Home PHP Scripts Contact News RSS Readers Donations

Software and Script Bug Exploits

 
Main

Software Alerts

Software and Script Bug Exploits
Software Vulnerability
Random Feeds

Archives

| Nov 2008 | Oct 2008 | Sep 2008 | Aug 2008 | Jul 2008 | Jun 2008 | May 2008 | Apr 2008 | Mar 2008 | Feb 2008 | Jan 2008 | Dec 2007 | Nov 2007 |

Fri, 31 Oct 08
eXPert PDF ViewerX ActiveX Control "savePageAsBitmap()" Insecure Method
http://secunia.com/Advisories/32426/
Marco Torti has discovered a vulnerability in eXPert PDF ViewerX ActiveX Control, which can be exploited by malicious people to overwrite arbitrary files.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 31 Oct 08
Gentoo update for libspf2
http://secunia.com/Advisories/32496/
Gentoo has issued an update for libspf2. This fixes a vulnerability, which can be exploited by malicious people to potentially compromise an application using the library.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 31 Oct 08
SPBOARD "file" Command Injection Vulnerability
http://secunia.com/Advisories/32459/
GoLd_M has reported a vulnerability in SPBOARD, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 31 Oct 08
MW6 Technologies ActiveX Controls Insecure Methods
http://secunia.com/Advisories/32425/
DeltahackingTEAM has discovered some vulnerabilities in various MW6 Technologies ActiveX controls, which can be exploited by malicious people to overwrite arbitrary files.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 31 Oct 08
rPath update for nfs-utils and nfs-client
http://secunia.com/Advisories/32481/
rPath has issued an update for nfs-utils and nfs-client. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 31 Oct 08
Dovecot Malformed Header Denial of Service Vulnerability
http://secunia.com/Advisories/32479/
A vulnerability has been reported in Dovecot, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 31 Oct 08
WebCards SQL Injection and File Upload Vulnerabilities
http://secunia.com/Advisories/32440/
t0pP8uZz has discovered two vulnerabilities in WebCards, which can be exploited by malicious users to compromise a vulnerable system and by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 31 Oct 08
rPath update for lighttpd
http://secunia.com/Advisories/32480/
rPath has issued an update for lighttpd. This fixes a weakness and two vulnerabilities, which can be exploited by malicious people to disclose potentially sensitive information, bypass certain security restrictions, or cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 31 Oct 08
Fedora update for libtirpc
http://secunia.com/Advisories/32475/
Fedora has issued an update for libtirpc. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 31 Oct 08
Fedora update for dovecot
http://secunia.com/Advisories/32471/
Fedora has issued an update for dovecot. This fixes a security issue, which can be exploited by malicious users to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 31 Oct 08
Fedora update for ed
http://secunia.com/Advisories/32460/
Fedora has issued an update for ed. This fixes a security issue, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 31 Oct 08
Venalsur Booking Centre SQL Injection and Cross-Site Scripting
http://secunia.com/Advisories/32430/
d3b4g has reported two vulnerabilities in Venalsur Booking Centre, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 31 Oct 08
Saba "username" Cross-Site Scripting Vulnerability
http://secunia.com/Advisories/32469/
The-0utl4w has reported a vulnerability in Saba, which can be exploited by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 31 Oct 08
MyBB Multiple Vulnerabilities
http://secunia.com/Advisories/32451/
Some vulnerabilities and a weakness have been reported in MyBB, where some have an unknown impact, and others can be exploited by malicious people to conduct brute force or cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 31 Oct 08
Typo SQL Injection and Script Insertion Vulnerabilities
http://secunia.com/Advisories/32272/
L4teral has discovered some vulnerabilities in Typo, which can be exploited by malicious users to conduct SQL injection attacks, and by malicious people to conduct script insertion attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 30 Oct 08
IBM Tivoli Storage Manager Client Buffer Overflow Vulnerability
http://secunia.com/Advisories/32465/
A vulnerability has been reported in IBM Tivoli Storage Manager (TSM) Client, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 30 Oct 08
Debian update for openoffice.org
http://secunia.com/Advisories/32461/
Debian has issued an update for openoffice.org. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 30 Oct 08
Adobe PageMaker PMD File Processing Buffer Overflows
http://secunia.com/Advisories/27200/
Multiple vulnerabilities have been discovered in Adobe PageMaker, which can be exploited by malicious people to compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 30 Oct 08
H&H WebSoccer "id" SQL Injection Vulnerability
http://secunia.com/Advisories/32422/
d3v1l has reported a vulnerability in H&H WebSoccer, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 30 Oct 08
KTorrent 2 Web Interface Torrent Upload and PHP Code Injection
http://secunia.com/Advisories/32447/
Some vulnerabilities have been reported in KTorrent, which can be exploited by malicious users to compromise a vulnerable system and malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 30 Oct 08
H2O-CMS Cookie Security Bypass and Code Execution Vulnerabilities
http://secunia.com/Advisories/32433/
Some vulnerabilities have been discovered in H2O-CMS, which can be exploited by malicious people to bypass certain security restrictions or by malicious users to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 30 Oct 08
PHP-Daily File Disclosure and SQL Injection Vulnerabilities
http://secunia.com/Advisories/32408/
0xFFFFFF has discovered some vulnerabilities in PHP-Daily, which can be exploited by malicious people to disclose sensitive information and conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 30 Oct 08
Kmita Catalogue "q" Cross-Site Scripting Vulnerability
http://secunia.com/Advisories/32457/
cize0f has reported a vulnerability in Kmita Catalogue, which can be exploited by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 30 Oct 08
Kmita Gallery "begin" and "searchtext" Cross-Site Scripting Vulnerabilities
http://secunia.com/Advisories/32445/
cize0f has reported some vulnerabilities in Kmita Gallery, which can be exploited by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 30 Oct 08
Persia BME E-Catalogue "q" SQL Injection
http://secunia.com/Advisories/32414/
AmnPardaz Security Research Team have reported a vulnerability in Persia BME E-Catalogue, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 30 Oct 08
OpenOffice WMF and EMF Processing Buffer Overflows
http://secunia.com/Advisories/32419/
Some vulnerabilities have been reported in OpenOffice, which potentially can be exploited by malicious people to compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 30 Oct 08
Red Hat update for flash-plugin
http://secunia.com/Advisories/32448/
Red Hat has issued an update for flash-plugin. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, disclose potentially sensitive information, and manipulate certain data.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 30 Oct 08
SUSE update for kernel
http://secunia.com/Advisories/32443/
SUSE has issued an update for the kernel. This fixes some vulnerabilities, which can be exploited by malicious, local users to cause a DoS (Denial of Service) and potentially gain escalated privileges, and by malicious people to cause a DoS.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 30 Oct 08
Aj Square RSS Reader "url" SQL Injection Vulnerability
http://secunia.com/Advisories/32413/
yassine_enp has reported a vulnerability in Aj Square RSS Reader, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 30 Oct 08
SiteEngine SQL Injection and Information Disclosure Vulnerabilities
http://secunia.com/Advisories/32404/
Some vulnerabilities have been reported in SiteEngine, which can be exploited by malicious people to disclose system information and conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 29 Oct 08
Novell eDirectory NCP Unspecified Vulnerability
http://secunia.com/Advisories/32395/
A vulnerability with an unknown impact has been reported in Novell eDirectory.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 29 Oct 08
MyKtools "langage" Local File Inclusion
http://secunia.com/Advisories/32432/
A vulnerability has been discovered in MyKtools, which can be exploited by malicious users to disclose sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 29 Oct 08
libtirpc "__rpc_taddr2uaddr_af()" Denial of Service Vulnerability
http://secunia.com/Advisories/32403/
A vulnerability has been reported in libtirpc, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 29 Oct 08
TUGzip .zip File Buffer Overflow Vulnerability
http://secunia.com/Advisories/32411/
Stefan Marin has discovered a vulnerability in TUGzip, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 29 Oct 08
phplist "connector.php" File Extension Validation Vulnerability
http://secunia.com/Advisories/32439/
A vulnerability has been reported in phplist, which potentially can be exploited by malicious users to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 29 Oct 08
tlAds "tlAds_login" Cookie Security Bypass
http://secunia.com/Advisories/32427/
X0r has discovered a vulnerability in tlAds, which can be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 29 Oct 08
Ocean12 Products .mdb Database Disclosure Security Issues
http://secunia.com/Advisories/32409/
Pouya_Server has reported some security issues in multiple Ocean12 products, which can be exploited by malicious people to disclose potentially sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 29 Oct 08
All In One Control Panel (AIOCP) "poll_id" SQL Injection
http://secunia.com/Advisories/32431/
ExSploiters has discovered a vulnerability in All In One Control Panel (AIOCP), which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 29 Oct 08
Blaze Media Pro NMSDVDX ActiveX Control Insecure Methods
http://secunia.com/Advisories/32455/
A vulnerability has been reported in Blaze Media Pro, which can be exploited by malicious people to potentially compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 29 Oct 08
Ads Pro "page" Command Execution Vulnerability
http://secunia.com/Advisories/32402/
S0l1D has reported a vulnerability in Ads Pro, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 29 Oct 08
phpMyAdmin "db" Cross-Site Scripting Vulnerability
http://secunia.com/Advisories/32449/
Hadi Kiamarsi has discovered a vulnerability in phpMyAdmin, which can be exploited by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 29 Oct 08
WebGUI "loadModule()" Arbitrary Perl Code Execution Vulnerability
http://secunia.com/Advisories/32438/
A vulnerability has been reported in WebGUI, which can be exploited by malicious users to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 29 Oct 08
Eaton MGE Network Shutdown Module Arbitrary Command Execution Vulnerability
http://secunia.com/Advisories/32456/
n.runs AG has reported a vulnerability in Eaton MGE Network Shutdown Module, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 29 Oct 08
NetBSD IPv6 Neighbor Discovery Protocol Neighbor Solicitation Vulnerability
http://secunia.com/Advisories/32406/
A vulnerability has been reported in NetBSD, which can be exploited by malicious people to conduct spoofing attacks, disclose potentially sensitive information, or to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 29 Oct 08
NetBSD ICMPv6 "Packet Too Big" MTU Denial of Service Vulnerability
http://secunia.com/Advisories/32401/
NetBSD has acknowledged a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 28 Oct 08
rPath update for pcre
http://secunia.com/Advisories/32454/
rPath has issued an update for pcre. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise an application using the library.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 28 Oct 08
rPath update for libxslt
http://secunia.com/Advisories/32453/
rPath has issued an update for libxslt. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise an application using the library.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 28 Oct 08
Ubuntu update for linux
http://secunia.com/Advisories/32393/
Ubuntu has issued an update for linux, linux-source-2.6.15, and linux-source-2.6.22. This fixes some vulnerabilities, which can be exploited by malicious, local users to cause a DoS (Denial of Service), bypass certain security restrictions, and potentially gain escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 28 Oct 08
Citrix Web Interface Improper Session Termination Security Issue
http://secunia.com/Advisories/32444/
A security issue has been reported in Citrix Web Interface, which can be exploited by malicious, local users to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 28 Oct 08
Smarty "regex_replace" Modifier Template Security Bypass
http://secunia.com/Advisories/32417/
A vulnerability has been reported in Smarty, which can potentially be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 28 Oct 08
Kasra CMS "index.php" SQL Injection Vulnerabilities
http://secunia.com/Advisories/32224/
G4N0K has reported two vulnerabilities in Kasra CMS, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 28 Oct 08
Fedora update for drupal
http://secunia.com/Advisories/32441/
Fedora has issued an update for drupal. This fixes some vulnerabilities, which can be exploited by malicious, local users to gain escalated privileges and by malicious users to conduct script insertion attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 28 Oct 08
KTorrent Web Interface Torrent Upload and PHP Code Injection
http://secunia.com/Advisories/32442/
Some vulnerabilities have been discovered in KTorrent, which can be exploited by malicious users to compromise a vulnerable system and malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 28 Oct 08
KVIrc "irc://" URI Handling Format String Vulnerability
http://secunia.com/Advisories/32410/
Gjoko 'LiquidWorm' Krstic has discovered a vulnerability in KVIrc, which potentially can be exploited by malicious people to compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 28 Oct 08
Debian update for clamav
http://secunia.com/Advisories/32424/
Debian has issued an update for clamav. This fixes some vulnerabilities, where some have an unknown impact and others can potentially be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 28 Oct 08
PozScripts Classified Auctions "id" SQL Injection
http://secunia.com/Advisories/32373/
Hussin X has reported a vulnerability in PozScripts Classified Auctions, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 28 Oct 08
tlNews "tlNews_login" Cookie Security Bypass
http://secunia.com/Advisories/32405/
X0r has discovered a vulnerability in tlNews, which can be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 28 Oct 08
iPei Guestbook "pg" Cross-Site Scripting Vulnerability
http://secunia.com/Advisories/32429/
Ghost Hacker has discovered a vulnerability in iPei Guestbook, which can be exploited by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 28 Oct 08
NEPT Image Uploader uploadp.php File Upload Vulnerability
http://secunia.com/Advisories/32412/
Dentrasi has discovered a vulnerability in NEPT Image Uploader, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 28 Oct 08
libpng "png_handle_tEXt()" Memory Leak Vulnerability
http://secunia.com/Advisories/32418/
A vulnerability has been reported in libpng, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 27 Oct 08
SFS Ez Forum "forum" SQL Injection Vulnerability
http://secunia.com/Advisories/32397/
Hurley has reported a vulnerability in SFS Ez Forum, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 27 Oct 08
JHead "DoCommand()" Shell Command Injection Security Issue
http://secunia.com/Advisories/32420/
A security issue has been reported in JHead, which can be exploited by malicious, local users to gain escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 27 Oct 08
Ubuntu update for moodle
http://secunia.com/Advisories/32446/
Ubuntu has issued an update for moodle. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 27 Oct 08
Red Hat update for java-1.5.0-ibm
http://secunia.com/Advisories/32437/
Red Hat has issued an update for java-1.5.0-ibm. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 27 Oct 08
Red Hat update for java-1.6.0-ibm
http://secunia.com/Advisories/32436/
Red Hat has issued an update for java-1.6.0-ibm. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, disclose system information or potentially sensitive information, cause a DoS (Denial of Service), or compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 25 Oct 08
Joomla Component Archaic Binary "gallery" Directory Traversal Vulnerability
http://secunia.com/Advisories/32381/
H!tm@N has discovered a vulnerability in the Archaic Binary component for Joomla, which can be exploited by malicious people to disclose system information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 25 Oct 08
SUSE Update for Multiple Packages
http://secunia.com/Advisories/32394/
SUSE has issued an update for multiple packages. This fixes some vulnerabilities, which can be exploited by malicious people to conduct script insertion attacks, bypass certain security restrictions, disclose system and potentially sensitive information, or potentially to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 25 Oct 08
Joomla KBase Component "id" SQL Injection
http://secunia.com/Advisories/32365/
H!tm@N has discovered a vulnerability in the KBase component for Joomla!, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 25 Oct 08
MindDezign Photo Gallery "id" and "username" SQL Injection Vulnerabilities
http://secunia.com/Advisories/32358/
CWH Underground has discovered a vulnerability in MindDezign Photo Gallery, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 25 Oct 08
Sun Java System LDAP JDK Information Disclosure Vulnerability
http://secunia.com/Advisories/32327/
A vulnerability has been reported in Sun Java System LDAP JDK, which can be exploited by malicious, local users to disclose potentially sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 25 Oct 08
SilverSHielD "opendir" Denial of Service Vulnerability
http://secunia.com/Advisories/32374/
Jeremy Brown has discovered a vulnerability in SilverSHielD, which can be exploited by malicious users to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 25 Oct 08
KDE KHTML "HTMLTokenizer::scriptHandler()" Recursive Document Load Weakness
http://secunia.com/Advisories/32208/
Jeremy Brown has discovered a weakness in KDE, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 25 Oct 08
Fedora update for git
http://secunia.com/Advisories/32384/
Fedora has issued an update for git. This fixes some vulnerabilities, which can potentially be exploited by malicious people to compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 25 Oct 08
ClipShare "title" Cross-Site Scripting Vulnerability
http://secunia.com/Advisories/32399/
ShockShadow has reported a vulnerability is ClipShare, which can be exploited by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 25 Oct 08
CSPartner "pseudo" and "passe" SQL Injection Vulnerabilities
http://secunia.com/Advisories/32376/
StAkeR has discovered some vulnerabilities in CSPartner, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 25 Oct 08
eCryptfs Utils "ecryptfs-setup-private" Password Disclosure Security Issue
http://secunia.com/Advisories/32382/
Jamie Strandboge has reported a security issue in eCryptfs Utils, which can be exploited by malicious, local users to disclose sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 25 Oct 08
ShopMaker "id" SQL Injection Vulnerability
http://secunia.com/Advisories/32343/
Hussin X has reported a vulnerability in ShopMaker, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 25 Oct 08
Fedora update for gfs2-utils and rgmanager
http://secunia.com/Advisories/32390/
Fedora has issued an update for gfs2-utils and rgmanager. This fixes a security issue, which can be exploited by malicious, local users to perform certain actions with escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 25 Oct 08
Fedora update for cman
http://secunia.com/Advisories/32387/
Fedora has issued an update for cman. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions with escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 25 Oct 08
Ubuntu update for moodle
http://secunia.com/Advisories/32400/
Ubuntu has issued an update for moodle. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 24 Oct 08
Joomla RWCards Component "img" File Disclosure
http://secunia.com/Advisories/32367/
Vrs-hCk has discovered a vulnerability in the RWCards component for Joomla!, which can be exploited by malicious people to disclose sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 24 Oct 08
Debian update for libspf2
http://secunia.com/Advisories/32396/
Debian has issued an update for libspf2. This fixes a vulnerability, which can be exploited by malicious people to potentially compromise an application using the library.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 24 Oct 08
Fedora update for kernel
http://secunia.com/Advisories/32386/
Fedora has issued an update for the kernel. This fixes some vulnerabilities, which can be exploited by malicious, local users to bypass certain security restrictions, cause a DoS (Denial of Service), and gain escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 24 Oct 08
Microsoft Windows Server Service Vulnerability
http://secunia.com/Advisories/32326/
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 24 Oct 08
Snoopy "_httpsrequest()" Shell Command Execution Vulnerability
http://secunia.com/Advisories/32361/
A vulnerability has been discovered in Snoopy, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 24 Oct 08
Drupal Virtual Hosts Local File Inclusion
http://secunia.com/Advisories/32389/
A vulnerability has been reported in Drupal, which can potentially be exploited by malicious, local users to gain escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 24 Oct 08
WebSVN File Overwrite and Cross-Site Scripting
http://secunia.com/Advisories/32338/
James Bercegay has reported two vulnerabilities in WebSVN, which can be exploited by malicious people to conduct cross-site scripting attacks and manipulate data.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 24 Oct 08
Drupal Book Page Title Script Insertion
http://secunia.com/Advisories/32297/
A vulnerability has been reported in Drupal, which can be exploited by malicious users to conduct script insertion attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 24 Oct 08
LoudBlog "colpick" SQL Injection Vulnerability
http://secunia.com/Advisories/32378/
Xianur0 has discovered a vulnerability in LoudBlog, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 24 Oct 08
Iamma Simple Gallery File Upload Vulnerability
http://secunia.com/Advisories/32380/
X0r has discovered a vulnerability in Iamma Simple Gallery, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 24 Oct 08
Drupal Localization client Module Cross-Site Request Forgery
http://secunia.com/Advisories/32388/
A vulnerability has been reported in the Localization client module for Drupal, which can be exploited by malicious people to conduct cross-site request forgery attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 24 Oct 08
imlib2 Multiple Unspecified Vulnerabilities
http://secunia.com/Advisories/32354/
Some vulnerabilities with unknown impact have been reported in imlib2.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 24 Oct 08
EMC NetWorker Products "nsrexecd.exe" Denial of Service
http://secunia.com/Advisories/32383/
A vulnerability has been reported in several EMC NetWorker Products, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 23 Oct 08
phpcrs "importFunction" Local File Inclusion Vulnerability
http://secunia.com/Advisories/32379/
Pepelux has discovered a vulnerability in phpcrs, which can be exploited by malicious people to disclose sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 23 Oct 08
Joomla ionFiles Component "file" Information Disclosure
http://secunia.com/Advisories/32377/
Vrs-hCk has discovered a vulnerability in the ionFiles component for Joomla!, which can be exploited by malicious people to disclose sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 23 Oct 08
Dorsa CMS "PageIDF" SQL Injection Vulnerability
http://secunia.com/Advisories/32364/
syst3m_f4ult has reported a vulnerability in Dorsa CMS, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 23 Oct 08
GoodTech SSH Server SFTP Processing Buffer Overflow Vulnerability
http://secunia.com/Advisories/32375/
r0ut3r has discovered a vulnerability in GoodTech SSH Server, which can be exploited by malicious users to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 23 Oct 08
Cisco ASA and PIX IPv6 Denial of Service
http://secunia.com/Advisories/32391/
A vulnerability has been reported in Cisco ASA and PIX appliances, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 23 Oct 08
freeSSHd Two Denial of Service Vulnerabilities
http://secunia.com/Advisories/32366/
Jeremy Brown has discovered two vulnerabilities in freeSSHd, which can be exploited by malicious users to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 23 Oct 08
Cisco ASA and PIX VPN Authentication Bypass
http://secunia.com/Advisories/32360/
A vulnerability has been reported in Cisco ASA and PIX appliances, which can be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 23 Oct 08
Cisco ASA Crypto Accelerator Memory Leak
http://secunia.com/Advisories/32392/
A vulnerability has been reported in Cisco ASA appliances, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 23 Oct 08
Debian update for dbus
http://secunia.com/Advisories/32385/
Debian has issued an update for dbus. This fixes a weakness, which can be exploited by malicious, local users to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 23 Oct 08
Sun Integrated Lights-Out Manager Web Interface Unauthorized Access
http://secunia.com/Advisories/32298/
A vulnerability has been reported in Sun Integrated Lights-Out Manager, which can be exploited by malicious users to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 23 Oct 08
WordPress Newsletter Plugin "newsletter" SQL Injection
http://secunia.com/Advisories/32336/
r45c4l has reported a vulnerability in the Newsletter plugin for WordPress, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 23 Oct 08
HP OpenView Products Shared Trace Service Denial of Service
http://secunia.com/Advisories/27054/
Secunia Research has discovered a vulnerability in various HP products, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 23 Oct 08
Trend Micro OfficeScan CGI Parsing Buffer Overflow
http://secunia.com/Advisories/32005/
Secunia Research has discovered a vulnerability in Trend Micro OfficeScan, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 23 Oct 08
LightBlog Two Local File Inclusion Vulnerabilities
http://secunia.com/Advisories/32345/
JosS has discovered two vulnerabilities in LightBlog, which can be exploited by malicious people to disclose sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 23 Oct 08
Fedora update for php-Smarty
http://secunia.com/Advisories/32362/
Fedora has issued an update for php-smarty. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 22 Oct 08
Ubuntu update for amarok
http://secunia.com/Advisories/32357/
Ubuntu has issued an update for amarok. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions with escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 22 Oct 08
GNU Enscript "setfilename" Special Escape Buffer Overflow
http://secunia.com/Advisories/32137/
Secunia Research has discovered a vulnerability in GNU Enscript, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 22 Oct 08
FlashChat "s" Security Bypass
http://secunia.com/Advisories/32350/
eLiSiA has discovered a vulnerability in FlashChat, which can be exploited by malicious users to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 22 Oct 08
TikiWiki CMS/Groupware Two Unspecified Vulnerabilities
http://secunia.com/Advisories/32341/
Two vulnerabilities with unknown impact have been reported in TikiWiki CMS/Groupware.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 22 Oct 08
SUSE update for kernel
http://secunia.com/Advisories/32370/
SUSE has issued an update for the kernel. This fixes some vulnerabilities, which can be exploited by malicious, local users to cause a DoS (Denial of Service), disclose potentially sensitive information, and gain escalated privileges, and by malicious people to cause a DoS.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 22 Oct 08
IBM DB2 Multiple Vulnerabilities
http://secunia.com/Advisories/32368/
Some vulnerabilities have been reported in IBM DB2, where some have an unknown impact and others can be exploited by malicious people to cause a DoS (Denial of Service) and disclose potentially sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 22 Oct 08
Red Hat update for ed
http://secunia.com/Advisories/32349/
Red Hat has issued an update for ed. This fixes a security issue, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 22 Oct 08
Red Hat update for ruby
http://secunia.com/Advisories/32351/
Red Hat has issued an update for ruby. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, cause a DoS (Denial of Service), and conduct spoofing attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 22 Oct 08
Red Hat update for ruby
http://secunia.com/Advisories/32371/
Red Hat has issued an update for ruby. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, cause a DoS (Denial of Service), and conduct spoofing attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 22 Oct 08
Red Hat update for ruby
http://secunia.com/Advisories/32372/
Red Hat has issued an update for ruby. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions or cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 22 Oct 08
Fedora update for jhead
http://secunia.com/Advisories/32363/
Fedora has issued an update for jhead. This fixes a security issue, which potentially can be exploited by malicious, local users to gain escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 22 Oct 08
JHead "DoCommand()" Buffer Overflow Security Issue
http://secunia.com/Advisories/32340/
A security issue has been reported in JHead, which potentially can be exploited by malicious, local users to gain escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 22 Oct 08
Mic_Blog Multiple SQL Injection Vulnerabilities
http://secunia.com/Advisories/32310/
StAkeR has reported some vulnerabilities in Mic_Blog (mic blog), which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 22 Oct 08
Symantec Altiris Deployment Solution Privilege Escalation
http://secunia.com/Advisories/31773/
Some vulnerabilities have been reported in Symantec Altiris Deployment Solution, which can be exploited by malicious, local users to gain knowledge of sensitive information or gain escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 22 Oct 08
F-Secure Products RPM Parsing Integer Overflow Vulnerability
http://secunia.com/Advisories/32352/
A vulnerability has been reported in various F-Secure products, which potentially can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 21 Oct 08
Debian update for cupsys
http://secunia.com/Advisories/32331/
Debian has issued an update for cupsys. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 21 Oct 08
Fedora update for mantis
http://secunia.com/Advisories/32330/
Fedora has issued an update for mantis. This fixes a vulnerability, which can be exploited by malicious users to disclose potentially sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 21 Oct 08
Mosaic Commerce "cid" SQL Injection Vulnerability
http://secunia.com/Advisories/32309/
Ali Abbasi has reported a vulnerability in Mosaic Commerce, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 21 Oct 08
Wireshark Multiple Denial of Service Vulnerabilities
http://secunia.com/Advisories/32355/
Some vulnerabilities and a weakness have been reported in Wireshark, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 21 Oct 08
IBM WebSphere Application Server Multiple Vulnerabilities
http://secunia.com/Advisories/32296/
Some vulnerabilities and a security issue have been reported in IBM WebSphere Application Server. One vulnerability has an unknown impact, the others can be exploited by malicious people to cause a DoS (Denial of Service) or bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 21 Oct 08
Veritas File System Information Disclosure Security Issues
http://secunia.com/Advisories/32332/
Two security issues have been reported in Veritas File System, which can be exploited by malicious, local users to disclose sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 21 Oct 08
Vivvo CMS Unspecified Cross-Site Request Forgery Vulnerability
http://secunia.com/Advisories/32324/
A vulnerability has been reported in Vivvo CMS, which can be exploited by malicious people to conduct cross-site request forgery attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 21 Oct 08
RealVNC VNC Viewer "CMsgReader::readRect()" Encoding Type Vulnerability
http://secunia.com/Advisories/32317/
A vulnerability has been discovered in RealVNC VNC Viewer, which can potentially be exploited by malicious people to compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 21 Oct 08
cpCommerce Multiple Cross-Site Scripting Vulnerabilities
http://secunia.com/Advisories/32353/
Some vulnerabilities have been reported in cpCommerce, which can be exploited by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 21 Oct 08
yappa-ng "album" Local File Inclusion Vulnerability
http://secunia.com/Advisories/32325/
Vrs-hCk has discovered a vulnerability in yappa-ng, which can be exploited by malicious people to disclose sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 21 Oct 08
Woltlab Burning Board rGallery "itemID" SQL Injection Vulnerability
http://secunia.com/Advisories/32323/
Five-Three-Nine has reported a vulnerability in the rGallery plugin for WoltLab Burning Board, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 21 Oct 08
Debian update for linux-2.6
http://secunia.com/Advisories/32315/
Debian has issued an update for linux 2.6. This fixes some vulnerabilities, which can be exploited by malicious, local users to gain escalated privileges, cause a DoS (Denial of Service) or disclose sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 21 Oct 08
e107 "ue[]" SQL Injection Vulnerability
http://secunia.com/Advisories/32322/
__GiReX__ has discovered a vulnerability in e107, which can be exploited by malicious users to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 21 Oct 08
MUSCLE "Message::AddToString()" Buffer Overflow Vulnerability
http://secunia.com/Advisories/32318/
A vulnerability has been discovered in MUSCLE, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise an application using the library.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 21 Oct 08
Zeeproperty "adid" SQL Injection Vulnerability
http://secunia.com/Advisories/32333/
Hussin X has reported a vulnerability in Zeeproperty, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 20 Oct 08
Movable Type Unspecified Cross-Site Scripting Vulnerability
http://secunia.com/Advisories/32305/
A vulnerability has been reported in Movable Type, which can be exploited by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 20 Oct 08
Titan FTP Server "SITE" Command Denial of Service
http://secunia.com/Advisories/32269/
dmnt has reported a vulnerability in Titan FTP Server, which can be exploited by malicious users to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 20 Oct 08
VLC Media Player TY Processing Buffer Overflow Vulnerability
http://secunia.com/Advisories/32339/
A vulnerability has been reported in VLC Media Player, which potentially can be exploited by malicious people to compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 20 Oct 08
Linux Kernel DRM_I915_HWS_ADDR IOCTL Privilege Escalation
http://secunia.com/Advisories/32320/
Olaf Kirch has reported a vulnerability in the Linux kernel, which can be exploited by malicious, local users to potentially gain escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 18 Oct 08
SUSE Update for Multiple Packages
http://secunia.com/Advisories/32316/
SUSE has issued an update for multiple packages. This fixes some vulnerabilities, which can be exploited by malicious people to disclose sensitive information, cause a DoS (Denial of Service) or compromise a vulnerable system or by malicious, local users to cause a DoS (Denial of Service) or gain escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 18 Oct 08
Nuked-Klan "Referer" SQL Injection Vulnerability
http://secunia.com/Advisories/32271/
Charles FOL has discovered a vulnerability in Nuked-Klan, which can be exploited by malicious people to conduct SQL injection attacks and compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 18 Oct 08
WEB//NEWS "catid" SQL Injection Vulnerability
http://secunia.com/Advisories/32229/
David Vieira-Kurz has discovered a vulnerability in WEB//NEWS, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 18 Oct 08
Slaytanic Scripts Content Plus Unspecified Vulnerabilities
http://secunia.com/Advisories/32245/
Some vulnerabilities with an unknown impact have been reported in Slaytanic Scripts Content Plus.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 18 Oct 08
PhpWebGallery PHP Code Execution and SQL Injection
http://secunia.com/Advisories/32221/
EgiX has reported two vulnerabilities in PhpWebGallery, which can be exploited by malicious users to compromise a vulnerable system and by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 18 Oct 08
Mantis "sort" PHP Code Execution Vulnerability
http://secunia.com/Advisories/32314/
EgiX has discovered a vulnerability in Mantis, which can be exploited by malicious users to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 18 Oct 08
WebGUI Security Bypass and Cross-Site Scripting
http://secunia.com/Advisories/32295/
Two vulnerabilities have been reported in WebGUI, which can be exploited by malicious people to conduct cross-site scripting attacks and bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 18 Oct 08
Hummingbird Xweb ActiveX Control "PlainTextPassword" Property Buffer Overflow
http://secunia.com/Advisories/32319/
Thomas Pollet has reported a vulnerability in Hummingbird Xweb ActiveX Control, which potentially can be exploited by malicious people to compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 18 Oct 08
EasyCafeEngine "itemid" SQL Injection Vulnerability
http://secunia.com/Advisories/32307/
0xFFFFFF has reported a vulnerability in EasyCafeEngine (Easy Cafe Engine), which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 18 Oct 08
