Vulnwatch: by author

60 messages starting Sep 28 04 and ending Aug 04 04
Date index | Thread index | Author index


Adam Daniel

Multiple vulnerabilities in Mozilla products Adam Daniel (Sep 28)

advisories

Corsaire Security Advisory - Business Objects WebIntelligence XSS issue advisories (Sep 17)
Corsaire Security Advisory - Multiple vendor MIME field multiple occurrence issue advisories (Sep 13)
Corsaire Security Advisory - Multiple vendor MIME RFC2047 encoding issue advisories (Sep 13)
Corsaire Security Advisory - Multiple vendor MIME separator issue advisories (Sep 13)
Corsaire Security Advisory - Multiple vendor MIME Content-Transfer-Encoding mechanism issue advisories (Sep 13)
Corsaire Security Advisory - Sygate Enforcer discovery packet DoS issue advisories (Aug 10)
Corsaire Security Advisory - Business Objects WebIntelligence arbitrary document deletion issue advisories (Sep 17)
Corsaire Security Advisory - Multiple vendor MIME RFC822 comment issue advisories (Sep 13)
Corsaire Security Advisory - Sygate Secure Enterprise replay issue advisories (Aug 10)
Corsaire Security Advisory - Port80 Software ServerMask inconsistencies advisories (Aug 10)
Vignette Application Portal Unauthenticate Diagnostics Advisories (Sep 28)
Corsaire Security Advisory - Multiple vendor MIME field whitespace issue advisories (Sep 13)
@stake advisory: 4D WebSTAR Multiple Vulnerabilities Advisories (Jul 13)
Corsaire Security Advisory - Multiple vendor MIME RFC2231 encoding issue advisories (Sep 13)
Corsaire Security Advisory - Sygate Enforcer unauthenticated broadcast issue advisories (Aug 10)
Corsaire Security Advisory - Clearswift MAILsweeper multiple encoding/compression issues advisories (Aug 13)
@stake: HP dced remote command execution multiple OSes Advisories (Jul 22)
Corsaire Security Advisory - Multiple vendor MIME field quoting issue advisories (Sep 13)

bambam

MySQL authentication bypass exploit code. bambam (Jul 08)

befcake beefy

xss in blog system befcake beefy (Aug 07)

Berend-Jan Wever

[Full-Disclosure] Internet Explorer Remote Null Pointer Crash(mshtml.dll) Berend-Jan Wever (Jul 28)
Re: Adobe Acrobat/Acrobat Reader ActiveX Control Buffer Overflow Vulnerability Berend-Jan Wever (Aug 18)

Carsten H. Eiram

Secunia Research: StarOffice / OpenOffice Insecure Temporary File Creation Carsten H. Eiram (Sep 13)

Chris Wysopal

Adobe Acrobat/Acrobat Reader ActiveX Control Buffer Overflow Vulnerability Chris Wysopal (Aug 18)
Adobe Acrobat Reader (Unix) 5.0 Uudecode Filename Buffer Overflow Chris Wysopal (Aug 18)
AOL Instant Messenger aim:goaway URI Handler Buffer Overflow Vulnerability Chris Wysopal (Aug 10)

CORE Security Technologies Advisories

CORE-2004-0714: Cfengine RSA Authentication Heap Corruption CORE Security Technologies Advisories (Aug 09)
CORE-2004-0705: Vulnerabilities in PuTTY and PSCP CORE Security Technologies Advisories (Aug 04)

Dragos Ruiu

SSHD / AnonCVS Nastyness Dragos Ruiu (Sep 02)

E . Bos

OpenBSD radius authentication vulnerability E . Bos (Sep 21)

Ferruh Mavituna

IE Shell URI Download and Execute, POC Ferruh Mavituna (Jul 13)
ASPRunner Multiple Vulnerabilities Ferruh Mavituna (Jul 26)

GreyMagic Software

Opera: Location, Location, Location GreyMagic Software (Aug 05)
Opera Local File/Directory Detection (GM#009-OP) GreyMagic Software (Aug 17)

hellNbak

MS04-025 - Ignorance is truly bliss.... hellNbak (Aug 05)
Re: xp sp2 weaknesses hellNbak (Aug 18)

Jake

Open Source Vulnerability Database Opens Vendor Dictionary Jake (Aug 31)

Jay Libove

SSH login attempts: tcpdump packet capture Jay Libove (Aug 01)

mattmurphy () kc rr com

Pavuk Digest Authentication Buffer Overflow mattmurphy () kc rr com (Jul 28)

Michael Scheidell

Vulnerability in IBM Windows XP: default hidden Administrator account allows local Administrator access Michael Scheidell (Sep 15)
Comcast(tm) Email Manager allows arbitrary java and activex code execution Michael Scheidell (Jul 22)

NGSSoftware Insight Security Research

Patch available for IBM DB2 Universal Database flaws NGSSoftware Insight Security Research (Sep 01)
Microsoft Windows Task Scheduler '.job' Stack Overflow NGSSoftware Insight Security Research (Jul 14)
Patch available for multiple critical flaws in Oracle NGSSoftware Insight Security Research (Aug 31)
MySQL Authentication Bypass NGSSoftware Insight Security Research (Jul 05)

Paul Schmehl

Re: [VulnDiscuss] Re: [Full-Disclosure] Automated SSH login attempts? Paul Schmehl (Jul 26)

Paul Starzetz

Linux kernel file offset pointer races Paul Starzetz (Aug 04)

Pentest Security Advisories

ptl-2004-03: WIDCOMM Bluetooth Connectivity Software Buffer Overflows Pentest Security Advisories (Aug 11)

Richie B.

UNIRAS ALERT - 34/04 - Vulnerability Issues with Apache 2.0.x Richie B. (Sep 15)
xp sp2 weaknesses Richie B. (Aug 18)

Roman Medina-Heigl Hernandez

RS-2004-2: "Content-Type" XSS vulnerability affecting other webmail systems Roman Medina-Heigl Hernandez (Jul 05)

Securiteinfo.com

myServer 0.7 Directory Traversal Vulnerability Securiteinfo.com (Sep 15)

SHATTER (Application Security, Inc.)

[SHATTER Team Security Alert] Multiple vulnerabilities in Oracle Database Server SHATTER (Application Security, Inc.) (Sep 02)

Stefano Di Paola

Php Vulnerability N. 2 Stefano Di Paola (Sep 15)
PHP Vulnerability N. 1 Stefano Di Paola (Sep 15)

sullo

EasyWeb FileManager Directory Traversal sullo (Jul 23)

Ulf Härnhammar

SoX buffer overflows when handling .WAV files Ulf Härnhammar (Jul 28)

Vivek Rathod (Application Security, Inc.)

Microsoft Window Utility Manager Local Elevation of Privileges Vivek Rathod (Application Security, Inc.) (Jul 13)

vulnwatch

Security issue with PuTTY v.54 vulnwatch (Aug 04)