Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

PHP-CGI query string parameter vulnerability

A vulnerability has been identified in PHP, which can be exploited by remote users to disclose certain sensitive information or compromise a vulnerable system.   The vulnerability is caused due to an error when parsing certain QUERY_STRING parameters. This can be exploited to e.g. disclose...
Last Update Date: 4 Jun 2012 Release Date: 7 May 2012 5681 Views

RISK: High Risk

High Risk

VMware ESX/ESXi Server Multiple Vulnerabilities

Multiple vulnerabilities have been identified in VMware ESX/ESXi Server, which can be exploited by malicious, local users to disclose potentially sensitive and system information, bypass certain security restrictions, cause a DoS (Denial of Service), and gain escalated privileges, by malicious people...
Last Update Date: 4 Jun 2012 Release Date: 1 Feb 2012 4997 Views

RISK: Medium Risk

Medium Risk

HP Network Automation Unspecified Security Bypass Vulnerability

A vulnerability has been identified in HP Network Automation, which can be exploited by malicious people to bypass certain security restrictions.  The vulnerability is caused due to an unspecified error and can be exploited to gain unauthorised access.
Last Update Date: 4 Jun 2012 Release Date: 1 Feb 2012 4633 Views

RISK: Medium Risk

Medium Risk

IrfanView Formats PlugIn Multiple Buffer Overflow Vulnerability

Multiple vulnerabilities have been identified in IrfanView Formats PlugIn, which can be exploited by malicious people to compromise a user's system. Due to an error within the ECW plugin (NCSEcw.dll) when decompressing images and can be exploited to cause a heap-...
Last Update Date: 4 Jun 2012 Release Date: 1 Jun 2012 4367 Views

RISK: Medium Risk

Medium Risk

HP-UX Java Multiple Vulnerabilities

Multiple vulnerabilities have been identified in HP-UX Java, which can be exploited by malicious people to disclose potentially sensitive information, manipulate certain data, cause a DoS (Denial of Service), and compromise a vulnerable system.
Last Update Date: 4 Jun 2012 10:43 Release Date: 4 Jun 2012 4239 Views

RISK: Medium Risk

Medium Risk

Cisco IOS XR Packet Processing Flaw Vulnerability

A vulnerability has been identified in Cisco IOS XR. A remote user can cause denial of service conditions.   A remote user can send a specially crafted packet to the target device to cause the route processor to be unable to transmit route processor-based protocol packets to...
Last Update Date: 31 May 2012 15:29 Release Date: 31 May 2012 4082 Views

RISK: Medium Risk

Medium Risk

IBM Java 7 Multiple Vulnerabilities

Multiple vulnerabilities have been identified in IBM Java, which can be exploited by malicious users to disclose certain information and by malicious people to disclose potentially sensitive information, hijack a user's session, conduct DNS cache poisoning attacks, manipulate certain data, cause a DoS...
Last Update Date: 31 May 2012 15:29 Release Date: 31 May 2012 4027 Views

RISK: High Risk

High Risk

Google Chrome Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Google Chrome, where some have unknown impacts and others can be exploited by malicious people to compromise a user's system.An unspecified error exists in the v8 garbage collection, which may result in a crash.An out-...
Last Update Date: 25 May 2012 10:28 Release Date: 25 May 2012 4279 Views

RISK: Medium Risk

Medium Risk

Symantec Endpoint Protection Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Symantec Endpoint Protection, which can be exploited by a remote user to cause remote code execution, denial of service and elevation of privilege. A remote authenticated user can conduct network scans of the target Symantec Endpoint Protection Manager host to cause...
Last Update Date: 24 May 2012 11:05 Release Date: 24 May 2012 4221 Views

RISK: High Risk

High Risk

Novell iPrint Server `attributes-natural-language´ Buffer Overflow Vulnerability

A vulnerability has been identified in Novell Open Enterprise Server, which can be exploited by malicious people to compromise a vulnerable system. The vulnerability is caused due to an error when handling the "attributes-natural-language" attribute and can be exploited to cause...
Last Update Date: 22 May 2012 Release Date: 3 Feb 2012 4519 Views