Computer Security
[EN] securityvulns.ru no-pyccku


Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)
Published:31.12.2006
Source:
SecurityVulns ID:6983
Type:remote
Threat Level:
5/10
Description:PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc.
Affected:CACTI : cacti 0.8
 ADPFORUM : ADP Forum 2.0
 SOFTARTISANS : SAFileUp 5.0
 XNEWS : x-news 1.1
 VOODOOCHAT : Voodoo chat 1.0
 FSWIKI : fswiki 3.6
 EASYNEWS : Easy News 4.0
 ASPTICKER : ASPTicker 1.0
 WYWO : InOut Board 1.0
 ALANWARD : aFAQ 1.0
 CLICKNPRINT : Click N' Print Coupons 2005.01
 IMGALLERY : IMGallery 2.5
 WEBTEXT : WebText 0.4
 PHPBB : Acronym Mod 0.9 for phpBB
Original documentdocumentthe master, Acronym Mod v0.9.5 Remote SQL Injection Vulnerability (31.12.2006)
 documentajannhwt_(at)_hotmail.com, ASPTicker 1.0 (admin.asp) Remote Login ByPass SQL Injection Vulnerability (31.12.2006)
 documentajannhwt_(at)_hotmail.com, Title : WYWO - InOut Board 1.0 Multiple Vulnerabilities (31.12.2006)
 documentajannhwt_(at)_hotmail.com, aFAQ 1.0 (catcode) Remote SQL Injection Vulnerability (31.12.2006)
 documentbd0rk_(at)_hackermail.com, x-news 1.1 Password Disclosure Vulnerability (31.12.2006)
 documentbd0rk_(at)_hackermail.com, Voodoo chat 1.0RC1b Password Disclosure Vulnerability (31.12.2006)
 documentbd0rk_(at)_hackermail.com, fswiki 3.6.2 (user.dat) Password Disclosure Vulnerability (31.12.2006)
 documentbd0rk_(at)_hackermail.com, EasyNews PRO News Publishing 4.0 Remote Password Disclosure Vulnerability (31.12.2006)
 documentDr Max Virus, Sv(ADP) Forum 2.0.3 Remote Password Disclosure Vulnerablity (31.12.2006)
 documentXORON, Enigma WordPress Bridge (boarddir) Remote File Include (31.12.2006)
 documentXORON, Enigma Coppermine Bridge (boarddir) Remote File Include (31.12.2006)
 documentinge_eivind.henriksen_(at)_chello.no, SoftArtisans FileUp(TM) viewsrc.asp remote script source disclosure exploit (31.12.2006)
Files:Click N' Print Coupons <= V2005.01 (key) Remote SQL Injection Exploit
 IMGallery <= 2.5 Create Uploader Script Exploit
 WebText <= 0.4.5.2 Remote Code Execution Exploit
 Cacti 0.8.6i "copy_cacti_user.php" sql injection create new admin exploit

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod