Computer Security
[EN] securityvulns.ru no-pyccku


Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)
Published:18.08.2007
Source:
SecurityVulns ID:8069
Type:remote
Threat Level:
5/10
Description:PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc.
Affected:VBULLETIN : vBulletin 3.6
 WORDPRESS : Sirius 1.0
CVE:CVE-2007-4480 (Cross-site scripting (XSS) vulnerability in index.php in the Sirius 1.0 theme for WordPress allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (PHP_SELF).)
Original documentdocumentimei, Olate Download 3.4.1~environment.php.php~Code Execution (18.08.2007)
 documentRaeD Hasadya, vBulletin V3.6.8 XSS Password Md5 Hash (18.08.2007)
 documentMustLive, Vulnerability in theme Sirius 1.0 for WordPress (18.08.2007)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod