New Security Vulnerabilities 19th February 2007
The following new security tests were added to Telspace' database:
TOTAL THREATS IN THE DATABASE 13679
NEW THREATS RISK FACTOR SUMMARY
(*****) Urgent Risk 3
(**** ) Critical Risk 6
(*** ) High Risk 5
(** ) Medium Risk 1
(* ) Low Risk 0
NEW THREATS FAMILY SUMMARY
Gentoo Local Checks 4
Web Services 2
Windows 2
Unix 2
Debian Local Checks 2
Cross-Site Scripting 2
Remote Shell Access 1
(*****) Urgent Risk - Web Services
Advanced Poll Variable Overwriting Vulnerability
(*****) Urgent Risk - Windows
avast! Antivirus Server Edition LHA Archive Handling Buffer Overflow
Vulnerability
(*****) Urgent Risk - Remote Shell Access
WinProxy HTTP CONNECT Buffer Overflow Vulnerability
(**** ) Critical Risk - Web Services
ColdFusion Double-Encoded Null Byte Information Disclosure Vulnerability
(**** ) Critical Risk - Debian Local Checks
[DSA1259] DSA-1259-1 fetchmail
(**** ) Critical Risk - Debian Local Checks
[DSA1260] DSA-1260-1 imagemagick
(**** ) Critical Risk - Unix
Default password 'oracle' for account 'oracle'
(**** ) Critical Risk - Unix
Default password 'informix' for account 'informix'
(**** ) Critical Risk - Gentoo Local Checks
[GLSA-200702-02] ProFTPD: Local privilege escalation
(*** ) High Risk - Cross-Site Scripting
ColdFusion Error Processing Request Cross-Site Scripting Vulnerability
(*** ) High Risk - Gentoo Local Checks
[GLSA-200702-03] Snort: Denial of Service
(*** ) High Risk - Gentoo Local Checks
overflow
(*** ) High Risk - Gentoo Local Checks
[GLSA-200702-01] Samba: Multiple vulnerabilities
(*** ) High Risk - Cross-Site Scripting
ColdFusion Cross-Site Scripting Protection Bypass Vulnerability
(** ) Medium Risk - Windows
avast! Antivirus Server Edition Password Setting Vulnerability |