Packet Storm Security Last 100100 Most Recent Packet Storm File Additionsesyndicat-xss.txt- (Found July 15, 2008 ) eSyndiCat Directory Software pro version 2.2 suffers from a cross site scripting vulnerability.http://packetstormsecurity.org/0807-exploits/esyndicat-xss.txt MU-200807-01.txt- (Found July 15, 2008 ) The Mu Security Research team has found that repro SIP proxyregistrar version 1.3.2 suffers from a remote denial of service vulnerability.http://packetstormsecurity.org/0807-advisories/MU-200807-01.txt fuzzylime301-execphpcomm.txt- (Found July 15, 2008 ) Fuzzylime CMS version 3.01 remote code execution exploit that leverages commrss.php. Written in PHP.http://packetstormsecurity.org/0807-exploits/fuzzylime301-execphpcomm.txt fuzzylime301-execperl.txt- (Found July 15, 2008 ) Fuzzylime CMS version 3.01 remote code execution exploit that leverages polladd.php. Written in Perl.http://packetstormsecurity.org/0807-exploits/fuzzylime301-execperl.txt fuzzylime301-execphp.txt- (Found July 15, 2008 ) Fuzzylime CMS version 3.01 remote code execution exploit that leverages polladd.php. Written in PHP.http://packetstormsecurity.org/0807-exploits/fuzzylime301-execphp.txt ymsg81-dos.txt- (Found July 15, 2008 ) Yahoo! Messenger version 8.1 ActiveX remote denial of service exploit.http://packetstormsecurity.org/0807-exploits/ymsg81-dos.txt dsa-1608-1.txt- (Found July 15, 2008 ) Debian Security Advisory 1608-1 - Sergei Golubchik discovered that MySQL, a widely-deployed database server, did not properly validate optional data or index directory paths given in a CREATE TABLE statement, nor would it (under proper conditions) prevent two databases from using the same paths for data or index files. This permits an authenticated user with authorization to create tables in one database to read, write or delete data from tables subsequently created in other databases,...http://packetstormsecurity.org/0807-advisories/dsa-1608-1.txt sdns-remote-dos.pl.txt- (Found July 15, 2008 ) Simple DNS Plus versions 5.0 and 4.1 remote denial of service exploit.http://packetstormsecurity.org/0807-exploits/sdns-remote-dos.pl.txt MDVSA-2008-144.txt- (Found July 15, 2008 ) Mandriva Linux Security Advisory - A denial of service vulnerability was discovered in the way the OpenLDAP slapd daemon processed certain network messages. An unauthenticated remote attacker could send a specially crafted request that would crash the slapd daemon. The updated packages have been patched to correct this issue.http://packetstormsecurity.org/0807-advisories/MDVSA-2008-144.txt MDVSA-2008-138-1.txt- (Found July 15, 2008 ) Mandriva Linux Security Advisory - Integer overflow in the rtl_allocateMemory function in salrtlsourcealloc_global.c in OpenOffice.org (OOo) 2.0 through 2.4 allows remote attackers to execute arbitrary code via a crafted file that triggers a heap-based buffer overflow. The updated packages have been patched to fix the issue. The OpenOffice.org package for Mandriva Corporate 3 missed the patch application due to a build error. This update fixes that.http://packetstormsecurity.org/0807-advisories/MDVSA-2008-138-1.txt |