 |
|
|
|
| Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) | | Published: |  | 16.02.2006 | | Source: |  | | | SecurityVulns ID: |  | 5780 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. |
| Original document |  | sp3x_(at)_securityreason.com, [Full-disclosure] Critical SQL Injection PHPNuke <= 7.8 - Your_Account module (16.02.2006) |
| |  | SECUNIA, [SA18874] @Mail Webmail Image Tag Script Insertion Vulnerability (16.02.2006) |
| |  | SECUNIA, [SA18873] Clever Copy Private Message "Subject" Script Insertion Vulnerability (16.02.2006) |
| |  | SECUNIA, [SA18876] Teca Diary Personal Edition SQL Injection Vulnerability (16.02.2006) |
| |  | SECUNIA, [SA18885] webSPELL "search.php" SQL Injection Vulnerability (16.02.2006) |
| |  | SECUNIA, [SA18797] CGIWrap Error Message System Information Disclosure (16.02.2006) |
| |  | SECUNIA, [SA18883] Plume CMS prepend.php File Inclusion Vulnerability (16.02.2006) |
| |  | SECUNIA, [SA18868] Squishdot Mail Header Injection Vulnerability (16.02.2006) |
| |  | Scott Dewey, [Full-disclosure] Wimpy MP3 Player - Text file overwrite vulnerability (16.02.2006) |
| |  | Scott Dewey, [Full-disclosure] HostAdmin - Remote Command Execution Vulnerability (16.02.2006) |
| |  | Scott Dewey, [Full-disclosure] Web Calendar Pro - Denial of Service SQL Injection Vulnerability (16.02.2006) |
| |  | Scott Dewey, [Full-disclosure] iUser Ecommerce - Remote Command Execution Vulnerability (16.02.2006) |
| |  | imei, [myimei]MyBB 1.0.3~private.php~multiple SqlInjection (16.02.2006) |
| |  | imei, MyBB1.0.3~managegroup.php~Multiple SqlInjection & XSS (16.02.2006) |
| |  | imei, [myimei]MyBB1.0.3~managegroup.php~Multiple SqlInjection & XSS (16.02.2006) |
| |  | Aliaksandr Hartsuyeu, [eVuln] M. Blom HTML::BBCode perl module XSS Vulnerabilities (16.02.2006) |
| |  | Aliaksandr Hartsuyeu, [eVuln] 2200net Calendar system SQL Injection and Authentication Bypass Vulnerabilities (16.02.2006) |
| |  | Aliaksandr Hartsuyeu, [eVuln] My Blog BBCode XSS Vulnerabilities (16.02.2006) |
| |  | JeiAr, XMB Forums Multiple Vulnerabilities (16.02.2006) |
| |  | info_(at)_digitalarmaments.com, Digital Armaments Security Advisory 02.14.2006: Gallery web-based photo gallery remote file execution (16.02.2006) |
|
|
|
|
|
|
|
|