| OSVDB ID | Disclosure Date | Title |
|
38313
Description:
(Description Provided by CVE) : request.c in lighttpd 1.4.15 allows remote attackers to cause a denial of service (daemon crash) by sending an HTTP request with duplicate headers, as demonstrated by a request containing two Location header lines, which results in a segmentation fault.
|
2007-06-15
|
lighttpd request.c Malformed HTTP Request Remote DoS
|
|
38314
Description:
(Description Provided by CVE) : mod_auth (http_auth.c) in lighttpd before 1.4.16 allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors involving (1) a memory leak, (2) use of md5-sess without a cnonce, (3) base64 encoded strings, and (4) trailing whitespace in the Auth-Digest header.
|
2007-06-15
|
lighttpd mod_auth (http_auth.c) Unspecified Memory Leak DoS
|
|
38315
Description:
(Description Provided by CVE) : mod_auth (http_auth.c) in lighttpd before 1.4.16 allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors involving (1) a memory leak, (2) use of md5-sess without a cnonce, (3) base64 encoded strings, and (4) trailing whitespace in the Auth-Digest header.
|
2007-06-15
|
lighttpd mod_auth (http_auth.c) Malformed md5-sess Remote DoS
|
|
38316
Description:
(Description Provided by CVE) : mod_auth (http_auth.c) in lighttpd before 1.4.16 allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors involving (1) a memory leak, (2) use of md5-sess without a cnonce, (3) base64 encoded strings, and (4) trailing whitespace in the Auth-Digest header.
|
2007-06-15
|
lighttpd mod_auth (http_auth.c) base64_decode Handling Remote DoS
|
|
38317
Description:
(Description Provided by CVE) : mod_auth (http_auth.c) in lighttpd before 1.4.16 allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors involving (1) a memory leak, (2) use of md5-sess without a cnonce, (3) base64 encoded strings, and (4) trailing whitespace in the Auth-Digest header.
|
2007-06-15
|
lighttpd mod_auth (http_auth.c) Malformed Auth-Digest Header Remote DoS
|
|
37345
Description:
(Description Provided by CVE) : Multiple unspecified vulnerabilities in Astaro Security Gateway (ASG) before 7.005 allow remote attackers to cause a denial of service via (1) certain email, which stops the SMTP Proxy during scanning; (2) certain HTTP traffic, which stops or slows down the HTTP proxy during HTTP responses containing virus scanned web pages; and (3) a disconnection during a streaming session.
|
2007-06-15
|
Astaro Security Gateway (ASG) HTTP Proxy Unspecified DoS
|
|
37346
Description:
(Description Provided by CVE) : Multiple unspecified vulnerabilities in Astaro Security Gateway (ASG) before 7.005 allow remote attackers to cause a denial of service via (1) certain email, which stops the SMTP Proxy during scanning; (2) certain HTTP traffic, which stops or slows down the HTTP proxy during HTTP responses containing virus scanned web pages; and (3) a disconnection during a streaming session.
|
2007-06-15
|
Astaro Security Gateway (ASG) SMTP Proxy Unspecified E-mail DoS
|
|
36606
Description:
(Description Provided by CVE) : SQL injection vulnerability in bb-includes/formatting-functions.php in bbPress before 0.8.1 might allow remote attackers to execute arbitrary SQL commands via unspecified vectors to forums/bb-edit.php, as demonstrated by a PRE element, aka the "quircky slashes bug."
|
2007-06-15
|
bbPress bb-includes/formatting-functions.php forums/bb-edit.php Parameter SQL Injection
|
|
36889
Description:
(Description Provided by CVE) : SQL injection vulnerability in VirtueMart before 1.0.11 allows remote attackers to execute arbitrary SQL commands via unspecified parameters, possibly related to improper input validation of the PATH_INFO (PHP_SELF) by virtuemart_parser.php.
|
2007-06-15
|
VirtueMart Unspecified Multiple Parameter SQL Injection
|
|
37317
Description:
(Description Provided by CVE) : Buffer overflow in the NFS mount daemon (XNFS.NLM) in Novell NetWare 6.5 SP6, and probably earlier, allows remote attackers to cause a denial of service (abend) via a long path in a mount request.
|
2007-06-15
|
Novell NetWare NFS Mount Daemon (XNFS.NLM) Mount Request Path Name Remote Overflow
|
|
36593
Description:
(Description Provided by CVE) : Unspecified vulnerability in Sun Solaris 10 before 20070614, when IPv6 interfaces are present but not configured for IPsec, allows remote attackers to cause a denial of service (system crash) via certain network traffic.
|
2007-06-15
|
Solaris IPsec Packet Handling Unspecified Remote DoS
|
|
36379
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in searchform.php in the AndyBlue theme before 20070607 for WordPress allows remote attackers to inject arbitrary web script or HTML via the PHP_SELF portion of a URI to index.php. NOTE: this can be leveraged for PHP code execution in an administrative session.
