default security advisory

Microsoft warns of ActiveX attack targetting Access

News Microsoft issued a security advisory on Monday warning about targeted attacks that exploit a hole in the ActiveX control for the Snapshot Viewer in the Microsoft Access database-management system.... [08 Jul 2008]

Cisco Security Advisory: Cisco IOS Secure Shell Denial of Service Vulnerabilities

White Paper The IOS SSH server is an optional service that is disabled by default, but its use is highly recommended as a security best practice for management of Cisco IOS devices. The Secure Shell server (SSH)... [12 Jun 2008]

Cisco Security Advisory: CBOS Web-based Configuration Utility Vulnerability

White Paper Any router in the Cisco 600 series family can be made unresponsive by a large amount of HTTP traffic accessing the web-based configuration utility on the router; additionally the web-based configuration utility is enabled by... [10 Apr 2008]

Cisco plugs DoS hole

News The vulnerabilities are found in a third-party cryptographic library in Cisco IOS, Cisco IOS XR, Cisco PIX and ASA Security Appliances, Cisco Firewall Module and Cisco Unified CallManager products, according to a... [25 May 2007]

Alert over "extremely critical" XML bug

News People running Windows Server 2003 and 2003 Service Pack 1 in the default configuration with the Enhanced Security Configuration turned on aren't affected, Microsoft said. An "extremely critical"... [07 Nov 2006]

Oracle issues hefty security fix

News In addition to the security fixes, Oracle said it has made "significant" changes to an existing tool that checks for default accounts and passwords. As part of its quarterly patch cycle, Oracle on... [19 Apr 2006]

Buggy Windows patch backfires on the security-minded

News Security-conscious Windows users who tweaked the operating system to protect their PCs better are getting hit hardest by a flawed Microsoft patch, experts said on Monday. Those changes aren't common, but have been... [18 Oct 2005]

Critical Windows patch causes 'serious problems'

News A Microsoft patch meant to fix critical security flaws in Windows 2000, Windows XP and Windows Server 2003 is causing trouble for some users, the company said on Friday. The patch was delivered with Microsoft... [17 Oct 2005]

Firefox flaw warning for Linux users

News Users running Firefox on Linux may be vulnerable to a security vulnerability that can be exploited to compromise the user's system. Security firm Secunia warned on Tuesday that a flaw rated as "extremely... [22 Sep 2005]

Microsoft finds malicious attack flaw

News Microsoft has issued an "important" Windows security fix as part of its monthly patch cycle, tackling a script injection vulnerability that could allow an attacker to take over a PC. The software giant has also published... [11 May 2005]

Protect yourself from 'Google hacking'

News Security experts are predicting a massive increase this year in so-called 'Google hacking', where malicious internet users or worms use the search engine to discover resources that are not intended for public consumption. [14 Jan 2005]

Roll over IE...Firefox 1.0 is here

News The Computer Emergency Readiness Team (CERT), the computer threats division of the US Department of Homeland Security, issued an advisory urging Americans to consider ditching IE in favour of its... [09 Nov 2004]

Cisco Security Advisory: Cisco IOS Malformed BGP Packet Causes Reload

White Paper The BGP protocol is not enabled by default, and must be configured in order to accept traffic from an explicitly defined peer. A Cisco device running IOS and enabled for the Border Gateway Protocol (BGP) is vulnerable to... [11 Oct 2004]

Cisco Security Advisory: Cisco IOS Interface Blocked by IPv4 Packets

White Paper Processing of IPv4 packets is enabled by default. Cisco routers and switches running Cisco IOS software and configured to process Internet Protocol version 4 (IPv4) packets are vulnerable to a Denial of Service (DoS)... [07 Oct 2004]

Cisco Security Advisory: Cisco IOS Malformed OSPF Packet Causes Reload

White Paper The OSPF protocol is not enabled by default. A Cisco device running Internetwork Operating System (IOS) and enabled for the Open Shortest Path First (OSPF) protocol is vulnerable to a Denial of Service (DoS) attack from... [07 Oct 2004]

RSS Keep updated for stories matching default security advisory via RSS


Quick Sitemap Links: