SecurityFocus Newsletter #358
Peter Laborge <[email protected]> Tue, 11 Jul 2006 16:38:33 -0600
| Newsgroups | gmane.comp.security.news.general |
|---|---|
| Message-ID | <[email protected]> |
SecurityFocus Newsletter #358
----------------------------------------
This issue is Sponsored by: Lancope
"Revolutionize How You View Your Network Security"
How do you protect what you can't see? Stop protecting while blind. Gain network visibility now.
Learn how Cisco NetFlow gives visibility and enables cost-effective security across distributed enterprise networks. StealthWatch, the most widely used Network Behavior Analysis (NBA) and Response solution, leverages Cisco NetFlow to provide scalable, internal network security.
ALERT: Download FREE White Paper "Network Behavior Analysis (NBA) in the Enterprise."
http://www.lancope.com/resource/
------------------------------------------------------------------
I. FRONT AND CENTER
1. Basic journey of a packet
2. Windows genuine disadvantage
II. BUGTRAQ SUMMARY
1. Info-ZIP UnZip File Name Buffer Overflow Vulnerability
2. Samba Internal Data Structures Denial of Service Vulnerability
3. ExtCalendar ExtCalendar.php Remote File Include Vulnerability
4. PHPBB For Mambo Multiple Remote File Include Vulnerabilities
5. WU-FTPD restricted-gid Unauthorized Access Vulnerability
6. BosClassifieds InsPat Parameter Multiple Remote File Include Vulnerabilities
7. Xine-lib DVD Subpicture Decoder Heap Overflow Vulnerability
8. WebCalendar Username Enumeration Vulnerability
9. Pivot Multiple Input Validation Vulnerabilities
10. OpenOffice XML File Format Buffer Overflow Vulnerability
11. OpenOffice Java Applet System Access Vulnerability
12. Xine Bug Reporting Script Insecure Temporary File Creation Vulnerability
13. Sendmail Malformed MIME Message Denial Of Service Vulnerability
14. Invision Power Board Multiple HTML Injection Vulnerabilities
15. Microsoft Office MSO.DLL LsCreateLine() Potential Code Execution Vulnerability
16. MICO Object Key Remote Denial of Service Vulnerability
17. AjaxPortal LoginADP Function SQL Injection Vulnerability
18. PostgreSQL Multibyte Character Encoding SQL Injection Vulnerabilities
19. Juniper Networks JUNOS IPv6 Packet Processing Remote Denial of Service Vulnerability
20. Microsoft Internet Explorer HtmlDlgSafeHelper Remote Denial Of Service Vulnerability
21. Graffiti Forums Topics.PHP SQL Injection Vulnerability
22. Juniper Networks DX Web Login HTML Injection Vulnerability
23. Farsinews Tiny_mce_gzip.PHP Directory Traversal Vulnerability
24. MIMESweeper For Web Access Denied Cross-site Scripting Vulnerability
25. Horde Help Viewer Remote PHP Code Execution Vulnerability
26. HP-UX Support Tools Manager Unspecified Local Denial of Service Vulnerability
27. Invision Power Board Index.PHP Act Parameter SQL Injection Vulnerability
28. Zope Docutils Information Disclosure Vulnerability
29. SMF Forum SMF.PHP Remote File Include Vulnerability
30. WebEx ActiveX Multiple Remote Code Execution Vulnerabilities
31. SweetSuite.NET Content Management System Search.ASPX Cross-Site Scripting Vulnerability
32. Tutos Multiple Remote Input Validation Vulnerabilities
33. Cutenews Index.PHP Cross-site Scripting Vulnerability
34. PC_CookBook PCCookBook.PHP Remote File Include Vulnerability
35. Apache mod_auth_pgsql Multiple Format String Vulnerabilities
36. SimpleBoard SBP Parameter Multiple Remote File Include Vulnerabilities
37. Linux Kernel Netfilter Conntrack_Proto_SCTP.C Denial of Service Vulnerability
38. Microsoft Internet Explorer OuterHTML Redirection Handling Information Disclosure Vulnerability
39. Microsoft Windows Server Driver Mailslot Remote Heap Buffer Overflow Vulnerability
40. Linux Kernel PRCTL Core Dump Handling Privilege Escalation Vulnerability
41. Microsoft Excel File Rebuilding Remote Code Execution Vulnerability
42. Gimp XCF_load_vector Function Buffer Overflow Vulnerability
43. Invision Power Board Multiple SQL Injection Vulnerabilities
44. Microsoft HLINK.DLL Link Memory Corruption Vulnerability
45. LifeType Index.PHP Date Parameter SQL Injection Vulnerability
46. Microsoft Internet Explorer HHCtrl ActiveX Control Memory Corruption Vulnerability
47. Webmin/Usermin Unspecifed Information Disclosure Vulnerability
48. PHP-Blogger Multiple Cross-Site Scripting Vulnerabilities
49. GnuPG Parse_User_ID Remote Buffer Overflow Vulnerability
50. Qbik WinGate IMAP Service Directory Traversal Vulnerability
51. Sabdrimer CMS Advanced1.PHP Remote File Include Vulnerability
52. SIPfoundry SIPXtapi CSeq Processing Remote Buffer-Overflow Vulnerability
53. Microsoft Excel Unspecified Remote Code Execution Vulnerability
54. Microsoft Excel Selection Record Variant Remote Code Execution Vulnerability
55. Microsoft Internet Explorer Object.Microsoft.DXTFilter Denial Of Service Vulnerability
56. Microsoft Excel LABEL Record Remote Code Execution Vulnerability
57. Microsoft Internet Explorer DirectAnimation.DAUserData Denial Of Service Vulnerability
58. Microsoft Excel Selection Record Remote Code Execution Vulnerability
59. Microsoft Windows DHCP Client Service Remote Code Execution Vulnerability
60. Nullsoft SHOUTcast Multiple HTML Injection Vulnerabilities
61. LibTIFF tiff2pdf Remote Buffer Overflow Vulnerability
62. FreeType LWFN Files Buffer Overflow Vulnerability
63. RW::Download Stats.PHP Remote File Include Vulnerability
64. Microsoft Internet Explorer 6 RDS.DataControl Denial Of Service Vulnerability
65. Trac Information Disclosure And Denial of Service Vulnerabilities
66. Webvizyon SayfalaAltList.ASP SQL Injection Vulnerability
67. Linux Kernel POSIX-CPU-TIMERS.C Local Denial of Service Vulnerability
68. ATutor Multiple Input Validation Vulnerabilities
69. Linux Kernel Signal_32.C Local Denial of Service Vulnerability
70. Linux Kernel Netfilter Do_Add_Counters Local Race Condition Vulnerability
71. Multiple Browser Marquee Denial of Service Vulnerability
72. MySQL Server Str_To_Date Remote Denial Of Service Vulnerability
73. Papoo Multiple Input Validation Vulnerabilities
74. TWiki Arbitrary File Upload Vulnerability
75. Vbulletin Member.PHP Cross-Site Scripting Vulnerability
76. DGNews Search.PHP SQL Injection Vulnerability
77. OpenOffice Arbitrary Macro Execution Vulnerability
78. CommonSense CMS Search.PHP Date Parameter SQL Injection Vulnerability
79. GNUTLS LibTASN1 DER Decoding Denial of Service Vulnerabilities
80. Macromedia Flash Malformed SWF File Multiple Vulnerabilities
81. SQuery LibPath Parameter Multiple Remote File Include Vulnerabilities
82. PPPD Winbind Plugin Local Privilege Escalation Vulnerability
83. Phorum Multiple Input Validation Vulnerabilities
84. VBZooM Multiple SQL Injection Vulnerabilitie
85. FlexWATCH Network Camera Cross-Site Scripting Vulnerability
86. EJ3 TOPo Class_DB_Text.PHP Multiple Remote PHP Script Code Injection Vulnerabilities
87. SaPHPLesson Add.PHP SQL Injection Vulnerability
88. Hosting Controller Error.ASP Cross-site Scripting Vulnerability
89. Microsoft ASP.NET Application Folder Information Disclosure Vulnerability
90. Microsoft Office Malformed GIF File Remote Code Execution Vulnerability
91. Microsoft Office Malformed PNG File Remote Code Execution Vulnerability
92. Microsoft Office String Parsing Remote Code Execution Vulnerability
93. Microsoft Office Property Code Execution Vulnerability
94. Microsoft Windows Server Driver Remote Information Disclosure Vulnerability
95. Microsoft Excel FNGROUPCOUNT Record Remote Code Execution Vulnerability
96. Microsoft Office Malformed String Parsing Code Execution Vulnerability
97. Microsoft Excel COLINFO Record Remote Code Execution Vulnerability
98. Microsoft Excel OBJECT Record Remote Code Execution Vulnerability
99. Microsoft IIS ASP Remote Code Execution Vulnerability
100. Mutt BROWSE_GET_NAMESPACE IMAP Namespace Processing Remote Buffer Overflow Vulnerability
III. SECURITYFOCUS NEWS
1. Researchers look to predict software flaws
2. AT&T privacy policy overreaches, lawyers say
3. USB drives pose insider threat
4. SCADA industry debates flaw disclosure
IV. SECURITY JOBS LIST SUMMARY
1. [SJ-JOB] CHECK Team Leader, UK-Wide (home-based)
2. [SJ-JOB] Technology Risk Consultant, Central Jersey
3. [SJ-JOB] Security Architect, New York
4. [SJ-JOB] Sr. Security Engineer, New York
5. [SJ-JOB] Account Manager, San Francisco
6. [SJ-JOB] Account Manager, New York
7. [SJ-JOB] Security Engineer, Baltimore
8. [SJ-JOB] Security Consultant, Chandler
9. [SJ-JOB] Channel / Business Development, San Jose
10. [SJ-JOB] VP of Marketing, Princeton
11. [SJ-JOB] Director, Information Security, Harisburg
12. [SJ-JOB] Technical Support Engineer, New York
13. [SJ-JOB] Director, Information Security, New York
14. [SJ-JOB] Technical Support Engineer, New York
15. [SJ-JOB] Security System Administrator, New York
16. [SJ-JOB] Sr. Product Manager, Yonkers
17. [SJ-JOB] Technical Support Engineer, New York
18. [SJ-JOB] Technical Support Engineer, Yonkers
19. [SJ-JOB] Security Engineer, Alexandria
20. [SJ-JOB] Account Manager, Bay Area
21. [SJ-JOB] Sales Engineer, San Francisco
22. [SJ-JOB] Sales Representative, Washington
23. [SJ-JOB] Sales Representative, New York
24. [SJ-JOB] Application Security Engineer, New York
25. [SJ-JOB] Management, Charlotte
26. [SJ-JOB] Security Product Marketing Manager, San Francisco and Surrounding Area
27. [SJ-JOB] Sales Engineer, San Francisco and Surrounding Area
28. [SJ-JOB] Account Manager, San Francisco and Surrounding Area
29. [SJ-JOB] Technical Support Engineer, New York
30. [SJ-JOB] Technical Support Engineer, New York
31. [SJ-JOB] Technical Support Engineer, New York
32. [SJ-JOB] Security Architect, New York
33. [SJ-JOB] Technical Support Engineer, New York
34. [SJ-JOB] Security System Administrator, Brooklyn
35. [SJ-JOB] Senior Software Engineer, Santa Clara
36. [SJ-JOB] Sr. Security Engineer, NY
37. [SJ-JOB] Sales Engineer, Los Angeles
38. [SJ-JOB] Application Security Engineer, Brooklyn
39. [SJ-JOB] Security Product Manager, Brooklyn
40. [SJ-JOB] Security Engineer, Brooklyn
41. [SJ-JOB] Security System Administrator, New York
42. [SJ-JOB] Sales Engineer, Orange County
43. [SJ-JOB] Director, Information Security, Chicago
44. [SJ-JOB] CISO, Northern Suburb
45. [SJ-JOB] Sales Engineer, San Diego
46. [SJ-JOB] Security Consultant, Bangalore
47. [SJ-JOB] Management, Cupertino
48. [SJ-JOB] Security Architect, Bay Area
49. [SJ-JOB] Security Engineer, New York
50. [SJ-JOB] Security Researcher, Tel Aviv
51. [SJ-JOB] Security Engineer, Reston
52. [SJ-JOB] Sales Engineer, San Francisco
53. [SJ-JOB] Penetration Engineer, North Bay
54. [SJ-JOB] Penetration Engineer, Montvale
55. [SJ-JOB] Manager, Information Security, Montvale
56. [SJ-JOB] Security Consultant, Basingstoke
57. [SJ-JOB] Sales Engineer, Seattle
58. [SJ-JOB] Sales Engineer, Portland
V. INCIDENTS LIST SUMMARY
1. System Idle Process making TCP connections
2. Outbound Connections
3. suspicious firewall rules in WinXP firewall
VI. VULN-DEV RESEARCH LIST SUMMARY
VII. MICROSOFT FOCUS LIST SUMMARY
1. DACLS for software distribution points...
VIII. SUN FOCUS LIST SUMMARY
IX. LINUX FOCUS LIST SUMMARY
1. smtp proxy that takes in smtp auth?
X. UNSUBSCRIBE INSTRUCTIONS
XI. SPONSOR INFORMATION
I. FRONT AND CENTER
---------------------
1. Basic journey of a packet
By Don Parker
The purpose of this introductory article is to look at basic look at the journey of a packet across the Internet, from packet creation to switches, routers, NAT, and so on. This topic is recommended for those who are new to the networking and security field and may not have a basic understanding of the underlying process.
http://www.securityfocus.com/infocus/1870
2. Windows genuine disadvantage
By Mark Rasch
A recent lawsuit filed against Microsoft should have all companies reexamining their privacy policies to determine what information they are actually collecting about customers, and what they can possibly do with it.
http://www.securityfocus.com/columnists/409
II. BUGTRAQ SUMMARY
--------------------
1. Info-ZIP UnZip File Name Buffer Overflow Vulnerability
BugTraq ID: 15968
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/15968
Summary:
Info-ZIP 'unzip' is susceptible to a filename buffer-overflow vulnerability. The application fails to properly bounds-check user-supplied data before copying it into an insufficiently sized memory buffer.
This issue allows attackers to execute arbitrary machine code in the context of users running the affected application.
2. Samba Internal Data Structures Denial of Service Vulnerability
BugTraq ID: 18927
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18927
Summary:
The smbd daemon is prone to a denial-of-service vulnerability.
An attacker can exploit this issue to consume excessive memory resources ultimately crashing the affected application.
This issue affects Samba versions 3.0.1 through 3.0.22 inclusive.
3. ExtCalendar ExtCalendar.php Remote File Include Vulnerability
BugTraq ID: 18876
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18876
Summary:
ExtCalendar is prone to a remote file-include vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input.
An attacker can exploit this issue to include arbitrary remote files containing malicious PHP code and execute it in the context of the webserver process. This may allow the attacker to compromise the application and to gain access to the underlying system.
Version 2.0 is vulnerable to this issue; prior versions may also be affected.
4. PHPBB For Mambo Multiple Remote File Include Vulnerabilities
BugTraq ID: 18914
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18914
Summary:
phpBB for Mambo is prone to multiple remote file-include vulnerabilities. These issues are due to a failure in the application to properly sanitize user-supplied input.
An attacker can exploit these issues to include an arbitrary remote file containing malicious PHP code and execute it in the context of the webserver process. This may facilitate a compromise of the application and the underlying system; other attacks are also possible.
Versions 1.2.4-RC3 and prior are affected.
5. WU-FTPD restricted-gid Unauthorized Access Vulnerability
BugTraq ID: 9832
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/9832
Summary:
WU-FTPD FTP server is reported prone to an unauthorized-access vulnerability. The issue is related to the "restricted-gid" feature supported by WU-FTPD. This feature allows an administrator to restrict FTP user access to certain directories. The vulnerability reportedly allows users to bypass those restrictions through modifying the permissions on their home directory so that they themselves can no longer access it. Under such circumstances, the server may grant the user unauthorized access to
the root directory.
Further technical details are not known at this time. This record will be updated as more information becomes available.
This BID is created in response to Two Possibly New WU-FTPD Vulnerabilities BID 9820, which is being retired.
6. BosClassifieds InsPat Parameter Multiple Remote File Include Vulnerabilities
BugTraq ID: 18883
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18883
Summary:
BosClassifieds is prone to multiple remote file-include vulnerabilities. These issues are due to a failure in the application to properly sanitize user-supplied input.
An attacker can exploit these issues to include an arbitrary remote file containing malicious PHP code and execute it in the context of the webserver process. This may facilitate a compromise of the application and the underlying system; other attacks are also possible.
7. Xine-lib DVD Subpicture Decoder Heap Overflow Vulnerability
BugTraq ID: 11205
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/11205
Summary:
A buffer overflow in the DVD subpicture component, exploitable through malicious DVD or MPEG content, may allow for the execution of arbitrary code. The Xine-lib decoder converts subpicture data into an internal representation and stores it in dynamically allocated memory. A flaw in the calculation of required buffer space may result in the allocation of a buffer that is too small. Consequently, neighboring data in the heap may be corrupted when data is written to the buffer.
Attackers could exploit this vulnerability to write arbitrary words to nearly arbitrary locations in memory. The Linux and Windows dynamic memory-allocation subsystems may be more susceptible than BSD-based systems.
8. WebCalendar Username Enumeration Vulnerability
BugTraq ID: 17853
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/17853
Summary:
WebCalendar is prone to a username-enumeration vulnerability. This issue is due to a design error in the application when verifying user-supplied input.
Attackers may exploit this vulnerability to discern valid usernames. This may aid them in brute-force password cracking or other attacks.
9. Pivot Multiple Input Validation Vulnerabilities
BugTraq ID: 18881
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18881
Summary:
Pivot is prone to multiple input-validation vulnerabilities, including remote file-include, local file-include, cross-site scripting, and privilege-escalation issues. All of these issues are due to a failure in the application to properly sanitize user-supplied input.
A successful exploit of these vulnerabilities could allow an attacker to compromise the application, access or modify data, steal cookie-based authentication credentials, execute remote PHP code in the context of the webserver process, and gain unauthorized privileges.
Version 1.30 RC2 is vulnerable to this issue; other versions may also be affected.
10. OpenOffice XML File Format Buffer Overflow Vulnerability
BugTraq ID: 18739
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18739
Summary:
OpenOffice is prone to a vulnerability that allows attackers to gain unauthorized access to a vulnerable computer.
The vendor has reported that this vulnerability allows malicious XML documents to cause a buffer overflow leading to read/write privileges to local files on a vulnerable computer.
11. OpenOffice Java Applet System Access Vulnerability
BugTraq ID: 18737
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18737
Summary:
OpenOffice is prone to a vulnerability that allows attackers to gain unauthorized access to a vulnerable computer.
The vendor has reported that this vulnerability allows malicious Java applets to gain read/write privileges to local files on a vulnerable computer.
12. Xine Bug Reporting Script Insecure Temporary File Creation Vulnerability
BugTraq ID: 9939
Remote: No
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/9939
Summary:
The xine bug-reporting scripts (xine-bugreport and xine-check) create temporary files in an insecure manner. A malicious local user could take advantage of this issue by mounting a symbolic-link attack to corrupt other system files, most likely resulting in the destruction of data. Privilege escalation is also possible. This issue occurs only when the vulnerable scripts are run to submit a bug report to the vendor.
Note that xine-bugreport and xine-check are separate instances of the same script.
13. Sendmail Malformed MIME Message Denial Of Service Vulnerability
BugTraq ID: 18433
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18433
Summary:
Sendmail is prone to a denial-of-service vulnerability. This issue is due to a failure in the application to properly handle malformed multi-part MIME messages.
An attacker can exploit this issue to crash the sendmail process during delivery.
14. Invision Power Board Multiple HTML Injection Vulnerabilities
BugTraq ID: 18571
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18571
Summary:
Invision Power Board is reported prone to multiple HTML-injection vulnerabilities.
Since the application fails to filter HTML content, attackers can exploit various latent vulnerabilities in web-based applications. A successful attack may involve HTML-injection or cross-site scripting issues.
Invision Power Board versions prior to 2.1.6 (2006-06-19) are affected by these issues.
15. Microsoft Office MSO.DLL LsCreateLine() Potential Code Execution Vulnerability
BugTraq ID: 18905
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18905
Summary:
Microsoft Office is reported to be prone to a potential code execution vulnerability.
This vulnerability occurs when the application handles a specially crafted document. A successful attack may result in a remote compromise in the context of an affected user. Attack attempts may result in a denial of service condition as well.
Reports indicate that this issue can be triggered with a malicious Microsoft Word document; however, other Microsoft Office applications that employ the vulnerable function are vulnerable as well.
16. MICO Object Key Remote Denial of Service Vulnerability
BugTraq ID: 18869
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18869
Summary:
MICO is susceptible to a remote denial-of-service vulnerability. This issue is due to a failure of the application to properly handle unexpected input.
This issue allows remote attackers to crash affected applications, denying further service to legitimate users.
MICO versions 2.3.12RC3 and 2.3.12 are vulnerable to this issue; other versions may also be affected.
17. AjaxPortal LoginADP Function SQL Injection Vulnerability
BugTraq ID: 18897
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18897
Summary:
AjaxPortal is prone to an SQL-injection vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query.
A successful exploit could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database implementation.
It should be noted that this vulnerability exists only when 'PHP magic quotes' is disabled.
18. PostgreSQL Multibyte Character Encoding SQL Injection Vulnerabilities
BugTraq ID: 18092
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18092
Summary:
PostgreSQL is prone to SQL-injection vulnerabilities. These issues are due to a potential mismatch of multibyte character conversions between PostgreSQL servers and client applications.
A successful exploit could allow an attacker to execute arbitrary SQL statements on affected servers. This may allow the attacker to compromise the targeted computer, access or modify data, or exploit other latent vulnerabilities.
PostgreSQL versions prior to 7.3.15, 7.4.13, 8.0.8, and 8.1.4 are vulnerable to these issues.
19. Juniper Networks JUNOS IPv6 Packet Processing Remote Denial of Service Vulnerability
BugTraq ID: 18930
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18930
Summary:
JUNOS is prone to a remote denial-of-service vulnerability.This issue arises when the application consistently handles specially crafted IPv6 packets.
All versions of JUNOS Internet Software built prior to May 10, 2006 running on M-series, T-series, and J-series routers are vulnerable.
20. Microsoft Internet Explorer HtmlDlgSafeHelper Remote Denial Of Service Vulnerability
BugTraq ID: 18929
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18929
Summary:
Microsoft Internet Explorer is prone to a denial-of-service vulnerability.
This issue is triggered when an attacker convinces a victim user to visit a malicious website.
Remote attackers may exploit this issue to crash Internet Explorer, effectively denying service to legitimate users.
21. Graffiti Forums Topics.PHP SQL Injection Vulnerability
BugTraq ID: 18928
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18928
Summary:
Graffiti Forums is prone to an SQL-injection vulnerability.
This issue is due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query.
Successful exploit could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database implementation.
22. Juniper Networks DX Web Login HTML Injection Vulnerability
BugTraq ID: 18926
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18926
Summary:
Juniper Networks DX is prone to an HTML-injection vulnerability. This vulnerability exists because the application fails to properly sanitize user-supplied input before using it in dynamically generated content.
Attacker-supplied HTML and script code would be executed in the context of the affected website, potentially allowing for theft of cookie-based authentication credentials. An attacker could also exploit this issue to control how the site is rendered to the user; other attacks are also possible.
Version 5.1 is vulnerable; other versions may also be affected.
23. Farsinews Tiny_mce_gzip.PHP Directory Traversal Vulnerability
BugTraq ID: 18925
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18925
Summary:
Farsinews is prone to a directory-traversal vulnerability because it fails to properly sanitize user-supplied input.
An attacker can exploit this vulnerability to retrieve arbitrary files from the vulnerable system in the context of the affected application. Information obtained may aid in further attacks.
Farsinews 3.0BETA1 is reported to be vulnerable; other versions may also be vulnerable.
24. MIMESweeper For Web Access Denied Cross-site Scripting Vulnerability
BugTraq ID: 18916
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18916
Summary:
MIMESweeper For Web is prone to a cross-site scripting vulnerability because it fails to sanitize input before displaying it to users of the application.
An attacker may leverage this issue to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
25. Horde Help Viewer Remote PHP Code Execution Vulnerability
BugTraq ID: 17292
Remote: Yes
Last Updated: 2006-07-07
Relevant URL: http://www.securityfocus.com/bid/17292
Summary:
Horde is prone to a remote PHP code-execution vulnerability.
An attacker can exploit this issue to execute arbitrary malicious PHP code and in the context of the webserver process. This may help the attacker compromise the application and the underlying system; other attacks are also possible.
Horde versions 3.0 up to 3.0.9 and 3.1.0 are vulnerable; other versions may also be affected.
26. HP-UX Support Tools Manager Unspecified Local Denial of Service Vulnerability
BugTraq ID: 18457
Remote: No
Last Updated: 2006-07-07
Relevant URL: http://www.securityfocus.com/bid/18457
Summary:
HP-UX is prone to an unspecified local denial-of-service vulnerability when running Support Tools Manager.
This issue arises because the software fails to handle exceptional conditions in a proper manner.
A local attacker can exploit this issue to cause denial-of-service conditions.
Very little information is currently available on this issue; this BID will be updated as further information becomes available.
27. Invision Power Board Index.PHP Act Parameter SQL Injection Vulnerability
BugTraq ID: 18782
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18782
Summary:
Invision Power Board is prone to an SQL-injection vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query.
Successful exploitation could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database implementation.
Version 1.3 Final is affected; other versions may also be vulnerable to this issue.
28. Zope Docutils Information Disclosure Vulnerability
BugTraq ID: 18856
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18856
Summary:
Zope is prone to an information-disclosure vulnerability.
This issue is due to an error in the 'docutils' module when parsing and rendering text.
An attacker can exploit this issue by creating a web page with restructured text to access arbitrary files or to execute malicious code.
Versions 2.7.0 to 2.9.3 are vulnerable.
29. SMF Forum SMF.PHP Remote File Include Vulnerability
BugTraq ID: 18924
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18924
Summary:
SMF Forum for Mambo is prone to a remote file-include vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input.
An attacker can exploit this issue to include arbitrary remote files containing malicious PHP code and execute it in the context of the webserver process. This may allow the attacker to compromise the application and to gain access to the underlying system.
Version 1.3 is vulnerable to this issue; prior versions may also be affected.
30. WebEx ActiveX Multiple Remote Code Execution Vulnerabilities
BugTraq ID: 18860
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18860
Summary:
WebEx ActiveX control is prone to multiple remote code-execution vulnerabilities.
An attacker could exploit these issues by creating a malicious web page that would initialize the WebEx ActiveX control, and then download and initialize malicious DLL files.
This issue could allow an attacker to execute arbitrary code.
Versions 2.0.0.7 and prior are affected.
31. SweetSuite.NET Content Management System Search.ASPX Cross-Site Scripting Vulnerability
BugTraq ID: 17254
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/17254
Summary:
SweetSuite.NET Content Management System is prone to a cross-site scripting vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input.
An attacker may leverage this issue to have arbitrary script code executed in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
32. Tutos Multiple Remote Input Validation Vulnerabilities
BugTraq ID: 11221
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/11221
Summary:
Tutos is reported prone to multiple remote input-validation vulnerabilities. These issues exist due to insufficient sanitization of user-supplied data and may allow an attacker to carry out cross-site scripting and SQL-injection attacks.
These issue reportedly affect Tutos 1.1.2004-04-14.
33. Cutenews Index.PHP Cross-site Scripting Vulnerability
BugTraq ID: 18918
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18918
Summary:
Cutenews is prone to a cross-site scripting vulnerability because it fails to sanitize input before displaying it to users of the application.
An attacker may leverage this issue to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
34. PC_CookBook PCCookBook.PHP Remote File Include Vulnerability
BugTraq ID: 18919
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18919
Summary:
pc_cookbook for Joomla is prone to a remote file-include vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input.
An attacker can exploit this issue to include arbitrary remote files containing malicious PHP code and execute it in the context of the webserver process. This may allow the attacker to compromise the application and to gain access to the underlying system.
Version 0.3 is vulnerable to this issue; prior versions may also be affected.
35. Apache mod_auth_pgsql Multiple Format String Vulnerabilities
BugTraq ID: 16153
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/16153
Summary:
The mod_auth_pgsql module is prone to multiple format-string vulnerabilities. These issues are due to the application's failure to properly sanitize user-supplied input before including it in the format-specification argument of formatted printing functions.
These issues could allow remote attackers to execute arbitrary code in the context of the webserver user and gain unauthorized access.
36. SimpleBoard SBP Parameter Multiple Remote File Include Vulnerabilities
BugTraq ID: 18917
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18917
Summary:
SimpleBoard is prone to multiple remote file-include vulnerabilities because it fails to properly sanitize user-supplied input.
An attacker can exploit these issues to include an arbitrary remote file containing malicious PHP code and execute it in the context of the webserver process. This may facilitate a compromise of the application and the underlying system; other attacks are also possible.
37. Linux Kernel Netfilter Conntrack_Proto_SCTP.C Denial of Service Vulnerability
BugTraq ID: 18755
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18755
Summary:
The Linux kernel 'netfilter' module is prone to a denial-of-service vulnerability.
Successful exploits of this vulnerability will cause the kernel to crash, effectively denying service to legitimate users.
38. Microsoft Internet Explorer OuterHTML Redirection Handling Information Disclosure Vulnerability
BugTraq ID: 18682
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18682
Summary:
Microsoft Internet Explorer is prone to an information-disclosure vulnerability because it fails to properly enforce cross-domain policies.
This issue may allow attackers to access arbitrary websites in the context of a targeted user's browser session. This may allow attackers to perform actions in web applications with the privileges of exploited users or to gain access to potentially sensitive information. This may aid attackers in further attacks.
Microsoft Internet Explorer version 6.0 on Windows XP SP2 is vulnerable to this issue; other versions may also be affected.
39. Microsoft Windows Server Driver Mailslot Remote Heap Buffer Overflow Vulnerability
BugTraq ID: 18863
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18863
Summary:
Microsoft Windows Server driver is susceptible to a remote heap buffer-overflow vulnerability. This issue is due to a failure of the software to properly bounds check user-supplied input prior to copying it to an insufficiently-sized memory buffer.
Exploiting this issue allows anonymous, remote attackers to execute arbitrary machine code in the context of the affected driver. This facilitates the complete compromise of affected computers.
Microsoft Windows XP SP2 and Microsoft Windows Server 2003 SP1 are not vulnerable to this issue in their default configuration.
40. Linux Kernel PRCTL Core Dump Handling Privilege Escalation Vulnerability
BugTraq ID: 18874
Remote: No
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18874
Summary:
Linux kernel is prone to a local privilege-escalation vulnerability.
A local attacker may gain elevated privileges by creating a coredump file in a directory that they do not have write access to.
A successful attack may result in a complete compromise.
Linux kernel versions prior to 2.6.17.4 are vulnerable.
41. Microsoft Excel File Rebuilding Remote Code Execution Vulnerability
BugTraq ID: 18938
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18938
Summary:
Microsoft Excel is prone to a remote code-execution vulnerability.
Successfully exploiting this issue allows attackers to corrupt process memory, and execute arbitrary code in the context of targeted users.
Note that MS Office applications include functionality to embed Office files as objects contained in other Microsoft Office files. As an example, Microsoft Word files may contain embedded malicious Microsoft Excel files, making Word documents another possible attack vector.
42. Gimp XCF_load_vector Function Buffer Overflow Vulnerability
BugTraq ID: 18877
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18877
Summary:
Gimp is prone to a buffer-overflow vulnerability. This issue is due to the software's failure to properly bounds-check user-supplied input data before copying it to an insufficiently sized memory buffer.
An attacker may cause malicious code to execute by forcing the application to read raw data from a malicious image file, with the privileges of the user running the GIMP application.
43. Invision Power Board Multiple SQL Injection Vulnerabilities
BugTraq ID: 18836
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18836
Summary:
Invision Power Board is prone to multiple SQL-injection vulnerabilities. These issues are due to a failure in the application to properly sanitize user-supplied data before using it in an SQL query.
A successful exploit could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database implementation.
44. Microsoft HLINK.DLL Link Memory Corruption Vulnerability
BugTraq ID: 18500
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18500
Summary:
Microsoft HLINK.DLL is prone to a memory-corruption vulnerability. This issue is due to the library's failure to properly bounds-check user-supplied input before copying it to an insufficiently sized memory buffer.
Successfully exploiting this issue allows attackers to execute arbitrary machine code in the context of applications that use the affected library. This facilitates the remote compromise of affected computers. Failed exploit attempts will likely crash targeted applications.
This issue has been shown to be exploitable through Microsoft Excel files. Other applications using the affected library may also be affected.
Information regarding which specific versions of HLINK.DLL are affected (and which Microsoft Windows operating systems that include the affected library) is currently unavailable. This BID will be updated as further information is disclosed.
45. LifeType Index.PHP Date Parameter SQL Injection Vulnerability
BugTraq ID: 18835
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18835
Summary:
LifeType is prone to an SQL-injection vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query.
A successful exploit could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database implementation.
Version 1.0.5 is vulnerable to this issue; other versions may also be affected.
46. Microsoft Internet Explorer HHCtrl ActiveX Control Memory Corruption Vulnerability
BugTraq ID: 18769
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18769
Summary:
Microsoft Internet Explorer is prone to a memory-corruption vulnerability. This is related to the handling of the HHCtrl ActiveX control.
Attackers may exploit this issue via a malicious web page to execute arbitrary code in the context of the currently logged-in user. Exploitation attempts may lead to a denial-of-service condition as well. Attackers may also employ HTML email to carry out an attack.
