SecurityFocus Newsletter #324

Peter Laborge <[email protected]> Tue, 15 Nov 2005 16:44:35 -0700
Newsgroups gmane.comp.security.news.general
Message-ID <[email protected]>
SecurityFocus Newsletter #324
----------------------------------------

This Issue is Sponsored By: Watchfire AppScan

It's been reported that 75% of websites are vulnerable to attack. That's because hackers know to exploit weaknesses in web applications. Traditional approaches to securing these assets no longer apply. Address Application Security Challenges -- download this white paper today.

https://www.watchfire.com/securearea/whitepapers.aspx?id=701300000002gRE

------------------------------------------------------------------
I.    FRONT AND CENTER
       1. Sony's legal issues
       2. Linux worm overrated
II.   BUGTRAQ SUMMARY
       1. Macromedia Flash Array Index Memory Access Vulnerability
       2. ibProArcade User ID SQL Injection Vulnerability
       3. Macromedia Flash ActionDefineFunction Memory Access Vulnerability
       4. PHPFM Arbitrary File Upload Vulnerability
       5. Asterisk Voicemail Unauthorized Access Vulnerability
       6. Debian Horde Default Administrator Password Vulnerability
       7. Jed Wing CHM Lib LZX Decompression Method Buffer Overflow Vulnerability
       8. F-Secure Anti-Virus Gatekeeper and Gateway for Linux Local Privilege Escalation Vulnerability
       9. OSTE Remote File Include Vulnerability
       10. GNU gnump3d Unspecified Cross-Site Scripting Vulnerability
       11. XMB U2U.PHP Cross-Site Scripting Vulnerability
       12. Linux-FTPD-SSL FTP Server Remote Buffer Overflow Vulnerability
       13. Invision Power Board Multiple Cross-Site Scripting Vulnerabilities
       14. Invision Power Board Multiple HTML Injection Vulnerabilities
       15. FileZilla Server Terminal Remote Client-Side Buffer Overflow Vulnerability
       16. Zone Labs Zone Alarm Advance Program Control Bypass Weakness
       17. toendaCMS Admin.PHP Directory Traversal Vulnerability
       18. VERITAS Cluster Server for UNIX Local Buffer Overflow Vulnerability
       19. PHPList Multiple Input Validation Vulnerabilities
       20. toendaCMS Remote File Upload Vulnerability
       21. Microsoft Windows Graphics Rendering Engine WMF/EMF Format Code Execution Vulnerability
       22. VERITAS NetBackup Volume Manager Daemon Buffer Overflow Vulnerability
       23. PHPKit Multiple Input Validation Vulnerabilities
       24. ATutor Registration.PHP SQL Injection Vulnerability
       25. Microsoft Windows Graphics Rendering Engine WMF Format Code Execution Vulnerability
       26. PHP Group Exif Module Infinite Recursion Denial Of Service Vulnerability
       27. HP-UX ENVD Local Privilege Escalation Vulnerability
       28. SAP Web Application Server HTTP Response Splitting Vulnerability
       29. SAP Web Application Server Multiple Cross-Site Scripting Vulnerabilities
       30. SAP Web Application Server URI Redirection Vulnerability
       31. Sylpheed LDIF Import Remote Buffer Overflow Vulnerability
       32. ASPKnowledgebase Adminlogin.ASP SQL Injection Vulnerability
       33. Linux Kernel Sysctl Unregistration Local Denial of Service Vulnerability
       34. HP-UX RemSHD Unspecified Unauthorized Access Vulnerability
       35. IBM Tivoli Directory Server Unspecified Unauthorized Access Vulnerability
       36. YaBB Image Upload HTML Injection Vulnerability
       37. Google Talk Email Notification Denial Of Service Vulnerability
       38. Mike Neuman OSH Environment Variable Buffer Overflow Vulnerability
       39. TikiWiki Tiki-view_forum_thread.PHP Cross-Site Scripting Vulnerability
       40. Antville Cross-Site Scripting Vulnerability
       41. SpamAssassin Bus Error Spam Detection Bypass Vulnerability
       42. IBM DB2 Content Manager Multiple Denial of Service Vulnerabilities
       43. IPCop Backup Key Information Disclosure Vulnerability
       44. IPCop Backup File Replacement Race Condition Vulnerability
       45. Moodle Multiple SQL Injection Vulnerabilities
       46. RealNetworks RealOne Player/RealPlayer RM File Remote Stack Based Buffer Overflow Vulnerability
       47. RealNetworks RealPlayer DUNZIP32.DLL Heap Overflow Vulnerability 
       48. Sun Solaris In.Named Remote Denial of Service Vulnerability
       49. phpAdsNew Lib-sessions.inc.PHP SQL Injection Vulnerability
       50. OcoMon Multiple Unspecified SQL Injection Vulnerabilities
       51. Kerio WinRoute Firewall RTSP Stream Denial of Service Vulnerability
       52. Kerio WinRoute Firewall Disabled Account Bypass Vulnerability
       53. Exponent CMS Multiple SQL Injection Vulnerabilities
       54. TikiWiki Tiki-Editpage.PHP Directory Traversal Vulnerability
       55. Exponent CMS Image Upload Arbitrary Script Execution Vulnerability
       56. TikiWiki Tiki-User_Preferences.PHP Directory Traversal Vulnerability
       57. Dev-Editor Virtual Directory Security Bypass Vulnerability
       58. Sudo Perl Environment Variable Handling Security Bypass Vulnerability
       59. Lynx URI Handlers Arbitrary Command Execution Vulnerability
       60. PHPSysInfo Multiple Input Validation Vulnerabilities
       61. IBM AIX Diagela.SH Unspecified Security Vulnerability
       62. RealNetworks RealPlayer Unspecified Malformed Image Skin File Buffer Overflow Vulnerability
       63. PHPWebThings Download.PHP File Parameter SQL Injection Vulnerability
       64. ActiveCampaign 1-2-All Broadcast Email Admin Control Panel Username SQL Injection Vulnerability
III.  SECURITYFOCUS NEWS
       1. Sony BMG faces digital-rights siege
       2. Gold at the end of rainbow cracking?
       3. Suspected bot master busted
       4. Hidden DRM code's legitimacy questioned
       5. Skype under scrutiny for bugs
       6. Say hello to the Skype Trojan
       7. Shared music abuse bug hits iTunes
       8. US cybersecurity all at sea
IV.   SECURITY JOBS LIST SUMMARY
       1. [SJ-JOB] Application Security Architect, Chicago
       2. [SJ-JOB] Security Architect, New York
       3. [SJ-JOB] Manager, Information Security, Dallas/Ft Worth
       4. [SJ-JOB] Security Consultant, Work Remotely
       5. [SJ-JOB] Security Engineer, Louisville
       6. [SJ-JOB] Technical Support Engineer, Louisville
       7. [SJ-JOB] Security Consultant, Nationwide
       8. [SJ-JOB] Security Researcher, Chicago
       9. [SJ-JOB] Security Engineer, New York
       10. [SJ-JOB] Security Engineer, Mountain View
       11. [SJ-JOB] Security Engineer, Mountain View
       12. [SJ-JOB] Incident Handler, Chicago
       13. [SJ-JOB] Jr. Security Analyst, Basingstoke
       14. [SJ-JOB] Security Engineer, Orange County
       15. [SJ-JOB] Sales Representative, Louisville
       16. [SJ-JOB] Application Security Architect, Seattle
       17. [SJ-JOB] Information Assurance Analyst, WASHINGTON
       18. [SJ-JOB] Sr. Security Analyst, Toronto
       19. [SJ-JOB] Security Engineer, Washington
       20. [SJ-JOB] Incident Handler, WASHINGTON
       21. [SJ-JOB] Incident Handler, WASHINGTON
       22. [SJ-JOB] Information Assurance Analyst, Fairfax
       23. [SJ-JOB] Certification & Accreditation Engineer, Washington DC
       24. [SJ-JOB] Information Assurance Analyst, Fairfax
       25. [SJ-JOB] Sales Engineer, Silicon Valley
       26. [SJ-JOB] Quality Assurance, Cupertino
       27. [SJ-JOB] Technical Support Engineer, Cupertin0
       28. [SJ-JOB] Sr. Security Engineer, Arlington
       29. [SJ-JOB] Sr. Product Manager, Fort Lauderdale
       30. [SJ-JOB] Sr. Security Engineer, Windsor
       31. [SJ-JOB] Sr. Product Manager, Fort Lauderdale
       32. [SJ-JOB] CISO, New York
       33. [SJ-JOB] Director, Information Security, Pleasanton
       34. [SJ-JOB] Security Engineer, Boca Raton
       35. [SJ-JOB] Management, Los Angeles
       36. [SJ-JOB] Security Consultant, Los Angeles
       37. [SJ-JOB] Developer, Pasadena
       38. [SJ-JOB] Security Product Manager, Richland
       39. [SJ-JOB] Sr. Product Manager, Redwood City
V.    INCIDENTS LIST SUMMARY
       1. Odd identd behavior
VI.   VULN-DEV RESEARCH LIST SUMMARY
VII.  MICROSOFT FOCUS LIST SUMMARY
       1. Renaming Administrator account
       2. ISA Server or Firewall Appliance?
       3. break in?
       4. On the topic of Windows Hardening
       5. Deny Logon by Domain Admin account to specific PC's or deny to all BUT specific PC's
       6. What server hardening are you doing these days?
       7. SecurityFocus Microsoft Newsletter #264
       8. Setup MD5 Checksum for FTP downloads on Win2000 Server OS
VIII. SUN FOCUS LIST SUMMARY
IX.   LINUX FOCUS LIST SUMMARY
       1. SF new column announcement: Linux worm overrated
X.    UNSUBSCRIBE INSTRUCTIONS
XI.   SPONSOR INFORMATION

I.   FRONT AND CENTER
---------------------
1. Sony's legal issues
By Mark Rasch
Sony is in the spotlight over the rootkit they distribute on some of their music CDs, and it brings up interesting legal issues relating to EULAs and enforcement by the FTC.
http://www.securityfocus.com/columnists/369

2. Linux worm overrated
By Daniel Hanson
The latest and greatest Linux worm isn't the most elegant or fastest spreading worm, or even one that's difficult to stop, but it still offers a warning for Web developers and administrators everywhere.
http://www.securityfocus.com/columnists/368


II.  BUGTRAQ SUMMARY
--------------------
1. Macromedia Flash Array Index Memory Access Vulnerability
BugTraq ID: 15332
Remote: Yes
Date Published: 2005-11-05
Relevant URL: http://www.securityfocus.com/bid/15332
Summary:
The Flash plug-in is vulnerable to an input validation error that can be reliably exploited to execute arbitrary code.  The vulnerability is due to an input validation error for a critical array index value. 

An attacker can exploit this vulnerability to execute arbitrary code.  The most likely vector of attack is through a malicious SWF file designed to trigger the vulnerability that has been placed on a web site.

Macromedia Flash 6 and 7 are reported affected.

2. ibProArcade User ID SQL Injection Vulnerability
BugTraq ID: 15333
Remote: Yes
Date Published: 2005-11-05
Relevant URL: http://www.securityfocus.com/bid/15333
Summary:
A SQL injection attack due to an input validation error has been reported.  The vulnerability is said to be in the "index.php" scripts on both PowerBoard and vBulletin installations when the module is enabled.  The HTML variable "id" for PowerBoard users and "userid" for vBulletin users is reportedly not properly escaped before it is embedded in a SQL query string.

3. Macromedia Flash ActionDefineFunction Memory Access Vulnerability
BugTraq ID: 15334
Remote: Yes
Date Published: 2005-11-07
Relevant URL: http://www.securityfocus.com/bid/15334
Summary:
The Macromedia Flash plug-in is vulnerable to an input validation error that may be exploited to execute arbitrary code or carry out a denial of service attack.  The vulnerability is due to an input validation error for a critical array index value. 

An attacker can exploit this vulnerability to execute arbitrary code.  The most likely vector of attack is through a malicious SWF file designed to trigger the vulnerability that has been placed on a Web site.

Macromedia Flash 6 and 7 are reported affected.

It should be noted that this issue similar to the vulnerability described in BID 15332 (Macromedia Flash Array Index Memory Access Vulnerability), however, this issue affects a different function.

4. PHPFM Arbitrary File Upload Vulnerability
BugTraq ID: 15335
Remote: Yes
Date Published: 2005-11-07
Relevant URL: http://www.securityfocus.com/bid/15335
Summary:
PHPFM is prone to an arbitrary file upload vulnerability.

An attacker can exploit this vulnerability to upload arbitrary code and execute it in the context of the Web server process.  This may facilitate unauthorized access or privilege escalation; other attacks are also possible.


5. Asterisk Voicemail Unauthorized Access Vulnerability
BugTraq ID: 15336
Remote: Yes
Date Published: 2005-11-07
Relevant URL: http://www.securityfocus.com/bid/15336
Summary:
Asterisk is prone to an unauthorized access vulnerability.  This issue is due to a failure in the application to properly verify user-supplied input.

Successful exploitation will grant an attacker access to a victim users voicemail, and any '.wav/.WAV' files currently on the affected system.

6. Debian Horde Default Administrator Password Vulnerability
BugTraq ID: 15337
Remote: Yes
Date Published: 2005-11-07
Relevant URL: http://www.securityfocus.com/bid/15337
Summary:
The default Horde3 installation for Debian has a blank administrator password.

A local or remote attacker can exploit this vulnerability to gain administrative access to the affected application.  This may aid an attacker in further attacks against the underlying system; other attacks are also possible.

This issue is specific to Debian Linux installations of the Horde3 application.

7. Jed Wing CHM Lib LZX Decompression Method Buffer Overflow Vulnerability
BugTraq ID: 15338
Remote: Yes
Date Published: 2005-11-07
Relevant URL: http://www.securityfocus.com/bid/15338
Summary:
CHM lib is susceptible to a buffer overflow vulnerability.

Reports indicate that this issue affects the LZX decompression method.  It is conjectured that the vulnerability is remote in nature and allows attackers to execute arbitrary machine code in the context of the application that utilizes the CHM lib library. 

Further details are not available at the moment.  This BID will be updated when more information becomes available.

8. F-Secure Anti-Virus Gatekeeper and Gateway for Linux Local Privilege Escalation Vulnerability
BugTraq ID: 15339
Remote: No
Date Published: 2005-11-07
Relevant URL: http://www.securityfocus.com/bid/15339
Summary:
F-Secure Anti-Virus products are susceptible to a local privilege escalation vulnerability. This issue is due to insecure setuid-superuser binary permissions.

This vulnerability allows local attackers to gain superuser privileges, leading to complete compromise of the affected computer.

9. OSTE Remote File Include Vulnerability
BugTraq ID: 15340
Remote: Yes
Date Published: 2005-11-07
Relevant URL: http://www.securityfocus.com/bid/15340
Summary:
OSTE is prone to a remote file include vulnerability.  This issue is due to a failure in the application to properly sanitize user-supplied input.

An attacker can exploit this issue to execute arbitrary remote PHP code on an affected computer with the privileges of the Web server process. This may facilitate unauthorized access.


10. GNU gnump3d Unspecified Cross-Site Scripting Vulnerability
BugTraq ID: 15341
Remote: Yes
Date Published: 2005-11-07
Relevant URL: http://www.securityfocus.com/bid/15341
Summary:
GNU gnump3d is prone to an unspecified cross-site scripting vulnerability.  An attacker may leverage this issue to have arbitrary script code executed in the browser of an unsuspecting user in the context of the affected site.  This may facilitate the theft of cookie-based authentication credentials as well as other attacks.

This issue is similar to that discussed in BID 15226 (GNU gnump3d Error Page Cross-Site Scripting Vulnerability) but is a seperate issue.

11. XMB U2U.PHP Cross-Site Scripting Vulnerability
BugTraq ID: 15342
Remote: Yes
Date Published: 2005-11-07
Relevant URL: http://www.securityfocus.com/bid/15342
Summary:
XMB is prone to a cross-site scripting vulnerability.  This issue is due to a failure in the application to properly sanitize user-supplied input.

An attacker may leverage this issue to have arbitrary script code executed in the browser of an unsuspecting user in the context of the affected site.  This may facilitate the theft of cookie-based authentication credentials as well as other attacks.


12. Linux-FTPD-SSL FTP Server Remote Buffer Overflow Vulnerability
BugTraq ID: 15343
Remote: Yes
Date Published: 2005-11-07
Relevant URL: http://www.securityfocus.com/bid/15343
Summary:
Linux-FTPD-SSL FTP Server is susceptible to a remote buffer overflow vulnerability. This issue is due to a failure of the application to properly bounds check user-supplied input data prior to copying it to an insufficiently sized memory buffer.

This vulnerability allows remote attackers to execute arbitrary machine code in the context of the vulnerable server application, typically with superuser privileges.

13. Invision Power Board Multiple Cross-Site Scripting Vulnerabilities
BugTraq ID: 15344
Remote: Yes
Date Published: 2005-11-07
Relevant URL: http://www.securityfocus.com/bid/15344
Summary:
Invision Power Board is prone to multiple cross-site scripting vulnerabilities.
These issues are due to a failure in the application to properly sanitize user-supplied input.

An attacker may leverage these issues to have arbitrary script code executed in the browser of an unsuspecting user in the context of the affected site.  These may facilitate the theft of cookie-based authentication credentials as well as other attacks.

Version 2.1 is vulnerable; earlier versions may also be affected.


14. Invision Power Board Multiple HTML Injection Vulnerabilities
BugTraq ID: 15345
Remote: Yes
Date Published: 2005-11-07
Relevant URL: http://www.securityfocus.com/bid/15345
Summary:
Invision Power Board is prone to multiple HTML injection vulnerabilities. These issues are due to a lack of proper sanitization of user-supplied input before using it in dynamically generated content.

Attacker-supplied HTML and script code would be executed in the context of the affected Web site, potentially allowing for theft of cookie-based authentication credentials. An attacker could also exploit this issue to control how the site is rendered to the user; other attacks are also possible.

version 2.1 is known to be vulnerable; earlier versions may also be affected.



15. FileZilla Server Terminal Remote Client-Side Buffer Overflow Vulnerability
BugTraq ID: 15346
Remote: Yes
Date Published: 2005-11-07
Relevant URL: http://www.securityfocus.com/bid/15346
Summary:
A remote, client-side buffer overflow vulnerability reportedly affects FileZilla Server Terminal. This issue is due to a failure of the application to properly validate the length of user-supplied strings prior to copying them into static process buffers.

An attacker may exploit this issue to execute arbitrary code with the privileges of the user that activated the vulnerable application. This may facilitate unauthorized access or privilege escalation.

16. Zone Labs Zone Alarm Advance Program Control Bypass Weakness
BugTraq ID: 15347
Remote: No
Date Published: 2005-11-07
Relevant URL: http://www.securityfocus.com/bid/15347
Summary:
Zone Labs Zone Alarm is prone to a weakness that permits the bypassing of the Advanced Program Control protection.

Reports indicate that applications can create a modal dialog box displaying HTML, which can then be redirected to a remote site.

This would allow a malicious program to bypass Advanced Program Control protection and send data to a remote attacker from a compromised computer.

It should be noted that this issue only presents itself if the Advanced Program Control setting has been enabled and the browser has been authorized to access the Internet.

17. toendaCMS Admin.PHP Directory Traversal Vulnerability
BugTraq ID: 15348
Remote: Yes
Date Published: 2005-11-07
Relevant URL: http://www.securityfocus.com/bid/15348
Summary:
toendaCMS is reported prone to a directory traversal vulnerability. It is demonstrated that this issue may be leveraged to disclose the contents of arbitrary web-server readable files. 

A remote attacker may exploit this vulnerability to reveal files that contain potentially sensitive information. 

Version 2.1 is vulnerable; earlier versions may also be vulnerable.


