Mandriva Linux Security Advisory 2011-088 - Multiple vulnerabilities have been identified and fixed in mplayer. These range from memory disclosure to code execution issues.
b855b6bd742d2347e71f65286f50bd8942868c99a05a1b7b4a7a1c618a33f1b3
Mitel Audio and Web Conferencing version 4.4.30 suffers from multiple cross site scripting vulnerabilities.
89f24d51c3ff886d0bd19239c449f15af0c50c1c88a3ec85cd52c0e52a1fd8a2
Zero Day Initiative Advisory 11-168 - This vulnerability allows remote attackers to register RPC services on vulnerable installations of EMC Legato Networker and IBM Informix Dynamic Server. Authentication is not required to exploit this vulnerability. The flaw exists within the librpc.dll component which listens by default on UDP port 111. When handling the pmap_set request the process verifies the source address is "127.0.0.1". This communication is via UDP and a valid source address is not required, a udp packet from source address "127.0.0.1" can be created sent to this service allowing a remote attacker to register and unregister RPC services. A remote attack can use this vulnerability to create a denial of service condition or eavesdrop on process communications.
b526371d94f202ba6f983886cce43e65e0acf034f65bcc0533f5b1fff30f8f5c
EMC SourceOne Email Management may allow the disclosure of application-sensitive information using ASP.NET Application Tracing. The ASP.NET application trace is enabled in affected versions of EMC SourceOne Email Management. This trace file may contain application-sensitive information that can be accessed by a remote user. Authentication is required to access the trace file.
ddd7c7e0a71fa4db5133c04ad697430cdfacda14107b5069c65c0df1607cefe9
SniffJoke is middleware software for Linux that is managed by a web interface and enables connection scrambling technology, also known as sniffer evasion techniques.
3ddbc8756a222412a41f8e31495b0a877901d1129de1745d59798a8f482a99d4
Media In Spot CMS suffers from a remote SQL injection vulnerability.
028176300db0b330f03364fce8b746734ea958be35ff943b72d583bf88404613
CoolPlayer version 2.19.2 buffer overflow exploit that creates a malicious .m3u file that will spawn calc.exe.
74b5af8c2c21846c9fef2abc9789086d7eee9971a44dd8e9c8a6e022a84d478d
XtreamerPRO Media Player suffers from authentication bypass and directory traversal vulnerabilities.
ea7fa2e10b097dafa098f0027b03ce583ae21629081f289b7c6696821a61a283
Linux Kernel version 2.6.38 suffers from a remote NULL pointer dereference.
dd4dff89d0522e0339aa6840ddeedd21656c1cd4733b8bc3e61674e3ca3f25f5
HP Security Bulletin HPSBMA02681 SSRT100493 - A potential security vulnerability has been identified with HP Business Availability Center (BAC) running on Windows and Solaris . The vulnerability could be remotely exploited to allow Cross Site Scripting (XSS). Revision 1 of this advisory.
135e50b9f27defff72354eef5da15676278c61f7690d884979d311ef85984c8e