Archive for July, 2009

Find out about Free Cisco Career Certification Resources!

No Comments »

Hello Luke Conaway,

Education is valuable at all times, and especially in tough economic times. Possessing a Cisco Career Certification demonstrates both to employers and coworkers, your unquestionable ability to successfully solve problems, implement projects and meet technical challenges. Learning@Cisco addresses technical talent needs across the globe by providing resources, training, certifications, and consulting services.

Take advantage of the many resources available to you:

Register for the Learning@Cisco monthly newsletter to keep yourself updated on new programs, tools, training and exams that allow you to stand out from the crowd in your organization and the market.

Visit the Cisco Learning Network, the online social learning community from Learning@Cisco provides you the ability to discuss top of mind issues, learn about Cisco Career Certifications, share expertise and interact with IT professionals and Cisco experts from around the world.

FREE Self-Assessments which will evaluate what you already know and recommend training and guidance for you to take the next steps on your learning path. Learning@Cisco Self-Assessments are available for Routing and Switching, Voice, Security and Wireless.  Take your FREE Self-Assessments here.

Don’t forget to click here to sign up to receive valuable information about Cisco training and certifications.

Learning@Cisco


Cisco Notification Alert -All Prod and Tech Messages_Daily-07/30/2009 08:35 GMT

No Comments »

Cisco Notification Service Alert:

Cisco Notification Alert -All Prod and Tech Messages_Daily-07/30/2009 08:35 GMT

End-of-Sale and End-of-Life Announcements-All Products-07/29/2009 09:15 GMT-07/30/2009 07:39 GMT

No updates available in this time period

For more information you can visit the End-of-Sale and End-of-Life Products index: http://www.cisco.com/en/US/products/hw/tsd_products_support_end-of-sale_and_end-of-life_products_list.html

End-of-Sale and End-of-Life Announcements-All Technologies-07/29/2009 09:15 GMT-07/30/2009 07:39 GMT

No updates available in this time period

For more information you can visit the End-of-Sale and End-of-Life Products index: http://www.cisco.com/en/US/products/hw/tsd_products_support_end-of-sale_and_end-of-life_products_list.html

Field Notices-All Products-07/29/2009 09:15 GMT-07/30/2009 07:39 GMT

No updates available in this time period

For more information you can visit the Product Field Notice Summary: http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html

Field Notices-All Technologies-07/29/2009 09:15 GMT-07/30/2009 07:39 GMT

No updates available in this time period

For more information you can visit the Product Field Notice Summary: http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html

Security Advisories-All Products-07/29/2009 09:15 GMT-07/30/2009 07:39 GMT

Title: Cisco IOS Software Border Gateway Protocol 4-Byte Autonomous System Number Vulnerabilities
Url: http://www.cisco.com/en/US/partner/products/products_security_advisory09186a0080aea4c9.shtml
Description: Recent versions of Cisco IOS Software support RFC4893 (”BGP Support for Four-octet AS Number Space”) and contain two remote denial of service (DoS) vulnerabilities when handling specific Border Gateway Protocol (BGP) updates.
Date: 2009-07-29 07:00:00.0

For more information; you can visit Cisco Security Advisories & Responses Index: http://www.cisco.com/en/US/products/products_security_advisories_listing.html

Security Advisories-All Technologies-07/29/2009 09:15 GMT-07/30/2009 07:39 GMT

No updates available in this time period

For more information; you can visit Cisco Security Advisories & Responses Index: http://www.cisco.com/en/US/products/products_security_advisories_listing.html


Voice Commands + More on your BlackBerry smartphone

No Comments »

Voice Commands and More on your BlackBerry smartphone

Are you thinking about a new BlackBerry® smartphone? Now is the time to check out the new BlackBerry devices available from your carrier. Once you’ve done that, take some time to learn how you can use your BlackBerry smartphone virtually hands-free! You can use your voice for dialing and you can assign functions to specific keys to help enhance usability.

In addition to what exists on your BlackBerry smartphone there are applications available in BlackBerry App World™ to further assist with integrating voice and phone functionality.

Click here to learn more from your desktop computer.

Encourage others to join so they may maximize their BlackBerry smartphone experience.

Click here to invite your friends to the BlackBerry Owners Lounge!


US-CERT Cyber Security Tip ST04-007 — Reducing Spam

No Comments »

The latest US-Cert Cyber Security Tip came today, it’s an introduction to spam for those who are new to email, and the associated security issues:

Cyber Security Tip ST04-007

                                Reducing Spam

 

   Spam is a common, and often frustrating, side effect to having an email

   account. Although you will probably not be able to eliminate it, there are

   ways to reduce it.

 

What is spam?

 

   Spam is the electronic version of “junk mail.” The term spam refers to

   unsolicited, often unwanted, email messages. Spam does not necessarily

   contain viruses—valid messages from legitimate sources could fall into this

   category.

 

How can you reduce the amount of spam?

 

   There are some steps you can take to significantly reduce the amount of spam

   you receive:

     * Don’t give your email address out arbitrarily – Email addresses have

       become so common that a space for them is often included on any form

       that asks for your address—even comment cards at restaurants. It seems

       harmless,  so many people write them in the space provided without

       realizing what could happen to that information. For example, companies

       often enter the addresses into a database so that they can keep track of

       their customers and the customers’ preferences. Sometimes these lists

       are  sold  to or shared with other companies, and suddenly you are

       receiving email that you didn’t request.

     * Check privacy policies – Before submitting your email address online,

       look for a privacy policy. Most reputable sites will have a link to

       their privacy policy from any form where you’re asked to submit personal

       data. You should read this policy before submitting your email address

       or any other personal information so that you know what the owners of

       the site plan to do with the information (see Protecting Your Privacy

       for more information).

     * Be aware of options selected by default – When you sign up for some

       online accounts or services, there may be a section that provides you

       with the option to receive email about other products and services.

       Sometimes  there are options selected by default, so if you do not

       deselect them, you could begin to receive email from lists those lists

       as well.

     * Use filters – Many email programs offer filtering capabilities that

       allow  you  to block certain addresses or to only allow email from

       addresses  on your contact list. Some ISPs offer spam “tagging” or

       filtering services, but legitimate messages misclassified as spam might

       be dropped before reaching your inbox. However, many ISPs that offer

       filtering services also provide options for tagging suspected spam

       messages so the end user can more easily identify them. This can be

       useful in conjunction with filtering capabilities provided by many email

       programs.

     * Report messages as spam – Most email clients offer an option to report a

       message as spam or junk. If your has that option, take advantage of it.

       Reporting messages as spam or junk helps to train the mail filter so

       that the messages aren’t delivered to your inbox. However, check your

       junk or spam folders occasionally to look for legitimate messages that

       were incorrectly classified as spam.

     * Don’t follow links in spam messages – Some spam relies on generators

       that try variations of email addresses at certain domains. If you click

       a link within an email message or reply to a certain address, you are

       just confirming that your email address is valid. Unwanted messages that

       offer an “unsubscribe” option are particularly tempting, but this is

       often just a method for collecting valid addresses that are then sent

       other spam.

