弱點週報 - 2011/6/10

  • 935
  • 0

本週更新弱點
平台 數量
Novell 2
跨平台 15
Web 應用程式 - Cross Site Scripting 3
Web 應用程式 1
網路裝置 1
硬體 5

本週更新弱點

平台 數量
Novell 2
跨平台 15
Web 應用程式 - Cross Site Scripting 3
Web 應用程式 1
網路裝置 1
硬體 5

Novell

  1. Novell Data Synchronizer User Account Unspecified Unauthorized Access Vulnerability
  2. Novell iPrint Client Multiple Remote Code Execution Vulnerabilities

跨平台

  1. Erlang/OTP SSH Library Random Number Generator Weakness
  2. Wireshark Multiple Denial of Service Vulnerabilities
  3. Citadel XML Parsing Denial of Service
  4. Ejabberd XML Parsing Denial of Service
  5. HP LoadRunner Virtual User Script Files Remote Buffer Overflow Vulnerability
  6. Cisco AnyConnect Secure Mobility Client Two Vulnerabilities
  7. Subversion "mod_dav_svn" Multiple Denial of Service and Information Disclosure Vulnerabilities
  8. Asterisk "Contact" Header SIP Channel Driver Denial of Service Vulnerability
  9. VMware products "Mount.vmhgfs" Multiple Security Vulnerabilities
  10. Adobe Flash Player Cross-Site Scripting
  11. GeeNian OpenDrive Local Password Encryption Weakness
  12. LuaExpat SAX XML Parsing Denial of Service
  13. Prosody XML Parsing Denial of Service
  14. Google Chrome Multiple Security Vulnerabilities
  15. Oracle Java SE and Java for Business Multiple Remote Java Runtime Environment Vulnerabilities http://elite-technology.blogspot.com/2011/06/oracle-java.html

Web 應用程式 - Cross Site Scripting

  1. Nagios "expand" Parameter Cross-Site Scripting Vulnerability
  2. MultiModem iSMS Multiple Cross-Site Scripting Vulnerabilities
  3. vBulletin vBExperience "sortorder" Parameter Cross-Site Scripting Vulnerability

Web 應用程式

  1. WebSVN "path" Parameter Remote Command Injection Vulnerability

網路裝置

  1. NetGear WNDAP350 Wireless Access Point Multiple Information Disclosure Vulnerabilities

硬體

  1. Cisco CNS Network Registrar Default Credentials Authentication Bypass Vulnerability
  2. Cisco Media Experience Engine 5600 Default Credentials Authentication Bypass
  3. Cisco 7900 Series Unified IP Phone Multiple Vulnerabilities
  4. MODACOM URoad-5000 Security Bypass Vulnerability and Remote Command Execution Vulnerability
  5. IP Power 9258 TGI Scripts Unauthorized Access Vulnerability