47. Webmin/Usermin Unspecifed Information Disclosure Vulnerability
BugTraq ID: 18744
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18744
Summary:
Webmin and Usermin are prone to an unspecified information-disclosure vulnerability. This issue is due to a failure in the applications to properly sanitize user-supplied input.
An attacker can exploit this issue to retrieve potentially sensitive information.
This issue affects Webmin versions prior to 1.290 and Usermin versions prior to 1.220.
Unconfirmed reports suggest that this issue is the same as the one discussed in BID 18613 (Webmin Remote Directory Traversal Vulnerability). However, the fixes associated with that issue did not completely solve the vulnerability.
48. PHP-Blogger Multiple Cross-Site Scripting Vulnerabilities
BugTraq ID: 18909
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18909
Summary:
PHP-Blogger is prone to multiple cross-site scripting vulnerabilities because it fails to properly sanitize user-supplied input.
An attacker may leverage any of these issues to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
49. GnuPG Parse_User_ID Remote Buffer Overflow Vulnerability
BugTraq ID: 18554
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18554
Summary:
GnuPG is prone to a remote buffer-overflow vulnerability because it fails to properly bounds-check user-supplied input before copying it to an insufficiently sized memory buffer.
This issue may allow remote attackers to execute arbitrary machine code in the context of the affected application, but this has not been confirmed.
GnuPG versions 1.4.3 and 1.9.20 are vulnerable to this issue; previous versions may also be affected.
50. Qbik WinGate IMAP Service Directory Traversal Vulnerability
BugTraq ID: 18908
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18908
Summary:
The IMAP service of WinGate is prone to a directory-traversal vulnerability.
Reportedly, an authenticated user can access sensitive information such as other users' email and can create or remove arbitrary directories from a vulnerable computer.
Versions 6.1.2.1094 and 6.1.3.1096 are reported to be affected. Other versions may be affected as well.
51. Sabdrimer CMS Advanced1.PHP Remote File Include Vulnerability
BugTraq ID: 18907
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18907
Summary:
Sabdrimer CMS is prone to a remote file-include vulnerability because it fails to properly sanitize user-supplied input.
An attacker can exploit this issue to include arbitrary remote files containing malicious PHP code and execute it in the context of the webserver process. This may allow the attacker to compromise the application and to gain access to the underlying system.
52. SIPfoundry SIPXtapi CSeq Processing Remote Buffer-Overflow Vulnerability
BugTraq ID: 18906
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18906
Summary:
The sipXtapi product is reported to be prone to a remote buffer-overflow vulnerability. This issue presents itself when the application handles a specially crafted 'CSeq' value.
A successful attack may lead to unauthorized remote access in the context of a user running an affected application that uses the vulnerable library.
Reports indicate that sipXtapi versions that were released prior to March 24, 2006 are vulnerable to this issue. Certain PingTel products and versions of AOL Triton may be affected because they employ the vulnerable library.
53. Microsoft Excel Unspecified Remote Code Execution Vulnerability
BugTraq ID: 18422
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18422
Summary:
Microsoft Excel is prone to an unspecified remote code-execution vulnerability. Insufficient details are currently available to elaborate further.
Successfully exploiting this issue allows attackers to execute arbitrary code in the context of targeted users.
Attackers are actively exploiting this vulnerability in targeted attacks and to install malicious software.
Note that MS Office applications include functionality to embed Office files as objects contained in other Microsoft Office files. As an example, Microsoft Word files may contain embedded malicious Microsoft Excel files, making Word documents another possible attack vector.
Proof of concept 'Nanika.xls' was originally thought to be related to this issue; however reports indicate that 'Nanika.xls' triggers a different vulnerability. BID 18872 (Microsoft Excel Style Handling and Repair Remote Code Execution Vulnerability) has been created for the new issue.
54. Microsoft Excel Selection Record Variant Remote Code Execution Vulnerability
BugTraq ID: 18885
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18885
Summary:
Microsoft Excel is prone to a remote code-execution vulnerability.
Successfully exploiting this issue allows attackers to corrupt process memory, and execute arbitrary code in the context of targeted users.
Note that MS Office applications include functionality to embed Office files as objects contained in other Microsoft Office files. As an example, Microsoft Word files may contain embedded malicious Microsoft Excel files, making Word documents another possible attack vector.
55. Microsoft Internet Explorer Object.Microsoft.DXTFilter Denial Of Service Vulnerability
BugTraq ID: 18903
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18903
Summary:
Microsoft Internet Explorer is prone to a denial-of-service vulnerability.
This issue is triggered when an attacker convinces a victim user to visit a malicious website.
Remote attackers may exploit this issue to crash Internet Explorer, effectively denying service to legitimate users.
56. Microsoft Excel LABEL Record Remote Code Execution Vulnerability
BugTraq ID: 18910
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18910
Summary:
Microsoft Excel is prone to a remote code-execution vulnerability.
Successfully exploiting this issue allows attackers to corrupt process memory, and execute arbitrary code in the context of targeted users.
Note that MS Office applications include functionality to embed Office files as objects contained in other Microsoft Office files. As an example, Microsoft Word files may contain embedded malicious Microsoft Excel files, making Word documents another possible attack vector.
57. Microsoft Internet Explorer DirectAnimation.DAUserData Denial Of Service Vulnerability
BugTraq ID: 18902
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18902
Summary:
Microsoft Internet Explorer is prone to a denial-of-service vulnerability.
This issue is triggered when an attacker convinces a victim user to visit a malicious website that uses the 'DirectAnimation.DAUserData' object in a malicious manner.
Remote attackers may exploit this issue to crash Internet Explorer, effectively denying service to legitimate users.
58. Microsoft Excel Selection Record Remote Code Execution Vulnerability
BugTraq ID: 18853
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18853
Summary:
Microsoft Excel is prone to a remote code-execution vulnerability.
Successfully exploiting this issue allows attackers to corrupt process memory, and execute arbitrary code in the context of targeted users.
Note that MS Office applications include functionality to embed Office files as objects contained in other Microsoft Office files. As an example, Microsoft Word files may contain embedded malicious Microsoft Excel files, making Word documents another possible attack vector.
59. Microsoft Windows DHCP Client Service Remote Code Execution Vulnerability
BugTraq ID: 18923
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18923
Summary:
Microsoft Windows DHCP Client service is susceptible to a remote code-execution vulnerability. This issue is due to a failure of the service to properly bounds check user-supplied input prior to copying it to an insufficiently-sized memory buffer.
This vulnerability allows remote attackers to execute arbitrary machine code with SYSTEM-level privileges on affected computers. This facilitates the complete compromise of affected computers.
60. Nullsoft SHOUTcast Multiple HTML Injection Vulnerabilities
BugTraq ID: 18376
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18376
Summary:
Nullsoft SHOUTcast is prone to multiple HTML-injection vulnerabilities because it fails to properly sanitize user-supplied input before using it in dynamically generated content.
Attacker-supplied HTML and script code would be executed in the context of the affected website, potentially allowing an attacker to steal cookie-based authentication credentials or to control how the site is rendered to the user; other attacks are also possible.
These issues affect version 1.9.5; other versions may also be vulnerable.
61. LibTIFF tiff2pdf Remote Buffer Overflow Vulnerability
BugTraq ID: 18331
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18331
Summary:
The tiff2pdf utility is prone to a buffer-overflow vulnerability. This issue is due to a failure in the application to do proper boundary checks before copying user-supplied data into a finite-sized buffer.
This issue allows remote attackers to execute arbitrary machine code in the context of the affected application. Failed exploit attempts will likely crash the application, denying service to legitimate users.
62. FreeType LWFN Files Buffer Overflow Vulnerability
BugTraq ID: 18034
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18034
Summary:
FreeType is prone to a buffer-overflow vulnerability. This issue is due to an integer-overflow that results in a buffer being overrun with attacker-supplied data.
This issue allows remote attackers to execute arbitrary machine code in the context of applications that use the affected library. Failed exploit attempts will likely crash applications, denying service to legitimate users.
FreeType versions prior to 2.2.1 are vulnerable to this issue.
63. RW::Download Stats.PHP Remote File Include Vulnerability
BugTraq ID: 18901
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18901
Summary:
RW::Download is prone to a remote file-include vulnerability because it fails to properly sanitize user-supplied input.
An attacker can exploit this issue to include arbitrary remote files containing malicious PHP code and execute it in the context of the webserver process. This may allow the attacker to compromise the application and to gain access to the underlying system.
64. Microsoft Internet Explorer 6 RDS.DataControl Denial Of Service Vulnerability
BugTraq ID: 18900
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18900
Summary:
Microsoft Internet Explorer version 6 is reportedly prone to a denial-of-service vulnerability because the application fails to perform boundary checks before copying user-supplied data into sensitive process buffers.
This issue is triggered when an attacker convinces a victim user to activate a malicious ActiveX control object.
Remote attackers may exploit this issue to crash Internet Explorer 6, effectively denying service to legitimate users.
A stack-based heap overflow may be possible, and as a result, remote code execution in the context of the user running the affected application may occur. This has not been confirmed.
65. Trac Information Disclosure And Denial of Service Vulnerabilities
BugTraq ID: 18323
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18323
Summary:
Trac is affected by multiple vulnerabilities. These issues include denial-of-service and information disclosure vulnerabilities.
An attacker can exploit these issues to access sensitive information or crash the affected application. Other attacks may also be possible.
Trac versions prior to 0.9.6 are affected by these issues.
66. Webvizyon SayfalaAltList.ASP SQL Injection Vulnerability
BugTraq ID: 18899
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18899
Summary:
Webvizyon is prone to an SQL-injection vulnerability because it fails to properly sanitize user-supplied input before using it in an SQL query.
A successful exploit could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database implementation.
67. Linux Kernel POSIX-CPU-TIMERS.C Local Denial of Service Vulnerability
BugTraq ID: 18615
Remote: No
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18615
Summary:
The Linux kernel is prone to a local denial-of-service vulnerability. This issue is due to a race condition arising in 'posix-cpu-timers.c'.
This vulnerability allows local users to crash the kernel, denying further service to legitimate users.
This issue affects Linux kernel versions prior to 2.6.16.21.
68. ATutor Multiple Input Validation Vulnerabilities
BugTraq ID: 18898
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18898
Summary:
ATutor is prone to multiple input-validation vulnerabilities, including cross-site scripting and SQL-injection issues, because the application fails to properly sanitize user-supplied input.
A successful exploit of these vulnerabilities could allow an attacker to compromise the application, access or modify data, steal cookie-based authentication credentials, or even exploit vulnerabilities in the underlying database implementation. Other attacks are also possible.
69. Linux Kernel Signal_32.C Local Denial of Service Vulnerability
BugTraq ID: 18616
Remote: No
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18616
Summary:
The Linux kernel is prone to a local denial-of-service vulnerability. This issue is due to a design error in 'signal_32.c'.
This vulnerability allows local users to panic the kernel, denying further service to legitimate users.
This issue affects Linux kernel versions prior to 2.6.16.21.
70. Linux Kernel Netfilter Do_Add_Counters Local Race Condition Vulnerability
BugTraq ID: 18113
Remote: No
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18113
Summary:
The Linux kernel is susceptible to a local race-condition vulnerability.
This issue allows local attackers to gain access to potentially sensitive kernel memory, aiding them in further attacks. Failed exploit attempts may crash the kernel, denying service to legitimate users.
This issue is exploitable only by local users who have superuser privileges or have the CAP_NET_ADMIN capability. This issue is therefore a security concern only if computers run virtualization software that allows users to have superuser access to guest operating systems or if the CAP_NET_ADMIN capability is given to untrusted users.
Linux kernel versions prior to 2.6.16.17 in the 2.6 series are affected by this issue.
71. Multiple Browser Marquee Denial of Service Vulnerability
BugTraq ID: 18165
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18165
Summary:
Multiple browsers are prone to a denial-of-service vulnerability when parsing certain HTML content.
Successfully exploiting this issue allows attackers to consume excessive CPU resources in affected browsers, denying service to legitimate users.
Mozilla Firefox version 1.5.0.3 is vulnerable to this issue; other versions and products may also be affected.
Internet Explorer 6.0 on Microsoft Windows XP is reported vulnerable to this issue; other versions may also be affected.
72. MySQL Server Str_To_Date Remote Denial Of Service Vulnerability
BugTraq ID: 18439
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18439
Summary:
MySQL is susceptible to a remote denial-of-service vulnerability. This issue is due to the database server's failure to properly handle unexpected input.
This issue allows remote attackers to crash affected database servers, denying service to legitimate users. Attackers must be able to execute arbitrary SQL statements on affected servers, which requires valid credentials to connect to affected servers.
Attackers may exploit this issue in conjunction with latent SQL-injection vulnerabilities in other applications.
Versions of MySQL prior to 4.1.18, 5.0.19, and 5.1.6 are vulnerable to this issue.
73. Papoo Multiple Input Validation Vulnerabilities
BugTraq ID: 18895
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18895
Summary:
Papoo is prone to multiple input-validation vulnerabilities, including cross-site scripting and SQL-injection issues, because the application fails to properly sanitize user-supplied input.
A successful exploit of these vulnerabilities could allow an attacker to compromise the application, access or modify data, steal cookie-based authentication credentials, or even exploit vulnerabilities in the underlying database implementation. Other attacks are also possible.
74. TWiki Arbitrary File Upload Vulnerability
BugTraq ID: 18854
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18854
Summary:
TWiki is prone to an arbitrary file-upload vulnerability.
The issue is due to a failure in the application to properly sanitize user-supplied input.
An attacker can exploit this issue to include an arbitrary remote file containing malicious PHP code and to execute it in the context of the webserver process. This may allow the attacker to compromise the application and the underlying system.
75. Vbulletin Member.PHP Cross-Site Scripting Vulnerability
BugTraq ID: 18551
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18551
Summary:
Vbulletin is prone to a cross-site scripting vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input.
An attacker may leverage this issue to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
The vendor disputes this issue stating the vulnerable parameter is properly sanitized before being used.
76. DGNews Search.PHP SQL Injection Vulnerability
BugTraq ID: 18887
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18887
Summary:
DGNews is prone to an SQL-injection vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query.
Successful exploitation could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database implementation.
77. OpenOffice Arbitrary Macro Execution Vulnerability
BugTraq ID: 18738
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18738
Summary:
OpenOffice is prone to a vulnerability that allows attackers to gain unauthorized access to a vulnerable computer.
The vendor has reported that this vulnerability allows malicious macros to gain read/write privileges to local files on a vulnerable computer.
78. CommonSense CMS Search.PHP Date Parameter SQL Injection Vulnerability
BugTraq ID: 18893
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18893
Summary:
CommonSense CMS is prone to an SQL-injection vulnerability because it fails to properly sanitize user-supplied input before using it in an SQL query.
A successful exploit could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database implementation.
79. GNUTLS LibTASN1 DER Decoding Denial of Service Vulnerabilities
BugTraq ID: 16568
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/16568
Summary:
Libtasn1 is prone to multiple denial-of-service vulnerabilities. A remote attacker can send specifically crafted data to trigger these flaws, leading to denial-of-service condition.
These issues have been addressed in Libtasn1 versions 0.2.18; earlier versions are vulnerable.
80. Macromedia Flash Malformed SWF File Multiple Vulnerabilities
BugTraq ID: 18894
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18894
Summary:
The Macromedia Flash plug-in is prone to multiple remote vulnerabilities.
An attacker can exploit these vulnerabilities to execute arbitrary code or to crash the application hosting the Flash player (typically a web browser). Attackers exploit these issues through maliciously malformed SWF files that have been placed on a website or emailed to unsuspecting users.
Version 8.0.24.0 of Flash is vulnerable to these issues; other versions may also be affected.
81. SQuery LibPath Parameter Multiple Remote File Include Vulnerabilities
BugTraq ID: 17434
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/17434
Summary:
SQuery is prone to multiple remote file-include vulnerabilities. These issues are due to a failure in the application to properly sanitize user-supplied input.
An attacker can exploit these issues to include an arbitrary remote file containing malicious PHP code and execute it in the context of the webserver process. This may allow the attacker to compromise the application and the underlying system; other attacks are also possible.
Versions 4.5 and prior are affected.
82. PPPD Winbind Plugin Local Privilege Escalation Vulnerability
BugTraq ID: 18849
Remote: No
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18849
Summary:
The 'winbind' plugin of 'pppd' can allow local attackers to gain elevated privileges, which may lead to a complete compromise.
Version 2.4.3 of 'pppd' is reported vulnerable. Other versions may be affected as well.
83. Phorum Multiple Input Validation Vulnerabilities
BugTraq ID: 18941
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18941
Summary:
Phorum is prone to a cross-site scripting and a SQL-injection because the application fails to properly sanitize user-supplied input.
A successful exploit of these vulnerabilities could allow an attacker to compromise the application, access or modify data, steal cookie-based authentication credentials, or even exploit vulnerabilities in the underlying database implementation. Other attacks are also possible.
