SecurityFocus Newsletter #282
Peter Laborge <[email protected]> 4 Jan 2005 23:22:11 -0000
| Newsgroups | gmane.comp.security.news.general |
|---|---|
| Message-ID | <[email protected]> |
SecurityFocus Newsletter #282
------------------------------
Need to know what's happening on YOUR network? Symantec DeepSight Analyzer
is a free service that gives you the ability to track and manage attacks.
Analyzer automatically correlates attacks from various Firewall and network
based Intrusion Detection Systems, giving you a comprehensive view of your
computer or general network. Sign up today!
http://www.securityfocus.com/sponsor/Symantec_sf-news_041130
------------------------------------------------------------------------
I. FRONT AND CENTER
1. Trojan Horse Christmas
2. Spam Punishment Doesn't Fit the Crime
II. BUGTRAQ SUMMARY
1. Help Center Live Multiple Remote Vulnerabilities
2. NetCat Exec Mode Client Request Buffer Overflow Vulnerabilit...
3. Business Objects Crystal Enterprise Report File Cross-Site S...
4. GNU A2PS fixps.in Script Insecure Temporary File Vulnerabili...
5. GNU A2PS psmandup.in Script Insecure Temporary File Vulnerab...
6. E107 Image Manager Unauthorized File Upload Vulnerability
7. ViewCVS Source View Input Validation Vulnerability
8. SugarCRM Multiple Cross-Site Scripting Vulnerability
9. Owl Intranet Engine Multiple Cross-Site Scripting and SQL In...
10. PHProxy Error Parameter Cross-Site Scripting Vulnerability
11. PHProjekt Remote File Include Vulnerability
12. ButtUglySoftware CleanCache Insecure Data Removal Vulnerabil...
13. Atari800 Emulator Multiple Unspecified Buffer Overflow Vulne...
14. Benchmark Designs WHM AutoPilot Multiple Remote Vulnerabilit...
15. Moodle Multiple Input Validation Vulnerabilities
16. Hilgraeve HyperTerminal Remote Denial of Service Vulnerabili...
17. Van Dyke SecureCRT Remote Denial of Service Vulnerability
18. QNX CRTTrap Local Insecure file Creation Vulnerability
19. Microsoft Internet Explorer Local File Disclosure Weakness
20. PHP-Calendar Remote File Include Vulnerability
21. AStats Statistics Generator Local Insecure Temporary File Cr...
22. Mozilla Browser Network News Transport Protocol Remote Heap ...
23. KorWeblog Remote File Include Vulnerability
24. MySQL Eventum Multiple Input Validation Vulnerabilities
25. Macallan Mail Solution Web Interface Authentication Bypass V...
26. Macallan Mail Solution HTTP GET Request Buffer Overflow Vuln...
27. IPBProArcade High Score Listing Remote SQL Injection Vulnera...
28. ArGoSoft FTP Server Remote User Enumeration Vulnerability
29. IWebNegar Multiple Remote Vulnerabilities
30. Microsoft FrontPage 2000 Internet Publishing Service Provide...
31. ZyXEL B-240 Wireless Ethernet Adapter Web Interface Remote C...
III. SECURITYFOCUS NEWS ARTICLES
1. Groups fight Internet wiretap push
2. Report: DHS cyber security lagging
3. Long prison term for Lowe's wi-fi hacker
4. Phishing, spyware and other pests plagued 2004
5. Dutch telecom watchdog issues first fines against e-mail spa...
6. AOL reports drop in spam messages to its subscribers
IV. SECURITYFOCUS TOP 6 TOOLS
1. Interface Traffic Indicator 1.2.3
2. Colasoft Capsa 4.05
3. Attack Tool Kit (ATK) 3.0
4. One-Time Password Generator 1.0
5. tenshi 0.3.2
6. pasmal 1.5
V. SECURITYJOBS LIST SUMMARY
1. [SJ-JOB] Regional Channel Manager, Atlanta, US (Thread)
2. [SJ-JOB] Security Product Manager, Cupertino, US (Thread)
3. [SJ-JOB] Sr. Product Manager, Redwood City, US (Thread)
4. [SJ-JOB] Security Engineer, Mannheim, DE (Thread)
5. [SJ-JOB] Security Consultant, Stamford, US (Thread)
6. [SJ-JOB] Regional Channel Manager, Manhattan Beach, ... (Thread)
7. [SJ-JOB] Channel / Business Development, Tokyo, JP (Thread)
8. [SJ-JOB] Jr. Security Analyst, Reading, GB (Thread)
9. [SJ-JOB] Sr. Security Analyst, Reading, GB (Thread)
10. [SJ-JOB] Management, San Diego, US (Thread)
