Section: .. / 0606-advisories /
| /// File Name: |
MU-200606-02.txt |
Description:
|
Apple Open Directory Pre-Authentication Denial of Service: A denial of service condition exists in slapd (OpenLDAP-2.2.19) during the anonymous bind operation. By sending a malformed ldap-bind message, the slapd server can be forced to abort
| | Homepage: | http://labs.musecurity.com | | File Size: | 2547 | | Last Modified: | Jun 29 06:09:19 2006 |
| MD5 Checksum: | f96978fa079818553cd2a21579c6fed6 |
|
| /// File Name: |
MyBB-1.1.3 |
Description:
|
MyBB 1.1.3 suffers from cross site scripting
| | Homepage: | http://kapda.ir/page-advisory.html | | File Size: | 626 | | Last Modified: | Jun 29 06:21:39 2006 |
| MD5 Checksum: | adb3c4757e8a48bf66347bc0266e1ce4 |
|
| /// File Name: |
Myscrap31.txt |
Description:
|
Myscrapbook version 3.1 is susceptible to cross site scripting attacks.
| | Author: | luny | | File Size: | 1323 | | Last Modified: | Jun 15 08:02:33 2006 |
| MD5 Checksum: | 611bafd9fcbd79d27c9cd9ff68d30fa5 |
|
| /// File Name: |
NCPbypass.txt |
Description:
|
The NCP VPN/PKI client version 8.30 suffers from a UDP bypass vulnerability in its provided firewall functionality.
| | Author: | ml3 | | File Size: | 2920 | | Last Modified: | Jul 2 10:34:49 2006 |
| MD5 Checksum: | 5df2469e5bfef853ca32a7099d5d83ad |
|
| /// File Name: |
NPDS-5.10.txt |
Description:
|
NPDS versions less than or equal to 5.10 suffer from local file inclusion, XSS, and full path disclosure.
| | Author: | gmdarkfig | | File Size: | 1322 | | Last Modified: | Jun 11 04:38:51 2006 |
| MD5 Checksum: | fc63d1a6fbc9bb3235c0b0fcfc9e6800 |
|
| /// File Name: |
ntfsstealth.txt |
Description:
|
Various antivirus software, including Panda, ClamWin, Norman Virus Control, and AVG Antivirus are all susceptible to a bypass vulnerability.
| | Author: | Joxean Koret | | File Size: | 2666 | | Last Modified: | Jun 5 10:45:11 2006 |
| MD5 Checksum: | eafaf80956fbfb5e28bcf3981488550b |
|
| /// File Name: |
OaBoard1.0.txt |
Description:
|
OaBoard 1.0 suffers from a flow that allows anyone to include remote php files via the "inc" variable.
| | Author: | hessamx | | Homepage: | http://www.hessamx.net | | File Size: | 180 | | Last Modified: | Jun 1 02:56:23 2006 |
| MD5 Checksum: | 23761f7d48329e24f7b90d25a9bdde3d |
|
| /// File Name: |
Oggiv1.0.txt |
Description:
|
Weblog Oggi v1.0 suffers from XSS.
| | Author: | luny | | File Size: | 214 | | Last Modified: | Jun 3 06:25:53 2006 |
| MD5 Checksum: | 95121311cf181b57ba740e302511f57f |
|
| /// File Name: |
OpenPKG-SA-2006-010.txt |
Description:
|
OpenPKG Security Advisory OpenPKG-SA-2006.010 - According to a vendor security release note, a memory allocation attack possibility exists in the GnuPG cryptography tool, versions 1.4.3 and earlier.
| | Homepage: | http://www.openpkg.org/ | | File Size: | 2336 | | Related CVE(s): | CVE-2006-3062 | | Last Modified: | Jun 27 08:51:56 2006 |
| MD5 Checksum: | f44dc99938f80b89c9a735f9d4cabdd5 |
|
| /// File Name: |
OpenPKG-SA-2006.011.txt |
Description:
|
OpenPKG Security Advisory OpenPKG-SA-2006.011 - The Portable Network Graphics (PNG) [1] library contains a vulnerability caused by a potential sprintf(3) related buffer overflow.
| | Homepage: | http://www.openpkg.org/ | | File Size: | 1804 | | Last Modified: | Jun 29 06:04:47 2006 |
| MD5 Checksum: | 49434e43f522674b1b1cc52010c2bd84 |
|
| /// File Name: |
ovidentiav5.8.0.txt |
Description:
|
ovidentia v5.8.0 suffers from many remote file inclusion vulnerabilities.
| | Author: | black-cod3 | | File Size: | 1652 | | Last Modified: | Jun 3 05:59:11 2006 |
| MD5 Checksum: | 0071178fcbaa8f87500b6acf97dc2a14 |
|
| /// File Name: |
PHORUM5.1.13.txt |
Description:
|
PHORUM 5.1.13 and prior suffer from a remote file inclusion vulnerability.
| | Homepage: | http://www.milli-harekat.org | | File Size: | 359 | | Last Modified: | Jun 14 06:17:37 2006 |
| MD5 Checksum: | c525ab2937404c9fb22d99aee6e0da14 |
|
| /// File Name: |
PHP-Nuke-7.9.txt |
Description:
|
PHP-Nuke versions less than or equal to 7.9 suffer from XSS in the Search parameter.
| | Author: | try_og | | File Size: | 293 | | Last Modified: | Jun 11 04:40:12 2006 |
| MD5 Checksum: | ba5bb290a0d317150bf00ef5fb95c058 |
|
| /// File Name: |
PHP-Nuke-v3.txt |
Description:
|
PHP-Nuke Module's Name Sections V3 suffers from a SQL injection vulnerability.
| | Author: | CrAzY.CrAcKeR | | File Size: | 226 | | Last Modified: | Jun 29 05:19:28 2006 |
| MD5 Checksum: | 7b5f732e6ec88c881b73528df2cc34f4 |
|
| /// File Name: |
php5-tempnam.txt |
Description:
|
In PHP 5.1.4 it is possible to create a file with any name by exploiting a vulnerability in tempnam().
| | Author: | cxib | | Homepage: | http://securityreason.com | | File Size: | 5080 | | Last Modified: | Jun 14 06:28:16 2006 |
| MD5 Checksum: | 38b924df795e3ff8e6b5d2cccb67da60 |
|
| /// File Name: |
PhpMyFactures1.0.txt |
Description:
|
PhpMyFactures 1.0 suffers from XSS, SQL injection, and full path disclosure flaws.
| | Author: | gmdarkfig | | File Size: | 2995 | | Last Modified: | Jun 14 06:16:36 2006 |
| MD5 Checksum: | fd2575edfb0ad3b1e1cbddcba66df0ee |
|
| /// File Name: |
phpvillage.txt |
Description:
|
phpvillage suffers from SQL injection in funshow.php.
| | Author: | CrAzY.CrAcKeR | | File Size: | 162 | | Last Modified: | Jun 29 05:18:31 2006 |
| MD5 Checksum: | 0791ee6aab9bf85d3436565d163a3618 |
|
| /// File Name: |
planetnews.txt |
Description:
|
Planetnews suffers from a php shell upload vulnerability.
| | Author: | AlpEren, tugr | | Homepage: | http://www.ayyildiz.org | | File Size: | 574 | | Last Modified: | Jun 27 08:55:31 2006 |
| MD5 Checksum: | a4100cd8c25f3ba96833e2605750353a |
|
| /// File Name: |
QontentOneCMSv1.0 |
Description:
|
QontentOneCMS v1.0 suffers from XSS in search.php
| | Author: | luny | | File Size: | 240 | | Last Modified: | Jun 2 00:20:46 2006 |
| MD5 Checksum: | b2802cba4fff921eda71b2b1b9fab312 |
|
| /// File Name: |
Quake3-1.32c.txt |
Description:
|
The Quake 3 engine version 1.32c revision 803 suffers from several vulnerabilities which may allow a malicious quake server to compromise a users system.
| | Author: | Luigi Auriemma | | Homepage: | http://mirror.aluigi.org | | File Size: | 9650 | | Last Modified: | Jun 29 05:53:02 2006 |
| MD5 Checksum: | e007eb1af8df28db60ee9ff3651e2deb |
|
| /// File Name: |
quake3luigi.txt |
Description:
|
The Quake 3 engine versions 1.32c and below suffer from a buffer overflow in CL_ParseDownload.
| | Author: | Luigi Auriemma | | Homepage: | http://aluigi.org | | File Size: | 4662 | | Last Modified: | Jun 5 10:13:35 2006 |
| MD5 Checksum: | d34e3ffbc80384311ff515f6681ab21c |
|
|
|
|
|