Vulnerabilities discovered by Secunia Research

Below shows a complete listing of current Secunia Research vulnerability papers.

2010

  Total Research Advisories: 114 Pending Disclosure: 22
[-]
2010-114N/A - RESERVED - Pending Disclosure
2010-113N/A - RESERVED - Pending Disclosure
2010-112N/A - RESERVED - Pending Disclosure
2010-111Pligg Two SQL Injection Vulnerabilities
2010-110Opera "Download" Dialog File Execution Security Issue
2010-109KDE Okular PDB Parsing RLE Decompression Buffer Overflow
2010-108phpBugTracker "bugid" SQL Injection Vulnerability
2010-107phpBugTracker "add_attachment()" Arbitrary File Upload
2010-106KubeBlog Twelve Cross-Site Scripting Vulnerabilities
2010-105KubeBlog "website" Script Insertion Vulnerability
2010-104Novell iPrint Client "call-back-url" Buffer Overflow Vulnerability
2010-103MantisBT "Add Category" Script Insertion Vulnerability
2010-102Mono libgdiplus Image Processing Three Integer Overflows
2010-101N/A - RESERVED - Pending Disclosure
2010-100Symantec Products wkssr.dll Integer Underflow Vulnerability
2010-99  Symantec Products rtfsr.dll RTF Parsing Signedness Error
2010-98  IBM Lotus Notes wkssr.dll Integer Underflow Vulnerability
2010-97  N/A - RESERVED - Pending Disclosure
2010-96  N/A - RESERVED - Pending Disclosure
2010-95  N/A - RESERVED - Pending Disclosure
2010-94  InterPhoto Gallery "file" Directory Traversal Vulnerability
2010-93  Website Baker Four Local File Inclusion Vulnerabilities
2010-92  Website Baker Two File Enumeration Vulnerabilities
2010-91  Website Baker Nine SQL Injection Vulnerabilities
2010-90  Website Baker Two Script Insertion Vulnerabilities
2010-89  Website Baker "username" Cross-Site Scripting Vulnerability
2010-88  Adobe Reader GIF Image Parsing Array-Indexing Vulnerability
2010-87  glpng PNG Processing Two Integer Overflow Vulnerabilities
2010-86  GIGABYTE Dldrv2 ActiveX Control Array Indexing Vulnerability
2010-85  GIGABYTE Dldrv2 ActiveX Control Unsafe Methods
2010-84  Joomla BookLibrary Component Four SQL Injection Vulnerabilities
2010-83  Joomla BookLibrary From Same Author Module "id" SQL Injection
2010-82  Joomla CKForms Component Arbitrary File Upload Vulnerability
2010-81  Joomla CKForms Component Two SQL Injection Vulnerabilities
2010-80  SWFTools Two Integer Overflow Vulnerabilities
2010-79  TaskFreak "password" SQL Injection Vulnerability
2010-78  TaskFreak "tznMessage" Cross-Site Scripting Vulnerability
2010-77  Microsoft - RESERVED - Pending Disclosure
2010-76  Microsoft - RESERVED - Pending Disclosure
2010-75  Ziproxy Two Integer Overflow Vulnerabilities
2010-74  Adobe Reader JPEG Uninitialised Memory Vulnerability
2010-73  Orbit Downloader metalink "name" Directory Traversal
2010-72  N/A - RESERVED - Pending Disclosure
2010-71  aria2 metalink "name" Directory Traversal Vulnerability
2010-70  KDE KGet Insecure File Operation Vulnerability
2010-69  KDE KGet metalink "name" Directory Traversal Vulnerability
2010-68  Free Download Manager Four Buffer Overflow Vulnerabilities
2010-67  Free Download Manager metalink "name" Directory Traversal
2010-66  Windows Movie Maker String Parsing Buffer Overflow
2010-65  Microsoft - RESERVED - Pending Disclosure
2010-64  Microsoft - RESERVED - Pending Disclosure
2010-63  Microsoft - RESERVED - Pending Disclosure
2010-62  Internet Download Manager FTP Buffer Overflow Vulnerability
2010-61  Microsoft - RESERVED - Pending Disclosure
2010-60  N/A - RESERVED - Pending Disclosure
2010-59  TomatoCMS Script Insertion Vulnerabilities
2010-58  TomatoCMS Eight Cross-Site Scripting Vulnerabilities
