Section: .. / 0601-advisories /
| /// File Name: |
communiLDAP.txt |
Description:
|
Multiple vulnerabilities in the LDAP component of CommuniGate Pro Server version 5.0.6 have been uncovered.
| | Homepage: | http://www.gleg.net/protover_ldap.shtml | | File Size: | 1187 | | Last Modified: | Jan 30 00:14:06 2006 |
| MD5 Checksum: | 74f6699d822dec4b4cfa6267fa505b4d |
|
| /// File Name: |
EV0023.txt |
Description:
|
MyPhPim version 01.05 allows for arbitrary file uploads.
| | Author: | Aliaksandr Hartsuyeu | | File Size: | 1088 | | Last Modified: | Jan 12 18:01:57 2006 |
| MD5 Checksum: | 5c990a6474df82aef4b93dc2549df432 |
|
| /// File Name: |
ZyXelP2000W.txt |
Description:
|
The Zyxel P2000W (Version 2) VoIP wireless phone has an undocumented port, UDP/9090, that provides an unauthenticated attacker information about the phone, specifically the phone's MAC address and software version.
| | Author: | Shawn Merdinger | | File Size: | 1083 | | Last Modified: | Jan 22 22:50:29 2006 |
| MD5 Checksum: | 96ca6bc9af5bca592324b49bf42a323f |
|
| /// File Name: |
MPMHP-180W.txt |
Description:
|
MPM HP-180W VoIP Wireless Desktop Phone has an undocumented port and service, UDP/9090, that provides an unauthenticated attacker information about the phone, specifically the phone's MAC address and software version.
| | Author: | Shawn Merdinger | | File Size: | 1010 | | Last Modified: | Jan 22 22:48:58 2006 |
| MD5 Checksum: | fadfe8f8221ae189065ce55a612f150c |
|
| /// File Name: |
EV0025.txt |
Description:
|
ACal version 2.2.5 is susceptible to system bypass.
| | Author: | Aliaksandr Hartsuyeu | | File Size: | 972 | | Last Modified: | Jan 15 17:33:59 2006 |
| MD5 Checksum: | 008c5f7db9c3c538ba57df36d1495d7b |
|
| /// File Name: |
EV0020.txt |
Description:
|
Foxrum BBCode version 4.0.4f is susceptible to cross site scripting attacks.
| | Author: | Aliaksandr Hartsuyeu | | File Size: | 972 | | Last Modified: | Jan 10 05:56:44 2006 |
| MD5 Checksum: | a8f56cc2e26a7bc50b628635e580c8d6 |
|
| /// File Name: |
PHPFusebox4.0.6.txt |
Description:
|
PHP Fusebox 4.0.6 suffers from an HTML injection vulnerability. POC included.
| | Author: | Ph03n1X | | File Size: | 882 | | Last Modified: | Jan 22 23:04:11 2006 |
| MD5 Checksum: | 30cfeb71119bd38542eedca6211d9f28 |
|
| /// File Name: |
xlpd.txt |
Description:
|
xlpd 2.1 is susceptible to a denial of service condition when receiving too many connections from the same IP address.
| | Author: | dr_insane | | File Size: | 848 | | Last Modified: | Jan 8 06:07:33 2006 |
| MD5 Checksum: | 557dc2b7f86ce2cb6089ab4d26c5da53 |
|
| /// File Name: |
bbcodeURL.txt |
Description:
|
PunBB BBCode suffers from a script injection vulnerability.
| | Author: | Night_Warrior | | File Size: | 774 | | Last Modified: | Jan 22 00:56:09 2006 |
| MD5 Checksum: | 0a0e8b3b5364209e9cb3b12fb999de4f |
|
| /// File Name: |
linksysBEFVP41.txt |
Description:
|
The Linksys BEFVP41 can be crashed when getting sent a maliciously crafted packet.
| | Author: | paul14075 | | File Size: | 596 | | Last Modified: | Jan 21 07:17:26 2006 |
| MD5 Checksum: | 25a1e6c4620eb70c8c965e269d1c0736 |
|
| /// File Name: |
PowerPortal-XSS.txt |
Description:
|
PowerPortal suffers from multiple XSS problems. POC included.
| | Author: | Night_Warrior | | File Size: | 512 | | Last Modified: | Jan 22 23:30:07 2006 |
| MD5 Checksum: | 75af29d99cb3434170dce31f9ea69244 |
|
| /// File Name: |
WBNews-XSS.txt |
Description:
|
WBNews versions less than v1.1.0 suffer from XSS in the "Name" field.
| | Author: | DragoN | | File Size: | 205 | | Last Modified: | Jan 22 23:31:56 2006 |
| MD5 Checksum: | a22d430df32ef543b9bed5ac9cae045f |
|
|
|
|
|