Section: .. / 0704-advisories /
| /// File Name: |
major_rls46.txt |
Description:
|
Plogger suffers from a session fixation issue.
| | Author: | David "Aesthetico" Vieira-Kurz | | Homepage: | http://www.majorsecurity.de | | File Size: | 1818 | | Last Modified: | Apr 25 07:25:46 2007 |
| MD5 Checksum: | 12b29a1da6f862ac4701f21ada06fbc7 |
|
| /// File Name: |
major_rls44.txt |
Description:
|
MailBee WebMail Pro version 3.4 suffers from a cross site scripting vulnerability.
| | Author: | David "Aesthetico" Vieira-Kurz | | Homepage: | http://www.majorsecurity.de | | File Size: | 1718 | | Last Modified: | Apr 17 05:35:23 2007 |
| MD5 Checksum: | 724448d356d6a77f7c367c1f1b4728f5 |
|
| /// File Name: |
OPENADS-SA-2007-004.txt |
Description:
|
Max Media Manager versions 0.1.29-rc and below and 0.3.31-alpha-pr2 and below suffer from HTTP response splitting vulnerabilities.
| | Author: | Matteo Beccati | | Homepage: | http://www.openads.org/ | | File Size: | 1578 | | Last Modified: | Apr 17 05:33:16 2007 |
| MD5 Checksum: | b5d4c2b5e4f2a2c8ad332cbac55e96e1 |
|
| /// File Name: |
major_rls37.txt |
Description:
|
holaCMS version 1.4.10 suffers from cross site scripting issues.
| | Author: | David "Aesthetico" Vieira-Kurz | | Homepage: | http://www.majorsecurity.de | | File Size: | 1537 | | Last Modified: | Apr 5 00:46:58 2007 |
| MD5 Checksum: | 9942e68ed2bd93b80e7d1114bd88d1aa |
|
| /// File Name: |
BTP00000P002NF.txt |
Description:
|
Symantec Norton Personal Firewall hooks many functions in SSDT and in at least two cases it fails to validate arguments that come from the user mode.
| | Homepage: | http://www.matousec.com/ | | Related Exploit: | BTP00000P002NF.zip | | File Size: | 1347 | | Last Modified: | Apr 3 01:11:56 2007 |
| MD5 Checksum: | 651ce3be1613c437460c49ad041b7923 |
|
| /// File Name: |
pico-traverse.txt |
Description:
|
Acubix PicoZip version 4.02 suffers from a directory traversal vulnerability.
| | Author: | Hamid Ebadi | | Homepage: | http://www.bugtraq.ir/ | | File Size: | 1309 | | Last Modified: | Apr 17 05:31:20 2007 |
| MD5 Checksum: | d153adb9f1ae61b2699cb138ca16aa3e |
|
| /// File Name: |
ietool-dos.txt |
Description:
|
The Netsprint Toolbar version 1.1 suffers from a denial of service vulnerability.
| | Author: | sapheal | | File Size: | 1231 | | Last Modified: | Apr 19 02:56:51 2007 |
| MD5 Checksum: | a41fce87276355eef152df7d0b58757d |
|
| /// File Name: |
zonealarm6.txt |
Description:
|
ZoneAlarm 6 hooks many functions in SSDT and in at least two cases it fails to validate arguments that come from the user mode. User calls to NtCreateKey and NtDeleteFile with invalid argument values can cause system crashes because of errors in ZoneAlarm driver vsdatant.sys.
| | Homepage: | http://www.matousec.com/ | | Related Exploit: | BTP00001P000ZA.zip | | File Size: | 1107 | | Last Modified: | Apr 17 07:00:59 2007 |
| MD5 Checksum: | c26adcb004c7061777cbd8a4b8632ac4 |
|
| /// File Name: |
raiden24-dos.txt |
Description:
|
RaidenFTP version 2.4 suffers from multiple denial of service vulnerabilities.
| | Author: | sapheal | | File Size: | 1099 | | Last Modified: | Apr 23 05:34:43 2007 |
| MD5 Checksum: | 487eb0934b21a32ec3c57c0b4c1d8b94 |
|
| /// File Name: |
netsprint-exec.txt |
Description:
|
Netsprint Toolbar version 1.1 suffers from a buffer overrun vulnerability.
| | Author: | sapheal | | File Size: | 1059 | | Last Modified: | Apr 17 19:12:49 2007 |
| MD5 Checksum: | 2ae740719c2b81e7db1a73aa004b36d6 |
|
| /// File Name: |
wsftp-dos.txt |
Description:
|
WS_FTP Home 2007 NetscapeFTPHandler is prone to a denial of service vulnerability. The vulnerability stems from a null pointer dereference.
| | Author: | sapheal | | File Size: | 884 | | Last Modified: | Apr 24 09:09:38 2007 |
| MD5 Checksum: | 3d99a5d058817263dd99e17d3be02b69 |
|
|
|
|
|