Computer Security
[EN] securityvulns.ru
no-pyccku



Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)
Published:26.11.2007
Source:BUGTRAQ
SecurityVulns ID:8376
Type:remote
Level:5/10
Description:PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. Math Comment Spam Protection: Crossite scripting.
Affected:BYTEHOARD : bytehoard 2.1
 PROVERBS : Calendar Proverbs 1.1
 MESSAGINGARCHITE : GWExtranet 3.0
Original documentdocumentHackers Center Security Group, GWExtranet Script Injections & Privilege Escalation Vulnerability (26.11.2007)
 documentJose Luis Góngora Fernández, Calendar Proverbs <=1.1 (caladmin.php) Remote SQL Injection (26.11.2007)
 documentErnesto Alvarez, two bytehoard 2.1 bugs (26.11.2007)
 documentJose Luis Góngora Fernández, PHPSlideShow (toonchapter8.php) Cross-Site Scripting Vulnerability (26.11.2007)
 documentnoreply_(at)_aria-security.net, Aria-Security.Net: Gouae DWD Realty SQL Injection (26.11.2007)
 documentMustLive, MoBiC-23 Bonus: XSS in Math Comment Spam Protection (26.11.2007)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server