Latest IT security alerts....

    Secunia: [3/5] NPDS Multiple Vulnerabilities

Some vulnerabilities have been reported in NPDS, which can be exploited by malicious people to disclose sensitive information or conduct cross-site scripting attacks.

http://secunia.com/Advisories/33305/

NOTE: This RSS feed does not include information about updated Secunia advisories. You should note that Secunia on average issues more than 20 updated advisories per day, containing information about exploit and patch availability, new and in depth research, and all other details that are relevant. Learn more about receiving complete and customised Secunia advisory information:
http://secunia.com/advisories/business_solutions/

2009-01-05 14:30: read more...   

    Secunia: [2/5] Lito Lite CMS "id" Cross-Site Scripting Vulnerability

darkjoker has reported a vulnerability in Lito Lite CMS, which can be exploited by malicious people to conduct cross-site scripting attacks.

http://secunia.com/Advisories/33381/

NOTE: This RSS feed does not include information about updated Secunia advisories. You should note that Secunia on average issues more than 20 updated advisories per day, containing information about exploit and patch availability, new and in depth research, and all other details that are relevant. Learn more about receiving complete and customised Secunia advisory information:
http://secunia.com/advisories/business_solutions/

2009-01-05 13:30: read more...   

    Secunia: [3/5] PostNuke PNphpBB2 Module Multiple File Inclusion Vulnerabilities

StAkeR has discovered some vulnerabilities in the PNphpBB2 module for PostNuke, which can be exploited by malicious people to disclose sensitive information.

http://secunia.com/Advisories/33365/

NOTE: This RSS feed does not include information about updated Secunia advisories. You should note that Secunia on average issues more than 20 updated advisories per day, containing information about exploit and patch availability, new and in depth research, and all other details that are relevant. Learn more about receiving complete and customised Secunia advisory information:
http://secunia.com/advisories/business_solutions/

2009-01-05 13:00: read more...   

    Secunia: [2/5] Samba Root File System Access Security Issue

A security issue has been reported in Samba, which can be exploited by malicious users to bypass certain security restrictions.

http://secunia.com/Advisories/33379/

NOTE: This RSS feed does not include information about updated Secunia advisories. You should note that Secunia on average issues more than 20 updated advisories per day, containing information about exploit and patch availability, new and in depth research, and all other details that are relevant. Learn more about receiving complete and customised Secunia advisory information:
http://secunia.com/advisories/business_solutions/

2009-01-05 12:30: read more...   

    Secunia: [3/5] PhpMesFilms "id" SQL Injection Vulnerability

SuB-ZeRo has discovered a vulnerability in PhpMesFilms, which can be exploited by malicious people to conduct SQL injection attacks.

http://secunia.com/Advisories/33332/

NOTE: This RSS feed does not include information about updated Secunia advisories. You should note that Secunia on average issues more than 20 updated advisories per day, containing information about exploit and patch availability, new and in depth research, and all other details that are relevant. Learn more about receiving complete and customised Secunia advisory information:
http://secunia.com/advisories/business_solutions/

2009-01-05 12:30: read more...   

    Secunia: [2/5] Links SSL Verification Security Issue

A security issue has been discovered in Links, which can be exploited by malicious people to conduct spoofing attacks.

http://secunia.com/Advisories/33391/

NOTE: This RSS feed does not include information about updated Secunia advisories. You should note that Secunia on average issues more than 20 updated advisories per day, containing information about exploit and patch availability, new and in depth research, and all other details that are relevant. Learn more about receiving complete and customised Secunia advisory information:
http://secunia.com/advisories/business_solutions/

2009-01-05 12:30: read more...   

    Secunia: [2/5] DotNetNuke Role Membership Security Bypass

A vulnerability has been reported in DotNetNuke, which can be exploited by malicious users to bypass certain security restrictions.

http://secunia.com/Advisories/33401/

NOTE: This RSS feed does not include information about updated Secunia advisories. You should note that Secunia on average issues more than 20 updated advisories per day, containing information about exploit and patch availability, new and in depth research, and all other details that are relevant. Learn more about receiving complete and customised Secunia advisory information:
http://secunia.com/advisories/business_solutions/

2009-01-05 11:00: read more...   

    Secunia: [2/5] phpSkelSite File Inclusion and Cross-Site Scripting Vulnerabilities

ahmadbady has discovered some vulnerabilities in phpSkelSite, which can be exploited by malicious people to conduct cross-site scripting attacks, disclose sensitive information, and compromise a vulnerable system.

http://secunia.com/Advisories/33382/

NOTE: This RSS feed does not include information about updated Secunia advisories. You should note that Secunia on average issues more than 20 updated advisories per day, containing information about exploit and patch availability, new and in depth research, and all other details that are relevant. Learn more about receiving complete and customised Secunia advisory information:
http://secunia.com/advisories/business_solutions/

2009-01-05 11:00: read more...   

    Secunia: [2/5] Autoreminder "id" SQL Injection Vulnerability

ZoRLu has reported a vulnerability in Autoreminder, which can be exploited by malicious users to conduct SQL injection attacks.

http://secunia.com/Advisories/33283/

NOTE: This RSS feed does not include information about updated Secunia advisories. You should note that Secunia on average issues more than 20 updated advisories per day, containing information about exploit and patch availability, new and in depth research, and all other details that are relevant. Learn more about receiving complete and customised Secunia advisory information:
http://secunia.com/advisories/business_solutions/

2009-01-05 11:00: read more...   

    Secunia: [2/5] Apache Roller "q" Cross-Site Scripting Vulnerability

Hector Manuel Escalona Mendoza has discovered a vulnerability in Apache Roller, which can be exploited by malicious people to conduct cross-site scripting attacks.

http://secunia.com/Advisories/31523/

NOTE: This RSS feed does not include information about updated Secunia advisories. You should note that Secunia on average issues more than 20 updated advisories per day, containing information about exploit and patch availability, new and in depth research, and all other details that are relevant. Learn more about receiving complete and customised Secunia advisory information:
http://secunia.com/advisories/business_solutions/

2009-01-05 10:00: read more...   

    Secunia: [3/5] Debian update for ruby1.8 and ruby1.9

Debian has issued an update for ruby1.8 and ruby1.9. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service).

http://secunia.com/Advisories/33398/

NOTE: This RSS feed does not include information about updated Secunia advisories. You should note that Secunia on average issues more than 20 updated advisories per day, containing information about exploit and patch availability, new and in depth research, and all other details that are relevant. Learn more about receiving complete and customised Secunia advisory information:
http://secunia.com/advisories/business_solutions/

2009-01-05 10:00: read more...   

    Secunia: [4/5] Destiny Media Player Playlist Processing Buffer Overflow

aBo MoHaMeD has discovered a vulnerability in Destiny Media Player, which potentially can be exploited by malicious people to compromise a user's system.

http://secunia.com/Advisories/33346/

NOTE: This RSS feed does not include information about updated Secunia advisories. You should note that Secunia on average issues more than 20 updated advisories per day, containing information about exploit and patch availability, new and in depth research, and all other details that are relevant. Learn more about receiving complete and customised Secunia advisory information:
http://secunia.com/advisories/business_solutions/

2009-01-05 10:00: read more...   

    Secunia: [3/5] Debian update for xterm

Debian has issued an update for xterm. This fixes a vulnerability, which can be exploited by malicious people to compromise a user's system.

http://secunia.com/Advisories/33397/

NOTE: This RSS feed does not include information about updated Secunia advisories. You should note that Secunia on average issues more than 20 updated advisories per day, containing information about exploit and patch availability, new and in depth research, and all other details that are relevant. Learn more about receiving complete and customised Secunia advisory information:
http://secunia.com/advisories/business_solutions/

2009-01-05 10:00: read more...   

    Secunia: [3/5] Red Hat update for kernel

Red Hat has issued an update for the kernel. This fixes some vulnerabilities and security issues, which can be exploited by malicious, local users to cause a DoS (Denial of Service), disclose potentially sensitive information, bypass certain security restrictions, and gain escalated privileges, and by malicious people to cause a DoS.

http://secunia.com/Advisories/33280/

NOTE: This RSS feed does not include information about updated Secunia advisories. You should note that Secunia on average issues more than 20 updated advisories per day, containing information about exploit and patch availability, new and in depth research, and all other details that are relevant. Learn more about receiving complete and customised Secunia advisory information:
http://secunia.com/advisories/business_solutions/

2009-01-05 10:00: read more...   

    Secunia: [3/5] A-Emlak Pro SQL Injection and Database Disclosure

A vulnerability and a security issue have been reported in A-Emlak Pro, which can be exploited by malicious people to conduct SQL injection attacks and disclose sensitive information.

http://secunia.com/Advisories/33324/

NOTE: This RSS feed does not include information about updated Secunia advisories. You should note that Secunia on average issues more than 20 updated advisories per day, containing information about exploit and patch availability, new and in depth research, and all other details that are relevant. Learn more about receiving complete and customised Secunia advisory information:
http://secunia.com/advisories/business_solutions/

2009-01-05 09:00: read more...   

    milw0rm.com: Cybershade CMS 0.2b (index.php) Remote File Inclusion Exploit

2009-01-05 00:00: read more...   

    milw0rm.com: Ayemsis Emlak Pro (Auth Bypass) SQL Injection Vulnerability

2009-01-05 00:00: read more...   

    milw0rm.com: Joomla com_phocadocumentation (id) Remote SQL Injection Exploit

2009-01-05 00:00: read more...   

    milw0rm.com: Safari (Arguments) Array Integer Overflow PoC (New Heap Spray)

2009-01-05 00:00: read more...   

    milw0rm.com: Joomla com_na_newsdescription (newsid) SQL Injection Exploit

2009-01-05 00:00: read more...   

    milw0rm.com: Joomla Component simple_review 1.x SQL Injection Vulnerability

2009-01-05 00:00: read more...   