2010-57  TomatoCMS Arbitrary File Upload Vulnerability
2010-56  TomatoCMS "q" SQL Injection Vulnerability
2010-55  Microsoft - RESERVED - Pending Disclosure
2010-54  imlib2 "IMAGE_DIMENSIONS_OK()" Logic Error
2010-53  Microsoft - RESERVED - Pending Disclosure
2010-52  Creative Software AutoUpdate Engine 2 ActiveX Control Buffer Overflow
2010-51  Pulse CMS Arbitrary File Writing Vulnerability
2010-50  Adobe Shockwave Player Font Processing Buffer Overflow
2010-49  Autonomy KeyView wkssr.dll Integer Underflow Vulnerability
2010-48  Pulse CMS Arbitrary File Deletion Vulnerability
2010-47  Pulse CMS Arbitrary File Upload Vulnerability
2010-46  Pulse CMS Cross-Site Request Forgery
2010-45  Pulse CMS login.php Arbitrary File Writing Vulnerability
2010-44  e107 Avatar/Photograph Image File Upload Vulnerability
2010-43  e107 Content Management Plugin Script Insertion Vulnerability
2010-42  IrfanView PSD RLE Decompression Buffer Overflow
2010-41  IrfanView PSD Image Parsing Sign-Extension Vulnerability
2010-40  Quicksilver Forums Cross-Site Request Forgery Vulnerability
2010-39  Quicksilver Forums Backup Information Disclosure
2010-38  Quicksilver Forums "mysqldump" Password Disclosure
2010-37  Symantec Products wkssr.dll String Indexing Vulnerability
2010-36  IBM Lotus Notes wkssr.dll String Indexing Vulnerability
2010-35  Autonomy KeyView wkssr.dll String Indexing Vulnerability
2010-34  Adobe Shockwave Player Asset Entry Parsing Vulnerability
2010-33  Symantec Products wosr.dll Data Block Parsing Buffer Overflow
2010-32  IBM Lotus Notes wosr.dll Data Block Parsing Buffer Overflow
2010-31  Autonomy KeyView wosr.dll Data Block Parsing Buffer Overflow
2010-30  IBM Lotus Notes wkssr.dll Record Parsing Buffer Overflows
2010-29  Symantec Products wkssr.dll Record Parsing Buffer Overflows
2010-28  Autonomy KeyView wkssr.dll Record Parsing Buffer Overflows
2010-27  Autonomy KeyView rtfsr.dll RTF Parsing Signedness Error
2010-26  ViewVC Regular Expression Search Cross-Site Scripting
2010-25  Symantec Products wkssr.dll Floating Point Conversion Buffer Overflow
2010-24  IBM Lotus Notes wkssr.dll Floating Point Conversion Buffer Overflow
2010-23  Autonomy KeyView wkssr.dll Floating Point Conversion Buffer Overflow
2010-22  Adobe Shockwave Player Integer Overflow Vulnerability
2010-21  Symantec Products Compound File Parsing Buffer Overflow
2010-20  Adobe Shockwave Player Array Indexing Vulnerability
2010-19  Adobe Shockwave Player Signedness Error Vulnerability
2010-18  IBM Lotus Notes Compound File Parsing Buffer Overflow
2010-17  Adobe Shockwave Player 3D Parsing Memory Corruption
2010-16  Autonomy KeyView Compound File Parsing Buffer Overflow
2010-15  RealNetworks - RESERVED - Pending Disclosure
2010-14  RealNetworks - RESERVED - Pending Disclosure
2010-13  RealNetworks - RESERVED - Pending Disclosure
2010-12  Employee Timeclock Software "mysqldump" Password Disclosure
2010-11  Employee Timeclock Software SQL Injection Vulnerabilities
2010-10  Employee Timeclock Software Backup Information Disclosure
2010-9    RealNetworks - RESERVED - Pending Disclosure
2010-8    RealPlayer QCP Audio Content Parsing Buffer Overflow
2010-7    Bournal ccrypt Information Disclosure Security Issue
2010-6    Bournal Insecure Temporary Files Security Issue
2010-5    RealPlayer YUV420 Transformation Processing Vulnerability
2010-4    Microsoft - RESERVED - Pending Disclosure
2010-3    RealPlayer QCP Parsing Integer Overflow Vulnerability
2010-2    Visualization Library DAT File Parsing Vulnerabilities
2010-1    Adobe Shockwave Player Integer Overflow Vulnerability

2009

  Total Research Advisories: 65 Pending Disclosure: 7
[+]
2009-65  Google Chrome Pop-Up Block Menu Handling Vulnerability
2009-64  PDF-XChange Viewer Content Parsing Memory Corruption Vulnerability
2009-63  Adobe Shockwave Player Four Integer Overflow Vulnerabilities
2009-62  Adobe Shockwave Player 3D Model Two Integer Overflows
2009-61  Adobe Shockwave Player 3D Model Buffer Overflow
2009-60  XnView DICOM Parsing Integer Overflow Vulnerability
2009-59  Microsoft Excel String Parsing Uninitialised Variable Vulnerability
2009-58  Adobe Illustrator Encapsulated Postscript Parsing Vulnerability
2009-57  Winamp Oktalyzer Parsing Integer Overflow Vulnerability
2009-56  Winamp Ultratracker File Parsing Buffer Overflow
2009-55  libmikmod Module Parsing Vulnerabilities
2009-54  Microsoft Excel Record Parsing Input Validation Vulnerability
2009-53  Winamp Impulse Tracker Sample Parsing Buffer Overflow
2009-52  Winamp Impulse Tracker Instrument Parsing Buffer Overflows
2009-51  DevIL DICOM "GetUID()" Buffer Overflow Vulnerability
2009-50  Sun Java JDK/JRE Soundbank Resource Parsing Buffer Overflow
2009-49  Sun Java JDK/JRE Soundbank Resource Name Buffer Overflow
2009-48  HP Power Manager "formExportDataLogs" Directory Traversal
2009-47  HP Power Manager "formExportDataLogs" Buffer Overflow
2009-46  RhinoSoft Serv-U TEA Decoding Buffer Overflow
2009-45  Mozilla Firefox Memory Corruption Vulnerability
2009-44  Novell iPrint Client Date/Time Parsing Buffer Overflow
2009-43  Gimp PSD Image Parsing Integer Overflow Vulnerability
2009-42  Gimp BMP Image Parsing Integer Overflow Vulnerability
2009-41  Lateral Arts Photobox uploader ActiveX Control Buffer Overflow
2009-40  Novell iPrint Client "target-frame" Parameter Buffer Overflow
2009-39  Microsoft - RESERVED - Pending Disclosure
2009-38  Roxio Creator Image Rendering Integer Overflow Vulnerability
2009-37  VMWare VMnc Codec HexTile Encoding Two Integer Truncation Vulnerabilities
2009-36  VMWare VMnc Codec HexTile Encoding Buffer Overflow
2009-35  Mozilla Firefox Floating Point Memory Allocation Vulnerability
2009-34  Microsoft - RESERVED - Pending Disclosure
2009-33  Microsoft - RESERVED - Pending Disclosure
2009-32  Microsoft - RESERVED - Pending Disclosure
2009-31  Microsoft - RESERVED - Pending Disclosure
2009-30  Microsoft - RESERVED - Pending Disclosure
2009-29  Microsoft PowerPoint Freelance Layout Parsing Vulnerability
2009-28  Microsoft PowerPoint File Path Handling Buffer Overflow
2009-27  OpenOffice.org Word Document Table Parsing Buffer Overflow
2009-26  OpenOffice.org Word Document Table Parsing Integer Underflow
2009-25  VMWare VMnc Codec Mismatched Dimensions Buffer Overflow
2009-24  Adobe Reader JBIG2 Text Region Segment Buffer Overflow
2009-23  Oracle BEA WebLogic Server Plug-ins Certificate Buffer Overflow
2009-22  Oracle BEA WebLogic Server Plug-ins Integer Overflow
2009-21  Ghostscript jbig2dec JBIG2 Processing Buffer Overflow
2009-20  IrfanView Formats Plug-in XPM Parsing Integer Overflow
2009-19  Mozilla Firefox Java Applet Loading Vulnerability
2009-18  CUPS pdftops JBIG2 Symbol Dictionary Buffer Overflow
2009-17  Xpdf JBIG2 Symbol Dictionary Buffer Overflow Vulnerability
2009-16  Garmin Communicator Plug-In Domain Locking Security Bypass
2009-15  Microsoft - RESERVED - Pending Disclosure
2009-14  Adobe Reader JBIG2 Symbol Dictionary Buffer Overflow
2009-13  Novell eDirectory iMonitor "Accept-Language" Buffer Overflow
2009-12  Microsoft Excel String Parsing Integer Overflow Vulnerability
2009-11  Foxit Reader JBIG2 Symbol Dictionary Processing Vulnerability
2009-10  QuickTime Sorenson Video 3 Content Parsing Vulnerability
2009-9    Orbit Downloader Long URL Parsing Buffer Overflow
2009-8    Winamp CAF Processing Integer Overflow Vulnerability
2009-7    libsndfile CAF Processing Integer Overflow Vulnerability
2009-6    Apple QuickTime MS ADPCM Encoding Buffer Overflow
2009-5    Free Download Manager Torrent Parsing Buffer Overflows
2009-4    OpenX Multiple Vulnerabilities
2009-3    Free Download Manager Remote Control Server Buffer Overflow
2009-2    AproxEngine Multiple Vulnerabilities
2009-1    Microsoft Excel Record Parsing Array Indexing Vulnerability

