New User, Welcome!     Login

<< Previous Next >>

copyright laws

Cisco Security Advisory: Cisco IOS Software Zone-Based Policy Firewall Vulnerability

    Router#show version
    Cisco Internetwork Operating System Software
    IOS (tm) 2500 Software (C2500-IS-L), Version 12.3(26), RELEASE SOFTWARE (fc2)
    Technical Support: http://www.cisco.com/techsupport
    Copyright ©) 1986-2008 by cisco Systems, Inc.
    Compiled Mon 17-Mar-08 14:39 by dchih
    
    <output truncated>

The following example identifies a Cisco product that is running

Cisco Security Advisory: Cisco Unified Communications Manager Express Vulnerability

        Router#show version
        Cisco Internetwork Operating System Software
        IOS (tm) 2500 Software (C2500-IS-L), Version 12.3(26), RELEASE SOFTWARE (fc2)
        Technical Support: http://www.cisco.com/techsupport
        Copyright (c) 1986-2008 by cisco Systems, Inc.
        Compiled Mon 17-Mar-08 14:39 by dchih
    
        <output truncated>

The following example identifies a Cisco product that is running

fetchmail security announcement fetchmail-SA-2009-01 (CVE-2009-2666)

Obtain the server fingerprints through a separate secure channel and
configure them with the sslfingerprint option, and enable the sslcertck
option.


A. Copyright, License and Warranty
==================================

(C) Copyright 2009 by Matthias Andree, <matthias.andree@gmx.de>.
Some rights reserved.


Vtiger CRM 5.0.4 Multiple Vulnerabilities

web site: http://www.ush.it/
mail: ascii AT ush DOT it

X. LEGAL NOTICES

Copyright (c) 2009 Francesco "ascii" Ongaro

Permission is granted for the redistribution of this alert
electronically. It may not be edited in any way without mine express
written consent. If you wish to reprint the whole or any
part of this alert in any other medium other than electronically,

[MORNINGSTAR-2009-01] Multiple security issues in Open Auto Classifieds version <= 1.5.9

The freshest blend of IT security news is available for your daily 
consumption at http://www.morningstarsecurity.com/news/


11. Disclaimer & Copyright
----------------------------------------------------------------------------------------------
The contents of this advisory are copyright (c) 2009 MorningStar 
Security, and may be distributed freely provided that and proper credit 
is given.


Cisco Security Advisory: Cisco IOS Software Border Gateway Protocol 4-Byte Autonomous System Number Vulnerabilities

    Router#show version
    Cisco Internetwork Operating System Software
    IOS (tm) 2500 Software (C2500-IS-L), Version 12.3(26), RELEASE SOFTWARE (fc2)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2008 by cisco Systems, Inc.   
    Compiled Mon 17-Mar-08 14:39 by dchih


    !--- output truncated


Juniper Advisory

                Juniper Networks, Inc.

                Version: 6.2.0r1.0 (Firewall+VPN)

                ScreenOS WebUI
                Copyright © 1997-2008 Juniper Networks, Inc.
                All Rights Reserved.


                For the latest technical information visit:
                http://www.juniper.net

Cisco Security Advisory: Cisco IOS Software Secure Copy Privilege Escalation Vulnerability

    Router#show version
    Cisco Internetwork Operating System Software
    IOS (tm) 2500 Software (C2500-IS-L), Version 12.3(26), RELEASE SOFTWARE (fc2)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2008 by cisco Systems, Inc.
    Compiled Mon 17-Mar-08 14:39 by dchih

    !--- output truncated



Cisco Security Advisory: Cisco IOS Software Multiple Features Crafted TCP Sequence Vulnerability

    Router#show version
    Cisco Internetwork Operating System Software
    IOS (tm) 2500 Software (C2500-IS-L), Version 12.3(26), RELEASE SOFTWARE (fc2)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2008 by cisco Systems, Inc.
    Compiled Mon 17-Mar-08 14:39 by dchih

    <output truncated>

The following example shows a product that is running Cisco IOS

Cisco Security Advisory: Cisco IOS Software WebVPN and SSLVPN Vulnerabilities

    Router#show version
    Cisco Internetwork Operating System Software
    IOS (tm) 2500 Software (C2500-IS-L), Version 12.3(26), RELEASE SOFTWARE (fc2)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2008 by cisco Systems, Inc.
    Compiled Mon 17-Mar-08 14:39 by dchih

    <output truncated>

The following example shows a product that is running Cisco IOS

Cisco Security Advisory: Cisco IOS cTCP Denial of Service Vulnerability

        Router#show version
        Cisco Internetwork Operating System Software
        IOS (tm) 2500 Software (C2500-IS-L), Version 12.3(26), RELEASE SOFTWARE (fc2)
        Technical Support: http://www.cisco.com/techsupport
        Copyright (c) 1986-2008 by cisco Systems, Inc.
        Compiled Mon 17-Mar-08 14:39 by dchih

