Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Barracuda Products SSH backdoor vulnerability

A vulnerability has identified in multiple Barracuda products. A remote user can gain access to the target system.The system includes several undocumented SSH user accounts that cannot be disabled and can be accessed from certain whitelisted IP ranges. At least one account can be exploited to...
Last Update Date: 25 Jan 2013 12:33 Release Date: 25 Jan 2013 3852 Views

RISK: High Risk

High Risk

Cisco Wireless LAN Controller Multipule Vulnerabilities

Multiple vulnerabilities were identified in Cisco Wireless LAN Controller. A remote authenticated user can execute arbitrary code and modify the configuration on the target system, and cause denial of service conditions.A remote user can send specially crafted IP packets to the target device configured with Wireless...
Last Update Date: 24 Jan 2013 12:17 Release Date: 24 Jan 2013 3863 Views

RISK: High Risk

High Risk

Google Chrome Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Google Chrome, which can be exploited by malicious people to compromise a user's system. A use-after-free error exists when handling canvas font. An error exists when validating the URL when opening new windows. An...
Last Update Date: 24 Jan 2013 12:12 Release Date: 24 Jan 2013 3833 Views

RISK: High Risk

High Risk

Schneider Electric Interactive Graphical SCADA System (IGSS) Buffer Overflow Vulnerability

A vulnerability has been identified in Schneider Electric IGSS application, which can be exploited by malicious people to execute code under administrator credentials on the target system.
Last Update Date: 23 Jan 2013 12:10 Release Date: 23 Jan 2013 3857 Views

RISK: High Risk

High Risk

IBM WebSphere Application Server Multiple Vulnerabilities

Multiple vulnerabilities have been identified in IBM WebSphere Application Server, which can be exploited by remote attackers to cause denial of service, cross site scripting or compromise a vulnerable system.
Last Update Date: 23 Jan 2013 12:01 Release Date: 23 Jan 2013 3710 Views

RISK: High Risk

High Risk

F5 BIG-IP Input Validation Flaws Multiple Vulnerabilities

A vulnerability has been identified in F5 BIG-IP, which can be exploited by malicious people to inject SQL commands or allow an authenticated attacker to download arbitrary files from the file system on the target system.   A remote authenticated user can supply a specially crafted XML...
Last Update Date: 23 Jan 2013 11:56 Release Date: 23 Jan 2013 3756 Views

RISK: High Risk

High Risk

Lenovo ThinkPad Bluetooth with Enhanced Data Rate Software Insecure Library Loading Vulnerability

A vulnerability has been identified in Lenovo Bluetooth with Enhanced Data Rate Software, which can be exploited by malicious people to compromise a user's system.  The vulnerability is caused due to the application loading libraries in an insecure manner. This can be exploited to load...
Last Update Date: 23 Jan 2013 11:45 Release Date: 23 Jan 2013 3887 Views

RISK: Medium Risk

Medium Risk

SonicWALL Products Two Security Bypass Vulnerabilities

Multiple vulnerabilities have been identified in various SonicWALL products, which can be exploited by malicious people to bypass certain security restrictions.An error when handling request for changing users password can be exploited to change the administrator's password.An error within the authentication mechanism in...
Last Update Date: 21 Jan 2013 15:24 Release Date: 21 Jan 2013 3863 Views

RISK: High Risk

High Risk

Foxit Reader Plugin For Browsers URL Processing Buffer Overflow Vulnerability

A vulnerability has been identified in Foxit Reader, which can be exploited by malicious people to compromise a user's system.   The vulnerability is caused due to a boundary error in the Foxit Reader plugin for browsers (npFoxitReaderPlugin.dll) when processing a URL and...
Last Update Date: 18 Jan 2013 Release Date: 9 Jan 2013 4442 Views

RISK: Medium Risk

Medium Risk

Cisco ASA 1000V Cloud Firewall H.323 Inspection Denial of Service Vulnerability

A vulnerability has been identified in Cisco ASA 1000V Cloud Firewall, which can be exploited by malicious people to cause a DoS (Denial of Service).  The vulnerability is caused due to an error when inspecting H.323 packets and can be exploited to trigger a reload...
Last Update Date: 18 Jan 2013 09:45 Release Date: 18 Jan 2013 4108 Views