|
| Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) | | Published: |  | 26.09.2006 | | Source: |  | | | SecurityVulns ID: |  | 6650 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. |
| Affected: |  | OPTIAL : Opial Audio/Video Download Management 1.0 | | |  | WWWTHREADS : wwwthreads 5.4 | | |  | PNEWS : PNews 1.1 | | |  | PBLANG : PBlang 4.66 | | |  | POLARING : Polaring 0.04 | | |  | FACESTONES : faceStones 2.0 | | |  | BRUDASWEN : BrudaGB 1.1 | | |  | BRUDASWEN : BrudaNews 1.1 | | |  | EVOBB : evoBB 0.3 | | |  | PHPBBINTEGRAMODE : IM Portal 1.2 | | |  | MINERVA : Minerva 2.0 |
| Original document |  | SHiKaA-_(at)_hotmail.com, Minerva <= v238 (phpbb_root_path) Remote File Inclusion Exploit (26.09.2006) |
| |  | SHiKaA-_(at)_hotmail.com, IM Portal <= v1.2.0 (phpbb_root_path) Remote File Inclusion Exploit (26.09.2006) |
| |  | SHiKaA-_(at)_hotmail.com, evoBB <= v0.3 (path) Remote File Inclusion Exploit (26.09.2006) |
| |  | SHiKaA-_(at)_hotmail.com, BrudaNews <= v1.1 (o) Remote File Inclusion Exploit (26.09.2006) |
| |  | SHiKaA-_(at)_hotmail.com, BrudaGB <= v1.1 (o) Remote File Inclusion Exploit (26.09.2006) |
| |  | SHiKaA-_(at)_hotmail.com, faceStones personal <= v2.0.42 (objpath) Remote File Inclusion Exploit (26.09.2006) |
| |  | MILW0RM, PBLang <= v4.66z (temppath) Remote File Inclusion Exploit (26.09.2006) |
| |  | SHiKaA-_(at)_hotmail.com, PBLang <= v4.66z (temppath) Remote File Inclusion Exploit (26.09.2006) |
| |  | CvIr.System_(at)_gmail.com, PNews v1.1.0 (nbs) Remote File Inclusion (26.09.2006) |
| |  | h4ck3riran_(at)_yahoo.com, wwwthreads <= 5.4.2 croos site script vulnerbilities (26.09.2006) |
| |  | meto5757_(at)_hotmail.com, PhotoStore Multiple Cross-Site Scripting Vulnerabilities (26.09.2006) |
| |  | h4ck3riran_(at)_yahoo.com, Opial Audio/MyPhotos<= Remote File Include Vulnerability (26.09.2006) |
| |  | meto5757_(at)_hotmail.com, Opial Audio/Video Download Management - Version 1.0 index.php Xss vulns. (26.09.2006) |
| |  | h4ck3riran_(at)_yahoo.com, phpstak <= Remote File Include Vulnerability (26.09.2006) |
|
|
|
|
|