|
2007-06-15
|
WordPress AndyBlue Theme searchform.php URI PHP_SELF Parameter XSS
|
|
37544
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in Papoo Light 3.6 before 20070611 allow remote attackers to inject arbitrary web script or HTML via (1) the URI in a GET request or (2) the Title field of a visitor comment, and (3) allow remote authenticated users to inject arbitrary web script or HTML via a message to another user. NOTE: vector (2) might overlap CVE-2006-3571.1.
|
2007-06-15
|
Papoo CMS GET Request URI XSS
|
|
37545
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in Papoo Light 3.6 before 20070611 allow remote attackers to inject arbitrary web script or HTML via (1) the URI in a GET request or (2) the Title field of a visitor comment, and (3) allow remote authenticated users to inject arbitrary web script or HTML via a message to another user. NOTE: vector (2) might overlap CVE-2006-3571.1.
|
2007-06-15
|
Papoo CMS Visitor Comment TItle Field XSS
|
|
37546
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in Papoo Light 3.6 before 20070611 allow remote attackers to inject arbitrary web script or HTML via (1) the URI in a GET request or (2) the Title field of a visitor comment, and (3) allow remote authenticated users to inject arbitrary web script or HTML via a message to another user. NOTE: vector (2) might overlap CVE-2006-3571.1.
|
2007-06-15
|
Papoo CMS Internal Mail Multiple Parameter XSS
|
|
36873
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in HiddenChest "is ve Bayi Basvuru Formu" (Yb ve Bayi Babvuru Formu) allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
|
2007-06-15
|
Yb ve Bayi Babvuru Formu Unspecified Multiple XSS
|
|
38038
Description:
(Description Provided by CVE) : ** DISPUTED ** Cross-site scripting (XSS) vulnerability in search.php in Google Custom Search Engine allows remote attackers to inject arbitrary web script or HTML via the q parameter. NOTE: this issue is disputed by the Google Security Team, who states that "Google does not provide the 'search.php' script referenced. When a user creates a custom search engine, we provide them with a block of javascript to include on their site. Some users write additional code around this block of javascript to further customize their website."
|
2007-06-15
|
Google Custom Search Engine search.php q Parameter XSS
|
|
38468
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in the Samples component in IBM WebSphere Application Server (WAS) 6.1.0.7 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
2007-06-15
|
IBM WebSphere Application Server (WAS) Samples Component Unspecified XSS
|
|
68683
Description:
(Description Provided by CVE) : Multiple directory traversal vulnerabilities in FTPServer.py in pyftpdlib before 0.2.0 allow remote authenticated users to access arbitrary files and directories via a .. (dot dot) in a (1) LIST, (2) STOR, or (3) RETR command.
|
2007-06-15
|
pyftpdlib FTPServer.py Multiple Command Traversal Arbitrary File Access
|
|
43615
Description:
Unknown / Incomplete
|
2007-06-14
|
IBM AIX bos.rte.cron Unspecified Issue
|
|
36381
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in dotProject before 2.1 RC2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2006-2851 and CVE-2006-3240.
|
2007-06-14
|
dotProject Unspecified XSS
|
|
38862
Description:
(Description Provided by CVE) : Apple Safari 3.0.1 beta (522.12.12) on Windows allows remote attackers to modify the window title and address bar while filling the main window with arbitrary content by setting the location bar and using setTimeout() to create an event that modifies the window content, which could facilitate phishing attacks.
|
2007-06-14
|
Apple Safari Location Bar setTimeout() Content Spoofing
|
|
36079
Description:
Apache Tomcat contains a flaw that allows a remote cross site scripting attack. This flaw exists because the Manager and Host Manager applications do not validate the filename of files uploaded via the /manager/html/upload utility. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2007-06-14
|
Apache Tomcat Manager Uploaded Filename XSS
|
|
36304
Description:
PHP::HTML contains a flaw that may allow a remote attacker to execute arbitrary commands or code. The issue is due to the 'phphtml.php' script not properly sanitizing user input supplied to the 'htmlclass_path' parameter. This may allow an attacker to include a file from a third-party remote host that contains commands or code that will be executed by the vulnerable script with the same privileges as the web server.
|
2007-06-14
|
PHP::HTML phphtml.php htmlclass_path Parameter Remote File Inclusion
|
|
36305
Description:
(Description Provided by CVE) : SQL injection vulnerability in mod_banners.php in Elxis CMS before 2006.4 20070613 allows remote attackers to execute arbitrary SQL commands via the mb_tracker cookie. NOTE: the product was patched without updating the version number; later downloads of 2006.4 are not affected.
