|
| Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) | | Published: |  | 31.12.2006 | | Source: |  | | | SecurityVulns ID: |  | 6983 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. |
| Affected: |  | CACTI : Cacti 0.8 | | |  | ADPFORUM : ADP Forum 2.0 | | |  | SOFTARTISANS : SAFileUp 5.0 | | |  | XNEWS : x-news 1.1 | | |  | VOODOOCHAT : Voodoo chat 1.0 | | |  | FSWIKI : fswiki 3.6 | | |  | EASYNEWS : Easy News 4.0 | | |  | ASPTICKER : ASPTicker 1.0 | | |  | WYWO : InOut Board 1.0 | | |  | ALANWARD : aFAQ 1.0 | | |  | CLICKNPRINT : Click N' Print Coupons 2005.01 | | |  | IMGALLERY : IMGallery 2.5 | | |  | WEBTEXT : WebText 0.4 | | |  | PHPBB : Acronym Mod 0.9 for phpBB |
| Original document |  | the master, Acronym Mod v0.9.5 Remote SQL Injection Vulnerability (31.12.2006) |
| |  | ajannhwt_(at)_hotmail.com, ASPTicker 1.0 (admin.asp) Remote Login ByPass SQL Injection Vulnerability (31.12.2006) |
| |  | ajannhwt_(at)_hotmail.com, Title : WYWO - InOut Board 1.0 Multiple Vulnerabilities (31.12.2006) |
| |  | ajannhwt_(at)_hotmail.com, aFAQ 1.0 (catcode) Remote SQL Injection Vulnerability (31.12.2006) |
| |  | bd0rk_(at)_hackermail.com, x-news 1.1 Password Disclosure Vulnerability (31.12.2006) |
| |  | bd0rk_(at)_hackermail.com, Voodoo chat 1.0RC1b Password Disclosure Vulnerability (31.12.2006) |
| |  | bd0rk_(at)_hackermail.com, fswiki 3.6.2 (user.dat) Password Disclosure Vulnerability (31.12.2006) |
| |  | bd0rk_(at)_hackermail.com, EasyNews PRO News Publishing 4.0 Remote Password Disclosure Vulnerability (31.12.2006) |
| |  | Dr Max Virus, Sv(ADP) Forum 2.0.3 Remote Password Disclosure Vulnerablity (31.12.2006) |
| |  | XORON, Enigma WordPress Bridge (boarddir) Remote File Include (31.12.2006) |
| |  | XORON, Enigma Coppermine Bridge (boarddir) Remote File Include (31.12.2006) |
| |  | inge_eivind.henriksen_(at)_chello.no, SoftArtisans FileUp(TM) viewsrc.asp remote script source disclosure exploit (31.12.2006) |
|
|
|
|
|