Home PHP Scripts Contact News RSS Readers Donations

Software and Script Bug Exploits

 
Main

Software Alerts

Software and Script Bug Exploits
Software Vulnerability
Random Feeds

Archives

| Oct 2008 | Sep 2008 | Aug 2008 | Jul 2008 | Jun 2008 | May 2008 | Apr 2008 | Mar 2008 | Feb 2008 | Jan 2008 | Dec 2007 | Nov 2007 |

Thu, 29 Nov 07
Sun Solaris libTIFF Multiple Vulnerabilities
http://secunia.com/advisories/27832/
Sun has acknowledged some vulnerabilities in Sun Solaris, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
BEA AquaLogic Interaction Plumtree Portal Information Disclosure
http://secunia.com/advisories/27840/
Adrian Pastor and Jan Fry have reported some weaknesses in BEA AquaLogic Interaction, which can be exploited by malicious people to disclose sensitive information.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Wesnoth Multiple Vulnerabilities
http://secunia.com/advisories/27786/
Some vulnerabilities have been reported in Wesnoth, which can be exploited by malicious people to cause a DoS (Denial of Service), disclose potentially sensitive information, or potentially compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
vBTube "search" Cross-Site Scripting Vulnerability
http://secunia.com/advisories/27814/
Crackers_Child has reported a vulnerability in vBTube, which can be exploited by malicious people to conduct cross-site scripting attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
wpQuiz Two SQL Injection Vulnerabilities
http://secunia.com/advisories/27843/
Kacper has discovered two vulnerabilities in wpQuiz, which can be exploited by malicious people and malicious users to conduct SQL injection attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Fedora scanbuttond Insecure Temporary Files
http://secunia.com/advisories/27847/
Michal Jaegermann has reported a security issue in Fedora, which can be exploited by malicious, local users to perform certain actions with escalated privileges.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
GNUMP3d Authentication Bypass Security Issue
http://secunia.com/advisories/27848/
James has reported a security issue in GNUMP3d, which can be exploited by malicious people to bypass certain security restrictions.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Audacity Insecure Temporary Files
http://secunia.com/advisories/27841/
Viktor Griph has reported a security issue in Audacity, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or to delete arbitrary files and directories.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Ruby-GNOME2 "Gtk::MessageDialog.new()" Format String Vulnerability
http://secunia.com/advisories/27825/
Chris Rohlf has reported a vulnerability in Ruby-GNOME2, which can potentially be exploited by malicious people to compromise an application using the library.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
ManageEngine EventLog Analyzer Insecure MySQL Installation
http://secunia.com/advisories/27833/
A security issue has been reported in ManageEngine EventLog Analyzer, which can be exploited by malicious people to bypass certain security restrictions.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Symantec Backup Exec Job Engine Denial of Service Vulnerabilities
http://secunia.com/advisories/26975/
Secunia Research has discovered some vulnerabilities in Symantec Backup Exec for Windows Servers, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Slackware update for firefox
http://secunia.com/advisories/27845/
Slackware has issued an update for firefox. This fixes a security issue and some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting and cross-site request forgery attacks or potentially compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Debian update for tk8.3
http://secunia.com/advisories/27806/
Debian has issued an update for tk8.3. This fixes a vulnerability, which can be exploited by malicious people to compromise an application using the library.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Debian update for tk8.4
http://secunia.com/advisories/27801/
Debian has issued an update for tk8.4. This fixes a vulnerability, which can be exploited by malicious people to compromise an application using the library.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Red Hat update for java-1.5.0-ibm
http://secunia.com/advisories/27804/
Red Hat has issued an update for java-1.5.0-ibm. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, manipulate data, disclose sensitive/system information, or potentially compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Netscape Multiple Vulnerabilities
http://secunia.com/advisories/27800/
Netscape has acknowledged some vulnerabilities in Netscape Navigator, which can be exploited by malicious people to conduct cross-site scripting and cross-site request forgery attacks or potentially to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
TuMusika Evolution Multiple Vulnerabilities
http://secunia.com/advisories/27866/
Some vulnerabilities have been discovered in TuMusika Evolution, which can be exploited by malicious people to disclose sensitive information.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
IBM Lotus Notes Client for Linux Insecure File Permissions
http://secunia.com/advisories/27860/
Some security issues have been reported in Lotus Notes for Linux, which can be exploited by malicious, local users to gain escalated privileges.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Charray's CMS "ccms_library_path" File Inclusion
http://secunia.com/advisories/27854/
MhZ91 has discovered two vulnerabilities in Charray's CMS, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Cisco Unified IP Phone Extension Mobility Weakness
http://secunia.com/advisories/27829/
Joffrey Czarney has reported a weakness in Cisco Unified IP Phones, which can be exploited by malicious people to bypass certain security restrictions.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Softbiz Freelancers Cross-Site Scripting and SQL Injection
http://secunia.com/advisories/27808/
IRCRASH (Dr.Crash) has reported some vulnerabilities in Softbiz Freelancers Script, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Autonomy Keyview SDK Lotus 1-2-3 File Viewer Buffer Overflows
http://secunia.com/advisories/27849/
Some vulnerabilities have been reported in Autonomy Keyview SDK, which can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
@Mail "func" Cross-Site Scripting Vulnerability
http://secunia.com/advisories/27837/
A vulnerability has been reported in @Mail, which can be exploited by malicious people to conduct cross-site scripting attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Sun Solaris Remote Procedure Call Module Denial of Service
