Translate by BabelFish

Securiteam

Welcome to the SecuriTeam RSS Feed - sponsored by Beyond Security. Know Your Vulnerabilities! Visit BeyondSecurity.com for your web sítio, network and codifica security auditoria and scanning needs.

Vulnerability httpdx v1.5.3

 Program          : Httpdx v1.5.3
 PoC              : Remote Break Serviços
 Homepage         : http://sourceforge.net/projects/httpdx/
 Found by         : Jonathan Salwan
 This Advisory    : Jonathan Salwan
 Contacto          : j.salwan@sysdream.com


Em para saber mais

Kaspersky Anti-Virus 2010 <>

Program          : Kaspersky Anti-Virus 2010 de 9.0.0.46 3
Homepage         : http://www.kaspersky.com
Discovery        : 2009/09/29
Author Contacted: 2009/10/01
Patch Updated    : 2009/11/16
Found by         : Heurs
This Advisory    : Heurs
Contacto          : s.leberre@sysdream.com

Em para saber mais

GMER =< 1="">

//----- Advisory

Program          : GMER 1.0.15.150 87
Homepage         : http://www.gmer.net
Discovery        : 2009/07/28
Author Contacted: 2009/09/28
Author Response  : 2009/09/28
Patch Updated    : 2009/10/05
Found by         : Heurs
This Advisory    : Heurs
Contacto          : s.leberre@sysdream.com

Em para saber mais

Sala Privilégio Escalation dentro Avast!

//----- Advisory

Program          : avast! 4.8.1335 profissional
Homepage         : http://www.avast.com
Discovery        : 2009/07/29
Author Contacted: 2009/07/31
Found by         : Heurs
This Advisory    : Heurs
Contacto          : heurs@ghostsinthstack.org, s.leberre@sysdream.com

Em para saber mais

Phorum: Membro permanente Cross-Site Scripting Vulnerabilities

//----- Advisory

Program          : Phorum 5.2.11
Homepage         : http://www.phorum.org/
Discovery        : 2009/07/16
Author Contacted: 2009/07/17
Found by         : crashfr em sysdream dote COM
This Advisory    : crashfr em sysdream dote COM

Em saber mais

NPDS: Serveral Vulnerabilities

//----- Advisory


"software"         : NPDS
Homepage         : http://www.npds.org/
Tested versão   : < 08.06
Found by         : Jean-François LECLERC
This advisory    : nosp em sysdream dote COM
Discovery data   : 2008/04/24
Vendor notified  : 2008/04/25

Em para saber mais

Linksys IP Phone SPA942: Denial Fora Serviço

//----- Advisory


Hardware         : Linksys IP Phone SPA942
Homepage         : http://www.linksys.com/
Tested versão   : 5.1.5
Found by         : crashfr em sysdream dote COM
This advisory    : crashfr em sysdream dote COM
Discovery data   : 2007/03/19
Vendor notified  : 2007/03/20

Em para saber mais

GNU gv: Stack Overflow Vulnerability

//----- Advisory


Program          : GNU gv
Homepage         : http://www.gnu.org/software/gv/
Tested versão   : 3.6.2
Found by         : r.lifchitz em sysdream dote COM
This advisory    : r.lifchitz em sysdream dote COM
Discovery data   : 2006/11/06
Vendor notified  : 2006/11/09

Em para saber mais

Symantec corporate antivirus: escalation privilege vulnerability

//----- Advisory

Program              : Symantec Corporate Antivirus - 10.1
Homepage             : http://www.symantec.com/        
Discovery            : 2006/07/11
Author Contacted     : 2006/07/18
Found by             : ali em sysdream dote COM
This Advisory        : ali em sysdream dote COM

Em saber mais

Stonevoice Aplicação Sequência v 2.2: Several vulnerabilities

//----- Advisory

Program              : Stonevoice Aplicação Sequência - Verme. 2.2 (build #9)
Homepage             : http://www.stonevoice.com/
Discovery            : 2006/06/17
Author Contacted     : 2006/07/17
Found by             : crashfr em sysdream dote COM
This Advisory        : ali em sysdream dote COM

