Full Disclosure mailing list archives

SecurityLab.ru report: The Most Critical Vulnerabilities in July 2004


From: "pigrelax" <pigrelax () yandex ru>
Date: Sun, 8 Aug 2004 12:47:53 +0400

SecurityLab.ru report: The Most Critical Vulnerabilities in July 2004

Web application
. Easy Chat Server Multiple Denial Of Service Vulnerabilities , Bugtraq ID
10649 
. New Atlanta ServletExec Unauthorized Access Vulnerability, Bugtraq ID
10639 
. Two Vulnerabilities in Anton Raharja PlaySMS., Bugtraq ID 10752, 10751 
. Artmedic Webdesign Kleinanzeigen Script File Include Vulnerability,
Bugtraq ID 10746

Remote control 

. SSLTelnetd Remote Syslog Format String Vulnerability, Bugtraq ID 10684
. Dropbear SSH Server Digital Signature Standard Unspecified Authentication
Vulnerability. , Bugtraq ID 10803 

Proxy Server

. Pavuk Remote Digest Authentication Buffer Overflow Vulnerability, Bugtraq
ID 10649

Web servers

. Microsoft IIS 4 Redirect Remote Buffer Overflow Vulnerability, Bugtraq ID
10706 
. 4D WebStar Multiple Remote Information Disclosure Vulnerabilities ,
Bugtraq ID 10721 
. PHP memory_limit Remote Code Execution Vulnerability , Bugtraq ID 10725 
. Apache Mod_SSL Log Function Format String Vulnerability, Bugtraq ID 10736 

Browsers 

. Vulnerability in HTML Help Could Allow Code Execution , Bugtraq ID 10705 
. Microsoft Internet Explorer Popup.show Mouse Event Hijacking Vulnerability
, Bugtraq ID 10690 
. Cumulative Security Update for Internet Explorer 

Game Server

. Medal Of Honor Allied Assault Remote Buffer Overflow Vulnerability ,
Bugtraq ID 10743 

VPN Server

. Check Point VPN-1 ASN.1 Buffer Overflow Vulnerability , Bugtraq ID 10820 

More information http://www.securitylab.ru/46987.html,
http://www.securitylab.ru/46986.html


............................................................................
........................................................
MaxPatrol is a professional network security scanner distinguished by its
uncompromisingly high quality of scanning, optimized for effective use by
companies of any size (serving from a few to tens of thousands of nodes).
http://www.Maxpatrol.com


_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: