Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

IBM HTTP Server mod_rewrite Arbitrary Command Execution Vulnerability

IBM has acknowledged a vulnerability in IBM HTTP Server, which can be exploited by malicious people to compromise a vulnerable system.
Last Update Date: 14 Aug 2013 16:16 Release Date: 14 Aug 2013 6073 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Server AD FS Information Disclosure Vulnerability

An information disclosure vulnerability exists in Active Directory Federation Services (AD FS) that could allow the unintentional disclosure of account information.
Last Update Date: 14 Aug 2013 15:52 Release Date: 14 Aug 2013 6094 Views

RISK: High Risk

High Risk

Microsoft Windows ICMPv6 Vulnerability

A denial of service vulnerability exists in the Windows TCP/IP stack that could cause the target system to stop responding until restarted. The vulnerability is caused when the TCP/IP stack does not properly allocate memory for incoming ICMPv6 packets.
Last Update Date: 14 Aug 2013 15:51 Release Date: 14 Aug 2013 6210 Views

RISK: High Risk

High Risk

Microsoft Windows NAT Denial of Service Vulnerability

A denial of service vulnerability exists in the Windows NAT Driver that could cause the target system to stop responding until restarted.
Last Update Date: 14 Aug 2013 15:50 Release Date: 14 Aug 2013 6083 Views

RISK: High Risk

High Risk

ThinkVantage Access Connections Insecure Library Loading Vulnerability

A vulnerability has been discovered in ThinkVantage Access Connections, which can be exploited by malicious people to compromise a user's system.   The vulnerability is caused due to the application loading libraries (mfc71enu.dll and mfc71loc.dll) in an insecure manner. This...
Last Update Date: 14 Aug 2013 15:49 Release Date: 14 Aug 2013 6059 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows ASLR Security Feature Bypass Vulnerability

A security feature vulnerability exists in Windows due to improper implementation of Address Space Layout Randomization (ASLR). The vulnerability could allow an attacker to bypass the ASLR security feature, most likely during or in the course of exploiting a remote code execution vulnerability. The attacker could...
Last Update Date: 14 Aug 2013 15:48 Release Date: 14 Aug 2013 6287 Views

RISK: High Risk

High Risk

Microsoft Windows Remote Procedure Call Vulnerability

An elevation of privilege vulnerability exists in the way that Windows handles asynchronous RPC requests. An attacker who successfully exploited this vulnerability could execute arbitrary code and take complete control of an affected system. An attacker could then install programs; view, change, or delete data...
Last Update Date: 14 Aug 2013 15:46 Release Date: 14 Aug 2013 6168 Views

RISK: Medium Risk

Medium Risk

Microsoft Exchange Server Oracle Outside In Contains Multiple Exploitable Vulnerabilities

Two of the three vulnerabilities addressed in this bulletin, CVE-2013-2393 and CVE-2013-3776, exist in Exchange Server 2007, Exchange Server 2010, and Exchange Server 2013 through the WebReady Document Viewing feature. The vulnerabilities could allow remote code execution...
Last Update Date: 14 Aug 2013 15:44 Release Date: 14 Aug 2013 6139 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Uniscribe Font Parsing Engine Memory Corruption Vulnerability

A remote code execution vulnerability exists in the Unicode Scripts Processor included in affected versions of Microsoft Windows. An attacker who successfully exploited this vulnerability could run arbitrary code as the current user.
Last Update Date: 14 Aug 2013 15:42 Release Date: 14 Aug 2013 6099 Views

RISK: High Risk

High Risk

Microsoft Internet Explorer Cumulative Security Vulnerabilities

Internet Explorer Process Integrity Level Assignment VulnerabilityAn elevation of privilege vulnerability exists in the way that Internet Explorer handles process integrity level assignment in specific cases. An attacker who successfully exploited this vulnerability could allow arbitrary code to execute with elevated privileges.EUC-JP Character Encoding VulnerabilityAn...
Last Update Date: 14 Aug 2013 15:41 Release Date: 14 Aug 2013 6125 Views