 |
|
|
|
| Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) | | Published: |  | 28.03.2006 | | Source: |  | | | SecurityVulns ID: |  | 5950 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. |
| Original document |  | Cyber Lords, XSS in ssLinks v1.22 (28.03.2006) |
| |  | Cyber Lords, XSS in Calendar Event 3.0 (28.03.2006) |
| |  | Cyber Lords, XSS in PowerNews (28.03.2006) |
| |  | SECUNIA, [SA19392] Mambo AkoComment Module SQL Injection Vulnerabilities (28.03.2006) |
| |  | SECUNIA, [SA19423] Greymatter gm-upload.cgi File Upload Vulnerability (28.03.2006) |
| |  | stormhacker_(at)_hotmail.com, PHPLiveHelper 1.8 remote command execution (include) Xploit (perl) (28.03.2006) |
| |  | xx_hack_xx_2004_(at)_hotmail.com, XSS & SQL Injection in Music Box v2.3 (28.03.2006) |
| |  | D.Snezhkov, [DDSi-SA] XSS in Raindance Communications Web Conferencing Pro (28.03.2006) |
| |  | dabdoub_mosikar_(at)_forislam.com, Blog Pixel Motion<=1.xx Authentication Bypass Vulnerability & SQL injection (28.03.2006) |
| |  | Aliaksandr Hartsuyeu, [eVuln] Maian Weblog Multiple SQL Injection Vulnerabilities (28.03.2006) |
| |  | Aliaksandr Hartsuyeu, [eVuln] DSLogin Authentication Bypass Vulnerability (28.03.2006) |
| |  | botan_(at)_linuxmail.org, CanfTool v1.1 Cross Site Scripting Attack (28.03.2006) |
| |  | uid0, VWar <= 1.5.0 R11 Remote Code Execution Exploit (28.03.2006) |
| |  | r0t, phpCOIN v1.2.2 XSS vuln. (28.03.2006) |
| |  | r0t, classifiedZONE v1.2 XSS vuln. (28.03.2006) |
| |  | r0t, realestateZONE 4.2 Multiple XSS vuln. (28.03.2006) |
| |  | r0t, couponZONE v.4.2 Multiple vuln. (28.03.2006) |
| |  | r0t, ActiveCampaign SupportTrio 2.5 vuln. (28.03.2006) |
| |  | r0t, CONTROLzx HMS - Hosting Management System vuln. (28.03.2006) |
| |  | r0t, Connect Daily Web Calendar Software Multiple XSS vuln. (28.03.2006) |
|
|
|
|
|
|
|
|