BuyLow.com Computers And Internet - Internet Security, Computers, Mobile Devices, Networks


BuyLow.com | Resources | Contact Us


 

Beware Of USB Flash drives

1.If you find a USB token in the wild, don’t plug it into your USB port as it could autoinstall software if your system is set to autoplay CDROMs.
2.Though many organizations’ standards call for disabling autoplay of CDROMs, you should check and set yours. To disable autoplay follow these instructions (for WinXP):
Open My Computer
Right click [...]

Read More About - Beware Of USB Flash drives »

Microsoft Security Bulletin

Microsoft has released an update to address vulnerabilities in Microsoft Windows, Office, and Internet Explorer as part of the Microsoft Security Bulletin Summary for June 2009. These vulnerabilities may allow an attacker to execute arbitrary code, operate with elevated privileges, or obtain sensitive information.

Read More About - Microsoft Security Bulletin »

Microsoft Windows, Office and Internet Explorer

Microsoft has released updates to address vulnerabilities in Microsoft Windows, Office, Internet Explorer, and Forefront Edge Security as part of the Microsoft Security Bulletin Summary for April 2009. These vulnerabilities may allow an attacker to execute arbitrary code, cause a denial-of-service condition, or operate with escalated privileges.
Microsoft Windows Malicious Software Removal Tool
Microsoft has released an [...]

Read More About - Microsoft Windows, Office and Internet Explorer »

Microsoft Updates for Multiple Vulnerabilities

Systems Affected:
* Microsoft Internet Explorer
* Microsoft Office Visio
* Microsoft Exchange and SQL Server
Overview
Microsoft has released updates that address vulnerabilities in Microsoft Windows and Windows Server.
I. Description
As part of the Microsoft Security Bulletin Summary for February 2009, Microsoft released updates to address vulnerabilities that affect Microsoft Windows, Internet Explorer, Exchange Server, SQL Server, Office, and other [...]

Read More About - Microsoft Updates for Multiple Vulnerabilities »

Microsoft Windows Does Not Disable AutoRun Properly

National Cyber Alert System
Technical Cyber Security Alert TA09-020A
Microsoft Windows Does Not Disable AutoRun Properly
Source: US-CERT
Systems Affected
Microsoft Windows
Overview
Disabling AutoRun on Microsoft Windows systems can help prevent the spread of malicious code. However, Microsoft’s guidelines for disabling AutoRun are not fully effective, which could be considered a vulnerability.
I. Description
Microsoft Windows includes an AutoRun feature, which can automatically [...]

Read More About - Microsoft Windows Does Not Disable AutoRun Properly »

RSS BugTraq

  • Vulnerabilities in CMS WebManager-Pro
    Posted by MustLive on Sep 02Hello Bugtraq! I want to warn you about SQL Injection and Redirector (URL Redirector Abuse) vulnerabilities in CMS WebManager-Pro (SecurityVulns ID:11108). It's Ukrainian commercial CMS. SQL Injection: http://site/c.php?id=1%20and%20version()=5 Redirector: http://site/c.php?id=1&url=http://websecurity.com.ua Affected prod […]
  • {PRL} Novell Netware OpenSSH Remote Stack Overflow
    Posted by Francis Provencher on Sep 02##################################################################################### Application: Novell Netware OpenSSH Remote Stack Overflow Platforms: Netware 6.5 Exploitation: Remote code execution CVE Number: Novell TID: 7006756 ZeroDayInitiative: ZDI-10-169 Author: Francis Provencher (Protek Research Lab's) B […]
  • Moovida Media Player version 2.0.0.15 Insecure DLL Hijacking Vulnerability (libc.dll,quserex.dll)
    Posted by YGN Ethical Hacker Group on Sep 021. OVERVIEW The Moovida Media Player application is vulnerable to Insecure DLL Hijacking Vulnerability. Similar terms that describe this vulnerability have been come up with Remote Binary Planting, Unsafe Library Loading, and Insecure DLL Loading/Injection/Hijacking/Preloading. 2. PRODUCT DESCRIPTION Moovida Media […]
  • [ MDVSA-2010:168 ] openssl
    Posted by security on Sep 02 _______________________________________________________________________ Mandriva Linux Security Advisory MDVSA-2010:168 http://www.mandriva.com/security/ _______________________________________________________________________ Package : openssl Date : September 1, 2010 Affected: 2010.1 _____________________________________________ […]
  • [ MDVSA-2010:169 ] mozilla-thunderbird
    Posted by security on Sep 02 _______________________________________________________________________ Mandriva Linux Security Advisory MDVSA-2010:169 http://www.mandriva.com/security/ _______________________________________________________________________ Package : mozilla-thunderbird Date : September 2, 2010 Affected: 2008.0, 2009.0, 2010.0, 2010.1 _________ […]