward11_at_postmaster.co.uk (08/08/05)
- SQL IN Open Bulletin Board ABDUCTER_MINDS_at_YAHOO.COM (08/08/05)
- Gravity Board X v1.1 multiple vulnerabilities retrogod_at_aliceposta.it (08/07/05)
- [ GLSA 200508-05 ] Heartbeat: Insecure temporary file creation Sune Kloppenborg Jeppesen (08/07/05)
- [SVadvisory#13] - SQL injection in MYFAQ 1.0 svt_at_svt.nukleon.us (08/07/05)
- [ GLSA 200508-04 ] Netpbm: Arbitrary code execution in pstopnm Thierry Carrez (08/05/05)
- Vulnerability in ePing and eTrace plugins of e107 os2a.bto_at_gmail.com (08/05/05)
- Root exploits in Lantonix Secure Console Server c0ntex_at_open-security.org (08/05/05)
- Comdev eCommerce wce.download.php Download Vulnerability none_at_none.com (08/05/05)
- Defeating Citi-Bank Virtual Keyboard Protection Debasis Mohanty (08/05/05)
- ipb Css bug(now public) virusishacker_at_gmail.com (08/05/05)
- tar preserves setuid bit Imran Ghory (08/05/05)
- Comdev eCommerce config.php Vulnerability none_at_none.com (08/05/05)
- TSLSA-2005-0040 - multi Trustix Security Advisor (08/05/05)
- [HSC Security Group] Multiple XSS in phpopenchat 3.0.2 zinho_at_hackerscenter.com (08/05/05)
- Silvernews 2.0.3 remote command execution exploit, proxy server support! tsl_at_securityfocus.com, (08/05/05)
- Re: uguestbook exploit security curmudgeon (08/05/05)
- FlatNuke 2.5.5 (possibly prior versions) remote commands execution / cross site scripting / path disclosure (by rgod) retrogod_at_aliceposta.it (08/05/05)
- MDKSA-2005:131 - Updated ethereal packages fix multiple vulnerabilities Mandriva Security Team (08/05/05)
- Remote Password Compromise of Microsoft Active Sync 3.7.1 nospam_at_airscanner.com (08/04/05)
- Cisco IOS Shellcode - McAfee IPS Protection planz 235 (08/04/05)
- MDKSA-2005:130 - Updated apache packages fix vulnerabilities Mandriva Security Team (08/03/05)
- MDKSA-2005:129 - Updated apache2 packages fix vulnerabilities Mandriva Security Team (08/03/05)
- [USN-161-1] bzip2 utility vulnerability Martin Pitt (08/04/05)
- SQL IN PortailPHP ABDUCTER_MINDS_at_YAHOO.COM (08/04/05)
- FINAL Phrack Magazine release #63 is OUT phrackstaff_at_phrack.org (08/02/05)
- RE: Trillian Ver 3.1 saves password's in plain Text Keith Phillips (08/02/05)
- [ GLSA 200507-29 ] pstotext: Remote execution of arbitrary code Stefan Cornelius (07/31/05)
- Scanning Software Bugs Dan.Creed_at_thecreeds.net (08/02/05)
- [USN-160-1] Apache 2 vulnerabilities Martin Pitt (08/04/05)
- SUSE Security Announcement: several kernel security problems (SUSE-SA:2005:044) Ludwig Nussel (08/04/05)
- Microsoft ActiveSync information leak and spoofing 3APA3A (08/02/05)
- Zone Alarm Security Contact David Cross (08/03/05)
- Re: ClamAV Multiple Rem0te Buffer Overflows Steven M. Christey (08/03/05)
- [security bulletin] SSRT4682 rev.0 - Oracle for Openview (OfO) Critical Patch Update July 2005 security-alert_at_hp.com (08/03/05)
- Silvernews 2.0.3 (possibly previous versions ) SQL Injection / Login Bypass / Remote commands execution / cross site scripting retrogod_at_aliceposta.it (08/03/05)
- Coldfusion Fusebox V4.1.0 Vulnerability N.N.P (08/03/05)
- MDKSA-2005:128 - Updated mozilla packages fix multiple vulnerabilities Mandriva Security Team (08/03/05)
- [SECURITY] [DSA 772-1] New apt-cacher package fixes arbitrary command execution Martin Schulze (08/03/05)
- iDEFENSE Security Advisory 08.02.05: CA BrightStor ARCserve Backup Agent for MS SQL Server Buffer Overflow iDEFENSE Labs (08/03/05)
- Zip 2,31 bad default file-permissions vulnerability Imran Ghory (08/03/05)
- [security bulletin] SSRT5998 Rev.0 HP System Management Homepage (v2.0.x) Denial of Service (DoS) & XSS security-alert_at_hp.com (08/03/05)
- [NOBYTES.COM: #8] Naxtor Shopping Cart 1.0 - Information Disclosure & Possible SQL Injection John Cobb (08/02/05)
- CAID 33239 - Computer Associates BrightStor ARCserve/Enterprise Backup Agents buffer overflow vulnerability Williams, James K (08/02/05)
- [ GLSA 200508-03 ] nbSMTP: Format string vulnerability Thierry Carrez (08/02/05)
- Re: Re : [Firefox Bug 302187] New: Shared section vulnerability when opening microsoft office document resulting in DoS Cesar (07/30/05)
- VBZoom Cross Site Scripting Vulnerabilities almaster_at_hotmail.com (07/29/05)
- Quick 'n Easy FTP Server 3.0 pro / lite (buffer overflow vulnerabilities) matiteman_at_securityfocus.com, (08/02/05)
- HACK IN THE BOX SECURITY CONFERENCE 2005 alphademon (08/01/05)
- Arab Portal ABDUCTER_MINDS_at_YAHOO.COM (08/01/05)
- Re: Trillian Ver 3.1 saves password's in plain Text security curmudgeon (08/02/05)
- unzip TOCTOU file-permissions vulnerability Imran Ghory (08/02/05)
- [ GLSA 200508-02 ] ProFTPD: Format string vulnerabilities Sune Kloppenborg Jeppesen (08/01/05)
- Re: On classifying attacks Daniel Weber (07/28/05)
- [security bulletin] SSRT5931 rev.1 Apache on HP-UX Remote Denial of Service and client restriction bypass security-alert_at_hp.com (08/01/05)
- Re: LSS Security Advisory: Winamp remote buffer overflow vulnerability ljuranic_at_lss.hr (07/29/05)
- [USN-159-1] unzip vulnerability Martin Pitt (08/01/05)
- RE: On classifying attacks Forte Systems - Iosif Peterfi (07/29/05)
- [ GLSA 200507-28 ] AMD64 x86 emulation base libraries: Buffer overflow Thierry Carrez (07/30/05)
- Re: Peter Gutmann data deletion theaory? Michael Sierchio (07/27/05)
- [USN-158-1] gzip utility vulnerability Martin Pitt (08/01/05)
- MySQL Eventum Multiple Vulnerabilities GulfTech Security Research (07/31/05)
- [USN-157-1] Mozilla Thunderbird vulnerabilities Martin Pitt (08/01/05)
- Re: [BugTraq] Peter Gutmann data deletion theaory? Richard Clayton (07/28/05)
- RE: uguestbook exploit Earnhart, Benjamin J (07/28/05)
- ICMP attacks against TCP: Conclusions Fernando Gont (07/28/05)
- Vulnerability in Trendmicro Officescan sylvain.roger_at_solucom.fr (07/28/05)
- TSLSA-2005-0038 - multi Trustix Security Advisor (08/01/05)
- ChurchInfo Multiple Vulnerabilities thegreatone2176_at_yahoo.com (08/01/05)
- [SECURITY] [DSA 771-1] New pdns packages fix denial of service Martin Schulze (08/01/05)
- Buffer overflow in BusinessMail email server system 4.60.00 Reed Arvin (08/01/05)
- PHPList Vunerability ziot_at_whataboutpp.com (08/01/05)
- The Java applet sandbox and stateful firewalls Florian Weimer (07/31/05)
- [SVadvisory] - SQL injection in OpenBook 1.2.2 svt_at_svt.nukleon.us (07/30/05)
- [ GLSA 200508-01 ] Compress::Zlib: Buffer overflow Sune Kloppenborg Jeppesen (08/01/05)
- Re: TRILLIANSUGGESTION: passwords in cache=20 =20 Scott Werndorfer (01/01/70)
Last message date: 08/31/05
Archived on: 08/31/05 CEST
444 messages sorted by: [ author ] [ date ] [ subject ] [ attachment ]