Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)
news
/
advisories
/
forum
/
software
/
advertising
/
search
/
exploits
[EN]
securityvulns.ru
no-pyccku
Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)
Published:
15.01.2008
Source:
SecurityVulns ID:
8565
Type:
remote
Level:
5
/10
Description:
PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. RiSearch PHP: crossite scripting
Affected:
GFORGE
:
gforge 3.1
GFORGE
:
gforge 4.5
GFORGE
:
gforge 4.6
CVE:
CVE-2008-0173
(SQL injection vulnerability in Gforge 4.6.99 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified parameters, related to RSS exports.)
Original document
Smasher_(at)_ciucciamiilcalzino.it
,
Garment Center (index.cgi) Local File Inclusion
(
15.01.2008
)
Jose Luis Góngora Fernández
,
Binn SBuilder (nid) Remote Blind Sql Injection Vulnerabily
(
15.01.2008
)
DEBIAN
,
[SECURITY] [DSA 1459-1] New gforge packages fix SQL injection
(
15.01.2008
)
MustLive
,
Cross-Site Scripting vulnerability in RiSearch PHP
(
15.01.2008
)
Discuss:
Read or add your comments to this news (0 comments)
About
|
Terms of use
|
Privacy Policy
©
SecurityVulns
,
3APA3A
, Vladimir Dubrovin
Enter your search terms
Web
securityvulns.com
Submit search form