New User, Welcome!     Login

Next Page >>

Windows Server 2008

VUPEN Security Research - Microsoft Windows OpenType CFF Driver Stack Overflow Vulnerability (CVE-2011-0034)

Microsoft Windows Server 2003 SP2 (Itanium)
Microsoft Windows Vista Service Pack 1
Microsoft Windows Vista Service Pack 2
Microsoft Windows Vista x64 Edition Service Pack 1
Microsoft Windows Vista x64 Edition Service Pack 2
Microsoft Windows Server 2008 (32-bit)
Microsoft Windows Server 2008 (32-bit) Service Pack 2
Microsoft Windows Server 2008 (64x)
Microsoft Windows Server 2008 (64x) Service Pack 2
Microsoft Windows Server 2008 (Itanium)
Microsoft Windows Server 2008 (Itanium) Service Pack 2

VUPEN Security Research - Microsoft Internet Explorer VML Remote Code Execution (MS12-023 / CVE-2012-0172)

Microsoft Windows Server 2003 with SP2 for Itanium-based Systems
Microsoft Windows Vista Service Pack 1
Microsoft Windows Vista Service Pack 2
Microsoft Windows Vista x64 Edition Service Pack 1
Microsoft Windows Vista x64 Edition Service Pack 2
Microsoft Windows Server 2008 for 32-bit Systems
Microsoft Windows Server 2008 for 32-bit Systems Service Pack 2
Microsoft Windows Server 2008 for x64-based Systems
Microsoft Windows Server 2008 for x64-based Systems Service Pack 2
Microsoft Windows Server 2008 for Itanium-based Systems
Microsoft Windows Server 2008 for Itanium-based Systems Service Pack 2

VUPEN Security Research - Microsoft Internet Explorer Property Change Memory Corruption (CVE-2011-1345)

Microsoft Windows Server 2003 with SP2 for Itanium-based Systems
Microsoft Windows Vista Service Pack 1
Microsoft Windows Vista Service Pack 2
Microsoft Windows Vista x64 Edition Service Pack 1
Microsoft Windows Vista x64 Edition Service Pack 2
Microsoft Windows Server 2008 for 32-bit Systems
Microsoft Windows Server 2008 for 32-bit Systems Service Pack 2
Microsoft Windows Server 2008 for x64-based Systems
Microsoft Windows Server 2008 for x64-based Systems Service Pack 2
Microsoft Windows Server 2008 for Itanium-based Systems
Microsoft Windows Server 2008 for Itanium-based Systems Service Pack 2

VUPEN Security Research - Microsoft Internet Explorer "mshtml.dll" Dangling Pointer Vulnerability (CVE-2011-0036)

Microsoft Windows 7 (32-bit)
Microsoft Windows 7 (64x)
Microsoft Windows Server 2003 Service Pack 2
Microsoft Windows Server 2003 SP2 (Itanium)
Microsoft Windows Server 2003 x64 Edition Service Pack 2
Microsoft Windows Server 2008 (32-bit)
Microsoft Windows Server 2008 (32-bit) Service Pack 2
Microsoft Windows Server 2008 (64x)
Microsoft Windows Server 2008 (64x) Service Pack 2
Microsoft Windows Server 2008 (Itanium)
Microsoft Windows Server 2008 (Itanium) Service Pack 2

VUPEN Security Research - Microsoft Windows OLE Automation Integer Underflow Vulnerability (MS11-038)

Microsoft Windows 7 (32-bit)
Microsoft Windows 7 (x64)
Microsoft Windows Server 2003 Service Pack 2
Microsoft Windows Server 2003 SP2 (Itanium)
Microsoft Windows Server 2003 x64 Edition Service Pack 2
Microsoft Windows Server 2008 (32-bit)
Microsoft Windows Server 2008 (32-bit) Service Pack 2
Microsoft Windows Server 2008 (Itanium)
Microsoft Windows Server 2008 (Itanium) Service Pack 2
Microsoft Windows Server 2008 (x64)
Microsoft Windows Server 2008 (x64) Service Pack 2

VUPEN Security Research - Microsoft Internet Explorer Layouts Use-after-free Vulnerability (CVE-2011-0094)

Microsoft Windows Server 2003 with SP2 for Itanium-based Systems
Microsoft Windows Vista Service Pack 1
Microsoft Windows Vista Service Pack 2
Microsoft Windows Vista x64 Edition Service Pack 1
Microsoft Windows Vista x64 Edition Service Pack 2
Microsoft Windows Server 2008 for 32-bit Systems
Microsoft Windows Server 2008 for 32-bit Systems Service Pack 2
Microsoft Windows Server 2008 for x64-based Systems
Microsoft Windows Server 2008 for x64-based Systems Service Pack 2
Microsoft Windows Server 2008 for Itanium-based Systems
Microsoft Windows Server 2008 for Itanium-based Systems Service Pack 2

VUPEN Security Research - Microsoft Windows Shell Graphics biCompression Buffer Overflow Vulnerability

III. AFFECTED PRODUCTS
---------------------------

Microsoft Windows Server 2008 (32-bit)
Microsoft Windows Server 2008 (32-bit) Service Pack 2
Microsoft Windows Server 2008 (Itanium)
Microsoft Windows Server 2008 (Itanium) Service Pack 2
Microsoft Windows Server 2008 (x64)
Microsoft Windows Server 2008 (x64) Service Pack 2

VUPEN Security Research - Microsoft Windows Shell Graphics BMP "height" Integer Overflow Vulnerability

III. AFFECTED PRODUCTS
---------------------------

Microsoft Windows Server 2008 (32-bit)
Microsoft Windows Server 2008 (32-bit) Service Pack 2
Microsoft Windows Server 2008 (Itanium)
Microsoft Windows Server 2008 (Itanium) Service Pack 2
Microsoft Windows Server 2008 (x64)
Microsoft Windows Server 2008 (x64) Service Pack 2

VUPEN Security Research - Microsoft Windows Shell Graphics BMP "width" Integer Overflow Vulnerability

III. AFFECTED PRODUCTS
---------------------------

Microsoft Windows Server 2008 (32-bit)
Microsoft Windows Server 2008 (32-bit) Service Pack 2
Microsoft Windows Server 2008 (Itanium)
Microsoft Windows Server 2008 (Itanium) Service Pack 2
Microsoft Windows Server 2008 (x64)
Microsoft Windows Server 2008 (x64) Service Pack 2

VUPEN Security Research - Microsoft Windows GDI+ Size Handling Integer Overflow Vulnerability

Microsoft Windows Server 2003 SP2 (Itanium)
Microsoft Windows Vista Service Pack 1
Microsoft Windows Vista Service Pack 2
Microsoft Windows Vista x64 Edition Service Pack 1
Microsoft Windows Vista x64 Edition Service Pack 2
Microsoft Windows Server 2008 (32-bit)
Microsoft Windows Server 2008 (32-bit) Service Pack 2
Microsoft Windows Server 2008 (64x)
Microsoft Windows Server 2008 (64x) Service Pack 2
Microsoft Windows Server 2008 (Itanium)
Microsoft Windows Server 2008 (Itanium) Service Pack 2

VUPEN Security Research - Microsoft Windows Kernel "GetDCEx()" Memory Corruption Vulnerability (CVE-2010-0484)

Microsoft Windows Vista x64 Edition Service Pack 2
Microsoft Windows Vista x64 Edition Service Pack 1
Microsoft Windows XP Service Pack 3
Microsoft Windows XP Service Pack 2
Microsoft Windows XP Professional x64 Edition Service Pack 2
Microsoft Windows Server 2008 (32-bit) Service Pack 2
Microsoft Windows Server 2008 (32-bit)
Microsoft Windows Server 2008 (x64) Service Pack 2
Microsoft Windows Server 2008 (x64)
Microsoft Windows Server 2008 (Itanium) Service Pack 2
Microsoft Windows Server 2008 (Itanium)

Windows SMB NTLM Authentication Weak Nonce Vulnerability

Windows Vista SP1
Windows Vista SP2
Windows Vista x64 Edition
Windows Vista x64 Edition SP1
Windows Vista x64 Edition SP2
Windows Server 2008 x32
Windows Server 2008 x32 SP2
Windows Server 2008 x64 SP2
Windows Server 2008 x64 SP2
Windows Server 2008 for Itanium-based systems
Windows Server 2008 for Itanium-based systems SP2

iDefense Security Advisory 07.15.09: Microsoft Embedded OpenType Font Engine (T2EMBED.DLL) Heap Buffer Overflow Vulnerability

Windows Vista, Windows Vista SP 1, and Windows Vista SP 2

Windows Vista x64 Edition, Windows Vista x64 Edition SP 1, and Windows
Vista x64 Edition SP 2

Windows Server 2008 for 32-bit Systems and Windows Server 2008 for
32-bit Systems SP 2

Windows Server 2008 for x64-based Systems and Windows Server 2008 for
x64-based Systems SP 2


CORE-2011-0203 - MS HyperV Persistent DoS Vulnerability

 The vulnerability could not be exploited remotely or by anonymous users.


4. *Vulnerable packages*

   . Windows Server 2008 for x64-based Systems
   . Windows Server 2008 for x64-based Systems SP2
   . Windows Server 2008 R2 for x64-based Systems
   . Windows Server 2008 R2 for x64-based Systems SP1



VUPEN Security Research - Microsoft Internet Explorer "X-UA-COMPATIBLE" Use-after-free Vulnerability

Microsoft Windows 7 for x64-based Systems Service Pack 1
Microsoft Windows 7 for x64-based Systems
Microsoft Windows 7 for 32-bit Systems Service Pack 1
Microsoft Windows 7 for 32-bit Systems
Microsoft Windows Server 2008 R2 for x64-based Systems
Microsoft Windows Server 2008 R2 for x64-based Systems Service Pack 1
Microsoft Windows Server 2008 R2 for Itanium-based Systems
Microsoft Windows Server 2008 R2 for Itanium-based Systems Service Pack 1
Microsoft Windows XP Service Pack 3
Microsoft Windows XP Professional x64 Edition Service Pack 2

[security bulletin] HPSBMA02413 SSRT080040 rev.1 - HP WMI Mapper for Windows Server 2003 and Windows Server 2008 for Itanium-based Servers, Remote Unauthorized Access to Data, Local Unauthorized Access

SUPPORT COMMUNICATION - SECURITY BULLETIN

Document ID: c01682739
Version: 1

HPSBMA02413 SSRT080040 rev.1 - HP WMI Mapper for Windows Server 2003 and Windows Server 2008 for Itanium-based Servers, Remote Unauthorized Access to Data, Local Unauthorized Access

NOTICE: The information in this Security Bulletin should be acted upon as soon as possible.

Release Date: 2009-03-02
Last Updated: 2009-03-09

NSFOCUS SA2009-03 : Windows Kernel Malformed PE File Remote DoS Vulnerability

    Microsoft Windows XP
    Microsoft Windows 2000
    Microsoft Windows 2003
    Microsoft Windows Vista/SP1
    Microsoft Windows Server 2008

Unaffected system:
==============

   Microsoft Windows Vista SP2

PHP filesystem attack vectors - Take Two

! Valid chars are: \x20 ( ), \x22 ("), \x2E (.), \x3C (<), \x3E (>)
! Valid strings are all combinations of the above chars.

--8<--8<--8<--8<--8<--8<--8<--8<--8<--8<--8<--8<--8<--8<--8<--8<--8<--

PHP 5.3.0 Windows Server 2008 (WampServer 2.0i install)

C:\PHPFS_MAD2> php alfi_fuzzer.php
! Valid chars are: \x20 ( ), \x22 ("), \x2E (.), \x3C (<), \x3E (>)
! Valid strings are all combinations of the above chars.


Windows server 2008 R1 local DoS

Hi all.
Here's a cute little local DoS attack against Windows Server 2008 R1,
which will allow any user who can execute unprivileged code to BSoD
your server with about three lines of C.
I have reported this to Microsoft, but because of the limited scope of
the issue - DoS-only, and server 2008 R1, as opposed to R2 - they
declined to put out a security bulletin. Note that, as far as I can
tell, upgrades from R1 to R2 are for-pay unless you bought R1 with
Software Assurance originally, and additionally, that R2 does not
support 32-bit hardware.

[DSECRG-11-011] SAP Crystal Reports 2008 - Multiple XSS

[DSECRG-11-011] SAP Crystal Reports 2008 - Multiple XSS 

SAP Crystal Report Server 2008 - multiple cross-site scripting vulnerabilities. 

SAP Crystal Report Server 2008 - Multiple cross-site scripting vulnerabilities. [DSecRG-11-011] (Internal DSECRG-00147) 


Multiple XSS vulnerabilities found in the module PerformanceManagement application SAP Crystal Report Server 2008. An attacker can intercept the cookie administrator or regular user of the system. 

Application: SAP Crystal Report Server 2008 

[DSECRG-00145] SAP Crystal Reports 2008 - Directory Traversal

DSECRG-11-003  (Internal DSECRG-00145) SAP Crystal Report Server 2008 - Directory Traversal     
Directory traversal vulnerability discovered in the module PerformanceManagement application SAP Crystal Report Server 2008, which allows you to read any file on the OS.

Application:                    SAP Crystal Report Server 2008
Versions Affected:               SAP Crystal Report Server 2008
Vendor URL:                     http://sap.com
Bugs:                           Directory Traversal File Read
Exploits:                        YES
Reported:                       29.03.2010
Vendor response:                30.03.2010

[CORE-2010-0623] Microsoft Windows CreateWindow function callback vulnerability

At least all supported versions of Windows were reported by Microsoft
to be vulnerable:

   . Windows 7
   . Windows Vista
   . Windows Server 2008 R2
   . Windows Server 2008
   . Microsoft Windows XP
   . Microsoft Windows Server 2003



[DSECRG-00143] SAP Crystal Reports 2008 - ActiveX insecure methods

 [DSECRG-11-002] (Internal DSECRG-00143) SAP Crystal Report Server 2008 scriptinghelpers.dll ActiveX component - Insecure methods

The component contains insecure methods by which you can overwrite any file in the OS, run the executable file, kill process, delete the file.

Application:            SAP Crystal Report Server 2008
Versions Affected:      SAP Crystal Report Server 2008
Vendor URL:             http://sap.com
Bugs:                   insecure methods
Exploits:               YES
Reported:               09.03.2010

{PRL} Microsoft Windows Outlook Express and Windows Mail Integer Overflow

Platforms:   Windows 2000
                  Windows XP
                  Windows Vista
                  Windows server 2003
                  Windows Server 2008 SR2

Exploitation:   Remote Exploitable

CVE Number:   CVE-2010-0816


CORE-2008-0826 - Internet Explorer Security Zone restrictions bypass

   . Microsoft Windows 2000 up to and including Service Pack 4
   . Microsoft Windows Server 2003 up to and including Service Pack 2
   . Microsoft Windows XP up to and including Service Pack 3
   . Windows Vista up to and including Service Pack 1 (not exploitable
with IE running with Protected mode on)
   . Windows Server 2008


5. *Non-vulnerable packages*

   . Internet Explorer 8 under Windows 2000/2003/XP/Vista

[security bulletin] HPSBMA02488 SSRT100013 rev.2 - HP ProLiant Support Pack 8.30 for Windows, Remote Code Execution, Information Disclosure

HP Network Configuration Utility for Windows Server 2003 x64 Editions

HP Network Configuration Utility for Windows Server 2003

HP Network Configuration Utility for Windows Server 2008 x64 Editions

HP Network Configuration Utility for Windows Server 2008

HP Network Configuration Utility for Windows Server 2008 R2


Microsoft Windows NT #GP Trap Handler Allows Users to Switch Kernel Stack

    - Windows 2000
    - Windows XP
    - Windows Server 2003
    - Windows Vista
    - Windows Server 2008
    - Windows 7

--------------------
Consequences
-----------------------

CORE-2009-0625: Internet Explorer Dynamic OBJECT tag and URLMON sniffing vulnerabilities

   . Internet Explorer 7 on Windows XP sp3
   . Internet Explorer 7 on Windows Vista sp1
   . Internet Explorer 7 on Windows Vista sp2
   . Internet Explorer 7 on Windows Server 2003 sp2 if
     Protected Mode is OFF and not using Enhanced Security Configuration
   . Internet Explorer 7 on Windows Server 2008 i
     if Protected Mode is OFF and
     not using Enhanced Security Configuration
   . Internet Explorer 8 on Windows XP sp2
   . Internet Explorer 8 on Windows XP sp3
   . Internet Explorer 8 on Windows Vista sp1

=?windows-1251?Q?[DSECRG-11-033]_SAP_Crystal_Report_Server_pubDBLogon_-_Linked_=D5SS_vuln?= =?windows-1251?Q?erability?=

[DSECRG-11-033] SAP Crystal Report Server pubDBLogon - Linked SS vulnerability 

XSS vulnerability found in pubDBLogon.jsp page of SAP Crystal Report Server 2008. 


Application: SAP Crystal Report Server 2008
Versions Affected: SAP Crystal Report Server 2008
Vendor URL: http://www.sap.com
Bugs: Linked XSS Vulnerability 

[DSECRG-00142] SAP Crystal Reports 2008 - actionNavjsp_xss

      XSS vulnerability found in SAP Crystal Report Server 2008 

Application: SAP Crystal Report Server 2008
Versions Affected: SAP Crystal Report Server 2008
Vendor URL: http://sap.com
Bugs: Linked XSS Vulnerability 
Exploits: YES
Reported: 04.03.2010
Vendor response:  05.03.2010

Next Page>>

Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!