Secunia.com

<= You can click on the link below for more detail


Debian update for rsync
Debian has issued an update for rsync. This fixes a vulnerability, which can potentially be exploited by malicious people to compromise a vulnerable system.
 
Ubuntu update for tar
Ubuntu has issued an update for tar. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system.

SomeryC "skindir" File Inclusion Vulnerability
Katatafish has reported a vulnerability in SomeryC, which can be exploited by malicious people to compromise a vulnerable system.

Mandriva update for kernel
Mandriva has issued an update for the kernel. This fixes some security issues and vulnerabilities, which can be exploited by malicious, local users to disclose potentially sensitive information, cause a DoS (Denial of Service), and by malicious people to cause a DoS.

Ubuntu update for vim
Ubuntu has issued an update for vim. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system.

Moon Gallery admin.php File Upload Vulnerability
s0cratex has discovered a vulnerability in Moon Gallery, which can be exploited by malicious users to compromise a vulnerable system.

ACTi NVR Server nvUtility.Utility ActiveX Control Insecure Methods

shinnai has discovered two vulnerabilities in the nvUtility.Utility ActiveX control, which can be exploited by malicious people to manipulate data or compromise a user's system.
 
PhpGedView login.php Cross-Site Scripting Vulnerabilities
Joshua Morin has discovered two vulnerabilities in PhpGedView, which can be exploited by malicious people to conduct cross-site scripting attacks.

BIND 8 Predictable DNS Query IDs Vulnerability
Amit Klein has reported a vulnerability in BIND, which can be exploited by malicious people to poison the DNS cache.

VMWare Workstation vstor-ws60.sys Denial of Service
seppi has reported a vulnerability in VMWare Workstation, which can be exploited by malicious, local users to cause a DoS (Denial of Service).

TortoiseSVN Client Directory Traversal Vulnerability
A vulnerability has been reported in TortoiseSVN, which can be exploited by malicious people to compromise a user's system.

BufferZone redlight.sys Denial of Service
seppi has reported a vulnerability in BufferZone, which can be exploited by malicious, local users to cause a DoS (Denial of Service).

BitchX "MODE" Buffer Overflow

bannedit has reported a vulnerability in BitchX, which can potentially be exploited by malicious people to compromise a user's system.

Motorola Timbuktu Pro Directory Traversal and Buffer Overflows

Some vulnerabilities have been reported in Timbuktu Pro, which can be exploited by malicious users and malicious people to compromise a vulnerable system.

Dynamic Picture Frame "img_url" Cross-Site Scripting

Joshua Morin has reported a vulnerability in Dynamic Picture Frame, which can be exploited by malicious people to conduct cross-site scripting attacks.
 
MSN Messenger Video Conversation Buffer Overflow Vulnerability

wushi has reported a vulnerability in MSN Messenger, which can be exploited by malicious people to compromise a user's system.

HP-UX "get_system_info" Command Configuration Change Weakness

A weakness has been reported in HP-UX, which can lead to unqualified configuration changes.

Helix DNA Server RTSP Buffer Overflow

Mu Security has reported a vulnerability in the Helix DNA Server, which can potentially be exploited by malicious people to compromise a vulnerable system.

PLANET VC-200M Denial of Service Vulnerability
A vulnerability has been reported in the PLANET VC-200M VDSL2 router, which can be exploited by malicious people to cause a DoS (Denial of Service).

Thomson SpeedTouch 2030 Denial of Service Vulnerability

A vulnerability has been reported in the Thomson SpeedTouch 2030 VoIP phone, which can be exploited by malicious people to cause a DoS (Denial of Service).

Tikiwiki "username" Cross-Site Scripting
 A vulnerability has been discovered in Tikiwiki, which can be exploited by malicious people to conduct cross-site scripting attacks.


arrow
arrow
    全站熱搜
    創作者介紹
    創作者 jason0936 的頭像
    jason0936

    J漾諸事會社

    jason0936 發表在 痞客邦 留言(0) 人氣()