2008

  Total Research Advisories: 63 Pending Disclosure: 0
[+]
2008-63  ksquirrel-libs Radiance RGBE Buffer Overflows
2008-62  Duplicate Entry
2008-62  SHOUTcast DNAS Relay Server Buffer Overflow
2008-61  EasyHDR Pro Radiance RGBE Buffer Overflow
2008-60  OpenSG Radiance RGBE Buffer Overflow Vulnerability
2008-59  DevIL "iGetHdrHeader()" Buffer Overflow Vulnerabilities
2008-58  AXIS Camera Control "image_pan_tilt" Property Buffer Overflow
2008-57  DivX Web Player Stream Format Chunk Buffer Overflow
2008-56  SAP GUI KWEdit ActiveX Control "SaveDocumentAs()" Insecure Method
2008-55  IBM Tivoli Storage Manager Remote Agent Service Buffer Overflows
2008-54  TSC2 Help Desk CTab ActiveX Control Buffer Overflow
2008-53  SAP GUI TabOne ActiveX Control Caption List Buffer Overflow
2008-52  ComponentOne SizerOne ActiveX Control Buffer Overflow
2008-51  IBM Tivoli Storage Manager Client CAD Service Buffer Overflow
2008-50  Streamripper Multiple Buffer Overflows
2008-49  UltraISO Image Parsing Buffer Overflow Vulnerabilities
2008-48  UltraISO Image Name Parsing Format String Vulnerabilities
2008-47  Sun Solaris "sadmind" Integer Overflow Vulnerability
2008-46  Microsoft PowerPoint Atom Parsing Buffer Overflows
2008-45  Sun Solaris "sadmind" Buffer Overflow Vulnerability
2008-44  Interact SQL Injection and Cross-Site Request Forgery
2008-43  Trend Micro NSC Firewall Configuration Vulnerability
2008-42  Trend Micro Network Security Component Vulnerabilities
2008-41  GNU Enscript "setfilename" Special Escape Buffer Overflow
2008-40  Trend Micro OfficeScan CGI Parsing Buffer Overflows
2008-39  Trend Micro OfficeScan Directory Traversal Vulnerability
2008-38  HP OpenView Network Node Manager "ovalarmsrv" Integer Overflow
2008-37  Microsoft Office BMP Image Colour Handling Integer Overflow
2008-36  Microsoft Excel NAME Record Array Indexing Vulnerability
2008-35  Trend Micro OfficeScan "cgiRecvFile.exe" Buffer Overflow
2008-34  Trend Micro HouseCall "notifyOnLoadNative()" Vulnerability
2008-33  Novell iPrint Client nipplib.dll "IppCreateServerRef()" Buffer Overflow
2008-32  Trend Micro HouseCall ActiveX Control Arbitrary Code Execution
2008-31  Trend Micro Products Web Management Authentication Bypass
2008-30  Novell iPrint Client ActiveX Control "GetFileList()" Information Disclosure
2008-29  VLC Media Player WAV Processing Integer Overflow
2008-28  Calendarix Basic Two SQL Injection Vulnerabilities
2008-27  Novell iPrint Client ActiveX Control Multiple Buffer Overflows
2008-26  Motion "read_client()" HTTP Request Buffer Overflow
2008-25  imlib2 PNM and XPM Buffer Overflows
2008-24  XnView, NConvert, and GFL SDK Sun TAAC Buffer Overflow
2008-23  Evolution iCalendar "DESCRIPTION" Property Buffer Overflow
2008-22  Evolution iCalendar Timezone Buffer Overflow
2008-21  Microsoft Word RTF Polyline/Polygon Integer Overflow
2008-20  Samba "receive_smb_raw()" Buffer Overflow Vulnerability
2008-19  Akamai Red Swoosh Cross-Site Request Forgery
2008-18  Foxit Reader "util.printf()" Buffer Overflow
2008-17  Danske Bank e-Sec Control Module Error Logging Buffer Overflow
2008-16  Blender "imb_loadhdr()" Buffer Overflow Vulnerability
2008-15  TorrentTrader Multiple SQL Injection Vulnerabilities
2008-14  Adobe Acrobat/Reader "util.printf()" Buffer Overflow
2008-13  HP OpenView Network Node Manager Multiple Vulnerabilities
2008-12  Lotus Notes kvdocve.dll Path Processing Buffer Overflow
2008-11  ClamAV Upack Processing Buffer Overflow Vulnerability
2008-10  xine-lib "sdpplin_parse()" Array Indexing Vulnerability
2008-9    Apple QuickTime PICT Image Parsing Buffer Overflow
2008-8    Evolution Encrypted Message Format String Vulnerability
2008-7    uTorrent / BitTorrent Web UI HTTP "Range" Header DoS
2008-6    XnView Slideshow "FontName" Buffer Overflow Vulnerability
2008-5    Orb Networks Orb Variant Array Parsing Buffer Overflow
2008-4    HP OpenView Network Node Manager OpenView5.exe Directory Traversal
2008-3    Lotus Notes htmsr.dll Buffer Overflows
2008-2    Winamp Ultravox Streaming Metadata Parsing Buffer Overflows
2008-1    XnView, NConvert, and GFL SDK Radiance RGBE Buffer Overflow

