Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2005-1992
Description:The XMLRPC server in utils.rb for the ruby library (libruby) 1.8 sets an invalid default value that prevents "security protection" using handlers, which allows remote attackers to execute arbitrary commands.
Test IDs: 1.3.6.1.4.1.25623.1.0.53092   1.3.6.1.4.1.25623.1.0.54486   1.3.6.1.4.1.25623.1.0.65620   1.3.6.1.4.1.25623.1.0.53084   1.3.6.1.4.1.25623.1.0.54342   1.3.6.1.4.1.25623.1.0.53873   1.3.6.1.4.1.25623.1.0.53971   1.3.6.1.4.1.25623.1.0.53083   1.3.6.1.4.1.25623.1.0.54319   1.3.6.1.4.1.25623.1.0.55074   1.3.6.1.4.1.25623.1.0.54986  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2005-1992
http://lists.apple.com/archives/security-announce/2005/Sep/msg00002.html
AUSCERT Advisory: ESB-2005.0732
http://www.auscert.org.au/5509
BugTraq ID: 14016
http://www.securityfocus.com/bid/14016
CERT/CC vulnerability note: VU#684913
http://www.kb.cert.org/vuls/id/684913
Computer Incident Advisory Center Bulletin: P-312
http://www.ciac.org/ciac/bulletins/p-312.shtml
Debian Security Information: DSA-748 (Google Search)
http://www.debian.org/security/2005/dsa-748
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10819
RedHat Security Advisories: RHSA-2005:543
http://www.redhat.com/support/errata/RHSA-2005-543.html
http://secunia.com/advisories/16920/
SuSE Security Announcement: SUSE-SR:2005:018 (Google Search)
http://www.novell.com/linux/security/advisories/2005_18_sr.html




© 1998-2024 E-Soft Inc. All rights reserved.