Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

Oracle Solaris Multiple Vulnerabilities

Multiple vulnerabilities were identified in Solaris. A local user can obtain root privileges on the target system. A remote user can cause denial of service conditions. A local user can cause denial of service conditions. A remote user can send specially crafted data to cause denial...
Last Update Date: 18 Oct 2012 14:37 Release Date: 18 Oct 2012 5000 Views

RISK: Medium Risk

Medium Risk

Multi-vendor IP camera web interface authentication bypass Vulnerability

A vulnerability has been identified in web interface for IP cameras from several vendors including Foscam and Wansview, which can be exploited by malicious people to cause an authentication bypass. By visiting specific URLs, an attacker may be able to perform any function a normal user can...
Last Update Date: 16 Oct 2012 10:05 Release Date: 16 Oct 2012 5689 Views

RISK: High Risk

High Risk

Mozilla Firefox / Thunderbird / SeaMonkey Multiple Vulnerabilities

Multiple vulnerabilities have been reported in Mozilla Firefox, Thunderbird, and SeaMonkey, which can be exploited by malicious people to bypass certain security restrictions and compromise a user's system. The protected "location" object is accessible by other domain objects, which can be...
Last Update Date: 15 Oct 2012 11:27 Release Date: 15 Oct 2012 5356 Views

RISK: High Risk

High Risk

Google Chrome Two Vulnerabilities

Two vulnerabilities have been identified in Google Chrome, which can be exploited by malicious people to bypass certain security restrictions and compromise a user's system. A use-after-free error in Webkit's SVG (Scalable Vector Graphics) functionality can be exploited...
Last Update Date: 12 Oct 2012 11:39 Release Date: 12 Oct 2012 5374 Views

RISK: High Risk

High Risk

Mozilla Products Multiple Vulnerabilities

Multiple vulnerabilities reported in Mozilla Firefox, Seamonkey and Thunderbird. A remote user can cause arbitrary code to be executed on the target user's system, inject scripting code, and spoof portions of the page. A remote user can create specially crafted content that, ...
Last Update Date: 12 Oct 2012 Release Date: 11 Oct 2012 5052 Views

RISK: Medium Risk

Medium Risk

OpenVMS Secure Web Server Multiple Vulnerabilities

Multiple vulnerabilities have been identified with HP Secure Web Server (SWS) for OpenVMS. The vulnerabilities could be remotely exploited to create a Denial of Service (DoS), unauthorized access, or unauthorized disclosure of information.
Last Update Date: 11 Oct 2012 14:31 Release Date: 11 Oct 2012 4969 Views

RISK: Medium Risk

Medium Risk

Cisco ASA Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Cisco ASA. A remote user can execute arbitrary code on the target system, and cause denial of service conditions. A remote user can send specially crafted DHCP data via IPv4 to the DHCP server on the target device or through the...
Last Update Date: 11 Oct 2012 11:42 Release Date: 11 Oct 2012 5080 Views

RISK: Medium Risk

Medium Risk

Cisco Firewall Services Module Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Cisco Firewall Services Module. A remote user can execute arbitrary code on the target system, and cause denial of service conditions. A remote user can send specially crafted DCERPC data through the target device to trigger a stack overflow in the...
Last Update Date: 11 Oct 2012 11:40 Release Date: 11 Oct 2012 5102 Views

RISK: Medium Risk

Medium Risk

Cisco WebEx Player Buffer Overflow Vulnerability

Multiple vulnerabilities have been identified in Cisco WebEx Player. A remote user can cause arbitrary code to be executed on the target user's system. A remote user can create specially crafted WRF file that, when loaded by the target user, will trigger a buffer...
Last Update Date: 11 Oct 2012 10:49 Release Date: 11 Oct 2012 5142 Views

RISK: High Risk

High Risk

Microsoft SQL Server Reflected XSS Vulnerability

A reflected XSS vulnerability exists in SQL Server Report Manager that could allow an attacker to inject a client-side script into the user's instance of Internet Explorer. The script could spoof content, disclose information, or take any action that the user could take...
Last Update Date: 10 Oct 2012 15:45 Release Date: 10 Oct 2012 4736 Views