2007

  Total Research Advisories: 104 Pending Disclosure: 0
[+]
2007-107Lotus Notes Folio Flat File Parsing Buffer Overflows
2007-106activePDF DocConverter Folio Flat File Parsing Buffer Overflows
2007-105Symantec Mail Security Folio Flat File Parsing Buffer Overflows
2007-104Autonomy Keyview Folio Flat File Parsing Buffer Overflows
2007-103Adobe Flash Player "Declare Function (V7)" Heap Overflow
2007-102IMP Mail Deletion Security Bypass Vulnerability
2007-101Symantec Backup Exec Calendar Control Multiple Vulnerabilities
2007-100Internet Explorer Data Stream Handling Vulnerability
2007-99  Samba "send_mailslot()" Buffer Overflow Vulnerability
2007-98  Symantec Mail Security Applix Graphics Parsing Vulnerabilities
2007-97  activePDF DocConverter Applix Graphics Parsing Vulnerabilities
2007-96  Lotus Notes Applix Graphics Parsing Vulnerabilities
2007-95  Autonomy Keyview Applix Graphics Parsing Vulnerabilities
2007-94  Layton HelpBox Multiple Vulnerabilities
2007-93  RealPlayer SWF Frame Handling Buffer Overflow
2007-92  Lotus Notes EML Reader Buffer Overflows
2007-91  Autonomy Keyview EML Reader Buffer Overflows
2007-90  Samba "reply_netbios_packet()" Buffer Overflow Vulnerability
2007-89  Miranda "ext_yahoo_contact_added()" Format String Vulnerability
2007-88  Xpdf "Stream.cc" Multiple Vulnerabilities
2007-87  activePDF Server Packet Handling Buffer Overflow
2007-86  Duplicate Entry
2007-85  Duplicate Entry
2007-84  HP SiteScope SNMP Trap Script Insertion Vulnerability
2007-83  HP OpenView Products Shared Trace Service Denial of Service
2007-82  CA ARCserve Backup RPC "handle_t" Argument Vulnerability
2007-81  IPSwitch IMail Server IMail Client Buffer Overflow
2007-80  Adobe PageMaker PMD File Processing Buffer Overflows
2007-79  AbiWord Link Grammar "separate_sentence()" Buffer Overflow
2007-78  Link Grammar "separate_sentence()" Buffer Overflow
2007-77  Microsoft Windows Flash Player Movie Unloading Vulnerability
2007-76  CUPS IPP Tags Memory Corruption Vulnerability
2007-75  IBM Tivoli Storage Manager Client CAD Service Script Insertion
2007-74  Symantec Backup Exec Job Engine Denial of Service
2007-73  ACDSee Products Image and Archive Plug-ins Buffer Overflows
2007-72  Microsoft Hierarchical FlexGrid Control Integer Overflows
2007-71  IrfanView Palette File Importing Buffer Overflow Vulnerability
2007-70  Sylpheed / Sylpheed-Claws POP3 Format String Vulnerability
2007-69  McAfee E-Business Server Auth Packet Handling Buffer Overflow
2007-68  Qtpfsgui "readRadianceHeader()" Buffer Overflow Vulnerability
2007-67  pfstools "readRadianceHeader()" Buffer Overflow Vulnerability
2007-66  Vim "helptags" Command Format String Vulnerability
2007-65  Microsoft Excel rtWnDesk Record Memory Corruption Vulnerability
2007-64  Blue Coat K9 Web Protection Response Handling Buffer Overflows
2007-63  Gimp PSD Plugin Integer Overflow Vulnerability
2007-62  CA BrightStor ARCserve Backup RPC Argument Parsing Vulnerabilities
2007-61  Blue Coat K9 Web Protection "Referer" Header Buffer Overflow
2007-60  Numara Asset Manager Insecure File Permissions
2007-59  Symantec Discovery Insecure File Permissions
2007-58  Centennial Discovery Insecure File Permissions
2007-57  Novell Client NWSPOOL.DLL Buffer Overflow Vulnerabilities
2007-56  KVIrc irc:// URI Handler Command Execution Vulnerability
2007-55  MPlayer CDDB Parsing Buffer Overflow
2007-54  eScan Products Agent Service Command Decryption Buffer Overflow
2007-53  Symantec Products NavComUI ActiveX Control Code Execution
2007-52  Apple QuickTime Java Extension Code Execution
