Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Microsoft Office Word Document Handling Code Execution Vulnerability

A vulnerability has been identified in Microsoft Office, which could be exploited by attackers to take complete control of an affected system. This issue is caused by a memory corruption error when handling malformed Word documents, which could be exploited by attackers to crash a vulnerable application...
Last Update Date: 28 Jan 2011 Release Date: 10 Jul 2008 7372 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Multiple DNS Spoofing Vulnerabilities( 09 July 2008 )

1. DNS Insufficient Socket Entropy VulnerabilityA spoofing vulnerability exists in Windows DNS client and Windows DNS server. This vulnerability could allow a remote unauthenticated attacker to quickly and reliably spoof responses and insert records into the DNS server or client cache, thereby redirecting Internet traffic.2...
Last Update Date: 28 Jan 2011 Release Date: 9 Jul 2008 7402 Views

RISK: Medium Risk

Medium Risk

Multiple DNS Implementations Cache Poisoning Vulnerabilities

Deficiencies in the DNS protocol and common DNS implementations facilitate DNS cache poisoning attacks. DNS cache poisoning (sometimes referred to as cache pollution) is an attack technique that allows an attacker to introduce forged DNS information into the cache of a caching nameserver. The general concept...
Last Update Date: 28 Jan 2011 Release Date: 9 Jul 2008 9448 Views

RISK: Medium Risk

Medium Risk

Microsoft SQL Server Multiple Vulnerabilities( 09 July 2008 )

1. Memory Page Reuse VulnerabilityAn information disclosure vulnerability exists in the way that SQL Server manages memory page reuse. An attacker with database operator access who successfully exploited this vulnerability could access customer data.2. Convert Buffer OverrunA vulnerability exists in the convert function in SQL...
Last Update Date: 28 Jan 2011 Release Date: 9 Jul 2008 7690 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Explorer Saved Search Vulnerability( 09 July 2008 )

A remote code execution vulnerability exists when saving a specially crafted search file within Windows Explorer. This operation causes Windows Explorer to exit and restart in an exploitable manner.
Last Update Date: 28 Jan 2011 Release Date: 9 Jul 2008 7379 Views

RISK: Medium Risk

Medium Risk

Microsoft Outlook Web Access for Exchange Server Multiple Cross-Site Scripting Vulnerabilities( 09 July 2008 )

1. Outlook Web Access for Exchange Server Data Validation Cross-Site Scripting VulnerabilityThis is a cross-site scripting vulnerability in the affected versions of Outlook Web Access (OWA) for Exchange Server. Exploitation of the vulnerability could lead to elevation of privilege on individual OWA...
Last Update Date: 28 Jan 2011 Release Date: 9 Jul 2008 7441 Views

RISK: Medium Risk

Medium Risk

Microsoft Access Snapshot Viewer ActiveX Control Vulnerability

A vulnerability has been identified in the Snapshot Viewer for Microsoft Access, which could be exploited by remote attackers to take complete control of an affected system. This issue is caused by a design error in the "snapview.ocx" ActiveX control that does not restrict...
Last Update Date: 28 Jan 2011 Release Date: 8 Jul 2008 7634 Views

RISK: Medium Risk

Medium Risk

Opera for Windows Unspecified Code Execution Vulnerability

A vulnerability has been reported in Opera, which can be exploited by malicious people to compromise a vulnerable system.The vulnerability is caused due to an unspecified error, which can be exploited to execute arbitrary code. No further information is currently available.The vulnerability is...
Last Update Date: 28 Jan 2011 Release Date: 3 Jul 2008 7673 Views

RISK: Medium Risk

Medium Risk

Mozilla Products Remote Code Execution Vulnerabilities

Multiple vulnerabilities have been identified in Mozilla Firefox, Thunderbird and SeaMonkey, which could be exploited by attackers to bypass security restrictions, disclose sensitive information, cause a denial of service or take complete control of an affected system.1. Due to memory corruption errors in...
Last Update Date: 28 Jan 2011 Release Date: 3 Jul 2008 7563 Views

RISK: Medium Risk

Medium Risk

Apple Mac OS X Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Apple Mac OS X, which could be exploited by remote or local attackers to cause a denial of service, disclose sensitive information, bypass security restrictions or compromise an affected system. These issues are caused by implementation, data validation, ...
Last Update Date: 28 Jan 2011 Release Date: 2 Jul 2008 7674 Views