Unofficial Secunia Security Advisories RSS

Archive

Jan
27th
Fri
permalink

[2/5] Syneto UTM Cross-Site Request Forgery Vulnerability

A vulnerability has been reported in Syneto UTM, which can be exploited by malicious people to conduct cross-site request forgery attacks.

http://secunia.com/advisories/47609/

permalink

[2/5] phplist “testtarget” Cross-Site Scripting Vulnerability

A vulnerability has been discovered in phplist, which can be exploited by malicious people to conduct cross-site scripting attacks.

http://secunia.com/advisories/47727/

permalink

[2/5] VR GPub Cross-Site Request Forgery Vulnerability

A vulnerability has been discovered in VR GPub, which can be exploited by malicious people to conduct cross-site request forgery attacks.

http://secunia.com/advisories/47729/

permalink

[3/5] EMC NetWorker Server Unspecified Buffer Overflow Vulnerability

A vulnerability has been reported in EMC NetWorker Server, which can be exploited by malicious people to compromise a vulnerable system.

http://secunia.com/advisories/47777/

permalink

[3/5] Cisco IronPort Appliances telnetd Buffer Overflow Vulnerability

Cisco has acknowledged a vulnerability in some Cisco IronPort Appliances, which can be exploited by malicious people to compromise a vulnerable system.

http://secunia.com/advisories/47720/

permalink

[3/5] Oracle Solaris Apache Tomcat Multiple Vulnerabilities

Oracle has acknowledged a weakness, a security issue and two vulnerabilities in Apache Tomcat included in Solaris, which can be exploited by malicious, local users to disclose sensitive information, bypass certain security restrictions, and cause a DoS (Denial of Service) and by malicious people to disclose potentially sensitive information and bypass certain security restrictions.

http://secunia.com/advisories/47736/

permalink

[1/5] Oracle GlashFish Enterprise Server / Java System Application Server SSL/TLS IV Selection

Oracle has acknowledged a weakness in Sun GlassFish Enterprise Server and Sun Java System Application Server, which can be exploited by malicious people to disclose potentially sensitive information and hijack a user’s session.

http://secunia.com/advisories/47756/

permalink

[1/5] RSA enVision Environment Variable Information Disclosure Security Issue

A security issue has been reported in RSA enVision, which can be exploited by malicious people to disclose certain sensitive information.

http://secunia.com/advisories/47776/

permalink

[3/5] Postfix Admin Multiple Vulnerabilities

Multiple vulnerabilities have been reported in Postfix Admin, which can be exploited by malicious users to conduct SQL injection attacks and by malicious people to conduct cross-site scripting and script insertion attacks.

http://secunia.com/advisories/47670/

permalink

[2/5] DClassifieds Cross-Site Request Forgery Vulnerability

High-Tech Bridge SA has discovered a vulnerability in DClassifieds, which can be exploited by malicious people to conduct cross-site request forgery attacks.

http://secunia.com/advisories/47691/

permalink

[2/5] Drupal Search Autocomplete Module SQL Injection Vulnerability

A vulnerability has been reported in the Search Autocomplete module for Drupal, which can be exploited by malicious users to conduct SQL injection attacks.

http://secunia.com/advisories/47731/

Jan
26th
Thu
permalink

[4/5] Joomla! JE Story Submit Component File Upload Vulnerability

A vulnerability has been discovered in the JE Story Submit component for Joomla!, which can be exploited by malicious people to compromise a vulnerable system.

http://secunia.com/advisories/47710/

permalink

[3/5] Joomla! JE Story Submit Component Unspecified Vulnerability

A vulnerability with unknown impact has been reported in the JE Story Submit component for Joomla!.

http://secunia.com/advisories/47728/

permalink

[2/5] Drupal Drupal Commerce Module Product Titles and SKUs Two Script Insertion Vulnerabilities

Two vulnerabilities have been reported in the Drupal Commerce module for Drupal, which can be exploited by malicious users to conduct script insertion attacks.

http://secunia.com/advisories/47730/

permalink

[2/5] Drupal Managesite Module Two Script Insertion Vulnerabilities

Two vulnerabilities have been reported in the Managesite module for Drupal, which can be exploited by malicious users to conduct script insertion attacks.

http://secunia.com/advisories/47732/