Current Activity Calendar
| May 01, 2006 - Current ActivityThis is an archived copy of current activity, if you would like to see the most recent version, please click here.
Public Exploit Code for a Vulnerability in Sendmail added April 19, 2006 | updated April 20, 2006 US-CERT is aware of publicly available exploit code for a race condition vulnerability in Sendmail. US-CERT does not believe that this exploit code works at this time. More information about the reported vulnerability can be found in the following:
US-CERT recommends the following actions to mitigate the security risks:
We will continue to update current activity as more information becomes available. Active Exploitation of Cross-site Scripting Vulnerability in eBay.com added April 3, 2006 | updated April 13, 2006 US-CERT is aware of an active exploitation of a cross-site scripting vulnerability in the eBay website. Successful exploitation may allow an attacker to take various actions, including the following:
More information about the reported vulnerability can be found in the following:
Until a practical solution or more information becomes available, US-CERT recommends the following:
We will continue to update current activity as more information becomes available. Exploit for Vulnerability in Microsoft Internet Explorer added March 22, 2006 | updated April 12, 2006 US-CERT is aware of an active exploitation of a vulnerability in the way Microsoft Internet Explorer handles certain DHTML methods. By persuading a user to access a specially crafted webpage, a remote, unauthenticated attacker may be able to execute arbitrary code on that user's system, or cause Internet Explorer to stop functioning. More information about the reported vulnerability can be found in the following US-CERT Vulnerability Note:
Known attack vectors for this vulnerability require that Active Scripting is enabled in Internet Explorer. Disabling Active Scripting will reduce the chances of exploitation. US-CERT recommends the following:
|
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||
Information For
Sign Up
Reporting

Mailing Lists & Feeds
