Re: Symantec Fax Viewer Control v10 (DCCFAXVW.DLL) remote buffer overflow exploit

2009-04-30 Thread secure
Symantec discontinued sales and support for Winfax Pro in early 2006. As such, there will be no further updates to the product. Anyone running a legacy version of this product and concerned about this issue may want to follow the procedures outlined in MSKB 240797 http://support.microsoft.co

MULTIPLE REMOTE VULNERABILITIES--Leap CMS 0.1.4-->

2009-04-30 Thread y3nh4ck3r
MULTIPLE REMOTE VULNERABILITIES--Leap CMS 0.1.4--> CMS INFORMATION: -->WEB: http://leap.gowondesigns.com/ -->DEMO: http://php.opensourcecms.com/scripts/details.php?scriptid=1

Re: ZDI-09-018: Symantec Client Security Alert Originator Service Stack Overflow Vulnerability

2009-04-30 Thread Steve Shockley
On 4/28/2009 4:39 PM, ZDI Disclosures wrote: an attacker can overflow that buffer leading to arbitrary code execution in the context of the SYSTEM user. -- Disclosure Timeline: 2007-09-14 - Vulnerability reported to vendor 2009-04-28 - Coordinated public release of advisory WTF? What ever h

Security tools list: First Version

2009-04-30 Thread Ying
Hello anyone, With all the information, that voluntarily we have all added, this is the first version of the tools list. I have to add many tools that I have collected. http://securitytoolslist.domandhost.com/ I have to review it thoroughly and add no a lot more that I