![]() |
| Home RSS Directory F.A.Q Try Custom Feed Sonneries Portable |
Latest Flows from this sub-category: random selection from this sub-category: |
Beyond Security will help you expose your security holes and will show you what the bad guys already know about your hosts and network. Use our Automated Scanning service to perform a full security audit of your site, and find the latest security news and tools on Beyond Security's SecuriTeam web site. Copyright: Copyright 1998-2008, SecuriTeam.com Tue, 25 Nov 2008 13:14:00 +0100 A vulnerability in Amaya browser allows remote attackers to cause it to overflow an internal buffer which in turn can be leveraged to execute arbitrary code.
Tue, 25 Nov 2008 11:58:00 +0100 Streamripper "records Shoutcast and Live365 MP3 streams to a hard disk, creating separate files for each track. Runs under Unix and Windows." Secunia Research has discovered some vulnerabilities in...
Tue, 18 Nov 2008 20:37:00 +0100 By sending crafted packets to ports on the Checkpoint Firewall which are mapped by port address translation (PAT) to ports on internal devices, information about the internal network may be disclos...
Tue, 11 Nov 2008 15:01:00 +0100 By exploiting either of the VMware flaws described in this document, user-mode code executing in a virtual machine may gain kernel privileges within the virtual machine, dependent upon the guest op...
Tue, 11 Nov 2008 13:44:00 +0100 The jabber server Openfire contains several serious vulnerabilities. Depending on the particular runtime environment these issues can potentially even be used by an attacker to execute code on oper...
Sun, 30 Nov 2008 10:41:00 +0100 Tue, 25 Nov 2008 11:51:00 +0100 Tue, 18 Nov 2008 20:43:00 +0100 Sun, 09 Nov 2008 12:31:00 +0100 Sun, 09 Nov 2008 12:21:00 +0100 Sun, 30 Nov 2008 10:52:00 +0100 PHP is "an HTML-embedded scripting language. Much of its syntax is borrowed from C, Java and Perl with a couple of unique PHP-specific features thrown in. The goal of the language is to allow web d...
Sun, 09 Nov 2008 12:35:00 +0100 The VLC media player contains a stack overflow vulnerability while parsing malformed RealText (rt) subtitle files. The vulnerability can be trivially exploited by a (remote) attacker to execute arb...
Sun, 02 Nov 2008 16:01:00 +0100 A relatively common bug parsing TXT records delivered over DNS, dating at least back to 2002 in Sendmail 8.2.0 and almost certainly much earlier, has been found in LibSPF2, a library frequently use...
Sun, 02 Nov 2008 15:53:00 +0100 "GNU Enscript is a free replacement for the Adobe's enscript program. Enscript converts ASCII files to PostScript and spools generated PostScript output to the specified printer or leaves it to fil...
Mon, 27 Oct 2008 18:58:00 +0100 File::Find::Object is "an object-oriented and iterative replacement for File::Find. I.e: it is a module for traversing a directory tree, and finding all the files contained within it programaticall...
Tue, 25 Nov 2008 12:43:00 +0100 Google chrome is vulnerable to URI Obfuscation vulnerability. An attacker can easily perform malicious redirection by manipulating the browser functionality. The link can not be traversed properly ...
Tue, 25 Nov 2008 11:56:00 +0100 iPhone Configuration Web Utility lets "you easily create, sign and distribute configuration profiles using a web browser". A vulnerability in iPhone Configuration Web Utility allows remote attacker...
Tue, 18 Nov 2008 20:40:00 +0100 A vulnerability in Microsoft's Windows Active Directory's LDAP server allows remote attackers to discover which usernames are valid and which are not.
Wed, 12 Nov 2008 19:03:00 +0100 This security update resolves several vulnerabilities in Microsoft XML Core Services. The most severe vulnerability could allow remote code execution if a user viewed a specially crafted Web page u...
Wed, 12 Nov 2008 18:51:00 +0100 This security update resolves a publicly disclosed vulnerability in Microsoft Server Message Block (SMB) Protocol. The vulnerability could allow remote code execution on affected systems. An attack...
Tue, 18 Nov 2008 20:49:00 +0100 A vulnerability in Opera's browser allows attackers that can inject and open an HTML file to overflow an internal buffer used by the 'file://' URL interpreter and cause it to execute arbitrary code.
Wed, 12 Nov 2008 21:51:00 +0100 Stack-based buffer overflow in the Network Manager in Castle Rock Computing SNMPc 7.1 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a long c...
Wed, 29 Oct 2008 10:24:00 +0100 A vulnerability in PacketTrap's TFTPD allows remote attackers to cause the TFTP server to fail by sending it a pipe (|) character as the filename that is being uploaded.
Fri, 24 Oct 2008 21:15:00 +0200 The following exploit code will simulate the MS08-067 vulnerability and cause the Server service to fail on vulnerable Windows systems.
Thu, 16 Oct 2008 19:29:00 +0200 Kartoffel is a extensible command-line tool developed with the aim of helping developers to test the security and the reliability of a driver. The following exploit code will use Kartoffel to explo...
Wed, 12 Nov 2008 18:54:00 +0100 The purpose of this paper is to outline the security measures being taken by vendors to prevent such attacks in their home routing products, what those security measures accomplish, and where they ...
Sun, 02 Nov 2008 13:10:00 +0100 Reflective DLL injection is a library injection technique in which the concept of reflective programming is employed to perform the loading of a library from memory into a host process. As such the...
Thu, 23 Oct 2008 18:49:00 +0200 A new approach to introducing HTML and/or JavaScript vulnerabilities into devices has been found, this new approach utilizes SNMP write capabilities to inject the malicious content into the device,...
Sun, 27 Apr 2008 16:27:00 +0200 A new class of vulnerabilities have been discovered in Oracle, these vulnerabilities can be exploited through the use of Oracle's ability to allow users to manipluate the way certain internal funct...
Wed, 09 Apr 2008 18:37:00 +0200 The Windows DNS stub resolver is a Windows service used by Windows desktop software to resolve DNS names into IP addresses. The DNS stub resolver forwards DNS queries to the DNS server configured f...
|
|
contact |