http://secunia.com/advisories/27831/
Sun has acknowledged a vulnerability in Sun Solaris, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Avaya Products PCRE Character Class Processing Vulnerability
http://secunia.com/advisories/27862/
Avaya has acknowledged a vulnerability in various Avaya products, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Avaya Products OpenSSL Vulnerabilities
http://secunia.com/advisories/27870/
Avaya has acknowledged a vulnerability and a weakness in various Avaya products, which can be exploited by malicious, local users to disclose sensitive information and by malicious people to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Avaya Products PCRE Regex Parsing Multiple Vulnerabilities
http://secunia.com/advisories/27869/
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise an application using the library.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Fedora update for firefox
http://secunia.com/advisories/27855/
Fedora has issued an update for firefox. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting and cross-site request forgery attacks or potentially compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
PHP_CON "webappcfg[APPPATH]" File Inclusion
http://secunia.com/advisories/27852/
GoLd_M has reported a vulnerability in PHP_CON, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
rPath update for cups, poppler, and tetex
http://secunia.com/advisories/27856/
rPath has issued an update for cups, poppler, and tetex. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Mandriva update for cpio
http://secunia.com/advisories/27857/
Mandriva has issued an update for cpio. This fixes two vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 29 Nov 07
Ubuntu update for pidgin
http://secunia.com/advisories/27858/
Ubuntu has issued an update for pidgin. This fixes a weakness, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
PHPDevShell Privilege Escalation Vulnerability
http://secunia.com/advisories/27828/
A vulnerability has been reported in PHPDevShell, which can be exploited by malicious users to gain escalated privileges.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
Liferay Portal "emailAddress" Cross-Site Scripting
http://secunia.com/advisories/27821/
Joshua Morin has reported a vulnerability in Liferay Portal, which can be exploited by malicious people to conduct cross-site scripting attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
IBM Lotus Notes 5 / 6 Lotus 1-2-3 File Viewer Buffer Overflows
http://secunia.com/advisories/27836/
Some vulnerabilities have been reported in IBM Lotus Notes, which can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
RunCms PHP Code Execution and Local File Inclusion
http://secunia.com/advisories/27790/
trueend5 has discovered some vulnerabilities in RunCms, which can be exploited by malicious people to disclose sensitive information and compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
PHP-Nuke NSN Script Depository Module Information Disclosure
http://secunia.com/advisories/27810/
KiNgOfThEwOrLd has discovered a vulnerability in the NSN Script Depository module for PHP-Nuke, which can be exploited by malicious people to disclose sensitive information.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
Ubuntu update for firefox
http://secunia.com/advisories/27796/
Ubuntu has issued an update for firefox. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting and cross-site request forgery attacks and potentially to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
DWD Realty Two SQL Injection Vulnerabilities
http://secunia.com/advisories/27822/
Aria-Security Team have reported two vulnerabilities in DWD Realty, which can be exploited by malicious people to conduct SQL injection attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
Ruby on Rails Session Fixation Security Issue
http://secunia.com/advisories/27781/
A security issue has been reported in Ruby on Rails, which can potentially be exploited by malicious people to conduct session fixation attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
Samhain Random Number Generator Weakness
http://secunia.com/advisories/27830/
A weakness has been reported in Samhain, which can be exploited by malicious people to disclose potentially sensitive information and to perform brute force attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
FMDeluxe "id" Cross-Site Scripting Vulnerability
http://secunia.com/advisories/27826/
Jose Luis Góngora Fernández has discovered a vulnerability in FMDeluxe, which can be exploited by malicious people to conduct cross-site scripting attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
Debian update for wireshark
http://secunia.com/advisories/27817/
Debian has issued an update for wireshark. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
Basic Analysis and Security Engine "base_qry_main.php" Cross-Site Scripting
http://secunia.com/advisories/27834/
Two vulnerabilities have been reported in Base Analysis and Security Engine, which can be exploited by malicious people to conduct cross-site scripting attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
Blue Coat Products OpenSSL RSA Key Reconstruction Weakness
http://secunia.com/advisories/27770/
Blue Coat has acknowledged a weakness in multiple Blue Coat products, which can be exploited by malicious, local users to disclose sensitive information.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
SafeNet Sentinel Protection Server/Key Server Directory Traversal Vulnerability
http://secunia.com/advisories/27811/
A vulnerability has been reported in SafeNet Sentinel Protection Server and Key Server, which can be exploited by malicious people to disclose sensitive information.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
Red Hat update for seamonkey
http://secunia.com/advisories/27793/
Red Hat has issued an update for seamonkey. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting and cross-site request forgery attacks and potentially to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
Red Hat update for firefox
http://secunia.com/advisories/27797/
Red Hat has issued an update for firefox. This fixes a security issue and some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting and cross-site request forgery attacks and potentially to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
Debian update for mysql-dfsg, mysql-dfsg-5.0, and mysql-dfsg-4.1
http://secunia.com/advisories/27823/
Debian has issued an update for mysql-dfsg, mysql-dfsg-5.0, and mysql-dfsg-4.1. This fixes some security issues and vulnerabilities, which can be exploited by malicious users to bypass certain security restrictions, gain escalated privileges, or cause a DoS (Denial of Service), and by malicious people to cause a DoS.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
NetAuctionHelp Classified Ads Two SQL Injection Vulnerabilities
http://secunia.com/advisories/27813/
Aria-Security Team have reported two vulnerabilities in NetAuctionHelp Classified Ads, which can be exploited by malicious people to conduct SQL injection attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
NetAuctionHelp Auction Software "nsearch" SQL Injection
http://secunia.com/advisories/27784/
Aria-Security.Net has reported a vulnerability in NetAuctionHelp Auction Software, which can be exploited by malicious people to conduct SQL injection attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
Fedora update for blam
http://secunia.com/advisories/27799/
Fedora has issued an update for blam. This fixes a vulnerability, which can be exploited by malicious, local users to gain escalated privileges.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
SeaMonkey Multiple Vulnerabilities
http://secunia.com/advisories/27816/
Some vulnerabilities have been reported in Mozilla SeaMonkey, which can be exploited by malicious people to conduct cross-site scripting and cross-site request forgery attacks and potentially to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
Ubuntu update for pcre
http://secunia.com/advisories/27697/
Ubuntu has issued an update for pcre. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service), disclose sensitive information, or potentially compromise an application using the library.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
Ubuntu update for link-grammar
http://secunia.com/advisories/27783/
Ubuntu has issued an update for link-grammar. This fixes a vulnerability, which can be exploited by malicious people to compromise an application using the library.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 28 Nov 07
Mozilla Firefox Multiple Vulnerabilities
http://secunia.com/advisories/27725/
Some vulnerabilities have been reported in Mozilla Firefox, which can be exploited by malicious people to conduct cross-site request forgery attacks and potentially to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 27 Nov 07
My-Time Two SQL Injection Vulnerabilities
http://secunia.com/advisories/27798/
Aria-Security Team have reported two vulnerabilities in My-Time (Timesheet), which can be exploited by malicious people to conduct SQL injection attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Tue, 27 Nov 07
Apple QuickTime RTSP "Content-Type" Header Buffer Overflow
http://secunia.com/advisories/27755/
h07 has discovered a vulnerability in Apple QuickTime, which can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Tue, 27 Nov 07
IAPR COMMENCE "php_root_path" / "privilege_root_path" File Inclusion
http://secunia.com/advisories/27788/
ShAy6oOoN has reported some vulnerabilities in IAPR COMMENCE, which can be exploited by malicious people to compromise a vulnerable system.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Tue, 27 Nov 07
DeluxeBB E-Mail Address Change Security Bypass
http://secunia.com/advisories/27794/
Nexen has discovered a vulnerability in DeluxeBB, which can be exploited by malicious people to bypass certain security restrictions.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Tue, 27 Nov 07
SUSE update for pcre
http://secunia.com/advisories/27773/
SUSE has issued an update for pcre. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service), disclose potentially sensitive information, and compromise a vulnerable system.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Tue, 27 Nov 07
Amber Script "id" Local File Inclusion Vulnerability
http://secunia.com/advisories/27815/
Crackers_Child has reported a vulnerability in Amber Script, which can be exploited by malicious people to disclose sensitive information.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Tue, 27 Nov 07
PHPSlideshow "directory" Cross-Site Scripting
http://secunia.com/advisories/27809/
Jose Luis Góngora Fernández has discovered a vulnerability in PHPSlideshow, which can be exploited by malicious people to conduct cross-site scripting attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Tue, 27 Nov 07
Project Alumni Cross-Site Scripting and SQL Injection Vulnerabilities
http://secunia.com/advisories/27820/
tomplixsee has discovered some vulnerabilities in Project Alumni, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Tue, 27 Nov 07
E-Lite POS Login SQL Injection Vulnerability and User Enumeration
http://secunia.com/advisories/27803/
A vulnerability and a weakness have been reported in E-Lite POS, which can be exploited by malicious people to enumerate valid user accounts or conduct SQL injection attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Tue, 27 Nov 07
Dora Emlak Script Multiple SQL Injection Vulnerabilities
http://secunia.com/advisories/27812/
GeFORC3 has reported some vulnerabilities in Dora Emlak Script, which can be exploited by malicious people to conduct SQL injection attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Tue, 27 Nov 07
JAF CMS Two Cross-Site Scripting Vulnerabilities
http://secunia.com/advisories/27807/
lammat has discovered two vulnerabilities in JAF CMS, which can be exploited by malicious people to conduct cross-site scripting attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Tue, 27 Nov 07
Gentoo cstetex Multiple Vulnerabilities
http://secunia.com/advisories/27759/
Gentoo has acknowledged some vulnerabilities in cstetex, where some have unknown impacts and others can be exploited by malicious, local users to disclose and manipulate sensitive information, or by malicious users and malicious people to compromise a vulnerable system.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Tue, 27 Nov 07
Debian update for libopenssl-ruby
http://secunia.com/advisories/27769/
Debian has issued an update for libopenssl-ruby. This fixes some security issues, which can be exploited by malicious people to conduct spoofing attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Tue, 27 Nov 07
Debian update for ruby1.8
http://secunia.com/advisories/27764/
Debian has issued an update for ruby1.8. This fixes some security issues, which can be exploited by malicious people to conduct spoofing attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Tue, 27 Nov 07
Debian update for ruby1.9
http://secunia.com/advisories/27818/
Debian has issued an update for ruby1.9. This fixes some security issues, which can be exploited by malicious people to conduct spoofing attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Mon, 26 Nov 07
Gentoo update for nss_ldap
http://secunia.com/advisories/27768/
Gentoo has issued an update for nss_ldap. This fixes a security issue, which can be exploited by malicious people to manipulate certain data.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
AlstraSoft E-Friends "seid" SQL Injection Vulnerability
http://secunia.com/advisories/27766/
M.Hasran Addahroni has reported a vulnerability in AlstraSoft E-Friends, which can be exploited by malicious people to conduct SQL injection attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
K+B-Bestellsystem "domain"/"tld" Command Execution Vulnerabilities
http://secunia.com/advisories/27782/
Zero X has reported some vulnerabilities in K+B-Bestellsystem, which can be exploited by malicious people to compromise a vulnerable system.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
SUSE Update for Multiple Packages
http://secunia.com/advisories/27756/
SUSE has issued updates for multiple packages. This fixes a security issue and some vulnerabilities, which can be exploited by malicious, local users to gain escalated privileges, malicious users to cause a DoS (Denial of Service), and by malicious people to conduct spoofing and cross-site scripting attacks, cause a DoS, and compromise a vulnerable system.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
Debian update for samba
http://secunia.com/advisories/27787/
Debian has issued an update for samba. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
Gadu-Gadu "emots.txt" Buffer Overflow Vulnerability
http://secunia.com/advisories/27789/
j00ru has reported a vulnerability in Gadu-Gadu, which can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
PHPKIT "contentid" SQL Injection Vulnerability
http://secunia.com/advisories/27791/
shadowleet has discovered a vulnerability in PHPKIT, which can be exploited by malicious people to conduct SQL injection attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
Content Injector "cat" SQL Injection Vulnerability
http://secunia.com/advisories/27792/
S.W.A.T. has discovered a vulnerability in Content Injector, which can be exploited by malicious people to conduct SQL injection attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
MySpace Scripts Poll Creator Script Insertion Vulnerabilities
http://secunia.com/advisories/27778/
Doz has reported some vulnerabilities in MySpace Scripts Poll Creator, which can be exploited by malicious people to conduct script insertion attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
AhnLab Products V3 Engine ZIP Archive Processing NULL Byte Overwrite
http://secunia.com/advisories/27757/
A vulnerability has been reported in AhnLab products, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
Xunlei Thunder XPPlayer Class "FlvPlayerUrl" Property Handling Buffer Overflow
http://secunia.com/advisories/27795/
A vulnerability has been discovered in Xunlei Thunder, which can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
DevMass Shopping Cart "kfm_base_path" File Inclusion
http://secunia.com/advisories/27765/
S.W.A.T. has reported a vulnerability in DevMass Shopping Cart, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
Liferea Insecure LD_LIBRARY_PATH Privilege Escalation
http://secunia.com/advisories/27771/
A security issue has been reported in Liferea, which can be exploited by malicious, local users to gain escalated privileges.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
GWExtranet Information Disclosure and Script Insertion Vulnerabilities
http://secunia.com/advisories/27774/
Joseph.giron13 has reported some vulnerabilities in GWExtranet, which can be exploited by malicious people to disclose sensitive information, and by malicious users to conduct script insertion attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
Wireshark Multiple Denial of Service Vulnerabilities
http://secunia.com/advisories/27777/
Some vulnerabilities have been reported in Wireshark, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
nss-mdns Denial of Service Vulnerability
http://secunia.com/advisories/27690/
A vulnerability has been reported in nss-mdns, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
Apple Mail Command Execution Vulnerability
http://secunia.com/advisories/27785/
A vulnerability has been reported in Apple Mail, which can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
rPath update for flac
http://secunia.com/advisories/27780/
rPath has issued an update for flac. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
VU Case Manager "default.asp" SQL Injection Vulnerabilities
http://secunia.com/advisories/27779/
Aria-Security.Net has reported some vulnerabilities in VU Case Manager, which can be exploited by malicious people to conduct SQL injection attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
VU Mass Mailer "redir.asp" SQL Injection Vulnerability
http://secunia.com/advisories/27758/
Aria-Security.Net has reported a vulnerability in VU Mass Mailer, which can be exploited by malicious people to conduct SQL injection attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
TalkBack Multiple File Inclusion Vulnerabilities
http://secunia.com/advisories/27767/
NoGe has discovered some vulnerabilities in TalkBack, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
IBM WebSphere Application Server Two Vulnerabilities
http://secunia.com/advisories/27762/
Some vulnerabilities have been reported in IBM WebSphere Application Server, one of which has an unknown impact, while the other can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
Fedora update for phpmyadmin
http://secunia.com/advisories/27753/
Fedora has issued an update for phpmyadmin. This fixes some vulnerabilities, which can be exploited by malicious users to conduct script insertion and SQL injection attacks and by malicious people to conduct cross-site scripting attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
Debian update for kdegraphics
http://secunia.com/advisories/27772/
Debian has issued an update for kdegraphics. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
rPath update for kernel
http://secunia.com/advisories/27703/
rPath has issued an update for the kernel. This fixes some vulnerabilities, which can be exploited by malicious, local users and by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Fri, 23 Nov 07
Fedora update for cacti
http://secunia.com/advisories/27745/
Fedora has issued an update for cacti. This fixes a vulnerability, which can be exploited by malicious people to conduct SQL injection attacks.
Be sure to check if your system is missing security updateshttp://secunia.com/software_inspector/

Thu, 22 Nov 07
ProfileCMS "id" SQL Injection Vulnerability
http://secunia.com/advisories/27730/
M.Hasran Addahroni has reported a vulnerability in ProfileCMS, which can be exploited by malicious users to conduct SQL injection attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
JP1/File Transmission Server/FTP Authentication Bypass and DoS
http://secunia.com/advisories/27735/
Two vulnerabilities have been reported in JP1/File Transmission Server/FTP, which can be exploited by malicious users to cause a DoS (Denial of Service) and by malicious people to bypass certain security restrictions.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
Lhaplus LZH Archive Processing Unspecified Buffer Overflow
http://secunia.com/advisories/27734/
A vulnerability has been reported in Lhaplus, which can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
Feed2JS Feed URL Cross-Site Scripting
http://secunia.com/advisories/27749/
A vulnerability has been reported in Feed2JS, which can be exploited by malicious people to conduct cross-site scripting attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
Linksys WAG54GS Cross-Site Scripting and Cross-Site Request Forgery Vulnerabilities
http://secunia.com/advisories/27738/
Adrian Pastor has reported some vulnerabilities in Linksys WAG54GS, which can be exploited by malicious people to conduct cross-site scripting and cross-site request forgery attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
I Hear U Multiple Denial of Service Vulnerabilities
http://secunia.com/advisories/27754/
Luigi Auriemma has reported some vulnerabilities in I Hear U, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
IRC Services Denial of Service Vulnerability
http://secunia.com/advisories/27761/
A vulnerability has been reported in IRC Services, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
Gentoo update for feynmf
http://secunia.com/advisories/27739/
Gentoo has issued an update for feynmf. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions with escalated privileges.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
feynmf Insecure Temporary File Creation
http://secunia.com/advisories/27737/
A vulnerability has been reported in feynmf, which can be exploited by malicious, local users to perform certain actions with escalated privileges.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
Invensys Wonderware InTouch Insecure NetDDE Share Permissions Security Issue
http://secunia.com/advisories/27751/
A security issue has been reported in Invensys Wonderware InTouch, which potentially can be exploited by malicious users to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
IBM Director CIM Server Denial of Service Vulnerability
http://secunia.com/advisories/27752/
A vulnerability has been reported in IBM Director, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
phpMyAdmin "convcharset" Cross-Site Scripting
http://secunia.com/advisories/27748/
Tim Brown has discovered a vulnerability in phpMyAdmin, which can be exploited by malicious people to conduct cross-site scripting attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
WordPress Cookies Security Bypass Weakness
http://secunia.com/advisories/27714/
Steven J. Murdoch has discovered a weakness in WordPress, which can be exploited by malicious people to bypass certain security restrictions.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
Slackware update for libpng
http://secunia.com/advisories/27746/
Slackware has issued an update for libpng. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
FileMaker Pro/Server Instant Web Publishing Cross-Site Scripting
http://secunia.com/advisories/27750/
A vulnerability has been reported in FileMaker Pro/Server, which can be exploited by malicious people to conduct cross-site scripting attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
Ability Mail Server Unspecified IMAP4 Command Processing Denial of Service
http://secunia.com/advisories/27736/
A vulnerability has been reported in Ability Mail Server, which potentially can be exploited by malicious users to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
Gentoo update for samba
http://secunia.com/advisories/27742/
Gentoo has issued an update for samba. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
Gentoo update for pcre
http://secunia.com/advisories/27741/
Gentoo has issued an update for pcre. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service), disclose sensitive information, or potentially compromise an application using the library.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
Slackware update for mozilla-thunderbird
http://secunia.com/advisories/27744/
Slackware has issued an update for mozilla-thunderbird. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
Mandriva update for tetex
http://secunia.com/advisories/27743/
Mandriva has issued an update for tetex. This fixes some vulnerabilities, which can be exploited by malicious, local users to disclose and manipulate sensitive information, and by malicious people to potentially compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
BitDefender Online Scanner ActiveX Control Buffer Overflow
http://secunia.com/advisories/27717/
Greg Linares has reported a vulnerability in BitDefender Online Scanner, which can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 22 Nov 07
Avaya Products Kernel Multiple Vulnerabilities
http://secunia.com/advisories/27747/
Avaya has acknowledged some vulnerabilities, security issues, and a weakness in various Avaya products, which can be exploited by malicious, local users to cause a DoS (Denial of Service) and disclose potentially sensitive information, and by malicious users and malicious people to bypass certain security restrictions.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 21 Nov 07
HP-UX update for BIND 8
http://secunia.com/advisories/27696/
HP-UX has issued an update for BIND 8. This fixes a vulnerability, which can be exploited by malicious people to poison the DNS cache.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 21 Nov 07
Fedora update for tetex
http://secunia.com/advisories/27718/