84. VBZooM Multiple SQL Injection Vulnerabilitie
BugTraq ID: 18937
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18937
Summary:
VBZooM is prone to multiple SQL-injection vulnerabilities. These issues are due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query.
An attacker may be able to exploit these issues to modify the logic of SQL queries. Successful exploits may allow the attacker to compromise the software, retrieve information, or modify data; other consequences are possible as well.
85. FlexWATCH Network Camera Cross-Site Scripting Vulnerability
BugTraq ID: 18936
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18936
Summary:
FlexWATCH Network Camera is prone to a cross-site scripting vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input.
An attacker may leverage this issue to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks.
Versions 3.0 and prior are affected.
86. EJ3 TOPo Class_DB_Text.PHP Multiple Remote PHP Script Code Injection Vulnerabilities
BugTraq ID: 18935
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18935
Summary:
EJ3 TOPo is prone to multiple remote PHP code-injection vulnerabilities.
This issue occurs because the application fails to sanitize user-supplied input before storing it in a PHP file within the data directory.
An attacker can exploit this issue by placing an arbitrary PHP script into the server and then initiate a GET request to execute the PHP within the context of the server.
Versions 2.2.178 and prior are affected.
87. SaPHPLesson Add.PHP SQL Injection Vulnerability
BugTraq ID: 18934
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18934
Summary:
SaPHPLesson is prone to an SQL-injection vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input before using it in an SQL query.
A successful exploit could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database implementation.
88. Hosting Controller Error.ASP Cross-site Scripting Vulnerability
BugTraq ID: 18933
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18933
Summary:
Hosting Controller is prone to a cross-site scripting vulnerability because it fails to sanitize input before displaying it to users of the application.
An attacker may leverage this issue to have arbitrary script code execute in the browser of an unsuspecting user in the context of the affected site. This may help the attacker steal cookie-based authentication credentials and launch other attacks
Versions 6.1 and prior are affected.
89. Microsoft ASP.NET Application Folder Information Disclosure Vulnerability
BugTraq ID: 18920
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18920
Summary:
ASP.NET is prone to an information-disclosure vulnerability. This issue is due to a failure in the applications to properly validate user-supplied input.
An attacker can exploit this issue to retrieve potentially sensitive information. Information retrieved may aid in further attacks.
90. Microsoft Office Malformed GIF File Remote Code Execution Vulnerability
BugTraq ID: 18915
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18915
Summary:
Microsoft Office is prone to a remote code-execution vulnerability when handling a malformed GIF file.
The issue occurs when an Office application such as Excel, Word, or PowerPoint tries to open a malformed GIF file.
An attacker could exploit this vulnerability to cause memory corruption and subsequently the execution of malicious code in the context of the user running the affected application.
91. Microsoft Office Malformed PNG File Remote Code Execution Vulnerability
BugTraq ID: 18913
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18913
Summary:
Microsoft Office is prone to a remote code-execution vulnerability when handling a malformed PNG graphic file.
The issue occurs when an Office application such as Excel, Word, or PowerPoint tries to open a malformed PNG graphic file.
An attacker could exploit this vulnerability to cause memory corruption and subsequently the execution of malicious code in the context of the user running the affected application.
92. Microsoft Office String Parsing Remote Code Execution Vulnerability
BugTraq ID: 18912
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18912
Summary:
Microsoft Office is susceptible to a remote code-execution vulnerability. This issue is due to a failure of the application to properly handle malformed strings in Office documents.
Successfully exploiting this issue allows attackers to execute arbitrary code in the context of targeted users.
93. Microsoft Office Property Code Execution Vulnerability
BugTraq ID: 18911
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18911
Summary:
Microsoft Office is prone to a code-execution vulnerability. This is due to a failure to handle exceptional conditions.
Successfully exploiting this issue allows attackers to corrupt process memory, and execute arbitrary code in the context of targeted users.
94. Microsoft Windows Server Driver Remote Information Disclosure Vulnerability
BugTraq ID: 18891
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18891
Summary:
Microsoft Windows Server driver is susceptible to a remote information-disclosure vulnerability. This issue is due to a flaw in the handling of certain SMB traffic.
Exploiting this issue allows remote attackers to gain access to potentially sensitive fragments of kernel memory. This may aid them in further attacks.
95. Microsoft Excel FNGROUPCOUNT Record Remote Code Execution Vulnerability
BugTraq ID: 18890
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18890
Summary:
Microsoft Excel is prone to a remote code-execution vulnerability.
Successfully exploiting this issue allows attackers to corrupt process memory, and execute arbitrary code in the context of targeted users.
Note that MS Office applications include functionality to embed Office files as objects contained in other Microsoft Office files. As an example, Microsoft Word files may contain embedded malicious Microsoft Excel files, making Word documents another possible attack vector.
96. Microsoft Office Malformed String Parsing Code Execution Vulnerability
BugTraq ID: 18889
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18889
Summary:
Microsoft Office is prone to a code-execution vulnerability. This condition can occur when a malformed string within an Office file is parsed.
This vulnerability is located in a shared library used by multiple Office applications, potentially allowing many different attack vectors.
An attacker could exploit this issue by enticing a victim to load a malicious Office file. If the vulnerability is successfully exploited, this could result in execution of arbitrary code in the context of the currently logged in user.
This issue is different than the one described in BID 18912 (Microsoft Office String Parsing Remote Code Execution Vulnerability)
97. Microsoft Excel COLINFO Record Remote Code Execution Vulnerability
BugTraq ID: 18888
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18888
Summary:
Microsoft Excel is prone to a remote code-execution vulnerability. This is due to a failure to handle exceptional conditions.
Successfully exploiting this issue allows attackers to corrupt process memory, and execute arbitrary code in the context of targeted users.
Note that MS Office applications include functionality to embed Office files as objects contained in other Microsoft Office files. As an example, Microsoft Word files may contain embedded malicious Microsoft Excel files, making Word documents another possible attack vector.
98. Microsoft Excel OBJECT Record Remote Code Execution Vulnerability
BugTraq ID: 18886
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18886
Summary:
Microsoft Excel is prone to a remote code-execution vulnerability. This is due to a failure to handle exceptional conditions.
Successfully exploiting this issue allows attackers to corrupt process memory, and execute arbitrary code in the context of targeted users.
Note that MS Office applications include functionality to embed Office files as objects contained in other Microsoft Office files. As an example, Microsoft Word files may contain embedded malicious Microsoft Excel files, making Word documents another possible attack vector.
99. Microsoft IIS ASP Remote Code Execution Vulnerability
BugTraq ID: 18858
Remote: Yes
Last Updated: 2006-07-11
Relevant URL: http://www.securityfocus.com/bid/18858
Summary:
Microsoft Internet Information Server (IIS) is susceptible to a remote code-execution vulnerability. This issue is due to a failure of the application to properly bounds check user-supplied input prior to copying it to an insufficiently-sized memory buffer.
Attackers must have the ability to place and execute malicious ASP pages on computers running the affected ASP server software to exploit this issue. This may be an issue in shared-hosting environments.
This issue allows remote attackers to execute arbitrary machine code in the context of the affected web server software.
100. Mutt BROWSE_GET_NAMESPACE IMAP Namespace Processing Remote Buffer Overflow Vulnerability
BugTraq ID: 18642
Remote: Yes
Last Updated: 2006-07-10
Relevant URL: http://www.securityfocus.com/bid/18642
Summary:
Mutt is prone to a remote buffer-overflow vulnerability. This issue is due to the application's failure to properly bounds-check user-supplied input before copying it to an insufficiently sized memory buffer.
This issue may allow remote attackers to execute arbitrary machine code in the context of the affected application. Failed exploit attempts will likely crash the application, denying further service to legitimate users.
Mutt version 1.4.2.1 is reported to be vulnerable. Other versions may be affected as well.