     * Disable  the automatic downloading of graphics in HTML mail – Many

       spammers send HTML mail with a linked graphic file that is then used to

       track who opens the mail message—when your mail client downloads the

       graphic from their web server, they know you’ve opened the message.

       Disabling HTML mail entirely and viewing messages in plain text also

       prevents this problem.

     * Consider opening an additional email account – Many domains offer free

       email accounts. If you frequently submit your email address (for online

       shopping, signing up for services, or including it on something like a

       comment card), you may want to have a secondary email account to protect

       your primary email account from any spam that could be generated. You

       could also use this secondary account when posting to public mailing

       lists, social networking sites, blogs, and web forums. If the account

       start to fill up with spam, you can get rid of it and open a different

       one.

     * Use privacy settings on social networking sites – Social networking

       sites typically allow you to choose who has access to see your email

       address. Consider hiding your email account or changing the settings so

       that only a small group of people that you trust are able to see your

       address (see Staying Safe on Social Network Sites for more information).

       Also, when you use applications on these sites, you may be granting

       permission for them to access your personal information. Be cautious

       about which applications you choose to use.

     * Don’t spam other people – Be a responsible and considerate user. Some

       people consider email forwards a type of spam, so be selective with the

       messages you redistribute. Don’t forward every message to everyone in

       your address book, and if someone asks that you not forward messages to

       them, respect their request.

     _________________________________________________________________

 

     Authors: Mindi McDowell, Allen Householder

     _________________________________________________________________

 

     Produced 2004 by US-CERT, a government organization.

 

     Last updated July 29, 2009

 

     Note: This tip was previously published and is being re-distributed to

     increase awareness.

 

     Terms of use

 

     http//www.us-cert.gov/legal.html

 

     This document can also be found at

 

     http//www.us-cert.gov/cas/tips/ST04-007.html

 

 

 


Control eDiscovery Costs: Reduce the Volume, Reduce the Expense

No Comments »

FREE WEBINAR – Product Series
July 31, 2009

CT Summation

Control eDiscovery Costs: Reduce the Volume, Reduce the Expense

 

Webinar

In discovery, data volume is an expensive problem. For example one gigabyte of Electronically Stored Information (ESI) can equal 75,000 hard copy pages and additional data that will never be reviewed. Wouldn’t you like to reduce this ESI before you start your review process in iBlaze or an alternative platform? Reducing your ESI volume prior to review will reduce your processing expenses and improve your review efficiency.

Are you baffled by the technologies and the vendors that claim they can help you cull, filter and deliver relevant data for your case?

If so, then join us for an informative session on simple and affordable ways to cut down data volume prior to document review. This webinar will walk you through technology designed for use by legal professionals, not vendors – to minimize the amount of information carried into the expensive and painstaking document review process.

You will learn:

  • How to see a report of what you have (and how much) when you first receive ESI from a client or a production
  • How to safely eliminate exact duplicate documents and emails
  • How to identify near-duplicate documents for faster, more efficient review of similar materials.


Presenter:

Keith Schrodt

Business Development Manager
CT Summation

Who Should Attend:

Legal, Compliance and IT professionals who support the ediscovery process.


 

Register Now



July 31, 2009

10:00AM – 11:00AM PT
1:00PM – 2:00PM ET

Register Now


July TechWise: Combating Theft, Outsmarting Bots, and Low-Rent Firmware Hacking

No Comments »

Here’s the latest version of Cisco Tech Wise, as usual it’s a good read!  Read it!  Learn things!  It’s good for your brain.

refer a friend
Issue 61 — July 2009
Brought to you by the Cisco® Innovators Program

 

TechWise — bringing business, technology, and people together. that’s the human network effect

Dear Luke Conaway,

Secure your valuables. The July issue of TechWise shows you how to protect your company’s physical property, as well as how to win network security battles against hackers, malicious code and spam.

 

 

Innovation

Store Zooms In to Prevent Theft

Learn how a small retail business ended the five-finger discount. Anyone can prevent theft, at little cost and with less effort, using IP video cameras.   More

 

 

TechWiseTV


Winning the Network Security Arms Race

Outsmart the insidious Conficker bot and other threats. Four Cisco security geeks outline new and old-school strategies for gaining control.   More

Spotlight


“The Rise and Fall of Reactor Mailer” Wins Best Paper at MIT Spam Conference

Now you can read the paper, authored by Cisco IronPort’s Henry Stern, recalling the story of Reactor Mailer, its Srizbi botnet, and the Microsoft patch that attacked them. 
 More

You Have the Power! What would you like to see in future issues? Tell Us.

 

 

 

 


Message-Id: <20090728081839.5E90.11352-91891@emessages.cisco.com>


Cisco IPS Active Update Bulletin

No Comments »

 I received the following IPS bulletin:

 

Greetings! This bulletin describes updates to the Cisco IPS product line. Additional information, tips and expert advice is available in the Cisco IPS User’s Forum at: http://www.cisco.com/discuss/security. For technical support, sales or other issues, please contact your authorized Cisco reseller or Cisco TAC.

 

IN THIS ISSUE:

1.     Announcing the S420 Signature Update for IPS

2.     The Cisco IPS Active Update Bulletin is changing!

3.     Announcing IPS Version 6.0(6)E3 Service Pack

4.     Cisco Announces IPS Software 7.0 with Global Correlation

5.     Cisco IDS 4235 and IDS 4250 sensors end of signature support

6.     EOS and EOL dates for Cisco IPS Sensor Software Version 6.1

7.     Cisco IPS Signature correlation available in the Cisco Security IntelliShield Alert Manager Service

8.     Subscribe to the Product Alert Tool for IPS Related Field Issues

9.     Subscription Information

 

1. Announcing the S420 Signature Update for IPS

The S420 signature update contains the following new signatures:

PLATFORM

SIGID

SIGNAME

ENGINE

SEVERITY

ENABLED

5.x,6.x

19279.0

Cisco IOS Legacy Interface Access

service-http

medium

true

The S420 signature update contains the following modified signatures:

There are no tuned signatures for this release.

Modified  signature details:  None.

IMPORTANT NOTES:
 
All signature updates are cumulative. The S420 signature update contains all previously released signature updates.
 
You must have a valid Cisco Services for IPS contract per sensor to receive and use software upgrades including
signature updates from Cisco.com.
 
A Cisco Services for IPS Services License is required for the installation of all signature updates. The Cisco Services
for IPS Services License can be requested from http://www.cisco.com/go/license for all sensors covered by a
maintenance contract.
 
To manage your maintenance contracts use the Service Contract Center:
 
http://www.cisco.com/cgi-bin/front.x/scccibdispatch?AppName=ContractAgent
 
SUPPORTED PLATFORMS:
 
The S420 signature update can ONLY be applied to E3 sensors.
 
IPS S420 Software Update Files:
 
 

Please note that the signature update download location has changed.
 
 

Sensor appliances, IDSM2, NM-CIDS, ASA-SSM-AIP modules: click here
 
IOS IPS in 12.4(11)T or later T-Train Releases:
http://www.cisco.com/pcgi-bin/tablebuild.pl/ios-v5sigup
Note: Posting of signature release files for IOS IPS may take a few additional days.
 
 
 

 
 
CISCO SECURITY MANAGER (CSM) NOTICE:
Note 1:
 
You can only apply the IPS-CS-MGR-sig-S420-req-E3.zip signature update file to CSM 3.0 or later and IPS MC version 2.2 or
later. The E3 Engine Update packages for sensors are deployed automatically the first time a signature set that requires
E3 is deployed by CSM. E3 updates are not listed or available for selection in the Apply Update Wizard and cannot be
applied independently by CSM. To ensure that the E3 update is applied to your sensors, please ensure
that you push the S366 package to your sensors.
 

 

2. The Cisco IPS Active Update Bulletin is changing!

As part of our continuous improvements to Cisco IPS, we are updating the Cisco IPS Active Update Bulletin. Expect an improved layout, more information, faster access to the links you need and much more! Watch your inbox – the improved bulletin will arrive in a few short weeks!

 

3. Announcing IPS Version 6.0(6)E3 Service Pack

The 6.0(6)E3 Service Pack for Cisco IPS Version 6.0 sensors is available for download. This release includes bug fixes and stability improvements for the 6.0 sensor code. All customers running 6.0(5)E3 or 6.0(5p2)E3 are encouraged to apply the 6.0(6)E3 update. See the readme file for the details of this release.

Downloads are available here.

 

4. Cisco Announces IPS Software 7.0 with Global Correlation

Cisco is pleased to announce sensor software version 7.0 with Global Correlation. Global Correlation is a new approach to threat management that harnesses the networked power of Cisco Security Intelligence Operations (SIO) to identify and prevent attacks more quickly and effectively than stand-alone security technologies.

With Global Correlation, Cisco IPS receives global threat updates from Cisco every five minutes, gaining rapid visibility into the reputation of known attackers and networked threats, as well as propagation and mutation trends. This added context enables Cisco IPS to stop twice as much malicious activity as traditional IPS systems that rely on local inspection only.

Cisco IPS v7.0 with Global Correlation is available now to all Cisco IPS customers with current Cisco Services for IPS support contracts. IPS v7.0 is available for all ASA AIP modules, 4240 4255, 4260, 4270 sensor appliances, NME-IPS, and AIM-IPS Network Modules and the IDSM2 module and can be downloaded from the Cisco Security Software Center using your existing valid support license.

The Release notes for IPS 7.0 are available at this location.

 

5. Cisco IDS 4235 and IDS 4250 sensors end of signature support

Cisco IDS 4235 and IDS 4250 sensors have reached end of signature support. If you are still using IDS 4235 and IDS 4250 sensors, please contact your Cisco sales representative regarding migration plans to newer Cisco IPS sensors. More information including recommended migration options is available at this web page: http://www.cisco.com/en/US/products/hw/vpndevc/ps4077/prod_eol_notices_list.html

 

6. EOS and EOL dates for Cisco IPS Sensor Software Version 6.1

Cisco announces the end-of-sale and end-of life dates for Cisco IPS Sensor Software Version 6.1. After December 14, 2009, signatures and engine updates will no longer be released for Cisco IPS Sensor Software Version 6.1. Customers are encouraged to migrate to Sensor Software Version 6.2 or Sensor Software Version 7.0 with Global Correlation. Click here to download sensor software updates.

More information is available at the End of Sale Page on Cisco.com.

 

7. Cisco IPS Signature correlation available in the Cisco Security IntelliShield Alert Manager Service Search Access Feature

The Cisco IPS Team is pleased to announce the correlation of Cisco IPS Signature information within the IntelliShield Alert Manager Search Access Feature. Cisco Services for IPS clients that subscribe to the service now have access to perform targeted searches to display Cisco IPS Signatures associated with different alerts to ensure they have the most up to date intelligence. Subscribers can view a new IPS Signature list page that is searchable and will display Cisco IPS Signatures associated with IntelliShield Alerts. IntelliShield Alerts also contain the associated Cisco IPS Signature information within each alert.

The IntelliShield Alert Manager Search Access Feature provides clients with access to one of the most extensive collections of vendor-neutral security intelligence alerts in the industry. Clients can access a fully indexed and searchable database that extends back over six years and contains more than 1700 vendors, 5500 products, and 20,000 distinct versions of applications.

To obtain access to the IntelliShield Alert Manager Search Access Feature, each user is required to provide either a valid IPS License File or a valid IPS Serial Number to authorize the creation of this user account. Only one user account is permitted for each IPS License File or IPS Serial Number. Please proceed to the registration page at the following link to obtain your access:

https://intellishield.cisco.com/security/alertmanager/intelliShieldSearch 

Email support is available for users of the Cisco Security IntelliShield Alert Manager Service Search Access Feature at  intellishieldsearch-support@cisco.com . Support is provided by Cisco during the hours of 7:00 a.m. and 7:00 p.m. Eastern Time.

 

8. Subscribe to the Product Alert Tool for IPS Related Field Issues


Interested in knowing the latest on field notices, product alerts, and end-of-sale information relating to your IDS and IPS hardware? We have recently updated the Cisco Product Alert Tool to include IDS and IPS appliances.

Simply visit: http://tools.cisco.com/Support/PAT/do/ViewMyProfiles.do  and follow these steps:

- Select Create a new Alert Profile.
- Name your profile anything you would like.
- Under Select Your Product, select: Intrusion Prevention System
- Click Add so that “Intrusion Prevention System” is added to the “Products in your profile” list
- Select the message types you wish to receive
- Confirm your email address
- Click Submit.

You will be kept up to date with the latest news on your IPS hardware appliances.

 

9. Subscription Information

If you wish to receive this bulletin, you can subscribe now.

Your opinions are important to us. If you have feedback about the Active Update Bulletin, please contact us at ips-news@cisco.com. For technical support, sales or other issues, please contact your authorized Cisco reseller or Cisco TAC. Please note that technical support or sales questions sent to this address will not be answered or redirected.
 

 

Additional Information

 

 

 

Links

  • Software Center – Download the latest Cisco IPS software.
  • User Forum – Participate in the IPS Forum, part of our Networking Professionals Connection.
  • Home Page – Visit our Cisco IPS home page for product literature, news, and awards.
  • Cisco Security Center- Visit the Cisco Security Center site for information on emerging threats and the Cisco network IPS signatures available to protect your network..
  • CRMS – Cisco Remote Managed Services for Security
  • Training – Learn about available IPS training courses and Cisco Security Certifications.
  • IPS Technical Documentation – Visit our Cisco IPS Technical Documentation site for configuration guides, maintenance guides, release and installation notes and more
  • IntelliShield Alert Manager Search Access Feature – Search through an extensive collection of security intelligence reports. Registration required.

 


US-CERT Cyber Security Bulletin SB09-208 — Vulnerability Summary for the Week of July 20, 2009

No Comments »

I received another monthly report from NIST and posted both the update, and the full vulnerability listing below:

Vulnerability Summary for the Week of July 20, 2009

 

This bulletin provides a summary of new vulnerabilities that have been recorded by the National Institute of Standards and Technology (NIST) National Vulnerability Database (NVD) the week of July 20, 2009. It is available here:

 

    http://www.us-cert.gov/cas/bulletins/SB09-208.html

National Cyber Alert System
Cyber Security Bulletin SB09-208 archive

Vulnerability Summary for the Week of July 20, 2009

The US-CERT Cyber Security Bulletin provides a summary of new vulnerabilities that have been recorded by the National Institute of Standards and Technology (NIST) National Vulnerability Database (NVD) in the past week. The NVD is sponsored by the Department of Homeland Security (DHS) National Cyber Security Division (NCSD) / United States Computer Emergency Readiness Team (US-CERT). For modified or updated entries, please visit the NVD, which contains historical vulnerability information.The vulnerabilities are based on the CVE vulnerability naming standard and are organized according to severity, determined by the Common Vulnerability Scoring System (CVSS) standard. The division of high, medium, and low severities correspond to the following scores:

  • High – Vulnerabilities will be labeled High severity if they have a CVSS base score of 7.0 – 10.0
  • Medium – Vulnerabilities will be labeled Medium severity if they have a CVSS base score of 4.0 – 6.9
  • Low – Vulnerabilities will be labeled Low severity if they have a CVSS base score of 0.0 – 3.9

Entries may include additional information provided by organizations and efforts sponsored by US-CERT. This information may include identifying information, values, definitions, and related links. Patch information is provided when available. Please note that some of the information in the bulletins is compiled from external, open source reports and is not a direct result of US-CERT analysis.