Fedora has issued an update for tetex. This fixes some vulnerabilities, which can be exploited by malicious, local users to disclose and manipulate sensitive information and by malicious people to potentially compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 21 Nov 07
Gentoo update for net-snmp
http://secunia.com/advisories/27740/
Gentoo has issued an update for net-snmp. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 21 Nov 07
Fedora update for net-snmp
http://secunia.com/advisories/27733/
Fedora has issued an update for net-snmp. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 21 Nov 07
rPath update for php5
http://secunia.com/advisories/27659/
rPath has issued an update for php5. This fixes some vulnerabilities and weaknesses, where some have unknown impacts and others can be exploited to bypass certain security restrictions.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 21 Nov 07
ISP Manager "responder" Privilege Escalation Vulnerability
http://secunia.com/advisories/27585/
Andrew Christensen has reported a vulnerability in ISP Manager, which can be exploited by malicious, local users to gain escalated privileges.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 21 Nov 07
Click&BaneX Two SQL Injection Vulnerabilities
http://secunia.com/advisories/27700/
Aria-Security Team have reported two vulnerabilities in Click&BaneX, which can be exploited by malicious people to conduct SQL injection attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 21 Nov 07
OmniPCX Enterprise Communications Server IP Touch Phone Audio Unavailability Weakness
http://secunia.com/advisories/27710/
A weakness has been reported in OmniPCX Enterprise Communications Server, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 21 Nov 07
Mandriva update for net-snmp
http://secunia.com/advisories/27685/
Mandriva has issued an update for net-snmp. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 21 Nov 07
LIVE555 Media Server "parseRTSPRequestString(" Denial of Service
http://secunia.com/advisories/27711/
Luigi Auriemma has reported a vulnerability in LIVE555 Media Server, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Wed, 21 Nov 07
ngIRCd "JOIN" Denial of Service Vulnerability
http://secunia.com/advisories/27692/
A vulnerability has been reported in ngIRCd, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
SUSE update for apache2
http://secunia.com/advisories/27732/
SUSE has issued an update for apache2. This fixes some vulnerabilities, which can be exploited by malicious, local users to cause a DoS (Denial of Service), and by malicious people to conduct cross-site scripting attacks or to cause a DoS.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
Gentoo update for perl
http://secunia.com/advisories/27570/
Gentoo has issued an update for perl. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
Mandriva update for cups
http://secunia.com/advisories/27724/
Mandriva has issued an update for cups. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
Rigs Of Rods Denial of Service Vulnerability
http://secunia.com/advisories/27729/
Luigi Auriemma has reported a vulnerability in Rigs of Rods, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
IceBB "X-Forwarded-For" SQL Injection
http://secunia.com/advisories/27709/
Gu1ll4um3r0m41n has discovered a vulnerability in IceBB, which can be exploited by malicious people to conduct SQL injection attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
datecomm "pg" File Inclusion Vulnerability
http://secunia.com/advisories/27723/
VerY-SecReT has reported a vulnerability in datecomm, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
Debian update for cupsys
http://secunia.com/advisories/27712/
Debian has issued an update for cupsys. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
MySQL InnoDB Denial of Service Vulnerability
http://secunia.com/advisories/27568/
A vulnerability has been reported in MySQL, which can be exploited by malicious users to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
Sciurus Hosting Panel Security Bypass and PHP Code Execution
http://secunia.com/advisories/27708/
Liz0ziM has discovered two vulnerabilities in Sciurus Hosting Panel, which can be exploited by malicious people to bypass certain security restrictions and to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
Gentoo update for mysql
http://secunia.com/advisories/27649/
Gentoo has issued an update for mysql. This fixes a vulnerability, which can be exploited by malicious users to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
Linux Kernel Multiple Denial of Service Vulnerabilities
http://secunia.com/advisories/27664/
Some vulnerabilities have been reported in the Linux Kernel, which can be exploited by malicious, local users and by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
Gentoo update for vmware
http://secunia.com/advisories/27706/
Gentoo has issued an update for vmware. This fixes some vulnerabilities, which can be exploited by malicious, local users to bypass certain security restrictions, perform certain actions with escalated privileges, or to cause a DoS (Denial of Service), by malicious users to bypass certain security restrictions, and by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
phpBBViet "phpbb_root_path" File Inclusion Vulnerability
http://secunia.com/advisories/27698/
xoron has discovered a vulnerability in phpBBViet, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
Gentoo update for link-grammar
http://secunia.com/advisories/27702/
Gentoo has issued an update for link-grammar. This fixes a vulnerability, which can be exploited by malicious people to compromise an application using the library.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
JiRo's Banner System "Email"/"Password" SQL Injection
http://secunia.com/advisories/27713/
Some vulnerabilities have been reported in JiRo's Banner System, which can be exploited by malicious people to conduct SQL injection attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
rPath update for samba
http://secunia.com/advisories/27701/
rPath has issued an update for samba. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
meBiblio "action" File Inclusion Vulnerability
http://secunia.com/advisories/27722/
ShAy6oOoN has discovered a vulnerability in meBiblio, which can be exploited by malicious people to disclose sensitive information or to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
