LAC Advisory

Site Location

Japanese Edition

The links below provide information on security vulnerabilities discovered by LAC in recent years.

2010

No. Last update Title
No.103 [Nov 16, 2010] Sun Java System Web Server Cross-Site Request Forgery Vulnerability

2009

No. Last update Title
No.102 [Sep 18, 2009] yoyaku_v41 OS Command Injection Vulnerability
No.101 [Aug 5, 2009] FreeNAS Cross-Site Scripting Vulnerability
No.100 [Aug 5, 2009] FreeNAS Cross-Site Request Forgery Vulnerability

2008

No. Last update Title
No.99 [Jul 3, 2008] Cybozu Garoon RSS Reader Arbitrary Script Execution Vulnerability
No.98 [Jul 3, 2008] Cybozu Garoon Session Fixation Vulnerability
No.97 [Feb 14, 2008] Apache Tomcat Improper Cookie Handling Session Hijacking Vulnerability

2007

No. Last update Title
No.96 [Nov 19, 2007] Apple Safari HTTPS Contents Manipulation Vulnerability
No.95 [Oct 3, 2007] Webmin miniserv.pl Shell Command Injection Vulnerability
No.94 [Sep 28, 2007] Aipo/Aipo ASP Session Fixation Vulnerability
No.93 [Apr 4, 2007] Minna De Office Improper URL Privilege Escalation Vulnerability

2006

No. Last update Title
No.92 [Dec 5, 2006] HANAKO Document Information Buffer Overflow Vulnerability
No.91 [Oct 18, 2006] ICHITARO 2006 Document Property Buffer Overflow Vulnerability
No.90 [Sep 29, 2006] PHProjekt gantt module "lib_path" Remote PHP File Inclusion Vulnerability
No.89 [Aug 31, 2006] Webmin/Usermin Null Character "%00" Handling Vulnerability
No.88 [Jun 23, 2006] Webmin Directory Traversal Vulnerability

Japanese Edition

Top of Page


Reference

Category Menu

Contact LAC

  • Corporate Profile
  • Corporate Data
  • LAC's Strengths
  • Services and Solutions
  • Corporate History
  • Group Companies
  • Access Map
  • Contact LAC
  • JSOC
  • LAC Advisory