2007-51  VCDGear Cue File Parsing Buffer Overflow Vulnerabilities
2007-50  BearShare NCTAudioFile2 ActiveX Control Buffer Overflow
2007-49  CA BrightStor ARCserve Backup RPC String Buffer Overflow
2007-48  Symantec Mail Security for SMTP Boundary Errors
2007-47  XMMS Integer Overflow and Underflow Vulnerabilities
2007-46  CinePlayer SonicDVDDashVRNav.dll Buffer Overflow Vulnerability
2007-45  eScan Products Agent Service Missing User Authentication
2007-44  Evolution Shared Memo Categories Format String Vulnerability
2007-43  Numara Asset Manager XferWan.exe Packet Parsing Buffer Overflows
2007-42  Symantec Discovery XferWan.exe Packet Parsing Buffer Overflows
2007-41  Centennial Discovery XferWan.exe Packet Parsing Buffer Overflows
2007-40  kmz_ImportWithMesh.py Script for Blender Command Injection
2007-39  Blender KML/KMZ Import Command Injection Vulnerability
2007-38  MailEnable Web Mail Client Multiple Vulnerabilities
2007-37  InterActual Player / CinePlayer IASystemInfo.dll ActiveX Control Buffer Overflow
2007-36  Internet Explorer HTML Objects Memory Corruption Vulnerability
2007-35  Duplicate Entry
2007-34  Cool Audio Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-33  Altdo Software Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-32  NextLevel Systems Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-31  Internet Explorer File Download Handling Memory Corruption
2007-30  MP3 WAV Converter NCTAudioFile2 ActiveX Control Buffer Overflow
2007-29  McFunSoft Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-28  RecordNRip NCTAudioFile2 ActiveX Control Buffer Overflow
2007-27  Easy Ringtone Maker NCTAudioFile2 ActiveX Control Buffer Overflow
2007-26  Absolute Software Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-25  Xrlly Software NCTAudioFile2 ActiveX Control Buffer Overflow
2007-24  DanDans Digital Media Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-23  Power Audio Editor NCTAudioFile2 ActiveX Control Buffer Overflow
2007-22  Mystik Media Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-21  Cheetah CD/DVD Burner NCTAudioFile2 ActiveX Control Buffer Overflow
2007-20  Virtual CD Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-19  Joshua Software Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-18  Audio Edit Magic NCTAudioFile2 ActiveX Control Buffer Overflow
2007-17  Roemer Software Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-16  MP3 Normalizer NCTAudioFile2 ActiveX Control Buffer Overflow
2007-15  Sienzo Digital Music Mentor NCTAudioFile2 ActiveX Control Buffer Overflow
2007-14  SoftDiv Software Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-13  Movavi Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-12  Code-it Software Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-11  CDBurnerXP Pro NCTAudioFile2 ActiveX Control Buffer Overflow
2007-10  RMBSoft Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-9    Quikscribe Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-8    iMesh NCTAudioFile2 ActiveX Control Buffer Overflow
2007-7    EXPStudio Audio Editor NCTAudioFile2 ActiveX Control Buffer Overflow
2007-6    J. Hepple Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-5    DB Audio Mixer And Editor NCTAudioFile2 ActiveX Control Buffer Overflow
2007-4    Aurora Media Workshop NCTAudioFile2 ActiveX Control Buffer Overflow
2007-3    Magic Video Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-2    NCTsoft Products NCTAudioFile2 ActiveX Control Buffer Overflow
2007-1    Internet Explorer 7 "onunload" Event Spoofing Vulnerability