18. VERITAS Cluster Server for UNIX Local Buffer Overflow Vulnerability
BugTraq ID: 15349
Remote: No
Date Published: 2005-11-08
Relevant URL: http://www.securityfocus.com/bid/15349
Summary:
Versions of VERITAS Cluster Server for UNIX are susceptible to a local buffer overflow vulnerability. This issue is due to a failure of the application to properly bounds check user-supplied data prior to copying it into an insufficiently sized memory buffer.

This issue allows local attackers to execute arbitrary machine code with superuser credentials, as the affected applications are installed with setuid root privileges.

19. PHPList Multiple Input Validation Vulnerabilities
BugTraq ID: 15350
Remote: Yes
Date Published: 2005-11-07
Relevant URL: http://www.securityfocus.com/bid/15350
Summary:
PHPList is prone to multiple input validation vulnerabilities.  These issues are due to a failure in the application to properly santize user-supplied input.

The application is prone to multiple cross-site scripting, HTTP injection, SQL injection and directory traversal vulnerabilities.

20. toendaCMS Remote File Upload Vulnerability
BugTraq ID: 15351
Remote: Yes
Date Published: 2005-11-07
Relevant URL: http://www.securityfocus.com/bid/15351
Summary:
toendaCMS is prone to an arbitrary file upload vulnerability. 

An attacker can exploit this vulnerability to upload arbitrary code and execute it in the context of the Web server process.  This may facilitate unauthorized access or privilege escalation; other attacks are also possible.


21. Microsoft Windows Graphics Rendering Engine WMF/EMF Format Code Execution Vulnerability
BugTraq ID: 15352
Remote: Yes
Date Published: 2005-11-08
Relevant URL: http://www.securityfocus.com/bid/15352
Summary:
Microsoft Windows WMF/EMF graphics rendering engine is affected by a remote code execution vulnerability.

The problem presents itself when a user views a malicious WMF or EMF formatted file causing the affected engine to attempt to parse it.  Exploitation of this issue can trigger an integer overflow that may facilitate heap memory corruption and arbitrary code execution.

Any code execution that occurs will be with SYSTEM privileges due to the nature of the affected engine.  Successful exploitation can facilitate a remote compromise or local privilege escalation.

22. VERITAS NetBackup Volume Manager Daemon Buffer Overflow Vulnerability
BugTraq ID: 15353
Remote: Yes
Date Published: 2005-11-08
Relevant URL: http://www.securityfocus.com/bid/15353
Summary:
VERITAS NetBackup is prone to a buffer overflow in the Volume Manager Daemon.  Successful exploitation could result in a denial of service or arbitrary code execution.

This issue only affects NetBackup 5.0 and 5.1.


23. PHPKit Multiple Input Validation Vulnerabilities
BugTraq ID: 15354
Remote: Yes
Date Published: 2005-11-08
Relevant URL: http://www.securityfocus.com/bid/15354
Summary:
PHPKIT is prone to multiple input validation vulnerabilities.  These issues are due to a failure in the application to properly santize user-supplied input.

The application is prone to multiple cross-site scripting, HTTP injection, SQL injection, local file inclusion and arbitrary code execution vulnerabilities.

24. ATutor Registration.PHP SQL Injection Vulnerability
BugTraq ID: 15355
Remote: Yes
Date Published: 2005-11-08
Relevant URL: http://www.securityfocus.com/bid/15355
Summary:
ATutor is prone to an SQL injection vulnerability.  This issue is due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query.

Successful exploitation could result in a compromise of the application, disclosure or modification of data.  An attacker may also be able to exploit this vulnerability to execute arbitrary commands. 


25. Microsoft Windows Graphics Rendering Engine WMF Format Code Execution Vulnerability
BugTraq ID: 15356
Remote: Yes
Date Published: 2005-11-08
Relevant URL: http://www.securityfocus.com/bid/15356
Summary:
Microsoft Windows WMF graphics rendering engine is affected by a remote code execution vulnerability.

The problem presents itself when a user views a malicious WMF formatted file, triggering the vulnerability when the engine attempts to parse the file.  A malicious file can cause an integer overflow that may facilitate heap memory corruption and arbitrary code execution.

Any code execution that occurs will be with SYSTEM privileges due to the nature of the affected engine.  Successful exploitation can facilitate a remote compromise or local privilege escalation.

26. PHP Group Exif Module Infinite Recursion Denial Of Service Vulnerability
BugTraq ID: 15358
Remote: Yes
Date Published: 2005-11-08
Relevant URL: http://www.securityfocus.com/bid/15358
Summary:
PHP is prone to a denial of service vulnerability.

This issue occurs when parsing EXIF image data in corrupt JPEG files.

An attacker can exploit this vulnerability to crash the system, effectively denying service to legitimate users.

27. HP-UX ENVD Local Privilege Escalation Vulnerability
BugTraq ID: 15359
Remote: No
Date Published: 2005-11-09
Relevant URL: http://www.securityfocus.com/bid/15359
Summary:
HP-UX envd is reported prone to a local privilege escalation vulnerability. 

This issue may allow local attackers to execute arbitrary code and gain elevated privileges.

28. SAP Web Application Server HTTP Response Splitting Vulnerability
BugTraq ID: 15360
Remote: Yes
Date Published: 2005-11-09
Relevant URL: http://www.securityfocus.com/bid/15360
Summary:
SAP Web Application Server is prone to an HTTP response splitting vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input.

A remote attacker may exploit this vulnerability to influence or misrepresent how Web content is served, cached or interpreted. This could aid in various attacks that attempt to entice client users into a false sense of trust.

This issue only affects the BSP runtime of SAP WAS.

29. SAP Web Application Server Multiple Cross-Site Scripting Vulnerabilities
BugTraq ID: 15361
Remote: Yes
Date Published: 2005-11-09
Relevant URL: http://www.securityfocus.com/bid/15361
Summary:
SAP Web Application Server is prone to multiple cross-site scripting vulnerabilities.  These issues are due to a failure in the application to properly sanitize user-supplied input.

An attacker may leverage these issues to have arbitrary script code executed in the browser of an unsuspecting user in the context of the affected site.  This may facilitate the theft of cookie-based authentication credentials as well as other attacks.

This issue only affects the BSP runtime of SAP WAS.

30. SAP Web Application Server URI Redirection Vulnerability
BugTraq ID: 15362
Remote: Yes
Date Published: 2005-11-09
Relevant URL: http://www.securityfocus.com/bid/15362
Summary:
SAP Web Application Server is reported prone to a remote URI redirection vulnerability.  

It is reported that an attacker can exploit this issue by supplying the URI of a malicious site through the 'sap-exiturl' parameter.

A successful attack may result in various attacks including theft of cookie-based authentication credentials.  An attacker may also be able to exploit this vulnerability to enhance phishing style attacks.

This issue only affects the BSP runtime of SAP WAS.

31. Sylpheed LDIF Import Remote Buffer Overflow Vulnerability
BugTraq ID: 15363
Remote: Yes
Date Published: 2005-11-08
Relevant URL: http://www.securityfocus.com/bid/15363
Summary:
Sylpheed is prone to a buffer overflow vulnerability.

A buffer overflow condition can occur when a malicious LFID file is imported into an address book by a user.

Exploitation of this vulnerability may allow an attacker to gain unauthorized access to the computer in the context of the Sylpheed client.

32. ASPKnowledgebase Adminlogin.ASP SQL Injection Vulnerability
BugTraq ID: 15364
Remote: Yes
Date Published: 2005-11-09
Relevant URL: http://www.securityfocus.com/bid/15364
Summary:
ASPKnowledgebase is prone to an SQL injection vulnerability.  This issue is due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query.

Successful exploitation could result in a compromise of the application, disclosure or modification of data, or may permit an attacker to exploit vulnerabilities in the underlying database implementation.


33. Linux Kernel Sysctl Unregistration Local Denial of Service Vulnerability
BugTraq ID: 15365
Remote: No
Date Published: 2005-11-09
Relevant URL: http://www.securityfocus.com/bid/15365
Summary:
Linux Kernel is reported prone to a local denial of service vulnerability.  

This issue arises from a failure to properly unregister kernel resources when network devices are removed.

This issue allows local attackers to deny service to legitimate users. It is conjectured that it may also be possible to execute arbitrary code in the context of the kernel, but this has not been confirmed.

34. HP-UX RemSHD Unspecified Unauthorized Access Vulnerability
BugTraq ID: 15366
Remote: Yes
Date Published: 2005-11-09
Relevant URL: http://www.securityfocus.com/bid/15366
Summary:
HP-UX remshd is prone to an unspecified unauthorized access vulnerability.

When in 'Trusted Mode' an error in remshd can be exploited by a remote attacker to gain unauthorized access to a system utilizing the vulnerable service.

Very little information is available on this vulnerability; this BID will be updated as further information becomes available.

35. IBM Tivoli Directory Server Unspecified Unauthorized Access Vulnerability
BugTraq ID: 15367
Remote: Yes
Date Published: 2005-11-09
Relevant URL: http://www.securityfocus.com/bid/15367
Summary:
IBM Tivoli Directory Server is susceptible to an unspecified flaw that allows remote unauthorized access to the directory server allowing attackers to access, alter, or delete data contained in the directory server database. 

Very little information is available on this vulnerability; this BID will be updated if further information becomes available.

36. YaBB Image Upload HTML Injection Vulnerability
BugTraq ID: 15368
Remote: Yes
Date Published: 2005-11-09
Relevant URL: http://www.securityfocus.com/bid/15368
Summary:
YaBB is prone to an HTML injection vulnerability. This is due to a lack of proper sanitization of user-supplied input before using it in dynamically generated content. 

Attacker-supplied HTML and script code would be executed in the context of the affected Web site, potentially allowing for theft of cookie-based authentication credentials. An attacker could also exploit this issue to control how the site is rendered to the user; other attacks are also possible.

This issue is only present when using the Microsoft Internet Explorer Web browser.


37. Google Talk Email Notification Denial Of Service Vulnerability
BugTraq ID: 15369
Remote: Yes
Date Published: 2005-11-09
Relevant URL: http://www.securityfocus.com/bid/15369
Summary:
Google Talk is prone to a denial of service vulnerability. This is due to a programming error in which exceptional conditions cause the victim to have to interact and close multiple error popup windows.

Specially crafted email messages may be repeatedly sent by an attacker to deny service to the client application user.



38. Mike Neuman OSH Environment Variable Buffer Overflow Vulnerability
BugTraq ID: 15370
Remote: No
Date Published: 2005-11-09
Relevant URL: http://www.securityfocus.com/bid/15370
Summary:
Osh is susceptible to a buffer overflow vulnerability when processing environment variables. This issue is due to a flaw in the application that results in overwriting adjacent environment variables with user-supplied contents.

This issue may be exploited to execute arbitrary code with superuser privileges.

39. TikiWiki Tiki-view_forum_thread.PHP Cross-Site Scripting Vulnerability
BugTraq ID: 15371
Remote: Yes
Date Published: 2005-11-09
Relevant URL: http://www.securityfocus.com/bid/15371
Summary:
TikiWiki is prone to a cross-site scripting vulnerability.  This issue is due to a failure in the application to properly sanitize user-supplied input.

An attacker may leverage this issue to have arbitrary script code executed in the browser of an unsuspecting user in the context of the affected site.  This may facilitate the theft of cookie-based authentication credentials as well as other attacks.

Versions 1.9.x up to and including 1.9.2 are affected; prior versions may also be affected.


40. Antville Cross-Site Scripting Vulnerability
BugTraq ID: 15372
Remote: Yes
Date Published: 2005-11-09
Relevant URL: http://www.securityfocus.com/bid/15372
Summary:
Antville is prone to a cross-site scripting vulnerability.  This issue is due to a failure in the application to properly sanitize user-supplied input.

An attacker may leverage this issue to have arbitrary script code executed in the browser of an unsuspecting user in the context of the affected site.  This may facilitate the theft of cookie-based authentication credentials as well as other attacks.

Antville version 1.1 is vulnerable; prior versions may also be affected.


41. SpamAssassin Bus Error Spam Detection Bypass Vulnerability
BugTraq ID: 15373
Remote: Yes
Date Published: 2005-11-09
Relevant URL: http://www.securityfocus.com/bid/15373
Summary:
SpamAssassin is prone to a vulnerability that could bypass spam detection.  This issue is due to a failure in the application to handle exceptional conditions.

An attacker can exploit this vulnerability to crash a child process, effectively permitting the email to bypass detection and go through.

42. IBM DB2 Content Manager Multiple Denial of Service Vulnerabilities
BugTraq ID: 15376
Remote: Yes
Date Published: 2005-11-10
Relevant URL: http://www.securityfocus.com/bid/15376
Summary:
IBM DB2 Content Manager is prone to multiple vulnerabilities. These issues may allow attackers to carry out denial of service attacks.

The vulnerabilities affect versions prior to Content Manager Version 8.2 Fix Pack 10. 

43. IPCop Backup Key Information Disclosure Vulnerability
BugTraq ID: 15377
Remote: No
Date Published: 2005-11-10
Relevant URL: http://www.securityfocus.com/bid/15377
Summary:
IPCop is prone to an information disclosure vulnerability.  IPCop is prone to an information disclosure vulnerability.  The problem is due to how the application stores the key to encrypted backup files.

