Secunia - Stay Secure
Home Corporate Website Jobs Updated Mailing Lists RSS Blog  Online Shop Advertise
Software Inspectors
  Scan Online
  Personal (PSI)
  Network (NSI 2.0)

Solutions For
  Security Professionals
  Security Vendors

Free Solutions For
  Open Communities
  Journalists & Media

Secunia Advisories
  Search
  Historic Advisories
  Listed By Product
  Listed By Vendor
  Statistics / Graphs
  Secunia Research
  Report Vulnerability
  About Advisories

Virus Information
  Chronological List
  Last 10 Virus Alerts
  About Virus Information

Secunia Customers
  Customer Area


Secunia Highlights [About]



In Focus
Secunia NSI 2.0
Scan your network for vulnerabilities and missing security patches in third party applications.

Download your copy of the Secunia NSI 2.0:
NSISetup.exe / Learn more about Secunia NSI 2.0

Secunia PSI
The Secunia PSI reaches user number 500,000! Read our blog entry.


Latest Secunia Advisories [About]

29 August, 2008 - 17 advisories released, displaying 10
GpsDrive "geo-code" Insecure Temporary Files
Novell eDirectory Multiple Vulnerabilities
dotProject SQL Injection and Cross-Site Scripting
IBM WebSphere Application Server for z/OS HTTP Server mod_proxy_ftp Vulnerability
Red Hat update for libtiff
Red Hat update for libtiff
Sun Solaris Kernel Covert Channel Security Bypass
Slackware update for amarok
Blogn Cross-Site Scripting and Cross-Site Request Forgery
Caudium "configvar" Insecure Temporary Files

See all advisories...

 
Most Popular [About]

1. phpJobScheduler "installed_config_file" File Inclusion Vulnerabilities
2. phpMyRealty "price_max" SQL Injection Vulnerability
3. Novell eDirectory Multiple Vulnerabilities
4. Slackware update for amarok
5. HP TCP/IP Services for OpenVMS Finger Format String Vulnerability
6. Sun Solaris Kernel Covert Channel Security Bypass
7. OpenOffice "rtl_allocateMemory()" Truncation Vulnerability
8. dotProject SQL Injection and Cross-Site Scripting
9. GpsDrive "geo-code" Insecure Temporary Files
10. geo-* Insecure Temporary Files


Latest Virus Information [About]

Today - 9 Virus Descriptions released, displaying all.
FakeAV-CG - Reported by Sophos
Drop-AO - Reported by Sophos
Zlob-ANS - Reported by Sophos
FakeAV-CH - Reported by Sophos
FakeAV-Gen - Reported by Sophos
FakeAle-GL - Reported by Sophos
Dloadr-BRM - Reported by Sophos
FakeVir-FH - Reported by Sophos
FakeVir-FG - Reported by Sophos

29 August, 2008 - 28 Virus Descriptions released, displaying 6.
ExePage-A - Reported by Sophos
Very Low Risk. Grouped with 1 virus description:
Troj/ExePage-A [Sophos]
Mal/Envid-A - Reported by Sophos
Mal/DownLdr-AC - Reported by Sophos
Iframe-AR - Reported by Sophos
Rootkit-DK - Reported by Sophos
RKOSX-A - Reported by Sophos

More Virus Information...
 
Secunia News / Press Releases [About]

Secunia PSI - user number 500,000 reached
30 May, 2008 - The Secunia PSI reaches user number 500,000! Read our blog entry.

Secunia PSI - Release Candidate 2
22 May, 2008 - Secunia just release a new version of the Secunia PSI, Release Candidate 2, read more in the changelog.

Secunia NSI 2.0 Public Beta Test
11 April, 2008 - Public Beta of the 2nd generation Secunia NSI is now available for free testing. Instant Access.

Secunia PSI available in German
20 February, 2008 - A German version of the Secunia PSI has been released, therefore: Willkommen Deutschland!

A rough 24 hours for Windows users - 81.01% affected
7 February, 2008 - The last 24 hours have been rough for Windows users. Sun, Adobe, Apple, and Skype have issued security updates - all four vendors correcting security holes that could lead to system compromise.



Vulnerability Tests [About]

Try some of the Vulnerability Tests, to quickly see if your systems are affected and what steps you can perform to mitigate or eliminate the impact of these vulnerabilities.

Internet Explorer 7 Popup Address Bar Spoofing Test
A vulnerability in Internet Explorer, which can be exploited to spoof the address bar of a popup-window. The vulnerability has been confirmed on a fully patched system with Internet Explorer 7.0 running on Microsoft Windows XP SP2. Other versions may also be affected. Unpatched for 676 days.

Internet Explorer 7 navcancl.htm Cross-Site Scripting Vulnerability
Aviv Raff has discovered a vulnerability in Internet Explorer 7, which can be exploited by malicious people to conduct phishing attacks. The vulnerability is confirmed in Internet Explorer 7 on a fully patched Windows XP SP2 system. Other versions may also be affected. A vendor solution is available.

Apache "Expect" Header Cross-Site Scripting Vulnerability Test
A vulnerability has been discovered in Apache HTTP Server, which can be exploited by malicious people to conduct cross-site scripting attacks. A vendor solution is available.





Vulnerability Management - Terms & Conditions - Copyright 2002-2008 Secunia - Compliance - Contact Secunia