XOOPS hisa_cart Module Information Disclosure
http://secunia.com/Advisories/32300/
Some vulnerabilities have been reported in the hisa_cart module for XOOPS, which can be exploited by malicious people to disclose potentially sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 18 Oct 08
CafeEngine "id" Two SQL Injection Vulnerabilities
http://secunia.com/Advisories/32308/
0xFFFFFF has reported two vulnerabilities in CafeEngine, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 18 Oct 08
Habari "habari_username" Cross-Site Scripting Vulnerability
http://secunia.com/Advisories/32311/
swappie has discovered a vulnerability in Habari, which can be exploited by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 18 Oct 08
PokerMax Pro Poker League "ValidUserAdmin" Cookie Security Bypass
http://secunia.com/Advisories/32312/
DaRkLiFe has discovered a vulnerability in PokerMax Pro Poker League, which can be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 17 Oct 08
rPath update for rails
http://secunia.com/Advisories/32250/
rPath has issued an update for rails. This fixes some vulnerabilities, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 17 Oct 08
rPath update for postfix
http://secunia.com/Advisories/32293/
rPath has issued an update for postfix. This fixes some security issues, which can be exploited by malicious, local users to disclose potentially sensitive information and perform certain actions with escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 17 Oct 08
Avaya Products ipsec-tools Denial of Service
http://secunia.com/Advisories/32294/
Avaya has acknowledged some vulnerabilities in various Avaya products, which can be exploited by malicious users and malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 17 Oct 08
Avaya Products libxml2 Denial of Service
http://secunia.com/Advisories/32306/
Avaya has acknowledged a vulnerability in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 17 Oct 08
Avaya Products bzip2 Denial of Service
http://secunia.com/Advisories/32313/
Avaya has acknowledged a vulnerability in various Avaya products, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 17 Oct 08
Drupal Shindig-Integrator Module Multiple Vulnerabilities
http://secunia.com/Advisories/32285/
Some vulnerabilities have been reported in the Shindig-Integrator module for Drupal, where some have an unknown impact, and others can be exploited by malicious users to conduct script insertion attacks, and by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 17 Oct 08
Drupal Node clone Module Security Bypass
http://secunia.com/Advisories/32152/
A vulnerability has been reported in the Node clone module for Drupal, which can be exploited by malicious users to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 17 Oct 08
myWebland myStats SQL Injection and Security Bypass
http://secunia.com/Advisories/32289/
JosS has discovered two vulnerabilities in myWebland myStats, which can be exploited by malicious people to bypass certain security restrictions and conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 17 Oct 08
Telecom Italia Alice Routers Magic Packet Security Bypass
http://secunia.com/Advisories/32258/
saxdax and drpepperONE have reported a vulnerability in various Telecom Italia Alice routers, which can be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 17 Oct 08
HP Systems Insight Manager Unspecified Unauthorised Access
http://secunia.com/Advisories/32287/
A vulnerability has been reported in HP Systems Insight Manager (SIM), which can be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 17 Oct 08
Drupal Node Vote Module Vote Again SQL Injection
http://secunia.com/Advisories/32276/
A vulnerability has been reported in the Node Vote module for Drupal, which can be exploited by malicious users to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 17 Oct 08
AstroSPACES "id" SQL Injection Vulnerability
http://secunia.com/Advisories/32290/
TurkishWarriorr has discovered a vulnerability in AstroSPACES, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 17 Oct 08
SweetCMS "page" SQL Injection Vulnerability
http://secunia.com/Advisories/32277/
Dapirates & underc have reported a vulnerability in SweetCMS, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 17 Oct 08
Adobe Flash Player Multiple Security Issues
http://secunia.com/Advisories/32270/
Some security issues have been reported in Adobe Flash Player, which can be exploited by malicious people to bypass certain security restrictions or manipulate certain data.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 17 Oct 08
Adobe Flash CS3 SWF Processing Buffer Overflow Vulnerabilities
http://secunia.com/Advisories/32246/
Some vulnerabilities have been reported in Adobe Flash CS3, which potentially can be exploited by malicious people to compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 16 Oct 08
Ubuntu update for cups
http://secunia.com/Advisories/32292/
Ubuntu has issued an update for cups. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 16 Oct 08
Fedora update for neon
http://secunia.com/Advisories/32286/
Fedora has issued an update for neon. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 16 Oct 08
Fedora update for cups
http://secunia.com/Advisories/32284/
Fedora has issued an update for cups. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 16 Oct 08
Fedora update for bluez-utils and bluez-libs
http://secunia.com/Advisories/32279/
Fedora has issued an update for bluez-utils and bluez-libs. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) or to potentially compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 16 Oct 08
Fedora update for drupal
http://secunia.com/Advisories/32275/
Fedora has issued an update for drupal. This fixes some vulnerabilities, which can be exploited by malicious users and malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 16 Oct 08
System Requirements Lab ActiveX Control Code Execution Vulnerability
http://secunia.com/Advisories/32236/
A vulnerability has been reported in the System Requirements Lab ActiveX control, which can be exploited by malicious people to compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 16 Oct 08
WordPress WP Comment Remix Plugin Multiple Vulnerabilities
http://secunia.com/Advisories/32253/
g30rg3_x has reported some vulnerabilities in the WP Comment Remix plugin for WordPress, which can be exploited by malicious people to conduct cross-site request forgery, script insertion, and SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 16 Oct 08
Elxis mod_language.php Cross-Site Scripting Vulnerability
http://secunia.com/Advisories/32278/
swappie aka faithlove has discovered a vulnerability in Elxis, which can be exploited by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 16 Oct 08
MyPHPDating "id" SQL Injection Vulnerability
http://secunia.com/Advisories/32268/
Hakxer has reported a vulnerability in MyPHPDating (My PHP Dating), which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 16 Oct 08
BEA WebLogic Server Multiple Authorizers Security Bypass
http://secunia.com/Advisories/32304/
A vulnerability has been reported in BEA WebLogic Server, which can be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 16 Oct 08
BEA WebLogic Workshop NetUI Pageflow Information Disclosure Vulnerability
http://secunia.com/Advisories/32303/
A vulnerability has been reported in BEA WebLogic Workshop, which can be exploited by malicious people to disclose potentially sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 16 Oct 08
BEA WebLogic Workshop NetUI Tags Information Disclosure Vulnerability
http://secunia.com/Advisories/32302/
A vulnerability has been reported in BEA WebLogic Workshop, which can be exploited by malicious people to disclose potentially sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 16 Oct 08
BEA WebLogic Server Multiple Vulnerabilities
http://secunia.com/Advisories/32301/
Some vulnerabilities have been reported in BEA WebLogic Server, which can be exploited by malicious users to bypass certain security restrictions, and by malicious people to bypass certain security restrictions and compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 16 Oct 08
Oracle Products Multiple Vulnerabilities
http://secunia.com/Advisories/32291/
Some vulnerabilities with unknown impacts have been reported in various Oracle products.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 16 Oct 08
Webscene eCommerce "level" SQL Injection Vulnerability
http://secunia.com/Advisories/32288/
Angela Chang has reported a vulnerability in Webscene eCommerce, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 15 Oct 08
Debian update for libxml2
http://secunia.com/Advisories/32280/
Debian has issued an update for libxml2. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise an application using the library.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 15 Oct 08
Ubuntu update for libexif
http://secunia.com/Advisories/32274/
Ubuntu has issued an update for libexif. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise an application using the library.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 15 Oct 08
VLC Media Player XSPF Processing Memory Corruption Vulnerability
http://secunia.com/Advisories/32267/
A vulnerability has been reported by VLC Media Player, which potentially can be exploited by malicious people to compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 15 Oct 08
Ubuntu update for exiv2
http://secunia.com/Advisories/32273/
Ubuntu has issued an update for exiv2. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise an application using the library.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 15 Oct 08
Ubuntu update for dbus
http://secunia.com/Advisories/32281/
