<?xml version="1.0" encoding="iso-8859-1" ?>
<?xml-stylesheet title="XSL_formatting" type="text/xsl" href="/images/lists/rssstyle2.xsl"?>
<rss version="2.0">
<channel>
<title>Bugtraq | Bugtraq</title>
<description>Mailing List Archive by Gossamer Threads</description>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/</link>
<language>en-us</language>
<copyright>(c) Gossamer Threads Inc. All rights reserved.</copyright>
<lastBuildDate>25 Nov  2009 01:56:57 -0800</lastBuildDate>
<ttl>120</ttl>
<image>
<title>Gossamer Threads | Bugtraq | Bugtraq</title>
<width>75</width>
<height>23</height>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/</link>
<url>http://www.gossamer-threads.com/images/lists/rss_logo.jpg</url>
</image>
<item>
<title>rPSA-2008-0018-1 mysql mysql-bench mysql-server</title>
<description>rPath Security Advisory: 2008-0018-1 Published: 2008-01-17 Products:   rPath Linux 1 Rating: Major Exposure Level Classification:   Local Determi</description>
<pubDate>17 Jan  2008 07:32:21 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26774</link>
</item><item>
<title>[SECURITY] [DSA 1465-1] New apt-listchanges packages fix arbitrary code execution</title>
<description>-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------ Debian Security Advisory DSA</description>
<pubDate>17 Jan  2008 06:38:45 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26771</link>
</item><item>
<title>[security bulletin] HPSBMA02133 SSRT061201 rev.7 - HP Oracle for OpenView (OfO) Critical Patch Update</title>
<description>-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c00727143 Version: 7 HPSBMA02133 SSRT061201 re</description>
<pubDate>17 Jan  2008 05:30:57 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26770</link>
</item><item>
<title>Clever Copy &amp;lt;=3.0 Multiple Remote Vulnerabilities</title>
<description>####################################################################  #                                 #  #</description>
<pubDate>17 Jan  2008 00:54:46 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26777</link>
</item><item>
<title>PHPEchoCMS Multible remote vulnerabilitis</title>
<description>Hello,, PHPEchoCMS Multible remote vulnerabilitis Discovered By : HACKERS PAL Copy rights : HACKERS PAL Website : http://www.soqor.net Email Address</description>
<pubDate>16 Jan  2008 21:07:58 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26773</link>
</item><item>
<title>JoomlaFlash Component Multiple Remote File Inclusion</title>
<description>Autore: Smasher Sito: http://warwolfz.altervista.org Tipo: Remote File Inclusion Rischio: Alto A remote attacker can gain access to your website thro</description>
<pubDate>16 Jan  2008 16:06:03 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26772</link>
</item><item>
<title>[ MDVSA-2008:016 ] - Updated apache 2.2.x packages fix multiple vulnerabilities</title>
<description>-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1  _______________________________________________________________________  Mandriva Linux Security Adv</description>
<pubDate>16 Jan  2008 15:30:09 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26775</link>
</item><item>
<title>[USN-570-1] boost vulnerabilities</title>
<description>=========================================================== Ubuntu Security Notice USN-570-1      January 16, 2008 boost vulnerabilities CVE-200</description>
<pubDate>16 Jan  2008 14:45:38 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26768</link>
</item><item>
<title>Re: [CVE-2007-2449] Apache Tomcat XSS vulnerabilities in the JSP examples</title>
<description>Hello, I inputed the example string from IE and Firefox, but it doesn&amp;#039;t work. The Tomcat version is 5.5.23.  It just displayed what I typed. ... Req</description>
<pubDate>16 Jan  2008 14:40:29 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26776</link>
</item><item>
<title>[ MDVSA-2008:015 ] - Updated apache 2.0.x packages fix multiple vulnerabilities</title>
<description>-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1  _______________________________________________________________________  Mandriva Linux Security Adv</description>
<pubDate>16 Jan  2008 14:29:34 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26769</link>
</item><item>
<title>[ MDVSA-2008:014 ] - Updated apache 1.3.x packages fix multiple vulnerabilities</title>
<description>-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1  _______________________________________________________________________  Mandriva Linux Security Adv</description>
<pubDate>16 Jan  2008 14:16:50 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26767</link>
</item><item>
<title>Gradman &amp;lt;= 0.1.3 (agregar_info.php?tabla=) Local File Inclusion Exploit</title>
<description>[+] Info: [~] Software: Gradman &amp;lt;= 0.1.3 [~] HomePage: http://gradman.xe1ido.com.mx/ [~] Exploit: Local File Inclusion [High] [~] Where: agregar_info</description>
<pubDate>16 Jan  2008 13:11:31 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26766</link>
</item><item>
<title>SQL scalar function to convert big int to dot notation</title>
<description>For those of you logging ISA (or whatever) to SQL, you&amp;#039;ll have no doubt noted that the source and destination IP&amp;#039;s are logged as long integers, and no</description>
<pubDate>16 Jan  2008 12:20:15 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26764</link>
</item><item>
<title>[waraxe-2008-SA#062] - Multiple Sql Injections in MyBB 1.2.10</title>
<description>[waraxe-2008-SA#062] - Multiple Sql Injections in MyBB 1.2.10 =============================================================================== Author:</description>
<pubDate>16 Jan  2008 12:19:44 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26762</link>
</item><item>
<title>[waraxe-2008-SA#061] - Remote Code Execution in MyBB 1.2.10</title>
<description>[waraxe-2008-SA#061] - Remote Code Execution in MyBB 1.2.10 =============================================================================== Author: J</description>
<pubDate>16 Jan  2008 12:18:40 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26765</link>
</item><item>
<title>TPTI-08-02: Cisco Call Manager CTLProvider Heap Overflow Vulnerability</title>
<description>TPTI-08-02: Cisco Call Manager CTLProvider Heap Overflow Vulnerability http://dvlabs.tippingpoint.com/advisory/TPTI-08-02 January 16, 2008 -- CVE ID:</description>
<pubDate>16 Jan  2008 12:12:32 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26763</link>
</item><item>
<title>Country by Country Computer Sets now available for ISA 2004</title>
<description>I&amp;#039;ve updated the HoG site to include Country-by-country sets for ISA 2004 for those still using that version of the product. http://hammerofgod.com/d</description>
<pubDate>16 Jan  2008 12:00:25 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26761</link>
</item><item>
<title>Peers static overflow in BitTorrent 6.0 and uTorrent 1.7.5</title>
<description>#######################################################################                Luigi Auriemma Applications: BitTorrent and uTo</description>
<pubDate>16 Jan  2008 10:47:28 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26760</link>
</item><item>
<title>mcGuestbook v1.2 Remote File Inc.</title>
<description>Author: BLaSTER a.K.a Gokhan Title: mcGuestbook v1.2 Remote File Inc. Download: http://www.hotscripts.com/jump.php?listing_id=13439&amp;amp;jump_type=1 Contac</description>
<pubDate>16 Jan  2008 10:44:01 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26759</link>
</item><item>
<title>Cisco Security Advisory: Cisco Unified Communications Manager CTL Provider Heap Overflow</title>
<description>-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Cisco Security Advisory: Cisco Unified Communications Manager CTL Provider Heap Overflow Document ID:</description>
<pubDate>16 Jan  2008 08:15:00 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26758</link>
</item><item>
<title>RichStrong CMS (showproduct.asp?cat=) Remote SQL Injection Exploit</title>
<description>[+] Info: [~] Software: RichStrong CMS [~] HomePage: http://www.hzrich.cn [~] Exploit: Remote Sql Injection [High] [~] Where: showproduct.asp?cat= [~</description>
<pubDate>16 Jan  2008 03:36:08 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26748</link>
</item><item>
<title>[DSECRG-08-003] blogcms 4.2.1b Multiple Security Vulnerabilities</title>
<description>Digital Security Research Group [DSecRG] Advisory    #DSECRG-08-003  Application:          Blogcms Versions Affected:       Blogc</description>
<pubDate>16 Jan  2008 03:02:40 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26747</link>
</item><item>
<title>[DSECRG-08-002] Local File Include in arias 0.99-6</title>
<description>Digital Security Research Group [DSecRG] Advisory    #DSECRG-08-002  Application:          aria-0.99-6 (Web based ERP) Versions Affected</description>
<pubDate>16 Jan  2008 02:37:35 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26753</link>
</item><item>
<title>Re: what is this?</title>
<description>Just to add to what has already passed, Security Focus has put up this article regarding this issue. http://www.securityfocus.com/news/11501 ys On 1</description>
<pubDate>16 Jan  2008 00:57:44 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26745</link>
</item><item>
<title>cPanel Hosting Manager (dohtaccess.html)</title>
<description>Aria-Security Team http://Aria-Security.Net ----------------------------------- Vendor: http://cPanel.com cPanel Hosting Manager (dohtaccess.html) Cro</description>
<pubDate>15 Jan  2008 20:09:29 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/bugtraq/bugtraq/26750</link>
</item>
</channel>
</rss>
