stargeek
PHP news website logo.
home    PHP scripts    articles    seo tools    links    search    contact    shop    realtors


Arbitrary file overwrite possible by Musicmatch ActiveX control







Arbitrary file overwrite possible by
Musicmatch ActiveX control

Arbitrary file overwrite possible by
Musicmatch ActiveX control
04/15/2005 03:49 PM

Posted by Hyperdose Security, Apr 15 2005




This is a GrokNews Entry: (what is grok?)





Similar Items

Arbitrary file overwrite possible by Musicmatch ActiveX control

Grok Headline matches for Arbitrary file overwrite possible by Musicmatch ActiveX control

Mac OS X Arbitrary File Overwrite via
Core Files


Mac OS X Arbitrary File Overwrite via
Core Files
10/28/2003 11:06 PM
_at_stake Advisories (Oct 28 2003)

Mozilla 1.6 ActiveX Control Installer
and Scriptable ActiveX Plugin for
Mozilla 1.6 Released


Mozilla 1.6 ActiveX Control Installer
and Scriptable ActiveX Plugin for
Mozilla 1.6 Released
01/22/2004 02:39 AM

Comcast(tm) Email Manager allows
arbitrary java and activex code
execution


Comcast(tm) Email Manager allows
arbitrary java and activex code
execution
07/22/2004 01:32 PM
Michael Scheidell (Jul 22 2004)

iDEFENSE Security Advisory 04.07.05: SGI
IRIX gr_osview File Overwrite
Vulnerability


iDEFENSE Security Advisory 04.07.05: SGI
IRIX gr_osview File Overwrite
Vulnerability
04/07/2005 10:50 PM
Posted by iDEFENSE Labs, Apr 07 2005

ActiveX control download and redirection


ActiveX control download and redirection 06/15/2004 01:41 PM
Martijn Brinkers (Jun 15 2004)

LCARS ActiveX Control Package


LCARS ActiveX Control Package 12/19/2003 01:09 PM
Official successor announced

MS security check requires ActiveX
control


MS security check requires ActiveX
control
08/09/2004 03:21 PM
i'm running the beta of SP2, and it told me visiting this page might be unsafe.

[SNS Advisory No.72] Symantec Norton
AntiVirus 2004 ActiveX Control
Vulnerability


[SNS Advisory No.72] Symantec Norton
AntiVirus 2004 ActiveX Control
Vulnerability
05/21/2004 01:00 PM
snsadv (May 20 2004)

Office 2003: Adding an ActiveX Control
to a Smart Document Sample


Office 2003: Adding an ActiveX Control
to a Smart Document Sample
12/03/2003 12:40 AM
Use this Visual Studio .NET sample in conjunction with the article, "Adding an ActiveX Control to a Smart Document" available on MSDN to learn how to embed a calendar control into the task pane of a smart document. This sample contains the project files and sample code for this task as well as supporting files. To use this sample, see the article, listed in the related links box.

Trojan file issue in Musicmatch software


Trojan file issue in Musicmatch software 04/14/2005 10:14 PM
Posted by Hyperdose Security, Apr 14 2005

Improper log file storage in Musicmatch
software


Improper log file storage in Musicmatch
software
04/15/2005 12:59 PM
Posted by Hyperdose Security, Apr 15 2005

Re: BitDefender Scan Online(ActiveX) -
Remote File Download & Execute & Private
Information Disclosure


Re: BitDefender Scan Online(ActiveX) -
Remote File Download & Execute & Private
Information Disclosure
04/20/2004 02:16 PM
Sami POTIRCA (Apr 20 2004)

BitDefender Scan Online(ActiveX) -
Remote File Download & Execute & Private
Information Disclosure


BitDefender Scan Online(ActiveX) -
Remote File Download & Execute & Private
Information Disclosure
04/19/2004 04:19 PM
Rafel Ivgi, The-Insider (Apr 19 2004)

PHP mcNews arbitrary file inclusion


PHP mcNews arbitrary file inclusion 03/19/2005 03:11 AM
Jonathan Whiteley (Mar 16 2005)

[Opera 7] Arbitrary File Delete
Vulnerability


[Opera 7] Arbitrary File Delete
Vulnerability
12/23/2003 02:10 PM
:: Operash :: (Dec 22 2003)

allery Arbitrary File Upload
Vulnerability


allery Arbitrary File Upload
Vulnerability
08/28/2004 01:14 AM

Direct and Related Links for 'allery Arbitrary File Upload Vulnerability'

“aCiDBiTS has reported a vulnerability in Gallery, potentially allowing malicious people to compromise a vulnerable system. The problem is that “save_photos.php” stores uploaded files in a temporary folder before processing them without checking if they are valid images files. This allows malicious people to upload and execute arbitrary code if the temporary folder is accessible from remote. This has been reported to affect version 1.4.4. Prior versions may also be affected. NOTE: This only affects…

Gallery Arbitrary File Upload
Vulnerability


Gallery Arbitrary File Upload
Vulnerability
08/28/2004 11:25 AM

Direct and Related Links for 'Gallery Arbitrary File Upload Vulnerability'

