 |
Traffic
File Update December 2008
Traffic IQ Pro is already the most comprehensive testing and validation solution available today for network and inline devices. With its ease of use and extensive library of normal and threat traffic files the product can be used to easily create and replay simple or complex stateful testing scenarios to allow the validation of the configuration of inline network devices such as firewalls, IPS, routers, switches and other critical network systems in a controlled, repeatable and safe way.
Note: Traffic file updates are available to licensed users only.
This update includes the following traffic files:
Security
Evasion TechniquesEvasion HTML javascript escape (for
CVE-2008-2463)
Evasion HTML junk headers (for CVE-2008-2463)
Evasion HTML unicode (utf-16le) (for CVE-2008-2463)
Evasion HTTP Headers Folding (for CVE-2008-2463)
Application
Exploits
Acoustica Mixcraft '.mx4' Project File Buffer Overflow
Vulnerability
BreakPoint Software Hex Workshop CMAP File Handling Buffer
Overflow Vulnerability
BulletProof FTP Client '.bps' File Stack Buffer Overflow
Vulnerability
BulletProof FTP Client Bookmark File Heap Buffer Overflow
Vulnerability
Cain & Abel Malformed '.rdp' File Denial of Service
Vulnerability
Cain & Abel Malformed '.rdp' File Remote Code Execution
DesignWorks Professional '.cct' File Buffer Overflow
Vulnerability
FutureSoft TFTP Server 2000 Remote Code Execution
HTTP Amaya (id) Remote Stack Overflow Vulnerability
HTTP Amaya (URL Bar) Remote Stack Overflow Vulnerability
HTTP Chilkat Socket 'SaveLastError()' Arbitrary File Overwrite
Vulnerability
HTTP Chilkat Socket 'SaveLastError()' Arbitrary File Overwrite
Vulnerability_1
HTTP COMTREND CT-536 and HG-536 Routers Cross-site Scripting
Vulnerability
HTTP COMTREND CT-536 and HG-536 Routers Information Disclosure
Vulnerability
HTTP DD-WRT Cross-Site Request Forgery Vulnerability
HTTP EasyMail Objects 'emmailstore.dll' Remote Buffer Overflow
HTTP Internet Explorer 'chromeHTML' Command Line Parameter
Injection Vulnerability
HTTP Linksys Wireless-G ADSL Gateway WAG54GS V2.0 Remote
Buffer Overflow
HTTP Megacubo URI Handler Remote Command Execution
Vulnerability
HTTP Megacubo URI Handler Remote Command Execution
Vulnerability_1
HTTP MiniShare Server Remote Buffer Overflow Vulnerability
(2k_SP2)
HTTP MiniShare Server Remote Buffer Overflow Vulnerability
(2k_SP4)
HTTP MiniShare Server Remote Buffer Overflow Vulnerability
(WinXP_SP1)
HTTP Opera Web Browser 'file' Heap Based Buffer Overflow
Vulnerability
HTTP SasCam Webcam Server 'Get' Method Buffer Overflow
Vulnerability
HTTP Visagesoft eXPert PDF EditorX Arbitrary File Overwrite
Vulnerability
HTTP XAMPP Cross-Site Scripting and Request Forgery
Vulnerabilities
IBM Rational ClearCase Cross Site Scripting Vulnerability
IntelliTamper 'CFG' File Buffer Overflow Vulnerability
Microsoft Access Snapshot Viewer Arbitrary File Download
(MS08-041) (gen_shell_reverse_tcp)
Microsoft Access Snapshot Viewer Arbitrary File Download
(MS08-041) (win_exec)
Microsoft Access Snapshot Viewer Arbitrary File Download
(MS08-041) (win_shell_bind_tcp)
Microsoft Internet Explorer XML Handling Remote Code Execution
(MS08-078)
Microsoft Internet Explorer XML Handling Remote Code
Execution_1 (MS08-078)
Microsoft Internet Explorer XML Handling Remote Code
Execution_2 (MS08-078)
Microsoft Internet Explorer XML Handling Remote Code
Execution_3 (MS08-078)
Microsoft SQL Server 'sp_replwritetovarbin' Remote Memory
Corruption
Microsoft Vista SP0 SMB Negotiate Protocol DoS
Microsoft Windows Enhanced Metafile (EMF) Remote Buffer
Overflow
Microsoft Windows Enhanced Metafile (EMF) Remote Buffer
Overflow_1
National Instruments Electronics Workbench '.ewb' Buffer
Overflow
Psi Malformed Packet Remote Denial of Service Vulnerability
RadASM '.rap' Project File Buffer Overflow Vulnerability
Rumpus FTP Server Command Argument Remote Buffer Overflow
Rumpus FTP Server HTTP Command Remote Denial of Service
Vulnerability
SAWStudio '.prf' File Buffer Overflow Vulnerability
Windows XP_2003_Vista Metafile Escape_SetAbortProc Code
Execution
|