|
 |
|
Secunia Highlights [About]
|
|
|
Novell GroupWise WebAccess Script Insertion
|
|

- Moderately critical - From remote
|
|
Issued 2 May, 2008.
|
|
Juan Pablo Lopez Yacubian has reported a vulnerability in Novell GroupWise, which can be exploited by malicious people to conduct script insertion attacks.
|
|
 |
|
|
|
 |
|
|
|
PHP Multiple Vulnerabilities
|
|

- Moderately critical - From remote
|
|
Issued 2 May, 2008. Updated 1 day ago.
|
|
Some vulnerabilities have been reported in PHP, where some have unknown impacts and others can be exploited by malicious users to bypass certain security restrictions, and potentially by malicious people to cause a DoS (Denial of Service) or to compromise a vulnerable system.
|
|
 |
|
The Secunia NSI 2 - available now!
Secunia has released the new version of the Secunia NSI.
We invite you to download your trial version today:
NSISetup.exe / Read more / Blog Entry
|
|
|
|
|
|
|
|
|
|
|
Secunia News / Press Releases [About]
|
|
Secunia NSI 2.0 Public Beta Test
11 April, 2008 - Public Beta of the 2nd generation Secunia NSI is now available for free testing. Instant Access.
Secunia PSI available in German
20 February, 2008 - A German version of the Secunia PSI has been released, therefore: Willkommen Deutschland!
A rough 24 hours for Windows users - 81.01% affected
7 February, 2008 - The last 24 hours have been rough for Windows users. Sun, Adobe, Apple, and Skype have issued security updates - all four vendors correcting security holes that could lead to system compromise.
New Adobe Reader Security Update
6 February, 2008 - 61% of all users must apply security update. Scan your network or your private computer today.
New Secunia PSI Version
5 February, 2008 - Secunia PSI version 0.9.0.1 has been released. Among the changes is a Danish version of the Secunia PSI. Therefore: Velkommen Danmark!
|
|
|
|
|
Vulnerability Tests [About]
|
|
|
Try some of the Vulnerability Tests, to quickly see if your systems are affected and what steps you can perform to mitigate or eliminate the impact of these vulnerabilities.
|
|
Internet Explorer 7 Popup Address Bar Spoofing Test
A vulnerability in Internet Explorer, which can be exploited to spoof the address bar of a popup-window. The vulnerability has been confirmed on a fully patched system with Internet Explorer 7.0 running on Microsoft Windows XP SP2. Other versions may also be affected. Unpatched for 563 days.
|
|
Internet Explorer 7 navcancl.htm Cross-Site Scripting Vulnerability
Aviv Raff has discovered a vulnerability in Internet Explorer 7, which can be exploited by malicious people to conduct phishing attacks. The vulnerability is confirmed in Internet Explorer 7 on a fully patched Windows XP SP2 system. Other versions may also be affected. A vendor solution is available.
|
|
Apache "Expect" Header Cross-Site Scripting Vulnerability Test
A vulnerability has been discovered in Apache HTTP Server, which can be exploited by malicious people to conduct cross-site scripting attacks. A vendor solution is available.
|
|
|
|
|
|
|