2006

  Total Research Advisories: 76 Pending Disclosure: 0
[+]
2006-76  The Address Book Multiple Vulnerabilities
2006-75  MailEnable POP Service "PASS" Command Buffer Overflow
2006-74  Microsoft Agent URL Parsing Memory Corruption Vulnerability
2006-73  MailEnable IMAP Service Buffer Overflow Vulnerability
2006-72  PentaZip Archive Handling Vulnerabilities
2006-71  MailEnable IMAP Service Two Vulnerabilities
2006-70  Borland Products idsql32.dll Buffer Overflow Vulnerability
2006-69  AOL CDDBControl ActiveX Control "SetClientInfo()" Buffer Overflow
2006-68  PassGo SSO Plus Insecure Default Directory Permissions
2006-67  MDaemon Insecure Default Directory Permissions
2006-66  Safari JavaScript Read Access to Protected Variable
2006-65  Joomla BSQ Sitestats Script Insertion and SQL Injection
2006-64  Panda ActiveScan Multiple Vulnerabilities
2006-63  Joomla BSQ Sitestats Component Multiple Vulnerabilities
2006-62  Tagger LE PHP "eval()" Injection Vulnerabilities
2006-61  CJ Tag Board PHP Code Injection Vulnerabilities
2006-60  3Com OfficeConnect Secure Router Cross-Site Scripting
2006-59  My Firewall Plus Privilege Escalation Vulnerability
2006-58  Internet Explorer Script Error Handling Memory Corruption
2006-57  Jetbox Multiple Vulnerabilities
2006-56  AutoVue SolidModel Professional Buffer Overflow Vulnerability
2006-55  FileCOPA Directory Argument Handling Buffer Overflow
2006-54  Microsoft Windows Object Packager Dialog Spoofing
2006-53  Mozilla Firefox XPCOM Event Handling Memory Corruption
2006-52  CMS Mundo SQL Injection Vulnerabilities
2006-51  PC Tools AntiVirus Insecure Default Directory Permissions
2006-50  ZipTV ARJ Archive Handling and unacev2.dll Buffer Overflows
2006-49  Opera SSL Certificate "Stealing" Weakness
2006-48  WinGate IMAP Commands Directory Traversal Vulnerability
2006-47  phpRaid SQL Injection and File Inclusion Vulnerabilities
2006-46  BitZipper unacev2.dll Buffer Overflow Vulnerability
2006-45  jetAudio ID Tag Handling Buffer Overflow Vulnerability
2006-44  DeluxeBB SQL Injection and File Inclusion Vulnerabilities
2006-43  CMS Mundo SQL Injection and File Upload Vulnerabilities
2006-42  PicoZip "zipinfo.dll" Multiple Archives Buffer Overflow
2006-41  Internet Explorer Exception Handling Memory Corruption Vulnerability
2006-40  MyBB "domecode()" PHP Code Execution Vulnerability
2006-39  SelectaPix Cross-Site Scripting and SQL Injection Vulnerabilities
2006-38  AutoMate unacev2.dll Buffer Overflow Vulnerability
2006-37  Eserv/3 IMAP and HTTP Server Multiple Vulnerabilities
2006-36  Rising Antivirus unacev2.dll Buffer Overflow Vulnerability
2006-35  ZipCentral ZIP File Handling Buffer Overflow Vulnerability
2006-34  CAM UnZip ZIP File Handling Buffer Overflow Vulnerability
2006-33  Eazel unacev2.dll Buffer Overflow Vulnerability
2006-32  IZArc unacev2.dll Buffer Overflow Vulnerability
2006-31  Abakt ZIP File Handling Buffer Overflow Vulnerability
2006-30  FilZip unacev2.dll Buffer Overflow Vulnerability
2006-29  UltimateZip unacev2.dll Buffer Overflow Vulnerability
2006-28  Where Is It unacev2.dll Buffer Overflow Vulnerability
2006-27  Anti-Trojan unacev2.dll Buffer Overflow Vulnerability
2006-26  TZipBuilder ZIP File Handling Buffer Overflow Vulnerability
2006-25  WinHKI unacev2.dll Buffer Overflow Vulnerability
2006-24  Servant Salamander unacev2.dll Buffer Overflow Vulnerability
2006-23  SpeedProject Products ACE Archive Handling Buffer Overflow
2006-22  Blazix Web Server JSP Source Code Disclosure Vulnerability
2006-21  AN HTTPD Script Source Disclosure Vulnerability
2006-20  Xeneo Web Server Script Source Disclosure Vulnerability
2006-19  Quick 'n Easy/Baby Web Server ASP Code Disclosure Vulnerability
2006-18  BlueDragon Server Cross-Site Scripting and Denial of Service
2006-17  NOD32 Scheduled Scan Privilege Escalation Vulnerability
2006-16  unalz Filename Handling Directory Traversal Vulnerability
2006-15  RaidenHTTPD Script Source Disclosure Vulnerability
2006-14  VisNetic Mail Server Two File Inclusion Vulnerabilities
2006-13  Dwarf HTTP Server Source Disclosure and Cross-Site Scripting
2006-12  IceWarp Web Mail Two File Inclusion Vulnerabilities
2006-11  Orion Application Server JSP Source Disclosure Vulnerability
2006-10  NetworkActiv Web Server Script Source Disclosure Vulnerability
2006-9    Lighttpd Script Source Disclosure Vulnerability
2006-8    AOL Insecure Default Directory Permissions
2006-7    Microsoft Internet Explorer "createTextRange()" Code Execution
2006-6    ArGoSoft Mail Server Pro viewheaders Script Insertion
2006-5    NJStar Word Processor Font Name Buffer Overflow
2006-4    Macallan Mail Solution IMAP Commands Directory Traversal
2006-3    NeoMail neomail-prefs.pl Missing Session ID Validation
2006-2    @Mail Webmail Attachment Upload Directory Traversal
2006-1    E-Post Mail Server Products Multiple Vulnerabilities

