Search

Traffic File Update - June 2012

This Traffic IQ Professional update for June 2012 contains the latest application exploits, threats and security evasion techniques along with technical data and high quality security rules.

Traffic IQ Professional

Traffic File Update for June 2012

94 Application Exploits

ACDSee PRO CUR Image Processing Heap Overflow Vulnerability S
ACDSee PRO GIF Image Processing Heap Overflow Vulnerability S
ACDSee PRO PCT Image Processing Heap Overflow Vulnerability S
ACDSee PRO RLE Image Processing Heap Overflow Vulnerability S
Adobe Illustrator APSB12-10 Multiple Memory Corruption Vulnerabilities S
Adobe Illustrator APSB12-10 Multiple Memory Corruption Vulnerabilities_1 S
Adobe Illustrator APSB12-10 Multiple Memory Corruption Vulnerabilities_2 S
Apple iTunes '.m3u' Playlist File Heap Based Buffer Overflow Vulnerability S
Audio Editor Master CD Audio File Processing Buffer Overflow Vulnerability S
HTTP Adiscan LogAnalyzer Cross Site Scripting Vulnerability S
HTTP Agora-Project 'contact.php' Cross Site Scripting Vulnerability S
HTTP Agora-Project 'evenement.php' Cross Site Scripting Vulnerability S
HTTP Agora-Project 'index.php' Cross Site Scripting Vulnerability S
HTTP Agora-Project 'utilisateur.php' Cross Site Scripting Vulnerability S
HTTP BMC Identity Management Cross Site Request Forgery Vulnerability S
HTTP Eclipse IDE (CVE-2008-7271) 'searchView.jsp' XSS Vulnerability S
HTTP Eclipse IDE (CVE-2008-7271) 'searchView.jsp' XSS Vulnerability_1 S
HTTP Eclipse IDE (CVE-2008-7271) 'workingSetManager.jsp' XSS Vulnerability S
HTTP IBM System Storage Manager Profiler XSS Vulnerability S
HTTP Nagios XI index.php 'view' Parameter XSS Vulnerability S
HTTP Nagios XI visApi.php 'div' Parameter XSS Vulnerability S
HTTP Oracle GlassFish Server 'jmsHosts.jsf' CVE-2012-0551 XSS Vulnerability S
HTTP Oracle GlassFish Server 'key' CVE-2012-0551 XSS Vulnerability S
HTTP Oracle GlassFish Server 'lifecycleEdit.jsf' CVE-2012-0551 XSS Vulnerability S
HTTP Oracle GlassFish Server 'networkListeners.jsf' CVE-2012-0551 XSS Vulnerability S
HTTP Oracle GlassFish Server 'realms.jsf' CVE-2012-0551 XSS Vulnerability S
HTTP Sony VAIO Wireless Manager 'ConnectToNetwork' Method Vulnerability S
HTTP Sony VAIO Wireless Manager 'SetTmpProfileOption' Method Vulnerability S
HTTP TEMENOS T24 'routineArgs' Parameter XSS Vulnerability S
HTTP VoipNow Professional 'nsextt' Parameter XSS Vulnerability S
HTTP webatall CVE-2012-3232 Cross Site Scripting Vulnerability S
HTTP webERP Multiple Remote and Local File Include Vulnerabilities S
HTTP webERP Multiple Remote and Local File Include Vulnerabilities_1 S
HTTP webERP Multiple Remote and Local File Include Vulnerabilities_2 S
HTTP WordPress Newsletter 'preview.php' CVE-2012-3588 File Disclosure Vulnerability S
HTTP WordPress Newsletter 'preview.php' CVE-2012-3588 File Disclosure Vulnerability_1 S
HTTP WordPress Wp-ImageZoom 'file' Parameter Remote File Disclosure Vulnerability S
HTTP WordPress Wp-ImageZoom 'file' Parameter Remote File Disclosure Vulnerability_1 S
HTTP XAMPP for Windows 'cds.php' Cross Site Scripting Vulnerability S
HTTP XAMPP for Windows 'perlinfo.pl' Cross Site Scripting Vulnerability S
IrfanView Formats PlugIn TTF File Buffer Overflow Vulnerability S
IrfanView PlugIn DJVU Image Processing Heap Overflow Vulnerability S
Irfanview Plugin JLS File Decompression Heap Overflow Vulnerability S
Kingview Network Based Buffer Overflow Vulnerability (SCADA) S
Lattice Semiconductor Diamond Programmer Buffer Overflow Vulnerability S
Lattice Semiconductor PAC-Designer '.pac' File Vulnerability (debug_trap) S
Lattice Semiconductor PAC-Designer '.pac' File Vulnerability (MessageBox) S
Lattice Semiconductor PAC-Designer '.pac' File Vulnerability (win_exec) S
Lattice Semiconductor PAC-Designer '.pac' File Vulnerability (win_shell_bind_tcp) S
Lattice Semiconductor PAC-Designer '.pac' File Vulnerability (win_shell_bind_tcp_xpfw) S
Lattice Semiconductor PAC-Designer '.pac' File Vulnerability (win_shell_reverse_ord_tcp) S
