Welcome Guest. | Log In | Register | Membership Benefits

All Security Stories

What A DDoS Can Cost

    May 15, 2012

Cyberspies Target Victims Via 'Strategic' Driveby Website Attacks

    May 15, 2012

Well Over Half The World's Computer Users Admit Pirating Software, BSA Study Finds

    May 15, 2012

Number Of Software Pirates On The Rise

    May 15, 2012

McAfee and Intel Announce Critical Infrastructure Protection

    May 15, 2012

Application Security, Inc. Pledges $1 Million Of Database Security Software To Help Enterprises Battle Data Breaches

    May 15, 2012

Network Security Technology Evolving Rapidly, Forrester Says

    May 15, 2012

Why Some SMBs Still Fear The Cloud

    May 14, 2012

ForeScout And Fiberlink Team On Fully Integrated NAC And MDM Solution

    May 14, 2012

Vaultive Introduces Enterprise-Class Cloud Data Encryption Solution For Hosted Exchange

    May 14, 2012

Beazley Brings State Of The Art Data Breach Protection For Small Firm

    May 14, 2012

UNC Charlotte Breach Affected More Than 350,000

    May 14, 2012

Infrax Systems (IFXY) Launches Smart Grid's SPIDer

    May 13, 2012

Abine Launches PrivacyWatch Alert System To Help Facebook Users Protect Their Personal Information

    May 13, 2012

WatchGuard Goes Virtual With Security

    May 13, 2012

Trend Micro Plug-In Makes It Easy For Companies Using Apache CloudStack To Encrypt And Protect Their Cloud Data

    May 11, 2012

HP Moves HP Cloud Services To Public Beta

    May 11, 2012

Intel Taps TeleSign For Identity Protection

    May 11, 2012

DOD Announces Expansion Of Defense Industrial Base Voluntary Cybersecurity Information Sharing Activities

    May 11, 2012

BeyondTrust Buys eEye

    May 10, 2012

PCI Council Introduces New Certification & Training Program

    May 10, 2012

Trend Micro Reports First Quarter Results

    May 10, 2012

New .secure Internet Domain On Tap

    May 10, 2012

FBI Warns Travelers Using Hotel Networks About New Attack

    May 10, 2012

3LM Expands Android Operating System Support; Introduces Security And Management For Apple's iOS Platform

    May 10, 2012







Bugs
ENTERPRISE VULNERABILITIES
Vulnerability:ssl-vpn end-point interrogator/installer activex control
Published:2010-11-03
Severity:High
Description:Stack-based buffer overflow in SonicWALL SSL-VPN End-Point Interrogator/Installer ActiveX control (Aventail.EPInstaller) before 10.5.2 and 10.0.5 hotfix 3 allows remote attackers to execute arbitrary code via long (1) CabURL and (2) Location arguments to the Install3rdPartyComponent method.
Vulnerability:gvim
Published:2010-11-03
Severity:High
Description:Untrusted search path vulnerability in VIM Development Group GVim before 7.3.034, and possibly other versions before 7.3.46, allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse User32.dll or other DLL that is located in the same folder as a .TXT file. NOTE: some of these details are obtained from third party information.
Vulnerability:cforms
Published:2010-11-03
Severity:Medium
Description:Multiple cross-site scripting (XSS) vulnerabilities in wp-content/plugins/cforms/lib_ajax.php in cforms WordPress plugin 11.5 allow remote attackers to inject arbitrary web script or HTML via the (1) rs and (2) rsargs[] parameters.
Vulnerability:links, wsn links, wsn links
Published:2010-11-03
Severity:High
Description:Multiple SQL injection vulnerabilities in search.php in WSN Links 5.0.x before 5.0.81, 5.1.x before 5.1.51, and 6.0.x before 6.0.1 allow remote attackers to execute arbitrary SQL commands via the (1) namecondition or (2) namesearch parameter.
Vulnerability:deluxebb
Published:2010-11-03
Severity:Medium
Description:SQL injection vulnerability in misc.php in DeluxeBB 1.3, and possibly earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the xthedateformat parameter in a register action, a different vector than CVE-2005-2989, CVE-2006-2503, and CVE-2009-1033.



Briefing Centers
POWERFUL INFORMATION
AT YOUR FINGERTIPS
(SPONSORED LINKS)