Browser Security News

The Site for Web Browser Security Information

Welcome to Browser Security News

Because Web Browser Security Matters!

 

Your news resource for Internet Explorer, Firefox, Opera and Safari security news vulnerabilities, virus and other important information.

Categories

Archives

Feeds

R-339: Quiksoft EasyMail SMTP ActiveX Vulnerabilities

The Quiksoft EasyMail SMTP ActiveX control contains multiple stack buffer overflow vulnerabilities, which could allow a
remote, unauthenticated attacker to execute arbitrary code on a vulnerable system. The risk is MEDIUM. Could allow a remote,
unauthenticated attacker to execute arbitrary code on a vulnerable system.

Read More…
Source: CIAC

Posted on August 31st, 2007 in CIAC, Latest News | No Comments »

IE7 (for Vista) and Firefox remote code execution

For interested person. Full-Disclosure - We believe in it. Charter: Hosted and sponsored by Secunia -

Read More…
Source: Full Disclosure

Posted on August 31st, 2007 in Firefox | No Comments »

Trojan-Dropper.Win32.Small.dl

This Trojan has a malicious payload. It is a Windows PE EXE file. It is 24 576 bytes in size. It is written in C++.
Installation
When launched, the Trojan copies its executable file to the Windows system directory under the original file name.
%System%\<original name of Trojan file>
In…

Read More…
Source: VirusList.com

Posted on August 31st, 2007 in Latest News, Virus | No Comments »

Trojan-PSW.Win32.Nilage.a

This Trojan is one of a family of Trojans which steals user passwords. It is a Windows PE EXE file. It is 52 925 bytes in size. It is packed using FSG.
Installation
When launched, the Trojan copies its executable file to the following directory:
%Program Files%\rundll32.exe
The Trojan also…

Read More…
Source: VirusList.com

Posted on August 31st, 2007 in Latest News, Virus | No Comments »

Trojan-Dropper.VBS.Bomgen.r

This Trojan installs other malicious programs to the victim machine without the knowledge or consent of the user. It is written in Visual Basic Script. It is approximately 8KB in size.

Read More…
Source: VirusList.com

Posted on August 31st, 2007 in Latest News, Virus | No Comments »

Vuln: eCentrex VOIP Client UACOMX.OCX ActiveX Control Buffer Overflow Vulnerability

eCentrex VOIP Client UACOMX.OCX ActiveX Control Buffer Overflow Vulnerability

Read More…
Source: Security Focus

Posted on August 30th, 2007 in Latest News | No Comments »

Vuln: Apple Safari Beta Same Origin Policy Violation Vulnerability

Apple Safari Beta Same Origin Policy Violation Vulnerability
>> Advertisement <<
ALERT: “How A Hacker Launches A Blind SQL Injection Attack Step-by-Step”!” - White Paper
Blind SQL Injection can deliver total control of your server to a hacker giving them the ability to read, write and manipulate all data stored in your backend systems! Download this *FREE* white paper from SPI Dynamics for a complete guide to protection!
https://download.spidynamics.com/1/ad/bsq.asp?Campaign_ID=701600000004c29

Read More…
Source: Security Focus

Posted on August 30th, 2007 in Latest News | No Comments »

Bugtraq: iDefense Security Advisory 08.30.07: Yahoo Messenger YVerInfo.dll ActiveX Multiple Remote Buffer Overflow Vulnerabilities

iDefense Security Advisory 08.30.07: Yahoo Messenger YVerInfo.dll ActiveX Multiple Remote Buffer Overflow Vulnerabilities

Read More…
Source: Security Focus

Posted on August 30th, 2007 in Latest News | No Comments »

iDefense Security Advisory 08.30.07: Yahoo Messenger YVerInfo.dll ActiveX Multiple Remote Buffer Overflow Vulnerabilities

Yahoo Messenger YVerInfo.dll ActiveX Multiple Remote Buffer Overflow Vulnerabilities iDefense Security Advisory 08.30.07 Aug 30, 2007 I. BACKGROUND Yahoo! Messenger is a instant messaging application that allows users to chat online, share files, conduct PC to PC calls and more. More …

Read More…
Source: Full Disclosure

Posted on August 30th, 2007 in Latest News | No Comments »

SUSE Security Announcement: Opera (SUSE-SA:2007:050)

SUSE Security Announcement Package: opera Announcement ID: SUSE-SA:2007:050 Date: Thu, 30 Aug 2007 12:00:00 0000 Affected Products: SUSE LINUX 10.0 SUSE LINUX 10.1 openSUSE 10.2 Vulnerability Type: remote code execution Severity (1-10): 8 SUSE Default Package: no Cross-References: CVE-2007-4367 …

Read More…
Source: Full Disclosure

Posted on August 30th, 2007 in Opera | No Comments »

« Previous Entries