Computer Security
[EN] securityvulns.ru
no-pyccku



Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)
Published:02.03.2007
Source:BUGTRAQ
SecurityVulns ID:7332
Type:remote
Level:5/10
Description:PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc.
Affected:WOLTLAB : Woltlab Burning Board 2.3
 AWEBNEWS : aWebNews 1.1
 VBULLETIN : vBulletin 3.6
 PHPMYFAQ : phpmyfaq 1.6
 ANGELLMS : Angel LMS 7.1
 SERENDIPITY : Serendipity 1.1
 BUILT2GO : Built2Go 1.0
 MANI : Stats Reader 1.2 plugin for Mani
 SPAW : spaw 1.2
CVE:CVE-2007-1342 (Cross-site scripting (XSS) vulnerability in admincp/index.php in Jelsoft vBulletin 3.6.5 and earlier allows remote attackers to inject arbitrary web script or HTML via the add rss url form.)
 CVE-2007-1326 (SQL injection vulnerability in index.php in Serendipity 1.1.1 allows remote attackers to execute arbitrary SQL commands via the serendipity[multiCat][] parameter.)
 CVE-2007-1299 (PHP remote file inclusion vulnerability in index.php in Mani Stats Reader 1.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the ipath parameter.)
 CVE-2007-1250 (SQL injection vulnerability in section/default.asp in ANGEL Learning Management Suite (LMS) 7.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.)
 CVE-2007-1248 (Multiple cross-site scripting (XSS) vulnerabilities in built2go News Manager Blog 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) cid, (2) uid, and (3) nid parameters to (a) news.php, and the nid parameter to (b) rating.php.)
 CVE-2007-1247 (Multiple PHP remote file inclusion vulnerabilities in aWeb Labs aWebNews 1.5 allow remote attackers to execute arbitrary PHP code via a URL in the path_to_news parameter to (1) listing.php or (2) visview.php.)
Original documentdocumentRaeD Hasadya, SPAW Editor PHP Edition (02.03.2007)
 documentmeto5757_(at)_hotmail.com, vBulletin v3.6.5 admincp/index.php ( rss feed ) xss vuln. (02.03.2007)
 documentmozi, Mani Admin Plugin Stats Reader V1.2 rfi :) (02.03.2007)
 documentThE dE@Th, WB News Remote File Include in all versions (02.03.2007)
 documentThE dE@Th, aWebNews v 1.1=>RFI (02.03.2007)
 documentSaMuschie, Serendipity unauthenticated SQL-Injection (02.03.2007)
 documentGuns_(at)_inbox.com, Angel LMS 7.1 - Remote SQL Injection (02.03.2007)
Files:vBulletin <= 3.6.4 inlinemod.php "postids" sql injection / privilege escalation by session hijacking exploit
 Sql injection / remote command execution exploit for phpmyfaq < 1.6.8
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server