Secunia - Stay Secure
Home Corporate Website Jobs Updated Mailing Lists RSS Blog  Online Shop Advertise
Software Inspectors
  Scan Online
  Personal (PSI)
  Network (NSI 2.0)

Solutions For
  Security Professionals
  Security Vendors

Free Solutions For
  Open Communities
  Journalists & Media

Secunia Advisories
  Search
  Historic Advisories
  Listed By Product
  Listed By Vendor
  Statistics / Graphs
  Secunia Research
  Report Vulnerability
  About Advisories

Virus Information
  Chronological List
  Last 10 Virus Alerts
  About Virus Information

Secunia Customers
  Customer Area


Secunia Highlights [About]



In Focus
Secunia NSI 2.0
Scan your network for vulnerabilities and missing security patches in third party applications.

Download your copy of the Secunia NSI 2.0:
NSISetup.exe / Learn more about Secunia NSI 2.0

Secunia PSI
The Secunia PSI reaches user number 500,000! Read our blog entry.


Latest Secunia Advisories [About]

29 August, 2008 - 17 advisories released, displaying 10
GpsDrive "geo-code" Insecure Temporary Files
Novell eDirectory Multiple Vulnerabilities
dotProject SQL Injection and Cross-Site Scripting
IBM WebSphere Application Server for z/OS HTTP Server mod_proxy_ftp Vulnerability
Red Hat update for libtiff
Red Hat update for libtiff
Sun Solaris Kernel Covert Channel Security Bypass
Slackware update for amarok
Blogn Cross-Site Scripting and Cross-Site Request Forgery
Caudium "configvar" Insecure Temporary Files

See all advisories...

 
Most Popular [About]

1. Novell eDirectory Multiple Vulnerabilities
2. dotProject SQL Injection and Cross-Site Scripting
3. phpBB BBcode Script Insertion Vulnerability
4. geo-* Insecure Temporary Files
5. phpJobScheduler "installed_config_file" File Inclusion Vulnerabilities
6. Blogn Cross-Site Scripting and Cross-Site Request Forgery
7. HP TCP/IP Services for OpenVMS Finger Format String Vulnerability
8. GpsDrive "geo-code" Insecure Temporary Files
9. Adium MSN SLP Message Integer Overflow Vulnerabilities
10. Acoustica Mixcraft ".mx4" File Processing Buffer Overflow


Latest Virus Information [About]

29 August, 2008 - 28 Virus Descriptions released, displaying 15.
ExePage-A - Reported by Sophos
Very Low Risk. Grouped with 1 virus description:
Troj/ExePage-A [Sophos]
Mal/Envid-A - Reported by Sophos
Mal/DownLdr-AC - Reported by Sophos
Iframe-AR - Reported by Sophos
Rootkit-DK - Reported by Sophos
RKOSX-A - Reported by Sophos
PhpShell-N - Reported by Sophos
MalDoc-D - Reported by Sophos
Low Risk. Grouped with 1 virus description:
Troj/MalDoc-D [Sophos]
Agent-HNO - Reported by Sophos
Rootkit-DL - Reported by Sophos
Fakeale-GK - Reported by Sophos
Dloadr-BRL - Reported by Sophos
Trojan-Downloader:W32/Exchanger - Reported by F-Secure
Bancos-BEM - Reported by Sophos
Agent-HNN - Reported by Sophos

More Virus Information...
 
Secunia News / Press Releases [About]

Secunia PSI - user number 500,000 reached
30 May, 2008 - The Secunia PSI reaches user number 500,000! Read our blog entry.

Secunia PSI - Release Candidate 2
22 May, 2008 - Secunia just release a new version of the Secunia PSI, Release Candidate 2, read more in the changelog.

Secunia NSI 2.0 Public Beta Test
11 April, 2008 - Public Beta of the 2nd generation Secunia NSI is now available for free testing. Instant Access.

Secunia PSI available in German
20 February, 2008 - A German version of the Secunia PSI has been released, therefore: Willkommen Deutschland!

A rough 24 hours for Windows users - 81.01% affected
7 February, 2008 - The last 24 hours have been rough for Windows users. Sun, Adobe, Apple, and Skype have issued security updates - all four vendors correcting security holes that could lead to system compromise.



Vulnerability Tests [About]

Try some of the Vulnerability Tests, to quickly see if your systems are affected and what steps you can perform to mitigate or eliminate the impact of these vulnerabilities.

Internet Explorer 7 Popup Address Bar Spoofing Test
A vulnerability in Internet Explorer, which can be exploited to spoof the address bar of a popup-window. The vulnerability has been confirmed on a fully patched system with Internet Explorer 7.0 running on Microsoft Windows XP SP2. Other versions may also be affected. Unpatched for 675 days.

Internet Explorer 7 navcancl.htm Cross-Site Scripting Vulnerability
Aviv Raff has discovered a vulnerability in Internet Explorer 7, which can be exploited by malicious people to conduct phishing attacks. The vulnerability is confirmed in Internet Explorer 7 on a fully patched Windows XP SP2 system. Other versions may also be affected. A vendor solution is available.

Apache "Expect" Header Cross-Site Scripting Vulnerability Test
A vulnerability has been discovered in Apache HTTP Server, which can be exploited by malicious people to conduct cross-site scripting attacks. A vendor solution is available.





Vulnerability Management - Terms & Conditions - Copyright 2002-2008 Secunia - Compliance - Contact Secunia