Computer Security
[EN] securityvulns.ru
no-pyccku



Avaya CMS (Call Management System) / IR (Interactive Response) multiple vulnerabilities
Published:16.05.2005
Source:SECUNIA
SecurityVulns ID:4798
Type:remote
Level:5/10
Affected:AVAYA : AVAYA CMS 9
 AVAYA : AVAYA CMS 11
 AVAYA : AVAYA CMS 12
 AVAYA : AVAYA CMS 13
 AVAYA : Avaya IR 1.0
Original documentdocumentSECUNIA, [SA15384] Avaya CMS/IR Network Port Hijacking Vulnerability (16.05.2005)
 documentSECUNIA, [SA15366] Avaya CMS/IR Xsun and Xprt Server Font Handling Vulnerabilities (16.05.2005)
Discuss:Read or add your comments to this news (0 comments)

PHP, ASP, CGI web applications security vulnerabilities
updated since 16.05.2005
Published:21.05.2005
Source:
SecurityVulns ID:4796
Type:remote
Level:5/10
Description:PHP inclusions, SQL injections, directory traversals, crossite scripting, etc.
Affected:OPENBB : OpenBB 1.0
 INVISION : Invision Power Board 2.0
 INVISION : Invision Power Board 1.3
 FUSIONPHP : Fusion News 3.6
 WBB : Burning Board 2.3
 WORDPRESS : WordPress 1.5
 METALINKS : MetaCart e-Shop 8
 SKULLSPLITTER : Skull-Splitter Guestbook 2.2
 POSTNUKE : PostNuke 0.750
 JGSXA : JGS-Portal 3.0
 DOTNETNUKE : DotNetNuke 3.0
 PHOTOPOST : Photopost
 FUSIONPHP : Fusion SBX 1.2
 sigma : Sigma ISP Manager 6.6
 ULTIMATEFORUM : Ultimate Forum 1.0
 CHEETAH : Cheetah 0.9
 SHOPSCRIPTFREE : Shop-Script FREE
 NPDS : NPDS 5.0
 EDMS : eDMS 2.0
 HELPCENTERLIVE : Help Center Live 1.0
 S9Y : Serendipity 0.8
 SUREGEMAIL : SurgeMail 3.0
 PHPATM : phpAtm 1.21
 TOPO : TOPo 2.2
 GROOVE : Groove Virtual Office 3.1
 GROOVE : Groove Workspace 2.5
Original documentdocumentSECUNIA, [SA15421] Groove Virtual Office / Workspace Multiple Vulnerabilities (21.05.2005)
 documentThomas Waldegger, [BuHa Security] Wordpress SQL-Injection (21.05.2005)
 documentSECUNIA, [SA15325] TOPo Multiple Vulnerabilities (20.05.2005)
 documentSECURITEAM, [EXPL] Invision Power Board SQL Injection Vulnerability (member_id, Exploit) (20.05.2005)
 documentIngvar Gilbert, phpATM arbitrary PHP code inclusion (20.05.2005)
 documentSECUNIA, [SA15425] SurgeMail Unspecified Cross-Site Scripting Vulnerabilities (19.05.2005)
 documentSECUNIA, [SA15405] Serendipity File Upload and Cross-Site Scripting Vulnerabilities (18.05.2005)
 documentSECUNIA, [SA15401] Help Center Live Multiple Vulnerabilities (18.05.2005)
 documentSECUNIA, [SA15410] eDMS Multiple Unspecified Vulnerabilities (18.05.2005)
 documentSECUNIA, [SA15385] NPDS Cross-Site Scripting and SQL Injection Vulnerabilities (18.05.2005)
 documentSECUNIA, [SA15400] Shop-Script FREE "categoryID" and "productID" SQL Injection (18.05.2005)
 documentSECUNIA, [SA15386] Cheetah Insecure Module Importing Vulnerability (17.05.2005)
 documentSECUNIA, [SA15362] ImageGallery system Exposure of User Credentials (17.05.2005)
 documentSECUNIA, [SA15374] Ultimate Forum Exposure of Encrypted User Credentials (17.05.2005)
 documentSECUNIA, [SA15336] OpenBB Cross-Site Scripting and SQL Injection Vulnerabilities (17.05.2005)
 documentSECURITEAM, [EXPL] Fusion SBX Remote Command Execution (Exploit 2) (17.05.2005)
 documentSECURITEAM, [UNIX] PhotoPost Arbitrary Data (Exploit) (17.05.2005)
 documentJeiAr, Woltlab Burning Board SQL Injection Vulnerability (17.05.2005)
 documentMark Woan, DotNetNuke (Multiple XSS) (17.05.2005)
 documentdedi dwianto, Multiple Vulnerabilities in MetaCart e-Shop (17.05.2005)
 documentdeluxe_(at)_security-project.org, [SePro Bugtraq] WBB Portal - JGS-Portal <= 3.0.2 - Multiple Vulnerabilities (09.05.05) (17.05.2005)
 documenttjomi4_(at)_gmail.com, Fusion News v3.6.1 - remote shell exploit (17.05.2005)
 documentpokleyzz, [Full-disclosure] Postnuke 0.750 - 0.760rc4 local file inclusion (16.05.2005)
 documentMorinex Eneco, Skull-Splitter's Guestbook Multiple XXS/HTML injection (16.05.2005)
Discuss:Read or add your comments to this news (0 comments)

Pico Server web server multiple vulnerabilities
updated since 16.05.2005
Published:12.06.2005
Source:FULL-DISCLOSURE
SecurityVulns ID:4797
Type:remote
Level:5/10
Description:Information leak, directory traversal.
Affected:PSERVER : Pico Server 3.2
 PSERVER : Pico Server 3.3
Original documentdocumentRaphaël Rigo, Multiple vulnerabilities in Pico Server (pServ) v3.3 (12.06.2005)
 documentClaus R. F. Overbeck, [Full-disclosure] Pico Server (pServ) Local Information Disclosure (16.05.2005)
 documentClaus R. F. Overbeck, [Full-disclosure] Pico Server (pServ) Information Disclosure Of CGI Sources (16.05.2005)
 documentClaus R. F. Overbeck, [Full-disclosure] Pico Server (pServ) Remote Command Injection (16.05.2005)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru