125 Network SecurityFocus Publications for 2010-11 |
| PHPShop 'name_new' Parameter Cross Site Scripting Vulnerability | 2010-11-10 |
| WeBid Multiple Input Validation Vulnerabilities | 2010-11-10 |
| SilverStripe Unspecified Cross Site Request Forgery Vulnerability | 2010-11-10 |
| Babylon Translation Interface Cross Domain Script Injection Vulnerability | 2010-11-10 |
| Woltlab Burning Board 'locator.php' SQL Injection Vulnerability | 2010-11-09 |
| Novell GroupWise Multiple Remote Vulnerabilities | 2010-11-09 |
| osTicket 'module.php' Local File Include Vulnerability | 2010-11-09 |
| D-Link DIR-300 'tools_admin.php' Security Bypass Vulnerability | 2010-11-09 |
| IBM OmniFind Multiple Vulnerabilities | 2010-11-09 |
| HAVP '/etc/havp/whitelist' Configuration File Security Bypass Vulnerability | 2010-11-09 |
| Apple iOS URL Schemes Handling Security Bypass Vulnerability | 2010-11-09 |
| Microsoft Office 'pptimpconv.dll' DLL Loading Arbitrary Code Execution Vulnerability | 2010-11-09 |
| Microsoft Forefront Unified Access Gateway 'Signurl.asp' Cross-Site Scripting Vulnerability | 2010-11-09 |
| ImpressCMS Unspecified SQL Injection Vulnerability | 2010-11-09 |
| Microsoft Office Large SPID Read AV Remote Code Execution Vulnerability | 2010-11-09 |
| Microsoft Office Drawing Exception Handling Remote Code Execution Vulnerability | 2010-11-09 |
| Microsoft Office Art Drawing Record Remote Code Execution Vulnerability | 2010-11-09 |
| Microsoft Office RTF File Stack Buffer Overflow Vulnerability | 2010-11-09 |
| Microsoft Forefront Unified Access Gateway Mobile Portal Cross-Site Scripting Vulnerability | 2010-11-09 |
| Microsoft Forefront Unified Access Gateway Web Monitor Cross-Site Scripting Vulnerability | 2010-11-09 |
| Microsoft Forefront Unified Access Gateway Spoofing Vulnerability | 2010-11-09 |
| Microsoft PowerPoint (CVE-2010-2573) Heap Corruption Vulnerability | 2010-11-09 |
| Microsoft PowerPoint (CVE-2010-2572) Remote Buffer Overflow Vulnerability | 2010-11-09 |
| Adobe Flash Player DLL Loading Arbitrary Code Execution Vulnerability | 2010-11-09 |
| Adobe Flash Player CVE-2010-3638 Information Disclosure Vulnerability | 2010-11-09 |
| Adobe Flash Player 'Flash10h.ocx' Remote Memory Corruption Vulnerability | 2010-11-09 |
| PHP 'xml_utf8_decode()' UTF-8 Input Validation Vulnerability | 2010-11-09 |
| RETIRED: Microsoft November 2010 Advance Notification Multiple Vulnerabilities | 2010-11-09 |
| PHP 'mb_strcut()' Function Information Disclosure Vulnerability | 2010-11-09 |
| monotone Denial Of Service Vulnerability | 2010-11-08 |
| Adobe Flash Player CVE-2010-3636 Policy File Cross Domain Security Bypass Vulnerability | 2010-11-08 |
| Adobe Flash Player CVE-2010-3649 Remote Memory Corruption Vulnerability | 2010-11-08 |
| Adobe Flash Player CVE-2010-3648 Remote Memory Corruption Vulnerability | 2010-11-08 |
| Adobe Flash Player CVE-2010-3640 Remote Memory Corruption Vulnerability | 2010-11-08 |
| Adobe Flash Player CVE-2010-3643 Remote Memory Corruption Vulnerability | 2010-11-08 |
| Adobe Flash Player CVE-2010-3642 Remote Memory Corruption Vulnerability | 2010-11-08 |
| Adobe Flash Player CVE-2010-3644 Remote Memory Corruption Vulnerability | 2010-11-08 |
| Adobe Flash Player CVE-2010-3647 Remote Memory Corruption Vulnerability | 2010-11-08 |
| Adobe Flash Player CVE-2010-3646 Remote Memory Corruption Vulnerability | 2010-11-08 |
| Adobe Flash Player CVE-2010-3645 Remote Memory Corruption Vulnerability | 2010-11-08 |
| Adobe Flash Player CVE-2010-3641 Remote Memory Corruption Vulnerability | 2010-11-08 |
| G DATA TotalCare 2011 'HookCentre.sys' Memory Corruption Vulnerability | 2010-11-08 |
| Mozilla Firefox SeaMonkey and Thunderbird MFSA 2010-49 Multiple Memory-Corruption Vulnerabilities | 2010-11-08 |
| Mozilla Firefox/SeaMonkey/Thunderbird 'designMode' Cross Domain Scripting Vulnerability | 2010-11-08 |
| Multiple Mozilla Products 'XMLHttpRequest' Cross Domain Information Disclosure Vulnerability | 2010-11-08 |
| Mozilla Firefox, Thunderbird, and SeaMonkey CVE-2010-3168 Remote Code Execution Vulnerability | 2010-11-08 |
| Mozilla Firefox, SeaMonkey, and Thunderbird Transform Text Heap Buffer Overflow Vulnerability | 2010-11-08 |
| Mozilla Firefox, Thunderbird, and SeaMonkey UTF-7 Charset Cross Site Scripting Vulnerability | 2010-11-08 |
| Mozilla Firefox, Thunderbird, and SeaMonkey 'normalizeDocument' Remote Code Execution Vulnerability | 2010-11-08 |
| Mozilla Firefox, Thunderbird, and SeaMonkey 'XULTreeSelection' Remote Code Execution Vulnerability | 2010-11-08 |
| Mozilla Firefox, Thunderbird, and SeaMonkey HTML Frameset Element Integer Overflow Vulnerability | 2010-11-08 |
| Mozilla Firefox, Thunderbird, and SeaMonkey 'nsTreeContentView' Remote Code Execution Vulnerability | 2010-11-08 |
| Mozilla Firefox/SeaMonkey/Thunderbird Cross Domain Scripting Vulnerability | 2010-11-08 |
| Mozilla Firefox and Thunderbird 'XPCSafeJSObjectWrapper' Chrome Privilege Escalation Vulnerability | 2010-11-08 |
| RETIRED: Pay Roll Time Sheet & Punch Card Login SQL Injection Vulnerability | 2010-11-08 |
| Xcftools 'flattenIncrementally()' Function Remote Stack Buffer Overflow Vulnerability | 2010-11-08 |
| ASPilot Pilot Cart Multiple Vulnerabilities | 2010-11-07 |
| Novell ZENworks Handheld Management 'ZfHIPCND.exe' Buffer Overflow Vulnerability | 2010-11-07 |
| Cisco Unified Intelligent Contact Management Enterprise 'agent.exe' Multiple Vulnerabilities | 2010-11-07 |
| Luci Spoofed Ticket Cookie Authentication Bypass Vulnerability | 2010-11-05 |
| Python FTP server library (pyftpdlib) 'ftpserver.py' File Multiple Security Vulnerabilities | 2010-11-05 |
| Joomla! SQL Error Information Disclosure Vulnerability | 2010-11-05 |
| Angel Learning Management System 'pdaview.asp' Cross Site Scripting Vulnerability | 2010-11-05 |
| Adobe Flash Player CVE-2010-3639 Remote Denial of Service Vulnerability | 2010-11-05 |
| JustSystems Ichitaro Multiple Remote Code Execution Vulnerabilities | 2010-11-04 |
| Adobe Reader 9.4 Remote Memory Corruption Vulnerability | 2010-11-04 |
| CUPS Server 'cups/ipp.c' Remote Memory Corruption Vulnerability | 2010-11-04 |
| PAM 'pam_namespace' Module Local Privilege Escalation Vulnerability | 2010-11-04 |
| eoCMS HTML Injection, Local File Include, and SQL Injection Vulnerabilities | 2010-11-04 |
| Linux Kernel 'ipc/sem.c' Information Disclosure Vulnerability | 2010-11-04 |
| FreeType 'ft_var_readpackedpoints()' Buffer Overflow Vulnerability | 2010-11-04 |
| Google Chrome prior to 7.0.517.44 Multiple Security Vulnerabilities | 2010-11-04 |
| FreeType TrueType Font Handling 'ttinterp.c' Remote Code Execution Vulnerability | 2010-11-04 |
| Linux Kernel 'x25_parse_facilities()' Remote Denial of Service Vulnerability | 2010-11-04 |
| Linux Kernel CAN Protocol Information Disclosure Vulnerability | 2010-11-04 |
| SweetRice Multiple Remote Security Vulnerabilities | 2010-11-04 |
| Avast! Internet Security 'aswtdi.sys' Driver IOCTL Handling Local Denial of Service Vulnerability | 2010-11-04 |
| TextPattern Comment HTML Injection Vulnerability | 2010-11-04 |
| Linux Kernel 'inet_diag.c' Netlink Message Denial of Service Vulnerability | 2010-11-04 |
| JAF CMS Multiple Remote File Include and Remote Shell Command Execution Vulnerabilities | 2010-11-04 |
| Adobe Flash Player APSB10-26 Multiple Remote Vulnerabilities | 2010-11-04 |
| miniBB SQL Injection and HTML-injection Vulnerabilities | 2010-11-04 |
| Linux Kernel Multiple 'kvm/x86.c' Local Information Disclosure Vulnerabilities | 2010-11-04 |
| Adobe Flash Player CVE-2010-3652 Remote Memory Corruption Vulnerability | 2010-11-04 |
| Adobe Flash Player CVE-2010-3650 Remote Memory Corruption Vulnerability | 2010-11-04 |
| Adobe Shockwave Player 'Shockwave Settings' Memory Corruption Vulnerability | 2010-11-03 |
| digiSHOP 'id' Parameter SQL Injection Vulnerability | 2010-11-03 |
| Festival Server 'LD_LIBRARY_PATH' Insecure Library Loading Arbitrary Code Execution Vulnerability | 2010-11-03 |
| ClamAV 'find_stream_bounds()' PDF File Processing Denial Of Service Vulnerability | 2010-11-03 |
| Bugzilla Response Splitting and Security Bypass Vulnerabilities | 2010-11-03 |
| Microsoft Internet Explorer CSS Tags Remote Code Execution Vulnerability | 2010-11-03 |
| Avira Premium Security Suite 'avipbb.sys' Local Privilege Escalation Vulnerability | 2010-11-03 |
| NetSupport Manager Gateway HTTP Protocol Information disclosure vulnerability | 2010-11-03 |
| Open Handset Alliance Android Multiple Unspecified Security Vulnerabilities | 2010-11-03 |
| eLouai's Force Download Script 'force-download.php' Arbitrary File Download Vulnerability | 2010-11-03 |
| Oracle MySQL Prior to 5.1.51 Multiple Denial Of Service Vulnerabilities | 2010-11-03 |
| Rising Antivirus 2009 IOCTL Local Denial of Service Vulnerability | 2010-11-02 |
| AVG Internet Security IOCTL Local Denial of Service Vulnerability | 2010-11-02 |
| Webmedia Explorer HTML Injection Vulnerability | 2010-11-02 |
| BroadWorks Call Detail Record Security Bypass Vulnerability | 2010-11-02 |
| IBM Tivoli Directory Server Multiple Denial of Service Vulnerabilities | 2010-11-02 |
| XWiki Enterprise Unspecified SQL Injection and Cross Site Scripting Vulnerabilities | 2010-11-02 |
| Sybase Advantage Data Architect DLL Loading Arbitrary Code Execution Vulnerability | 2010-11-02 |
| Maxthon Browser CSS Remote Denial Of Service Vulnerability | 2010-11-02 |
| Oracle VM CVE-2010-3584 'ovs-agent' Local Privilege Escalation Vulnerability | 2010-11-02 |
| Oracle VM CVE-2010-3583 Remote Command Execution Vulnerability | 2010-11-02 |
| Online Work Order Suite Login SQL Injection Vulnerability | 2010-11-02 |
| ISC DHCP Server Relay-Forward Empty Link-Address Field Denial of Service Vulnerability | 2010-11-02 |
| Python 'rgbimg' RLE Decoder Multiple Buffer Overflow Vulnerabilities | 2010-11-01 |
| Python 'rgbimg' Module ZSIZE Value Buffer Underflow Vulnerability | 2010-11-01 |
| Python 'rgbimg' Module 'rv' Array Buffer Overflow Vulnerability | 2010-11-01 |
| ProFTPD Multiple Remote Vulnerabilities | 2010-11-01 |
| Adobe Shockwave Player 'dirapi.dll' CVE-2010-4086 Memory Corruption Vulnerability | 2010-11-01 |
| Xerox 4595 Copier/Printer Unspecified Remote Denial of Service Vulnerability | 2010-11-01 |
| Adobe Shockwave Player 'IML32.dll' CVE-2010-4089 Memory Corruption Vulnerability | 2010-11-01 |
| Adobe Shockwave Player 'IML32.dll' CVE-2010-4087 Memory Corruption Vulnerability | 2010-11-01 |
| Adobe Shockwave Player 'dirapi.dll' CVE-2010-4088 Memory Corruption Vulnerability | 2010-11-01 |
| Elastix Multiple Cross Site Scripting Vulnerabilities | 2010-11-01 |
| Yaws URI Directory Traversal Vulnerability | 2010-11-01 |
| Auto CMS Multiple PHP Code Injection Vulnerabilities | 2010-11-01 |
| SmallFTPD GET Request Directory Traversal Vulnerability | 2010-11-01 |
| SmartOptimizer Null Character Remote Information Disclosure Vulnerability | 2010-11-01 |
| HP Insight Control Performance Management Cross-Site Scripting Vulnerability | 2010-11-01 |
| HP Insight Control Performance Management CVE-2010-4100 Arbitrary File Download Vulnerability | 2010-11-01 |
| CVS CVE-2010-3846 RCS File Heap Buffer Overflow Vulnerability | 2010-11-01 |