Secunia Research: SpeedProject Products ZIP/UUE File Extraction Buffer Overflow

2005-11-24 Thread Secunia Research
== Secunia Research 24/11/2005 - SpeedProject Products ZIP/UUE File Extraction Buffer Overflow - == Table of Contents Affected

MailEnable IMAP DOS

2005-11-24 Thread Josh Zlatin
Synopsis: MailEnable Imap Remote DOS. Product: MailEnable Pro MailEnable Enterprise http://www.mailenable.com Version: Confirmed on MailEnable Pro 1.7 and MailEnable Enterprise 1.1 Author: Josh Zlatin-Amishav Date: November 24, 2005 Background: MailEnable's mail server

Advisory 23/2005: vTiger multiple vulnerabilities

2005-11-24 Thread Christopher Kunz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hardened PHP Project www.hardened-php.net -= Security Advisory =- Advisory: Multiple vulnerabilities in vTiger CRM Release Date: 2005/11/24 Last Modified: 2005/11/24

[SECURITY] [DSA 910-1] New zope2.7 packages fix arbitrary file inclusion

2005-11-24 Thread Martin Schulze
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - -- Debian Security Advisory DSA 910-1 [EMAIL PROTECTED] http://www.debian.org/security/ Martin Schulze November 24th, 2005

RE: XSS on Yahoo Mail

2005-11-24 Thread Will Wesley
--- Richard Fuchshuber [EMAIL PROTECTED] schrieb: Hi, I've noticed a strange behavior in Yahoo! Mail when dealing with html attachments. It's possible to insert data into the Yahoo! Mail html interface. For example, with the following code in an html attachment it's possible to

freeFTPd 1.0.10 (Dos,Exploit)

2005-11-24 Thread Stefan Lochbihler
Author: Stefan Lochbihler Date:24. November 2005 Software: freeFTPd Version: 1.0.10 URL:http://freeftpd.com/ Attack: Denial of service about: freeFTPd is a FTP/FTPS/SFTP server that enables user to access remote files over TCP/IP network such

2nd CFP: Workshops at the 1st Int. Conf. on Availability, Reliability Security

2005-11-24 Thread Manh Tho
* Workshops to be held in conjunction with the First International Conference on Availability, Reliability and Security (AReS 2006). * Vienna, Austria,

Re: VHCS 2.x HTTP Error Cross Site Scripting

2005-11-24 Thread Moritz Naumann
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Moritz Naumann schrieb: SOLUTIONS Moritz Naumann IT Consulting Services has crafted a unified diff patch against VHCS 2.4.6.2 which is available at http://moritz-naumann.com/adv/0006/vhcsxss/patch/index.php.diff The patch had been lost during