New User, Welcome!     Login

Next Page >>

web/based application

Armorlogic Profense Web Application Firewall 2.4 multiple vulnerabilities.

____________________________________________________________________________

Armorlogic Profense Web Application Firewall 2.4 multiple vulnerabilities. 

____________________________________________________________________________

An advisory by EnableSecurity. 
Trustwave published a joint advisory named TWSL2009-001

ID: ES-20090500

IBWAS'10 CfP - Deadline Extension

(sorry for the span and for receiving multiple copies of this)

Best regards,


2nd. OWASP Ibero-American Web-Applications Security conference 2010 (IBWAS’10)
ISCTE – Lisbon University Institute
25th – 26th November 2010
Lisboa, Portugal
http://www.ibwas.com


ModSecurity (Core Rules) HTTP Parameter Pollution Filter Bypass Vulnerability

  Severity               : High
  Local/Remote       : Remote

  [Vulnerability Details]

  Modsecurity is an Open source Web Application firewall which runs as an Apache
  module. It has a comprehensive set of rules called 'ModSecurity Core
Rules' for common web application
  attacks like SQL Injection, Cross-Site Scripting etc.

  It is possible to bypass the ModSecurity Core Rules due to the

TWSL2011-006: IBM Web Application Firewall Bypass

Trustwave's SpiderLabs Security Advisory TWSL2011-006:
IBM Web Application Firewall Bypass

https://www.trustwave.com/spiderlabs/advisories/TWSL2011-006.txt

Published: 2011-06-21
Version: 1.0

Vendor: IBM
Product: IBM Web Application Firewall

Re: [WEB SECURITY] [TOOL] moth - vulnerable web application vmware

http://rgaucher.info

Andres Riancho wrote:
> List,
> 
> Moth is a VMware image with a set of vulnerable Web Applications and
> scripts, that you may use for:
>     - Testing Web Application Security Scanners
>     - Testing Static Code Analysis tools (SCA)
>     - Giving an introductory course to Web Application Security
> 

CORE-2010-0316 - Novell iManager Multiple Vulnerabilities

provide patches for the current vulnerable versions with the 2.7.3
ftf4 release before August, but this release was not confirmed yet
(see the timeline for more details). In the meantime, users can
mitigate these flaws by applying these countermeasures:

   1. For [CVE-2010-1929 | 40480], establish a Web Application
Firewall rule for limiting the length of the parameters
'EnteredClassID' and 'NewClassName' in POST requests to the URI
'/nps/servlet/webacc/'.
   2. For [CVE-2010-1930 | 40485], establish a Web Application
Firewall rule for limiting the length of the parameter 'Tree' in POST

W3af ninja training class in NYC

Introduction

Internet security threats are migrating from pure network-level attacks 
to web server and web application attacks. The web application itself 
has become the new security perimeter, and is wide open to the new 
generation of attacks. That's the reason why is very important for IT 
security staff to have cutting- edge knowledge of web application 
security vulnerability testing techniques and tools.


Imperva SecureSphere Web Application Firewall and Database Firewall Bypass Vulnerability

CSS10-01: Imperva SecureSphere Web Application Firewall and Database Firewall Bypass Vulnerability
April 5, 2010

BACKGROUND
==========
The Imperva SecureSphere Web Application Firewall protects web 
applications and sensitive data against sophisticated attacks and 
brute force attacks, stops online identity theft, and prevents data 
leaks from applications. The Imperva SecureSphere Database Firewall 
monitors and proactively protects databases from internal abuse, 

Cisco Security Advisory: Cisco Secure Access Control System Unauthorized Password Change Vulnerability

        5-1-0-44-3
        5-1-0-44-6

        acs51a/admin#

  * On the main login page of the Cisco Secure ACS web-based
    interface, the version information is displayed on the left side
    of the screen.
  * From the Cisco Secure ACS web-based interface, log in and click
    the "About" link at the top right corner of the screen.


Artofdefence Hyperguard Web Application Firewall: Remote Denial of Service

Security Advisory
---------------------------------------
Vulnerable Software:    Artofdefence Hyperguard Web Application Firewall
Vulnerable Version:     3 branches: prior to 3.1.1-11637; prior to
3.0.3-11636; prior to 2.5.5-11635 (Apache Plug-in) 
Homepage:                       http://www.artofdefence.com/
Found by:                       Michael Kirchner, Wolfgang Neudorfer,
Lukas Nothdurfter (Team h4ck!nb3rg)  
Impact:                 Remote Denial of Service

[TOOL] moth - vulnerable web application vmware

List,

Moth is a VMware image with a set of vulnerable Web Applications and
scripts, that you may use for:
    - Testing Web Application Security Scanners
    - Testing Static Code Analysis tools (SCA)
    - Giving an introductory course to Web Application Security

The motivation for creating this tool came after reading
"anantasec-report.pdf" which is included in the release file which you

phion airlock Web Application Firewall: Remote Denial of Service via Management Interface (unauthenticated) and Command Execution

Security Advisory
---------------------------------------
Vulnerable Software:    phion airlock Web Application Firewall
Vulnerable Version:     4.1-10.41
Homepage:                       http://www.phion.com/
Found by:                       Michael Kirchner, Wolfgang Neudorfer,
Lukas Nothdurfter (Team h4ck!nb3rg)  
Impact:                 Remote Denial of Service via Management
Interface (unauthenticated) and Command Execution

[RT-SA-2009-003] IceWarp WebMail Server: SQL Injection in Groupware Component

>     EVNNOTE LIKE '%SQL INJECTION TEST%')
   ) And
   (EvnFolder='Files')
----- /Query 2 ---------------------------------------------------------

Data is only returned from the database to the web application when both
queries are syntactically correct. Due to a different nesting level of
parentheses around the SQL queries' user-manipulable parts, successful
(non-blind) SQL injection requires the use of two elements within the
original HTTP POST request.


radware AppWall Web Application Firewall: Source code disclosure on management interface

Security Advisory
---------------------------------------
Vulnerable Software:    radware AppWall Web Application Firewall
Vulnerable Version:     Gateway Version 4.6.0.2 / AppWall Version
1.0.2.6
Homepage:                       http://www.radware.com/
Found by:                       Michael Kirchner, Wolfgang Neudorfer,
Lukas Nothdurfter (Team h4ck!nb3rg)  
Impact:                 Source code disclosure on management interface

Xigla Multiple Products - Multiple Vulnerabilities

####################
1. Description:
####################

        Xigla company has several web based products (From content management systems to live help solutions) to enhance the websites.
                1.1. Absolute Live Support XE:   Absolute Live Support is a live customer support software for your web site that enables visitors to instantaneously communicate with your customer service personnel.
                1.2. Absolute News Manager XE:   Absolute News Manager is a powerful web site news and article content management system.
                1.3. Absolute Banner Manager XE: Absolute Banner Manager is the most complete, robust and easy to use web based banner management and ad tracking software.
                1.4. Absolute Form Processor XE: The Absolute Form Processor is a powerful tool for processing your web based HTML forms. You don’t have to waste time developing server code, validation rules , form mailers or auto responders for your web forms, this application does all this for you.
                1.5. Absolute Image Gallery XE:  The complete and powerful media gallery software that makes creating and maintaining images and multimedia galleries a snap. The code resides on your web server and searches your web site for new images and files to add to your gallery.

Cisco Security Advisory: Cisco Unified Communications Web-based Management Vulnerability

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Cisco Security Advisory: Cisco Unified Communications Web-based
Management Vulnerability

Document ID: 97836

Advisory ID: cisco-sa-20071017-IPCC


XSS Vulnerability in Tracks 1.7.2

Solution
-------------------
Upgrade to the latest Tracks version (1.7.3 or later).
Credits
-------------------
It has been discovered on testing of Netsparker, Web Application
Security Scanner - http://www.mavitunasecurity.com/netsparker/.

References
-------------------
1. Vendor URL: http://www.getontracks.org/downloads/comments/tracks-173

CORE-2009-0108: Multiple vulnerabilities in Sun Calendar Express Web Server

7. *Technical Description / Proof of Concept Code*

Cross-Site Scripting (commonly referred to as XSS) bugs arise from a web
application's improper encoding or filtering of input obtained from
untrusted sources. These bugs allow an attacker to inject malicious tags
and/or script code that is later executed in the context of a web
browser when the user accesses the vulnerable web site. The injected
code then takes advantage of the trust relationship between the web
browser and the vulnerable web application. Attacks that exploit XSS

Invitation - OWASP AppSec Europe May 19-22 2008 - Belgium

* Software Security: State of the Practice 2008 (Gary McGraw) 

Topics
* The OWASP ESAPI project - Dave Wichers
* Trends in Web Hacking Incidents: What's hot for 2008 - Ofer Shezaf
* Evaluation Criteria for Web Application Firewalls - Ivan Ristic
* HTML5 security - Thomas Roessler
* The OWASP Orizon Project internals - Paolo Perego
* Remo presentation (Input Validation) - Christian Folini
* Best Practices Guide: Web Application Firewalls (OWASP German chapter) - 
  Alexander Meisel

Re: [Full-disclosure] XSS Vulnerability in Redmine 1.0.1 to 1.1.1

> Researcher :  Mesut Timur <mesut [at] mavitunasecurity [dot] com>
> Advisory Reference :  NS-11-004
> 
> Description
> ------------------
> Redmine is a flexible project management web application written using
> Ruby on Rails framework.
> 
> Details
> -------------------
> Redmine is affected by a XSS vulnerability in versions from 1.0.1 to 1.1.1.

[SECURITY] CVE-2011-2526 Apache Tomcat Information disclosure and availability vulnerabilities

Tomcat 6.0.0 to 6.0.32
Tomcat 5.5.0 to 5.0.33
Previous, unsupported versions may be affected
Additionally, these vulnerabilities only occur when all of the following
are true:
a) untrusted web applications are being used
b) the SecurityManager is used to limit the untrusted web applications
c) the HTTP NIO or HTTP APR connector is used
d) sendfile is enabled for the connector (this is the default)

Description:

Announcement: Releasing CORE GRASP for PHP. An open source, dynamic web application protection system.

Moderator note: this copy of the post has a corrected URL.

CORE GRASP for PHP is a web-application protection software aimed at
detecting and blocking injection vulnerabilities and privacy violations.
As mentioned during its presentation at Black Hat USA 2007, GRASP is
being released as open source under the Apache 2.0 license and can be
obtained from http://grasp.coresecurity.com/.

The present implementation protects PHP 5.2.3 against SQL-injection
attacks for the MySQL engine, it can be installed with almost the same

Trustwave's SpiderLabs Security Advisory TWSL2010-001

Published: 2010-02-08 Version: 1.1

SpiderLabs has documented view state tampering
vulnerabilities in three products from separate vendors.
View states are used by some web application frameworks to
store the state of HTML GUI controls. View states are
typically stored in hidden client-side input fields,
although server-side storage is widely supported.

The affected vendors generally recommend that client-side

[Onapsis Security Advisory 2010-001] SAP WebAS Integrated ITS Remote Command Execution

1. Impact on Business
=====================

By exploiting this vulnerability, an internal or external attacker would be able execute arbitrary remote commands over vulnerable SAP Web Application
Servers, taking complete control of the SAP system.

With these privileges, he would be able to obtain, create, modify and/or delete any business related information stored in the vulnerable SAP system.

- - Risk Level: High

Microsoft IIS 0Day Vulnerability in Parsing Files (semi-colon bug)

############################################################
Microsoft IIS 0Day Vulnerability in Parsing Files (semi-colon bug)
############################################################
#Application: Microsoft Internet Information Services - IIS (All versions)
#Impact: Highly Critical for Web Applications
#Finding Date: April 2007
#Report Date: Dec. 2009
#Found by: Soroush Dalili (Irsdl {4t] yahoo [d0t} com)
#Website: Soroush.SecProject.com
#Weblog: Soroush.SecProject.com/blog/

Announcement: Releasing CORE GRASP for PHP. An open source, dynamic web application protection system.

CORE GRASP for PHP is a web-application protection software aimed at
detecting and blocking injection vulnerabilities and privacy violations.
As mentioned during its presentation at Black Hat USA 2007, GRASP is
being released as open source under the Apache 2.0 license and can be
obtained from http://gasp.coresecurity.com/.

The present implementation protects PHP 5.2.3 against SQL-injection
attacks for the MySQL engine, it can be installed with almost the same
effort as the PHP engine, both in Unix and Windows systems, and
protection is immediate with any PHP web application running in the

Vulnerabilities in NovaBoard

Hello Bugtraq!

I want to warn you about security vulnerabilities in system NovaBoard.

In this advisory I'm continue to inform readers of mailing lists about
vulnerable web applications which are using CaptchaSecurityImages.php. If
you read Bugtraq you can saw the letter which was posted last week by one
developer of one such vulnerable web application (which I posted to the
list before). And from that letter it's clearly seen, that web developers
ignore advisory about holes in CaptchaSecurityImages.php itself, and only
draw attention on advisories about their specific web applications. So, as I

[BONSAI] XSS in Achievo - Customized XSS payload included

4. *Vulnerability Description*

Cross-Site Scripting attacks are a type of injection problem, in which
malicious scripts are injected into the otherwise benign and trusted web sites.
Cross-site scripting (XSS) attacks occur when an attacker uses a web
application to send malicious code, generally in the form of a browser side
script, to a different end user. Flaws that allow these attacks to succeed are
quite widespread and occur anywhere a web application uses input from a user
in the output it generates without validating or encoding it.

For additional information, please read [1].

(resend) RE: [WEB SECURITY] Trustwave's SpiderLabs Security Advisory TWSL2010-001

Published: 2010-02-08 Version: 1.1

SpiderLabs has documented view state tampering
vulnerabilities in three products from separate vendors.
View states are used by some web application frameworks to
store the state of HTML GUI controls. View states are
typically stored in hidden client-side input fields,
although server-side storage is widely supported.

The affected vendors generally recommend that client-side

H2HC 2010 Sao Paulo - Capture the Flag

Because other computers are unable to solve the Captcha, any user
entering a correct solution is presumed to be Human.

There are a lot of Captcha implementations out there, written in JSP,
PHP, ASP, .NET which are very poorly implemented and introduce serious
bugs in Web applications they are supposed to protect.

We developed 10 different Captcha implementations, each with its own
weakness, for participants to break using automation and hacking
techniques with the objective of bypassing the human verification process.


Next Page>>

Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!