Search

Traffic File Update - September 2007

This Traffic IQ Professional update for September 2007 contains the latest application exploits, threats and security evasion techniques along with technical data and high quality security rules.

Traffic IQ Professional

Traffic File Update for September 2007

55 Application Exploits

Apple QuickTime SMIL File Processing Integer Overflow S
HTTP ACTi Network Video Recorder ActiveX DeleteXMLFile() File Deletion S
HTTP ACTi Network Video Recorder ActiveX SaveXMLFile() File Creation S
HTTP Apache Tomcat Cal2.JSP Cross-Site Scripting S
HTTP Apache Tomcat Host Manager Servlet (aliases) Cross Site Scripting S
HTTP AtomixMP3 Malformed PLS Playlist File Buffer Overflow S
HTTP BaoFeng Storm MPS.DLL (backImage) Buffer Overflow S
HTTP BaoFeng Storm MPS.DLL (titleImage) Buffer Overflow S
HTTP BaoFeng Storm MPS.DLL (URL) Buffer Overflow S
HTTP BaoFeng Storm MPS.DLL advancedOpen() Buffer Overflow S
HTTP BaoFeng Storm MPS.DLL isDVDPath() Buffer Overflow S
HTTP BaoFeng Storm MPS.DLL rawParse() Buffer Overflow S
HTTP Buffalo AirStation WHR-G54S Web Management CSRF S
HTTP EDraw Office Viewer (HttpDownloadFileToTempDir) Buffer Overflow S
HTTP GlobalLink GLItemCom.DLL ActiveX Heap Overflow S
HTTP GlobalLink glitemflat.dll ActiveX Heap Overflow S
HTTP MS IE (EasyMail Objects EMSMTP.DLL ActiveX Control) Buffer Overflow S
HTTP MS IE (eCentrex VOIP Client UACOMX.OCX ActiveX) Buffer Overflow S
HTTP MS IE (PPStream PowerPlayer.DLL) ActiveX Buffer Overflow S
HTTP NVR nvUnifiedControl ActiveX Control Buffer Overflow S
IAX2 Asterisk Remote Denial of Service S
IBM Rational ClearQuest Username SQL Injection S
Microsoft DirectX Media SDK (SourceUrl) Buffer Overflow S
Microsoft SQL Server sqldmo.dll Buffer Overflow S
Microsoft Visual Basic VBP File Processing Buffer Overflow S
Microsoft Visual FoxPro FPOLE.OCX ActiveX Buffer Overflow S
Microsoft Visual Studio PDWizard ActiveX Control Code Execution S
Microsoft Visual Studio VB To VSI Support Library Arbitrary File Overwrite S
Microsoft Windows Agent Remote Command Execution (MS07-051) S
Microsoft Windows GDI Metafiles AttemptWrite Code Execution (MS07-046) S
Microsoft Windows MFC Library FindFile() Buffer Overflow S
MS Visual Basic VBP File Processing Buffer Overflow (shutdown) S
MS Visual Basic VBP File Processing Buffer Overflow (vncinject) S
MS Visual Basic VBP File Processing Buffer Overflow (win32_adduser) S
MS Visual Basic VBP File Processing Buffer Overflow (win32_bind) S
MS Visual Basic VBP File Processing Buffer Overflow (win32_exec) S
POP3 Hexamail Server Remote Buffer Overflow S
RealPlayer and HelixPlayer AU Divide-By-Zero DoS S
SIP Asterisk Invite Message Remote DoS (CVE-2007-1561) S
SIP Cisco IP Phone 7940 and 7960 SIP Message Sequence DoS POC_2 S
SIP Cisco IP Phone 7940 and 7960 SIP Message Sequence DoS S
SIP Thomson SpeedTouch 2030 SIP Empty Message Remote DoS S
SIP Thomson SpeedTouch 2030 SIP Invite Message Remote DoS S
SMTP Mercury Mail AUTH CRAM-MD5 Overflow (universal_TER32.dll) S
SMTP Mercury Mail AUTH CRAM-MD5 Overflow (Win2003SP0_shell32.dll) S
SMTP Mercury Mail AUTH CRAM-MD5 Overflow (WinXPSP0_shell32.dll) S
SMTP Mercury Mail AUTH CRAM-MD5 Overflow (WinXPSP1_user32.dll) S
SMTP Mercury Mail AUTH CRAM-MD5 Overflow (WinXPSP2_shell32.dll) S
SMTP Mercury Mail Transport System AUTH CRAM-MD5 DoS S
Sun Java Runtime Environment (JRE) isInstalled.dnsResolve Buffer Overflow S
Unreal Engine Web Server Logging (hell bell attack) S
Unreal Engine Web Server Logging Buffer Overflow S
VMware IntraProcessLogging.DLL Arbitrary File Overwrite S
VMware Workstation CreateProcess and CreateProcessEx Code Execution S
Yahoo Messenger CYFT Object (ft60.dll) Remote Code Execution S


idappcom - Auditing, verifying and enhancing the capabilities of corporate security defences.

We do not use cookies for tracking users, displaying customised content or storing information about users, other than that required to maintain 'session state' for the login system for registered users. Please read our cookie policy for more information. Please note that by using this site you are consenting to the use of cookies.