<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-19415674</id><updated>2011-12-03T06:57:03.073-08:00</updated><title type='text'>Blogs of SumSid</title><subtitle type='html'>Hi, i am currently using this page as my homepage.The advisories listed in this section are still not released and will be made public as soon as vendor gives me a green signal.
THE PURPOSE OF THESE ADVISOTY IS NOT TO ATTRACT PEOPLE TO TRY OUT THERE HACKING/CRACKING SKILLS ON THE PRODUCTS LISTED HERE ,BUT, ITS AN EFFORT TO REMOVE AS MANY VULNERABLE PRODUCTS AS I CAN FROM THE INTERNET.
I Hope you enjoy going through my blogs.</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>46</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-19415674.post-7021112254089325353</id><published>2008-01-20T02:38:00.000-08:00</published><updated>2008-01-20T02:42:30.836-08:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;.......&lt;/h1&gt;&lt;br /&gt;hum maikadon main hi palte rahe...&lt;br /&gt;hum maikadon main hi palte rahe...&lt;br /&gt;ladkhadaye kabhi, kabhie..sambhalte rahe...&lt;br /&gt;&lt;br /&gt;yadon se unki hum ladte rahe....&lt;br /&gt;yadon se unki hum ladte rahe....&lt;br /&gt;ladkhadaye kabhi, kabhie..sambhalte rahe...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-7021112254089325353?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/7021112254089325353/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=7021112254089325353' title='11 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/7021112254089325353'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/7021112254089325353'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2008/01/blog-post.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>11</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-2958113821814429589</id><published>2007-07-15T05:02:00.000-07:00</published><updated>2007-07-15T05:04:21.386-07:00</updated><title type='text'></title><content type='html'>&lt;h1&gt; Koi Baat Chale&lt;/h1&gt;&lt;br /&gt;Yaad hai ek din, meri mejh par baithe baithe tumne cigeratte ki dibiya par ek paudhe ka scetch banaya tha&lt;br&gt;&lt;br /&gt;aa kar dekho, paudhe par phool aaya hai:)&lt;br /&gt;&lt;br /&gt;.......&lt;br /&gt;aisi bikhre hain raat din jaise,&lt;br /&gt;motiyon wala haar tooth gaya!&lt;br /&gt;tumne mujhko perooh kar rakha tha..&lt;br /&gt;..........&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-2958113821814429589?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/2958113821814429589/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=2958113821814429589' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/2958113821814429589'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/2958113821814429589'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2007/07/koi-baat-chale-yaad-hai-ek-din-meri.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-6094487554224138560</id><published>2007-04-15T04:04:00.000-07:00</published><updated>2007-04-15T04:08:40.248-07:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;Updates..&lt;/h1&gt;&lt;br /&gt;Recently i have been very slow in updating my blogs, mainly becuase of my new project www.notsosecure.com .Having said that, i will try my best to update this soon.&lt;br /&gt;&lt;br /&gt;Here is another one from Umrao Jaan.&lt;br /&gt;&lt;br /&gt;Ek hum hi maiii ko aankhon se pilate hain,&lt;br /&gt;Ek hum hi maiii ko aankhon se pilate hain,&lt;br /&gt;Ek hum hi maiii ko aankhon se pilate hain,&lt;br /&gt;Kehne ko toh duniya main, Kehne ko toh duniya main,&lt;br /&gt;maikhaane hazaron hainnn!!!!&lt;br /&gt;&lt;br /&gt;quality isnt it,:)&lt;br /&gt;SumSid&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-6094487554224138560?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/6094487554224138560/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=6094487554224138560' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/6094487554224138560'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/6094487554224138560'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2007/04/updates.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-4935322292386545894</id><published>2007-02-01T11:13:00.000-08:00</published><updated>2007-02-02T06:47:36.592-08:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;aap in dinon yahan hote toh... &lt;/h1&gt;&lt;br /&gt;&lt;br /&gt;shaam se saans bhaari hai,&lt;br /&gt;bekarari hai, bekarari hai,&lt;br /&gt;aap ke baad har ghadi humne,&lt;br /&gt;aap hi ke saath gujaari hai!!&lt;br /&gt;&lt;br /&gt;......&lt;br /&gt;&lt;br /&gt;jaage hain deer tak&lt;br /&gt;hamen kuch deer sone do&lt;br /&gt;thodi se raat aur hai&lt;br /&gt;subah to hone do&lt;br /&gt;aadhe adhure khwaab jo&lt;br /&gt;pure na ho sake&lt;br /&gt;ek baar phir se neend mein&lt;br /&gt;woh khwaab bone do&lt;br /&gt;&lt;br /&gt;Taken from the movie "Guru, 2007"&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-4935322292386545894?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/4935322292386545894/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=4935322292386545894' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/4935322292386545894'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/4935322292386545894'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2007/02/aap-in-dinon-yahan-hote-toh.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-116560578560330961</id><published>2006-12-08T11:19:00.000-08:00</published><updated>2006-12-08T11:23:05.613-08:00</updated><title type='text'></title><content type='html'>kalaiiiyon se khol do yeh&lt;br /&gt;nabs ki tarah dhadakta waqt....&lt;br /&gt;tang karta hai......&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-116560578560330961?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/116560578560330961/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=116560578560330961' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/116560578560330961'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/116560578560330961'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/12/kalaiiiyon-se-khol-do-yeh-nabs-ki.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-116301765726075392</id><published>2006-11-08T12:01:00.000-08:00</published><updated>2006-11-11T10:32:54.446-08:00</updated><title type='text'></title><content type='html'>&lt;span style="font-weight: bold;"&gt;For Fun and Not so much on Profit!!!!&lt;br /&gt;This blog has some senstive info and hence i have to add a small security wrapper on it ;.... hack it to read this info.. its a script kiddie hack..&lt;br /&gt;Huhhh the hint is.. 'The Devil is in the Details'&lt;br /&gt;&lt;!-- Hmmm... a very popular security company in asia pacific www.p******n.net. I really enjoyed going through their articles on their blogs and everything else regarding their website except...a number of blind sql injection.. Allright, i can buy the argument that the blind sql injection there was only meant to teach ppl abt it but it certainly doesnt look very nice. I am gonna withheld details abt it till they get it fix.... here is some insight ... version--3.23.x p******n@localhost--user database--p******n --&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-116301765726075392?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/116301765726075392/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=116301765726075392' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/116301765726075392'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/116301765726075392'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/11/for-fun-and-not-so-much-on-profit-this.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-115649220767447029</id><published>2006-08-25T00:45:00.000-07:00</published><updated>2006-08-25T00:51:00.643-07:00</updated><title type='text'></title><content type='html'>&lt;h1&gt; Logon ka kaam hai kehna...&lt;/h1&gt;&lt;br /&gt;Yesterday, i watched the all the time great movie Sharaabi for the 11th time. If you can understand what these great lyrics mean, then you are GOD!!!. Here they go,&lt;br /&gt;&lt;br /&gt;&lt;pre&gt;&lt;font&gt;&lt;span style="font-family:verdana;"&gt;Log Kehte Hai Main Sharaabi Hoon (2)&lt;br /&gt;Tum Ne Bhi Shaayad Yehi Soch Liye Haan&lt;br /&gt;Log Kehte Hai Main Sharaabi Hoon&lt;br /&gt;&lt;br /&gt;Kissi Pe Husn Ka Guroor Jawaani Ka Nasha&lt;br /&gt;Kissi Ke Dil Pe Mohabbat Ki Rawaani Ka Nasha&lt;br /&gt;Kissi Ko Dekhke Saanso Se Ubharta Hai Nasha&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic;"&gt;Bina Piye Bhi Kahin Hadh Se Guzarta Hai Nasha&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic;"&gt;Nashe Mein Kaun Nahin Hai Mujhe Bataao Zara&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic;"&gt;Kisse Hai Hosh Mere Saamne To Laao Zara&lt;/span&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 51, 51); font-weight: bold; font-style: italic;"&gt;Nasha Hai Sab Pe Magar Rang Nashe Ka Hai Juda&lt;/span&gt;&lt;br /&gt;Khili Khili Hui Subah Pe Hai Shabnam Ka Nasha&lt;br /&gt;Hawa Pe Khushbu Ka Baadal Pe Hai Rimjhim Ka Nasha&lt;br /&gt;Kahin Suroor Hai Khushiyon Ka Kahin Gham Ka Nasha&lt;br /&gt;Nasha Sharaab Mein Hota To Naachti Botal&lt;br /&gt;Maikade Jhoomte Paimaanon Mein Hoti Hulchul&lt;br /&gt;Nasha Sharaab Mein Hota To Naachti Botal&lt;br /&gt;Nashe Mein Kaun Nahin Hai Mujhe Bataao Zara (2)&lt;br /&gt;&lt;br /&gt;Log Kehte Hai Main Sharaabi Hoon (2)&lt;br /&gt;Tum Ne Bhi Shaayad Yehi Soch Liye Haan&lt;br /&gt;Log Kehte Hai Main Sharaabi Hoon &lt;/span&gt;&lt;/span&gt;&lt;/pre&gt;&lt;font&gt;&lt;font&gt;&lt;font&gt;&lt;font&gt;-----------------------------------&lt;br /&gt;Huh...I should not even attempt to explain this....&lt;br /&gt;&lt;br /&gt;SumSid&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-115649220767447029?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/115649220767447029/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=115649220767447029' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/115649220767447029'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/115649220767447029'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/08/logon-ka-kaam-hai-kehna.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-114874752978345887</id><published>2006-05-27T09:30:00.000-07:00</published><updated>2006-05-27T09:32:09.806-07:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;&lt;span style="color: rgb(51, 255, 51);"&gt;Fir haath main sharaab hai..&lt;br /&gt; sach bolta hoon main&lt;/span&gt;&lt;/h1&gt;&lt;br /&gt;मैने पीना कब सीखा था?&lt;br /&gt;मैने जीना कब सीखा था?&lt;br /&gt;एक बोतल जो टूट गयी तो,&lt;br /&gt;तो महफ़िल सारी रूठ गयी॥&lt;br /&gt;&lt;br /&gt;ये दुनिया एक महफ़िल है&lt;br /&gt;और हम इसके मेहमाँ हैं,&lt;br /&gt;हैं कुछ साक़ी और कुछ आशिक़&lt;br /&gt;उम्मीदें हैं ,कुछ अरमाँ हैं॥&lt;br /&gt;&lt;br /&gt;आज अगर कुछ शब्द बहे,&lt;br /&gt;तो आखिर दिल से कौन कहे,&lt;br /&gt;प्यार वफ़ा कसमें और वादे&lt;br /&gt;अब इनकी पीड़ा कौन सहे?&lt;br /&gt;&lt;br /&gt;पीड़ा को इतिहास बता कर&lt;br /&gt;पीना मैने अब सीखा है।&lt;br /&gt;शायद लोग और कुछ कह दें&lt;br /&gt;पर जीना मैने अब सीखा है॥&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-114874752978345887?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/114874752978345887/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=114874752978345887' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114874752978345887'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114874752978345887'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/05/fir-haath-main-sharaab-hai.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-114822091950921852</id><published>2006-05-21T07:12:00.000-07:00</published><updated>2006-05-21T07:15:19.510-07:00</updated><title type='text'></title><content type='html'>&lt;h3&gt;Din kuch aise guzarta hai koi..jaise ehsaan utartaa hai koi&lt;/h3&gt;&lt;br /&gt;&lt;br /&gt;  KInare durr hote hote bohot durr ho gaye !&lt;br /&gt;Pani ke chhapakon ki awaaz bhii dub gayee!&lt;br /&gt;"dil mein aise sambhaltey hain gum, jaise jevar sambhalta hai koi" !&lt;br /&gt;Ruth gaye naraz ho gaye !&lt;br /&gt;Haath se angoothee utaree wapas kar dee, bahaon ke kangaan utare saath pheron sahit lautaa diye !&lt;br /&gt;lekin wo bakee zevar jo dil mein rakh liye unkaa kya hogaa !&lt;br /&gt;&lt;br /&gt;  mera kuch samaan tumharay paas para hai....&lt;br /&gt;sawan ke kuch bheegay bheegay din rakhay hain&lt;br /&gt;aur merey ik khat mey liptee raat paree hai&lt;br /&gt;wo raat bujha do&lt;br /&gt;mera wo samaan lauta do....&lt;br /&gt;&lt;br /&gt;------------------------&lt;br /&gt;&lt;br /&gt;Itnee ijaazat dey do bas jab is ko&lt;br /&gt;dafnaoon gee&lt;br /&gt;mey bhee waheen&lt;br /&gt;so jaoon gee !!!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-114822091950921852?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/114822091950921852/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=114822091950921852' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114822091950921852'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114822091950921852'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/05/din-kuch-aise-guzarta-hai-koi.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-114819532611977212</id><published>2006-05-21T00:07:00.000-07:00</published><updated>2006-05-21T00:09:35.263-07:00</updated><title type='text'></title><content type='html'>&lt;span style=";font-family:Verdana,Arial,Helvetica,sans-serif;font-size:85%;"  &gt;&lt;strong&gt;&lt;em&gt;&lt;h1&gt;"Kshama            shobhti us bhujang ko jiske pass garal ho&lt;br /&gt;         Usko kya jo dant-heen, vishrahit vineet saral ho"&lt;/h1&gt;&lt;br /&gt;                                                                    --dharmveer bharti, 'kurukshetra!'&lt;br /&gt;&lt;/em&gt;&lt;/strong&gt;&lt;/span&gt;         &lt;p align="justify"&gt;&lt;span style=";font-family:Verdana,Arial,Helvetica,sans-serif;font-size:85%;"  &gt;If            you are possessed of strength people speak to you from the platform            of equality; if you lack strength, they treat you as weak.&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-114819532611977212?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/114819532611977212/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=114819532611977212' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114819532611977212'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114819532611977212'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/05/kshama-shobhti-us-bhujang-ko-jiske.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-114610379249102091</id><published>2006-04-26T19:08:00.000-07:00</published><updated>2006-04-26T19:09:52.503-07:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;aao fir nazm kahein&lt;/h1&gt;&lt;br /&gt;tukda ek nazm ka raat bhar sason main meri sarakta hi raha,&lt;br /&gt;lub par aaya toh jaban katne lagi&lt;br /&gt;daaton se pakda toh lub chilne lage&lt;br /&gt;na toh faika hi gaya mooh se , na nigla hi gaya,&lt;br /&gt;tukda ek "kaanch" ka atak jaye halak main jaise,&lt;br /&gt;tukda woh nazm ka sason main meri sarakta hi raha!!!!!&lt;br /&gt;----------------------------------------------$um$id&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-114610379249102091?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/114610379249102091/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=114610379249102091' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114610379249102091'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114610379249102091'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/04/aao-fir-nazm-kahein-tukda-ek-nazm-ka.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-114553042755962658</id><published>2006-04-20T03:48:00.000-07:00</published><updated>2006-04-26T18:44:18.643-07:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;Monster.com , Blogger.com XSS bug&lt;/h1&gt;&lt;br /&gt;moved to http://axcesdenied-gofox.blogspot.com/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-114553042755962658?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/114553042755962658/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=114553042755962658' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114553042755962658'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114553042755962658'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/04/monster.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-114501419408021529</id><published>2006-04-14T04:24:00.000-07:00</published><updated>2006-04-14T04:29:54.090-07:00</updated><title type='text'></title><content type='html'>&lt;h1&gt; &lt;span style="color: rgb(102, 255, 153);"&gt;kab aate ho.. kab jaate ho&lt;/span&gt;&lt;/h1&gt;&lt;br /&gt;&lt;br /&gt;imli ka yeh pedh hawa main jab hilta hai toh,&lt;br /&gt;imli ka yeh pedh hawa main jab hilta hai toh,&lt;br /&gt;&lt;br /&gt;eenth ki deewar par parchai ka cheenta padhta hai!!!&lt;br /&gt; aur jasb ho jaata hai jaise.. sookhe matit par koi paani ka katre bikhair gaya ho..&lt;br /&gt;&lt;br /&gt;dheere dheere aagan main fir dhoop sisakti rehti hai..&lt;br /&gt;kab aate ho.. kab jaate ho..&lt;br /&gt;din main kitni baar. mujhe yaad aate ho...&lt;br /&gt;&lt;br /&gt;enjoy. SumSid!!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-114501419408021529?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/114501419408021529/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=114501419408021529' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114501419408021529'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114501419408021529'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/04/kab-aate-ho.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-114498484362891985</id><published>2006-04-13T20:12:00.000-07:00</published><updated>2006-04-13T20:20:43.630-07:00</updated><title type='text'></title><content type='html'>&lt;h1&gt; &lt;span style="color: rgb(102, 255, 153);"&gt;zara hatke.. zara bachke.. yeh hai bambai ..meri  jaan&lt;/span&gt; &lt;/h1&gt;&lt;br /&gt;&lt;br /&gt;bambai main 8 mahine rehne ke baad, agar sach kahoon ko bambai sach main aisis hai..&lt;br /&gt;&lt;br /&gt;morning.. and evening&lt;br /&gt;&lt;br /&gt;"din khaali khaali bartan hai..&lt;br /&gt;aur raat hai jaise andha kuan..&lt;br /&gt;In sooni andheri aankhon mein&lt;br /&gt;aansoo ki jagah aata hai dhuan"&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;i can recall another gulzaar masterpiece but i dont think this applies to mumbai..&lt;br /&gt;&lt;br /&gt;"dupahrein aise lagti hain, jaise bina mohron ke khaali khaane rakhe hain..&lt;br /&gt;na koi khelna wala hai baji.. aur na koi chaal chalta hai..&lt;br /&gt;na din hota hai na raat.. sabhi kuch ruk gaya hai..&lt;br /&gt;wo kaya mausam ka jhonka tha.. jo is deewar par latki hui tasveer tirchi kar  gaya hai"&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;khair&lt;br /&gt;&lt;br /&gt;"Dil Dhuu.NDhataa hai, phir vahii, fursat ke raat din"&lt;br /&gt;......SumSid&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-114498484362891985?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/114498484362891985/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=114498484362891985' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114498484362891985'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114498484362891985'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/04/zara-hatke.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-114498427127374256</id><published>2006-04-13T20:09:00.000-07:00</published><updated>2006-04-13T20:11:11.283-07:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;&lt;span style="color: rgb(102, 255, 153);"&gt;Yaadein....&lt;/span&gt;&lt;/h1&gt;&lt;br /&gt;&lt;br /&gt;Unhe yeh ummend ki hum bulate..&lt;br /&gt;Humein yeh ummenid ki woh pukarein..&lt;br /&gt;hai naam hothon par ab bhi lekin...&lt;br /&gt;aawaaz main pad gayi darrarein..&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-114498427127374256?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/114498427127374256/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=114498427127374256' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114498427127374256'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114498427127374256'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/04/yaadein.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-114389654363298486</id><published>2006-04-01T04:56:00.000-08:00</published><updated>2006-04-01T05:02:25.106-08:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;Piya Tora kaisa abhimaan&lt;/h1&gt;&lt;br /&gt; kisi mausam ka jhaunka tha&lt;br /&gt; jo is deewar par latki hui tasveer tirchhi kar gaya hai&lt;br /&gt; gaye sawaan mein ye deewarein yoon seeli nahin thi&lt;br /&gt;         na jaane is dafa kyun inmein seelan aa gayi hai&lt;br /&gt;         darare pad gaye hai          aur seelan is tarha baithti hai&lt;br /&gt;       jaise khushk rukhsaroon pe geele aansu chalte hain&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-114389654363298486?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/114389654363298486/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=114389654363298486' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114389654363298486'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114389654363298486'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/04/piya-tora-kaisa-abhimaan-kisi-mausam.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-114295009618908404</id><published>2006-03-21T06:04:00.000-08:00</published><updated>2006-03-21T06:08:16.210-08:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;&lt;span style="color: rgb(102, 255, 153);"&gt;10 cents&lt;/span&gt;&lt;/h1&gt;&lt;br /&gt;Ek roj zindagi ke ru-baru aa baithe...&lt;br /&gt;Zindagi ne poocha..dard kya hai..? Kyun hota hai..?&lt;br /&gt;Kahan hota hai, yeh bhi toh pata nahi chalta....&lt;br /&gt;Tanhai kya hai aakhir...?&lt;br /&gt;Kitne log toh hain...fir tanha kyun ho...?&lt;br /&gt;Mera chehra dekh kar zindagi ne kaha...main tumhari judwa hun...mujhse naaraz na hua karo...!!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-114295009618908404?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/114295009618908404/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=114295009618908404' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114295009618908404'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114295009618908404'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/03/10-cents-ek-roj-zindagi-ke-ru-baru-aa.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-114269589976576268</id><published>2006-03-18T07:27:00.000-08:00</published><updated>2006-03-18T07:31:39.766-08:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;&lt;span style="color: rgb(153, 255, 153);"&gt;ek akela is shehar main&lt;/span&gt;&lt;/h1&gt;&lt;br /&gt;Maut tu ek kavitaa hai mujhse ek kavita ka vada hai milegi mujhko&lt;br /&gt;doobti nabzon mein jab dard ko neend aane lage&lt;br /&gt;zard sa chehra lekar jab chaand ufaq tak pahunche&lt;br /&gt;din abhi paani mein ho, raat kinaare ke kareeb&lt;br /&gt;na andhera na ujaala ho, na abhi raat na din&lt;br /&gt;jism jab khatm ho aur rooh ko jab saans aaye&lt;br /&gt;mujhse ek kavita ka waada hai milegi mujhko....&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-114269589976576268?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/114269589976576268/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=114269589976576268' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114269589976576268'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114269589976576268'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/03/ek-akela-is-shehar-main-maut-tu-ek.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-114269469377276911</id><published>2006-03-18T07:03:00.000-08:00</published><updated>2006-03-18T07:11:33.843-08:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;Kya bhoolon kya yaad karoon&lt;/h1&gt;&lt;br /&gt;&lt;br /&gt;age 5 years -----place Shahjahanpur----school: St.paul&lt;br /&gt;age 10-17------place lucknow-----------college:mbic&lt;br /&gt;age 17-21-------place Kanpur------------college:IIT Kanpur&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;---------------------------------------------------------------&lt;br /&gt;age21-22--------place mumbai-------------company:NIIconsulting&lt;br /&gt;age 22-----------place ???????-------------company:?????????&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-114269469377276911?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/114269469377276911/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=114269469377276911' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114269469377276911'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114269469377276911'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/03/kya-bhoolon-kya-yaad-karoon-age-5.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-114234841026231090</id><published>2006-03-14T06:55:00.000-08:00</published><updated>2006-03-14T07:00:10.276-08:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;Why do ppl write blogs&lt;/h1&gt;&lt;br /&gt;Frankly speaking i dont know why i write blogs. During my IIT days i used to read the blogs of Saurabh Nanda who used to post some cool linux stuff there. But do we write blogs for information??? I guess NO!!  I think most people (like me) write blogs when they get frustrated from work (or life) and then blogs is a medium to take a break from work and post all ur frustration . Some day you may look back at those pages and smile :). Other than this , you may also have a secret admirer :))&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-114234841026231090?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/114234841026231090/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=114234841026231090' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114234841026231090'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114234841026231090'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/03/why-do-ppl-write-blogs-frankly.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-114138585859575156</id><published>2006-03-03T03:25:00.003-08:00</published><updated>2006-03-03T03:37:38.616-08:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;Lo din beeta ,lo raat aaye&lt;/h1&gt;&lt;br /&gt;Few lines from sunset point&lt;br /&gt;&lt;br /&gt;shaam bhuj rahi thi aur aane wale ki koi aahat nahin thi kahin&lt;br /&gt;neeche behta dariya keh raha tha ,&lt;br /&gt;aao meri aagosh main aa jao ,&lt;br /&gt;main tumhari badnami ke saare daag meta doonga....&lt;br /&gt;&lt;br /&gt;din magar dhalne laga hai,&lt;br /&gt;dil main ek khauf sa baith raha hai.....&lt;br /&gt;&lt;br /&gt;woh der se pahuncha tha , magar wakt par pahuncha tha...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-114138585859575156?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/114138585859575156/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=114138585859575156' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114138585859575156'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114138585859575156'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/03/lo-din-beeta-lo-raat-aaye-_114138585859575156.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-114049158144974068</id><published>2006-02-20T19:11:00.000-08:00</published><updated>2006-02-20T19:13:01.463-08:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;Good ? Morning&lt;/h1&gt;&lt;br /&gt; My first night out in mumbai and that too in office.. Got a new toshiba laptop today but the ethernet card  is not supported in linux. So, it is going to be a big pain !!!&lt;br /&gt;Hoping that things wont go too bad in Prague!!!&lt;br /&gt;Signing off!!!&lt;br /&gt;SumSid&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-114049158144974068?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/114049158144974068/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=114049158144974068' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114049158144974068'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114049158144974068'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/02/good-morning-my-first-night-out-in.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-114026593674539431</id><published>2006-02-18T04:29:00.000-08:00</published><updated>2006-02-18T04:32:16.770-08:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;Udaas Paani&lt;/h1&gt;&lt;br /&gt;So, i am finally blogging again. Read an interesting BOF article today. Just in case you were wondering why the title says Udaas Pani is becoz i have started hating Mumbai. I wish people in mumbai gets some more heart and stop being too professional.!!!&lt;br /&gt;SumSid&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-114026593674539431?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/114026593674539431/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=114026593674539431' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114026593674539431'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/114026593674539431'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/02/udaas-paani-so-i-am-finally-blogging.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113695891368989641</id><published>2006-01-10T21:50:00.000-08:00</published><updated>2006-01-10T21:55:13.706-08:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;&lt;span style="color: rgb(153, 255, 153);"&gt;GCIA&lt;/span&gt;&lt;/h1&gt;&lt;br /&gt;http://www.giac.com/certified_professionals/listing/gcia.php&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113695891368989641?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113695891368989641/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113695891368989641' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113695891368989641'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113695891368989641'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/01/gcia-httpwww.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113636653163493043</id><published>2006-01-04T01:20:00.000-08:00</published><updated>2006-01-04T01:23:56.096-08:00</updated><title type='text'></title><content type='html'>&lt;h1 style="color: rgb(153, 255, 153);"&gt;&lt;span style="color: rgb(51, 255, 51);"&gt;Intel Display Driver DOS Vulnerability&lt;/span&gt;&lt;/h1&gt;&lt;br /&gt;Check out http://www.securityfocus.com/bid/16127/&lt;br /&gt;SumSid&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113636653163493043?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113636653163493043/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113636653163493043' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113636653163493043'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113636653163493043'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2006/01/intel-display-driver-dos-vulnerability.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113591760477318352</id><published>2005-12-29T20:37:00.000-08:00</published><updated>2005-12-29T20:40:04.776-08:00</updated><title type='text'></title><content type='html'>&lt;h1&gt; &lt;span style="font-weight: bold; color: rgb(102, 255, 153);"&gt;Rediff Mail XSS Vulnerability&lt;/span&gt;&lt;/h1&gt;&lt;br /&gt;I dont know why people look at XSS vulnerability as less critical. This may be an eye opener for them. This poc shows how easy it is to grab a cookie and play with it.&lt;br /&gt;here is a POC:-&lt;br /&gt;&lt;a href="http://login.rediff.com/cgi-bin/subs/passwd_remind.cgi?FormName=takeusername&amp;login=%3Cscript%3Ealert%28document.cookie%29%3B%3C%2Fscript%3E" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)"&gt;http://login.&lt;span id="st" name="st" class="st0"&gt;rediff&lt;/span&gt;.com/cgi&lt;wbr&gt;-bin/subs/passwd_remind.cgi&lt;wbr&gt;?FormName=takeusername&amp;amp;login=&lt;wbr&gt;%3Cscript%3Ealert%28document&lt;wbr&gt;.cookie%29%3B%3C%2Fscript%3E &lt;/a&gt;&lt;br /&gt;Thanks&lt;br /&gt;SumSid&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113591760477318352?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113591760477318352/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113591760477318352' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113591760477318352'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113591760477318352'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/rediff-mail-xss-vulnerability-i-dont.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113591720131015498</id><published>2005-12-29T20:31:00.000-08:00</published><updated>2005-12-29T20:33:21.326-08:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;&lt;span style="color: rgb(51, 255, 51); font-weight: bold;"&gt;MSN India SQl injection&lt;/span&gt;&lt;/h1&gt;&lt;br /&gt;A Sql injection vulnerability has been reported in MSN India web site.&lt;br /&gt;The vendor (Microsoft) was quick in responding to us. The site was immediately taken offline.&lt;br /&gt;The full story will be released at NII web site very shortly along with&lt;br /&gt; &lt;span style="font-weight: bold; color: rgb(255, 0, 0);"&gt;the WINDOWS DISPLAY DRIVER DOS vulnerability&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113591720131015498?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113591720131015498/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113591720131015498' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113591720131015498'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113591720131015498'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/msn-india-sql-injection-sql-injection.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113517889433738585</id><published>2005-12-21T07:24:00.000-08:00</published><updated>2005-12-29T20:34:28.286-08:00</updated><title type='text'></title><content type='html'>&lt;span style="font-weight: bold;"&gt;&lt;h1&gt;&lt;span style="color: rgb(102, 255, 153); font-weight: bold;"&gt;YAHOO Bugs released&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;&lt;/span&gt;&lt;/h1&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Finally the minor YAHOO bugs which i discovered has been released. You would have got it in your email as i made sure to post it to every individual on my mailing list:) so i wont post it here&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Btw:- if you havent received in your email see it &lt;/span&gt;&lt;a style="font-weight: bold;" href="http://axcesdenied-gofox.blogspot.com/"&gt;here&lt;br /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113517889433738585?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113517889433738585/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113517889433738585' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113517889433738585'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113517889433738585'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/yahoo-bugs-released-finally-minor.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113517857864957901</id><published>2005-12-21T07:21:00.000-08:00</published><updated>2005-12-29T20:36:50.420-08:00</updated><title type='text'></title><content type='html'>&lt;span style="font-weight: bold;"&gt;&lt;h1&gt;&lt;span style="color: rgb(153, 255, 153); font-weight: bold;"&gt;Being lazy&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;&lt;/span&gt;&lt;/h1&gt;&lt;br /&gt;I find it too boring to update each and every advisory here&lt;br /&gt;So here is a link which will keep me and you updated about my advisories&lt;br /&gt;&lt;br /&gt;&lt;a href="http://secunia.com/search/?search=$um$id"&gt;http://secunia.com/search/?search=$um$id&lt;/a&gt;&lt;br /&gt;Thanks&lt;br /&gt;SumSid($um$id)&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113517857864957901?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113517857864957901/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113517857864957901' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113517857864957901'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113517857864957901'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/being-lazy-i-find-it-too-boring-to.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113508159428346295</id><published>2005-12-20T04:22:00.000-08:00</published><updated>2005-12-20T04:28:09.420-08:00</updated><title type='text'></title><content type='html'>&lt;span style="font-weight: bold;"&gt;&lt;h1&gt;&lt;span style="color: rgb(51, 255, 51); font-weight: bold;"&gt;Shmoocon&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;&lt;/span&gt;&lt;/h1&gt;&lt;br /&gt;Today i got an invitation to speak at Shmoocon to be held at Washington .The event is scheduled from january 13th to january 16th 2006.&lt;br /&gt;But it seems that i wont be able to get a visa on such a short term notice.&lt;br /&gt;Huhhh!!!!&lt;br /&gt;Still to speak at an international conference.&lt;br /&gt;2 invits and both gone waste..&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.shmoocon.org"&gt;Shmoocon homepage&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.pakcon.org"&gt;pakcon homepage&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;SumSid&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113508159428346295?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113508159428346295/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113508159428346295' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113508159428346295'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113508159428346295'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/shmoocon-today-i-got-invitation-to.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113496623235369905</id><published>2005-12-18T20:17:00.000-08:00</published><updated>2005-12-18T20:26:23.366-08:00</updated><title type='text'></title><content type='html'>&lt;span style="font-weight: bold;"&gt;&lt;h1&gt;&lt;span style="color: rgb(51, 255, 51);"&gt;URL Redirection in&lt;/span&gt;&lt;span style="color: rgb(255, 0, 0); font-weight: bold;"&gt; ORKUT&lt;/span&gt;&lt;/h1&gt;&lt;/span&gt;About Orkut:-&lt;br /&gt;&lt;span style="font-size:-1;"&gt;&lt;b&gt;orkut&lt;/b&gt;.com &lt;b&gt;is&lt;/b&gt; an online community website designed for friends. The main goal of our service &lt;b&gt;is&lt;/b&gt; to make your social life... &lt;b&gt;orkut&lt;/b&gt;'s social network can help you both maintain existing relationships and establish new ones by reaching out to people you've never met before. Who you interact with &lt;b&gt;is&lt;/b&gt; entirely up to you&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Original Url:-&lt;br /&gt;&lt;br /&gt;https://www.orkut.com/&lt;br /&gt;GLogin.aspx?done=http%3A%2F%2Fwww.orkut.com%2F&lt;br /&gt;&lt;br /&gt;Malformed URL:-&lt;br /&gt;https://www.orkut.com/GLogin.aspx?done=http://any_url.com&lt;br /&gt;&lt;br /&gt;After successful validation Url redirection occurs. To make the matter worse , as the validation has already occured.the victims browser has been authenticated and will remain authenticated unless he logs out of orkut. Although remotely , it can only be exploited by doing a phishing attack at any_url.com with a fake login screen etc.&lt;br /&gt;&lt;br /&gt;Credits:-$um$id&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113496623235369905?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113496623235369905/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113496623235369905' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113496623235369905'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113496623235369905'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/url-redirection-in-orkutabout-orkut.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113453175379719568</id><published>2005-12-13T19:40:00.000-08:00</published><updated>2005-12-16T22:45:28.733-08:00</updated><title type='text'></title><content type='html'>&lt;h1 style="color: rgb(102, 255, 153);"&gt;Advisory&lt;/h1&gt;&lt;br /&gt;&lt;span style="color: rgb(255, 204, 51);"&gt;EveryAuction&lt;/span&gt; V 1.53 XSS vulnerability&lt;br /&gt;Read it &lt;a href="http://www.securityfocus.com/bid/15824/info"&gt; here&lt;/a&gt; on Security Focus&lt;br /&gt;&lt;br /&gt; &lt;span style="color: rgb(255, 204, 51);"&gt;PhpSupportTicket  &lt;/span&gt;&lt;a href="http://nvd.nist.gov/nvd.cfm?cvename=CVE-2005-4264"&gt;Advisory &lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113453175379719568?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113453175379719568/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113453175379719568' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113453175379719568'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113453175379719568'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/advisory-everyauction-v-1.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113453153405163703</id><published>2005-12-13T19:35:00.000-08:00</published><updated>2005-12-16T22:43:11.376-08:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;&lt;span style="color: rgb(102, 255, 153);"&gt;Links to Me&lt;/span&gt;&lt;/h1&gt;&lt;br /&gt;                                                                         &lt;br /&gt;My articles/ advisories are available at the following links:-&lt;br /&gt;                                                                          &lt;span style="font-weight: bold; color: rgb(255, 153, 0);"&gt;0. &lt;a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-4264"&gt;CVE-2005-4264&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="color: rgb(255, 102, 0); font-weight: bold;"&gt;1.&lt;/span&gt;&lt;a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-4162" style="color: rgb(255, 102, 0); font-weight: bold;"&gt;&lt;span style="color: rgb(255, 153, 0);"&gt;CVE-2005-4162,&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;&lt;span style="color: rgb(255, 102, 0); font-weight: bold;"&gt;2.&lt;/span&gt;&lt;a style="color: rgb(255, 102, 0); font-weight: bold;" href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-4088"&gt;&lt;span style="color: rgb(255, 153, 0);"&gt;&lt;span style="font-family:Verdana,Arial,Helvetica,Geneva;"&gt;CVE-2005-4088&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;3.&lt;span style="color: rgb(255, 153, 0);"&gt;&lt;b&gt;Snort &lt;a href="http://snort.org/docs"&gt;docs&lt;/a&gt;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;4.Secguru:- http://www.secguru.com/node?from=16&lt;br /&gt;5. &lt;a href="http://www.frsirt.com/english/advisories/2005/2810"&gt;&lt;span style="color: rgb(255, 153, 0);"&gt;FRSIRT&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;6.Security-tracker http://www.securitytracker.com/alerts/2005/Dec/1015332.html&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113453153405163703?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113453153405163703/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113453153405163703' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113453153405163703'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113453153405163703'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/links-to-me-my-articles-advisories-are.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113410535513395226</id><published>2005-12-08T21:09:00.000-08:00</published><updated>2005-12-08T21:32:54.183-08:00</updated><title type='text'></title><content type='html'>&lt;h1 style="color: rgb(153, 255, 153);"&gt;One More &lt;/h1&gt;My Perl -Cal advisory is published at Security focus .&lt;a href="http://www.securityfocus.com/bid/15779"&gt;Here&lt;/a&gt; is the link&lt;br /&gt;The same is also available at Secunia. See it &lt;a href="http://secunia.com/advisories/17953/"&gt;here&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113410535513395226?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113410535513395226/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113410535513395226' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113410535513395226'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113410535513395226'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/one-more-my-perl-cal-advisory-is.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113396352669740039</id><published>2005-12-07T05:50:00.000-08:00</published><updated>2005-12-07T06:14:51.966-08:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;&lt;span style="color: rgb(153, 255, 153);"&gt;Advisory&lt;/span&gt;&lt;/h1&gt;&lt;br /&gt;Software:  Shop PBS&lt;br /&gt;&lt;br /&gt;Type: Cross Site Scripting&lt;br /&gt;&lt;br /&gt;Severity: Medium&lt;br /&gt;&lt;br /&gt;Vulnerability Type: Input Validation Error&lt;br /&gt;&lt;br /&gt;Overview:- There exists a cross-site scripting vulnerability as the input in the parameter "keyword" is not filtered properly sanatised in the index.jsp&lt;br /&gt;&lt;br /&gt;Description:- The cross-site scripting bug can be executed with a URL like so:&lt;br /&gt;&lt;br /&gt;This issue could permit a remote attacker to create a malicious URL link that includes hostile HTML and script code. If this link were to be followed, the hostile code may be rendered in the web browser of the victim user. This would occur in the security context of the affected Web site.&lt;br /&gt;&lt;br /&gt;proof of Concept:-&lt;br /&gt;&lt;br /&gt;http://www.shoppbs.org/searchHandler/index.jsp?keywords=&lt;br /&gt;"&lt;"script"&gt;"alert%28document.cookie%29"&lt;"/script"&gt;"&amp;x=31&lt;br /&gt;&amp;amp;y=11"&lt;br /&gt;&lt;br /&gt;Solution:&lt;br /&gt;--------------------&lt;br /&gt;There is no vendor-supplied patch for this issue at&lt;br /&gt;this time.&lt;br /&gt;&lt;br /&gt;Credit:-&lt;br /&gt;KeyShore&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;...Kishore works with me and he came accross this one..:)&lt;br /&gt;Cheers&lt;br /&gt;SumSid&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113396352669740039?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113396352669740039/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113396352669740039' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113396352669740039'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113396352669740039'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/advisory-software-shop-pbs-type-cross.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113395643387662449</id><published>2005-12-07T03:36:00.000-08:00</published><updated>2005-12-07T06:40:02.870-08:00</updated><title type='text'></title><content type='html'>&lt;h1 style="color: rgb(102, 255, 153);"&gt;Advisory&lt;/h1&gt;&lt;br /&gt;TITLE:&lt;br /&gt;&lt;span style="font-size:130%;"&gt;&lt;b style="color: rgb(255, 0, 0);"&gt;Yahoo servers URL redirection&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;SECUNIA ADVISORY ID:&lt;br /&gt;coming soon.&lt;br /&gt;&lt;br /&gt;VERIFY ADVISORY:&lt;br /&gt;&lt;a onclick="return top.js.OpenExtLink(window,event,this)" href="http://secunia.com/advisories/17915/" target="_blank"&gt;&lt;/a&gt;coming soon.&lt;br /&gt;&lt;br /&gt;CRITICAL:&lt;br /&gt;Moderately critical&lt;br /&gt;&lt;br /&gt;IMPACT:&lt;br /&gt;Manipulation of data&lt;br /&gt;&lt;br /&gt;WHERE:&lt;br /&gt;From remote&lt;br /&gt;&lt;br /&gt;SOFTWARE:&lt;br /&gt;Yahoo.com web site&lt;br /&gt;&lt;a onclick="return top.js.OpenExtLink(window,event,this)" href="http://secunia.com/product/6375/" target="_blank"&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;DESCRIPTION:&lt;br /&gt;$um$id has reported  vulnerabilities in Yahoo.com web site/s which can be&lt;br /&gt;exploited by malicious people to injection malacious URL in the scripts running on the servers which causes redirection to those malacious URL.&lt;br /&gt;As the redirection will be done by the Yahoo servers the victim will associate the same amount of trust with the malacious URL as he/she will with the Yahoo servers. This can then be followed by a phishing attack.&lt;br /&gt;&lt;br /&gt;Proof Of Concept:-&lt;br /&gt;original link:-     http://in.rd.yahoo.com//prop/?http://in.photos.yahoo.com/&lt;br /&gt;malformed link:-http://in.rd.yahoo.com//prop/?http://www.any_malacious_link.com&lt;br /&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 51, 255);"&gt;Minutes after reporting this vulnerability with different url to YAHOO , that link was updated.However, the prrof of concept contains the new url and which still allows url redirection&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;SOLUTION:&lt;br /&gt;Check the URL before rendering it in the browser.&lt;br /&gt;&lt;br /&gt;PROVIDED AND/OR DISCOVERED BY:&lt;br /&gt;$um$id&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113395643387662449?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113395643387662449/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113395643387662449' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113395643387662449'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113395643387662449'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/advisory-title-yahoo-servers-url.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113393112377622837</id><published>2005-12-06T20:48:00.000-08:00</published><updated>2005-12-07T00:00:43.873-08:00</updated><title type='text'></title><content type='html'>&lt;h1&gt;&lt;span style="color: rgb(153, 255, 153);"&gt;Advisory at Secunia&lt;/span&gt;&lt;/h1&gt;&lt;p&gt;The following advisories of mine are now available at secunia.&lt;br /&gt;&lt;/p&gt;&lt;p&gt;1. PhPForumPro SQL Injection&lt;br /&gt;Secunia id:17915&lt;br /&gt;Link:-&lt;a href="http://secunia.com/advisories/17915"&gt;http://secunia.com/advisories/17915&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;2. PhPAddressBook v1.2 SQL Injection&lt;br /&gt;Secunia id:-17885&lt;br /&gt;Link:-&lt;a href="http://secunia.com/advisories/17885"&gt;http://secunia.com/advisories/17885&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Thanks&lt;br /&gt;SumSid &lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113393112377622837?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113393112377622837/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113393112377622837' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113393112377622837'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113393112377622837'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/advisory-at-secuniathe-following.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113387285990055163</id><published>2005-12-06T04:40:00.000-08:00</published><updated>2005-12-06T04:42:21.123-08:00</updated><title type='text'></title><content type='html'>&lt;h1 style="color: rgb(102, 255, 153);"&gt;advisory&lt;/h1&gt;&lt;br /&gt;TITLE:&lt;br /&gt;X-cart Path disclosure vulnerability&lt;br /&gt;&lt;br /&gt;SECUNIA ADVISORY ID:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;VERIFY ADVISORY:&lt;br /&gt;&lt;br /&gt;CRITICAL:&lt;br /&gt;Not critical&lt;br /&gt;&lt;br /&gt;IMPACT:&lt;br /&gt;Path disclosure vulnerability&lt;br /&gt;&lt;br /&gt;WHERE:&lt;br /&gt;From remote&lt;br /&gt;&lt;br /&gt;SOFTWARE:&lt;br /&gt;x-cart&lt;br /&gt;&lt;br /&gt;DESCRIPTION:&lt;br /&gt;$um$id has reported a vulnerability in x-cart, which can be&lt;br /&gt;exploited by malicious people to disclose certain system information.&lt;br /&gt;Input passed in "error_message.php" isn't properly&lt;br /&gt;sanitised before being returned to the user. The vulnerability has been reported in x-cart gold and in x-cart pro. Other versions may also be affected.&lt;br /&gt;&lt;br /&gt;proof of concept:-&lt;br /&gt;&lt;a href="http://localhost/x-cart/admin/error_message.php?http://www.attacker.com" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)"&gt;http://localhost/x-cart/admin&lt;wbr&gt;/error_message.php?http://www&lt;wbr&gt;.attacker.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;SOLUTION:&lt;br /&gt;No patch is available as of now.&lt;br /&gt;&lt;br /&gt;PROVIDED AND/OR DISCOVERED BY:&lt;br /&gt;$um$id&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113387285990055163?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113387285990055163/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113387285990055163' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113387285990055163'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113387285990055163'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/advisory-title-x-cart-path-disclosure.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113385805021701604</id><published>2005-12-05T23:32:00.000-08:00</published><updated>2005-12-08T07:32:39.176-08:00</updated><title type='text'></title><content type='html'>&lt;h1 style="color: rgb(102, 255, 153);"&gt;Comments from people&lt;/h1&gt;&lt;br /&gt;Hi Sumit&lt;br /&gt;&lt;br /&gt;I really enjoyed your article on Scurity Focus on "Evading NIDS, Revisited." I am not an IDS or networking expert, but you explained everything so well, with such good illustrations, that this was a &lt;i&gt;very&lt;/i&gt; readable  paper, even for the non-expert. Wish all security articles were as good as this  one.&lt;br /&gt;&lt;br /&gt;Thanks for a &lt;i&gt;very&lt;/i&gt; enjoyable and informative  article.&lt;br /&gt;&lt;br /&gt;Regards&lt;br /&gt;&lt;br /&gt;Mary Ann Davidson&lt;br /&gt;Mary is the chief security researcher at Oracle&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113385805021701604?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113385805021701604/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113385805021701604' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113385805021701604'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113385805021701604'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/comments-from-people-hi-sumit-i-really.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113358351451013508</id><published>2005-12-02T20:18:00.000-08:00</published><updated>2006-05-21T07:05:47.590-07:00</updated><title type='text'></title><content type='html'>&lt;h1 style="color: rgb(153, 255, 153);"&gt;INFOCUS&lt;/h1&gt;&lt;br /&gt;Check out my articles on &lt;a href="http://search.securityfocus.com/swsearch?query=sumit+siddharth&amp;sbm=infocus&amp;amp;submit=Search%21&amp;metaname=alldoc&amp;amp;sort=swishrank"&gt;SecurityFocus&lt;/a&gt;&lt;br /&gt;Comments/Suggestions invited.&lt;br /&gt;Thanks&lt;br /&gt;Sumit&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113358351451013508?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113358351451013508/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113358351451013508' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113358351451013508'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113358351451013508'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/infocus-check-out-my-articles-on.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113351539286827253</id><published>2005-12-02T01:14:00.000-08:00</published><updated>2005-12-02T20:44:46.970-08:00</updated><title type='text'></title><content type='html'>&lt;h1 style="color: rgb(153, 255, 153);"&gt; Advisory&lt;/h1&gt;&lt;br /&gt;Product:- PHP SUPPORT TICKETS version 2.1 and earlier&lt;br /&gt;&lt;br /&gt;Vulnerability:-Sql Injection&lt;br /&gt;&lt;br /&gt;CRITICALITY:&lt;br /&gt;critical&lt;br /&gt;&lt;br /&gt;IMPACT:&lt;br /&gt;Manipulation of data&lt;br /&gt;&lt;br /&gt;WHERE:&lt;br /&gt;From remote&lt;br /&gt;&lt;br /&gt;SOFTWARE:&lt;br /&gt;"Manage customer queries with this one stop solution for online customer relations.PHP Support Tickets is written in PHP5 and utilises a MySQL database both are required on your web.The administration section is secured through a username and password. The default entry is administrator / password. You may change this once you have logged in.&lt;br /&gt;You may have unlimited Moderators / Admins assigned to take care of incoming tickets. These are all entered through an intuitive user admin page.Admins are allowed to view all tickets and perform all admin tasks, moderators can see the tickets assigned to their department only.Manageable departments allow you to edit / delete / add new departments at will.".&lt;br /&gt;&lt;br /&gt;DESCRIPTION:&lt;br /&gt;The Vulnerability can be exploited by malicious people to conduct SQL injection attacks.The input passed to the "username" and "password" field and in the "id" parameter in the "index.php" is not properly filtered which allows the attacker to run arbitary sql query. There may be other parameters as well where the input is not filtered.&lt;br /&gt;&lt;br /&gt;Proof of concept:-&lt;br /&gt; ** The proof of concept cannot be released until vendor is ready with the patch***&lt;br /&gt;&lt;br /&gt;SOLUTION:&lt;br /&gt;Awaiting response from the vendor&lt;br /&gt;&lt;br /&gt;Original Advisory: Here at http://axcesdenied.blogspot.com&lt;br /&gt;&lt;br /&gt;Credit: $um$id&lt;br /&gt;Aka&lt;br /&gt;Access Denied&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113351539286827253?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113351539286827253/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113351539286827253' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113351539286827253'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113351539286827253'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/advisory-product-php-support-tickets.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113344537003969776</id><published>2005-12-01T05:51:00.000-08:00</published><updated>2005-12-02T20:31:04.413-08:00</updated><title type='text'></title><content type='html'>&lt;h1 style="color: rgb(153, 255, 153);"&gt;ADVISORY&lt;/h1&gt;&lt;br /&gt;Product:- php-addressbook v1.2 by WidgetMonkey&lt;br /&gt;&lt;br /&gt;Vulnerability:-Sql Injection&lt;br /&gt;&lt;br /&gt;CRITICAL:&lt;br /&gt;Moderately critical&lt;br /&gt;&lt;br /&gt;IMPACT:&lt;br /&gt;Manipulation of data&lt;br /&gt;&lt;br /&gt;WHERE:&lt;br /&gt;From remote&lt;br /&gt;&lt;br /&gt;SOFTWARE:&lt;br /&gt;"This is an address book program for people who have their own web space. At present it is does not have a multiple user function. I wrote it because I wanted a place where I could store all my addresses so I can access them from multiple locations, and its a handy backup if you lose your address book, and there weren`t any freeware programs that suited my needs".&lt;br /&gt;&lt;br /&gt;DESCRIPTION:&lt;br /&gt;The Vulnerability can be exploited by malicious people to conduct SQL injection attacks.&lt;br /&gt;&lt;br /&gt;Input passed to the "id" parameter in "view.php" isn't properly&lt;br /&gt;sanitised before being used in a SQL query. This can be exploited to&lt;br /&gt;manipulate SQL queries by injecting arbitrary SQL code.There are other parameters also where the input is not properly filtered and will result in sql injection.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;SOLUTION:&lt;br /&gt;Awaiting response from the vendor&lt;br /&gt;&lt;br /&gt;Original Advisory: Here at http://axcesdenied.blogspot.com&lt;br /&gt;&lt;br /&gt;Credit: $um$id&lt;br /&gt;Aka&lt;br /&gt;Access Denied&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113344537003969776?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113344537003969776/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113344537003969776' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113344537003969776'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113344537003969776'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/advisory-product-php-addressbook-v1.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113343924528196281</id><published>2005-12-01T04:13:00.000-08:00</published><updated>2005-12-02T20:31:51.993-08:00</updated><title type='text'></title><content type='html'>&lt;h1 style="color: rgb(153, 255, 153);"&gt;ADVISORY&lt;/h1&gt;&lt;br /&gt;Product:- PhpForumPro from W2B&lt;br /&gt;&lt;br /&gt;CRITICAL:&lt;br /&gt;Moderately critical&lt;br /&gt;&lt;br /&gt;IMPACT:&lt;br /&gt;Manipulation of data&lt;br /&gt;&lt;br /&gt;WHERE:&lt;br /&gt;From remote&lt;br /&gt;&lt;br /&gt;SOFTWARE:&lt;br /&gt;PhpForumPro from W2B.&lt;br /&gt;phpForumPro is a fast and powerful, password protected private discussion forum application built with the industry standard PHP4 scripting language and powered by the MySQL database engine.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;DESCRIPTION:&lt;br /&gt;The Vulnerability can be exploited by malicious people to conduct SQL injection attacks.&lt;br /&gt;&lt;br /&gt;Input passed to the "parent" parameter in "index.php" isn't properly&lt;br /&gt;sanitised before being used in a SQL query. This can be exploited to&lt;br /&gt;manipulate SQL queries by injecting arbitrary SQL code.There are other parameters also where the input is not properly filtered and will result in sql injection.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;SOLUTION:&lt;br /&gt;Awaiting response from the vendor&lt;br /&gt;&lt;br /&gt;Original Advisory: Here at http://axcesdenied.blogspot.com&lt;br /&gt;&lt;br /&gt;Credit: $um$id&lt;br /&gt;Aka&lt;br /&gt;Access Denied&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113343924528196281?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113343924528196281/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113343924528196281' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113343924528196281'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113343924528196281'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/12/advisory-product-phpforumpro-from-w2b.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113335954525920760</id><published>2005-11-30T06:05:00.000-08:00</published><updated>2005-12-02T20:32:13.070-08:00</updated><title type='text'></title><content type='html'>&lt;h1 style="color: rgb(153, 255, 153);"&gt;ADVISORY&lt;/h1&gt;&lt;br /&gt;Product:- GoFox free Travel tool Sql Injection Vulnerability&lt;br /&gt;&lt;br /&gt;CRITICAL:&lt;br /&gt;Moderately critical&lt;br /&gt;&lt;br /&gt;IMPACT:&lt;br /&gt;Manipulation of data&lt;br /&gt;&lt;br /&gt;WHERE:&lt;br /&gt;From remote&lt;br /&gt;&lt;br /&gt;SOFTWARE:&lt;br /&gt;Gofox free travel tool&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;DESCRIPTION:&lt;br /&gt;The Vulnerability can be exploited by malicious people to conduct SQL injection attacks.&lt;br /&gt;&lt;br /&gt;Input passed to the "pid" parameter in "traveltools.php" isn't properly&lt;br /&gt;sanitised before being used in a SQL query. This can be exploited to&lt;br /&gt;manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;SOLUTION:&lt;br /&gt;Awaiting response from the vendor&lt;br /&gt;&lt;br /&gt;Original Advisory: Here at http://axcesdenied.blogspot.com&lt;br /&gt;&lt;br /&gt;Credit: $um$id&lt;br /&gt;Aka&lt;br /&gt;Access Denied&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113335954525920760?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113335954525920760/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113335954525920760' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113335954525920760'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113335954525920760'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/11/advisory-product-gofox-free-travel.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113333181068943782</id><published>2005-11-29T22:23:00.000-08:00</published><updated>2005-12-02T20:33:08.783-08:00</updated><title type='text'></title><content type='html'>&lt;span style="color: rgb(153, 255, 153);"&gt;&lt;h1&gt;ADVISORY&lt;/h1&gt;&lt;/span&gt;&lt;br /&gt;TITLE:&lt;br /&gt;Send Card,Mapple Addressbook SQL Injection Vulnerabilities&lt;br /&gt;&lt;br /&gt;CRITICAL:&lt;br /&gt;Moderately critical&lt;br /&gt;&lt;br /&gt;IMPACT:&lt;br /&gt;Manipulation of data&lt;br /&gt;&lt;br /&gt;WHERE:&lt;br /&gt;From remote&lt;br /&gt;&lt;br /&gt;SOFTWARE:&lt;br /&gt;Send card,address Book by Mapple ,&lt;br /&gt;&lt;br /&gt;DESCRIPTION:&lt;br /&gt;The users input is not clearly filtered in the validation script. Thus, the validation can easily be bypassed and to make the matter worse any query can be run on the mysql server retreiving a lot of crucial data.&lt;br /&gt;&lt;br /&gt;Solution:&lt;br /&gt;--------------------&lt;br /&gt;There is no vendor-supplied patch for this issue at&lt;br /&gt;this time.&lt;br /&gt;&lt;br /&gt;Original Advisory: Here at http://axcesdenied.blogspot.com&lt;br /&gt;&lt;br /&gt;Credit: $um$id&lt;br /&gt;Aka&lt;br /&gt;Access Denied&lt;br /&gt;----------------------------------------------------------------------&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113333181068943782?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113333181068943782/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113333181068943782' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113333181068943782'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113333181068943782'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/11/advisory-title-send-cardmapple.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-19415674.post-113332533065662128</id><published>2005-11-29T20:33:00.000-08:00</published><updated>2005-12-02T20:33:34.483-08:00</updated><title type='text'></title><content type='html'>&lt;span style="color: rgb(153, 255, 153);"&gt;&lt;h1&gt;ADVISORY&lt;/h1&gt;&lt;/span&gt;&lt;br /&gt;Vendor: Perl-Cal&lt;br /&gt;Products Affected: Perl-Cal 2.99 and earlier&lt;br /&gt;Type: Cross Site Scripting&lt;br /&gt;Severity: Medium Date released: 23rd Nov 2005&lt;br /&gt;Vulnerability Type: Input Validation Error&lt;br /&gt;Overview:- PerlCal is a CGI script written by Acme Software that allows web-based calendar sharing and related functions.There exists a cross-site scripting vulnerability as the input in one of the parameters is not filtered correctly.&lt;br /&gt;&lt;br /&gt;Description:- The cross-site scripting bug can be executed with a URL like so:&lt;br /&gt;&lt;br /&gt;http://localhost/cgi-bin/perlcal/cal_make.pl&lt;br /&gt;?p0=%3Cscript%3Ealert(‘hi’);%3C/script%3E&lt;br /&gt;&lt;br /&gt;This issue could permit a remote attacker to create a malicious URI link that includes hostile HTML and script code. If this link were to be followed, the hostile code may be rendered in the web browser of the victim user. This would occur in the security context of the affected Web site.&lt;br /&gt;&lt;br /&gt;Demonstration:- http://localhost/cgi-bin/perlcal/cal_make.pl&lt;br /&gt;?p0=%3Cscript%3Ewindow.open(‘http://www.google.com’);%3Cscript%3E&lt;br /&gt;&lt;br /&gt;This can also be used to steal users cookie.&lt;br /&gt;Demonstration:- http://localhost/cgi-bin/perlcal/cal_make.pl?p0=%3Cscript%3Ealert(document.cookie);%3C/script%3E&lt;br /&gt;&lt;br /&gt;Solution:&lt;br /&gt;--------------------&lt;br /&gt;There is no vendor-supplied patch for this issue at&lt;br /&gt;this time.&lt;br /&gt;&lt;br /&gt;Original Advisory: Here at http://axcesdenied.blogspot.com&lt;br /&gt;&lt;br /&gt;Credit: $um$id&lt;br /&gt;Aka&lt;br /&gt;Access Denied&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/19415674-113332533065662128?l=axcesdenied.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://axcesdenied.blogspot.com/feeds/113332533065662128/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=19415674&amp;postID=113332533065662128' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113332533065662128'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/19415674/posts/default/113332533065662128'/><link rel='alternate' type='text/html' href='http://axcesdenied.blogspot.com/2005/11/advisory-vendor-perl-cal-products.html' title=''/><author><name>SumSid</name><uri>http://www.blogger.com/profile/16682017237919351609</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