11. [SJ-JOB] Regional Channel Manager, Denver, US (Thread)
12. [SJ-JOB] Regional Channel Manager, Chicago, US (Thread)
13. [SJ-JOB] Security Consultant, North Brunswick, US (Thread)
14. [SJ-JOB] Security Consultant, NY, US (Thread)
15. [SJ-JOB] Security Consultant, New York, US (Thread)
16. [SJ-JOB] Sr. Security Analyst, Boston, US (Thread)
17. [SJ-JOB] Sales Engineer, Indianapolis, US (Thread)
18. [SJ-JOB] Security Consultant, Philadelphia, US (Thread)
19. [SJ-JOB] Regional Channel Manager, Seattle, US (Thread)
20. [SJ-JOB] Technical Support Engineer, Cupertino, US (Thread)
21. [SJ-JOB] Security Product Marketing Manager, Redwood... (Thread)
22. [SJ-JOB] Sales Representative, Denver, US (Thread)
23. [SJ-JOB] Sales Representative, San Diego, US (Thread)
24. [SJ-JOB] Sales Representative, Washington D.C, US (Thread)
25. [SJ-JOB] Sr. Product Manager, San Diego, US (Thread)
26. [SJ-JOB] Technical Writer, Redwood City, US (Thread)
27. [SJ-JOB] Developer, BWI, US (Thread)
VI. INCIDENTS LIST SUMMARY
1. REVIEW: "Disaster Proofing Information Systems", Rob... (Thread)
2. Increase seen in port probes since Tuesday afternoon (Thread)
3. UDP Port Sweep question (Thread)
VII. VULN-DEV RESEARCH LIST SUMMARY
1. get SP on Solaris (SPARC) with GCC 3.3.2 (Thread)
2. WacthGuard Firebox -- Crash (Thread)
3. [Full-Disclosure] Multiple Backdoors found in eEye P... (Thread)
4. Multiple Backdoors found in eEye Products (IRIS and ... (Thread)
VIII. MICROSOFT FOCUS LIST SUMMARY
1. services running in windows domain (winXP clients) (Thread)
2. SecurityFocus Microsoft Newsletter #221 (Thread)
3. SecurityFocus Microsoft Newsletter #220 (Thread)
IX. SUN FOCUS LIST SUMMARY
NO NEW POSTS FOR THE WEEK 2004-12-28 to 2005-01-04.
X. LINUX FOCUS LIST SUMMARY
1. CAN-2004-1137 (Thread)
2. opensource anti-virus gateway application for HTTP t... (Thread)
XI. UNSUBSCRIBE INSTRUCTIONS
XII. SPONSOR INFORMATION
I. FRONT AND CENTER
-------------------
1. Trojan Horse Christmas
By Scott Granneman
Here are some suggestions on how to help your family members safely use
that new trojan horse they received under the Christmas tree this year.
http://www.securityfocus.com/columnists/288
2. Spam Punishment Doesn't Fit the Crime
By Mark Rasch
When spammers are treated more harshly than those who commit war crimes in
Rwanda, and are fined more than companies that destroy the environment,
it's time to revisit our strategy.
http://www.securityfocus.com/columnists/287
II. BUGTRAQ SUMMARY
-------------------
1. Help Center Live Multiple Remote Vulnerabilities
BugTraq ID: 12105
Remote: Yes
Date Published: Dec 24 2004
Relevant URL: http://www.securityfocus.com/bid/12105
Summary:
Help Center Live is reported prone to multiple remote vulnerabilities. These issues exist due to insufficient sanitization of user-supplied input. An attacker may exploit these vulnerabilities to execute arbitrary script code on a vulnerable server or a user's browser.
The following specific issues were identified:
The application is reported prone to a remote file include vulnerability. This issue may allow an attacker to include malicious files containing arbitrary script code to be executed on a vulnerable computer.
The application is reported prone to a cross-site scripting vulnerability as well.
2. NetCat Exec Mode Client Request Buffer Overflow Vulnerabilit...
BugTraq ID: 12106
Remote: Yes
Date Published: Dec 27 2004
Relevant URL: http://www.securityfocus.com/bid/12106
Summary:
NetCat is prone to a remotely exploitable buffer overflow. This issue is exposed when the program handles a client request when listening in exec mode, which is specified by the '-e' command line option.
Successful exploitation will allow execution of arbitrary code in the context of the program.
It is noted that this issue affects the Windows port, and is not known or confirmed to affect the UNIX-based netcat utility.
3. Business Objects Crystal Enterprise Report File Cross-Site S...
BugTraq ID: 12107
Remote: Yes
Date Published: Dec 27 2004
Relevant URL: http://www.securityfocus.com/bid/12107
Summary:
Business Objects Crystal Enterprise is prone to a cross-site scripting vulnerability.
An attacker could exploit this issue by enticing a user to following a malicious link to a Report (RPT) file. Malicious script embedded in the link could access properties of the vulnerable Crystal Enterprise site, allowing for various attacks such as theft of cookie-based authentication credentials.
4. GNU A2PS fixps.in Script Insecure Temporary File Vulnerabili...
BugTraq ID: 12108
Remote: No
Date Published: Dec 27 2004
Relevant URL: http://www.securityfocus.com/bid/12108
Summary:
GNU a2ps is prone to a vulnerability that may allow malicious local users to corrupt files. This issue is due to the fact that the 'fixps.in' script creates temporary files in an insecure manner, allowing symbolic link attacks.
File corruption would occur in the context of the user running the script. It is not known if this issue could be leveraged to elevate privileges.
5. GNU A2PS psmandup.in Script Insecure Temporary File Vulnerab...
BugTraq ID: 12109
Remote: No
Date Published: Dec 27 2004
Relevant URL: http://www.securityfocus.com/bid/12109
Summary:
GNU a2ps is prone to a vulnerability that may allow malicious local users to corrupt files. This issue is due to the fact that the 'psmandup.in' script creates temporary files in an insecure manner, allowing symbolic link attacks.
File corruption would occur in the context of the user running the script. It is not known if this issue could be leveraged to elevate privileges.
6. E107 Image Manager Unauthorized File Upload Vulnerability
BugTraq ID: 12111
Remote: Yes
Date Published: Dec 26 2004
Relevant URL: http://www.securityfocus.com/bid/12111
Summary:
e107 is prone to a security vulnerability that will allow remote users to upload files with arbitrary file extensions to the computer hosting the software.
This vulnerability could allow an attacker to upload a malicious PHP script to the server and cause it to be executed. Scripts in other languages could also be executed in this manner if the Web server has a script handler configured for the file extension.
Successful exploitation will result in execution of arbitrary code in the context of the Web server.
This issue exists in the Image Manager, and an attacker must have sufficient access to this feature to exploit the vulnerability.
7. ViewCVS Source View Input Validation Vulnerability
BugTraq ID: 12112
Remote: Yes
Date Published: Dec 26 2004
Relevant URL: http://www.securityfocus.com/bid/12112
Summary:
ViewCVS is prone to an input validation vulnerability.
This issue exists in the script responsible for allowing users to view source files (viewcvs.py). Due to insufficient sanitization of input supplied through URI parameters, cross-site scripting and HTTP response splitting attacks are possible.
Exploitation could allow for theft of cookie-based authentications and other attacks.
This issue appears similar to BID 9291.
8. SugarCRM Multiple Cross-Site Scripting Vulnerability
BugTraq ID: 12113
Remote: Yes
Date Published: Dec 26 2004
Relevant URL: http://www.securityfocus.com/bid/12113
Summary:
SugarCRM is prone to multiple cross-site scripting vulnerabilities. These issues are exposed through various URI parameters of the 'index.php' script. The affected parameters are not adequately sanitized of HTML and script code before being output into dynamically generated pages.
An attacker could exploit these issues by enticing a victim user into following a malicious link that contains hostile HTML and script code. This could be exploited to steal cookie-based authentication credentials.
The discoverer of these issues stated that some of the issues could theoretically allow for execution of arbitrary PHP code, though has not provided further information as to how this is possible.
9. Owl Intranet Engine Multiple Cross-Site Scripting and SQL In...
BugTraq ID: 12114
Remote: Yes
Date Published: Dec 26 2004
Relevant URL: http://www.securityfocus.com/bid/12114
Summary:
Owl Intranet Engine is prone to multiple cross-site scripting and SQL injection vulnerabilities. The issues are reported to exist in the 'browse.php' script.
An attacker could exploit the cross-site scripting issues by enticing a victim user into following a malicious link that contains hostile HTML and script code. This could be exploited to steal cookie-based authentication credentials.
The SQL injection vulnerabilities could allow the attacker to influence the structure or logic of SQL queries made by the application. This could have various impacts, including compromise of the software, exposure and modification of sensitive information, or a potential for attacks against the database implementation itself.
The attacker may need to provide a valid session ID to exploit these issues.
10. PHProxy Error Parameter Cross-Site Scripting Vulnerability
BugTraq ID: 12115
Remote: Yes
Date Published: Dec 27 2004
Relevant URL: http://www.securityfocus.com/bid/12115
Summary:
PHProxy is reported prone to a cross-site scripting vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied URI input.
The problem presents itself when malicious HTML and script code is sent to the application through the 'error' parameter.
This vulnerability is reported to exist in PHProxy 0.3 and prior versions.
11. PHProjekt Remote File Include Vulnerability
BugTraq ID: 12116
Remote: Yes
Date Published: Dec 28 2004
Relevant URL: http://www.securityfocus.com/bid/12116
Summary:
A remote file include vulnerability affects PHProjekt. This issue is due to a failure of the application to properly sanitize user-supplied input prior to using it in a PHP 'include()' function call.
An attacker may leverage this issue to execute arbitrary server-side script code on an affected computer with the privileges of the Web server process. This will facilitate unauthorized access.
12. ButtUglySoftware CleanCache Insecure Data Removal Vulnerabil...
BugTraq ID: 12117
Remote: No
Date Published: Dec 25 2004
Relevant URL: http://www.securityfocus.com/bid/12117
Summary:
It is reported that CleanCache does not remove potentially sensitive data including cache contents in a secure manner. This can allow an attacker to disclose potentially sensitive information that may be used to carry out further attacks against a vulnerable computer and users.
CleanCache 2.19 is reported prone to this vulnerability.
13. Atari800 Emulator Multiple Unspecified Buffer Overflow Vulne...
BugTraq ID: 12118
Remote: Unknown
Date Published: Dec 28 2004
Relevant URL: http://www.securityfocus.com/bid/12118
Summary:
Multiple unspecified buffer overflow vulnerabilities affect the Atari800 Emulator. These issues are due to a failure of the application to properly validate the length of user-supplied strings prior to copying them into static process buffers.
Although the impact of these issues are currently unknown, due to the nature of the application it is likely that these are local vulnerabilities that allow for privilege escalation.
14. Benchmark Designs WHM AutoPilot Multiple Remote Vulnerabilit...
BugTraq ID: 12119
Remote: Yes
Date Published: Dec 28 2004
Relevant URL: http://www.securityfocus.com/bid/12119
Summary:
WHM AutoPilot is reported prone to multiple remote vulnerabilities. These issues exist due to insufficient sanitization of user-supplied input. An attacker may exploit these vulnerabilities to execute arbitrary script code on a vulnerable server or a user's browser.
The following specific issues were identified:
The application is reported prone to a remote file include vulnerability. This issue may allow an attacker to include malicious files containing arbitrary script code to be executed on a vulnerable computer.
The application is reported prone to multiple cross-site scripting vulnerabilities as well.
All versions of WHM AutoPilot are considered vulnerable to these issues.
15. Moodle Multiple Input Validation Vulnerabilities
BugTraq ID: 12120
Remote: Yes
Date Published: Dec 28 2004
Relevant URL: http://www.securityfocus.com/bid/12120
Summary:
Two input validation vulnerabilities reportedly affect Moodle. These issues are due to a failure of the application to properly sanitize user-supplied input prior to using it in application-critical actions such as generating web content or loading scripts.
The first issue is a cross-site scripting vulnerability. The second issue is a directory traversal issue that may allow attackers to gain access to session data.
An attacker may leverage these issues to execute arbitrary client-side script code in the browsers of unsuspecting users through cross-site scripting attacks and gain access to sensitive session credentials through directory traversal attacks. Other attacks are also possible.
16. Hilgraeve HyperTerminal Remote Denial of Service Vulnerabili...
BugTraq ID: 12121
Remote: Yes
Date Published: Dec 29 2004
Relevant URL: http://www.securityfocus.com/bid/12121
Summary:
HyperTerminal is reported prone to a remote denial of service vulnerability. It is reported that supplying an excessive hostname value the application may trigger this vulnerability. Apparently, this causes the client application to crash.
This issue is reported to affect HyperTerminal versions prior to 5.0.
17. Van Dyke SecureCRT Remote Denial of Service Vulnerability
BugTraq ID: 12122
Remote: Yes
Date Published: Dec 29 2004
Relevant URL: http://www.securityfocus.com/bid/12122
Summary:
SecureCRT is reported prone to a remote denial of service vulnerability. It is reported that supplying an excessive string value the application through the hostname field may trigger this vulnerability. Apparently, this causes the client application to crash.
This issue is reported to affect SecureCRT 3.4.