      <output truncated>



Cisco Security Advisory: Cisco IOS Software Mobile IP and Mobile IPv6 Vulnerabilities

        Router#show version
        Cisco Internetwork Operating System Software
        IOS (tm) 2500 Software (C2500-IS-L), Version 12.3(26), RELEASE SOFTWARE (fc2)
        Technical Support: http://www.cisco.com/techsupport
        Copyright (c) 1986-2008 by cisco Systems, Inc.
        Compiled Mon 17-Mar-08 14:39 by dchih
        !--- output truncated


The following example identifies a Cisco product that is running

Cisco Security Advisory: Cisco ACE Application Control Engine Device Manager and Application Networking Manager Vulnerabilities

appliance running software version A3(2.1):

    ACE-4710/Admin# show version
    Cisco Application Control Software (ACSW)
    TAC support: http://www.cisco.com/tac
    Copyright (c) 1985-2008 by Cisco Systems, Inc. All rights reserved.
    The copyrights to certain works contained herein are owned by
    other third parties and are used and distributed under license.
    Some parts of this software are covered under the GNU Public
    License. A copy of the license is available at
    http://www.gnu.org/licenses/gpl.html.

Cisco Security Advisory: Multiple Vulnerabilities in the Cisco ACE Application Control Engine Module and Cisco ACE 4710 Application Control Engine

version A3(1.0):

    ACE-4710/Admin# show version
    Cisco Application Control Software (ACSW)
    TAC support: http://www.cisco.com/tac
    Copyright (c) 1985-2008 by Cisco Systems, Inc. All rights reserved.
    The copyrights to certain works contained herein are owned by
    other third parties and are used and distributed under license.
    Some parts of this software are covered under the GNU Public
    License. A copy of the license is available at
    http://www.gnu.org/licenses/gpl.html

Re: MS OWA 2003 Redirection Vulnerability

javascript:alert(document.cookie) 

If there are no/dumb filters you'll get

<!--Copyright (c) 2000-2003 Microsoft Corporation.  All rights
reserved.-->
<META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=utf-8">
<html><head>
<script>
        try

n.runs-SA-2008.008 - Internet Explorer HTML Object Memory Corruption and Remote Code Execution

is the first high-end security solution that n.runs is bringing to the 
market.

Advisories can be found at : http://www.nruns.com/security_advisory.php

Copyright Notice
----------------
Unaltered electronic reproduction of this advisory is permitted. For all
other reproduction or publication, in printing or otherwise, contact
security@nruns.com for permission. Use of the advisory constitutes
acceptance for use in an "as is" condition. All warranties are excluded.

RE: Pidgin IM Client Password Disclosure Vulnerability.

> >      Microsoft SBSC PAL (Australia) http://www.sbscpal.com/
> >
> > War doesn't determine who is right.  War determines who is left.
> >
> > This document and any attachments are for the intended recipient
> >   only.  It may contain confidential, privileged or copyright
> >      material which must not be disclosed or distributed.
> >
> >                     Quark Group Pty. Ltd.
> >       T/A Quark Automation, Quark AudioVisual, Quark IT
> >

Cisco Security Advisory: Cisco IOS IPS Denial of Service Vulnerability

    Router#show version
    Cisco Internetwork Operating System Software
    IOS (tm) 2500 Software (C2500-IS-L), Version 12.3(26), RELEASE SOFTWARE (fc2)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2008 by cisco Systems, Inc.
    Compiled Mon 17-Mar-08 14:39 by dchih

    <output truncated>
    Router#


QuickerSite Multiple Vulnerabilities

                Site Url: <input type="text" name="sUrl" value="http://www.VICTIM.com" size="100" /><br />
                Site AlternateDomains: <input type="text" name="sAlternateDomains" value="http://www.VICTIM-Backup.com" size="100" /><br />
                Description: <input type="text" name="sDescription" value="Hacked Description" size="100" /><br />
                Site Name: <input type="text" name="siteName" value="Hacked Site Name" size="100" /><br />
                Site Title: <input type="text" name="siteTitle" value="Hacked Site Title" size="100" /><br />
                CopyRight: <input type="text" name="copyRight" value="Hacked CopyRight" size="100" /><br />
                Keywords: <input type="text" name="keywords" value="Hacked KeyWords" size="100" /><br />
                Google Analytics: <input type="text" name="googleAnalytics" value="Hacked Google Anal!" size="100" /><br />
                Language: <input type="text" name="language" value="1" size="100" /><br />
                DatumFormat: <input type="text" name="sDatumFormat" value="1" size="100" /><br />
                Webmaster: <input type="text" name="webmaster" value="Hacker" size="100" /><br />

Many bugs on CMS system Piugame

    11-Abril-2008 Vendor never response.
    24-Mayo-2008 Vendor never response.

Public Advisory: 10-Junio-2008

5.- Copyright
Researcher: Psymera
http://www.securitynation.com - Security Nation is a Lab Supported by
RISS Security Services.
http://www.riss.com.mx
Copyright SecurityNation.

fetchmail security announcement fetchmail-SA-2008-01 (CVE-2008-2711)

sources so they do not cause buffer resizing. It is recommended to
replace the vulnerable code by a fixed version (see previous
section 3. Solution) as soon as reasonably possible.


A. Copyright, License and Warranty
==================================

(C) Copyright 2008 by Matthias Andree, <matthias.andree@gmx.de>.
Some rights reserved.


fetchmail security announcement fetchmail-SA-2007-02 (CVE-2007-4565)

Note there are no workarounds presented here since all known workarounds 
are more intrusive than the actual solution.


A. Copyright, License and Warranty
==================================

(C) Copyright 2007 by Matthias Andree, <matthias.andree@gmx.de>.
Some rights reserved.


n.runs-SA-2008.001 - Jscape Secure FTP Applet

Application Protection System - Anti Virus (aps-AV) is the first high-end
security solution that n.runs is bringing to the market.

Advisories can be found at : http://www.nruns.com/security_advisory.php

Copyright Notice
^^^^^^^^^^^^^^^^
Unnaltered electronic reproduction of this advisory is permitted. For all
other reproduction or publication, in printing or otherwise, contact
security@nruns.com for permission. Use of the advisory constitutes
acceptance for use in an "as is" condition. All warranties are excluded. In

fetchmail REVISED security announcement fetchmail-SA-2008-01 (CVE-2008-2711)

sources so they do not cause buffer resizing. It is recommended to
replace the vulnerable code by a fixed version (see previous
section 3. Solution) as soon as reasonably possible.


A. Copyright, License and Warranty
==================================

(C) Copyright 2008 by Matthias Andree, <matthias.andree@gmx.de>.
Some rights reserved.


ERRATA - n.runs-SA-2008.001 - Jscape Secure FTP Applet

solutions. Application Protection System - Anti Virus (aps-AV) is the first
high-end security solution that n.runs is bringing to the market.

Advisories can be found at : http://www.nruns.com/security_advisory.php

Copyright Notice
----------------
Unaltered electronic reproduction of this advisory is permitted. For all
other reproduction or publication, in printing or otherwise, contact
security@nruns.com for permission. Use of the advisory constitutes
acceptance for use in an "as is" condition. All warranties are excluded.

Cross site scripting issues in s9y (CVE-2008-1386, CVE-2008-1387)

CVE Information

The Common Vulnerabilities and Exposures (CVE) project has assigned the name 
CVE-2008-1385 to this issue. This is a candidate for inclusion in the CVE 
list (http://cve.mitre.org/), which standardizes names for security problems.
Credits and copyright

This vulnerability was discovered by Hanno Boeck of schokokeks.org webhosting. 
It's licensed under the creative commons attribution license.

Hanno Boeck, 2008-04-xx, http://www.hboeck.de

Cross site scripting issues in s9y (CVE-2008-1386, CVE-2008-1387)

CVE Information

The Common Vulnerabilities and Exposures (CVE) project has assigned the name 
CVE-2008-1385 to this issue. This is a candidate for inclusion in the CVE 
list (http://cve.mitre.org/), which standardizes names for security problems.
Credits and copyright

This vulnerability was discovered by Hanno Boeck of schokokeks.org webhosting. 
It's licensed under the creative commons attribution license.

Hanno Boeck, 2008-04-xx, http://www.hboeck.de

PHP-Nuke Copyright 2005 SQL

#########################################################################
#
#  PHP-Nuke Copyright © 2005 by Francisco Burzi
#
#########################################################################
#
#  AUTHOR : TurkishWarriorr
#
#  SiTE : http://1923turk.org
#

{securityreason.com}PHP 5 *printf() - Integer Overflow

cxib# uname -a
FreeBSD cxib.laptop 7.0-RELEASE FreeBSD 7.0-RELEASE #0: Sun Feb 24 19:59:52 UTC 2008     root@logan.cse.buffalo.edu:/usr/obj/usr/src/sys/GENERIC  i386
cxib# php -v
PHP 5.2.5 (cli) (built: Mar 13 2008 21:34:01) (DEBUG)
Copyright (c) 1997-2007 The PHP Group
Zend Engine v2.2.0, Copyright (c) 1998-2007 Zend Technologies
cxib# cat /www/printf.php
<?
sprintf("[%'A2147483646s]\n",  "A");
?>

CSA-L03: Linux kernel vmsplice unchecked user-pointer dereference

http://isec.pl/


===[ LEGAL DISCLAIMER ]=================================================

Copyright (c) 2008 Wojciech Purczynski
Copyright (c) 2008 COSEINC PTE Ltd.

All Rights Reserved.

PUBLISHING, DISTRIBUTING, PRINTING, COPYING, SCANNING, DUPLICATING IN

<<Previous Next>>

Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!