Computer Security
[EN] securityvulns.ru
no-pyccku



PHP/ASP/CGI web applications security flaws
updated since 10.01.2005
Published:17.01.2005
Source:
SecurityVulns ID:4344
Type:remote
Level:5/10
Affected:ZEROBOARD : Zeroboard 4.1
 VBULLETIN : vBulletin 3.0
 INVISION : Invision Power Board 2.0
 ILOHAMAIL : IlohaMail 0.8
 AMPHORA : Amphora Gate StandAlone
 VHCS : Virtual Hosting Control System 2.2
 GREYMATTER : Greymatter 1.3
 WBB : Woltlab Burning Board Lite 1.0
 ALABANZA : AlaCart 2.18
 PHPADSNEW : phpAdsNew 2.0
 PHPNUKE : SGallery 1.01
 BITSHIFTERS : BiTBOARD 2.5
 EMOTION : MediaPartner 5.0
 EMOTION : MediaPartner 5.1
 BOTTOMLINE : Webseries Payment Application
 WBB : Burning Book Lite 1.1
 FORUMKIT : forumKIT 1.0
 HORDE : Horde 3.0
 MPM : MPM Guestbook Pro 1.05
 SITEMAN : Siteman 1.1
 SPARKLEBLOG : SparkleBlog 2.1
 EXBB : ExBB 1.9
 PHPGIFTREQ : phpGiftReq 1.4
 MINIS : Minis 0.2
 ITASTUDIO : ITA Forum 1.49
Original documentdocumentSECURITEAM, [EXPL] ITA Forum SQL Injection (17.01.2005)
 documentMadelman, [Full-Disclosure] Minis directory traversal vulnerability (17.01.2005)
 documentMadelman, [Full-Disclosure] phpGiftReq SQL Injection (17.01.2005)
 documentpigrelax, XSS in the nested BB tag in many forum (16.01.2005)
 documentbugtracklist.fm, Various Vulnerabilities in SparkleBlog (16.01.2005)
 documentPedram hayati, XSS Vulnerability in Siteman v1.1.9 (15.01.2005)
 documentSECUNIA, [SA13849] MPM Guestbook Pro "header" File Inclusion Vulnerability (14.01.2005)
 documentHyperdose Security, Cross Site Scripting holes found in Horde 3.0 (14.01.2005)
 documentSSR Team, STG Security Advisory: [SSA-20050113-25] ZeroBoard multiple vulnerabilities (14.01.2005)
 documenttom cruise, XSS Vulnerability in ForumKIT (14.01.2005)
 documentSECUNIA, [SA13794] Dokeos Course Script Insertion Vulnerability (13.01.2005)
 documentwang_(at)_readyresponse.org, IlohaMail Insecure Configuration Files (13.01.2005)
 documentMartin Heistermann, Woltlab Burning Book addentry.php SQL Injection (13.01.2005)
 documentPaul J Docherty, Portcullis Security Advisory 05-010 (13.01.2005)
 documentPaul J Docherty, Portcullis Security Advisory 05-008 (13.01.2005)
 documentPaul J Docherty, Portcullis Security Advisory 05-009 (13.01.2005)
 documentPaul J Docherty, Portcullis Security Advisory 05-007 (13.01.2005)
 documentPaul J Docherty, Portcullis Security Advisory 05-006 (13.01.2005)
 documentPaul J Docherty, Portcullis Security Advisory 05-005 (13.01.2005)
 documentPaul J Docherty, Portcullis Security Advisory 05-004 (13.01.2005)
 documentPaul J Docherty, Portcullis Security Advisory 05-003 (13.01.2005)
 documentPaul J Docherty, Portcullis Security Advisory 05-001 (13.01.2005)
 documentMartin Heistermann, Security Advisory: BiTBOARD xss (13.01.2005)
 documentJanek Vind, [waraxe-2005-SA#039] - Critical Sql Injection in Sgallery module for PhpNuke (13.01.2005)
 documentroman_(at)_mosk.ru, SQL-инъекция в phpAdsNew (13.01.2005)
 documentSECUNIA, [SA13769] Zeroboard "dir" File Inclusion Vulnerability (11.01.2005)
 documentdurito, уязвимость в AlaCart Version 2.18 (11.01.2005)
 documentdarkhawk matrix, SQL Injection Vulnerability in Invision Community Blog (11.01.2005)
 documentMartin Heistermann, Security Advisory: Woltlab Burning Board Lite formmail.php XSS (11.01.2005)
 documentKernelpanik Labs - Security Lists, [Full-Disclosure] Kernelpanik Labs Digest 2005-1 (10.01.2005)
Discuss:Read or add your comments to this news (0 comments)


Show Threads
Messages
 
Login:* (Register)
Password:*
(private) To:
(reply) Subject:*
Text:

Main Forum (Eng)

General security questions not appropriate for another forums.
3proxy Forum (Eng)

All 3proxy question must be posted to this forum.
Bugs, Vulnerabilities, PoCs and Exploits (Eng)

All vulnerability related questions, vulnerability digging and exploit creation.
Windows programming and administration (Eng)

Administering Windows and application development.
Unix programming and administation (Eng)

Administering Unix and application development.
Test forum

Please post all test messages here. All test messages from different forums will be deteted.
Main Forum (Rus)
3proxy Forum (Rus)
Bugs, Vulnerabilities, PoCs and Exploits (Rus)
Windows programming and administration (Rus)
Unix programming and administation (Rus)
About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru