| OSVDB ID | Disclosure Date | Title |
|
19401
Description:
Unknown / Incomplete
|
2005-09-03
|
Yahoo! Messenger Ignore User Status Disclosure
|
|
19225
Description:
Open WebMail contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'sessionid' variable upon submission to multiple scripts. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-09-03
|
Open WebMail Error Message Session ID XSS
|
|
19244
Description:
(Description Provided by CVE) : Free SMTP Server 2.2 allows remote attackers to use the server as an open mail relay (spam proxy).
|
2005-09-03
|
Free SMTP Server Arbitrary Mail Relay
|
|
19212
Description:
(Description Provided by CVE) : Multiple stack-based buffer overflows in urban before 1.5.3 allow local users to gain privileges via a long HOME environment variable to (1) config.cc, (2) game.cc, (3) highscor.cc, or (4) meny.cc.
|
2005-09-03
|
URBAN config/config.cc HOME Environment Variable Local Overflow
|
|
19213
Description:
(Description Provided by CVE) : Multiple stack-based buffer overflows in urban before 1.5.3 allow local users to gain privileges via a long HOME environment variable to (1) config.cc, (2) game.cc, (3) highscor.cc, or (4) meny.cc.
|
2005-09-03
|
URBAN engine/game.cc HOME Environment Variable Local Overflow
|
|
19214
Description:
(Description Provided by CVE) : Multiple stack-based buffer overflows in urban before 1.5.3 allow local users to gain privileges via a long HOME environment variable to (1) config.cc, (2) game.cc, (3) highscor.cc, or (4) meny.cc.
|
2005-09-03
|
URBAN highscor/highscor.cc HOME Environment Variable Local Overflow
|
|
19215
Description:
(Description Provided by CVE) : Multiple stack-based buffer overflows in urban before 1.5.3 allow local users to gain privileges via a long HOME environment variable to (1) config.cc, (2) game.cc, (3) highscor.cc, or (4) meny.cc.
|
2005-09-03
|
URBAN meny/meny.cc HOME Environment Variable Local Overflow
|
|
19417
Description:
(Description Provided by CVE) : ** DISPUTED ** NOTE: this issue has been disputed by the vendor. FileZilla 2.2.14b and 2.2.15, and possibly earlier versions, when "Use secure mode" is disabled, uses a weak encryption scheme to store the user's password in the configuration settings file, which allows local users to obtain sensitive information. NOTE: the vendor has disputed the issue, stating that "the problem is not a vulnerability at all, but infact a fundamental issue of every single program that can store passwords transparently."
|
2005-09-02
|
FileZilla Password Encryption Weakness
|
|
19256
Description:
Unknown / Incomplete
|
2005-09-02
|
Michael Benjamin ssh_brute_blocker Symlink Arbitrary File Overwrite
|
|
19210
Description:
MAXdev MD-Pro contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate user-supplied input upon submission to the 'dl-search.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-09-02
|
MAXdev MD-Pro dl-search.php XSS
|
|
19211
Description:
MAXdev MD-Pro contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate user-supplied input upon submission to the 'wl-search.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-09-02
|
MAXdev MD-Pro wl-search.php XSS
|
|
19264
Description:
Unknown / Incomplete
|
2005-09-02
|
Microsoft Exchange Server 2003 Crafted IMAP4 Folder Listing Request DoS
|
|
25413
Description:
Unknown / Incomplete
|
2005-09-02
|
IBM WebSphere Application Server (WAS) FFDC Log Information Disclosure (PK04923|PK07366)
|
|
25414
Description:
Unknown / Incomplete
|
2005-09-02
|
IBM WebSphere Application Server (WAS) specj One Phase Commit Optimization Unspecified Issue
|
|
25415
Description:
Unknown / Incomplete
|
2005-09-02
|
IBM WebSphere Application Server (WAS) Publish/subscribe Behaviour Issue
|
|
25416
Description:
Unknown / Incomplete
|
2005-09-02
|
IBM WebSphere Application Server (WAS) WebDAV Method Security Constraint Failure
|
|
19381
Description:
PunBB contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to an unspecified part of the administration interface not properly sanitizing user-supplied input to unspecified parameter(s)/field(s). This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2005-09-02
|
PunBB Admin Interface Unspecified SQL Injection
|
|
19382
Description:
PunBB contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the BBCode 'url' tags. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2005-09-02
|
PunBB URL BBCode Unspecified XSS
|
|
19383
Description:
PunBB contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to unspecified parameter(s) and/or function(s) not properly sanitizing user-supplied input to the 'search' function. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2005-09-02
|
PunBB Search Function Unspecified SQL Injection
|
|
19188
Description:
mod_ssl contains a flaw that may allow a malicious user to bypass certain security restrictions. The issue is due to an error in enforcing client-based certificate authentication ("SSLVerifyClient require") in per-location context, if "SSLVerifyClient optional" was configured in the global virtual host configuration. It is possible that the flaw may allow an attacker to bypass client-based certificate authentication, resulting in a loss of confidentiality or integrity.
|
2005-09-02
|
Apache HTTP Server mod_ssl SSLVerifyClient Per-location Context Restriction Bypass
|
|
19393
Description:
(Description Provided by CVE) : Race condition in Java 1.4.2 before 1.4.2 Release 2 on Apple Mac OS X allows local users to corrupt files or create arbitrary files via unspecified attack vectors related to a temporary directory, possibly due to a symlink attack.
|
2005-09-02
|
Java on Mac OS X Temporary Directory Handling Weakness
|
|
19394
Description:
(Description Provided by CVE) : ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.
|
2005-09-02
|
Java on Mac OS X Privileged Helper Shared Archive Temp File Handling Weakness
|
|
19395
Description:
(Description Provided by CVE) : Unspecified vulnerability in Java 1.4.2 before 1.4.2 Release 2 on Apple Mac OS X allows local users to gain privileges via unspecified attack vectors relating to "the utility used to update Java shared archives."
|
2005-09-02
|
Java on Mac OS X Shared Archive Utility Privilege Escalation
|
|
19396
Description:
(Description Provided by CVE) : Unspecified vulnerability in Java 1.3.1 before 1.3.1_16 on Apple Mac OS X allows an untrusted applet to gain privileges, related to "Mac OS X specific extensions."
|
2005-09-02
|
Java on Mac OS X Untrusted Applet Extension Privilege Escalation
|
|
19397
Description:
(Description Provided by CVE) : Java 1.4.2 before 1.4.2 Release 2 on Apple Mac OS X does not prevent multiple programs from opening the same port as a Java ServerSocket, which allows local users to operate a Java program that intercepts network data intended for the ServerSocket of a different Java program.
|
2005-09-02
|
Java on Mac OS X ServerSocket Data Interception
|
|
25201
Description:
Unknown / Incomplete
|
2005-09-02
|
TikiWiki Unauthorized Arbitrary Page Modification
|
|
91085
Description:
IBM WebSphere Application Server contains a flaw related to the plugin-cfg.xml file. The issue is due to the file having unspecified permissions, which likely are too open. While the IBM APAR is not available, based on other "file permission" related APARS, the file may have permissions such as mode 777.
|
2005-09-02
|
IBM WebSphere Application Server (WAS) plugin-cfg.xml File Permission Unspecified Issue
|
|
91084
Description:
IBM WebSphere Application Server (WAS) contains a flaw that is due to the program not properly restricting users. This may allow a remote unauthorized attacker to call the bindingiterator.destory() function.
|
2005-09-02
|
IBM WebSphere Application Server (WAS) bindingiterator.destory() Function Unauthorized Use
|
|
91083
Description:
IBM WebSphere Application Server (WAS) contains a flaw that is due to the *=audit trace specification in PD tools not being properly logged by the server. This may allow a remote attacker to conduct attacks with less chance of being discovered.
|
2005-09-02
|
IBM WebSphere Application Server (WAS) PD Tools *=audit Trace Specification Logging Failure
|
|
91082
Description:
IBM WebSphere Application Server (WAS) contains a flaw that may allow a denial of service. The issue is triggered during the handling of plug-in traffic for the WebSphere App server. This may allow a remote attacker to cause a crash for IHS.
|
2005-09-02
|
IBM WebSphere Application Server (WAS) Plug-in WebSphere App Traffic IHS DoS
|
|
19152
Description:
(Description Provided by CVE) : Directory traversal vulnerability in the web server for 3Com Network Supervisor 5.0.2 allows remote attackers to read arbitrary files via ".." sequences in the URL to TCP port 21700.
|
2005-09-01
|
3Com Network Supervisor Traversal Arbitrary File Access
|
|
19153
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in N-Stealth Commercial Edition before 5.8.0.38 and Free Edition before 5.8.1.03 allows remote attackers to inject arbitrary web script or HTML via the Server field in an HTTP response header, which is directly injected into an HTML report.
|
2005-09-01
|
N-Stealth Security Scanner Server Header Arbitrary Script Injection
|
|
19168
Description:
Unknown / Incomplete
|
2005-09-01
|
PBLang Unspecified Unauthorized Restricted Forum Access
|
|
19169
Description:
Unknown / Incomplete
|
2005-09-01
|
PBLang register.php Unspecified Arbitrary Code Injection
|
|
19170
Description:
Unknown / Incomplete
|
2005-09-01
|
PBLang ucp.php Alias Field Arbitrary Code Injection
|
|
19171
Description:
Unknown / Incomplete
|
2005-09-01
|
PBLang ucp.php Crafted User Privilege Escalation
|
|
19172
Description:
Unknown / Incomplete
|
2005-09-01
|
PBLang editpost.php Unspecified Security Issue
|
|
19121
Description:
SILC Server and Toolkit contains a flaw that may allow a malicious local user to overwrite arbitrary files on the system. The issue is due to the program creating temporary files insecurely. It is possible for a user to use a symlink style attack to manipulate arbitrary files, resulting in a loss of integrity.
|
2005-09-01
|
SILC Server and Toolkit silcd.c Symlink Arbitrary File Overwrite
|
|
19331
Description:
(Description Provided by CVE) : frox 0.7.18, when running setuid root, does not properly drop privileges when reading a configuration file, which allows local users to read portions of arbitrary files via the -f command line option.
|
2005-09-01
|
frox -f Parameter Arbitrary Local Privileged File Access
|
|
19141
Description:
OpenSSH contains a flaw that may allow a remote user to gain elevated privileges. The issue occurs when GSSAPIDelegateCredentials is enabled and may delegate GSSAPI credentials to arbitrary users that authenticate using non-GSSAPI methods.
|
2005-09-01
|
OpenSSH GSSAPIAuthentication Credential Escalation
|