2010年6月22日火曜日

22日 火曜日、先負

About the security content of iOS 4
http://support.apple.com/kb/HT4225

JVN#34729123 Explzh におけるバッファオーバーフローの脆弱性
http://jvn.jp/jp/JVN34729123/index.html

JVNVU#221257 Symantec Workspace Streaming (旧 Symantec AppStream) に脆弱性
http://jvn.jp/cert/JVNVU221257/index.html

JVNDB-2010-000026 Explzh におけるバッファオーバーフローの脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-000026.html

Thoughts on Malware for Mobile Devices
http://isc.sans.edu/diary.html?storyid=9046

APPLE-SA-2010-06-21-1 iOS 4
http://lists.apple.com/archives/security-announce/2010/Jun/msg00003.html

Joomla JFaq Component Multiple Vulnerabilities
http://secunia.com/advisories/40219/




[ANNOUNCE] Release of Lucene Java 3.0.2 and 2.9.3
http://lucene.apache.org/java/3_0_2/changes/Changes.html
http://lucene.apache.org/java/2_9_3/changes/Changes.html

[ANNOUNCEMENT]: Apache Xerces-J 2.10.0 now available
http://xerces.apache.org/mirrors.cgi

[ANNOUNCE] Apache Nutch 1.1 released
http://www.apache.org/dist/nutch/CHANGES-1.1.txt

[ANN] Apache Archiva 1.3.1 Released
http://archiva.apache.org/docs/1.3.1/release-notes.html

Subversion 1.6.12 Released
http://subversion.apache.org/docs/release-notes/1.6.html

[ANNOUNCE] Apache James jSPF 0.9.8 release
http://james.apache.org/download.cgi#Apache_jSPF

[ANNOUNCE] Apache James Mailet Base 1.1 released
http://james.apache.org/download.cgi#Apache_Mailet_Base

MySQL Workbench 5.2.24 RC3 released
http://dev.mysql.com/downloads/workbench/

Samba 3.5.3対応の日本語マニュアル ver 3.5.3-1 を公開しました。今回からSamba3-Developers-Guideを同梱しています。
http://wiki.samba.gr.jp/mediawiki/index.php?title=%E3%83%A1%E3%82%A4%E3%83%B3%E3%83%9A%E3%83%BC%E3%82%B8

MustLive : Vulnerabilities in eSitesBuilder
http://www.criticalwatch.com/support/security-advisories.aspx?AID=32936

Nikolas Sotiriu : AnNoText Third-Party ActiveX Control file overwrite vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=32937

Nikolas Sotiriu : AnNoText Third-Party ActiveX Control Buffer Overflow
http://www.criticalwatch.com/support/security-advisories.aspx?AID=32938

編集部にも直撃!マスターカードをかたるフィッシングが横行
偽サイトは現在も稼働中、ユーザーからの報告件数は13件
http://itpro.nikkeibp.co.jp/article/NEWS/20100622/349478/?ST=security

JVNDB-2010-001544 Apple Safari の WebKit におけるディレクトリトラバーサルの脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001544.html

JVNDB-2010-001543 Apple Safari の WebKit におけるクロスサイトスクリプティングの脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001543.html

JVNDB-2010-001542 Apple Safari の WebKit におけるクロスサイトスクリプティングの脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001542.html

JVNDB-2010-001541 Apple Safari の WebKit における任意のファイルを読まれる脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001541.html

GoDaddy Scam/Phish/Spam
http://isc.sans.edu/diary.html?storyid=9043

[USN-954-1] tiff vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00201.html

[USN-955-2] libpam-opie vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00204.html

[USN-955-1] OPIE vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00202.html

[USN-953-1] fastjar vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00203.html

[USN-952-1] CUPS vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00206.html

ZDI-10-112: Novell Access Manager Arbitrary File Upload Remote Code Execution Vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00200.html

CSRF in PHPWCMS 1.4.5
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00205.html

ZDI-10-111: Adobe Flash Player LocalConnection Memory Corruption Remote Code Execution Vulne
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00207.html

[ MDVSA-2010:120 ] squirrelmail
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00199.html

[Bkis-02-2010] Multiple Vulnerabilities in CMS Made Simple - Bkis
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00005.html

Sysax Multi Server "open", "unlink", "mkdir", "scp_get" Commands DoS Vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00198.html

XSS vulnerability in the search module of synType CMS
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00197.html

Stored XSS vulnerability in synType CMS comment text field
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00195.html

XSS vulnerability in Scribe CMS
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00196.html

XSS vulnerability in Scribe CMS
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00194.html

XSS vulnerability in Scribe CMS
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00193.html

Wing FTP Server PORT Command DoS Vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00192.html

Vulnerabilities in eSitesBuilder
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00191.html

NSOADV-2010-009: AnNoText Third-Party ActiveX Control file overwrite vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00189.html

NSOADV-2010-008: AnNoText Third-Party ActiveX Control Buffer Overflow
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00187.html

[MajorSecurity SA-075]CMS RedAks 2.0 - SQL injection vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00188.html

Remote Arbitrary Code Execution Vulnerability in UFO: Alien Invasion
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-06/msg00190.html

Opera Has Multiple Flaws With Unspecified Impact
http://securitytracker.com/alerts/2010/Jun/1024134.html

IBM WebSphere Application Server Axis2 Flaw Lets Remote Users View Arbitrary Files
http://securitytracker.com/alerts/2010/Jun/1024133.html

EZPX photoblog 1.2 beta Remote Include Exploit
http://securityreason.com/securityalert/7525

ArabPortal V2.2.x Remote SQL Injection Vulnerability
http://securityreason.com/securityalert/7524

Subdreamer CMS - SQL injection vulnerability
http://securityreason.com/securityalert/7523

VU Web Visitor Analyst Authentication Bypass
http://securityreason.com/securityalert/7522

Litespeed Technologies Web Server Remote Poison null byte Zero-Day
http://securityreason.com/securityalert/7521

Rosoft Audio Converter 4.4.4 Buffer Overflow
http://securityreason.com/securityalert/7520

matthias_klose fastjar 0.98 directory traversal vulnerabilities
http://securityreason.com/securityalert/7519

jar, fastjar directory traversal vulnerabilities
http://securityreason.com/securityalert/7518

httpd Timeout detection flaw (mod_proxy_http)
http://securityreason.com/securityalert/7517

Website Baker Cross-Site Request Forgery Vulnerability
http://secunia.com/advisories/40274/

Enemy Territory: Quake Wars Two Vulnerabilities
http://secunia.com/advisories/40292/

Wolfenstein "idGameLocal::GetGameStateObject()" Vulnerability
http://secunia.com/advisories/40277/

osCMax "articles_description[]" Script Insertion Vulnerability
http://secunia.com/advisories/40266/

H264WebCam HTTP Request Parsing Denial of Service
http://secunia.com/advisories/40299/

Joomla RSComments Component Two Script Insertion Vulnerabilities
http://secunia.com/advisories/40278/

Joomla Listbingo Component Multiple Vulnerabilities
http://secunia.com/advisories/40286/

Joomla Ozio Gallery Component Two Vulnerabilities
http://secunia.com/advisories/40294/

Spring Framework "classLoader" Code Execution Vulnerability
http://secunia.com/advisories/40260/

IBM WebSphere Application Server JAX-WS Web Services Vulnerability
http://secunia.com/advisories/40279/

Joomla Gallery XML Component Two Vulnerabilities
http://secunia.com/advisories/40295/

Plone "safe_html" Script Insertion Vulnerability
http://secunia.com/advisories/40270/

Opera Multiple Unspecified Vulnerabilities
http://secunia.com/advisories/40250/

Apache Axis2/Java XML Document Type Declaration Processing Vulnerability
http://secunia.com/advisories/40252/

Joomla Jobline Component "Itemid" Cross-Site Scripting Vulnerability
http://secunia.com/advisories/40305/

Banner Management "id" SQL Injection Vulnerability
http://secunia.com/advisories/40289/

Xataface Search Cross-Site Scripting Vulnerability
http://secunia.com/advisories/40285/

Joomla CMS Realty Component "Itemid" Cross-Site Scripting Vulnerability
http://secunia.com/advisories/40306/

Slackware update for samba
http://secunia.com/advisories/40293/

Open&Compact Ftp Server (Open-FTPD) Authentication Bypass Vulnerability
http://secunia.com/advisories/40284/

Sun Microsystems Directory Server Enterprise DSML UTF-8 DoS Vulnerability
http://www.securiteam.com/unixfocus/5DP3G0A1PA.html

Cisco Secure Desktop ActiveX Control Code Execution Vulnerability
http://www.securiteam.com/securitynews/5EP3H0A1PU.html

Cisco Secure Desktop ActiveX Control Code Execution Vulnerability
http://www.securiteam.com/securitynews/5FP3I0A1PO.html

Visualization Library DAT File Parsing Vulnerabilities
http://www.securiteam.com/securitynews/5GP3J0A1PS.html

Opera 10.54 for Windows released
http://www.opera.com/docs/changelogs/windows/1054/

Website Baker Admin Interface Cross Site Request Forgery Vulnerability
http://www.vupen.com/english/advisories/2010/1534

KubeSupport "lang" Parameter Local File Inclusion Vulnerability
http://www.vupen.com/english/advisories/2010/1533

Kubelance "id" Parameter Remote SQL Injection Vulnerability
http://www.vupen.com/english/advisories/2010/1532

IBM WebSphere Application Server XML DTD Vulnerability
http://www.vupen.com/english/advisories/2010/1531

Moodle Cross Site Scripting and Request Forgery Vulnerabilities
http://www.vupen.com/english/advisories/2010/1530

Opera Multiple Code Execution and Security Bypass Vulnerabilities
http://www.vupen.com/english/advisories/2010/1529

Apache Axis2/Java Document Type Declaration (DTD) Vulnerability
http://www.vupen.com/english/advisories/2010/1528

HP-UX Security Update Fixes Apache / PHP Multiple Vulnerabilities
http://www.vupen.com/english/advisories/2010/1527

Xerox WorkCentre Security Update Fixes Unspecified Vulnerabilities
http://www.vupen.com/english/advisories/2010/1526

Redhat Security Update Fixes CUPS Multiple Vulnerabilities
http://www.vupen.com/english/advisories/2010/1525

CUPS Memory Corruption and Information Disclosure Vulnerabilities
http://www.vupen.com/english/advisories/2010/1524

Redhat Security Update Fixes Java Code Execution Vulnerabilities
http://www.vupen.com/english/advisories/2010/1523

Turbolinux Security Update Fixes Flash Code Execution Vulnerabilities
http://www.vupen.com/english/advisories/2010/1522

Slackware Security Update Fixes Samba Memory Corruption Vulnerability
http://www.vupen.com/english/advisories/2010/1521

Drupal Views Module HTML Injection and Cross Site Request Forgery Vulnerabilities
http://www.securityfocus.com/bid/40936

Drupal Content Construction Kit (CCK) Multiple Security Bypass Vulnerabilities
http://www.securityfocus.com/bid/40938

WebKit Right-to-Left Displayed Text Handling Memory Corruption Vulnerability
http://www.securityfocus.com/bid/38689

WebKit 'DOCUMENT_POSITION_DISCONNECTED' Attribute Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40650

WebKit HTML Elements Callback Use-After-Free Error Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/38686

WebKit Nested HTML Tags Use-After-Free Error Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/38685

WebKit CSS 'format()' Arguments Memory Corruption Vulnerability
http://www.securityfocus.com/bid/38684

WebKit CSS 'run-in' Display Use-After-Free Error Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/38690

WebKit HTTPS Redirect Information Disclosure Vulnerability
http://www.securityfocus.com/bid/40750

WebKit XML Document Parsing Memory Corruption Vulnerability
http://www.securityfocus.com/bid/38688

Webkit UTF-7 Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/40669

WebKit Object Element Fallback Memory Corruption Vulnerability
http://www.securityfocus.com/bid/38687

Webkit DOM Constructor Object Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/40707

WebKit Cross-Origin Stylesheet Request Information Disclosure Vulnerability
http://www.securityfocus.com/bid/38692

WebKit HTML Tables Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40671

WebKit 'Node.normalize' Method Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40665

WebKit Dragging or Pasting Cross Domain Scripting Vulnerability
http://www.securityfocus.com/bid/40660

Webkit 'textarea' Element Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/40726

WebKit HTML Document Subtrees Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40667

WebKit Custom Vertical Positioning Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40659

WebKit NTLM Credentials Information Disclosure Vulnerability
http://www.securityfocus.com/bid/40733

WebKit DOM Range Objects Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40663

WebKit Integer Truncation TCP Port Information Disclosure Vulnerability
http://www.securityfocus.com/bid/40697

WebKit HTML Button Use After Free Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40644

WebKit Local Storage and Web SQL Database Directory Traversal Vulnerability
http://www.securityfocus.com/bid/40753

WebKit 'libxml' Context Handling Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40668

WebKit SVG Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40657

WebKit SVG Image Pattern Cross Domain Security Bypass Vulnerability
http://www.securityfocus.com/bid/40714

WebKit 'first-letter' CSS Style Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40655

WebKit Option Recursive Use Element Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40654

WebKit 'frame.src' Validation Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/40710

WebKit CSS-Styled HTML Handling Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40672

WebKit 'removeChild' DOM Method Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40666

WebKit SVG 'use' Element Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40656

libxml2 Multiple Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/36010

WebKit Floating Point Number Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/36023

Apple Safari Authentication Data URI Spoofing Vulnerability
http://www.securityfocus.com/bid/40704

WebKit Empty Hostname URI Handling Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/40717

Mac OS X 'libc/strtod(3)' Memory Corruption Vulnerability
http://www.securityfocus.com/bid/37687

WebKit Preflight Request Same-Origin Policy Bypass Vulnerability
http://www.securityfocus.com/bid/36997

Apple Mac OS X 2009-003 Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/35954

Apple Safari ImageIO TIFF Image Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/38673

Apple Safari TIFF Image Uninitialized Memory Information Disclosure Vulnerability
http://www.securityfocus.com/bid/38677

Apple Safari BMP Image Uninitialized Memory Information Disclosure Vulnerability
http://www.securityfocus.com/bid/38676

WebKit 'ConditionEventListener' Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40649

WebKit Caption Element Handling Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40658

WebKit IRC Port Blacklist Information Disclosure Vulnerability
http://www.securityfocus.com/bid/40705

WebKit HTML Image Element Handling Memory Corruption Vulnerability
http://www.securityfocus.com/bid/38691

WebKit 'removeChild()' Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40642

WebKit Editable Containers Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40646

WebKit Marquee Event 'SelectionController' Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40645

WebKit Option Element 'ContentEditable' Attribute Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40647

Webkit HTML Document Fragments Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/40675

WebKit Cascading Stylesheets 'HREF' Information Disclosure Vulnerability
http://www.securityfocus.com/bid/40727

LibTIFF FAX3 Decoder Remote Integer Overflow Vulnerability
http://www.securityfocus.com/bid/40823

Apache Axis2 Document Type Declaration Processing Security Vulnerability
http://www.securityfocus.com/bid/40976

CUPS 'texttops' Filter NULL-pointer Dereference Vulnerability
http://www.securityfocus.com/bid/40943

CUPS Web Interface Unspecified Cross Site Request Forgery Vulnerability
http://www.securityfocus.com/bid/40889

CUPS Web Interface Unspecified Information Disclosure Vulnerability
http://www.securityfocus.com/bid/40897

OPIE '__opiereadrec()' Off By One Heap Memory Corruption Vulnerability
http://www.securityfocus.com/bid/40403

Novell Access Manager Administration Console 'getEntry()' Arbitrary File Upload Vulnerability
http://www.securityfocus.com/bid/40931

Apple Mac OS X iChat Inline Image Transfer Directory Traversal Vulnerability
http://www.securityfocus.com/bid/40896

SnowCade Multiple SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/40984

Adobe Flash Player and AIR (CVE-2010-2188) ActionScript Memory Corruption Vulnerability
http://www.securityfocus.com/bid/40798

JCE-Tech PHP Calendars 'product_list.php' SQL Injection Vulnerability
http://www.securityfocus.com/bid/40757

Todd Miller Sudo 'secure path' Security Bypass Vulnerability
http://www.securityfocus.com/bid/40538

SquirrelMail 'mail_fetch' Remote Information Disclosure Vulnerability
http://www.securityfocus.com/bid/40291

Irssi 'WALLOPS' Message Off By One Heap Memory Corruption Vulnerability
http://www.securityfocus.com/bid/35399

Irssi Denial of Service and SSL Hostname Verification Security Bypass Vulnerabilities
http://www.securityfocus.com/bid/39377

Sendmail NULL Character CA SSL Certificate Validation Security Bypass Vulnerability
http://www.securityfocus.com/bid/37543

ZNC NULL Pointer Dereference Denial Of Service Vulnerability
http://www.securityfocus.com/bid/40982

Teamspeak Versions Prior to 3.0.0-beta25 Multiple Remote Vulnerabilities
http://www.securityfocus.com/bid/40918

Microsoft Windows Media Decompression (CVE-2010-1879) Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40432

Microsoft Windows Media Decompression (CVE-2010-1880) Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40464

Microsoft Internet Explorer 'CStyleSheet' Uninitialized Memory Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/40417

YourFreeWorld Shopping Cart Script 'c' Parameter SQL Injection Vulnerability
http://www.securityfocus.com/bid/32045

Apple iPhone/iPod touch Prior to iOS 4 Multiple Vulnerabilities
http://www.securityfocus.com/bid/41016

Sysax Multi Server 'SFTP' Module Multiple Denial Of Service Vulnerabilities
http://www.securityfocus.com/bid/41013

JomSocial Joomla! Component Multiple HTML Injection Vulnerabilities
http://www.securityfocus.com/bid/41010

Ultimate PHP Board Multiple Local File Include Vulnerabilities
http://www.securityfocus.com/bid/41007

UFO: Alien Invasion IRC Client Multiple Remote Buffer Overflow Vulnerabilities
http://www.securityfocus.com/bid/41004

Xataface 'Search' Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/41003

MindArray synType CMS 'cmnt_body' Parameter HTML Injection Vulnerability
http://www.securityfocus.com/bid/41002

id Software id Tech 4 Engine 'idGameLocal::GetGameStateObject()' Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/41001

Sigmer Technologies Scribe CMS 'copy_folder.php' Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/41000

osCmax 'articles.php' Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/40998

JomSocial 'com_community' Joomla! Component Status Field HTML Injection Vulnerability
http://www.securityfocus.com/bid/40997

Joomla! Jobline Component 'Itemid' Parameter Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/40996

SaffaTunes CMS 'news.php' Multiple SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/40995

Shareasale 'merchant_product_list.php' SQL Injection Vulnerability
http://www.securityfocus.com/bid/40993

OroHYIP 'withdraw_money.php' SQL Injection Vulnerability
http://www.securityfocus.com/bid/40992

Overstock 'storecat.php' SQL Injection Vulnerability
http://www.securityfocus.com/bid/40990

Transparent Technologies CMS Realty Component for Joomla! Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/40989

Joomla! Gallery XML Component Local File Include and SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/40988

Joomla! Listbingo Component Cross Site Scripting and SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/40986

Opera Web Browser prior to 10.54 Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/40973

iBoutique 'page' Parameter SQL Injection and Cross Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/41014

SimpleAssets SQL Injection and Cross Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/41008

Belitsoft E-portfolio Joomla! Component Arbitrary File Upload Vulnerability
http://www.securityfocus.com/bid/40994

Orbital Viewer '.ov' File Stack Based Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/40985

0 件のコメント:

コメントを投稿