2005

  Total Research Advisories: 54 Pending Disclosure: 0
[+]
2005-53  WinRAR Format String and Buffer Overflow Vulnerabilities
2005-52  PHP-Fusion Two SQL Injection Vulnerabilities
2005-51  MySource Cross-Site Scripting and File Inclusion Vulnerabilities
2005-50  PowerArchiver ACE/ARJ Archive Handling Buffer Overflow
2005-49  ALZip Multiple Archive Handling Buffer Overflow
2005-48  AhnLab V3 Antivirus ALZ/UUE/XXE Archive Handling Buffer Overflow
2005-47  HAURI Anti-Virus ALZ Archive Handling Buffer Overflow
2005-46  Mantis "t_core_path" File Inclusion Vulnerability
2005-45  7-Zip ARJ Archive Handling Buffer Overflow
2005-44  SqWebMail Conditional Comments Script Insertion Vulnerability
2005-43  AVIRA Antivirus ACE Archive Handling Buffer Overflow
2005-42  Opera Mail Client Attachment Spoofing and Script Insertion
2005-41  ALZip ACE Archive Handling Buffer Overflow
2005-40  NOD32 Anti-Virus ARJ Archive Handling Buffer Overflow
2005-39  SqWebMail HTML Emails Script Insertion Vulnerability
2005-38  IBM Lotus Domino iNotes Client Script Insertion Vulnerabilities
2005-37  Lotus Notes ZIP File Handling Buffer Overflow
2005-36  Lotus Notes UUE File Handling Buffer Overflow
2005-35  SqWebMail Attached File Script Insertion Vulnerability
2005-34  Lotus Notes TAR Reader File Extraction Buffer Overflow
2005-33  HAURI Anti-Virus ACE Archive Handling Buffer Overflow
2005-32  Lotus Notes HTML Speed Reader Link Buffer Overflows
2005-31  NetworkActiv Web Server Cross-Site Scripting Vulnerability
2005-30  Lotus Notes Multiple Archive Handling Directory Traversal
2005-29  IBM Lotus Notes Insecure Default Folder Permissions
2005-28  Adobe Document/Graphics Server File URI Resource Access
2005-28  Adobe Document/Graphics Server File URI Resource Access
2005-27  MDaemon Content Filter Directory Traversal Vulnerability
2005-26  Gossamer Threads Links Script Insertion Vulnerabilities
2005-25  Opera Download Dialog Spoofing Vulnerability
2005-24  HAURI Anti-Virus Compressed Archive Directory Traversal
2005-23  Novell NetMail NMAP Agent "USER" Buffer Overflow Vulnerability
2005-22  Mozilla Thunderbird Attachment Spoofing Vulnerability
2005-21  Internet Explorer Suppressed "Download Dialog" Vulnerability
2005-20  avast! Antivirus ACE File Handling Two Vulnerabilities
2005-19  Opera Suppressed "Download Dialog" Vulnerability
2005-18  Opera Image Dragging Vulnerability
2005-17  Ahnlab V3 Antivirus Multiple Vulnerabilities
2005-16  Netscape Property Manipulation Cross-Site Scripting
2005-15  Mozilla / Firefox Property Manipulation Cross-Site Scripting
2005-14  WhatsUp Small Business Report Service Directory Traversal
2005-13  WhatsUp Professional "Login.asp" SQL Injection
2005-12  Safari Dialog Origin Spoofing Vulnerability
2005-11  Mozilla Products Dialog Origin Spoofing Vulnerability
2005-10  Webroot Desktop Firewall Two Vulnerabilities
2005-9    Microsoft Internet Explorer Dialog Origin Spoofing Vulnerability
2005-8    Opera Dialog Origin Spoofing Vulnerability
2005-7    Microsoft Internet Explorer Keyboard Shortcut Processing Vulnerability
2005-6    Adobe Reader for Linux Insecure Temporary File Creation
2005-5    Opera "javascript:" URLs Cross-Site Scripting
2005-4    Opera 8 XMLHttpRequest Security Bypass
2005-3    Mathopd Insecure Dump File Creation Vulnerability
2005-2    Yahoo! Messenger File Transfer Filename Spoofing
2005-1    Konqueror Download Dialog Source Spoofing

2004

  Total Research Advisories: 21 Pending Disclosure: 0
[+]

2003

  Total Research Advisories: 6 Pending Disclosure: 0
[+]

 


Secunia Research
2010Research Advisories
This week: 0
This month: 1
Year to date: 114
2009
65
2008
63
2007
104
2006
76

 

footer
© 2002-2010 Secunia ApS • Weidekampsgade 14A, DK-2300 Copenhagen S, Denmark • +45 7020 5144 • Contact Us
Terms & Conditions and CopyrightReport vulnerability
CVE logo OTA logo First logo