High Vulnerabilities
Primary
Vendor — Product
Description Published CVSS Score Source & Patch Info
activewebsoftwares — active_web_mail SQL injection vulnerability in Active Web Mail 4.0 allows remote attackers to execute arbitrary SQL commands via the TabOpenQuickTab1 parameter to (1) popaccounts.aspx, (2) addressbook.aspx, and (3) emails.aspx. 2009-07-23 7.5 CVE-2008-6873
VUPEN
MILW0RM
adminnewstools — admin_news_tools system/message.php in Admin News Tools 2.5 does not properly restrict access, which allows remote attackers to post news messages via a direct request. 2009-07-21 7.5 CVE-2009-2558
XF
MILW0RM
SECUNIA
adobe — acrobat_reader
nos_microsystems — getplus_download_manager
NOS Microsystems getPlus Download Manager for Adobe 1.6.2.36, and possibly other versions, installs NOS\bin\getPlus_HelperSvc.exe with insecure permissions (Everyone:Full Control), which allows local users to gain SYSTEM privileges by replacing getPlus_HelperSvc.exe with a Trojan horse program. 2009-07-21 7.2 CVE-2009-2564
VUPEN
BID
BUGTRAQ
MILW0RM
SECUNIA
MISC
adobe — acrobat
adobe — acrobat_reader
adobe — flash_player
Unspecified vulnerability in Adobe Reader and Acrobat 9.x through 9.1.2 and Adobe Flash Player 9 and 10 allows remote attackers to execute arbitrary code via (1) a crafted Flash application in a .pdf file or (2) a crafted .swf file, as exploited in the wild in July 2009. 2009-07-23 9.3 CVE-2009-2580
CERT-VN
MISC
MISC
BID
MISC
MISC
MISC
MISC
adobe — acrobat
adobe — acrobat_reader
adobe — flash_player
Unspecified vulnerability in Adobe Reader and Acrobat 9.x through 9.1.2, and Adobe Flash Player 9.x through 9.0.159.0 and 10.x through 10.0.22.87, allows remote attackers to execute arbitrary code via (1) a crafted Flash application in a .pdf file or (2) a crafted .swf file, related to authplay.dll, as exploited in the wild in July 2009. 2009-07-23 9.3 CVE-2009-1862
CERT-VN
MISC
MISC
BID
MISC
MISC
MISC
MISC
aigo — aigo_md_p8860 The Aigo P8860 allows remote attackers to cause a denial of service (memory consumption and browser hang) via a large integer value for the length property of a Select object, a related issue to CVE-2009-1692. 2009-07-20 7.8 CVE-2009-2539
BUGTRAQ
BUGTRAQ
BUGTRAQ
BUGTRAQ
MILW0RM
MISC
akamai_technologies — download_manager Stack-based buffer overflow in manager.exe in Akamai Download Manager (aka DLM or dlmanager) before 2.2.4.8 allows remote web servers to execute arbitrary code via a malformed HTTP response during a Redswoosh download, a different vulnerability than CVE-2007-1891 and CVE-2007-1892. 2009-07-23 9.3 CVE-2009-2582
VUPEN
BID
BUGTRAQ
IDEFENSE
FULLDISC
almondsoft — almond_classifieds SQL injection vulnerability in the Almond Classifieds (com_aclassf) component 5.6.2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php. 2009-07-22 7.5 CVE-2009-2567
BID
MILW0RM
aspsiteware — autodealer Multiple SQL injection vulnerabilities in ASP SiteWare autoDealer 1 and 2 allow remote attackers to execute arbitrary SQL commands via the iType parameter in (1) Auto1/type.asp or (2) auto2/type.asp. 2009-07-24 7.5 CVE-2008-6874
XF
BID
MILW0RM
SECUNIA
bistudio — arma
bistudio — arma_2
Format string vulnerability in Armed Assault (aka ArmA) 1.14 and earlier, and 1.16 beta, and Armed Assault II 1.02 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in the (1) nickname and (2) datafile fields in a join request, which is not properly handled when logging an error message. 2009-07-20 10.0 CVE-2009-2548
VUPEN
MISC
censura — censura SQL injection vulnerability in censura.php in Censura 1.16.04 allows remote attackers to execute arbitrary SQL commands via the itemid parameter in a details action. 2009-07-24 7.5 CVE-2009-2593
XF
BID
OSVDB
MILW0RM
SECUNIA
google — chrome
google — v8
Heap-based buffer overflow in src/jsregexp.cc in Google V8 before 1.1.10.14, as used in Google Chrome before 2.0.172.37, allows remote attackers to execute arbitrary code in the Chrome sandbox via a crafted JavaScript regular expression. 2009-07-21 9.3 CVE-2009-2555
XF
VUPEN
BID
OSVDB
SECUNIA
CONFIRM
CONFIRM
CONFIRM
CONFIRM
google — chrome Google Chrome before 2.0.172.37 allows attackers to leverage renderer access to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors that trigger excessive memory allocation. 2009-07-21 9.3 CVE-2009-2556
XF
VUPEN
BID
SECUNIA
CONFIRM
humayun_shabbir_bhutta — asp_product_catalog SQL injection vulnerability in default.asp in ASP Product Catalog allows remote attackers to execute arbitrary SQL commands via the cid parameter, a different vector than CVE-2007-5220. 2009-07-24 7.5 CVE-2008-6875
XF
VUPEN
BID
OSVDB
BUGTRAQ
ibm — proventia_desktop_endpoint_security
ibm — proventia_network_mail_security_system
ibm — proventia_network_mail_security_system_vitual_appliance
ibm — proventia_network_multi-function_security
Multiple unspecified vulnerabilities in the IBM Proventia engine 4.9.0.0.44 20081231, as used in IBM Proventia Network Mail Security System, Network Mail Security System Virtual Appliance, Desktop Endpoint Security, Network Multi-Function Security (MFS), and possibly other products, allow remote attackers to bypass detection of malware via a modified (1) ZIP or (2) CAB archive, a related issue to CVE-2009-1240. 2009-07-20 10.0 CVE-2009-2543
BUGTRAQ
BUGTRAQ
BUGTRAQ
MISC
linux — kernel
linux — linux_kernel
Off-by-one error in the options_write function in drivers/misc/sgi-gru/gruprocfs.c in the SGI GRU driver in the Linux kernel 2.6.30.2 and earlier on ia64 and x86 platforms might allow local users to overwrite arbitrary memory locations and gain privileges via a crafted count argument, which triggers a stack-based buffer overflow. 2009-07-23 7.2 CVE-2009-2584
MISC
XF
BID
MLIST
MLIST
MISC
mlffat — mlffat SQL injection vulnerability in index.php in Mlffat 2.2 allows remote attackers to execute arbitrary SQL commands via a member cookie in an account editprofile action, a different vector than CVE-2009-1731. 2009-07-24 7.5 CVE-2009-2585
XF
OSVDB
MILW0RM
SECUNIA
mozilla — firefox
mozilla — thunderbird
The browser engine in Mozilla Firefox before 3.0.12 and Thunderbird allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to (1) the frame chain and synchronous events, (2) a SetMayHaveFrame assertion and nsCSSFrameConstructor::CreateFloatingLetterFrame, (3) nsCSSFrameConstructor::ConstructFrame, (4) the child list and initial reflow, (5) GetLastSpecialSibling, (6) nsFrameManager::GetPrimaryFrameFor and MathML, (7) nsFrame::GetBoxAscent, (8) nsCSSFrameConstructor::AdjustParentFrame, (9) nsDOMOfflineResourceList, and (10) nsContentUtils::ComparePosition. 2009-07-22 10.0 CVE-2009-2462
VUPEN
BID
CONFIRM
mozilla — firefox
mozilla — thunderbird
Integer overflow in a base64 decoding function in Mozilla Firefox before 3.0.12 and Thunderbird allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors. 2009-07-22 10.0 CVE-2009-2463
VUPEN
BID
mozilla — firefox
mozilla — seamonkey
mozilla — thunderbird
The nsXULTemplateQueryProcessorRDF::CheckIsSeparator function in Mozilla Firefox before 3.0.12, SeaMonkey 2.0a1pre, and Thunderbird allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to loading multiple RDF files in a XUL tree element. 2009-07-22 10.0 CVE-2009-2464
VUPEN
BID
CONFIRM
mozilla — firefox
mozilla — thunderbird
Mozilla Firefox before 3.0.12 and Thunderbird allow remote attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via vectors involving double frame construction, related to (1) nsHTMLContentSink.cpp, (2) nsXMLContentSink.cpp, and (3) nsPresShell.cpp, and the nsSubDocumentFrame::Reflow function. 2009-07-22 10.0 CVE-2009-2465
VUPEN
BID
CONFIRM
mozilla — firefox
mozilla — thunderbird
The JavaScript engine in Mozilla Firefox before 3.0.12 and Thunderbird allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to (1) nsDOMClassInfo.cpp, (2) JS_HashTableRawLookup, and (3) MirrorWrappedNativeParent and js_LockGCThingRT. 2009-07-22 10.0 CVE-2009-2466
CONFIRM
BID
SECUNIA
mozilla — firefox Mozilla Firefox before 3.0.12 and 3.5 before 3.5.1 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors involving a Flash object, a slow script dialog, and the unloading of the Flash plugin, which triggers attempted use of a deleted object. 2009-07-22 10.0 CVE-2009-2467
VUPEN
BID
SECUNIA
mozilla — firefox Integer overflow in CoreGraphics in Apple Mac OS X, as used in Mozilla Firefox before 3.0.12, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long text run that triggers a heap-based buffer overflow during font glyph rendering, a related issue to CVE-2009-1194. 2009-07-22 10.0 CVE-2009-2468
CONFIRM
VUPEN
BID
CONFIRM
SECUNIA
mozilla — firefox Mozilla Firefox before 3.0.12 does not properly handle an SVG element that has a property with a watch function and an __defineSetter__ function, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted document, related to a certain pointer misinterpretation. 2009-07-22 10.0 CVE-2009-2469
VUPEN
BID
mozilla — firefox The setTimeout function in Mozilla Firefox before 3.0.12 does not properly preserve object wrapping, which allows remote attackers to execute arbitrary JavaScript with chrome privileges via a crafted call, related to XPCNativeWrapper. 2009-07-22 10.0 CVE-2009-2471
VUPEN
BID
SECUNIA
nokia — n810_internet_tablet
nokia — n82
nokia — symbian
The Nokia N95 running Symbian OS 9.2, N82, and N810 Internet Tablet allow remote attackers to cause a denial of service (memory consumption) via a large integer value for the length property of a Select object, a related issue to CVE-2009-1692. 2009-07-20 7.1 CVE-2009-2538
BUGTRAQ
BUGTRAQ
BUGTRAQ
BUGTRAQ
MILW0RM
MISC
ondanera.net — hamster_audio_player Stack-based buffer overflow in Hamster Audio Player 0.3a allows remote attackers to execute arbitrary code via a long string in a (1) .m3u or (2) .hpl playlist file. 2009-07-20 9.3 CVE-2009-2550
XF
MILW0RM
MILW0RM
SECUNIA
OSVDB
phpjunkyard — gbook SQL injection vulnerability in guestbook.php in PHPJunkYard GBook 1.6 allows remote attackers to execute arbitrary SQL commands via the mes_id parameter. 2009-07-24 7.5 CVE-2009-2592
XF
MILW0RM
pulseaudio — pulseaudio Race condition in PulseAudio 0.9.9, 0.9.10, and 0.9.14 allows local users to gain privileges via vectors involving creation of a hard link, related to the application setting LD_BIND_NOW to 1, and then calling execv on the target of the /proc/self/exe symlink. 2009-07-17 7.2 CVE-2009-1894
CONFIRM
BID
resalecode — hutscripts_php_website_script SQL injection vulnerability in showcategory.php in Hutscripts PHP Website Script allows remote attackers to execute arbitrary SQL commands via the cid parameter. 2009-07-24 7.5 CVE-2009-2590
XF
VUPEN
SECUNIA
MISC
OSVDB
rim — blackberry_8800 The Research In Motion (RIM) BlackBerry 8800 allows remote attackers to cause a denial of service (memory consumption and browser crash) via a large integer value for the length property of a Select object, a related issue to CVE-2009-1692. 2009-07-22 7.1 CVE-2009-2575
FULLDISC
runcms — myannonces SQL injection vulnerability in the MyAnnonces module for E-Xoopport 3.1 allows remote attackers to execute arbitrary SQL commands via the lid parameter in a viewannonces action to index.php. 2009-07-24 7.5 CVE-2009-2591
XF
BID
MILW0RM
sony — playstation_3 The web browser on the Sony PLAYSTATION 3 (PS3) allows remote attackers to cause a denial of service (memory consumption and console hang) via a large integer value for the length property of a Select object, a related issue to CVE-2009-1692. 2009-07-20 7.8 CVE-2009-2541
BUGTRAQ
BUGTRAQ
BUGTRAQ
BUGTRAQ
MILW0RM
MISC
sorinara — streaming_audio_player Stack-based buffer overflow in Sorinara Streaming Audio Player (SAP) 0.9 allows remote attackers to execute arbitrary code via a long string in a playlist (.m3u) file. 2009-07-22 9.3 CVE-2009-2568
XF
BID
MILW0RM
MILW0RM
symantec — winfax_pro Stack-based buffer overflow in the Symantec.FaxViewerControl.1 ActiveX control in WinFax\DCCFAXVW.DLL in Symantec WinFax Pro 10.03 allows remote attackers to execute arbitrary code via a long argument to the AppendFax method. 2009-07-22 10.0 CVE-2009-2570
VUPEN
SECTRACK
BID
BUGTRAQ
BUGTRAQ
BUGTRAQ
SECUNIA
MISC
OSVDB
tfm — mmplayer Stack-based buffer overflow in TFM MMPlayer 2.0, and possibly 2.0.0.30, allows remote attackers to execute arbitrary code via a long string in a playlist (.m3u) file. 2009-07-21 9.3 CVE-2009-2566
XF
MILW0RM
SECUNIA
wireshark — wireshark Unspecified vulnerability in the Infiniband dissector in Wireshark 1.0.6 through 1.2.0, when running on unspecified platforms, allows remote attackers to cause a denial of service (crash) via unknown vectors. 2009-07-21 7.1 CVE-2009-2563
CONFIRM
VUPEN
Back to top

