Skip to main content

Security Bulletin

Filter by:

RISK: High Risk

High Risk

Mozilla Products Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Mozilla Firefox, Thunderbird and SeaMonkey, which could be exploited by attackers to manipulate or disclose certain data, bypass security restrictions or compromise a vulnerable system.Due to memory corruption errors in the browser engine when parsing malformed data, which...
Last Update Date: 3 Mar 2011 10:59 Release Date: 3 Mar 2011 5458 Views

RISK: High Risk

High Risk

Google Chrome Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Google Chrome, which could be exploited by remote attackers to spoof the address bar, disclose sensitive information, cause a denial of service or execute arbitrary code. These issues are caused by input validation errors, stale pointers, out-...
Last Update Date: 2 Mar 2011 09:34 Release Date: 2 Mar 2011 5419 Views

RISK: High Risk

High Risk

Cisco Secure Desktop CSDWebInstaller ActiveX Multiple Vulnerabilities

Two vulnerabilities have been identified in Cisco Secure Desktop, which could be exploited by remote attackers to compromise a vulnerable system. An error in the "CSDWebInstallerCtrl" ActiveX control (CSDWebInstaller.ocx) when handling a Cisco-signed executable file named "inst.exe...
Last Update Date: 1 Mar 2011 17:04 Release Date: 1 Mar 2011 5606 Views

RISK: High Risk

High Risk

Citrix Secure Gateway Unspecified Remote Code Execution Vulnerability

A vulnerability has been identified in Citrix Secure Gateway, which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused by an unspecified error which could result in arbitrary code being executed on the server in the context of the Secure Gateway process...
Last Update Date: 1 Mar 2011 16:47 Release Date: 1 Mar 2011 5553 Views

RISK: High Risk

High Risk

Foxit Reader and Phantom ICC Parsing Integer Overflow Vulnerability

 A vulnerability has been identified in Foxit Reader and Phantom, which could be exploited by attackers to compromise a vulnerable system. This issue is caused by an integer overflow error when parsing certain ICC chunks, which could be exploited by attackers to crash an affected application...
Last Update Date: 28 Feb 2011 11:11 Release Date: 28 Feb 2011 5469 Views

RISK: Medium Risk

Medium Risk

Cisco TelePresence Products Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Cisco TelePresence products, which could be exploited by attackers to bypass restrictions, gain knowledge of sensitive information or unauthorized access, upload arbitrary files, cause a denial of service or execute arbitrary code. These issues are caused by errors related...
Last Update Date: 25 Feb 2011 18:12 Release Date: 25 Feb 2011 5320 Views

RISK: High Risk

High Risk

CA Products HIPSEngine XMLSecDB ActiveX File Creation Vulnerability

A vulnerability has been identified in CA Host-Based Intrusion Prevention System (HIPS) and CA Internet Security Suite (ISS), which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused by a design error in the XMLSecDB ActiveX control...
Last Update Date: 25 Feb 2011 16:40 Release Date: 25 Feb 2011 5337 Views

RISK: High Risk

High Risk

Novell NetWare XNFS "xdrDecodeString()" Code Execution Vulnerability

A vulnerability has been identified in Novell NetWare, which could be exploited by remote attackers to take complete control of a vulnerable system. This issue is caused by an input validation error in the "xdrDecodeString()" function within the "XNFS.NLM" component when handling...
Last Update Date: 25 Feb 2011 16:38 Release Date: 25 Feb 2011 5346 Views

RISK: Medium Risk

Medium Risk

Novell ZENworks Configuration Management TFTP Remote Heap Overflow Vulnerability

A vulnerability has been identified in Novell ZENworks Configuration Management (ZCM), which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused by a heap overflow error in the "novell-tftp.exe" component when processing requests sent to...
Last Update Date: 25 Feb 2011 Release Date: 18 Feb 2011 5643 Views

RISK: Medium Risk

Medium Risk

Cisco Security Agent "st_upload" Remote File Creation Vulnerability

A vulnerability has been identified in Cisco Security Agent, which could be exploited by remote attackers to take complete control of a vulnerable system. This issue is caused by an input validation error in the "webagent.exe" component when processing "st_upload" POST requests...
Last Update Date: 25 Feb 2011 Release Date: 18 Feb 2011 5419 Views