Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Apache Web Server Multiple Vulnerabilities

Two vulnerabilities have been identified in Apache which allow a remote user to conduct cross-site scripting attacks or obtain potentially sensitive information.  A remote user can access the target user's cookies (including authentication cookies), if any, associated with the site running the...
Last Update Date: 22 Aug 2012 12:24 Release Date: 22 Aug 2012 7318 Views

RISK: Medium Risk

Medium Risk

Apple Remote Desktop Information Disclosure Vulnerability

A vulnerability has been identified in Apple Remote Desktop, which may disclose sensitive information to malicious people.  The security issue is caused due to data being transmitted unencrypted without producing a warning when connecting to a third-party VNC server with "Encrypt all network data" ...
Last Update Date: 22 Aug 2012 12:21 Release Date: 22 Aug 2012 7401 Views

RISK: High Risk

High Risk

IBM Lotus Domino HTTP Response Splitting and Cross-Site Scripting Vulnerabilities

Multiple vulnerabilities have been identified in IBM Lotus Domino, which can be exploited by malicious people to conduct HTTP response splitting and cross-site scripting attacks. Certain unspecified input is not properly sanitised before being returned to the user. This can be exploited to insert arbitrary...
Last Update Date: 21 Aug 2012 13:26 Release Date: 21 Aug 2012 7825 Views

RISK: Medium Risk

Medium Risk

McAfee Security for Microsoft SharePoint / Microsoft Exchange Outside In Vulnerabilities

Multiple vulnerabilities have been identified in McAfee Security for Microsoft SharePoint and McAfee Security for Microsoft Exchange, which can be exploited by malicious people to compromise a user's system. The vulnerabilities are caused due to the software bundling a vulnerable Outside In library. For more...
Last Update Date: 21 Aug 2012 10:09 Release Date: 21 Aug 2012 7343 Views

RISK: Medium Risk

Medium Risk

HP Serviceguard Denial of Service Vulnerability

A vulnerability had been identified in HP Serviceguard. A remote user can cause denial of service conditions.
Last Update Date: 20 Aug 2012 10:57 Release Date: 20 Aug 2012 7475 Views

RISK: Medium Risk

Medium Risk

PostgreSQL "xml_parse()" and "xslt_process()" Vulnerabilities

Two vulnerabilities have been identified in PostgreSQL, which can be exploited by malicious people to disclose certain sensitive information and compromise a user's system.An error within the "xml_parse()" function when parsing DTD data within XML documents can be exploited to read arbitrary files...
Last Update Date: 20 Aug 2012 10:56 Release Date: 20 Aug 2012 7622 Views

RISK: Medium Risk

Medium Risk

Wireshark Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Wireshark. A remote user can execute arbitrary code on the target system and cause denial of service conditions. A remote user can trigger a divide by zero error in the DCP ETSI dissector and the pcap-ng file parser. A...
Last Update Date: 16 Aug 2012 12:30 Release Date: 16 Aug 2012 6564 Views

RISK: Medium Risk

Medium Risk

Cisco IOS XR Software Route Processor Denial of Service Vulnerability

A vulnerability has been identified in Cisco IOS XR Software, which could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to improper processing of crafted packets by Cisco 9000 Series Aggregation Services Routers (...
Last Update Date: 16 Aug 2012 12:17 Release Date: 16 Aug 2012 7341 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Kernel-Mode Drivers Use After Free Vulnerability

An elevation of privilege vulnerability exists when the Windows kernel-mode driver improperly handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or...
Last Update Date: 15 Aug 2012 17:01 Release Date: 15 Aug 2012 7164 Views

RISK: High Risk

High Risk

Microsoft Office CGM File Format Memory Corruption Vulnerability

A remote code execution vulnerability exists in the way that Microsoft Office handles specially crafted Computer Graphics Metafile (CGM) graphics files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change...
Last Update Date: 15 Aug 2012 17:00 Release Date: 15 Aug 2012 7200 Views