<?xml version="1.0" encoding="utf-8"?>
<!--  RSS generated by Flaimo.com RSS Builder [2010-09-07 13:33:33]  --> <rss version="2.0" xmlns:im="http://purl.org/rss/1.0/item-images/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" >
<channel>
<pubDate>Tue, 07 Sep 2010 13:33:33 +0800</pubDate>
<lastBuildDate>Tue, 07 Sep 2010 13:33:33 +0800</lastBuildDate>
<docs>http://www.nosec.org/</docs>
<description>Web应用安全，尽在诺赛科技，诺赛科技是Web应用安全专家,为你提供：Web Application Security,SQL注入,SQL Injection,Web安全,网站安全,网站漏洞,XSS,JSky,Pangolin,帮您发现并解决网络中存在的各种安全隐患.</description>
<link>http://www.nosec.org/</link>
<title>技术研究(Research)-诺赛科技技术站</title>
<image>
<title>技术研究(Research)-诺赛科技技术站</title>
<url>http://www.nosec.org/images/logo.gif</url>
<link>http://www.nosec.org/</link>
<description>Web应用安全，尽在诺赛科技，诺赛科技是Web应用安全专家,为你提供：Web Application Security,SQL注入,SQL Injection,Web安全,网站安全,网站漏洞,XSS,JSky,Pangolin,帮您发现并解决网络中存在的各种安全隐患.</description>
</image>
<webMaster>http://www.nosec.org/</webMaster>
<generator>http://www.nosec.org/</generator>
<category>诺赛科技技术站</category>
<ttl>60</ttl>
<dc:creator>http://www.nosec.org/</dc:creator>
<dc:date>Tue, 07 Sep 2010 13:33:33 +0800</dc:date>
<sy:updateFrequency>0</sy:updateFrequency>
<sy:updateBase>2010</sy:updateBase>
<item>
<title><![CDATA[Oracle Weblogic 10.3.2 Node Manager fun]]></title>
<link>http://www.nosec.org/2010/0209/395.html</link>
<description><![CDATA[ Time for the final bug in our Week of Web Server bugs.
It is in Vulndisco since Oct, 2008.
 
Oracle Weblogic has an optional Node Manager utility which is used to start/stop server instances from a remo<br /><strong>Tags</strong>:<a href=tag.php?tag=Oracle target='blank'>Oracle</a>&nbsp;&nbsp;<a href=tag.php?tag=Weblogic target='blank'>Weblogic</a>&nbsp;&nbsp;]]></description>
<pubDate>2010-02-09 09:30:54</pubDate>
<guid>http://www.nosec.org/2010/0209/395.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[MySQL yaSSL CertDecoder::GetName Buffer Overflow]]></title>
<link>http://www.nosec.org/2010/0209/396.html</link>
<description><![CDATA[##]]></description>
<pubDate>2010-02-09 09:50:09</pubDate>
<guid>http://www.nosec.org/2010/0209/396.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[TinyMCE WYSIWYG Editor Multiple Vulnerabilities]]></title>
<link>http://www.nosec.org/2010/0209/397.html</link>
<description><![CDATA[ [+] Vurnerebility:	*Js tiny_mce/tiny_mce WYSIWYG{java script} vurnerebility xss--&gt;popup 			*&amp; SQl implemented[+] Language	 :	Java--,Xml[+] lisences	 :	LGPL[+] Vendor	 : 	Moxiecode Systems AB[+] suppo<br /><strong>Tags</strong>:<a href=tag.php?tag=TinyMCE target='blank'>TinyMCE</a>&nbsp;&nbsp;]]></description>
<pubDate>2010-02-09 10:07:20</pubDate>
<guid>http://www.nosec.org/2010/0209/397.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[Joomla Component "com_productbook" SQL Injection Vulnerability]]></title>
<link>http://www.nosec.org/2010/0209/398.html</link>
<description><![CDATA[ Joomla Component &quot;com_productbook&quot; SQL Injection Vulnerability======================================================== ####################################################################.:. Author :<br /><strong>Tags</strong>:<a href=tag.php?tag=Joomla target='blank'>Joomla</a>&nbsp;&nbsp;]]></description>
<pubDate>2010-02-09 10:11:51</pubDate>
<guid>http://www.nosec.org/2010/0209/398.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[Joomla (com_photoblog) Blind Sql Injection Vulnerability]]></title>
<link>http://www.nosec.org/2010/0209/399.html</link>
<description><![CDATA[ Joomla (com_photoblog) Blind Sql Injection Vulnerability======================================================== ####################################################################.:. Author : ALTBT<br /><strong>Tags</strong>:<a href=tag.php?tag=Joomla target='blank'>Joomla</a>&nbsp;&nbsp;]]></description>
<pubDate>2010-02-09 10:14:13</pubDate>
<guid>http://www.nosec.org/2010/0209/399.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[Joomla (Job Component) SQL Injection Vulnerability]]></title>
<link>http://www.nosec.org/2010/0209/400.html</link>
<description><![CDATA[                        [~]&gt;&gt; ...[BEGIN ADVISORY]...                                                                         !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!]]></description>
<pubDate>2010-02-09 10:14:45</pubDate>
<guid>http://www.nosec.org/2010/0209/400.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[Joomla (Yelp Component) SQL Injection Vulnerability]]></title>
<link>http://www.nosec.org/2010/0209/401.html</link>
<description><![CDATA[                        [~]&gt;&gt; ...[BEGIN ADVISORY]...                                                                         !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!]]></description>
<pubDate>2010-02-09 10:15:48</pubDate>
<guid>http://www.nosec.org/2010/0209/401.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[Joomla Component com_dms SQL Injection Vulnerability]]></title>
<link>http://www.nosec.org/2010/0209/402.html</link>
<description><![CDATA[                        /**************************************************************************                                                                         [~] Joomla Component com_dms]]></description>
<pubDate>2010-02-09 10:16:07</pubDate>
<guid>http://www.nosec.org/2010/0209/402.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[Joomla Component JE Event Calendar SQL Injection Vulnerability]]></title>
<link>http://www.nosec.org/2010/0209/403.html</link>
<description><![CDATA[                        [~]&gt;&gt; ...[BEGIN ADVISORY]...                                                                         !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!]]></description>
<pubDate>2010-02-09 10:16:28</pubDate>
<guid>http://www.nosec.org/2010/0209/403.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[Joomla Component com_simplefaq (catid) Blind Sql Injection Vulnerability]]></title>
<link>http://www.nosec.org/2010/0209/404.html</link>
<description><![CDATA[                        Joomla Component com_simplefaq (catid) Blind Sql Injection Vulnerability                                    ====================================================================]]></description>
<pubDate>2010-02-09 10:16:44</pubDate>
<guid>http://www.nosec.org/2010/0209/404.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[eWebeditor ASP Version Multiple Vulnerabilities]]></title>
<link>http://www.nosec.org/2010/0209/405.html</link>
<description><![CDATA[                         #################################################################                                    # Application Info:                                    # Name: eWebeditor<br /><strong>Tags</strong>:<a href=tag.php?tag=eWebeditor target='blank'>eWebeditor</a>&nbsp;&nbsp;]]></description>
<pubDate>2010-02-09 10:17:00</pubDate>
<guid>http://www.nosec.org/2010/0209/405.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[Joomla 1.5.12 read/exec remote files]]></title>
<link>http://www.nosec.org/2010/0209/406.html</link>
<description><![CDATA[                         &lt;?php                                        /*                                            Copyright (c) ITIX LTD                                                             <br /><strong>Tags</strong>:<a href=tag.php?tag=Joomla target='blank'>Joomla</a>&nbsp;&nbsp;]]></description>
<pubDate>2010-02-09 10:20:34</pubDate>
<guid>http://www.nosec.org/2010/0209/406.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[eWebeditor Directory Traversal]]></title>
<link>http://www.nosec.org/2010/0209/407.html</link>
<description><![CDATA[                        #################################################################                                    # Application Info:                                    # Name: eWebeditor<br /><strong>Tags</strong>:<a href=tag.php?tag=eWebeditor target='blank'>eWebeditor</a>&nbsp;&nbsp;]]></description>
<pubDate>2010-02-09 10:21:10</pubDate>
<guid>http://www.nosec.org/2010/0209/407.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[Vulnerability in Oracle 11gR2 allows system privileges for all - Update]]></title>
<link>http://www.nosec.org/2010/0212/414.html</link>
<description><![CDATA[http://www.h-online.com/security/news/item/Vulnerability-in-Oracle-11gR2-allows-system-privileges-for-all-Update-923143.html?view=print<br /><strong>Tags</strong>:<a href=tag.php?tag=oracle target='blank'>oracle</a>&nbsp;&nbsp;]]></description>
<pubDate>2010-02-12 09:38:28</pubDate>
<guid>http://www.nosec.org/2010/0212/414.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[CVE-2009-2693 Apache Tomcat unexpected file deletion and/or alteration]]></title>
<link>http://www.nosec.org/2010/0212/415.html</link>
<description><![CDATA[http://www.securityfocus.com/archive/1/archive/1/509148/100/0/threaded<br /><strong>Tags</strong>:<a href=tag.php?tag=tomcat target='blank'>tomcat</a>&nbsp;&nbsp;<a href=tag.php?tag=war target='blank'>war</a>&nbsp;&nbsp;<a href=tag.php?tag=deploying target='blank'>deploying</a>&nbsp;&nbsp;]]></description>
<pubDate>2010-02-12 09:39:06</pubDate>
<guid>http://www.nosec.org/2010/0212/415.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[PHP 5.2.12/5.3.1 session.save_path safe_mode and open_basedir bypass]]></title>
<link>http://www.nosec.org/2010/0212/418.html</link>
<description><![CDATA[[ PHP 5.2.12/5.3.1 session.save_path safe_mode and open_basedir bypass ] Credit: Grzegorz StachowiakProvided by: SecurityReason.comDate:- Written: 31.01.2010- Public:  11.02.2010 SecurityRisk: MediumA<br /><strong>Tags</strong>:<a href=tag.php?tag=php target='blank'>php</a>&nbsp;&nbsp;<a href=tag.php?tag=session.save_path target='blank'>session.save_path</a>&nbsp;&nbsp;<a href=tag.php?tag=bypass target='blank'>bypass</a>&nbsp;&nbsp;]]></description>
<pubDate>2010-02-12 09:49:44</pubDate>
<guid>http://www.nosec.org/2010/0212/418.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[cint也不安全]]></title>
<link>http://www.nosec.org/2010/0212/419.html</link>
<description><![CDATA[http://t00ls.net/thread-6281-1-1.html?jdfwkey=re0jz3]]></description>
<pubDate>2010-02-12 09:50:15</pubDate>
<guid>http://www.nosec.org/2010/0212/419.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[Sablog-X v2.x 任意变量覆盖漏洞]]></title>
<link>http://www.nosec.org/2010/0223/437.html</link>
<description><![CDATA[http://www.80vul.com/sablog/sablog-x.txt<br /><strong>Tags</strong>:<a href=tag.php?tag=Sablog target='blank'>Sablog</a>&nbsp;&nbsp;<a href=tag.php?tag=%E6%BC%8F%E6%B4%9E target='blank'>漏洞</a>&nbsp;&nbsp;]]></description>
<pubDate>2010-02-23 09:09:20</pubDate>
<guid>http://www.nosec.org/2010/0223/437.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[Sablog-X 2.0 后台管理权限欺骗漏洞]]></title>
<link>http://www.nosec.org/2010/0225/446.html</link>
<description><![CDATA[http://bbs.wolvez.org/topic/124/<br /><strong>Tags</strong>:<a href=tag.php?tag=%E6%BC%8F%E6%B4%9E target='blank'>漏洞</a>&nbsp;&nbsp;<a href=tag.php?tag=%E5%90%8E%E5%8F%B0 target='blank'>后台</a>&nbsp;&nbsp;<a href=tag.php?tag=%E6%9D%83%E9%99%90 target='blank'>权限</a>&nbsp;&nbsp;<a href=tag.php?tag=Sablog-X target='blank'>Sablog-X</a>&nbsp;&nbsp;]]></description>
<pubDate>2010-02-25 10:44:10</pubDate>
<guid>http://www.nosec.org/2010/0225/446.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
<item>
<title><![CDATA[尘月网络企业网站管理系统上传漏洞]]></title>
<link>http://www.nosec.org/2010/0420/496.html</link>
<description><![CDATA[代码：&lt;%<br /><strong>Tags</strong>:<a href=tag.php?tag=%E6%BC%8F%E6%B4%9E target='blank'>漏洞</a>&nbsp;&nbsp;<a href=tag.php?tag=%E4%BC%81%E4%B8%9A%E7%BD%91%E7%AB%99 target='blank'>企业网站</a>&nbsp;&nbsp;<a href=tag.php?tag=%E7%AE%A1%E7%90%86%E7%B3%BB%E7%BB%9F target='blank'>管理系统</a>&nbsp;&nbsp;]]></description>
<pubDate>2010-04-20 09:50:27</pubDate>
<guid>http://www.nosec.org/2010/0420/496.html</guid>
<author>诺赛科技技术站 http://www.nosec.org/</author>
</item>
</channel>
</rss>