18. QNX CRTTrap Local Insecure file Creation Vulnerability
BugTraq ID: 12123
Remote: No
Date Published: Dec 29 2004
Relevant URL: http://www.securityfocus.com/bid/12123
Summary:
A local insecure file creation vulnerability reportedly affects QNX crttrap. This issue is due to a failure of the application to properly handle permissions on affected software.
An attacker may leverage this issue to write to and read from arbitrary files on an affected computer; this may facilitate the destruction of sensitive files triggering a system-wide denial of service condition.
19. Microsoft Internet Explorer Local File Disclosure Weakness
BugTraq ID: 12124
Remote: Yes
Date Published: Dec 29 2004
Relevant URL: http://www.securityfocus.com/bid/12124
Summary:
Microsoft Internet Explorer contains a weakness that may allow remote attackers to disclose directory contents on the local system. This issue may be combined with other vulnerabilities to disclose sensitive information or reference previously placed malicious files on the system.
It is reported that this issue may be triggered by employing the 'SRC' attribute of an IFRAME. It should be noted that an attacker must be able to reference properties of the IFRAME remotely to carry out this attack. This may be accomplished by exploiting a zone bypass type of vulnerability.
Another attack scenario could involve an attacker placing a malicious file on a vulnerable system and then using this technique to determine the location of the file.
20. PHP-Calendar Remote File Include Vulnerability
BugTraq ID: 12127
Remote: Yes
Date Published: Dec 29 2004
Relevant URL: http://www.securityfocus.com/bid/12127
Summary:
A remote file include vulnerability affects PHP-Calendar. This issue is due to a failure of the application to properly sanitize user-supplied input prior to using it in a PHP 'include()' function call.
An attacker may leverage this issue to execute arbitrary server-side script code on an affected computer with the privileges of the Web server process. This will facilitate unauthorized access.
21. AStats Statistics Generator Local Insecure Temporary File Cr...
BugTraq ID: 12128
Remote: No
Date Published: Dec 29 2004
Relevant URL: http://www.securityfocus.com/bid/12128
Summary:
A local temporary file creation vulnerability reportedly affects aStats. This issue is due to a failure of the application to create and write to temporary files in a secure manner.
An attacker may leverage this issue to write to arbitrary files on the affected computer with the privileges of the unsuspecting user that activates the vulnerable utility.
22. Mozilla Browser Network News Transport Protocol Remote Heap ...
BugTraq ID: 12131
Remote: Yes
Date Published: Dec 29 2004
Relevant URL: http://www.securityfocus.com/bid/12131
Summary:
A remote heap overflow vulnerability affects Mozilla Browser's network news transport protocol (NNTP) functionality. This issue is due to a failure of the application to properly validate the length of user-supplied strings prior to copying them into dynamically allocated process buffers.
An attacker may exploit this issue to execute arbitrary code with the privileges of the user that activated the vulnerable application. This may facilitate unauthorized access or privilege escalation.
23. KorWeblog Remote File Include Vulnerability
BugTraq ID: 12132
Remote: Yes
Date Published: Dec 30 2004
Relevant URL: http://www.securityfocus.com/bid/12132
Summary:
KorWeblog is prone to a vulnerability that may allow attackers to influence the include path for external files.
This vulnerability could be exploited to cause malicious PHP code to be executed, but could also allow for disclosure of local files. This would occur in the context of the Web server hosting the software.
24. MySQL Eventum Multiple Input Validation Vulnerabilities
BugTraq ID: 12133
Remote: Yes
Date Published: Dec 30 2004
Relevant URL: http://www.securityfocus.com/bid/12133
Summary:
MySQL Eventum is designed to be a software bug-tracking application. It is Web-based, implemented in PHP with a MySQL database back end. It is freely available for Unix, Apple Mac OS X, other Unix variants, and Microsoft Windows.
Multiple input validation vulnerabilities reportedly affect MySQL Eventum. These issues are due to a failure of the application to properly sanitize user-supplied input prior to including it in dynamic Web page content.
The issues specifically reported are cross-site scripting, a default, undocumented administrator account, and HTML injection vulnerabilities.
An attacker may leverage these issues to have arbitrary script code executed in the browser of an unsuspecting user. This may facilitate theft of cookie-based authentication credentials as well as other attacks.
25. Macallan Mail Solution Web Interface Authentication Bypass V...
BugTraq ID: 12136
Remote: Yes
Date Published: Dec 31 2004
Relevant URL: http://www.securityfocus.com/bid/12136
Summary:
Macallan Mail Solution is prone to a vulnerability that may permit remote attackers to gain unauthorized access to the Web interface.