|
2007-06-14
|
Elxis CMS mod_banners.php mb_tracker Cookie SQL Injection
|
|
36376
Description:
Letterman Subscriber Module for Joomla! contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'Itemid' parameter upon submission to the 'mod_lettermansubscribe.php' script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2007-06-14
|
Letterman Subscriber Module for Joomla! mod_lettermansubscribe.php Itemid Parameter XSS
|
|
36816
Description:
(Description Provided by CVE) : PHP remote file inclusion vulnerability in saf/lib/PEAR/PhpDocumentor/Documentation/tests/bug-559668.php in Sitellite CMS 4.2.12 and earlier might allow remote attackers to execute arbitrary PHP code via a URL in the FORUM[LIB] parameter. NOTE: by default, access to the PhpDocumentor directory tree is blocked by .htaccess.
|
2007-06-14
|
Sitellite CMS tests/bug-559668.php FORUM[LIB] Parameter Remote File Inclusion
|
|
41345
Description:
(Description Provided by CVE) : index.php in Singapore Gallery allows remote attackers to obtain sensitive information via a request with a non-directory gallery parameter, which reveals the path in an error message.
|
2007-06-14
|
Singapore Gallery index.php Non-Directory gallery Variable Error Message Path Disclosure
|
|
39736
Description:
(Description Provided by CVE) : PortalApp stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for 8691.mdb, a different vector than CVE-2004-1786.
|
2007-06-14
|
PortalApp 8691.mdb Direct Request Database Disclosure
|
|
89357
Description:
By default, Edge-CorE WA2121 Mini AP Router installs with default user credentials (username/password combination) for the web interface. The 'root' account has a password of 'Edge-Core', which is publicly known and documented. This allows remote attackers to trivially access the program or system and gain privileged access.
|
2007-06-14
|
Edge-CorE WA2121 Mini AP Router Web Interface Default Admin Credentials
|
|
41011
Description:
(Description Provided by CVE) : IBM DB2 UDB 9.1 before Fixpak 4 assigns incorrect privileges to the (1) DB2ADMNS and (2) DB2USERS alternative groups, which has unknown impact. NOTE: the vendor description of this issue is too vague to be certain that it is security-related.
|
2007-06-13
|
IBM DB2 Universal Database DB2ADMNS / DB2USERS Alternative Group Permission Weakness
|
|
38864
Description:
Unknown / Incomplete
|
2007-06-13
|
Apple Safari for Windows feed:// URL DoS
|
|
36592
Description:
(Description Provided by CVE) : Unspecified vulnerability in the NFS server in Sun Solaris 10 before 20070613 allows remote attackers to cause a denial of service (system crash) via certain XDR data in NFS requests, probably related to processing of data by the xdr_bool and xdrmblk_getint32 functions.
|
2007-06-13
|
Solaris NFS Server XDR Handling Unspecified Remote DoS
|
|
37246
Description:
(Description Provided by CVE) : Unspecified vulnerability in Sun Java System Directory Server (slapd) 6.0, and 5.2 with Patch 3 or 4, allows remote attackers to modify certain data via unknown vectors.
|
2007-06-13
|
Sun Java System Directory Server (slapd) Unspecified Remote Data Manipulation
|
|
37247
Description:
(Description Provided by CVE) : Unspecified vulnerability in Sun ONE/Java System Directory Server (slapd) 6.0, and 5.x before 5.2 Patch 5, allows remote attackers to determine the existence of attributes of an entry via unspecified vectors.
|
2007-06-13
|
Sun ONE/Java System Directory Server (slapd) Unspecified Remote Attribute Enumeration
|
|
35468
Description:
ActiveCGM contains a flaw that may allow a malicious user to execute arbitrary code on the remote system. The issue is triggered due to multiple unspecified boundary errors. It is possible that the flaw may allow code execution with privileges of the user resulting in a loss of integrity.
|
2007-06-13
|
Corel / Micrografx ActiveCGM Browser ActiveX (acgm.dll) Multiple Unspecified Overflows
|
|
38865
Description:
Unknown / Incomplete
|
2007-06-13
|
Apple Safari Unspecified Memory Corruption DoS (crash #1)
|
|
38866
Description:
Unknown / Incomplete
|
2007-06-13
|
Apple Safari for Windows Unspecified Memory Corruption DoS (crash #2)
|
|
37239
Description:
(Description Provided by CVE) : Buffer overflow in Help and Support Center before 4.4 C on HP Windows systems allows remote attackers to read or write arbitrary files via unknown vectors.
|
2007-06-13
|
HP Help and Support Center Unspecified Overflow Arbitrary File Manipulation
|
|
37235
Description:
(Description Provided by CVE) : Stack-based buffer overflow in nptoken.mox in the Cellosoft Tokens Object 2.0.0.6 extension for Vitalize! allows remote attackers to execute arbitrary code via a long string argument to the RemoveChr method. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
|
2007-06-13
|
Vitalize! Cellosoft Tokens Object Extension nptoken.mox RemoveChr() Function Remote Overflow
|