Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Microsoft Office Buffer Overflow Vulnerability

A remote code execution vulnerability exists in the way that Microsoft Office parses specially crafted Office files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or...
Last Update Date: 13 Jun 2013 19:26 Release Date: 13 Jun 2013 4201 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows TCP/IP Integer Overflow Vulnerability

A denial of service vulnerability exists in the way that the Windows TCP/IP driver improperly handles packets during TCP connection. An attacker who successfully exploited this vulnerability could cause the target system to stop responding.
Last Update Date: 13 Jun 2013 19:26 Release Date: 13 Jun 2013 4347 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Kernel Information Disclosure Vulnerability

An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory. An attacker who successfully exploited this vulnerability could disclose information from kernel addresses.
Last Update Date: 13 Jun 2013 19:26 Release Date: 13 Jun 2013 4105 Views

RISK: High Risk

High Risk

Microsoft Internet Explorer Multiple Vulnerabilities

A remote code execution vulnerability exists when Internet Explorer improperly processes script while debugging a webpage. The vulnerability may corrupt memory in a way that could allow an attacker to execute arbitrary code in the context of the current user within Internet Explorer. An attacker could host a...
Last Update Date: 13 Jun 2013 19:26 Release Date: 13 Jun 2013 4103 Views

RISK: Medium Risk

Medium Risk

Wireshark Multiple Vulnerabilities

Multiple vulnerabilities have been reported in Wireshark, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. An error in the CAPWAP dissector (dissectors/packet-capwap.c) can be exploited to...
Last Update Date: 11 Jun 2013 10:12 Release Date: 11 Jun 2013 4099 Views

RISK: High Risk

High Risk

Cisco IOS XR SNMP Denial of Service Vulnerability

A vulnerability has been identified in Cisco IOS XR, which can be exploited by a remote user to cause denial of service conditions.  A remote user can send a large number of UDP packets to SNMP port 162 to trigger a memory leak in the SNMP process and...
Last Update Date: 10 Jun 2013 10:26 Release Date: 10 Jun 2013 4330 Views

RISK: Medium Risk

Medium Risk

PHP php_quot_print_encode() Buffer Overflow Vulnerability

A vulnerability has been identified in PHP, which can be exploited by malicious people to compromise a vulnerable system.  The vulnerability is caused due to an error within the "php_quot_print_encode()" function (ext/standard/quot_print.c) when parsing passed strings, which...
Last Update Date: 10 Jun 2013 10:25 Release Date: 10 Jun 2013 4273 Views

RISK: High Risk

High Risk

Parallels Plesk Panel Arbitrary PHP Code Execution Vulnerability

A vulnerability has been identified in Parallels Plesk Panel, which can be exploited by malicious people to compromise a vulnerable system.  The vulnerability is caused due to an unspecified error and can be exploited to execute arbitrary PHP code.   Successful exploitation requires a ScriptAlias for the php...
Last Update Date: 10 Jun 2013 Release Date: 7 Jun 2013 4375 Views

RISK: Medium Risk

Medium Risk

Symantec Web Gateway `l´ Cross-Site Scripting Vulnerability

A vulnerability has been identified in Symantec Web Gateway, which can be exploited by malicious people to conduct cross-site scripting attacks.   Input passed via the "l" parameter to spywall/timer.php is not properly sanitised before being returned to the user. ...
Last Update Date: 7 Jun 2013 Release Date: 8 May 2012 5379 Views

RISK: High Risk

High Risk

PHP com_print_typeinfo Remote Code Execution Vulnerability

A vulnerability has been identified in PHP, which can be exploited by malicious people to compromise a vulnerable system. It is due to the vulnerability in the com_print_typeinfo function. The php engine needs to execute the malicious code, which can include any shellcode like the the...
Last Update Date: 7 Jun 2013 Release Date: 22 May 2012 6463 Views