Home » News » Vulnerabilities

Vulnerabilities

Gmail vulnerability exchange Google’s attention

By Gina on November 23, 2010 | Vulnerabilities

Gmail vulnerability exchange Google’s attention 21 year old Armenian hacker has found vulnerability in the Google Apps Script API that enabled Gmail addresses to be used in sending messages without user’s permission or knowledge. It has to be noted, that emails were send from legitimate Gmail addresses. The way of message is still unknown but the flaw is already fixed. An attack wasn’t malicious one. Read more.

The Apache released its new version

By Gina on October 21, 2010 | Vulnerabilities

The Apache released its new version The Apache HTTP Server Project announced they have released Apache HTTP Server version 2.2.17 . This new version is presented with the purpose to fix three serious vulnerabilities: expat DoS CVE-2009-3720, expat DoS CVE-2009-3560, apr_bridage_split_line DoS CVE-2010-1623. expat DoS CVE-2009-3720 , expat DoS CVE-2009-3560 Both buffer over-read vulnerabilities were found in a bundled expatriate library. Read more.

Winamp vulnerabilities are still not patched

By Gina on October 18, 2010 | Vulnerabilities

Winamp vulnerabilities are still not patched Recently, few of Winamp flaws were discovered. These vulnerabilities could have been exploited by cybercriminals who always has one and only purpose to steal money from computer users and spread malware inside the systems. For now there are 4 vulnerabilities that have been found. The first issue is caused by integer redundancy error in the Matroska Demuxer (in_mkv.dll) when altering malformed MKV files. Read more.

„Interim security update“: Security patch for BlackBerry Enterprise Server

By Gina on October 15, 2010 | Vulnerabilities

„Interim security update“: Security patch for BlackBerry Enterprise Server Recently, vulnerability was found in BlackBerry Enterprise Server (BES) which could have been well explored by hackers if not a quick patch from Research In Motion (RIM) that released an „Interim security update“. BlackBerry maker comments that this vulnerability may have been used in launching Denial of Service (DoS) attacks. The flaw is quite serious one because it is ranked 7.6 on the scale of 0 to 10 in Common Vulnerability Scoring System. Read more.

Symantec, Eset and Panda Security had XSS flaw

By Gina on October 5, 2010 | Vulnerabilities

Symantec, Eset and Panda Security had XSS flaw White-hat hacker discovered XSS vulnerabilities on three security firms’ websites that could be a reason for further phishing attacks. Cross-site scripting (XSS) vulnerable spot on Symantec , Eset and Panda Security websites was found by Team Elite, one of its members. White-hat hacker told about their discoveries to these companies and they patched the flaw. Team Elite says that these vulnerabilities may cause serious and dangerous phishing attacks. Read more.

1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 Last »

News categories

Popular news