Computer Security
[EN] securityvulns.ru
no-pyccku



Web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)
Published:21.12.2009
Source:
SecurityVulns ID:10485
Type:remote
Level:5/10
Description:PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc.
Affected:DVBBS : Dvbbs 7.1
 SIMPLEPHPBLOG : Simple PHP Blog 0.5
 PHPCALENDAR : PHP-Calendar 1.1
 GANETI : Ganeti 1.2
 GANETI : Ganeti 2.0
 GANETI : Ganeti 2.1
 SIMPLEMACHINES : Simple Machine Forum 1.1
 PHPPOLLSCRIPT : phpPollScript 1.3
CVE:CVE-2009-4261
 CVE-2009-3702
Original documentdocumentadmin_(at)_ekin0x.com, phpPollScript - 1.3 Remote File Include (21.12.2009)
 documentirancrash_(at)_gmail.com, SMF (Simple Machine Forum) 1.1.11 XSS - Discovered by : Khashayar Fereidani (21.12.2009)
 documentISecAuditors Security Advisories, [ISecAuditors Security Advisories] PHP-Calendar <= v1.1 'configfile' Remote and Local File Inclusion vulnerability (21.12.2009)
 documentISecAuditors Security Advisories, [ISecAuditors Security Advisories] Simple PHP Blog <= 0.5.1 Local File Include vulnerability (21.12.2009)
 documentmacaco-listo_(at)_hotmail.com, Re: Powered By Dvbbs Version 7.1.0 Sp1 By Pass (21.12.2009)
 documenthadikiamarsi_(at)_hotmail.com, Rumba XML XSS vulnerability (21.12.2009)
 documentAndrea Barisani, [Suspected Spam][oCERT-2009-019] Ganeti path sanitization errors (21.12.2009)
Files:Simple PHP Blog <= 0.5.1 Local File Include Exploit
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod
 



Rating@Mail.ru