Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Microsoft Challenge Handshake Authentication Protocol version 2 (MS-CHAP v2) Information Disclosure Vulnerability

Cryptographic weaknesses have been identified in the Microsoft Challenge Handshake Authentication Protocol version 2 (MS-CHAP v2) which could be exploited by attackers to obtain user credentials. Those credentials could then be re-used to authenticate the attacker to network resources, and the attacker...
Last Update Date: 22 Aug 2012 12:53 Release Date: 22 Aug 2012 4765 Views

RISK: Medium Risk

Medium Risk

Apache Web Server Multiple Vulnerabilities

Two vulnerabilities have been identified in Apache which allow a remote user to conduct cross-site scripting attacks or obtain potentially sensitive information.  A remote user can access the target user's cookies (including authentication cookies), if any, associated with the site running the...
Last Update Date: 22 Aug 2012 12:24 Release Date: 22 Aug 2012 4454 Views

RISK: Medium Risk

Medium Risk

Apple Remote Desktop Information Disclosure Vulnerability

A vulnerability has been identified in Apple Remote Desktop, which may disclose sensitive information to malicious people.  The security issue is caused due to data being transmitted unencrypted without producing a warning when connecting to a third-party VNC server with "Encrypt all network data" ...
Last Update Date: 22 Aug 2012 12:21 Release Date: 22 Aug 2012 4471 Views

RISK: High Risk

High Risk

IBM Lotus Domino HTTP Response Splitting and Cross-Site Scripting Vulnerabilities

Multiple vulnerabilities have been identified in IBM Lotus Domino, which can be exploited by malicious people to conduct HTTP response splitting and cross-site scripting attacks. Certain unspecified input is not properly sanitised before being returned to the user. This can be exploited to insert arbitrary...
Last Update Date: 21 Aug 2012 13:26 Release Date: 21 Aug 2012 4787 Views

RISK: Medium Risk

Medium Risk

McAfee Security for Microsoft SharePoint / Microsoft Exchange Outside In Vulnerabilities

Multiple vulnerabilities have been identified in McAfee Security for Microsoft SharePoint and McAfee Security for Microsoft Exchange, which can be exploited by malicious people to compromise a user's system. The vulnerabilities are caused due to the software bundling a vulnerable Outside In library. For more...
Last Update Date: 21 Aug 2012 10:09 Release Date: 21 Aug 2012 4447 Views

RISK: Medium Risk

Medium Risk

HP Serviceguard Denial of Service Vulnerability

A vulnerability had been identified in HP Serviceguard. A remote user can cause denial of service conditions.
Last Update Date: 20 Aug 2012 10:57 Release Date: 20 Aug 2012 4580 Views

RISK: Medium Risk

Medium Risk

PostgreSQL "xml_parse()" and "xslt_process()" Vulnerabilities

Two vulnerabilities have been identified in PostgreSQL, which can be exploited by malicious people to disclose certain sensitive information and compromise a user's system.An error within the "xml_parse()" function when parsing DTD data within XML documents can be exploited to read arbitrary files...
Last Update Date: 20 Aug 2012 10:56 Release Date: 20 Aug 2012 4657 Views

RISK: Medium Risk

Medium Risk

Wireshark Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Wireshark. A remote user can execute arbitrary code on the target system and cause denial of service conditions. A remote user can trigger a divide by zero error in the DCP ETSI dissector and the pcap-ng file parser. A...
Last Update Date: 16 Aug 2012 12:30 Release Date: 16 Aug 2012 3714 Views

RISK: Medium Risk

Medium Risk

Cisco IOS XR Software Route Processor Denial of Service Vulnerability

A vulnerability has been identified in Cisco IOS XR Software, which could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to improper processing of crafted packets by Cisco 9000 Series Aggregation Services Routers (...
Last Update Date: 16 Aug 2012 12:17 Release Date: 16 Aug 2012 4477 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Kernel-Mode Drivers Use After Free Vulnerability

An elevation of privilege vulnerability exists when the Windows kernel-mode driver improperly handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or...
Last Update Date: 15 Aug 2012 17:01 Release Date: 15 Aug 2012 4223 Views