    milw0rm.com: Ayemsis Emlak Pro (acc.mdb) Database Disclosure Vulnerability

2009-01-05 00:00: read more...   

    milw0rm.com: VUPlayer 2.49 (.wax File) Local Buffer Overflow Exploit

2009-01-05 00:00: read more...   

    milw0rm.com: PHPAuctionSystem (XSS/SQL) Multiple Remote Vulnerabilities

2009-01-05 00:00: read more...   

    milw0rm.com: PHPAuctionSystem Insecure Cookie Handling Vulnerability

2009-01-05 00:00: read more...   

    milw0rm.com: Destiny Media Player 1.61 (lst File) Local Buffer Overflow Exploit #2

2009-01-04 00:00: read more...   

    milw0rm.com: plxAutoReminder 3.7 (id) Remote SQL Injection Vulnerability

2009-01-04 00:00: read more...   

    milw0rm.com: PNphpBB2 <= 1.2i (ModName) Multiple LFI Vulnerabilities

2009-01-04 00:00: read more...   

    milw0rm.com: webSPELL <= 4.01.02 (id) Remote Edit Topics Vulnerability

2009-01-04 00:00: read more...   

    milw0rm.com: The Rat CMS Alpha 2 (viewarticle.php id) Blind SQL Injection Exploit

2009-01-04 00:00: read more...   

    milw0rm.com: WSN Guest 1.23 (search) Remote SQL Injection Vulnerability

2009-01-04 00:00: read more...   

    milw0rm.com: Destiny Media Player 1.61 (lst File) Local Buffer Overflow Exploit #3

2009-01-04 00:00: read more...   

    milw0rm.com: Destiny Media Player 1.61 (lst File) Local Buffer Overflow Exploit #5

2009-01-04 00:00: read more...   

    milw0rm.com: Destiny Media Player 1.61 (lst File) Local Buffer Overflow Exploit

2009-01-04 00:00: read more...   

    milw0rm.com: PhpMesFilms 1.0 (index.php id) Remote SQL Injection Vulnerability

2009-01-04 00:00: read more...   

    milw0rm.com: Destiny Media Player 1.61 (lst File) Local Buffer Overflow Exploit #4

2009-01-04 00:00: read more...   

    milw0rm.com: Destiny Media Player 1.61 (lst File) Local Buffer overflow PoC

2009-01-03 00:00: read more...   

    milw0rm.com: Lito Lite CMS Multiple Cross Site Scripting / Blind SQL Injection Exploit

2009-01-03 00:00: read more...   

    milw0rm.com: Destiny Media Player 1.61 (.m3u File) Local Stack Overflow Exploit

2009-01-03 00:00: read more...   

    milw0rm.com: Webspell 4 (Auth Bypass) SQL Injection Vulnerability

2009-01-03 00:00: read more...   

    SANS: 08.1.16 TYPO3 SB Universal Plugin Unspecified Cross-Site Scripting Vulnerability

CVEs: CVE: Not Available

Platform: Web Application - Cross Site Scripting

2009-01-02 20:30: read more...   

    SANS: (1) CRITICAL: RealNetworks Helix Server Multiple Vulnerabilities

Category: Widely Deployed Software

Affected:

  • RealNetworks Helix Server versions 11.x

2009-01-02 20:30: read more...   

    SANS: (3) MODERATE: Forged Trusted Certification Authority Certificate

Category: Widely Deployed Software

Affected:

  • Most web browsers

2009-01-02 20:30: read more...   

    SANS: 08.1.21 PHP Link Directory "page.php" SQL Injection

CVEs: CVE: Not Available

Platform: Web Application - SQL Injection

2009-01-02 20:30: read more...   

    SANS: 08.1.1 BulletProof FTP Client Bookmark File Heap Buffer Overflow

CVEs: CVE: Not Available

Platform: Third Party Windows Apps

2009-01-02 20:30: read more...   

    SANS: 08.1.5 PHP "imageRotate()" Uninitialized Memory Information Disclosure

CVEs: CVE: CVE-2008-5498

Platform: Cross Platform

2009-01-02 20:30: read more...   

    SANS: 08.1.18 Mayaa Default Error Page Cross-Site Scripting

CVEs: CVE: CVE-2008-5720

Platform: Web Application - Cross Site Scripting

2009-01-02 20:30: read more...   

    SANS: 08.1.2 SAWStudio ".prf" File Buffer Overflow

CVEs: CVE: Not Available

Platform: Third Party Windows Apps

2009-01-02 20:30: read more...   

    SANS: 08.1.32 W2B phpGreetCards "index.php" Arbitrary File Upload

CVEs: CVE: Not Available

Platform: Web Application

2009-01-02 20:30: read more...   

    SANS: 08.1.24 ILIAS "repository.php" SQL Injection

CVEs: CVE: Not Available

Platform: Web Application - SQL Injection

2009-01-02 20:30: read more...   

HOME

 

This page is also available as an RSS feed.

This site is maintained by Hubertus A. Haniel (hubba@unixcook.com)

Last Updated: 2009-01-06 02:01