You are here

JC3 Bulletin Archive

February 14, 2013
V-091: Adobe Acrobat/Reader Bug Lets Remote Users Execute Arbitrary Code

Adobe has identified critical vulnerabilities in Adobe Reader and Acrobat

February 13, 2013
V-090: Adobe Flash Player / AIR Multiple Vulnerabilities

Multiple vulnerabilities have been reported in Adobe Flash Player and AIR.

February 12, 2013
V-089: Apache CXF SOAP URIMappingInterceptor and Plaintext UsernameTokens Security Issues

Two security issues have been reported in Apache CXF

February 11, 2013
V-088: Microsoft Security Bulletin Advance Notification for February 2013

Microsoft Security Bulletin Advance Notification for February 2013. Microsoft has posted 5 Critical Bulletins and 7 Important Bulletins. Bulletins with the Maximum Severity Rating and Vulnerability Impact of "Critical" may allow remote execution of code. Microsoft will host a webcast to address customer questions on the security bulletins on February 13, 2013, at 11:00 AM Pacific Time (US & Canada).

February 8, 2013
V-087: Adobe Flash Player Two Vulnerabilities

Two vulnerabilities are reported as 0-day which can be exploited by malicious people to compromise a user's system.

February 7, 2013
V-086: IntegraXor ActiveX Control Buffer Overflow Vulnerability

The vulnerability is caused due to an error in the PE3DO32A.ocx ActiveX control and can be exploited to cause a buffer overflow.

February 6, 2013
V-085: Cisco Unity Express Input Validation Hole Permits Cross-Site Request Forgery Attacks

A vulnerability was reported in Cisco Unity Express.

February 5, 2013
V-084: RSA Archer eGRC Permits Cross-Site Scripting, Cross-Domain Access, Clickjacking, and File Upload Attacks

Several vulnerabilities were reported in RSA Archer eGRC.

February 4, 2013
V-083: Oracle Java Multiple Vulnerabilities

A Critical Patch Update is a collection of patches for multiple security vulnerabilities. The Critical Patch Update for Java SE also includes non-security fixes. Critical Patch Updates are cumulative and each advisory describes only the security fixes added since the previous Critical Patch Update and Security Alert.

February 1, 2013
V-082: Novell GroupWise Client Two Vulnerabilities

Two vulnerabilities have been reported in Novell GroupWise Client, which can be exploited by malicious people to compromise a user's system.