Em saber mais

US-CERT

National Vulnerability Database
This feed contains the most recent fully analyzed CVE cyber vulnerabilities published within the National Vulnerability Database.
  • CVE-2010-0962 (airport_express, airport_extreme, time_capsule)

  • The FTP proxy server in Apple AirPort Express, AirPort Extreme, and Time Capsule with firmware 7.5 does not restrict the IP address and port specified in a PORT command from a client, which allows remote attackers to leverage intranet FTP servers for arbitrary TCP forwarding via a crafted PORT command.
  • CVE-2010-0961 (Aix, vios)

  • Protecção overflow dentro qoslist dentro bos.net.tc p.server dentro IBM AIX 6.1 and VIOS 2.1 allows local users to lucro privilégios via unspecified vectors.
  • CVE-2010-0960 (Aix, vios)

  • Protecção overflow dentro qosmod dentro bos.net.tc p.server dentro IBM AIX 6.1 and VIOS 2.1 allows local users to lucro privilégios via unspecified vectors.
  • CVE-2010-0959 (enovia_smarteam)

  • Cross-site scripting (XSS) vulnerability in WebEditor/Authentication/LoginPage.aspx in IBM ENOVIA SmarTeam 5 allows remote attackers to inject arbitrary web script or HTML via the errMsg parameter.
  • CVE-2010-0806 (ie, windows_2003_server, windows_server_2003, windows_xp, windows_server_2008, wi…)

  • Use-after-free vulnerability in the Peer Objects component (aka iepeers.dll) in Microsoft Internet Explorer 6,6 SP1, and 7 allows remote attackers to execute arbitrary code via vectors involving access to an invalid pointer after the deletion of an object, as exploited in the wild in March 2010.
  • CVE-2010-0447 (openview_performance_insight)

  • The helpmanager servlet in the web server in HP OpenView Performance Insight (OVPI) 5.4 and earlier does not properly authenticate and validate requests, which allows remote attackers to execute arbitrary commands via vectors involving upload of a JSP document.
  • CVE-2010-0265 (windows_movie_maker, windows_xp, windows_vista, producer)

  • Buffer overflow in Microsoft Windows Movie Maker 2.1,2.6, and 6.0, and Microsoft Producer 2003, allows remote attackers to execute arbitrary code via a crafted project (.MSWMM) file, aka “Movie Maker and Producer Buffer Overflow Vulnerability.”
  • CVE-2010-0264 (excel, office, office_compatibility_pack, office_excel_viewer, office_sharepoint_…)

  • Microsoft Office Excel 2002 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac do not properly parse the Excel file format, which allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka “Microsoft Office Excel DbOrParamQry Recorde Parsing Vulnerability.”
  • CVE-2010-0263 (excel, office, office_compatibility_pack, office_excel_viewer, office_sharepoint_…)

  • Microsoft Office Excel 2007 SP1 and SP2; Serviço 2008 de for Mac; Abertos XML Fila Formato Converter for Mac; Office Excel Viewer SP1 and SP2; Serviço Compatibility Pack for Word, Excel, and PowerPoint 2007 de Fila Formatos SP1 and SP2; and Serviço SharePoint Server 2007 SP1 and SP2 do not validate ZIP headers during descompressão fora Aberto XML (.XLSX) documentos, which allows remote attackers to execução arbitrary codifica via a crafted documento that triggers acesso to uninitialized memory alugueres, aka “Microso…
  • CVE-2010-0262 (excel, office, office_compatibility_pack, office_excel_viewer, office_sharepoint_…)

  • Microsoft Office Excel 2007 SP1 and SP2 and Office 2004 for Mac do not properly parse the Excel file format, which allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka “Microsoft Office Excel FNGROUPNAME Recorde Uninitialized Memory Vulnerability.”
REFWEO.com
gato gastronomia sextv vphone Internet
")); 0