 |
|
|
|
| Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) | | Published: |  | 29.03.2006 | | Source: |  | | | SecurityVulns ID: |  | 5954 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. |
| Original document |  | Aliaksandr Hartsuyeu, [eVuln] Skull-Splitter's PHP Downloadcounter for Wallpapers SQL Injection (29.03.2006) |
| |  | Aliaksandr Hartsuyeu, [eVuln] Skull-Splitter's PHP Guestbook XSS Vulnerability (29.03.2006) |
| |  | badnet_xoopiter_(at)_yahoo.com, XSS in PHPKIT Version 1.6.03 (29.03.2006) |
| |  | SECUNIA, [SA19443] PHP Script Index "search" Cross-Site Scripting Vulnerability (29.03.2006) |
| |  | SECUNIA, [SA19439] Cholod Mysql based message board Script Insertion and SQL Injection (29.03.2006) |
| |  | SECUNIA, [SA19446] OneOrZero "id" SQL Injection Vulnerability (29.03.2006) |
| |  | o.y.6_(at)_hotmail.com, ArabPortal 2.0 Stable CrossSiteScripting (29.03.2006) |
| |  | xx_hack_xx_2004_(at)_hotmail.com, XSS in AL-Caricatier (29.03.2006) |
| |  | Aliaksandr Hartsuyeu, [eVuln] Maian Support Authentication Bypass (29.03.2006) |
| |  | Aliaksandr Hartsuyeu, [eVuln] Maian Events SQL Injection Vulnerability (29.03.2006) |
| |  | LTK, advisory DATALIFE engine (29.03.2006) |
| |  | Cyber Lords, XSS in In-link 2.2.6 (29.03.2006) |
| |  | Cyber Lords, SQL-Injection in AutorankPhp 2.0.2 (29.03.2006) |
| |  | Cyber Lords, XSS in Monster Top List 1.4 (29.03.2006) |
| |  | Cyber Lords, Xss in UltraShop (29.03.2006) |
| |  | Cyber Lords, SQL-Injection and XSS in uTopsites 1.5.1 (29.03.2006) |
| |  | Cyber Lords, Sql-injection in PollPro Version 4 (29.03.2006) |
| |  | Cyber Lords, Sql-injection in RW: Download V 4.0.5 (29.03.2006) |
|
|
|
|
|
|
|
|