Secunia Research: Novell iPrint Client ActiveX Control "GetFileList()" Information Disclosure

2008-08-25 Thread Secunia Research
== Secunia Research 25/08/2008 - Novell iPrint Client ActiveX Control - - "GetFileList()" Information Disclosure - ==

RE: Arbitrary Code Execution in Commands: K, Control-], g]

2008-08-25 Thread Michael Wojcik
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf > Of Jan MinĂ¡r > Sent: Friday, 22 August, 2008 10:26 > To: [EMAIL PROTECTED]; [EMAIL PROTECTED]; > [EMAIL PROTECTED]; bugtraq@securityfocus.com > Subject: Vim: Arbitrary Code Execution in Commands: K, Control-], g] > > Vim: Arbitrary

[DSECRG-08-038] Multiple Local File Include Vulnerabilities in ezContents CMS 2.0.3

2008-08-25 Thread Digital Security Research Group [DSecRG]
Digital Security Research Group [DSecRG] Advisory #DSECRG-08-038 Application:ezContents CMS Versions Affected: 2.0.3 Application URL:http://www.ezcontents.org/ Vendor URL: http://www.visualshapers.com/ Bug:

Secunia Research: Calendarix Basic Two SQL Injection Vulnerabilities

2008-08-25 Thread Secunia Research
== Secunia Research 25/08/2008 - Calendarix Basic Two SQL Injection Vulnerabilities - == Table of Contents Affected Software..

Secunia Research: Novell iPrint Client ActiveX Control Multiple Buffer Overflows

2008-08-25 Thread Secunia Research
== Secunia Research 25/08/2008 - Novell iPrint Client ActiveX Control Multiple Buffer Overflows - == Table of Contents Affected Softwa

[DSECRG-08-037] Multiple Local File Include Vulnerabilities in Pluck CMS 4.5.2

2008-08-25 Thread Digital Security Research Group [DSecRG]
Digital Security Research Group [DSecRG] Advisory #DSECRG-08-037 Application:Pluck CMS Versions Affected: 4.5.2 Vendor URL: http://www.pluck-cms.org/ Bug:Multiple Local File Include Exploits:

[IVIZ-08-009] Grub Legacy Security Model bypass exploiting wrong BIOS API usage

2008-08-25 Thread iViZ Security Advisories
--- [ iViZ Security Advisory 08-00925/08/2008 ] --- iViZ Techno Solutions Pvt. Ltd. http://

SECOBJADV-2008-03.2: PartyGaming PartyPoker Malicious Update Vulnerability

2008-08-25 Thread Security Objectives Corporation
== = Security Objectives Advisory (SECOBJADV-2008-03.2) = == PartyGaming PartyPoker Malicious Update Vulnerability http://www.security-objective

Crafty Syntax Live Help <= 2.14.6 SQL Injection

2008-08-25 Thread GulfTech Security Research
## # GulfTech Security Research August 25, 2008 ## # Vendor : Eric Gerdes # URL : http://www.craftysyntax.com # Version : Crafty Syntax Live Help <= 2.14.6 # Risk : SQL Inje

[IVIZ-08-006] DiskCryptor Security Model bypass exploiting wrong BIOS API usage

2008-08-25 Thread iViZ Security Advisories
--- [ iViZ Security Advisory 08-00625/08/2008 ] --- iViZ Techno Solutions Pvt. Ltd. http://