Medium Vulnerabilities
Primary
Vendor — Product
Description Published CVSS Score Source & Patch Info
adminnewstools — admin_news_tools Directory traversal vulnerability in system/download.php in Admin News Tools 2.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the fichier parameter. 2009-07-21 5.0 CVE-2009-2557
BUGTRAQ
MILW0RM
SECUNIA
OSVDB
anelectron — advanced_electron_forum SQL injection vulnerability in Advanced Electron Forum (AEF) 1.x, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the filename in an uploaded attachment. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. 2009-07-20 6.8 CVE-2009-2545
XF
SECUNIA
OSVDB
anelectron — advanced_electron_forum Directory traversal vulnerability in Advanced Electron Forum (AEF) 1.x allows remote attackers to determine the existence of arbitrary files via the avatargalfile parameter when changing an avatar, which leaks the existence of the file in an error message. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. 2009-07-20 4.3 CVE-2009-2546
XF
SECUNIA
OSVDB
aspthai.net — aspthai_forums ASPThai.NET ASPThai Forums 8.5 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for database/aspthaiForum.mdb. 2009-07-23 5.0 CVE-2008-6872
XF
VUPEN
OSVDB
MILW0RM
SECUNIA
bioscripts — minitwitter Multiple SQL injection vulnerabilities in MiniTwitter 0.2 beta, when magic_quotes_gpc is disabled, allow remote authenticated users to execute arbitrary SQL commands via the (1) user parameter to (a) index.php and (b) rss.php. 2009-07-22 6.0 CVE-2009-2573
XF
BID
BUGTRAQ
MILW0RM
bioscripts — minitwitter index.php in MiniTwitter 0.2 beta allows remote authenticated users to modify certain options of arbitrary accounts via an opt action. 2009-07-22 6.5 CVE-2009-2574
XF
BID
BUGTRAQ
MILW0RM
bistudio — arma
bistudio — arma_2
Integer underflow in Armed Assault (aka ArmA) 1.14 and earlier, and 1.16 beta, and Armed Assault II 1.02 and earlier allows remote attackers to cause a denial of service (crash) via a VoIP over Network (VON) packet to port 2305 with a negative packet_size value, which triggers a buffer over-read. 2009-07-20 5.0 CVE-2009-2547
XF
VUPEN
SECUNIA
MISC
bistudio — arma
bistudio — arma_2
Armed Assault (aka ArmA) 1.14 and earlier, and 1.16 beta, and Armed Assault II 1.02 and earlier allows remote attackers to cause a denial of service via a join packet with a final field whose value is (1) 0, which triggers a server crash related to memory allocation, or (2) 1, which triggers CPU/memory consumption and a NULL pointer dereference. 2009-07-20 5.0 CVE-2009-2549
VUPEN
MISC
censura — censura Cross-site scripting (XSS) vulnerability in censura.php in Censura 1.16.04 allows remote attackers to inject arbitrary web script or HTML via the itemid parameter in a details action. 2009-07-24 4.3 CVE-2009-2594
XF
BID
MILW0RM
SECUNIA
censura — censura Cross-site scripting (XSS) vulnerability in productSearch.html in Censura 2.0.4 and 2.1.0 allows remote attackers to inject arbitrary web script or HTML via the q parameter in a ProductSearch action. 2009-07-24 4.3 CVE-2009-2595
XF
OSVDB
CONFIRM
CONFIRM
SECUNIA
dragdropcart — dragdropcart Multiple cross-site scripting (XSS) vulnerabilities in DragDropCart allow remote attackers to inject arbitrary web script or HTML via the (1) sid parameter to assets/js/ddcart.php, the (2) prefix parameter to includes/ajax/getstate.php, the search parameter to (3) index.php and (4) search.php, the (5) redirect parameter to login.php, and the (6) product parameter to productdetail.php. 2009-07-24 4.3 CVE-2009-2587
XF
OSVDB
OSVDB
OSVDB
OSVDB
OSVDB
OSVDB
SECUNIA
MISC
edgephp — ezarticles Cross-site scripting (XSS) vulnerability in articles.php in EDGEPHP EZArticles allows remote attackers to inject arbitrary web script or HTML via the title parameter. 2009-07-24 4.3 CVE-2009-2586
XF
SECUNIA
MISC
OSVDB
editeurscripts — esbaseadmin Cross-site scripting (XSS) vulnerability in default/login.php in EditeurScripts EsBaseAdmin 2.1 allows remote attackers to inject arbitrary web script or HTML via the msg parameter. NOTE: the EsContacts 1.0 issue is covered in CVE-2008-2037. 2009-07-23 4.3 CVE-2008-6868
XF
BID
SECUNIA
MISC
editeurscripts — esnews Cross-site scripting (XSS) vulnerability in modifier.php in EditeurScripts EsNews 1.2 allows remote attackers to inject arbitrary web script or HTML via the msg parameter. 2009-07-23 4.3 CVE-2009-2581
XF
MISC
editeurscripts — espartenaires Cross-site scripting (XSS) vulnerability in login.php in EsPartenaires 1.0 allows remote attackers to inject arbitrary web script or HTML via the msg parameter. NOTE: the EsContacts 1.0 issue is covered in CVE-2008-2037. 2009-07-24 4.3 CVE-2008-6876
XF
BID
SECUNIA
MISC
google — chrome Google Chrome 2.x through 2.0.172 allows remote attackers to cause a denial of service (application crash) via a long Unicode string argument to the write method, a related issue to CVE-2009-2479. 2009-07-22 5.0 CVE-2009-2578
BUGTRAQ
MISC
ibm — tivoli_identity_manager Multiple session fixation vulnerabilities in IBM Tivoli Identity Manager (ITIM) 5.0.0.6 allow remote attackers to hijack web sessions via unspecified vectors involving the (1) console and (2) self service interfaces. 2009-07-23 6.8 CVE-2009-2583
VUPEN
BID
CONFIRM
isc — dhcp dhcpd in ISC DHCP 3.0.4 and 3.1.1, when the dhcp-client-identifier and hardware ethernet configuration settings are both used, allows remote attackers to cause a denial of service (daemon crash) via unspecified requests. 2009-07-17 5.0 CVE-2009-1892
BID
DEBIAN
kde — konqueror KDE Konqueror allows remote attackers to cause a denial of service (memory consumption) via a large integer value for the length property of a Select object, a related issue to CVE-2009-1692. 2009-07-20 4.3 CVE-2009-2537
BUGTRAQ
BUGTRAQ
BUGTRAQ
BUGTRAQ
MILW0RM
MISC
lullabot — fivestar_module_for_drupal Cross-site request forgery (CSRF) vulnerability in the Fivestar module 5.x-1.x before 5.x-1.14 and 6.x-1.x before 6.x-1.14, a module for Drupal, allows remote attackers to hijack the authentication of arbitrary users for requests that cast votes. 2009-07-22 6.8 CVE-2009-2572
VUPEN
CONFIRM
marcelo_costa — fileserver Directory traversal vulnerability in the Marcelo Costa FileServer component 1.0 for Microsoft Windows Live Messenger and Messenger Plus! Live (MPL) allows remote authenticated users to list arbitrary directories and read arbitrary files via a .. (dot dot) in a pathname. 2009-07-20 6.8 CVE-2009-2544
MILW0RM
merlix — educate_server Merlix Educate Server allows remote attackers to bypass intended security restrictions and obtain sensitive information via a direct request to (1) config.asp and (2) users.asp. 2009-07-23 5.0 CVE-2008-6870
XF
MILW0RM
merlix — educate_server Merlix Educate Server stores db.mdb under the web root with insufficient access control, which allows remote attackers to obtain unspecified sensitive information via a direct request. 2009-07-23 5.0 CVE-2008-6871
XF
OSVDB
MILW0RM
SECUNIA
