Section: .. / 0606-advisories /
| /// File Name: |
rasman.txt |
Description:
|
Peter Winter-Smith of NGSSoftware has discovered a high risk vulnerability in the Microsoft Windows Remote Access Connection Manager (RASMAN) service which (under certain versions of the OS) can allow a remote, anonymous attacker to gain complete control over a vulnerable system.
| | Author: | Peter Winter-Smith | | Homepage: | http://www.nextgenss.com/ | | File Size: | 1489 | | Last Modified: | Jun 15 09:55:46 2006 |
| MD5 Checksum: | 0166eb830dc1f396dcf4fb1f31431818 |
|
| /// File Name: |
RCblog1.03.txt |
Description:
|
RCblog 1.03 suffers from a directory transversal vulnerability.
| | Author: | Hessam-x | | Homepage: | http://www.Hessamx.net | | File Size: | 167 | | Last Modified: | Jun 14 06:19:25 2006 |
| MD5 Checksum: | 330a21ef52bd5cad9ac36b2972322f9d |
|
| /// File Name: |
RedaxoCMS.txt |
Description:
|
Versions of Redaxo CMS less than or equal to 3.2 suffer from a remote file inclusion vulnerability.
| | Author: | beford | | File Size: | 731 | | Last Modified: | Jun 3 06:28:43 2006 |
| MD5 Checksum: | be7196bd5092c26727aa8afa0ae67df9 |
|
| /// File Name: |
rooster.txt |
Description:
|
Roostercode.com appears susceptible to cross site scripting attacks.
| | Author: | s3rv3r_hack3r | | File Size: | 162 | | Last Modified: | Jun 21 09:24:19 2006 |
| MD5 Checksum: | 9bf19aa9f0b61794cb8e4a9f93464c55 |
|
| /// File Name: |
rPSA-2006-0087-1.txt |
Description:
|
rPath Security Advisory: 2006-0087-1 - Previous versions of the kernel package have a small information leak that exposes 6 bytes of arbitrary kernel memory when the getsockopt system call is called with the SO_ORIGINAL_DST argument. An attacking program cannot choose which 6 bytes of memory are exposed.
| | Homepage: | http://rpath.com | | File Size: | 881 | | Last Modified: | Jun 1 03:41:09 2006 |
| MD5 Checksum: | 7e81b9b189b20b99bcf3baa607ee290d |
|
| /// File Name: |
rPSA-2006-0089-1.txt |
Description:
|
rPath Security Advisory: 2006-0089-1 Previous versions of mysql server and client libraries contain weaknesses parsing certain character encodings (such as SJIS, BIG5 and GBK, but not ASCII) which, when using the vulnerable encodings, can enable SQL injection attacks against applications (particularly web applications) which use non-standard escaping of quote characters.
| | Homepage: | http://rpath.com | | File Size: | 1295 | | Last Modified: | Jun 2 00:50:31 2006 |
| MD5 Checksum: | a74dbe1f9fc5cecf48bacdfb84ae5705 |
|
| /// File Name: |
rPSA-2006-0091-1.txt |
Description:
|
rPath Security Advisory: 2006-0091-1 Previous versions of the firefox browser and thunderbird mail user agent have multiple vulnerabilities, some of which allow remote servers to compromise user accounts. The firefox browser is the default browser on rPath Linux, and all users are strongly recommended to update firefox and thunderbird as soon as possible.
| | Homepage: | http://www.rpath.com | | File Size: | 1953 | | Last Modified: | Jun 3 06:16:46 2006 |
| MD5 Checksum: | 857028804106240fae18fd930a8426e0 |
|
| /// File Name: |
rPSA-2006-0096-1.txt |
Description:
|
rPath Security Advisory: 2006-0096-1 - spamassassin
| | Homepage: | http://issues.rpath.com | | File Size: | 787 | | Last Modified: | Jun 11 05:37:04 2006 |
| MD5 Checksum: | 372ee029ebcf01f0913cb179f475936e |
|
| /// File Name: |
rPSA-2006-0098-1.txt |
Description:
|
rPath Security Advisory: 2006-0098-1 - gdm
| | Homepage: | http://issues.rpath.com | | File Size: | 942 | | Last Modified: | Jun 11 05:37:38 2006 |
| MD5 Checksum: | 8bd0987bb5e6ab58b5ce49652f286258 |
|
| /// File Name: |
rPSA-2006-0099-1.txt |
Description:
|
rPath Security Advisory: 2006-0099-1 - openldap
| | Homepage: | http://issues.rpath.com | | File Size: | 784 | | Last Modified: | Jun 11 05:38:08 2006 |
| MD5 Checksum: | c4fe5567218d12639f2ee8685cc705ae |
|
| /// File Name: |
rPSA-2006-0100-1.txt |
Description:
|
rPath Security Advisory: 2006-0100-1: Previous versions of the freetype library contain multiple integer overflow weaknesses which allow remote providers of font files (which may include fonts embedded in documents such as PDF files) to cause applications to crash, and may possibly also allow them to execute arbitrary code as the user accessing the files.
| | Homepage: | http://www.rpath.com | | File Size: | 853 | | Last Modified: | Jun 14 06:49:07 2006 |
| MD5 Checksum: | c8a45d67240c5bb1558c72a1ed900c0b |
|
| /// File Name: |
rPSA-2006-0106-1.txt |
Description:
|
KDM allows the user to select the session type for login. This setting is stored in the user home directory. Previous versions of KDM will follow a symbolic link and can thus disclose the contents of any file on the system (such as /etc/shadow) to arbitrary users. KDM is not the default window manager on rPath Linux.
| | Author: | rPath | | File Size: | 790 | | Related CVE(s): | CVE-2006-2449 | | Last Modified: | Jun 26 06:23:10 2006 |
| MD5 Checksum: | e3cab958613f46f6b8e39f96497d4d7e |
|
| /// File Name: |
rumble-1.02.txt |
Description:
|
Rumble versions less than or equal to 1.02 suffer from remote file inclusion vulnerabilities.
| | Author: | Milli-Harekat | | File Size: | 615 | | Last Modified: | Jun 11 05:04:23 2006 |
| MD5 Checksum: | ecf9bb1ed09fc3489084980f16ce1419 |
|
| /// File Name: |
SA-20060613-0.txt |
Description:
|
Microsoft Outlook Web Access is vulnerable to an HTML code injection/cross site scripting attack. A malicous user could craft a mail containing HTML and Javascript code. Such code could be used to steal session information from the victims cookies, and thus enable the attacker to get access to the victim's emails.
| | Homepage: | http://www.sec-consult.com/270.html | | File Size: | 8745 | | Last Modified: | Jun 29 06:23:20 2006 |
| MD5 Checksum: | b0974b833779ca06fab225828f9f2754 |
|
| /// File Name: |
sa15779.txt |
Description:
|
Secunia Security Advisory - A vulnerability has been reported in Sendmail, which can be exploited by malicious people to cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/15779/ | | File Size: | 2976 | | Last Modified: | Jun 15 20:39:50 2006 |
| MD5 Checksum: | d85a02cfa2295e708eef8b3fbef6fc29 |
|
| /// File Name: |
sa19180.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered two vulnerabilities in BlueDragon Server/Server JX, which can be exploited by malicious people to conduct cross-site scripting attacks and cause a DoS (Denial of Service).
| | Homepage: | http://secunia.com/advisories/19180/ | | File Size: | 3279 | | Last Modified: | Jun 25 22:51:40 2006 |
| MD5 Checksum: | e8141edb6ae6b4c61a8378e0da33d612 |
|
| /// File Name: |
sa19480.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered a weakness in Opera, which can be exploited to display the SSL certificate from a trusted site on an untrusted site.
| | Homepage: | http://secunia.com/advisories/19480/ | | File Size: | 2341 | | Last Modified: | Jun 29 04:11:18 2006 |
| MD5 Checksum: | c402c2847ad076573bcd8dd129742981 |
|
| /// File Name: |
sa19890.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered a vulnerability in AutoMate, which can be exploited by malicious people to compromise a user's system.
| | Homepage: | http://secunia.com/advisories/19890/ | | File Size: | 2619 | | Last Modified: | Jun 10 07:36:59 2006 |
| MD5 Checksum: | 4d82968b6635da04d9f174b13bee2655 |
|
| /// File Name: |
sa20134.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered some vulnerabilities in SelectaPix, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks.
| | Homepage: | http://secunia.com/advisories/20134/ | | File Size: | 3035 | | Last Modified: | Jun 10 07:36:59 2006 |
| MD5 Checksum: | 65ded76985d47c4a8814cdb377d3a5f3 |
|
| /// File Name: |
sa20152.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered some vulnerabilities in DeluxeBB, which can be exploited by malicious people to conduct SQL injection attacks and compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/20152/ | | File Size: | 3196 | | Last Modified: | Jun 15 01:41:40 2006 |
| MD5 Checksum: | 0ce22de3768e6a614aea20547f39110a |
|
| /// File Name: |
sa20200.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered some vulnerabilities in phpRaid, which can be exploited by malicious people to conduct SQL injection attacks or compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/20200/ | | File Size: | 3395 | | Last Modified: | Jun 29 20:48:34 2006 |
| MD5 Checksum: | 84057e142c83b4e6a2639adf0ec13097 |
|
| /// File Name: |
sa20328.txt |
Description:
|
Secunia Security Advisory - Kreej has discovered a security issue in ActivePerl, which can be exploited by malicious, local users to gain escalated privileges.
| | Homepage: | http://secunia.com/advisories/20328/ | | File Size: | 2476 | | Last Modified: | Jun 5 10:47:59 2006 |
| MD5 Checksum: | 5d0f0fec8515fd5de36ba89c1fba9021 |
|
| /// File Name: |
sa20362.txt |
Description:
|
Secunia Security Advisory - Secunia Research has discovered two vulnerabilities in CMS Mundo, which can be exploited by malicious people to conduct SQL injection attacks and compromise a vulnerable system.
| | Homepage: | http://secunia.com/advisories/20362/ | | File Size: | 2902 | | Last Modified: | Jun 15 01:41:40 2006 |
| MD5 Checksum: | 49d17a5e77003e510f26a851c2b545ec |
|
|
|
|
|