New User, Welcome!     Login

Next Page >>

The Web

WASC Announcement: 2008 Web Application Security Statistics Published

The Web Application Security Consortium (WASC) is pleased to announce
the WASC Web Application Security Statistics Project 2008. This
initiative is a collaborative industry wide effort to pool together
sanitized website vulnerability data and to gain a better understanding
about the web application vulnerability landscape.

The statistics was compiled from web application security assessment
projects which were made by the following companies in 2008 (in
alphabetic order):

Joomla! 1.6.0 | Cross Site Scripting (XSS) Vulnerability

2. PRODUCT DESCRIPTION

Joomla is a free and open source content management system (CMS) for
publishing content on the World Wide Web and intranets. It comprises a
model–view–controller (MVC) Web application framework that can also be
used independently.
Joomla is written in PHP, uses object-oriented programming (OOP)
techniques and software design patterns, stores data in a MySQL
database, and includes features such as page caching, RSS feeds,

RE: Latest round of web hacking incidents for 2007 & Project news

To: "Bugtraq" <bugtraq@securityfocus.com>
Sent: 12/27/07 11:01 AM
Subject: Latest round of web hacking incidents for 2007 & Project news


The last month was very active in the web application security field and at
the Web Hacking Incidents Database Project we have collected numerous new
incidents, listed below. It is very evident that both the rate of incidents
as well the amount of information about each one is on the rise.

We have also started adding more classifications to each incident. In

Latest round of web hacking incidents for 2007 & Project news

The last month was very active in the web application security field and at
the Web Hacking Incidents Database Project we have collected numerous new
incidents, listed below. It is very evident that both the rate of incidents
as well the amount of information about each one is on the rise.

We have also started adding more classifications to each incident. In
addition to the attack method we now track for each incident its geography,
the outcome of the attack and the industry sector it occured at. We are
going to use this information in the our first annual Web Incidents summary

[ISecAuditors Security Advisories] Tikiwiki CMS is vulnerable to path traversal attack

This script sets the movie parameter value into $movie. The last 4
bytes are erased and an .xml extension is appended. Then, the file is
opened for reading with the call fopen($confFile,'r') and the first
1000 bytes are read from the file. Then the 1000 bytes are parsed and
used as the values for MovieWidth and MovieHeight HTML tags. Finally
the resulting HTML file is returned to the user by the webserver.

The vulnerable snippet of code is:

if(isset($_GET["movie"])) {
  $movie = $_GET["movie"];

Tembria Server Monitor Multiple Cross-site Scripting (XSS) Vulnerabilities

Type of vulnerability: Cross-Site Scripting (XSS) - Reflected

Exploit Vectors: Local and Remote

Vulnerability Description: The Web application management interface of Server Monitor contains multiple injection points, which allow for execution of Cross-site Scripting (XSS) attacks. Arbitrary client side code such as JavaScript can be included into certain parameters throughout the Web application. The following parameters and Web pages have been tested and verified; however, it is likely more views and parameters within the application are vulnerable: 

event-history.asp (siteid, type) parameter 
admin-history.asp (siteid, type) parameters 
dashboard-view.asp (siteid, id) parameters 
device-events.asp (siteid, dn) parameters 

Joomla! 1.7.0-RC and lower | Multiple Cross Site Scripting (XSS) Vulnerabilities

2. BACKGROUND

Joomla is a free and open source content management system (CMS) for
publishing content on the World Wide Web and intranets. It comprises a
model–view–controller (MVC) Web application framework that can also be
used independently.
Joomla is written in PHP, uses object-oriented programming (OOP)
techniques and software design patterns, stores data in a MySQL
database, and includes features such as page caching, RSS feeds,

Joomla! 1.5.20 <= Cross Site Scripting (XSS) Vulnerability

2. PRODUCT DESCRIPTION

Joomla is a free and open source content management system (CMS) for
publishing content on the World Wide Web and intranets. It comprises a
model–view–controller (MVC) Web application framework that can also be
used independently.
Joomla is written in PHP, uses object-oriented programming (OOP)
techniques and software design patterns, stores data in a MySQL
database, and includes features such as page caching, RSS feeds,

RE: Latest round of web hacking incidents for 2007 & Project news

To: "Bugtraq" <bugtraq@securityfocus.com>
Sent: 12/27/07 11:01 AM
Subject: Latest round of web hacking incidents for 2007 & Project news


The last month was very active in the web application security field and at
the Web Hacking Incidents Database Project we have collected numerous new
incidents, listed below. It is very evident that both the rate of incidents
as well the amount of information about each one is on the rise.

We have also started adding more classifications to each incident. In

Web Hacking Incidenets Database 2007 annual Report is out

The Web Hacking Incidents Database (WHID) annual report for 2007 is out.

The WHID 2007 annual report builds on the new metrics we recently added to
WHID, such as attack method, attack outcome, country and industry sector of
hacked organization to analyze web hacking trends in 2007.

In the report we discuss the drivers for web hacking, the vulnerabilities
exploited and the types of organization attacked. We hope that the report
can serve to highlight the web application security issue and as a base for

WASC Announcement: The Script Mapping Project Results and Call for Participation

The Web Application Security Consortium is pleased to announce the first results 
of the Script Mapping project! At this stage in the project we were able to cover
most of the test cases for Internet Explorer 7, Firefox 2 and Safari 3.

The results can be found on the project page:
http://www.webappsec.org/projects/scriptmapping/

Project Description:


Joomla! 1.6.3 and lower | Multiple Cross Site Scripting (XSS) Vulnerabilities

2. BACKGROUND

Joomla is a free and open source content management system (CMS) for
publishing content on the World Wide Web and intranets. It comprises a
model–view–controller (MVC) Web application framework that can also be
used independently.
Joomla is written in PHP, uses object-oriented programming (OOP)
techniques and software design patterns, stores data in a MySQL
database, and includes features such as page caching, RSS feeds,

Re: Certificate spoofing issue with Mozilla, Konqueror, Safari 2

> If a user is fool enough to accept lame certs (even temporary) and then
> later on send his private data in secure sites without checking the
> certificate (at least the CN which yells the difference) then he
> probably asked for it.

The Web is used by close to a billion people who do not necessarily check
the details of SSL certs, or inspect all HTTP headers, on *every single*
login to their webmail or online banking site.

We may perhaps blame them if they click through clear and concise security
warnings, or subvert other measures, and willingly consent to an

Joomla! 1.7.0 | Multiple Cross Site Scripting (XSS) Vulnerabilities

2. BACKGROUND

Joomla is a free and open source content management system (CMS) for
publishing content on the World Wide Web and intranets. It comprises a
model–view–controller (MVC) Web application framework that can also be
used independently.
Joomla is written in PHP, uses object-oriented programming (OOP)
techniques and software design patterns, stores data in a MySQL
database, and includes features such as page caching, RSS feeds,

Re: Latest round of web hacking incidents for 2007 & Project news

> To: "Bugtraq" <bugtraq@securityfocus.com>
> Sent: 12/27/07 11:01 AM
> Subject: Latest round of web hacking incidents for 2007 & Project news
>
>
> The last month was very active in the web application security field and at
> the Web Hacking Incidents Database Project we have collected numerous new
> incidents, listed below. It is very evident that both the rate of incidents
> as well the amount of information about each one is on the rise.
>
> We have also started adding more classifications to each incident. In

Joomla! 1.6.0 | SQL Injection Vulnerability

2. BACKGROUND

Joomla is a free and open source content management system (CMS) for
publishing content on the World Wide Web and intranets. It comprises a
model–view–controller (MVC) Web application framework that can also be
used independently.
Joomla is written in PHP, uses object-oriented programming (OOP)
techniques and software design patterns, stores data in a MySQL
database, and includes features such as page caching, RSS feeds,

Joomla! 1.6.0 | Information Disclosure/Full Path Disclosure Vulnerability

2. BACKGROUND

Joomla is a free and open source content management system (CMS) for
publishing content on the World Wide Web and intranets. It comprises a
model–view–controller (MVC) Web application framework that can also be
used independently.
Joomla is written in PHP, uses object-oriented programming (OOP)
techniques and software design patterns, stores data in a MySQL
database, and includes features such as page caching, RSS feeds,

TSLSA-2007-0024 - multi

  gd
  gd is a graphics library. It allows your code to quickly draw images
  complete with lines, arcs, text, multiple colors, cut and paste from
  other images, and flood fills, and write out the result as a PNG or
  JPEG file. This is particularly useful in World Wide Web applications,
  where PNG and JPEG are two of the formats accepted for inline images
  by most browsers.

  mutt
  Mutt is a text mode mail user agent. Mutt supports color, threading,

Joomla! 1.0.x ~ 1.0.15 | Cross Site Scripting (XSS) Vulnerability

2. BACKGROUND

Joomla! is a free and open source content management system (CMS) for
publishing content on the World Wide Web and intranets.


3. VULNERABILITY DESCRIPTION

The "ordering" parameter in a core module,com_search, is not properly

phpMyAdmin 3.3.5 / 2.11.10 <= Cross Site Scripting (XSS) Vulnerability

2. PRODUCT DESCRIPTION

phpMyAdmin is a free software tool written in PHP intended to handle
the administration of MySQL over the World Wide Web.
phpMyAdmin supports a wide range of operations with MySQL.
The most frequently used operations are supported by the user
interface (managing databases, tables, fields, relations,
indexes, users, permissions, etc), while you still have the ability to
directly execute any SQL statement.

VMSA-2012-0007 VMware hosted products and ESXi/ESX patches address privilege escalation

     Windows-Based Virtual Machines that have moved to Workstation 8,
     Player 4 or Fusion 4 from a lower version of Workstation, Player
     or Fusion are affected.

  ** The built-in update feature of Fusion can be used immediately to
     upgrade to 4.1.2. The Web download of Fusion 4.1.2 will be
     available on 2012-04-14.
 
4. Solution
   Please review the patch/release notes for your product and
   version and verify the checksum of your downloaded file.

WASC Announcement: 2007 Web Application Security Statistics Published

The Web Application Security Consortium (WASC) is pleased to announce
the WASC Web Application Security Statistics Project 2007. This
initiative is a collaborative industry wide effort to pool together
sanitized website vulnerability data and to gain a better understanding
about the web application vulnerability landscape.

Goals
1. Identify the prevalence and probability of different vulnerability classes

WASC Announcement: WASC Threat Classification v2.0 Published

The Web Application Security Consortium (WASC) is pleased to announce the long awaited release of the WASC 
Threat Classification v2.0. The Threat Classification is an effort to classify the weaknesses, and attacks 
that can lead to the compromise of a website, its data, or its users. This document's primarily purpose is 
to serve as a reference guide for common attacks and weaknesses.

Main goals
- Refine document scope, terminology, and purpose
- Update existing sections when applicable
- Add missing attacks and weaknesses
- Creation of a firm, scalable base foundation allowing for the introduction of data views allowing for various 

WASC Announcement: Announcing the Web Application Security Scanner Evaluation Criteria v1

The Web Application Security Consortium is pleased to announce the release
of version 1 of the Web Application Security Scanner Evaluation Criteria
(WASSEC).  The goal of the WASSEC project is to create a vendor-neutral
document to help guide information security professionals during web
application scanner evaluations.  The document provides a comprehensive list
of features that should be considered when conducting an evaluation.  The
WASSEC project does not promote any specific products or tools, but instead
provides valuable information to help you make your own decision about which
of these tools best meets your needs.

Re: [WEB SECURITY] [TOOL] DotDotPwn v2.1 - The Directory Traversal Fuzzer

----------------------------------------------------------------------------
Join us on IRC: irc.freenode.net #webappsec

Have a question? Search The Web Security Mailing List Archives:
http://www.webappsec.org/lists/websecurity/archive/

Subscribe via RSS:
http://www.webappsec.org/rss/websecurity.rss [RSS Feed]


Re: [WEB SECURITY] countermeasure against attacks through HTML shared files

>
>
> ----------------------------------------------------------------------------
> Join us on IRC: irc.freenode.net #webappsec
>
> Have a question? Search The Web Security Mailing List Archives: 
> http://www.webappsec.org/lists/websecurity/archive/
>
> Subscribe via RSS: 
> http://www.webappsec.org/rss/websecurity.rss [RSS Feed]
>

Cisco Security Advisory: Cisco Wireless Control System Conversion Utility Adds Default Password

workaround is available, a software upgrade is not required to address this
vulnerability. However, if you have a service contract, and would like to
upgrade to unaffected code, you may obtain upgraded software through your
regular update channels when that software is available. For most customers,
this means that upgrades should be obtained through the Software Center on
Cisco's worldwide web site at http://www.cisco.com.

Customers with Service Contracts
+-------------------------------

Customers with contracts should obtain upgraded software through their regular

Mac OS X WebDAV kernel extension local denial-of-service

Mac OS X supports WebDAV shares natively as a filesystem, implemented
as a kernel extension.  Local users can mount WebDAV shares using the
"mount_webdav" utility included in most default installations.

The WebDAV kernel extension is vulnerable to a denial-of-service issue
that allows a local unprivileged user to trigger a kernel panic due to
a memory overallocation.  This vulnerability has been verified with
proof-of-concept code.  The vulnerable code is in the webdav_mount()
function, and reads as:


Re: [WEB SECURITY] countermeasure against attacks through HTML shared files

> 
> 
> ----------------------------------------------------------------------------
> Join us on IRC: irc.freenode.net #webappsec
> 
> Have a question? Search The Web Security Mailing List Archives: 
> http://www.webappsec.org/lists/websecurity/archive/
> 
> Subscribe via RSS: 
> http://www.webappsec.org/rss/websecurity.rss [RSS Feed]
> 

Weekly Web Hacking Incidents update for Feb 25th

The Web Hacking Incidents Database (http://whid.webappsec.org), or WHID for
short, is a Web Application Security Consortium (http://www.webappsec.org)
project dedicated to maintaining a list of web applications related security
incidents. WHID goal is to serve as a tool for raising awareness of the web
application security problem and provide information for statistical
analysis of web applications security incidents.

To continuously learn about new incidents, subscribe to the WHID RSS at
http://whid.webappsec.org/whid/rss.


Next Page>>

Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!