microsoft — internet_explorer Microsoft Internet Explorer 5 through 8 allows remote attackers to cause a denial of service (memory consumption and application crash) via a large integer value for the length property of a Select object, a related issue to CVE-2009-1692. 2009-07-20 4.3 CVE-2009-2536
BUGTRAQ
BUGTRAQ
BUGTRAQ
BUGTRAQ
MILW0RM
MISC
microsoft — ie Microsoft Internet Explorer 6.0.2900.2180 and earlier allows remote attackers to cause a denial of service (CPU and memory consumption) via a long Unicode string argument to the write method, a related issue to CVE-2009-2479. 2009-07-22 5.0 CVE-2009-2576
BUGTRAQ
BUGTRAQ
BUGTRAQ
MISC
mozilla — firefox
mozilla — seamonkey
mozilla — thunderbird
Mozilla Firefox before 2.0.0.19 and 3.x before 3.0.5, SeaMonkey, and Thunderbird allow remote attackers to cause a denial of service (memory consumption and application crash) via a large integer value for the length property of a Select object, a related issue to CVE-2009-1692. 2009-07-20 5.0 CVE-2009-2535
MISC
BUGTRAQ
BUGTRAQ
BUGTRAQ
BUGTRAQ
MILW0RM
MISC
mozilla — firefox Mozilla Firefox before 3.0.12 does not always use XPCCrossOriginWrapper when required during object construction, which allows remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via a crafted document, related to a “cross origin wrapper bypass.” 2009-07-22 4.3 CVE-2009-2472
VUPEN
BID
CONFIRM
netscape — navigator Netscape 6 and 8 allows remote attackers to cause a denial of service (memory consumption) via a large integer value for the length property of a Select object, a related issue to CVE-2009-1692. 2009-07-20 4.3 CVE-2009-2542
BUGTRAQ
BUGTRAQ
BUGTRAQ
BUGTRAQ
MILW0RM
MISC
olle_johansson — jobline SQL injection vulnerability in the search method in jobline.class.php in Jobline (com_jobline) 1.1.2.2, 1.3.1, and possibly earlier versions, a component for Joomla!, allows remote attackers to execute arbitrary SQL commands via the search parameter in a results action to index.php, which invokes the search method from the searchJobPostings function in jobline.php. 2009-07-20 6.8 CVE-2009-2554
XF
BID
MILW0RM
SECUNIA
opera — opera_browser Opera, possibly 9.64 and earlier, allows remote attackers to cause a denial of service (memory consumption) via a large integer value for the length property of a Select object, a related issue to CVE-2009-1692. 2009-07-20 4.3 CVE-2009-2540
BUGTRAQ
BUGTRAQ
BUGTRAQ
BUGTRAQ
MILW0RM
MISC
opera — opera_browser Opera 9.52 and earlier allows remote attackers to cause a denial of service (CPU and memory consumption, and application hang) via a long Unicode string argument to the write method, a related issue to CVE-2009-2479. 2009-07-22 5.0 CVE-2009-2577
BUGTRAQ
MISC
oramon — oramon Oramon Oracle Database Monitoring Tool 2.0.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing credentials via a direct request for config/oramon.ini. 2009-07-23 5.0 CVE-2008-6869
XF
VUPEN
MILW0RM
realnetworks — helix_server
realnetworks — helix_server_mobile
rmserver in RealNetworks Helix Server and Helix Mobile Server before 13.0.0 allows remote attackers to cause a denial of service (daemon exit) via multiple RTSP SET_PARAMETER requests with empty DataConvertBuffer headers. 2009-07-20 5.0 CVE-2009-2533
BID
BUGTRAQ
MILW0RM
MISC
CONFIRM
realnetworks — helix_server
realnetworks — helix_server_mobile
RealNetworks Helix Server and Helix Mobile Server before 13.0.0 allow remote attackers to cause a denial of service (daemon crash) via an RTSP SETUP request that (1) specifies the / URI or (2) lacks a / character in the URI. 2009-07-20 5.0 CVE-2009-2534
BID
BUGTRAQ
MILW0RM
MISC
CONFIRM
resalecode — hotscripts_type_php_clone_script Multiple cross-site scripting (XSS) vulnerabilities in Hotscripts Type PHP Clone Script allow remote attackers to inject arbitrary web script or HTML via the msg parameter to (1) feedback.php, (2) index.php, and (3) lostpassword.php. 2009-07-24 4.3 CVE-2009-2588
XF
VUPEN
SECUNIA
MISC
OSVDB
OSVDB
OSVDB
resalecode — hutscripts_php_website_script Multiple cross-site scripting (XSS) vulnerabilities in Hutscripts PHP Website Script allow remote attackers to inject arbitrary web script or HTML via the msg parameter to (1) feedback.php, (2) index.php, and (3) lostpassword.php. 2009-07-24 4.3 CVE-2009-2589
XF
VUPEN
SECUNIA
MISC
OSVDB
OSVDB
OSVDB
scriptsez — easy_image_downloader Multiple cross-site scripting (XSS) vulnerabilities in ScriptsEz Easy Image Downloader allow remote attackers to inject arbitrary web script or HTML via the id parameter in a detail action to (1) main.php and possibly (2) demo_page.php. 2009-07-20 4.3 CVE-2009-2551
XF
BID
SECUNIA
MISC
OSVDB
supersimple — super_simple_blog_script Multiple directory traversal vulnerabilities in comments.php in Super Simple Blog Script 2.5.4 allow remote attackers to overwrite, include, and execute arbitrary local files via the entry parameter. 2009-07-20 6.8 CVE-2009-2552
XF
MILW0RM
SECUNIA
supersimple — super_simple_blog_script Multiple SQL injection vulnerabilities in comments.php in Super Simple Blog Script 2.5.4, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the entry parameter. 2009-07-20 6.8 CVE-2009-2553
XF
MILW0RM
SECUNIA
t-okada — shiromuku(fs6)diary Cross-site scripting (XSS) vulnerability in Perl CGI’s By Mrs. Shiromuku shiromuku(fs6)DIARY 2.40 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. 2009-07-21 4.3 CVE-2009-2565
XF
CONFIRM
SECUNIA
JVNDB
JVN
verliadmin — verliadmin Multiple cross-site scripting (XSS) vulnerabilities in index.php in VerliAdmin 0.3.7 and 0.3.8 allow remote attackers to inject arbitrary web script or HTML via (1) the URI, (2) the q parameter, (3) the nick parameter, or (4) the nick parameter in a bantest action. 2009-07-22 4.3 CVE-2009-2571
XF
VUPEN
BID
MISC
verlihub-project — verlihub_control_panel Multiple cross-site scripting (XSS) vulnerabilities in Verlihub Control Panel (VHCP) 1.7e allow remote attackers to inject arbitrary web script or HTML via (1) the nick parameter in a login action to index.php or (2) the URI in a news request to index.html. 2009-07-22 4.3 CVE-2009-2569
VUPEN
BID
SECUNIA
MISC
wireshark — wireshark Buffer overflow in the IPMI dissector in Wireshark 1.2.0 allows remote attackers to cause a denial of service (crash) via unspecified vectors related to an array index error. NOTE: some of these details are obtained from third party information. 2009-07-21 5.0 CVE-2009-2559
CONFIRM
VUPEN
wireshark — wireshark Multiple unspecified vulnerabilities in Wireshark 1.2.0 allow remote attackers to cause a denial of service (crash) via unspecified vectors in the (1) Bluetooth L2CAP, (2) RADIUS, or (3) MIOP dissectors. 2009-07-21 5.0 CVE-2009-2560
CONFIRM
wireshark — wireshark Unspecified vulnerability in the sFlow dissector in Wireshark 1.2.0 allows remote attackers to cause a denial of service (CPU and memory consumption) via unspecified vectors. 2009-07-21 5.0 CVE-2009-2561
CONFIRM
VUPEN
BID
wireshark — wireshark Unspecified vulnerability in the AFS dissector in Wireshark 0.9.2 through 1.2.0 allows remote attackers to cause a denial of service (crash) via unknown vectors. 2009-07-21 5.0 CVE-2009-2562
CONFIRM
BID

US-CERT Current Activity – Cisco Releases Security Advisory for Vulnerabilities in Cisco Wireless LAN Controllers

No Comments »

Cisco releases notice of wireless lan controller exploits:

US-CERT Current Activity

 

Cisco Releases Security Advisory for Vulnerabilities in Cisco Wireless LAN Controllers

 

Original release date: July 27, 2009 at 2:59 pm Last revised: July 27, 2009 at 2:59 pm

 

 

Cisco has released a security advisory to address multiple vulnerabilities in Wireless LAN Controllers. The advisory addresses the following:

  * Malformed HTTP or HTTPS authentication response denial-of-service

    vulnerability.

  * SSH connections denial-of-service vulnerability.

  * Crafted HTTP or HTTPS request denial-of-service vulnerability.

  * Crafted HTTP or HTTPS request unauthorized configuration

    modification vulnerability.

 

Exploitation of these vulnerabilities may allow an attacker to cause a denial-of-service condition or gain full control over the Wireless LAN Controller.

 

US-CERT encourages users and administrators to review Cisco Security Advisory cisco-sa-20090727-wlc and apply any necessary updates or workarounds to help mitigate the risks.

 

Relevant Url(s):

<http://www.cisco.com/en/US/products/products_security_advisory09186a0080adb3d7.shtml>

 

====

This entry is available at

http://www.us-cert.gov/current/index.html#cisco_releases_security_advisory_for11


US-CERT Current Activity – Microsoft Releases Advance Notification for July Security Bulletin

No Comments »

I got the following notification regarding the Microsoft July Security Bulletin:

US-CERT Current Activity

 

Microsoft Releases Advance Notification for July Security Bulletin

 

Original release date: July 9, 2009 at 1:58 pm Last revised: July 9, 2009 at 1:58 pm

 

 

Microsoft has issued a Security Bulletin Advance Notification indicating that the July release cycle will contain six bulletins, three of which will have a severity rating of critical. The notification states that these critical bulletins are for Microsoft Windows. There will also be three important bulletins for Microsoft Office, Virtual PC and Virtual Server, and ISA Server. Release of these bulletins is scheduled for Tuesday, July 14.

 

US-CERT will provide additional information as it becomes available.

 

Relevant Url(s):

<http://www.microsoft.com/technet/security/bulletin/ms09-jul.mspx>

 

====

This entry is available at

http://www.us-cert.gov/current/index.html#microsoft_releases_advance_notification_for23

 


SEO Powered by Platinum SEO from Techblissonline