Current Activity Calendar
| March 14, 2008 - Current ActivityThis is an archived copy of current activity, if you would like to see the most recent version, please click here.Websites Compromised Through SQL Injectionadded March 13, 2008 at 12:04 pm | updated March 14, 2008 at 06:01 pm
US-CERT has seen reports of an attack that has compromised a large number of legitimate websites. The reports indicate that attackers are modifying the sites and embedding a reference to JavaScript code. Users who visit one of these infected websites may unknowingly execute malicious code. This code attempts to exploit known vulnerabilities for which patches are available but may not have been applied to the victim's system.
Search Engine IFRAME Injection Attacksadded March 14, 2008 at 05:45 pm | updated March 14, 2008 at 06:00 pm
US-CERT has seen reports of attacks using specially crafted URLs that inject IFRAMEs as terms into search engines on legitimate websites. The affected URLs include popular search terms, and may be returned as high ranking results in internet search engines. If the site hosting the search engine is vulnerable to cross-site scripting, users who follow the affected URLs may be unknowingly redirected to malicious websites. These sites may then attempt to exploit web browser vulnerabilities, entice users to download and install malicious code, or display unsolicited advertisements.
Microsoft Updates March Security Bulletinadded March 14, 2008 at 06:00 pm
Microsoft has made revisions to all of the March Security Bulletins. These revisions
US-CERT encourages users to review the updated March Security Bulletins and apply any necessary updates. Cisco Releases Security Advisory to Address Multiple Vulnerabilitiesadded March 12, 2008 at 03:50 pm
Cisco has released Security Advisory cisco-sa-20080312-ucp to address multiple vulnerabilities in the Cisco Secure Access Control Server for Windows User-Changeable Password (UCP) application. These vulnerabilities are due to buffer overflow conditions and improper sanitization of input passed to CSuserCGI.exe. Exploitation of these vulnerabilities may allow a remote, unauthenticated attacker to execute arbitrary code. Adobe Releases Security Bulletins to Address Multiple Vulnerabilitiesadded March 12, 2008 at 03:50 pm
Adobe has issued six security bulletins to address multiple vulnerabilities in the following Adobe products:
US-CERT will provide more information as it becomes available. RealPlayer ActiveX Vulnerabilityadded March 11, 2008 at 09:51 am | updated March 11, 2008 at 02:14 pm
US-CERT is aware of reports of a vulnerability in RealPlayer. This vulnerability is due to improper handling of the "Console" property in the RealPlayer ActiveX control (rmoc3260.dll). Exploitation of this vulnerability may allow a remote, unauthenticated attacker to execute arbitrary code.
{224E833B-2CC6-42D9-AE39-90B6A38A4FA2} {2F542A2E-EDC9-4BF7-8CB1-87C9919F7F93} {3B46067C-FD87-49B6-8DDD-12F0D687035F} {3B5E0503-DE28-4BE8-919C-76E0E894A3C2} {44CCBCEB-BA7E-4C99-A078-9F683832D493} {A1A41E11-91DB-4461-95CD-0C02327FD934} {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA}
Microsoft Releases March Security Bulletinadded March 11, 2008 at 01:54 pm
Microsoft has released updates to address vulnerabilities in Microsoft Excel, Outlook, Office, and Office Web Components as part of the Microsoft Security Bulletin Summary for March 2008. All of these vulnerabilities could allow an attacker to execute arbitrary code. Trojan Exploiting Microsoft Excel Vulnerabilityadded March 10, 2008 at 03:25 pm | updated March 11, 2008 at 01:39 pm
US-CERT is aware of public reports of a trojan that may exploit a vulnerability in Microsoft Excel. This trojan is circulating through email messages that contain attached Excel files. Known file names for these attachments are OLYMPIC.XLS and SCHEDULE.XLS. These files may also contain Windows binary executables that can compromise an affected system.
GNOME Evolution Vulnerabilityadded March 7, 2008 at 09:18 am
US-CERT is aware of a vulnerability in GNOME Evolution. This vulnerability, which is caused by a format string error in the "emf_multipart_encrypted()" function in mail/em-format.c, occurs when displaying data from an encrypted email message. By convincing a user to select a specially crafted email message, a remote, authenticated attacker may be able to execute arbitrary code. Sun Java SE Updatesadded March 6, 2008 at 09:00 am | updated March 6, 2008 at 04:22 pm
Sun has released updates for Java SE. These updates address multiple vulnerabilities in Java Web Start, Java JDK, Java JRE, and Java SDK. These vulnerabilities may allow a remote attacker to execute arbitrary code, bypass security restrictions, or cause a denial-of-service condition.
US-CERT will provide additional information as it becomes available. |
|||||||||||||||||||||||||||||||||||||||||||||||||||||
Information For
Sign Up
Reporting
DHS Threat Advisory
The threat level in the airline sector is High or Orange. Read more

Mailing Lists & Feeds
