EEye Patch For The IE CreateTextRange() Vulnerability
Downloads The exploit pertains to an unpatched vulnerability that has been released on various public mailing lists.This issue affects any Windows operating system running Internet Explorer versions 5.01 SP4 through 6.0 SP1.
[March 29, 2006, 1:22]
VPN Flaw Puts Internal Networks At Risk
News A security advisory posted by German security firm Phion Information Technologies to Internet mailing lists and the company's Web site said that the vulnerability affects the point-to-point tunneling protocol (PPTP) commonly used in the VPN...
[September 27, 2002, 7:31]
Cisco Flaw Exploit Posted Online
News Security experts warned on Friday that code that could be used to attack and crash Cisco Systems routers has been posted to public mailing lists. The Cisco flaw could allow an attacker to stop traffic from flowing through vulnerable network hardware.
[July 21, 2003, 8:03]
Remote Tool Attacks Windows Servers
News The tool takes commands from an attacker through the IRC networks and can scan for and compromise computers vulnerable to the recently discovered flaw in Windows. By sending too much data to the DCOM interface, an attacker can cause the system to...
[August 4, 2003, 8:55]
Security Products May Miss Malicious Files
News By adding some data to a file, an attacker could trick virus scanners into letting a malicious executable file pass through, security researcher Andrey Bayora wrote in an advisory. Since then, the topic has been the subject of lively discussions on...
[November 1, 2005, 15:40]
Microsoft Patches Bofra
News The patch arrived more than a month after news of the vulnerability was first posted on public security mailing lists. The issue -- which Microsoft has said does not affect those who have upgraded to Windows XP Service Pack 2 -- could allow an...
[December 2, 2004, 7:15]
Hackers Pick At Firefox Holes
News In the past few days, at least two security researchers have posted messages to popular security mailing lists claiming they have found ways attackers could take advantage of the vulnerability. An attacker could host a Web site containing malicious...
[September 14, 2005, 7:25]
Experts: Microsoft's Security Push Lacks Oomph
News We always monitor mailing lists and so forth to see if the vulnerability is being used to harm customers," Lipner said, "but until then we believe it is best to wait. The bug could let an attacker send an HTML email, which in turn could steal...
[January 14, 2002, 9:48]
Mailman Flaw Gives Away Passwords
News A previously unknown vulnerability in Mailman, a popular open source program for managing mailing lists, has led to the theft of the password file for a well-known security discussion group. By specially crafting a Web address, an attacker can...
[February 11, 2005, 8:55]
Microsoft Patches 'critical' Holes
News Toulouse said the company learned of the flaw after it was posted to several security mailing lists last month. The most serious of the flaws is what is known as a buffer overrun vulnerability, which could allow an attacker to use an unchecked...
[July 10, 2003, 10:13]
Reporting Software Flaws Safely
News In response, some researchers have foregone notifying vendors altogether and started posting vulnerabilities to public mailing lists. If you're using a home router, be it a wireless router or a wired router, and you have not changed the default...
[June 8, 2007, 18:02]
Security Flaw In Key Microsoft Services
News In most cases here, we are dealing simply with a bug that is of a security class that would allow a user or attacker to gain higher privileges than what would be appropriate. It was a focussed mailing.
[August 21, 2002, 7:38]
Unpatched Bugs Bite Popular Browsers
News Security researchers published details on the bugs in Microsoft's Internet Explorer, Apple Computer's Safari and Mozilla's Firefox to security mailing lists over the weekend. An attacker could exploit the bug by crafting a malicious Web site...
[April 26, 2006, 9:05]
Researcher Discovers OpenSSH Flaw
News Information about the vulnerability has also been posted on security mailing lists such as BugTraq and Debian. It is possible for a remote attacker to send a specially crafted reply that triggers an overflow," according to the ISS security advisory.
[June 27, 2002, 9:24]
The Dangers Of Scripting Flaws In IE
News The attacker worked through a compromised developer's computer and successfully penetrated the bug tracking system, source code database, mailing lists, Web site, and security patch servers. This can allow an attacker to run script code in the...
[December 15, 2003, 17:00]
Debian Team Confirm Linux Flaw Allowed Attack
News The systems -- known as Master, Murphy, Gluck and Klecker -- had maintained the open-source project's bug tracking system, source code database, mailing lists, Web site and security patches. During several intrusions on 19 November, the flaw...
[December 2, 2003, 10:15]
Researcher Reveals Details Of OS X Security Flaw
News News of the vulnerabilities had started appearing on security mailing lists, prompting the flaw finder to post details of the weakness to the Web. An attacker would have to also create a Web site with special programming.
[May 19, 2004, 9:35]
Nine More Holes In IE
News The problems are related to object caching, where an attacker opens a window to one object and is then allowed to access a variety of unrelated objects as well All but one of these vulnerabilities is rated as critical by GreyMagic because they can...
[November 4, 2002, 11:04]

