Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

WordPress Multiple Vulnerabilities

Multiple vulnerabilities have been identified in WordPress. A remote authenticated user can obtain elevated privileges on the target application, conduct cross-site scripting and request forgery attacks, and determine the upload path. A remote user can conduct server-side request forgery (SSRF) ...
Last Update Date: 26 Jun 2013 10:56 Release Date: 26 Jun 2013 4167 Views

RISK: Medium Risk

Medium Risk

cURL Heap Overflow Vulnerability

A vulnerability has been identified in libcurl. A remote user can execute arbitrary code on the target system. A remote user can send specially crafted data to trigger a heap overflow in curl_easy_unescape() and execute arbitrary code on the target system. The code will run with...
Last Update Date: 25 Jun 2013 10:17 Release Date: 25 Jun 2013 4129 Views

RISK: Medium Risk

Medium Risk

Cisco TelePresence Systems Products Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Cisco TelePresence Systems products, which can be exploited by malicious people to compromise a vulnerable system or cause a DoS (Denial of Service).
Last Update Date: 21 Jun 2013 10:09 Release Date: 21 Jun 2013 4188 Views

RISK: Medium Risk

Medium Risk

VLC Media Player Unspecified Vulnerabilities

Multiple vulnerabilities have been identified in VLC Media Player. The vulnerabilities are caused due to unspecified errors. No further information is currently available.
Last Update Date: 21 Jun 2013 10:05 Release Date: 21 Jun 2013 4288 Views

RISK: Medium Risk

Medium Risk

IBM WebSphere Commerce Information Disclosure Vulnerability

A vulnerability has been identified in IBM WebSphere Commerce, which can be exploited by a remote user to obtain potentially sensitive information. A remote user with the ability to monitor network communications can conduct an oracle padding attack against the 'krypto' parameter to decrypt user data...
Last Update Date: 21 Jun 2013 10:01 Release Date: 21 Jun 2013 4234 Views

RISK: Medium Risk

Medium Risk

Symantec Endpoint Protection Manager Buffer Overflow Vulnerability

A vulnerability has been identified  in Symantec Endpoint Protection Manager. A remote user can execute arbitrary code on the target system.   A remote user can send specially crafted data to trigger a buffer overflow in 'Secars.dll' and execute arbitrary code on...
Last Update Date: 20 Jun 2013 19:04 Release Date: 20 Jun 2013 4090 Views

RISK: High Risk

High Risk

Cisco ASA CX TCP Traffic Denial of Service Vulnerability

A vulnerability processing TCP traffic has been identified on Cisco ASA CX, which could allow an unauthenticated, remote attacker to cause a reload of the affected device.   The vulnerability is due to invalid parsing of TCP packet data forwarded to Cisco ASA CX by the Cisco ASA...
Last Update Date: 20 Jun 2013 19:04 Release Date: 20 Jun 2013 4209 Views

RISK: Medium Risk

Medium Risk

Apple Mac OS X Java Vulnerability

Apple has issued an update for Java for Mac OS X. This fixes multiple vulnerabilities, which can be exploited by malicious, local users to disclose certain sensitive information, manipulate certain data, and gain escalated privileges and by malicious people to conduct spoofing...
Last Update Date: 20 Jun 2013 19:03 Release Date: 20 Jun 2013 4130 Views

RISK: Medium Risk

Medium Risk

Apache XML Security Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Apache XML Security, which can be exploited by malicious people to conduct spoofing attacks, cause a DoS (Denial of Service), and compromise an application using the library.An error when processing certain XPointer expressions within the XML Signature Reference...
Last Update Date: 19 Jun 2013 10:16 Release Date: 19 Jun 2013 4118 Views

RISK: High Risk

High Risk

Oracle Java Multiple Vulnerabilities

Multiple vulnerabilities were identified in Oracle Java. A remote user can cause arbitrary code to be executed on the target user's system. A local user can obtain elevated privileges on the target system. A remote or local user can cause denial of service conditions. ...
Last Update Date: 19 Jun 2013 10:08 Release Date: 19 Jun 2013 4384 Views