On CBS.com: Elephant fights a group of dogs
2 Resources for

privilege vulnerability

  • Subscribe to this listing via:
  • RSS
  • Email

TechRepublic Resources

Microsoft releases six security bulletins for April
For April's Patch Tuesday, Microsoft released five security bulletins, rating four of them as critical -- and that's in addition to the critical security bulletin it released a week earlier. John McCormick tells you what you need to know about all of April's security bulletins. After canceling March's Patch...
Tags: Microsoft Corp., John McCormick, Microsoft Windows, security bulletin, vulnerability, security, Privilege Vulnerability, IT Locksmith Newsletter, Version, Workaround, Microsoft Windows Vista, Threat, Exploit, CMS Memory Corruption Vulnerability, Operating Systems, Software
Technical articles 2007-04-13
MS07-017: "Vulnerabilities in GDI Could Allow Remote Code Execution"
Microsoft today released a patch for the critical-rated vulnerability in animated cursors that has been widely reported by me in this blog and elsewhere.Microsoft Security Bulletin MS07-017 is a patch for a remote execution vulnerability that is already being exploited.But, in addition to that .ani file vulnerability, this security bulletin...
Tags: Windows Vista, Windows, Vista, Security, Microsoft Update, Microsoft, Ie6, IE
Blog posts 2007-04-03

Additional Resources

Microsoft patches spell happy holidays
That is a firstWell, this is a first from Microsoft, they seem to be always handing out patches for their software. But must admit, I haven't got very many patches through my Automatic Updates, which is good.it ain't over yetGee, it's nice to know that Microsoft doesn't have any...
Tags: buffer-overflow, Buffer-Overflow Vulnerability, Microsoft Corp., Microsoft fan, Microsoft Internet, Microsoft Internet Explorer, Microsoft Windows, patch management, vulnerability
Discussion threads 2004-12-15
Security Update for Visio 2003 Multilingual User Interface Pack (KB909115) (exe)
A security vulnerability exists in Microsoft Office Visio 2003s Korean IME that could allow for elevation of privilege. This update addresses that vulnerability when Visio 2003 is used with a Multilingual User Interface Pack. This version is the first release on CNET Download.com.
Tags: Microsoft Visio, Microsoft Corp., Security Vulnerability, Security
Software downloads 2007-10-10
Security Update for Office 2003 Proofing Tools (KB905645) (exe)
A security vulnerability exists in Microsoft Office 2003 Korean IME that could allow for elevation of privilege. Security Update for Office 2003 Proofing Tools (KB905645) addresses that vulnerability when Office 2003 is used with the Proofing Tools installed. This version is the first release on CNET Download.com.
Tags: Security, Microsoft Office 2003, Security Vulnerability, Tool, Microsoft Office, Office Suites, Software
Software downloads 2007-09-19
MSDN Webcast: Authorization, Privilege, and Access Control in SQL Server 2005 (Level 300)
Data security is a big topic, but it all boils down to one simple principle: least privilege. By the principle of least privilege, a user should only have direct access to the bare minimum of resources required to do whatever it is the user needs to do. Microsoft SQL Server...
Tags: Microsoft Developer Network, Authorization, Webcast, Microsoft SQL Server, Microsoft Corp., Access Control, Microsoft SQL Server 2005, Databases, Enterprise Software, Software, Data Management
Webcasts 2007-05-11
Windows Vista and Principle of Least Privilege
It is not surprising that Microsoft is getting on the bandwagon for implementing the Principle of Least Privilege for their next operating system named Windows Vista. This paper will investigate some of the current issues with least privilege and investigate the reality of what Microsoft is proposing with Windows Vista.
Tags: Microsoft Windows Vista, TechGenix, Microsoft Windows, Microsoft Windows Vista (Longhorn), Operating Systems, Software
White papers 2005-09-22
User Privilege Manager (exe)
User Privilege Manager can protect any type of file by handling all the system file access requirements, for example: documents, images, videos, and games. Not only can it is stealth, but more important, it is all clean. User Privilege Manager prevent other users from prying into your private files; downloading...
Tags: File, User Privilege Manager, Games, Corporate Communications, Personal Technology, Marketing
Software downloads 2008-06-10
Only two fixes from Microsoft on Patch Tuesday next week
Security administrators can breath a little easier come November's Patch Tuesday next week. Microsoft said that it will issue only two security bulletins next Tuesday, November 15 -- one rated Critical and the other rated Important. In fact, the bulletin labeled "Important" was originally slated for October,...
Tags: Vulnerability, Microsoft Corp., Security, Microsoft Windows, Operating Systems, Software, Paul Mah
Blog posts 2007-11-08
Don't Get Hacked: Automated Remote Vulnerability Scanning
This white paper describes advantages of using Open Source Vulnerability Analysis tools to protect the Internet facing servers. While acknowledging that Vulnerability Analysis is only a part of the solution to securing the server, it is clear that a reliable ongoing vulnerability analysis is a step in the right direction.
Tags: Vulnerability, Internet, Productivity, Servers, Hardware
White papers 2007-08-01
Automated Vulnerability Detection System
Vulnerability assessments have been recently identified, by independent market research, as one of the most sought after managed security outsourcing services. As with the outsourcing of any business function, the final decision is based on whether or not a trusted partner can do the job more efficiently, cheaper, and perhaps...
Tags: Vulnerability Assessment, Outsourcing, Security, It Operations, Business Operations, Outsourcing & Subcontracting
White papers 2006-08-16
Vulnerability Anti.dote - The End to Enterprises' Security Patch Management Headaches
Every malware attack, by definition, exploits a vulnerability. Finjan's Vulnerability Anti.dote identifies specific vulnerabilities and their variants, and using advanced behavior analysis proactively blocks any active content trying to exploit such a vulnerability. This means that you are protected against malware exploits, such as IFrame, even before software vendors have...
Tags: Vulnerability, Finjan Software Inc., Malware, Spyware, Adware & Malware, Cyberthreats, Security, Viruses And Worms
White papers 2005-02-01
SecureCentral ScanFi (zip)
ScanFi is a Web-based vulnerability assessment scanner for detecting and assessing network vulnerabilities across heterogeneous networks. ScanFi discovers, scans, reports, and supports vulnerability remediation. It features both scheduled and on-demand vulnerability scanning capabilities, based on comprehensive vulnerability database collated from multiple sources and vendors that is constantly kept up-to-date.
Tags: Network, Vulnerability, On-demand, Vulnerability Assessment, AdventNet Inc., ScanFi, Scanners, Security, Hardware, Peripherals
Software downloads 2005-08-04
Security news roundup: October 26
Here's a collection of recent security vulnerabilities and alerts, which covers a new version of Apache Tomcat, a local privilege escalation in Trend Micro anti-virus products, and six new flaws fixed in the latest version of RealPlayer. New version of Apache Tomcat fixes vulnerability ...
Tags: Trend Micro Inc., Vulnerability, Driver, Apache Software Foundation, RealNetworks RealPlayer, Apache Tomcat, Open Source, Application Servers, Digital Music, Security, Digital Media, Middleware, Enterprise Software, Software, Personal Technology, Consumer Electronics, Paul Mah
Blog posts 2007-10-26
privilege levels for http server switch
i used the commad archive and extraced the tar file. using the ip http authentication enable, i can use web interface with secret password ( level 15 access) . i cannot do this with local username/password combo or tacacs+ authentication. one of the configuratuion i tried was-username ky privilege level...
Tags: authentication, HTTP, HTTP server, IP, ip http, it management, kamal.yadav@..., server
Q&A 2006-03-21
Server 2003 Terminal Services User Access Problem
Since installing the latest batch of Security updates on our 2003 Server, any user created since the update, or that has never logged on to Terminal Services before the update, can not execute a file over a network drive in a Terminal Services session. Local files on the server...
Tags: it management, networking, piurivar, security, security update, server, server 2003, software, termin, terminal services, windows
Discussion threads 2007-02-28
Security news roundup: November 7
Here's a collection of recent security vulnerabilities and alerts, which covers a privilege escalation vulnerability in Microsoft's DebugView, a buffer overflow flaw in Oracle 10g R2, and also information on how the firewall in Mac OS X Leopard can break some programs. Privilege escalation vulnerability in Microsoft's...
Tags: Oracle Corp., Vulnerability, Microsoft Corp., Oracle Application Server 10g, Buffer-overflow, iDefense, Exploitation, Security, Viruses And Worms, Paul Mah
Blog posts 2007-11-07
Why there's no such thing as a zero day vulnerability
Thanks ChadI have seen on this board and other, someone calling every vulnerability "zero-day". What is worse is when the Media begins to report every new vulnerability as zero day further diluting the term. Overall, if the term had some usefulness it has long since passed. Excellent...
Tags: faradhi
Discussion threads 2007-10-06
Vulnerability Management Is Critical to Managing Enterprise Risk
Vulnerability management is an emerging market that has captured the interest of enterprises concerned with mitigating and managing the threats within their networks. As the vulnerability management market space expands, comprehensive vulnerability management will bring together the assessment and scanning of vulnerabilities within and outside the network perimeter, the remediation...
Tags: Computer Associates International Inc., Vulnerability Management, Networking
White papers 2005-05-01
Microsoft Data Access Components: Security Hotfix for Q329414 (exe)
One of the components of RDS that was delivered in MDAC 2.1, 2.5 and 2.6 contains an unchecked buffer. This patch eliminates the security vulnerability. MDAC 2.7 does not contain this vulnerability. The vulnerability does not affect Windows XP. This version is the first release on CNET Download.com.
Tags: Security, Microsoft Corp., Microsoft Data Access Components, Databases, Enterprise Software, Software, Data Management
Software downloads 2007-09-07
  • << Previous
  • page 1 of 1
  • Next >>


Quick Guide: 802.11g Wireless Networking
This Quick Guide examines critical technical and management details to review before a deployment and presents important information on transmission, ...
Buy Now
Recovering Windows Clients
Part of your job is to make sure that your users' PCs are healthy and reliable. And when a system crash occurs--whether the culprit is a rogue applica ...
Buy Now