Ken Pfeil
  

Ken Pfeil is chief security officer at Capital IQ, a provider of Web-based financial information and services in New York. He has also served with companies such as Microsoft, Dell, Avaya, and Merrill Lynch. He specializes in Windows 2000 and Windows NT and is coauthor of "Stealing the Network--How to Own the Box" and "Hack Proofing Your Network," 2nd Edition (Syngress Publishing).
Email address: ken@winnetmag.com
Web site: http://www.capitaliq.com

23 results found for Ken Pfeil, displaying items 1 - 20

Authentication Bypass Vulnerability in MySQL

MySQL AB's MySQL 5.0 and MySQL 4.1 (prior to 4.1.3) contain a bug that lets a remote user entirely bypass the MySQL password-authentication mechanism.

Windows IT Security

Stack Overflow Vulnerability in IBM DB2 Universal Data Base v7.2 for Windows

A stack-overflow vulnerability in DB2 Universal Database 7.2 for Windows can result in the execution of arbitrary code on the vulnerable server.

Windows IT Security

Denial of Service in IBM's DB2 Universal Database

A Denial of Service (DoS) condition exists in IBM's DB2 Universal Database.

Windows IT Security

System Compromise Vulnerability in Microsoft MDAC

A new vulnerability in Microsoft Data Access Components (MDAC) can result in the compromise of a vulnerable computer.

Windows IT Security

Multiple Vulnerabilities In Microsoft SQL

Three new vulnerabilities exist in SQL Server 2000, SQL Server 7.0, MSDE 2000, and MSDE 1.0, the most serious of which can result in the execution of arbitrary code on the vulnerable computer.

Windows IT Security

Privilege Escalation Vulnerability in Microsoft SQL Server and MSDE

A vulnerability exists in SQL Server that lets a low-privileged user run, delete, insert, and update Web tasks.

Windows IT Security

Multiple Vulnerabilities in Microsoft SQL Server, Microsoft SQL Server Desktop Engine 2000, and Microsoft Data Engine 1.0

Three new vulnerabilities exist in SQL Server, Microsoft SQL Server Desktop Engine 2000, and Microsoft Data Engine 1.0, the most serious of which could let an attacker execute arbitrary code on the vulnerable system.

Windows IT Security

Application Execution Vulnerability in Microsoft Visual FoxPro 6.0

A vulnerability exists in Visual FoxPro 6.0 that can result in an attacker gaining control over the vulnerable system.

Windows IT Security

Privilege Elevation Vulnerability in Microsoft SQL Server and Microsoft Desktop Engine

A vulnerability exists in SQL Server and MSDE that can result in an unprivileged user gaining control of a database.

Windows IT Security

Buffer Overrun Vulnerability in Microsoft Data Access Components (MDAC)

A buffer overflow vulnerability exists in Microsoft Data Access Components (MDAC) that could result in the SQL service failing or executing arbitrary code from a potential attacker.

Windows IT Security

Buffer Overrun in Microsoft SQL Server 2000 Utilities

Two vulnerabilities exist in Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000.

Windows IT Security

Multiple Vulnerabilities in Microsoft SQL Server 2000

Microsoft has reported three new vulnerabilities in Microsoft SQL Server 2000 and Microsoft SQL Server Desktop Engine (MSDE).

Windows IT Security

Insecure Default Installation Process for Microsoft SQL Server

A vulnerability exists in SQL Server 2000 and SQL Server 7.0 (including MSDE 1.0) that can let an attacker compromise the vulnerable server.

Windows IT Security

Multiple Vulnerabilities in Microsoft SQL Server 2000 and MSDE

Multiple vulnerabilities exist in SQL Server 2000 and MSDE 2000, the most severe of which can lead to remote compromise of the vulnerable server.

Windows IT Security

Buffer Overrun Vulnerability in SQL Server 2000

Read about a vulnerability in SQL Server 2000 when you use it with the Microsoft Jet 4.0 database engine.

WinInfo

Buffer Overrun Vulnerability in Microsoft SQL Server 2000

A vulnerability exists in SQL Server 2000 when used in conjunction with the Microsoft Jet 4.0 database engine.

Windows IT Security

Multiple Vulnerabilities in SQLXML for SQL Server 2000

Be aware of two SQLXML problems: A buffer overrun that lets an attacker execute code on the affected system, and a problem in a function specifying an XML tag that lets an attacker run scripts on a user's computer in a higher privilege zone.

WinInfo

Multiple Vulnerabilities in Microsoft SQLXML for SQL Server 2000

Two new vulnerabilities exist in SQLXML.

Windows IT Security

Unchecked Buffer in Microsoft SQL 2000 and 7.0

An unchecked buffer exists in several of the extended store procedures that Microsoft shipped with SQL Server 7.0 and SQL Server 2000.

Windows IT Security

Unchecked Buffer in Microsoft SQL Server 2000 and 7.0

An unchecked buffer in the handling of OLE database provider names.

Windows IT Security

Add these Headlines to your Website





     [1]  2   next page