III. SECURITYFOCUS NEWS ARTICLES
--------------------------------
1. Researchers look to predict software flaws
By: Robert Lemos
Want to know how many flaws will be in your next version? Using historical data, university researchers hope to be able to tell you.
http://www.securityfocus.com/news/11399
2. AT&T privacy policy overreaches, lawyers say
By: Robert Lemos
A recent change to AT&T's privacy policy for broadband and video users has been labeled overbroad by legal experts, and likely will leave the courts or Congress to decide whether the company's practices are standard or sinister.
http://www.securityfocus.com/news/11398
3. USB drives pose insider threat
By: Robert Lemos
Workers are more wary of putting giveaway CDs in their company's computers, but USB flash drives are another story.
http://www.securityfocus.com/news/11397
4. SCADA industry debates flaw disclosure
By: Robert Lemos
Vulnerability researchers bring in US-CERT to referee the outing of an infrastructure bug, ruffling feathers as vendors and researchers clash over how disclosure should be handled. Sound familiar?
http://www.securityfocus.com/news/11396
IV. SECURITY JOBS LIST SUMMARY
-------------------------------
1. [SJ-JOB] CHECK Team Leader, UK-Wide (home-based)
http://www.securityfocus.com/archive/77/439728
2. [SJ-JOB] Technology Risk Consultant, Central Jersey
http://www.securityfocus.com/archive/77/439592
3. [SJ-JOB] Security Architect, New York
http://www.securityfocus.com/archive/77/439593
4. [SJ-JOB] Sr. Security Engineer, New York
http://www.securityfocus.com/archive/77/439594
5. [SJ-JOB] Account Manager, San Francisco
http://www.securityfocus.com/archive/77/439595
6. [SJ-JOB] Account Manager, New York
http://www.securityfocus.com/archive/77/439596
7. [SJ-JOB] Security Engineer, Baltimore
http://www.securityfocus.com/archive/77/439470
8. [SJ-JOB] Security Consultant, Chandler
http://www.securityfocus.com/archive/77/439487
9. [SJ-JOB] Channel / Business Development, San Jose
http://www.securityfocus.com/archive/77/439468
10. [SJ-JOB] VP of Marketing, Princeton
http://www.securityfocus.com/archive/77/439493
11. [SJ-JOB] Director, Information Security, Harisburg
http://www.securityfocus.com/archive/77/439467
12. [SJ-JOB] Technical Support Engineer, New York
http://www.securityfocus.com/archive/77/439477
13. [SJ-JOB] Director, Information Security, New York
http://www.securityfocus.com/archive/77/439478
14. [SJ-JOB] Technical Support Engineer, New York
http://www.securityfocus.com/archive/77/439422
15. [SJ-JOB] Security System Administrator, New York
http://www.securityfocus.com/archive/77/439423
16. [SJ-JOB] Sr. Product Manager, Yonkers
http://www.securityfocus.com/archive/77/439421
17. [SJ-JOB] Technical Support Engineer, New York
http://www.securityfocus.com/archive/77/439442
18. [SJ-JOB] Technical Support Engineer, Yonkers
http://www.securityfocus.com/archive/77/439426
19. [SJ-JOB] Security Engineer, Alexandria
http://www.securityfocus.com/archive/77/439349
20. [SJ-JOB] Account Manager, Bay Area
http://www.securityfocus.com/archive/77/439353
21. [SJ-JOB] Sales Engineer, San Francisco
http://www.securityfocus.com/archive/77/439348
22. [SJ-JOB] Sales Representative, Washington
http://www.securityfocus.com/archive/77/439350
23. [SJ-JOB] Sales Representative, New York
http://www.securityfocus.com/archive/77/439351
24. [SJ-JOB] Application Security Engineer, New York
http://www.securityfocus.com/archive/77/439328
25. [SJ-JOB] Management, Charlotte
http://www.securityfocus.com/archive/77/439345
26. [SJ-JOB] Security Product Marketing Manager, San Francisco and Surrounding Area
http://www.securityfocus.com/archive/77/439342
27. [SJ-JOB] Sales Engineer, San Francisco and Surrounding Area
http://www.securityfocus.com/archive/77/439339
28. [SJ-JOB] Account Manager, San Francisco and Surrounding Area
http://www.securityfocus.com/archive/77/439341
29. [SJ-JOB] Technical Support Engineer, New York
http://www.securityfocus.com/archive/77/439334
30. [SJ-JOB] Technical Support Engineer, New York
http://www.securityfocus.com/archive/77/439315
31. [SJ-JOB] Technical Support Engineer, New York
http://www.securityfocus.com/archive/77/439316
32. [SJ-JOB] Security Architect, New York
http://www.securityfocus.com/archive/77/439324
33. [SJ-JOB] Technical Support Engineer, New York
http://www.securityfocus.com/archive/77/439260
34. [SJ-JOB] Security System Administrator, Brooklyn
http://www.securityfocus.com/archive/77/439261
35. [SJ-JOB] Senior Software Engineer, Santa Clara
http://www.securityfocus.com/archive/77/439257
36. [SJ-JOB] Sr. Security Engineer, NY
http://www.securityfocus.com/archive/77/439258
37. [SJ-JOB] Sales Engineer, Los Angeles
http://www.securityfocus.com/archive/77/439259
38. [SJ-JOB] Application Security Engineer, Brooklyn
http://www.securityfocus.com/archive/77/439186
39. [SJ-JOB] Security Product Manager, Brooklyn
http://www.securityfocus.com/archive/77/439188
40. [SJ-JOB] Security Engineer, Brooklyn
http://www.securityfocus.com/archive/77/439189
41. [SJ-JOB] Security System Administrator, New York
http://www.securityfocus.com/archive/77/439190
42. [SJ-JOB] Sales Engineer, Orange County
http://www.securityfocus.com/archive/77/439191
43. [SJ-JOB] Director, Information Security, Chicago
http://www.securityfocus.com/archive/77/439176
44. [SJ-JOB] CISO, Northern Suburb
http://www.securityfocus.com/archive/77/439180
45. [SJ-JOB] Sales Engineer, San Diego
http://www.securityfocus.com/archive/77/439181
46. [SJ-JOB] Security Consultant, Bangalore
http://www.securityfocus.com/archive/77/439174
47. [SJ-JOB] Management, Cupertino
http://www.securityfocus.com/archive/77/439175
48. [SJ-JOB] Security Architect, Bay Area
http://www.securityfocus.com/archive/77/439120
49. [SJ-JOB] Security Engineer, New York
http://www.securityfocus.com/archive/77/439121
50. [SJ-JOB] Security Researcher, Tel Aviv
http://www.securityfocus.com/archive/77/439123
51. [SJ-JOB] Security Engineer, Reston
http://www.securityfocus.com/archive/77/439118
52. [SJ-JOB] Sales Engineer, San Francisco
http://www.securityfocus.com/archive/77/439119
53. [SJ-JOB] Penetration Engineer, North Bay
http://www.securityfocus.com/archive/77/439112
54. [SJ-JOB] Penetration Engineer, Montvale
http://www.securityfocus.com/archive/77/439113
55. [SJ-JOB] Manager, Information Security, Montvale
http://www.securityfocus.com/archive/77/439114
56. [SJ-JOB] Security Consultant, Basingstoke
http://www.securityfocus.com/archive/77/439115
57. [SJ-JOB] Sales Engineer, Seattle
http://www.securityfocus.com/archive/77/439116
58. [SJ-JOB] Sales Engineer, Portland
http://www.securityfocus.com/archive/77/439111
V. INCIDENTS LIST SUMMARY
---------------------------
1. System Idle Process making TCP connections
http://www.securityfocus.com/archive/75/439488
2. Outbound Connections
http://www.securityfocus.com/archive/75/439369
3. suspicious firewall rules in WinXP firewall
http://www.securityfocus.com/archive/75/438910
VI. VULN-DEV RESEARCH LIST SUMMARY
-----------------------------------
VII. MICROSOFT FOCUS LIST SUMMARY
---------------------------------
1. DACLS for software distribution points...
http://www.securityfocus.com/archive/88/439301
VIII. SUN FOCUS LIST SUMMARY
----------------------------
IX. LINUX FOCUS LIST SUMMARY
----------------------------
1. smtp proxy that takes in smtp auth?
http://www.securityfocus.com/archive/91/439444
X. UNSUBSCRIBE INSTRUCTIONS
-----------------------------
To unsubscribe send an e-mail message to [email protected] from the subscribed address. The contents of the subject or message body do not matter. You will receive a confirmation request message to which you will have to answer. Alternatively you can also visit http://www.securityfocus.com/newsletters and unsubscribe via the website.
If your email address has changed email [email protected] and ask to be manually removed.
XI. SPONSOR INFORMATION
------------------------
This issue is Sponsored by: Lancope
"Revolutionize How You View Your Network Security"
How do you protect what you can't see? Stop protecting while blind. Gain network visibility now.
Learn how Cisco NetFlow gives visibility and enables cost-effective security across distributed enterprise networks. StealthWatch, the most widely used Network Behavior Analysis (NBA) and Response solution, leverages Cisco NetFlow to provide scalable, internal network security.
ALERT: Download FREE White Paper "Network Behavior Analysis (NBA) in the Enterprise."
http://www.lancope.com/resource/