2009年11月13日金曜日

13日 金曜日、大安

JVNVU#120541 SSL および TLS プロトコルに脆弱性
http://jvn.jp/cert/JVNVU120541/index.html

JVNDB-2009-002221 Adobe Reader および Acrobat における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-002221.html

JVNDB-2009-002220 Adobe Reader および Acrobat における整数オーバーフローの脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-002220.html

JVNDB-2009-002219 Adobe Reader および Acrobat における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-002219.html

JVNDB-2009-002218 Adobe Reader および Acrobat におけるデバッグモードに関する任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-002218.html

JVNDB-2009-002217 Adobe Reader および Acrobat における入力値検証に関する任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-002217.html

JVNDB-2009-002216 Adobe Reader および Acrobat における入力値検証に関する任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-002216.html

JVNDB-2009-002215 Adobe Reader および Acrobat におけるヒープベースのバッファオーバーフローの脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-002215.html

JVNDB-2009-002214 Adobe Reader および Acrobat におけるバッファオーバーフローの脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-002214.html

JVNDB-2009-002213 Adobe Reader および Acrobat の複数の JavaScript メソッドに脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-002213.html

JVNDB-2009-002111 PostgreSQL の core server コンポーネントにおける認証を回避される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-002111.html

JVNDB-2009-002110 PostgreSQL の core server コンポーネントにおけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-002110.html

JVNDB-2009-001737 Apache Tomcat における Web アプリケーションに関連するファイルを読まれる脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001737.html

JVNDB-2009-001736 Apache Tomcat における有効なユーザ名を列挙される脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001736.html

JVNDB-2009-001115 Apache Tomcat のサンプル用 calendar アプリケーションにおけるクロスサイトスクリプティングの脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001115.html

JVNDB-2009-000037 Apache Tomcat におけるサービス運用妨害(DoS)の脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-000037.html

JVNDB-2009-000036 Apache Tomcat における情報漏えいの脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-000036.html

JVNDB-2007-001017 Apache HTTP Server の 413 エラーメッセージにおける HTTP メソッドを適切に検査しない問題
http://jvndb.jvn.jp/ja/contents/2007/JVNDB-2007-001017.html

JVNDB-2006-000441 Apache HTTP Server の Expect リクエストヘッダにおけるクロスサイトスクリプティングの脆弱性
http://jvndb.jvn.jp/ja/contents/2006/JVNDB-2006-000441.html

Pushdo/Cutwail Spambot - A Little Known BIG Problem
http://isc.sans.org/diary.html?storyid=7576

It's Never Too Early To Start Teaching Them
http://isc.sans.org/diary.html?storyid=7579

Windows Kernel Flaw Lets Remote Users Deny Service
http://securitytracker.com/alerts/2009/Nov/1023179.html

Sun Java Runtime Environment XML Parsing Denial of Service Vulnerability
http://www.securityfocus.com/bid/35958

Sun Java Runtime Environment Unpack200 JAR Unpacking Utility Integer Overflow Vulnerability
http://www.securityfocus.com/bid/35944

Sun Java Runtime Environment Proxy Mechanism Implementation Privilege Escalation Vulnerabilities
http://www.securityfocus.com/bid/35943

Sun Java Runtime Environment Audio System Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/35939

Sun Java Runtime Environment JPEG Image Handling Integer Overflow Vulnerability
http://www.securityfocus.com/bid/35942

Linux Kernel 'drivers/char/agp/generic.c' Local Information Disclosure Vulnerability
http://www.securityfocus.com/bid/34673

Linux Kernel 'get_random_int' Random Number Generation Weakness
http://www.securityfocus.com/bid/36788

Linux Kernel 'pipe.c' Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/36901

Linux Kernel 'net/ax25/af_ax25.c' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/36635

Linux Kernel 64-bit Kernel Register Memory Leak Local Information Disclosure Vulnerability
http://www.securityfocus.com/bid/36576

Microsoft Excel Malformed BIFF Record Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/36946

Microsoft Excel Formula Parsing Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/36908

Microsoft Excel Index Parsing Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/36909

Microsoft Excel Document Parsing Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/36911

Adobe Flash Player Same-Origin Policy Bypass Vulnerability
http://www.securityfocus.com/bid/37013

Article Directory Index.PHP Remote File Include Vulnerability
http://www.securityfocus.com/bid/25042

XM Easy Personal FTP Server 'NLST' Command Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/37008




+ Solaris Emlxs (emlxs(7D)) Patches May Cause Excessive and Spurious Errors
http://sunsolve.sun.com/search/document.do?assetkey=1-66-272351-1

+ Security Vulnerabilities in Solaris IP(7P) Module and STREAMS Framework May Lead to a Denial of Service (DoS) Condition
http://sunsolve.sun.com/search/document.do?assetkey=1-66-263388-1

MySQL Connector/Net 6.0.5 has been released
http://dev.mysql.com/downloads/connector/net/6.0.html

[ANN] Apache Source-Release Assembly Descriptor 1.0.2 Released
http://maven.apache.org/apache-resource-bundles/apache-source-release-assembly-descriptor/

FreeBSD 8.0-RC3 Available
http://www.freebsd.org/news/newsflash.html#event20091112:01

Cisco Security Advisory: Cisco Global Site Selector Appliances DNS Vulnerability
http://www.cisco.com/warp/public/707/cisco-sa-20090107-gss.shtml

Ubuntu Security Notice : OpenLDAP vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=30879

Apple : Safari 4.0.4
http://www.criticalwatch.com/support/security-advisories.aspx?AID=30880

BugsNotHugs : HP curiosity and vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=30885

Dayfox Blog : WordPress <= 2.8.5 Unrestricted File Upload Arbitrary PHP Code Execution http://www.criticalwatch.com/support/security-advisories.aspx?AID=30884

VUPEN Security Research - Microsoft Office Excel Code Execution Vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-11/msg00093.html

[USN-858-1] OpenLDAP vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-11/msg00085.html

Secunia Research: Gimp BMP Image Parsing Integer Overflow Vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-11/msg00084.html

Novell eDirectory 8.8 SP5 Denial of Service
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-11/msg00082.html

Yahoo Messenger 9 ActiveX DoS (Null Pointer) Vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-11/msg00087.html

[SWRX-2009-002] McAfee Network Security Manager Authentication Bypass and Session Hijacking
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-11/msg00092.html

[SWRX-2009-001] McAfee Network Security Manager Cross-Site Scripting (XSS) Vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-11/msg00094.html

[USN-853-2] Firefox and Xulrunner regression
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-11/msg00090.html

WordPress 2.8.5 Unrestricted File Upload Arbitrary PHP Code Execution
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-11/msg00089.html

Panda Security Software Local Privilege Escalation
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-11/msg00091.html

JVNVU#120541 SSL および TLS プロトコルに脆弱性
http://jvn.jp/cert/JVNVU120541/

Windows 7 / Windows Server 2008 R2 Remote SMB Exploit
http://isc.sans.org/diary.html?storyid=7573

Drupal AddToAny Module Script Insertion Vulnerability
http://secunia.com/advisories/37353/

Red Hat update for httpd
http://secunia.com/advisories/37352/

SUSE update for kernel
http://secunia.com/advisories/37351/

Apple Safari Multiple Vulnerabilities
http://secunia.com/advisories/37346/

Drupal RootCandy Theme Cross-Site Scripting Vulnerability
http://secunia.com/advisories/37334/

Poppler "pdftoabw" Buffer Overflow Vulnerabilities
http://secunia.com/advisories/37333/

Red Hat update for httpd
http://secunia.com/advisories/37331/

Sun Solaris Pidgin ICQ Message Denial of Service Weakness
http://secunia.com/advisories/37326/

Avaya Products Linux Kernel Multiple Vulnerabilities
http://secunia.com/advisories/37298/

Gimp BMP Image Parsing Integer Overflow Vulnerability
http://secunia.com/advisories/37232/

McAfee Network Security Manager Cross-Site Scripting Vulnerabilities
http://secunia.com/advisories/37178/

McAfee IntruShield Network Security Manager Permits Session Hijacking Attacks
http://securitytracker.com/alerts/2009/Nov/1023172.html

McAfee IntruShield NSM Input Validation Flaw Permits Cross-Site Scripting Attacks
http://securitytracker.com/alerts/2009/Nov/1023171.html

Citrix Online Plug-ins Lets Remote Users Spoof SSL Endpoints
http://securitytracker.com/alerts/2009/Nov/1023168.html

Apple Safari May Load HTML 5 Media Elements Automatically
http://securitytracker.com/alerts/2009/Nov/1023167.html

Apple Safari WebKit FTP Parsing Bugs Let Remote Users Cause Arbitrary Code to Be Executed
http://securitytracker.com/alerts/2009/Nov/1023166.html

Apple Safari WebKit Flaw Lets Remote Users Bypass Cross-Origin Resource Sharing Controls
http://securitytracker.com/alerts/2009/Nov/1023165.html

GIMP "ReadImage()" BMP Image Parsing Integer Overflow Vulnerability
http://www.vupen.com/english/advisories/2009/3228

Poppler "pdftoabw" PDF Processing Buffer Overflow Vulnerabilities
http://www.vupen.com/english/advisories/2009/3227

McAfee NSM Cross Site Scripting and Security Bypass Vulnerability
http://www.vupen.com/english/advisories/2009/3226

mpop OpenSSL NULL Character Handling Certificate Spoofing Issue
http://www.vupen.com/english/advisories/2009/3225

msmtp OpenSSL NULL Character Handling Certificate Spoofing Issue
http://www.vupen.com/english/advisories/2009/3224

FrontAccounting Multiple Remote SQL Injection Vulnerabilities
http://www.vupen.com/english/advisories/2009/3223

UseBB BBcode Parsing Remote Denial of Service Vulnerability
http://www.vupen.com/english/advisories/2009/3222

Piwigo Data Processing Unspecified Cross Site Scripting Vulnerability
http://www.vupen.com/english/advisories/2009/3221

MatrixSSL Session Renegotiation Plaintext Injection Vulnerability
http://www.vupen.com/english/advisories/2009/3220

HP ProCurve Web Management Interface Cross Site Scripting Issues
http://www.vupen.com/english/advisories/2009/3219

Web Services Module for Drupal Access Bypass Vulnerability
http://www.vupen.com/english/advisories/2009/3218

GIMP BMP Image Parsing Integer Overflow Vulnerability
http://www.securityfocus.com/bid/37006

JNLPAppletLauncher Arbitrary File Creation Vulnerability
http://www.securityfocus.com/bid/35946

UseBB BBcode Parsing Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/37010

OpenLDAP X.509 Certificate NULL Character Certificate Validation Security Bypass Vulnerability
http://www.securityfocus.com/bid/36844

Cisco Global Site Selector DNS Server Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/33152

Apache 'mod_deflate' Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/35623

Apache mod_proxy_ftp Module NULL Pointer Dereference Denial Of Service Vulnerability
http://www.securityfocus.com/bid/36260

Apache mod_proxy_ftp Remote Command Injection Vulnerability
http://www.securityfocus.com/bid/36254

Pidgin OSCAR Plugin Invalid Memory Access Denial Of Service Vulnerability
http://www.securityfocus.com/bid/36719

WordPress MU 'wp-includes/wpmu-functions.php' Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/34075

WordPress 'wp-admin/admin.php' Module Configuration Security Bypass Vulnerability
http://www.securityfocus.com/bid/35584

ISC DHCP 'dhclient' 'script_write_params()' Stack Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/35668

CamlImages JPEG Handling Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/36713

ISC DHCP Server Host Definition Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/35669

libvorbis OGG Vorbis Processing Multiple Remote Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/36018

Mozilla Firefox CVE-2009-3379 Multiple Remote Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/36875

XM Easy Personal FTP Server 'LIST' Command Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/36969

Expat UTF-8 Character XML Parsing Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/36097

IBM BladeCenter Advanced Management Module Multiple Unspecified Security Vulnerabilities
http://www.securityfocus.com/bid/36970

JForJoomla JReservation Joomla! Component 'pid' Parameter SQL Injection Vulnerability
http://www.securityfocus.com/bid/36446

GNU GRUB Local Authentication Bypass Vulnerability
http://www.securityfocus.com/bid/36968

CuteNews and UTF-8 CuteNews Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/36971

Mozilla NSS NULL Character CA SSL Certificate Validation Security Bypass Vulnerability
http://www.securityfocus.com/bid/35888

Dovecot Sieve Plugin Multiple Unspecified Buffer Overflow Vulnerabilities
http://www.securityfocus.com/bid/36377

FreeRADIUS Zero-length Tunnel-Password Attributes Denial of Service Vulnerability
http://www.securityfocus.com/bid/36263

Free Download Manager Torrent File Parsing Multiple Remote Buffer Overflow Vulnerabilities
http://www.securityfocus.com/bid/33555

Xpdf Multiple Integer Overflow Vulnerabilities
http://www.securityfocus.com/bid/36703

Mozilla Firefox Floating Point Conversion Heap Overflow Vulnerability
http://www.securityfocus.com/bid/36851

strongSwan Crafted X.509 Certificate Multiple Remote Denial Of Service Vulnerabilities
http://www.securityfocus.com/bid/35452

Adobe Photoshop Elements Active File Monitor Service Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/36542

Neon 'ne_xml*' expat XML Parsing Denial of Service Vulnerability
http://www.securityfocus.com/bid/36080

EasyMail Objects EMSMTP.DLL ActiveX Control Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/25467

Wireshark ERF File Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/36591

Poppler 'create_surface_from_thumbnail_data()' Integer Overflow Memory Corruption Vulnerability
http://www.securityfocus.com/bid/36718

IETF and W3C XML Digital Signature Specification HMAC Truncation Authentication Bypass Vulnerability
http://www.securityfocus.com/bid/35671

OpenSSH CBC Mode Information Disclosure Vulnerability
http://www.securityfocus.com/bid/32319

PHP 5.2.10 and Prior Versions Multiple Vulnerabilities
http://www.securityfocus.com/bid/36449

OpenLDAP Multiple Remote Denial of Service Vulnerabilities
http://www.securityfocus.com/bid/26245

OpenLDAP MODRDN Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/27778

LibTIFF 'LZWDecodeCompat()' Remote Buffer Underflow Vulnerability
http://www.securityfocus.com/bid/35451

Fetchmail NULL Character CA SSL Certificate Validation Security Bypass Vulnerability
http://www.securityfocus.com/bid/35951

Subversion Binary Delta Processing Multiple Integer Overflow Vulnerabilities
http://www.securityfocus.com/bid/35983

IPsec-Tools Prior to 0.7.2 Multiple Remote Denial Of Service Vulnerabilities
http://www.securityfocus.com/bid/34765

NETGEAR WNDAP330 Management Frame Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/36991

Sun Solaris IP(7P) Module and STREAMS Framework Local Denial Of Service Vulnerability
http://www.securityfocus.com/bid/36562

Sun Java Runtime Environment XML Parsing Denial of Service Vulnerability
http://www.securityfocus.com/bid/35958

Sun Java Runtime Environment Unpack200 JAR Unpacking Utility Integer Overflow Vulnerability
http://www.securityfocus.com/bid/35944

Sun Java Runtime Environment Proxy Mechanism Implementation Privilege Escalation Vulnerabilities
http://www.securityfocus.com/bid/35943

Sun Java Runtime Environment JPEG Image Handling Integer Overflow Vulnerability
http://www.securityfocus.com/bid/35942

Sun Java Runtime Environment Audio System Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/35939

Sun Solaris TCP Sockets Local Denial Of Service Vulnerability
http://www.securityfocus.com/bid/36992

Drupal Web Services Module Authentication Bypass Vulnerability
http://www.securityfocus.com/bid/37000

Drupal AddToAny Node Title HTML Injection Vulnerability
http://www.securityfocus.com/bid/36999

Drupal RootCandy Theme URI Value HTML Injection Vulnerability
http://www.securityfocus.com/bid/36998

Sun Java SE November 2009 Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/36881

Novell eDirectory '/dhost/modules?I:' Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/37009

Apple Safari Shortcut Menu Options Information Disclosure Vulnerability
http://www.securityfocus.com/bid/36994

Linux Kernel 'drivers/char/agp/generic.c' Local Information Disclosure Vulnerability
http://www.securityfocus.com/bid/34673

Linux Kernel 'get_random_int' Random Number Generation Weakness
http://www.securityfocus.com/bid/36788

Linux Kernel 'net/ax25/af_ax25.c' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/36635

Linux Kernel 'pipe.c' Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/36901

Linux Kernel 64-bit Kernel Register Memory Leak Local Information Disclosure Vulnerability
http://www.securityfocus.com/bid/36576

Linux Kernel 'sock_sendpage()' NULL Pointer Dereference Vulnerability
http://www.securityfocus.com/bid/36038

WebKit Preflight Request Same-Origin Policy Bypass Vulnerability
http://www.securityfocus.com/bid/36997

Linux Kernel RTL8169 NIC Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/35281

WebKit Resource Load Callback Information Disclosure Weakness
http://www.securityfocus.com/bid/36996

Linux Kernel 'udp_sendmsg()' MSG_MORE Flag Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/36108

WebKit Numeric Character References Remote Memory Corruption Vulnerability
http://www.securityfocus.com/bid/35607

WebKit SVGList Objects Remote Memory Corruption Vulnerability
http://www.securityfocus.com/bid/34924

WebKit CSS 'Attr' Function Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/35318

Linux Kernel 'clear_child_tid()' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/35930

WebKit JavaScript Garbage Collector Memory Corruption Vulnerability
http://www.securityfocus.com/bid/35309

Microsoft Excel Document Parsing Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/36911

Microsoft Excel Malformed BIFF Record Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/36946

Microsoft Excel Index Parsing Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/36909

Microsoft Excel Formula Parsing Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/36908

WebKit DOM Event Handler Remote Memory Corruption Vulnerability
http://www.securityfocus.com/bid/35271

WebKit XML External Entity Information Disclosure Vulnerability
http://www.securityfocus.com/bid/35321

Linux Kernel CIFS 'decode_unicode_ssetup()' Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34612

WebKit 'Attr' DOM Objects Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/35310

WebKit 'Document()' Function Remote Information Disclosure Vulnerability
http://www.securityfocus.com/bid/35284

WebKit Java Applet Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/35350

Multiple Vendor TLS Protocol Session Renegotiation Security Vulnerability
http://www.securityfocus.com/bid/36935

HP ProCurve Switch Management Interface Multiple HTML Injection Vulnerabilities
http://www.securityfocus.com/bid/37001

Multiple Panda Products Insecure Program File Permissions Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/36897

RETIRED: Xerox Fiery WebTools 'summary.php' SQL Injection Vulnerability
http://www.securityfocus.com/bid/36906

Yahoo! Messenger 'YahooBridgeLib.dll' ActiveX Control Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/37007

HP NonStop Server Unauthorized Data Access Vulnerability
http://www.securityfocus.com/bid/36981

HP Power Manager Management Web Server Login Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/36933

Microsoft Windows 'KeAccumulateTicks()' SMB2 Packet Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/36989

Microsoft Windows Embedded OpenType Font Engine Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/36029

McAfee Network Security Manager Information Disclosure Vulnerability
http://www.securityfocus.com/bid/37004

McAfee Network Security Manager Multiple Cross Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/37003

WordPress 'wp-admin/includes/file.php' Arbitrary File Upload Vulnerability
http://www.securityfocus.com/bid/37005

WebKit Multiple Remote Code Execution, Denial of Service, and Information Disclosure Vulnerabilities
http://www.securityfocus.com/bid/36995

Article Directory Index.PHP Remote File Include Vulnerability
http://www.securityfocus.com/bid/25042

Adobe Flash Player Same-Origin Policy Bypass Vulnerability
http://www.securityfocus.com/bid/37013

XM Easy Personal FTP Server 'NLST' Command Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/37008

0 件のコメント:

コメントを投稿