“aCiDBiTS has reported a vulnerability in Gallery, potentially allowing malicious people to compromise a vulnerable system. The problem is that “save_photos.php” stores uploaded files in a temporary folder before processing them without checking if they are valid images files. This allows malicious people to upload and execute arbitrary code if the temporary folder is accessible from remote. This has been reported to affect version 1.4.4. Prior versions may also be affected. NOTE: This only affects…

SkySof Software Releases PDFViewer OCX -
a Powerful ActiveX Control for Software
Developers Which Allows Their
Applications to Display and Interact
With PDF Files


SkySof Software Releases PDFViewer OCX -
a Powerful ActiveX Control for Software
Developers Which Allows Their
Applications to Display and Interact
With PDF Files
06/24/2005 04:28 PM
PDFViewer OCX is a powerful ActiveX component for software developers. PDFViewer OCX gives programmers full control over interacting with and displaying Adobe® Acrobat® PDF files from within their applications. [PRWEB Jun 23, 2005]

Arbitrary file overwriting in Unreal
engine through UMOD


Arbitrary file overwriting in Unreal
engine through UMOD
04/22/2004 08:08 PM
Luigi Auriemma (Apr 22 2004)

SEC-CONSULT SA20050602-1 :: Arbitrary
File Inclusion in phpCMS 1.2.x


SEC-CONSULT SA20050602-1 :: Arbitrary
File Inclusion in phpCMS 1.2.x
06/05/2005 11:39 PM
Posted by Bernhard Müller, Thursday, 2 June

Vulnerability: Arbitrary File Access &
DoS in Crystal Reports


Vulnerability: Arbitrary File Access &
DoS in Crystal Reports
06/08/2004 03:27 PM
Imperva Application Defense Center (Jun 08 2004)

PHP Remote Arbitrary Location File
Upload Vulnerability


PHP Remote Arbitrary Location File
Upload Vulnerability
12/25/2004 04:47 PM

OpenText FirstClass 8.0 Client Arbitrary
File Execution


OpenText FirstClass 8.0 Client Arbitrary
File Execution
04/11/2005 01:45 PM
Posted by dila, Apr 07 2005

Create/modify a UNIX file with an
arbitrary timestamp


Create/modify a UNIX file with an
arbitrary timestamp
04/09/2004 08:03 PM
Tech-Recipes Apr 10 2004 0:12AM GMT

[DR001] AppleWebKit XMLHttpRequest
arbitrary file disclosure vulnerability


[DR001] AppleWebKit XMLHttpRequest
arbitrary file disclosure vulnerability
04/16/2005 02:52 PM
Posted by David Remahl, Apr 15 2005

Opera Skinned : Arbitrary File Dropping
And Execution (Advisory)


Opera Skinned : Arbitrary File Dropping
And Execution (Advisory)
11/12/2003 01:14 PM
S G Masood (Nov 12 2003)

Microsoft Windows "desktop.ini"
Arbitrary File Execution Vulnerability


Microsoft Windows "desktop.ini"
Arbitrary File Execution Vulnerability
05/18/2004 01:31 PM
Roozbeh Afrasiabi has reported a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. The problem is that "desktop.ini" files may contain CLSID references to arbitrary executables in the "[.ShellClassInfo]" section. This can be exploited to execute arbitrary files with another user's privileges when the user browses a folder containing a malicious "desktop.ini" file.

QNX crrtrap arbitrary file read/write
vulnerability [RLSA_06-2004]


QNX crrtrap arbitrary file read/write
vulnerability [RLSA_06-2004]
12/29/2004 02:18 PM
Julio Cesar Fort (Dec 28 2004)

[SCSA-026] DUWARE Products Admin Access
and Arbitrary File Upload Vulnerability


[SCSA-026] DUWARE Products Admin Access
and Arbitrary File Upload Vulnerability
01/22/2004 02:58 AM
advisory_at_security-corporation.com (Jan 20 2004)

ZH2004-06SA (security advisory):
ShopCartCGI v2.3 Remote arbitrary file
retrieving


ZH2004-06SA (security advisory):
ShopCartCGI v2.3 Remote arbitrary file
retrieving
02/17/2004 01:05 PM
ZetaLabs (Feb 17 2004)

Microsoft Internet Explorer Unspecified
CHM File Processing Arbitrary Code
Execution Vulnerability (bid 9658)


Microsoft Internet Explorer Unspecified
CHM File Processing Arbitrary Code
Execution Vulnerability (bid 9658)
02/19/2004 12:47 PM
K-OTiK Security (Feb 18 2004)

Vulnerabilities: Microsoft Internet
Explorer Unspecified CHM File Processing
Arbitrary Code Execution Vulnerab


Vulnerabilities: Microsoft Internet
Explorer Unspecified CHM File Processing
Arbitrary Code Execution Vulnerab
02/16/2004 05:30 PM
SecurityFocus Feb 16 2004 9:14PM GMT

ZH2004-02SA (security advisory): PJ CGI
Neo review (NeoBoard review) Remote
arbitrary file retrieving


ZH2004-02SA (security advisory): PJ CGI
Neo review (NeoBoard review) Remote
arbitrary file retrieving
01/01/2005 04:55 AM
ZetaLabs (Jan 29 2004)

phpBB Upload Script "up.php" Arbitrary
File Upload


phpBB Upload Script "up.php" Arbitrary
File Upload
04/08/2005 08:16 PM
Posted by Status-x, Apr 07 2005

File Sharing Tips from the Newest Take
Control Ebook (09-Feb-2004; 9.6K)


File Sharing Tips from the Newest Take
Control Ebook (09-Feb-2004; 9.6K)
02/10/2004 02:43 AM

Setting Event Logs to Overwrite as
Needed


Setting Event Logs to Overwrite as
Needed
07/07/2004 01:21 AM

[ GLSA 200409-32 ] getmail: Filesystem
overwrite vulnerability


[ GLSA 200409-32 ] getmail: Filesystem
overwrite vulnerability
09/24/2004 02:21 PM
Sune Kloppenborg Jeppesen (Sep 23 2004)

Lame crash in qmail-smtpd and memory
overwrite according to gdb, yet still
qmail much better than windows


Lame crash in qmail-smtpd and memory
overwrite according to gdb, yet still
qmail much better than windows
01/19/2004 03:07 PM
Serafino Sorrenti (Jan 18 2004)

Wx-ActiveX-0.02


Wx-ActiveX-0.02 03/14/2003 11:07 PM

Grok Description matches for Arbitrary file overwrite possible by Musicmatch ActiveX control
GrokA matches for Arbitrary file overwrite possible by Musicmatch ActiveX control

Arbitrary file overwrite possible by Musicmatch ActiveX control

The following phrases have been identified by the grok system as matching this entry:

















Also check out:


Grok

Ipod Porn on the
Rise

Brief Abstract of
Wikipedia's
Mesothelioma Cancer
page

Get first aid
instructions in your
cell phone

IE is crap
JSPWiki gains
podcasting support

myBloggie 2.1.1
[ GLSA 200504-14 ]
monkeyd: Multiple
vulnerabilities

Vulnerabilities in
sphpblog

[ECHO_ADV_12$2005]
Vulnerabilities in
sphpblog

Mafia Blog
Fill 'Er Up with
Wi-Fi (Again)

The US isn't really
a theocracy.

Gasoline Price Hikes
Take Toll on U.S.
Consumers (Reuters)

Accused Atlanta
Shooter Returns to
Court (Reuters)

G7 Officials Say
World Can Adapt to
Higher Oil (Reuters)

Bush, First Lady
Paid $207,307 in
Taxes Last Year
(Reuters)

Fan-Sheffield
Confrontation
Investigated (AP)

Bushes Report Gross
Income of
$784,219 (AP)

Utah Man Pleads
Guilty to Murdering
Wife (AP)

Millions Race to
Beat Tax-Day
Deadline (AP)

Dow Tumbles 198 on
Economic Worries
(AP)

Earnings Miss at IBM
Pounds Tech Stocks
(AP)

Microsoft Offers
Sneak Peek at
Longhorn
(NewsFactor)

The SCO Boomerang
and the Strength of
Linux (NewsFactor)

Global PC Shipments
Up 10 Percent in
First Quarter
(Reuters)

Study: China Tops in
Net Censorship
(NewsFactor)

Wanted: Original
Copy of 'Moore's
Law' (AP)

Polo Resolves
Software 'Glitch'
(AP)

Comcast sued for
handing over
customer data to
RIAA

John Scalzi's Old
Man's War free for
service people in
Iraq/Afghanistan

Amazing unrealized
Russian architecture

Baffling "poultry
internet" video

Boing Boing
nominated for Webby
Awards

Unintentionally
sexual Star Wars
coloring book

Hamster MIDI live
demo on G4 TV today

Tian's car
vandalized shortly
after capturing
crooked tow truck
driver on camera

Stop Smoking Laser
Clinic Frees Teens
from Addiction

IBM signs $125M
telematics deal with
United Arab Emirates

Q1 PC shipments weak
in U.S., strong in
Europe

Q&A: Microsoft's Jim
Allchin talks up
Longhorn

SAP Says Taking
Share From Oracle,
No Merger Plans

Reuters IM back
online after worm
attack

U.S. consumers eye
bundled services

Get ready for the
Air Scooter

Two-factor login not
totally useless

ICANN bosses slam
Net phone regulation

InfoWorld SOA
Executive Forum:
Defining the SOA
Platform

Top Tip: Windows XP
file manager
replacement?

Order of Magnitude
Quiz: Death by moose

DeLay gets spanked
by the old-school
GOP

DeLay news you might
have missed

DBL Browser 2.0a
(Default branch)

trend Rev #40
15/04/2005 (Default
branch)

Monetra 5.0.0
(Default branch)

Centric CRM 3.0
(Stable branch)

what is grok?