It is reported that by including extraneous URL-encoded slash characters (%2f), a remote user may access restricted pages in the Web interface and perform various actions. It was also reported that authentication may be bypassed by specifying a non-existent directory when requesting a resource within the Web interface.
This issue is a variant of the vulnerability described in BID 9646.
26. Macallan Mail Solution HTTP GET Request Buffer Overflow Vuln...
BugTraq ID: 12137
Remote: Yes
Date Published: Dec 31 2004
Relevant URL: http://www.securityfocus.com/bid/12137
Summary:
Macallan Mail Solution is prone to a remotely exploitable buffer overflow vulnerability. This issue is exposed when the Web interface is sent an overly long HTTP GET request.
This issue was reported to result in denial of service, however, code execution is likely since it appears that an attacker can influence the value of the saved instruction pointer and therefore control execution flow of the program.
27. IPBProArcade High Score Listing Remote SQL Injection Vulnera...
BugTraq ID: 12138
Remote: Yes
Date Published: Dec 31 2004
Relevant URL: http://www.securityfocus.com/bid/12138
Summary:
A remote SQL injection vulnerability reportedly affects the high-score listing functionality in ipbProArcade. This issue is due to a failure of the application to properly sanitize user-supplied input prior to including it in an SQL query.
An attacker may leverage this issue to manipulate SQL query strings and influence database queries. This may facilitate the disclosure or corruption of sensitive database information. It is possible that this could compromise the software or database security properties.
28. ArGoSoft FTP Server Remote User Enumeration Vulnerability
BugTraq ID: 12139
Remote: Yes
Date Published: Dec 31 2004
Relevant URL: http://www.securityfocus.com/bid/12139
Summary:
A remote information disclosure vulnerability reportedly ArGoSoft FTP Server. This issue is due to a design error that can be leveraged to present sensitive information to attacks.
An attacker may leverage this issue to harvest valid usernames, potentially facilitating brute force attacks.
29. IWebNegar Multiple Remote Vulnerabilities
BugTraq ID: 12140
Remote: Yes
Date Published: Dec 31 2004
Relevant URL: http://www.securityfocus.com/bid/12140
Summary:
iWebNegar is a web log and content management system. It is implemented in PHP with a MySQL database backend.
iWebNegar is affected by multiple remote vulnerabilities. These issues are due a failure of the application to properly sanitize user-supplied input prior to including it in dynamically generated content and an access validation failure.
The first issue is an access validation vulnerability that may allow a remote, unauthenticated attacker to arbitrary clear all settings added through the administrator 'config.php' script. The second issue is an HTML injection vulnerability in the comment functionality.
An attacker may leverage the HTML injection issue to have arbitrary HTML and script code executed in the browser of an unsuspecting user. This may facilitate the theft of cookie-based authentication credentials as well as other attacks. An attacker may leverage the access validation issue to manipulate configuration settings, potentially compromising application security.
30. Microsoft FrontPage 2000 Internet Publishing Service Provide...
BugTraq ID: 12141
Remote: Yes
Date Published: Dec 31 2004
Relevant URL: http://www.securityfocus.com/bid/12141
Summary:
A file upload vulnerability allegedly affects the DATA Access Internet Publishing Service Provider Distributed Versioning and Authoring (DAV) functionality of Microsoft FrontPage 2000.
An attacker may leverage this issue to upload arbitrary files to the affected computer. This will allow the execution of server-based script code, and will facilitate a compromise of the affected server. Depending on the purpose on the server, an attacker could also exploit the issue to place malicious or abuse content on the server.
It should be noted that the individual reporting this issue may have discovered it while auditing a poorly configured implementation of the affected software; if this were the case this issue may not be a vulnerability. This BID will be updated immediately upon the release of new information.
31. ZyXEL B-240 Wireless Ethernet Adapter Web Interface Remote C...
BugTraq ID: 12142
Remote: Yes
Date Published: Dec 31 2004
Relevant URL: http://www.securityfocus.com/bid/12142
Summary:
A remote cross-site scripting vulnerability reportedly affects the Web-administration interface of the ZyXEL B-240 Wireless Ethernet Adapter. This issue is due to a failure of the application to properly sanitize URI input prior to including it in dymanic content.
An attacker may leverage this issue to have arbitrary script code executed in the browser of an unsuspecting user in the context of the Web administration page. This may facilitate theft of cookie-based authentication credentials as well as other attacks. Apparently denial of service attacks are possible as well.
III. SECURITYFOCUS NEWS ARTICLES
--------------------------------
1. Groups fight Internet wiretap push
By: Kevin Poulsen
Industry and advocacy groups challenge the FBI to prove it's having problems spying on broadband and VoIP users.
http://www.securityfocus.com/news/10192
2. Report: DHS cyber security lagging
By: Kevin Poulsen
Inspectors find weak passwords, buffer overflows and mystery modems at the Department of Homeland Security.
http://www.securityfocus.com/news/10148
3. Long prison term for Lowe's wi-fi hacker
By: Kevin Poulsen
A 21-year-old Michigan man who tried to steal credit card numbers from a national hardware store chain is sentenced to nine years in federal prison.
http://www.securityfocus.com/news/10138
4. Phishing, spyware and other pests plagued 2004
By: Anick Jesdanun, The Associated Press
http://www.securityfocus.com/news/10215
5. Dutch telecom watchdog issues first fines against e-mail spa...
By: , The Associated Press
The Dutch telecommunications industry watchdog said Tuesday it has issued its first fines against spammers, including one person and two companies who sent unwanted e-mails and mobile telephone text messages.
http://www.securityfocus.com/news/10204
6. AOL reports drop in spam messages to its subscribers
By: Anick Jesdanun, The Associated Press
AOL, the world's largest Internet service provider, believes spammers are starting to give up _ at least when it comes to sending junk to its subscribers.
http://www.securityfocus.com/news/10202
IV. SECURITYFOCUS TOP 6 TOOLS
-----------------------------
1. Interface Traffic Indicator 1.2.3
By: Carsten Schmidt
Relevant URL: http://software.ccschmidt.de/#inftraffic
Platforms: Windows 2000, Windows NT, Windows XP
Summary:
Interface Traffic Indicator, a graph utility to measure incoming and outgoing traffic on an interface in bits/sec, bytes/sec or utilization. Works on all SNMP-capable devices (computers, NICs, switches, routers, etc.) with adjustable poll intervall down to three seconds. You can use this programm in a professional network environment to monitor selected network interfaces (even backplane ports if the device provides the information) or you can monitor your home network or
2. Colasoft Capsa 4.05
By: Roy Luo
Relevant URL: http://www.colasoft.com/
Platforms: Windows 2000, Windows 95/98, Windows XP
Summary:
Capsa is a powerful but easy to use network monitor and analyzer designed for packet decoding and network diagnosis. With the abilities of real time monitoring and data analyzing, you can capture and decode network traffic transmitted over local host and local network. Capsa has Packet Analysis Module and three advanced analysis modules: Email Analysis Module, Web Analysis Module and Transaction Analysis Module.
3. Attack Tool Kit (ATK) 3.0
By: Marc Ruef
Relevant URL: http://www.computec.ch/projekte/atk/
Platforms: Windows 2000, Windows 95/98, Windows NT, Windows XP
Summary:
The Attack Tool Kit (ATK) is an open-source utility to realize penetration tests and enhance security audits. The most important changes in ATK 3.0 are the introduction of a dedicated exploiting routine and the Plugin AutoUpdate (over HTTP).
4. One-Time Password Generator 1.0
By: Marcin Simonides
Relevant URL: http://marcin.studio4plus.com/en/otpgen/
Platforms: Java
Summary:
A One-Time Password Generator for Java-enabled mobile phones. The interface has been designed to minimize the number of necessary keypresses.
5. tenshi 0.3.2
By: Andrea Barisani
Relevant URL: http://tenshi.gentoo.org/
Platforms: Perl (any system supporting perl)
Summary:
tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expressions and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients.
Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
6. pasmal 1.5
By: James Meehan
Relevant URL: http://www.elitelabs.org/
Platforms: Linux
Summary:
pasmal 1.5 is a port knocking authentification system using simple or encrypted tcp/udp/icmp packets. pasmal can be used with iptables/ipchains (firewall purposes) or any other program (remote shell, reboot, etc)It is packaged with a php web admin, a command line client pasmal.client, start/stop rc.d scripts.pasmal 1.5 also feature an intrusion/attempts detection system due to its sniffers capabilities, running with syslogd and custom log files.
V. SECURITYJOBS LIST SUMMARY
----------------------------
1. [SJ-JOB] Regional Channel Manager, Atlanta, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385818
2. [SJ-JOB] Security Product Manager, Cupertino, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385816
3. [SJ-JOB] Sr. Product Manager, Redwood City, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385814
4. [SJ-JOB] Security Engineer, Mannheim, DE (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385813
5. [SJ-JOB] Security Consultant, Stamford, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385812
6. [SJ-JOB] Regional Channel Manager, Manhattan Beach, ... (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385797
7. [SJ-JOB] Channel / Business Development, Tokyo, JP (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385793
8. [SJ-JOB] Jr. Security Analyst, Reading, GB (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385789
9. [SJ-JOB] Sr. Security Analyst, Reading, GB (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385788
10. [SJ-JOB] Management, San Diego, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385784
11. [SJ-JOB] Regional Channel Manager, Denver, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385778
12. [SJ-JOB] Regional Channel Manager, Chicago, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385767
13. [SJ-JOB] Security Consultant, North Brunswick, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385757
14. [SJ-JOB] Security Consultant, NY, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385755
15. [SJ-JOB] Security Consultant, New York, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385754
16. [SJ-JOB] Sr. Security Analyst, Boston, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385753
17. [SJ-JOB] Sales Engineer, Indianapolis, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385752
18. [SJ-JOB] Security Consultant, Philadelphia, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385751
19. [SJ-JOB] Regional Channel Manager, Seattle, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385750
20. [SJ-JOB] Technical Support Engineer, Cupertino, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385748
21. [SJ-JOB] Security Product Marketing Manager, Redwood... (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385589
22. [SJ-JOB] Sales Representative, Denver, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385588
23. [SJ-JOB] Sales Representative, San Diego, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385587
24. [SJ-JOB] Sales Representative, Washington D.C, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385586
25. [SJ-JOB] Sr. Product Manager, San Diego, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385585
26. [SJ-JOB] Technical Writer, Redwood City, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385584
27. [SJ-JOB] Developer, BWI, US (Thread)
Relevant URL:
http://www.securityfocus.com/archive/77/385583
VI. INCIDENTS LIST SUMMARY
--------------------------
1. REVIEW: "Disaster Proofing Information Systems", Rob... (Thread)
Relevant URL:
http://www.securityfocus.com/archive/75/385968
2. Increase seen in port probes since Tuesday afternoon (Thread)
Relevant URL:
http://www.securityfocus.com/archive/75/385860
3. UDP Port Sweep question (Thread)
Relevant URL:
http://www.securityfocus.com/archive/75/385729
VII. VULN-DEV RESEARCH LIST SUMMARY
-----------------------------------
1. get SP on Solaris (SPARC) with GCC 3.3.2 (Thread)
Relevant URL:
http://www.securityfocus.com/archive/82/385728
2. WacthGuard Firebox -- Crash (Thread)
Relevant URL:
http://www.securityfocus.com/archive/82/385727
3. [Full-Disclosure] Multiple Backdoors found in eEye P... (Thread)
Relevant URL:
http://www.securityfocus.com/archive/82/385726
4. Multiple Backdoors found in eEye Products (IRIS and ... (Thread)
Relevant URL:
http://www.securityfocus.com/archive/82/385725
VIII. MICROSOFT FOCUS LIST SUMMARY
----------------------------------
1. services running in windows domain (winXP clients) (Thread)
Relevant URL:
http://www.securityfocus.com/archive/88/385919
2. SecurityFocus Microsoft Newsletter #221 (Thread)
Relevant URL:
http://www.securityfocus.com/archive/88/385603
3. SecurityFocus Microsoft Newsletter #220 (Thread)
Relevant URL:
http://www.securityfocus.com/archive/88/385547
IX. SUN FOCUS LIST SUMMARY
--------------------------
NO NEW POSTS FOR THE WEEK 2004-12-28 to 2005-01-04.
X. LINUX FOCUS LIST SUMMARY
---------------------------
1. CAN-2004-1137 (Thread)
Relevant URL:
http://www.securityfocus.com/archive/91/385980
2. opensource anti-virus gateway application for HTTP t... (Thread)
Relevant URL:
http://www.securityfocus.com/archive/91/385744
XI. UNSUBSCRIBE INSTRUCTIONS
----------------------------
To unsubscribe send an e-mail message to [email protected] from the subscribed address. The contents of the subject or message body do not matter. You will receive a confirmation request message to which you will have to answer. Alternatively you can also visit http://www.securityfocus.com/newsletters and unsubscribe via the website.
If your email address has changed email [email protected] and ask to be manually removed.
XII. SPONSOR INFORMATION
-----------------------
Need to know what's happening on YOUR network? Symantec DeepSight Analyzer
is a free service that gives you the ability to track and manage attacks.
Analyzer automatically correlates attacks from various Firewall and network
based Intrusion Detection Systems, giving you a comprehensive view of your
computer or general network. Sign up today!
http://www.securityfocus.com/sponsor/Symantec_sf-news_041130
------------------------------------------------------------------------