SA37228 // 1 credit // Exploit and/or PoC code included
A vulnerability in RhinoSoft Serv-U when parsing session cookies supplied to the web interface can be exploited by malicious people to compromise a user's system.
A vulnerability in IBM Tivoli Storage Manager when handling requests to the CAD server can be exploited by malicious people to compromise a vulnerable system.
An integer overflow vulnerability in the Microsoft GDI+ subsystem when handling PNG images can be exploited by malicious people to compromise a user's system.
A vulnerability in Symantec Altiris ConsoleUtilities ActiveX Control bundled with various Symantec Altiris solutions can be exploited by malicious people to compromise a user's system.