Lattice Semiconductor PAC-Designer '.pac' File Vulnerability (win_shell_reverse_tcp) S
Microsoft Windows OpenType 'atmfd.dll' Denial of Service Vulnerability S
Microsoft Wordpad '.doc' File NULL Pointer Dereference Vulnerability S
MMPlayer PPL Playlist Handling Overflow Vulnerability (MessageBox) S
MMPlayer PPL Playlist Handling Overflow Vulnerability (win_exec) S
MMPlayer PPL Playlist Handling Overflow Vulnerability (win_shell_bind_tcp) S
Oracle GlassFish Server 'auditModules.jsf' CVE-2012-0551 XSS Vulnerability S
Power Media '.asz' File Buffer Overflow Vulnerability S
PowerNet Twin Client Remote Denial of Service Vulnerability S
Real Networks RealPlayer '.avi' File Divide-By-Zero Vulnerability S
Samsung AllShare 'Content-Length' HTTP Header Vulnerability S
Samsung AllShare 'Content-Length' HTTP Header Vulnerability_1 S
Sielco Sistemi Winlog Lite (SCADA) Buffer Overflow Vulnerability (MessageBox) S
Sielco Sistemi Winlog Lite (SCADA) Buffer Overflow Vulnerability (win_exec) S
Sielco Sistemi Winlog Lite (SCADA) Buffer Overflow Vulnerability (win_shell_bind_tcp) S
Sielco Sistemi Winlog Lite (SCADA) Buffer Overflow Vulnerability (win_shell_reverse_ord_tcp) S
Sielco Sistemi Winlog Lite (SCADA) Buffer Overflow Vulnerability (win_shell_reverse_tcp) S
Sielco Sistemi Winlog Lite Buffer Overflow Vulnerability (SCADA) S
Sielco Sistemi Winlog Pro '@Db@TDataSet@Close$qqrv' Code Execution Vulnerability (SCADA) S
Sielco Sistemi Winlog Pro 'DbiGetRecordCount' Code Execution Vulnerability (SCADA) S
Sielco Sistemi Winlog Pro 'DbiSetToRecordNo' Code Execution Vulnerability (SCADA) S
Sielco Sistemi Winlog Pro 'DbiSetToRecordNo' Code Execution Vulnerability (SCADA)_1 S
Sielco Sistemi Winlog Pro 'DbiSetToRecordNo' Code Execution Vulnerability (SCADA)_2 S
Sielco Sistemi Winlog Pro 'DbiSetToRecordNo' Code Execution Vulnerability (SCADA)_3 S
Sielco Sistemi Winlog Pro 'write1' Vulnerability (SCADA) S
Sielco Sistemi Winlog Pro 'write4' Vulnerability (SCADA) S
Sielco Sistemi Winlog Pro 'write4' Vulnerability (SCADA)_1 S
Sielco Sistemi Winlog Pro '_TCPIPS_BinOpenFileFP' Stack Overflow Vulnerability (SCADA) S
Sielco Sistemi Winlog Pro Directory Traversal Vulnerability (SCADA) S
Sielco Sistemi Winlog Pro Directory Traversal Vulnerability (SCADA)_1 S
Tom Sawyer Software GET Extension Factory Vulnerability (MessageBox) S
Tom Sawyer Software GET Extension Factory Vulnerability (win_exec) S
Total Video Player '.avi' File Buffer Overflow Vulnerability S
Total Video Player '.m3u' File Buffer Overflow Vulnerability S
Total Video Player '.mp3' File Buffer Overflow Vulnerability S
URL Hunter '.m3u' File Buffer Overflow Vulnerability S
Winamp '.m3u' File Exception Handling Vulnerability S
XnView FlashPix Image Processing Heap Overflow Vulnerability S
XnView GIF Image Processing Heap Overflow Vulnerability S
XnView PCT Image Processing Heap Overflow Vulnerability S
XnView RAS Image Processing Heap Overflow Vulnerability S
XnView TIFF Image Processing Heap Overflow Vulnerability S
XnView TIFF Image Processing Heap Overflow Vulnerability_1 S

7 Evasions

Evasion HTTP chunked (for CVE-2011-2217) S
Evasion HTTP Header Folding (for CVE-2008-3257) S
Evasion HTTP URI Directory Fake Relative (for CVE-2008-3257) S
Evasion HTTP URI Directory Self Reference (for CVE-2008-3257) S
Evasion HTTP URI Fake Params Start (for CVE-2008-3257) S
Snort URIContent Rules Detection Evasion Vulnerability S
Snort URIContent Rules Detection Evasion Vulnerability_1 S

1 Standard Protocol Traffic

Protocol Modbus Version Scanner (SCADA) S


idappcom - Auditing, verifying and enhancing the capabilities of corporate security defences.

We do not use cookies for tracking users, displaying customised content or storing information about users, other than that required to maintain 'session state' for the login system for registered users. Please read our cookie policy for more information. Please note that by using this site you are consenting to the use of cookies.