Home   Products   Downloads   News   About Us   My Account
 
   Watch the Traffic IQ Professional Movie
 
idappcom News Update 
31st October 2009
 
Traffic File Update October 2009

Traffic IQ Pro is already the most comprehensive testing and validation solution available today for network and inline devices. With its ease of use and extensive library of normal and threat traffic files the product can be used to easily create and replay simple or complex stateful testing scenarios to allow the validation of the configuration of inline network devices such as firewalls, IPS, routers, switches and other critical network systems in a controlled, repeatable and safe way.

Note: Traffic file updates are available to licensed users only.

This update includes the following traffic files:

Application Exploits 

Adobe Reader and Acrobat (CVE-2009-2994) U3D 'CLODMeshDeclaration' Buffer Overflow
Adobe Reader and Acrobat COM Objects Memory Corruption Remote Code Execution
Adobe Reader and Acrobat COM Objects Memory Corruption Remote Code Execution_1
Adobe Reader and Acrobat COM Objects Memory Corruption Remote Code Execution_2
Adobe Reader and Acrobat COM Objects Memory Corruption Remote Code Execution_3
Adobe Reader and Acrobat COM Objects Memory Corruption Remote Code Execution_4
Cerberus FTP Server Long Command Remote Denial of Service Vulnerability
Cherokee Web Server Malformed Packet Remote Denial of Service Vulnerability
EMC Captiva PixTools Distributed Imaging Insecure Method Vulnerabilities
FlexCell Grid Control Multiple Arbitrary File Overwrite Vulnerabilities
Foxit Reader Firefox Plugin Memory Corruption Vulnerability
Foxit Reader Firefox Plugin Memory Corruption Vulnerability_1
FTP BulletProof Client Malformed '.bps' File Stack Buffer Overflow Vulnerability
GD Graphics Library '_gdGetColors' Remote Buffer Overflow Vulnerability
HTTP Acritum Femitter Server HTTP Request Remote File Disclosure Vulnerability
HTTP AfterLogic WebMail Pro Multiple Cross Site Scripting Vulnerabilities
HTTP Alkacon OpenCms Multiple Input Validation Vulnerabilities
HTTP AOL SuperBuddy ActiveX Control Remote Code Execution Vulnerability
HTTP Black Ice Printer Driver Resource Toolkit Remote Vulnerabilities
HTTP Black Ice Printer Driver Resource Toolkit Remote Vulnerabilities_1
HTTP HP LoadRunner 'MakeHttpRequest()' Arbitrary File Download Vulnerability
HTTP Interspire Knowledge Manager 'p' Parameter Directory Traversal Vulnerability
HTTP Juniper Networks JUNOS J-Web XSS And HTML Injection Vulnerabilities
HTTP Juniper Networks JUNOS J-Web XSS And HTML Injection Vulnerabilities_1
HTTP Juniper Networks JUNOS J-Web XSS And HTML Injection Vulnerabilities_2
HTTP KeyWorks KeyHelp Module 'keyhelp.ocx' Remote Buffer Overflow Vulnerability
HTTP Mozilla Firefox MFSA 2009-47, -48, -49, -50, -51 Multiple Vulnerabilities
LPD Xlpd Remote Bufer Overflow Vulnerability
Microsoft SharePoint Team Services Source Code Information Disclosure
Microsoft SharePoint Team Services Source Code Information Disclosure_1
Mozilla Firefox CVE-2009-3378 Remote Memory Corruption Vulnerability
NaviCOPA Source Code Information Disclosure Vulnerability
NaviCOPA Source Code Information Disclosure Vulnerability_1
nginx 'ngx_http_process_request_headers()' Remote Buffer Overflow Vulnerability
Novell eDirectory 'dconserv.dlm' Cross-Site Scripting Vulnerability
Pegasus Mail POP3 Response Remote Buffer Overflow Vulnerability
SAP Business One License Manager Buffer Overflow (gen_shell_bind_tcp)
SAP Business One License Manager Buffer Overflow (win_add_user)
SAP Business One License Manager Buffer Overflow (win_exec)
Symantec Multiple Prod Intel Alert Originator Service Stack Overflow (win_add_user)
Symantec Multiple Prod Intel Alert Originator Service Stack Overflow (win_exec)
Symantec Multiple Prod Intel Alert Originator Service Stack Overflow (win_shell_bind_tcp)
Symantec Multiple Prod Intel Alert Originator Service Stack Overflow (win_shell_reverse_tcp)
W3C Amaya XML and HTML Parser Multi Buffer Overflow Vulnerabilities (generic_debug_trap)
W3C Amaya XML and HTML Parser Multi Buffer Overflow Vulnerabilities (gen_shell_bind_tcp)
W3C Amaya XML and HTML Parser Multi Buffer Overflow Vulnerabilities (gen_shell_reverse_tcp)
W3C Amaya XML and HTML Parser Multi Buffer Overflow Vulnerabilities (win_exec)
Websense Email Security and Email Manager 'STEMWADM.EXE' Remote Buffer Overflow
Xpdf Integer Overflow Vulnerability
Xpdf NULL-Pointer Dereference Vulnerability

Security Evasion Techniques 

Evasion HTML javascript escape (for CVE-2009-0323)
Evasion HTML unicode (utf-16be) (for CVE-2009-0323)
Evasion HTML unicode (utf-16le) (for CVE-2009-0323)
Evasion HTTP chunked (for CVE-2009-0323)
Evasion HTTP Header Folding (for CVE-2009-1136)
Evasion HTTP junk headers (for CVE-2009-0323)
   

 

Copyright idappcom Ltd 2004-2011 All rights reserved