Ingate Firewall and SIParator Multiple Vulnerabilities
http://secunia.com/advisories/27688/
Some vulnerabilities and security issues have been reported in Ingate Firewall and SIParator, which potentially can be exploited by malicious people or users to cause a DoS (Denial of Service) or gain knowledge of sensitive information, or by malicious people to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
Mandriva update for pdftohtml
http://secunia.com/advisories/27721/
Mandriva has issued an update for pdftohtml. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
Gentoo update for mozilla-thunderbird
http://secunia.com/advisories/27704/
Gentoo has issued an update for mozilla-thunderbird. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
Fedora update for emacs
http://secunia.com/advisories/27728/
Fedora has issued an update for emacs. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
Fedora update for tomcat5
http://secunia.com/advisories/27727/
Fedora has issued an update for tomcat5. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks or to disclose potentially sensitive information.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
Slackware update for samba
http://secunia.com/advisories/27731/
Slackware has issued an update for samba. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
SUSE update for java-1_5_0-ibm
http://secunia.com/advisories/27716/
SUSE has issued an update for java-1_5_0-ibm. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, manipulate data, disclose sensitive/system information, cause a DoS (Denial of Service), or potentially compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Tue, 20 Nov 07
Cacti Unspecified SQL Injection Vulnerability
http://secunia.com/advisories/27719/
A vulnerability has been reported in Cacti, which potentially can be exploited by malicious people to conduct SQL injection attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Fri, 16 Nov 07
FatWire Content Server Two Cross-Site Scripting Vulnerabilities
http://secunia.com/advisories/27663/
Andrew Davies has reported two vulnerabilities in FatWire Content Server, which can be exploited by malicious people to conduct cross-site scripting attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Fri, 16 Nov 07
Liferay Portal "login" Cross-Site Scripting Vulnerability
http://secunia.com/advisories/27537/
Adrian Pastor has reported a vulnerability in Liferay Portal, which can be exploited by malicious people to conduct cross-site scripting attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Fri, 16 Nov 07
VTLS Web Gateway "searchtype" Cross-Site Scripting
http://secunia.com/advisories/27661/
Jesus Olmos Gonzalez has reported a vulnerability in VTLS Web Gateway, which can be exploited by malicious people to conduct cross-site scripting attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Fri, 16 Nov 07
teTeX Multiple Vulnerabilities
http://secunia.com/advisories/27672/
Some vulnerabilities have been reported in teTeX, which can be exploited by malicious, local users to disclose and manipulate sensitive information and by malicious people to potentially compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Fri, 16 Nov 07
Apple Mac OS X Application Firewall Weaknesses and Security Issue
http://secunia.com/advisories/27695/
Some weaknesses and a security issue have been reported in Apple Mac OS X, which can lead to exposure of certain services.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Fri, 16 Nov 07
Ubuntu update for vmware
http://secunia.com/advisories/27694/
Ubuntu has issued an update for vmware. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Fri, 16 Nov 07
Fedora update for openldap
http://secunia.com/advisories/27683/
Fedora has issued an update for openldap. This fixes some vulnerabilities, which can be exploited by malicious users to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Fri, 16 Nov 07
Fedora update for thunderbird
http://secunia.com/advisories/27680/
Fedora has issued an update for thunderbird. This fixes some vulnerabilities and a weakness, which can be exploited by malicious people to disclose sensitive information, conduct phishing attacks, manipulate certain data, and potentially compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Fri, 16 Nov 07
Red Hat update for net-snmp
http://secunia.com/advisories/27689/
Red Hat has issued an update for net-snmp. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Fri, 16 Nov 07
Red Hat update for util-linux
http://secunia.com/advisories/27687/
Red Hat has issued an update for util-linux. This fixes a vulnerability, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Fri, 16 Nov 07
Red Hat update for samba
http://secunia.com/advisories/27691/
Red Hat has issued an update for samba. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Fri, 16 Nov 07
HP-UX update for JRE/JDK
http://secunia.com/advisories/27693/
HP has issued an update for JRE/JDK. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, manipulate data, disclose sensitive/system information, or potentially compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Fri, 16 Nov 07
Red Hat update for mailman
http://secunia.com/advisories/27669/
Red Hat has issued an update for mailman. This fixes a vulnerability, which can be exploited by malicious people to spoof messages.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Fri, 16 Nov 07
Red Hat update for xterm
http://secunia.com/advisories/27617/
Red Hat has issued an update for xterm. This fixes a security issue, which potentially can be exploited by malicious, local users to bypass certain security restrictions.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Fri, 16 Nov 07
Ubuntu update for koffice
http://secunia.com/advisories/27658/
Ubuntu has issued an update for koffice. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Fri, 16 Nov 07
Ubuntu update for samba
http://secunia.com/advisories/27679/
Ubuntu has issued an update for samba. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Fri, 16 Nov 07
Fedora update for samba
http://secunia.com/advisories/27682/
Fedora has issued an update for samba. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
Samba Multiple Buffer Overflow Vulnerabilities
http://secunia.com/advisories/27450/
Some vulnerabilities have been reported in Samba, which can be exploited by malicious people to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
ExoPHPDesk register.php Script Insertion Vulnerabilities
http://secunia.com/advisories/27638/
Joseph.Giron13 has discovered two vulnerabilities in ExoPHPDesk, which can be exploited by malicious people to conduct script insertion attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
Citrix Presentation Server Published Application Execution Weakness
http://secunia.com/advisories/27633/
A weakness has been reported in Citrix Presentation Server, which potentially can be exploited by malicious people to compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
nss_ldap Race Condition Security Issue
http://secunia.com/advisories/27670/
A security issue has been reported in nss_ldap, which can be exploited by malicious people to manipulate certain data.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
Apple Mac OS X Security Update Fixes Multiple Vulnerabilities
http://secunia.com/advisories/27643/
Apple has issued a security update for Mac OS X, which fixes multiple vulnerabilities.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
Sun Solaris unzip File Permission Change Vulnerability
http://secunia.com/advisories/27684/
Sun has acknowledged a vulnerability in Sun Solaris, which can be exploited by malicious, local users to perform certain actions with escalated privileges.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
Gentoo update for rails
http://secunia.com/advisories/27657/
Gentoo has issued an update for rails. This fixes some vulnerabilities, which can be exploited by malicious people to disclose sensitive information and conduct cross-site scripting attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
Fedora Update for PEAR MDB2 Packages
http://secunia.com/advisories/27626/
Fedora has issued an update for php-pear-MDB2, php-pear-MDB2-Driver-mysqli, and php-pear-MDB2-Driver-mysql. This fixes a security issue, which can be exploited by malicious people to disclose sensitive information.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
Gentoo update for cpio
http://secunia.com/advisories/27681/
Gentoo has issued an update for cpio. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
Gentoo update for pioneers
http://secunia.com/advisories/27646/
Gentoo has issued an update for pioneers. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
Mandriva update for mono
http://secunia.com/advisories/27639/
Mandriva has issued an update for mono. This fixes a vulnerability with an unknown impact.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
SUSE Updates for Multiple Packages
http://secunia.com/advisories/27634/
SUSE has issued updates for xpdf, kdegraphics3-pdf, koffice, libextractor, poppler, gpdf, cups, pdf, and pdftohtml. These fix some vulnerabilities, which can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
DocuSafe "artnr" SQL Injection Vulnerability
http://secunia.com/advisories/27660/
Aria-Security Team have reported a vulnerability in DocuSafe, which can be exploited by malicious people to conduct SQL injection attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
HP OpenView Operations Java JRE/JDK JSSE DoS and Security Bypass
http://secunia.com/advisories/27635/
HP has acknowledged a vulnerability and a security issue in HP OpenView Operations, which can be exploited by malicious people to bypass certain security restrictions or to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
IBM WebSphere Application Server WebContainer "Expect" Header Cross-Site Scripting
http://secunia.com/advisories/27674/
A vulnerability has been reported in IBM WebSphere Application Server, which can be exploited by malicious people to conduct cross-site scripting attacks.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
IBM DB2 Multiple Vulnerabilities and Security Issue
http://secunia.com/advisories/27667/
Some vulnerabilities and a security issue have been reported in IBM DB2, some of which have unknown impacts, and the other can be exploited by malicious, local users to gain escalated privileges or perform certain actions with escalated privileges.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
Fedora update for link-grammar
http://secunia.com/advisories/27631/
Fedora has issued an update for link-grammar. This fixes a vulnerability, which can be exploited by malicious people to compromise an application using the library.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
Linux Kernel CIFS "SendReceive(" Buffer Overflow
http://secunia.com/advisories/27666/
A vulnerability has been reported in the Linux Kernel, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
SUSE update for cups
http://secunia.com/advisories/27645/
SUSE has issued an update for cups. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
SUSE update for kdegraphics3-pdf
http://secunia.com/advisories/27636/
SUSE has issued an update for kdegraphics-pdf. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
TestLink Unspecified Authorisation Vulnerability
http://secunia.com/advisories/27600/
A vulnerability has been reported in TestLink, which can be exploited by malicious people to bypass certain security restrictions.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
Ubuntu update for poppler
http://secunia.com/advisories/27632/
Ubuntu has issued an update for poppler. This fixes some vulnerabilities, which can be exploited by malicious people to compromise an application using the library.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
Ubuntu update for flac
http://secunia.com/advisories/27628/
Ubuntu has issued an update for flac. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
Ubuntu update for emacs
http://secunia.com/advisories/27627/
Ubuntu has issued an update for emacs. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system.
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/

Thu, 15 Nov 07
Mandriva update for libpng
http://secunia.com/advisories/27629/
Mandriva has issued an update for libpng. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).
Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/


© amigura.co.uk All Rights Reserved.