Computer Security
[EN] securityvulns.ru
no-pyccku



Spaiz-Nuke/PHP-nuke multiple bugs
Published:06.10.2003
Source:RUSH
SecurityVulns ID:3160
Type:remote
Level:5/10
Description:SQL injection during authentication, SQL injection in web-link module, SQL injection in download module, access with encrypted password.
Affected:PHPNUKE : PHP-Nuke 6.5
 SPAIZNUKE : Spaiz-Nuke 1.2
Original documentdocumentfrog frog, PHP-Nuke v 6.7 + Windows = File Upload (06.10.2003)
 document1dt.w0lf, Уязвимости в Spaiz-Nuke версии <=1.2beta и PHP-nuke всех версий (06.10.2003)
Files:PHP-NUKE version <= 6.9 'cid' sql injection exploit
Discuss:Read or add your comments to this news (0 comments)

Easy File Sharing Web Server multiple bugs
Published:06.10.2003
Source:nimber
SecurityVulns ID:3161
Type:remote
Level:5/10
Description:DoS, unauthorized logs and config access.
Affected:SHARINGFILE : Easy File Sharing Web Server 1.2
Original documentdocumentnimber, Vulnerabilities in Easy File Sharing Web Server (1.2 NEW). (06.10.2003)
Discuss:Read or add your comments to this news (0 comments)

Cisco Catalist unauthorized access
Published:06.10.2003
Source:BUGTRAQ
SecurityVulns ID:3163
Type:remote
Level:6/10
Description:telnet requiest with specific structure causes command execution without authentication.
Affected:CISCO : CatOS 5.4
 CISCO : CatOS 5.5
Original documentdocumentChris Norton, Cisco 6509 switch telnet vulnerability (06.10.2003)
Discuss:Read or add your comments to this news (0 comments)

Conexant Access Runner unauthorized access
Published:06.10.2003
Source:BUGTRAQ
SecurityVulns ID:3164
Type:remote
Level:5/10
Description:During second authentication attempt it's possible to bypass authentication.
Affected:CONEXANT : Access Runner 3.21
Original documentdocumentChris Norton, Conexant Access Runner DSL Console login bypass vulnerability (06.10.2003)
Discuss:Read or add your comments to this news (1 comments)

CGI bugs
updated since 06.10.2003
Published:08.10.2003
Source:
SecurityVulns ID:3162
Type:remote
Level:5/10
Affected:JBOSS : JBoss 3.2
 FREEGUPPY : GuppY 2.4
 DIVINE : OpenMarket Content Server
 ETERNALMART : EMML 1.32
 ETERNALMART : EMGB 1.1
 JBOSS : JBoss 3.0
 PEOPLESOFT : PeopleTools 8.42
 AMTRANS : PayPal Store Front 3.0
Original documentdocumentinfo_(at)_i-assure.com, PeopleSoft <Control><J> Information Disclosure (08.10.2003)
 documentinfo_(at)_i-assure.com, PeopleSoft <LONGCHAR >and <VARCHAR> Data Upload (08.10.2003)
 documentAstharot, ZH2003-28SA (security advisory): file inclusion vulnerability in PayPal Store Front (08.10.2003)
 documentinfo_(at)_i-assure.com, PeopleSoft Grid Option Vulnerability (08.10.2003)
 documentfrog frog, GuppY : XSS, Files Reading/Writing (07.10.2003)
 documentMarc Schönefeld, Update JBoss 308 & 321: Remote Command Injection (07.10.2003)
 documentMarc Schönefeld, JBoss 3.2.1: Remote Command Injection (07.10.2003)
 documentLarry W. Cashdollar, SNAP Innovation's PrimeBase Database 4.2 poor default file permissions. (07.10.2003)
 documentfrog frog, EMML, EMGB : Include() hole (06.10.2003)
 documentValgasu, Divine OpenMarket Content Server XSS (06.10.2003)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru