Computer Security
[EN] securityvulns.ru
no-pyccku



Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)
Published:14.11.2007
Source:
SecurityVulns ID:8337
Type:remote
Level:5/10
Description:PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. PHP-Nuke: CAPTCHA protection bypass. Peter’s Random Anti-Spam Image: CAPTACHA protection bypass and crossite scripting.
Affected:PHPNUKE : PHP-Nuke 8.1
 AUTOINDEX : AutoIndex 2.2
 PETERSRANDOMANTI : Peter’s Random Anti-Spam Image 0.2
 AURACMS : AURA CMS 2.1
Original documentdocumentno-reply_(at)_aria-security.net, Free Forums "search" Sql Injection (14.11.2007)
 documentno-reply_(at)_aria-security.net, Aria-Security.Net: MetaCart SQL Injection (14.11.2007)
 documentno-reply_(at)_aria-security.net, DocuSafe "Search" SQL Injection (14.11.2007)
 documentULTRA.HAQRS.4.ALL ULTRA.HAQRS.4.ALL, [Full-disclosure] 0day0day0day0day AURACMS XSS!! LATEST VERSION!!! 0day0day0day0day (14.11.2007)
 documentElazar Broad, [Full-disclosure] WebEx GPCContainer Memory Access Violation (14.11.2007)
 documentMustLive, Vulnerabilities in Peter’s Random Anti-Spam Image (14.11.2007)
 documentjoseph.giron13_(at)_gmail.com, ExoPHPdesk user profile XSS / profile SQL injection (14.11.2007)
 documentISecAuditors Security Advisories, [ISecAuditors Security Advisories] VTLS.web.gateway cgi is vulnerable to XSS (14.11.2007)
 documentL4teral, AutoIndex <= 2.2.2 Cross Site Scripting and Denial of Service (14.11.2007)
 documentMustLive, Another vulnerability in PHP-Nuke captcha (14.11.2007)
Discuss:Read or add your comments to this news (0 comments)


Show Threads
Messages
 
Login:* (Register)
Password:*
(private) To:
(reply) Subject:*
Text:

Main Forum (Eng)

General security questions not appropriate for another forums.
3proxy Forum (Eng)

All 3proxy question must be posted to this forum.
Bugs, Vulnerabilities, PoCs and Exploits (Eng)

All vulnerability related questions, vulnerability digging and exploit creation.
Windows programming and administration (Eng)

Administering Windows and application development.
Unix programming and administation (Eng)

Administering Unix and application development.
Test forum

Please post all test messages here. All test messages from different forums will be deteted.
Main Forum (Rus)
3proxy Forum (Rus)
Bugs, Vulnerabilities, PoCs and Exploits (Rus)
Windows programming and administration (Rus)
Unix programming and administation (Rus)
About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Ðåéòèíã@Mail.ru