An attacker can exploit this vulnerability to decrypt backup files.  Information obtained may aid in further attacks; other attacks may also be possible.

It may be possible for an attacker to exploit this vulnerability to overwrite arbitrary backup files.  However, the attacker must have access to the 'nobody' user account, either through legitimate means, or through some other latent vulnerability.  The attacker may also be able to overwrite arbitrary files with superuser privileges through exploitation of this issue.

44. IPCop Backup File Replacement Race Condition Vulnerability
BugTraq ID: 15378
Remote: No
Date Published: 2005-11-10
Relevant URL: http://www.securityfocus.com/bid/15378
Summary:
IPCop is prone to a race condition that could permit the replacement of a backup file.  This issue is due to the application changing the ownership on the file before it in encrypts it.

A local attacker must have access to the 'nobody' user account, either through legitimate means, or through some other latent vulnerability to exploit this issue.

Successful exploitation will replace the backup file with arbitrary attacker-supplied data.  If the backup file is restored, system information may be overwritten with arbitrary data using superuser privileges.

45. Moodle Multiple SQL Injection Vulnerabilities
BugTraq ID: 15380
Remote: Yes
Date Published: 2005-11-10
Relevant URL: http://www.securityfocus.com/bid/15380
Summary:
Moodle is prone to multiple SQL injection vulnerabilities.  These issues are due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query.

Successful exploitation could result in a compromise of the application, disclosure or modification of data, or may permit an attacker to exploit vulnerabilities in the underlying database implementation.

46. RealNetworks RealOne Player/RealPlayer RM File Remote Stack Based Buffer Overflow Vulnerability
BugTraq ID: 15381
Remote: Yes
Date Published: 2005-11-10
Relevant URL: http://www.securityfocus.com/bid/15381
Summary:
RealNetworks RealPlayer and RealOne Player are reported prone to a remote stack based buffer overflow vulnerability.  The issue exists due to a lack of boundary checks performed by the application when parsing RM (Real Media) files.  A remote attacker may execute arbitrary code on a vulnerable computer to gain unauthorized access.

This vulnerability is reported to exist in RealNetworks products for Microsoft Windows, Linux, and Apple Mac platforms.

47. RealNetworks RealPlayer DUNZIP32.DLL Heap Overflow Vulnerability 
BugTraq ID: 15382
Remote: Yes
Date Published: 2005-11-10
Relevant URL: http://www.securityfocus.com/bid/15382
Summary:
A heap overflow vulnerability exists in RealPlayer on Windows platforms.

The issue arises when 'DUNZIP32.DLL' is called to handle a malformed file.

A successful attack can allow the attacker to gain unauthorized access to a vulnerable computer.

48. Sun Solaris In.Named Remote Denial of Service Vulnerability
BugTraq ID: 15384
Remote: Yes
Date Published: 2005-11-11
Relevant URL: http://www.securityfocus.com/bid/15384
Summary:
Sun Solaris in.named is prone to a remote denial of service vulnerability.

An attacker can exploit this vulnerability by sending multiple requests to the DNS server, ultimately crashing the system, denying service to legitimate users.

49. phpAdsNew Lib-sessions.inc.PHP SQL Injection Vulnerability
BugTraq ID: 15385
Remote: Yes
Date Published: 2005-11-11
Relevant URL: http://www.securityfocus.com/bid/15385
Summary:
phpAdsNew is prone to an SQL injection vulnerability.  This issue is due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query.

Successful exploitation could result in a compromise of the application, disclosure or modification of data, or may permit an attacker to exploit vulnerabilities in the underlying database implementation.

This BID is a duplicate of BID 15374 (phpAdsNew Logout.PHP SQL Injection Vulnerability), that BID is being retired.

50. OcoMon Multiple Unspecified SQL Injection Vulnerabilities
BugTraq ID: 15386
Remote: Yes
Date Published: 2005-11-11
Relevant URL: http://www.securityfocus.com/bid/15386
Summary:
OcoMon is prone to multiple unspecified SQL injection vulnerabilities. These issues are due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query.

Successful exploitation could result in a compromise of the application, disclosure or modification of data, or may permit an attacker to exploit vulnerabilities in the underlying database implementation.

Ocomon versions 1.x are reported to be affected; other versions may also be affected.



51. Kerio WinRoute Firewall RTSP Stream Denial of Service Vulnerability
BugTraq ID: 15387
Remote: Yes
Date Published: 2005-11-11
Relevant URL: http://www.securityfocus.com/bid/15387
Summary:
Kerio WinRoute Firewall is prone to a remote denial of service vulnerability.

A remote attacker can exploit this vulnerability to crash the affected service, effectively disabling the firewall.  This may aid in further attacks.

52. Kerio WinRoute Firewall Disabled Account Bypass Vulnerability
BugTraq ID: 15388
Remote: Yes
Date Published: 2005-11-11
Relevant URL: http://www.securityfocus.com/bid/15388
Summary:
Kerio WinRoute Firewall is prone to a vulnerability that could permit disabled accounts access.  This issue is most likely due to an authentication error within the application.

Due to an unspecified error, disabled accounts can still authenticate to a vulnerable system.  This may lead to a false sense of security.

53. Exponent CMS Multiple SQL Injection Vulnerabilities
BugTraq ID: 15389
Remote: Yes
Date Published: 2005-11-11
Relevant URL: http://www.securityfocus.com/bid/15389
Summary:
Exponent CMS is prone to multiple SQL injection vulnerabilities.  These issues are due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query.

Successful exploitation could result in a compromise of the application, disclosure or modification of data, or may permit an attacker to exploit vulnerabilities in the underlying database implementation.


54. TikiWiki Tiki-Editpage.PHP Directory Traversal Vulnerability
BugTraq ID: 15390
Remote: Yes
Date Published: 2005-11-11
Relevant URL: http://www.securityfocus.com/bid/15390
Summary:
TikiWiki is prone to a directory traversal vulnerability.  This issue is due to a failure in the application to properly sanitize user-supplied input.

A remote attacker may exploit this vulnerability to reveal files that contain potentially sensitive information. Information that is harvested in this manner may then be used to aid in further attacks against the software and the computer that is hosting the software.

55. Exponent CMS Image Upload Arbitrary Script Execution Vulnerability
BugTraq ID: 15391
Remote: Yes
Date Published: 2005-11-11
Relevant URL: http://www.securityfocus.com/bid/15391
Summary:
Exponent CMS is prone to an arbitrary script execution vulnerability. This is due to a lack of proper sanitization of user-supplied input to the image upload portion of the application.

An attacker can include remote script code and execute it in the context of an affected server.

Versions 0.x are reported to be vulnerable; an upgrade to 0.94.6 is available.




56. TikiWiki Tiki-User_Preferences.PHP Directory Traversal Vulnerability
BugTraq ID: 15392
Remote: Yes
Date Published: 2005-11-11
Relevant URL: http://www.securityfocus.com/bid/15392
Summary:
TikiWiki is prone to a directory traversal vulnerability.  This issue is due to a failure in the application to properly sanitize user-supplied input.

A remote attacker may exploit this vulnerability to reveal files that contain potentially sensitive information. Information that is harvested in this manner may then be used to aid in further attacks against the software and the computer that is hosting the software.

57. Dev-Editor Virtual Directory Security Bypass Vulnerability
BugTraq ID: 15393
Remote: Yes
Date Published: 2005-11-11
Relevant URL: http://www.securityfocus.com/bid/15393
Summary:
Dev-Editor is prone to a vulnerability regarding the unauthorized access to directories outside the root virtual directory.

The problem presents itself in the way Dev-Editor handles access to virtual directories.

Successful exploitation will grant an attacker access to directories outside the designated root virtual directory.  This will result in information disclosure, and access to possibly privileged information.

58. Sudo Perl Environment Variable Handling Security Bypass Vulnerability
BugTraq ID: 15394
Remote: No
Date Published: 2005-11-11
Relevant URL: http://www.securityfocus.com/bid/15394
Summary:
Sudo is prone to a security bypass vulnerability that could lead to arbitrary code execution.  This issue is due to an error in the application when handling the 'PERLLIB', 'PERL5LIB' and 'PERL5OPT' environment variables when tainting is ignored.

An attacker can exploit this vulnerability to bypass security restrictions and include arbitrary library files.

An attacker must have the ability to run Perl scripts through Sudo to exploit this vulnerability.

59. Lynx URI Handlers Arbitrary Command Execution Vulnerability
BugTraq ID: 15395
Remote: Yes
Date Published: 2005-11-11
Relevant URL: http://www.securityfocus.com/bid/15395
Summary:
Lynx is prone to an arbitrary command execution vulnerability.  This issue is due to a failure in the application to properly sanitize user-supplied input.

A remote attacker can exploit this vulnerability by tricking a victim user to follow a malicious link, thus enabling the attacker to execute arbitrary commands in the context of the victim user.

60. PHPSysInfo Multiple Input Validation Vulnerabilities
BugTraq ID: 15396
Remote: Yes
Date Published: 2005-11-11
Relevant URL: http://www.securityfocus.com/bid/15396
Summary:
phpSysInfo is prone to multiple input validation vulnerabilities.  These issues are due to a failure in the application to properly sanitize user-supplied input.

phpSysInfo is prone to cross-site scripting, HTTP response splitting and arbitrary  local file inclusion vulnerabilities.

An attacker can exploit these vulnerabilities to steal cookie-based authentication credentials, aid in phishing style attacks and retrieve privileged or sensitive information; other attacks are also possible.

61. IBM AIX Diagela.SH Unspecified Security Vulnerability
BugTraq ID: 15397
Remote: No
Date Published: 2005-11-11
Relevant URL: http://www.securityfocus.com/bid/15397
Summary:
IBM AIX is prone to an unspecified security vulnerability.

Very little information is available on this vulnerability.  This BID will be updated as further information becomes available.

62. RealNetworks RealPlayer Unspecified Malformed Image Skin File Buffer Overflow Vulnerability
BugTraq ID: 15398
Remote: Yes
Date Published: 2005-11-12
Relevant URL: http://www.securityfocus.com/bid/15398
Summary:
RealNetworks RealPlayer is prone to an unspecified vulnerability that may let remote attackers execute arbitrary code.  

This issue may be triggered by a malformed image in a skin file.  The cause of the issue is reportedly a stack-based buffer overflow.  It is possible to exploit this issue by enticing a victim user to open a malicious skin file containing a malformed image.

This affects some RealPlayer 10/10.5 releases on Windows platforms.

63. PHPWebThings Download.PHP File Parameter SQL Injection Vulnerability
BugTraq ID: 15399
Remote: Yes
Date Published: 2005-11-12
Relevant URL: http://www.securityfocus.com/bid/15399
Summary:
phpWebThings is prone to an SQL injection vulnerability.  This is an input validation issue related to data that will be used in SQL queries, allowing a remote user to influence the structure and logic of a query.

It is likely that the issue could compromise the software.  Depending on the database implementation and the nature of the affected query, it may also be possible to gain unauthorized access to the database.

64. ActiveCampaign 1-2-All Broadcast Email Admin Control Panel Username SQL Injection Vulnerability
BugTraq ID: 15400
Remote: Yes
Date Published: 2005-11-12
Relevant URL: http://www.securityfocus.com/bid/15400
Summary:
ActiveCampaign 1-2-All Broadcast Email is prone to an SQL injection vulnerability.  This is an input validation issue related to data that will be used in SQL queries, allowing a remote user to influence the structure and logic of a query.

It is likely that the issue could compromise the software.  Depending on the database implementation and the nature of the affected query, it may also be possible to gain unauthorized access to the database.

III. SECURITYFOCUS NEWS ARTICLES
--------------------------------
1. Sony BMG faces digital-rights siege
By: Robert Lemos
As virus writers explore Sony BMG's "rootkit," consumer and security complaints against the content company have gained legal backing, with at least five cases filed or ready to be filed against the music giant.
http://www.securityfocus.com/news/11356

2. Gold at the end of rainbow cracking?
By: Robert Lemos
Large tables of password hashes can make cracking weak logon credentials a snap. Some enterprising people think there may be a business in putting the tables online.
http://www.securityfocus.com/news/11355

3. Suspected bot master busted
By: Robert Lemos
Prosecutors charge a California man with infecting 400,000 computers with bot software and profiting by selling access to the systems and through fraudulent affiliate referrals.
http://www.securityfocus.com/news/11353

4. Hidden DRM code's legitimacy questioned
By: Robert Lemos
Copy protection shipped with music CDs from Sony BMG installs hidden, hard-to-uninstall digital rights management (DRM) software on Windows computers, causing security professionals to charge record labels with dealing in rootkits.
http://www.securityfocus.com/news/11352

5. Skype under scrutiny for bugs
By: John Leyden
The recent emergence of two sets of serious security vulnerabilities in Skype, the popular VoIP communications software app, couldn't have come at a worse time for the firm.
http://www.securityfocus.com/news/11354

6. Say hello to the Skype Trojan
By: John Leyden
Virus writers are targeting Skype users with a new Trojan that poses as the latest version of the popular VoIP software.
http://www.securityfocus.com/news/11348

7. Shared music abuse bug hits iTunes
By: John Leyden
Security researchers have discovered a vulnerability in Apple's popular iTunes application which might be exploited to interfere with shared music downloads.
http://www.securityfocus.com/news/11347