Ubuntu has issued an update for dbus. This fixes a weakness and a security issue, which can be exploited by malicious, local users to cause a DoS (Denial of Service) and bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 15 Oct 08
Ubuntu update for lcms
http://secunia.com/Advisories/32282/
Ubuntu has issued an update for lcms. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 15 Oct 08
Microsoft Windows Privilege Escalation Vulnerabilities
http://secunia.com/Advisories/32247/
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or gain escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 15 Oct 08
Microsoft Windows IIS IPP Service Integer Overflow Vulnerability
http://secunia.com/Advisories/32248/
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious users to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 15 Oct 08
Microsoft Windows Active Directory Buffer Overflow Vulnerability
http://secunia.com/Advisories/32242/
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 15 Oct 08
Microsoft Windows SMB Buffer Underflow Vulnerability
http://secunia.com/Advisories/32249/
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 15 Oct 08
Microsoft Windows Virtual Address Descriptor Privilege Escalation
http://secunia.com/Advisories/32251/
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 15 Oct 08
Microsoft Windows 2000 Message Queuing Service Vulnerability
http://secunia.com/Advisories/32260/
A vulnerability has been reported in Microsoft Windows 2000, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 15 Oct 08
Microsoft Windows Ancillary Function Driver Privilege Escalation
http://secunia.com/Advisories/32261/
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 15 Oct 08
Microsoft Host Integration Server SNA RPC Vulnerability
http://secunia.com/Advisories/32233/
A vulnerability has been reported in Microsoft Host Integration Server, which can be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 15 Oct 08
Microsoft Excel Multiple Vulnerabilities
http://secunia.com/Advisories/32211/
Some vulnerabilities have been reported in Microsoft Excel, which can be exploited by malicious people to potentially compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 14 Oct 08
Avaya Products Red Hat Tampered OpenSSH Packages
http://secunia.com/Advisories/32241/
Avaya has acknowledged that a small number of OpenSSH packages have been tampered with.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 14 Oct 08
My PHP Indexer "d" File Disclosure Vulnerability
http://secunia.com/Advisories/32215/
JosS has discovered a vulnerability in My PHP Indexer, which can be exploited by malicious people to disclose sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 14 Oct 08
NewLife Blogger "nlb3" SQL Injection Vulnerability
http://secunia.com/Advisories/32214/
Pepelux has reported a vulnerability in NewLife Blogger, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 14 Oct 08
Ayco Okul "linkid" SQL Injection Vulnerability
http://secunia.com/Advisories/32244/
Crackers_Child has reported a vulnerability in Ayco Okul, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 14 Oct 08
ScriptsEz Mini Hosting Panel "dir" File Disclosure
http://secunia.com/Advisories/32212/
JosS has reported a vulnerability in ScriptsEz Mini Hosting Panel, which can be exploited by malicious users to disclose sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 14 Oct 08
WinFTP "PASV" Denial of Service Vulnerability
http://secunia.com/Advisories/32209/
A vulnerability has been discovered in WinFTP, which can be exploited by malicious users to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 14 Oct 08
Real Estates Classifieds "cat" SQL Injection Vulnerability
http://secunia.com/Advisories/32223/
Hakxer has reported a vulnerability in Real Estates Classifieds, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 14 Oct 08
Joomla Ignite Gallery Component "gallery" SQL Injection
http://secunia.com/Advisories/32240/
H!tm@N has reported a vulnerability in the Ignite Gallery component for Joomla!, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 14 Oct 08
Joomla Mad4Joomla Mailforms Component "jid" SQL Injection
http://secunia.com/Advisories/32239/
H!tm@N has reported a vulnerability in the Mad4Joomla Mailforms component for Joomla!, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 14 Oct 08
MunzurSoft Wep Portal W3 "kat" SQL Injection Vulnerability
http://secunia.com/Advisories/32238/
LUPUS has reported a vulnerability in MunzurSoft Wep Portal W3, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 14 Oct 08
Joomla OwnBiblio Component "catid" SQL Injection
http://secunia.com/Advisories/32235/
H!tm@N has discovered a vulnerability in the OwnBiblio component for Joomla!, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 14 Oct 08
GForge Multiple SQL Injection Vulnerabilities
http://secunia.com/Advisories/32217/
Some vulnerabilities have been reported in Gforge, which can be exploited by malicious people and users to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 14 Oct 08
Debian update for mon
http://secunia.com/Advisories/32183/
Debian has issued an update for mon. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions with escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 14 Oct 08
chm2pdf Insecure Temporary Directories
http://secunia.com/Advisories/32257/
A security issue has been reported in chm2pdf, which can be exploited by malicious, local users to perform certain actions with escalated privileges or to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 14 Oct 08
NoticeWare Email Server POP3 Connections Denial of Service
http://secunia.com/Advisories/32202/
Paul Hand has discovered a vulnerability in NoticeWare Email Server, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 13 Oct 08
GuildFTPd "LIST" Processing Buffer Overflow Vulnerability
http://secunia.com/Advisories/32218/
dmnt has discovered a vulnerability in GuildFTPd, which can be exploited by malicious users to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 13 Oct 08
Apache Tomcat "RemoteFilterValve" Security Bypass Security Issue
http://secunia.com/Advisories/32213/
A security issue has been reported in Apache Tomcat, which potentially can be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 13 Oct 08
Debian update for openldap
http://secunia.com/Advisories/32254/
Debian has issued an update for openldap. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 13 Oct 08
Debian update for ruby1.9
http://secunia.com/Advisories/32255/
Debian has issued an update for ruby1.9. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions or cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 13 Oct 08
Debian update for ruby1.8
http://secunia.com/Advisories/32256/
Debian has issued an update for ruby1.8. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions or cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 11 Oct 08
ScriptsEz Easy Image Downloader "id" File Disclosure Vulnerability
http://secunia.com/Advisories/32210/
JosS has reported a vulnerability in ScriptsEz Easy Image Downloader, which can be exploited by malicious people to disclose sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 11 Oct 08
Built2go Real Estate Listings "event_id" SQL Injection
http://secunia.com/Advisories/32129/
d3v1l has reported a vulnerability in Built2go Real Estate Listings, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 11 Oct 08
Sun Java System Web Proxy Server FTP Subsystem Buffer Overflow
http://secunia.com/Advisories/32227/
A vulnerability has been reported in Sun Java System Web Proxy Server, which potentially can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 11 Oct 08
Red Hat update for cups
http://secunia.com/Advisories/32084/
Red Hat has issued an update for cups. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 11 Oct 08
DFF PHP Framework API "DFF_config[dir_include]" File Inclusion Vulnerabilities
http://secunia.com/Advisories/32166/
Some vulnerabilities have been discovered in DFF PHP Framework API, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 11 Oct 08
FUJITSU Interstage Products Apache Tomcat Security Bypass
http://secunia.com/Advisories/32234/
A security issue has been reported in various FUJITSU Interstage products, which potentially can be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 11 Oct 08
Apple Mac OS X Security Update Fixes Multiple Vulnerabilities
http://secunia.com/Advisories/32222/
Apple has issued a security update for Mac OS X, which fixes multiple vulnerabilities.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 11 Oct 08
Fedora update for condor
http://secunia.com/Advisories/32232/
Fedora has issued an update for condor. This fixes some vulnerabilities, which can be exploited by malicious users to bypass certain security restrictions, cause a DoS (Denial of Service), and potentially compromise a vulnerable system, and by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 10 Oct 08
CUPS Multiple Vulnerabilities
http://secunia.com/Advisories/32226/
Some vulnerabilities have been reported in CUPS, which potentially can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 10 Oct 08
Gentoo Portage Insecure Python Module Search Path Security Issue
http://secunia.com/Advisories/32228/
Gentoo has acknowledged a security issue in portage, which can be exploited by malicious, local users to gain escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 10 Oct 08
Fedora update for ruby
http://secunia.com/Advisories/32165/
Fedora has issued an update for ruby. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, cause a DoS (Denial of Service), and conduct spoofing attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 10 Oct 08
Fedora update for dbus
http://secunia.com/Advisories/32230/
Fedora has issued an update for dbus. This fixes a weakness, which can be exploited by malicious, local users to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 10 Oct 08
Fedora update for postfix
http://secunia.com/Advisories/32231/
Fedora has issued an update for postfix. This fixes some security issues, which can be exploited by malicious, local users to disclose potentially sensitive information, cause a DoS (Denial of Service), and perform certain actions with escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 10 Oct 08
Ubuntu update for ruby1.8
http://secunia.com/Advisories/32219/
Ubuntu has issued an update for ruby1.8. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, cause a DoS (Denial of Service), and conduct spoofing attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 10 Oct 08
CA ARCserve Backup Multiple Vulnerabilities
http://secunia.com/Advisories/32220/
Some vulnerabilities have been reported in CA ARCserve Backup, which can be exploited by malicious people to cause a DoS (Denial of Service) or to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 10 Oct 08
WebBiscuits FAQ Support "download" File Disclosure Vulnerability
http://secunia.com/Advisories/32158/
Gold_M has discovered a vulnerability in WebBiscuits FAQ Support, which can be exploited by malicious people to disclose sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 10 Oct 08
HP System Management Homepage Unspecified Cross Site Scripting Vulnerability
http://secunia.com/Advisories/32199/
A vulnerability has been reported in HP System Management Homepage (SMH), which can be exploited by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 10 Oct 08
WOW Raid Manager Unspecified Cross-Site Scripting Vulnerability
http://secunia.com/Advisories/32172/
A vulnerability has been reported in WOW Raid Manager, which can be exploited by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 10 Oct 08
vbDrupal Multiple Security Bypass Vulnerabilities
http://secunia.com/Advisories/32167/
Some vulnerabilities have been reported in vbDrupal, which can be exploited by malicious people and users to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 10 Oct 08
Drupal User and BlogAPI Security Bypass Vulnerabilities
http://secunia.com/Advisories/32201/
Two vulnerabilities have been reported in Drupal, which can be exploited by malicious users to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 10 Oct 08
Drupal Attach File Security Bypass Vulnerability
http://secunia.com/Advisories/32198/
A vulnerability has been reported in Drupal, which can be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 10 Oct 08
Drupal Upload and Node Module API Security Bypass
http://secunia.com/Advisories/32200/
Two vulnerabilities have been reported in Drupal, which can be exploited by malicious people and users to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Fri, 10 Oct 08
Graphviz "push_subg" Buffer Overflow Vulnerability
http://secunia.com/Advisories/32186/
Roee Hay has discovered a vulnerability in Graphviz, which can be exploited by malicious people to compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 9 Oct 08
Nortel Multimedia Communication Server 5100 Multiple Vulnerabilities
http://secunia.com/Advisories/32203/
Some vulnerabilities have been reported in Nortel Multimedia Communication Server 5100, which can be exploited by malicious people to bypass certain security restrictions, conduct spoofing attacks, or cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 9 Oct 08
Cisco Unity Script Insertion Vulnerability
http://secunia.com/Advisories/32207/
A vulnerability has been reported in Cisco Unity, which can be exploited by malicious users to conduct script insertion attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 9 Oct 08
Cisco Unity Multiple Vulnerabilities
http://secunia.com/Advisories/32187/
Some vulnerabilities and a security issue have been reported in Cisco Unity, which can be exploited by malicious, local users to disclose potentially sensitive information, and by malicious people to bypass certain security restrictions and cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 9 Oct 08
Drupal EveryBlog Module Multiple Vulnerabilities
http://secunia.com/Advisories/32194/
Some vulnerabilities have been reported in the EveryBlog module for Drupal, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks, bypass certain security restrictions, and gain escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 9 Oct 08
Hispah Text Links Ads "idcat" / "idtl" SQL Injection Vulnerabilities
http://secunia.com/Advisories/32162/
Some vulnerabilities have been reported in Hispah Text Links Ads, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 9 Oct 08
AdMan "campaignId" SQL Injection Vulnerability
http://secunia.com/Advisories/32160/
SuB-ZeRo has reported a vulnerability in AdMan, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 9 Oct 08
SUSE update for MozillaFirefox, MozillaThunderbird, seamonkey, and mozilla
http://secunia.com/Advisories/32196/
SUSE has issued an update for MozillaFirefox, MozillaThunderbird, seamonkey, and mozilla. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, to disclose sensitive information, or to potentially compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 9 Oct 08
Debian update for iceweasel
http://secunia.com/Advisories/32185/
Debian has issued an update for iceweasel. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, to disclose sensitive information, or to potentially compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 9 Oct 08
Yerba SACphp Multiple Vulnerabilities
http://secunia.com/Advisories/32093/
Some vulnerabilities have been discovered in Yerba SACphp, which can be exploited by malicious people to disclose sensitive information or bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 9 Oct 08
TorrentTrader Classic "completed-advance.php" SQL Injection
http://secunia.com/Advisories/32118/
BazOka-HaCkEr has discovered a vulnerability in TorrentTrader Classic, which can be exploited by malicious users to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 9 Oct 08
PHP Autos "catid" SQL Injection Vulnerability
http://secunia.com/Advisories/32139/
Mr.SQL has reported a vulnerability in PHP Autos, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 9 Oct 08
PHP Auto Dealer "v_cat" SQL Injection Vulnerability
http://secunia.com/Advisories/32147/
Mr.SQL has reported a vulnerability in PHP Auto Dealer, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Thu, 9 Oct 08
FreeRADIUS "dialup_admin" Insecure Temporary Files
http://secunia.com/Advisories/32170/
Some vulnerabilities have been reported in FreeRADIUS, which can be exploited by malicious, local users to perform certain actions with escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 8 Oct 08
PHP Realtor "v_cat" SQL Injection Vulnerability
http://secunia.com/Advisories/32149/
Mr.SQL has discovered a vulnerability in PHP Realtor, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 8 Oct 08
Opera Multiple Vulnerabilities
http://secunia.com/Advisories/32177/
Some vulnerabilities have been reported in Opera, which can be exploited by malicious people to bypass certain security restrictions, disclose potentially sensitive information, or potentially compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 8 Oct 08
Hero DVD Player M3U Processing Buffer Overflow Vulnerability
http://secunia.com/Advisories/31933/
Parvez Anwar has discovered a vulnerability in Hero DVD Player, which can be exploited by malicious people to compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 8 Oct 08
Red Hat update for condor
http://secunia.com/Advisories/32193/
Red Hat has issued an update for condor. This fixes some vulnerabilities, which can be exploited by malicious users to bypass certain security restrictions, cause a DoS (Denial of Service), and potentially compromise a vulnerable system, and by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 8 Oct 08
Condor Multiple Vulnerabilities
http://secunia.com/Advisories/32189/
Some vulnerabilities have been reported Condor, which can be exploited by malicious users to bypass certain security restrictions, cause a DoS (Denial of Service), and potentially compromise a vulnerable system, and by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 8 Oct 08
Adobe Flash Player "Clickjacking" Security Bypass Vulnerability
http://secunia.com/Advisories/32163/
A vulnerability has been reported in Adobe Flash Player, which can be exploited by malicious people to bypass certain security restrictions and disclose potentially sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 8 Oct 08
Gentoo update for wordnet
http://secunia.com/Advisories/32184/
Gentoo has issued an update for wordnet. This fixes some vulnerabilities, which can potentially be exploited by malicious, local users to gain escalated privileges, and by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 8 Oct 08
Red Hat update for kernel
http://secunia.com/Advisories/32190/
Red Hat has issued an update for the kernel. This fixes some vulnerabilities, which can be exploited by malicious, local users to disclose potentially sensitive information and cause a DoS (Denial of Service) and malicious people to cause a DoS..="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 8 Oct 08
Debian update for php5
http://secunia.com/Advisories/32148/
Debian has issued an update for php5. This fixes some vulnerabilities, which can potentially be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 8 Oct 08
Atarone CMS Multiple Vulnerabilities
http://secunia.com/Advisories/32100/
Some vulnerabilities have been discovered in Atarone CMS, which can be exploited by malicious users to conduct SQL injection attacks and disclose sensitive information, and by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 8 Oct 08
MetaGauge Directory Traversal Vulnerability
http://secunia.com/Advisories/32094/
Brad Antoniewicz has reported a vulnerability in MetaGauge, which can be exploited by malicious people to disclose potentially sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 8 Oct 08
H-Sphere webshell4 Cross-Site Scripting and Request Forgery
http://secunia.com/Advisories/32086/
C1c4Tr1Z has reported some vulnerabilities in H-Sphere, which can be exploited by malicious people to conduct cross-site scripting and cross-site request forgery attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 8 Oct 08
CMME Information Disclosure Security Issues
http://secunia.com/Advisories/32169/
AmnPardaz Security Research & Penetration Testing Group has discovered some security issues in CMME, which can be exploited by malicious people to disclose sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 8 Oct 08
Debian update for squid
http://secunia.com/Advisories/32109/
Debian has issued an update for squid. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Wed, 8 Oct 08
SUSE update for mercurial
http://secunia.com/Advisories/32182/
SUSE has issued an update for mercurial. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 7 Oct 08
SUSE update for MozillaFirefox
http://secunia.com/Advisories/32144/
SUSE has issued an update for MozillaFirefox. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, to disclose sensitive information, or to potentially compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 7 Oct 08
HP-UX NFS/ONCplus Denial of Service Vulnerability
http://secunia.com/Advisories/32161/
A vulnerability has been reported in HP-UX, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 7 Oct 08
D-Bus "_dbus_validate_signature_with_reason()" Denial of Service
http://secunia.com/Advisories/32127/
A weakness has been reported in D-Bus, which can be exploited by malicious, local users to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 7 Oct 08
iseemedia LPViewer ActiveX Control Multiple Buffer Overflow Vulnerabilities
http://secunia.com/Advisories/32140/
Will Dormann has reported some vulnerabilities in the iseemedia LPViewer ActiveX control, which can be exploited by malicious people to compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 7 Oct 08
IBM Lotus Quickr Security Issues and Denial of Service
http://secunia.com/Advisories/32098/
Some security issues and a vulnerability have been reported in IBM Lotus Quickr, which can be exploited by malicious users to perform certain actions with escalated privileges and potentially by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 7 Oct 08
Kwalbum "UploaditemsPage.php" File Upload Vulnerability
http://secunia.com/Advisories/32145/
A vulnerability has been discovered in Kwalbum, which can be exploited by malicious users to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 7 Oct 08
Debian update for lighttpd
http://secunia.com/Advisories/32132/
Debian has issued an update for lighttpd. This fixes a weakness and some vulnerabilities, which can be exploited by malicious people to disclose potentially sensitive information, bypass certain security restrictions, and cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 7 Oct 08
Serv-U File Renaming Directory Traversal and STOU Denial of Service
http://secunia.com/Advisories/32150/
dmnt has discovered two vulnerabilities in Serv-U, which can be exploited by malicious users to cause a DoS (Denial of Service) or compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 7 Oct 08
JMweb MP3 Script "src" File Inclusion Vulnerabilities
http://secunia.com/Advisories/32141/
SirGod has discovered some vulnerabilities in JMweb MP3 Music Audio Search and Download Script, which can be exploited by malicious people to disclose sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 7 Oct 08
AmpJuke "special" SQL Injection Vulnerability
http://secunia.com/Advisories/32168/
S_DLA_S has discovered a vulnerability in AmpJuke, which can be exploited by malicious users to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 7 Oct 08
Website Directory "keyword" Cross-Site Scripting Vulnerability
http://secunia.com/Advisories/32176/
Ghost Hacker has reported a vulnerability in Website Directory, which can be exploited by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 7 Oct 08
Nucleus EUC-JP Cross-Site Scripting Vulnerability
http://secunia.com/Advisories/32123/
A vulnerability has been reported in Nucleus EUC-JP, which can be exploited by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 7 Oct 08
Microsoft Windows Vista Page Fault Handling Denial of Service
http://secunia.com/Advisories/32115/
Defsanguje has discovered a vulnerability in Microsoft Windows Vista, which can be exploited by malicious, local users to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 7 Oct 08
Kontiki Delivery Management System "action" Cross-Site Scripting
http://secunia.com/Advisories/32156/
A vulnerability has been reported in Kontiki Delivery Management System, which can be exploited by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Tue, 7 Oct 08
PHP-Fusion Recepies Module "kat_id" SQL Injection
http://secunia.com/Advisories/32004/
boom3rang has discovered a vulnerability in the Recepies (Recept) module for PHP-Fusion, which can be exploited by malicious people to conduct SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 6 Oct 08
Fastpublish CMS Multiple Vulnerabilities
http://secunia.com/Advisories/32126/
Multiple vulnerabilities have been discovered in Fastpublish CMS, which can be exploited by malicious people to conduct SQL injection attacks and gain knowledge of sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 6 Oct 08
RPortal CMS "file_op" File Inclusion Vulnerability
http://secunia.com/Advisories/32075/
Kad has discovered a vulnerability in RPortal, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 6 Oct 08
Debian update for mplayer
http://secunia.com/Advisories/32153/
Debian has issued an update for mplayer. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 6 Oct 08
Debian update for feta
http://secunia.com/Advisories/32155/
Debian has issued an update for feta. This fixes a security issue, which can be exploited by malicious, local users to perform certain actions with escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 6 Oct 08
Fedora update for pam_krb5
http://secunia.com/Advisories/32174/
Fedora has issued an update for pam_krb5. This fixes a security issue, which can be exploited by malicious, local users to bypass certain security restrictions.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Mon, 6 Oct 08
Fedora update for libxml2
http://secunia.com/Advisories/32175/
Fedora has issued an update for libxml2. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 4 Oct 08
Linux Kernel "vmi_write_ldt_entry()" Privilege Escalation
http://secunia.com/Advisories/32124/
Eugene Teo has reported a vulnerability in the Linux Kernel, which can be exploited by malicious, local users in a VMI guest to cause a DoS (Denial of Service) and potentially gain escalated privileges.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 4 Oct 08
PowerPortal "path" Information Disclosure
http://secunia.com/Advisories/32031/
r45c4l has discovered a vulnerability in PowerPortal, which can be exploited by malicious people to disclose sensitive information.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 4 Oct 08
phpScheduleIt PHP "eval()" Injection Vulnerability
http://secunia.com/Advisories/32073/
EgiX has discovered a vulnerability in phpScheduleIt, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 4 Oct 08
AutoNessus "remark" Cross-Site Scripting Vulnerability
http://secunia.com/Advisories/32046/
Frank Breedijk has reported a vulnerability in AutoNessus, which can be exploited by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 4 Oct 08
OpenBSD IPv6 Neighbor Discovery Protocol Neighbor Solicitation Vulnerability
http://secunia.com/Advisories/32133/
A vulnerability has been reported in OpenBSD, which can be exploited by malicious people to conduct spoofing attacks, disclose potentially sensitive information, or to cause a DoS (Denial of Service).="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 4 Oct 08
MediaWiki "useskin" Cross-Site Scripting Vulnerability
http://secunia.com/Advisories/32131/
A vulnerability has been reported in MediaWiki, which can be exploited by malicious people to conduct cross-site scripting attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 4 Oct 08
WebBiscuits Multiple Products header_setup.php File Inclusion
http://secunia.com/Advisories/32053/
A vulnerability has been reported in various WebBiscuits products, which can be exploited by malicious people to compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 4 Oct 08
PHP infoBoard SQL Injection and Script Insertion
http://secunia.com/Advisories/31977/
CWH Underground has reported two vulnerabilities in PHP infoBoard, which can be exploited by malicious people to conduct script insertion and SQL injection attacks.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 4 Oct 08
Novell eDirectory Multiple Vulnerabilities
http://secunia.com/Advisories/32111/
Some vulnerabilities have been reported in Novell eDirectory, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system.="http://secunia.com/advisories/business_solutions/">http://secunia.com/advisories/business_solutions/

Sat, 4 Oct 08
XAMPP adodb.php Cross-Site Scripting Vulnerabilities
http://secunia.com/Advisories/32134/
Jaykishan Nirmal has discovered some vulnerabilities in XAMPP, which can be exploited by malicious people to conduct cross-site scripting a