Computer Security
[EN] securityvulns.ru
no-pyccku



Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)
Published:21.01.2008
Source:
SecurityVulns ID:8590
Type:remote
Level:5/10
Description:PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. Relay: crossite scripting
Affected:KAYAKO : Kayako SupportSuite 3.0
 BOASTMACHINE : boastMachine 3.1
 MYBB : MyBB 1.2
 HORDE : Horde 3.1
 RELAY : Relay 1.0
 BLOOFOX : Bloofox CMS 0.3
 PD9SOFT : MegaBBS 1.5
 BLOGCMS : BLOG:CMS 4.2
CVE:CVE-2007-6018
Original documentdocumentrxhr_(at)_hotmail.com, BLOG:CMS 4.2.1.c (DIR_PLUGINS) Multiple Remote File Include (21.01.2008)
 documentDEBIAN, [SECURITY] [DSA 1470-1] New horde3 packages fix denial of service (21.01.2008)
 documentJanek Vind, [waraxe-2008-SA#063] - Information Leakage in Kayako SupportSuite 3.11.01 (21.01.2008)
 documenthadihadi_zedehal_2006_(at)_yahoo.com, boastMachine <=3.1 SQL Injection Vulnerbility (21.01.2008)
 documentgrossman_(at)_yahoo.com, MegaBBS ASP Forum Cross-Site Scripting (21.01.2008)
 documenteffectiveness63_(at)_gmail.com, Php Search Remote Inclusion (21.01.2008)
 documentadmin_(at)_bugreport.ir, Bloofox CMS SQL Injection (Authentication bypass) , Source code disclosure (21.01.2008)
 documentMustLive, Vulnerabilities in Relay (21.01.2008)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server