8. US cybersecurity all at sea
By: John Leyden
US cybersecurity risks are being poorly managed by the Department of Homeland Security, according to a former US presidential information security advisor.
http://www.securityfocus.com/news/11345

IV.  SECURITY JOBS LIST SUMMARY
-------------------------------
1. [SJ-JOB] Application Security Architect, Chicago
http://www.securityfocus.com/archive/77/416682

2. [SJ-JOB] Security Architect, New York
http://www.securityfocus.com/archive/77/416692

3. [SJ-JOB] Manager, Information Security, Dallas/Ft Worth
http://www.securityfocus.com/archive/77/416683

4. [SJ-JOB] Security Consultant, Work Remotely
http://www.securityfocus.com/archive/77/416712

5. [SJ-JOB] Security Engineer, Louisville
http://www.securityfocus.com/archive/77/416690

6. [SJ-JOB] Technical Support Engineer, Louisville
http://www.securityfocus.com/archive/77/416568

7. [SJ-JOB] Security Consultant, Nationwide
http://www.securityfocus.com/archive/77/416565

8. [SJ-JOB] Security Researcher, Chicago
http://www.securityfocus.com/archive/77/416566

9. [SJ-JOB] Security Engineer, New York
http://www.securityfocus.com/archive/77/416572

10. [SJ-JOB] Security Engineer, Mountain View
http://www.securityfocus.com/archive/77/416554

11. [SJ-JOB] Security Engineer, Mountain View
http://www.securityfocus.com/archive/77/416555

12. [SJ-JOB] Incident Handler, Chicago
http://www.securityfocus.com/archive/77/416552

13. [SJ-JOB] Jr. Security Analyst, Basingstoke
http://www.securityfocus.com/archive/77/416553

14. [SJ-JOB] Security Engineer, Orange County
http://www.securityfocus.com/archive/77/416550

15. [SJ-JOB] Sales Representative, Louisville
http://www.securityfocus.com/archive/77/416551

16. [SJ-JOB] Application Security Architect, Seattle
http://www.securityfocus.com/archive/77/416431

17. [SJ-JOB] Information Assurance Analyst, WASHINGTON
http://www.securityfocus.com/archive/77/416428

18. [SJ-JOB] Sr. Security Analyst, Toronto
http://www.securityfocus.com/archive/77/416424

19. [SJ-JOB] Security Engineer, Washington
http://www.securityfocus.com/archive/77/416425

20. [SJ-JOB] Incident Handler, WASHINGTON
http://www.securityfocus.com/archive/77/416426

21. [SJ-JOB] Incident Handler, WASHINGTON
http://www.securityfocus.com/archive/77/416427

22. [SJ-JOB] Information Assurance Analyst, Fairfax
http://www.securityfocus.com/archive/77/416412

23. [SJ-JOB] Certification & Accreditation Engineer, Washington DC
http://www.securityfocus.com/archive/77/416420

24. [SJ-JOB] Information Assurance Analyst, Fairfax
http://www.securityfocus.com/archive/77/416407

25. [SJ-JOB] Sales Engineer, Silicon Valley
http://www.securityfocus.com/archive/77/416408

26. [SJ-JOB] Quality Assurance, Cupertino
http://www.securityfocus.com/archive/77/416405

27. [SJ-JOB] Technical Support Engineer, Cupertin0
http://www.securityfocus.com/archive/77/416406

28. [SJ-JOB] Sr. Security Engineer, Arlington
http://www.securityfocus.com/archive/77/416404

29. [SJ-JOB] Sr. Product Manager, Fort Lauderdale
http://www.securityfocus.com/archive/77/416254

30. [SJ-JOB] Sr. Security Engineer, Windsor
http://www.securityfocus.com/archive/77/416250

31. [SJ-JOB] Sr. Product Manager, Fort Lauderdale
http://www.securityfocus.com/archive/77/416251

32. [SJ-JOB] CISO, New York
http://www.securityfocus.com/archive/77/416248

33. [SJ-JOB] Director, Information Security, Pleasanton
http://www.securityfocus.com/archive/77/416249

34. [SJ-JOB] Security Engineer, Boca Raton
http://www.securityfocus.com/archive/77/416247

35. [SJ-JOB] Management, Los Angeles
http://www.securityfocus.com/archive/77/416161

36. [SJ-JOB] Security Consultant, Los Angeles
http://www.securityfocus.com/archive/77/416163

37. [SJ-JOB] Developer, Pasadena
http://www.securityfocus.com/archive/77/416159

38. [SJ-JOB] Security Product Manager, Richland
http://www.securityfocus.com/archive/77/416160

39. [SJ-JOB] Sr. Product Manager, Redwood City
http://www.securityfocus.com/archive/77/416162

V.   INCIDENTS LIST SUMMARY
---------------------------
1. Odd identd behavior
http://www.securityfocus.com/archive/75/416517

VI.  VULN-DEV RESEARCH LIST SUMMARY
-----------------------------------
VII. MICROSOFT FOCUS LIST SUMMARY
---------------------------------
1. Renaming Administrator account
http://www.securityfocus.com/archive/88/416718

2. ISA Server or Firewall Appliance?
http://www.securityfocus.com/archive/88/416700

3. break in?
http://www.securityfocus.com/archive/88/416473

4. On the topic of Windows Hardening
http://www.securityfocus.com/archive/88/416471

5. Deny Logon by Domain Admin account to specific PC's or deny to all BUT specific PC's
http://www.securityfocus.com/archive/88/416327

6. What server hardening are you doing these days?
http://www.securityfocus.com/archive/88/416232

7. SecurityFocus Microsoft Newsletter #264
http://www.securityfocus.com/archive/88/416122

8. Setup MD5 Checksum for FTP downloads on Win2000 Server OS
http://www.securityfocus.com/archive/88/416121

VIII. SUN FOCUS LIST SUMMARY
----------------------------
IX. LINUX FOCUS LIST SUMMARY
----------------------------
1. SF new column announcement: Linux worm overrated
http://www.securityfocus.com/archive/91/416253

X.  UNSUBSCRIBE INSTRUCTIONS
-----------------------------
To unsubscribe send an e-mail message to [email protected] from the subscribed address. The contents of the subject or message body do not matter. You will receive a confirmation request message to which you will have to answer. Alternatively you can also visit http://www.securityfocus.com/newsletters and unsubscribe via the website.

If your email address has changed email [email protected] and ask to be manually removed.

XI.   SPONSOR INFORMATION
------------------------
This Issue is Sponsored By: Watchfire AppScan

It's been reported that 75% of websites are vulnerable to attack. That's because hackers know to exploit weaknesses in web applications. Traditional approaches to securing these assets no longer apply. Address Application Security Challenges -- download this white paper today.

https://www.watchfire.com/securearea/whitepapers.aspx?id=701300000002gRE