 |
|
|
|
| Ошибки в Web-приложениях (PHP, ASP, JSP, CGI, Perl) | | Опубликовано: |  | 7 января 2006 г. | | Источник: |  | | | SecurityVulns ID: |  | 5602 | | Тип: |  | удаленная | | Опасность: |  | 5/10 | | Описание: |  | Инъекции PHP, инъекции SQL, обратный путь в каталогах, межсайтовый скриптинг, утечка информации и т.д. |
| Оригинальный текст |  | SECUNIA, [SA18324] Timecan CMS "viewID" SQL Injection Vulnerability (07.01.2006) |
| |  | SECUNIA, [SA18322] iNETstore Ebusiness Software "searchterm" Cross-Site Scripting Vulnerability (07.01.2006) |
| |  | SECUNIA, [SA18325] OnePlug CMS SQL Injection Vulnerabilities (07.01.2006) |
| |  | SECUNIA, [SA18326] Aquifer CMS "Keyword" Cross-Site Scripting Vulnerability (07.01.2006) |
| |  | zeus olimpusklan, [Full-disclosure] SimpBook "message" Remote Cross-Site Scripting Vulnerability (07.01.2006) |
| |  | Thomas Henlich, SysCP WebFTP local file inclusion vulnerability (07.01.2006) |
| |  | Aliaksandr Hartsuyeu, [eVuln] Proyecto Domus 'email' XSS Vulnerability (07.01.2006) |
| |  | Aliaksandr Hartsuyeu, [eVuln] TheWebForum Script Insertion and Authentication Bypass (07.01.2006) |
| |  | Aliaksandr Hartsuyeu, [eVuln] ADNForum Multiple Vulnerabilities (07.01.2006) |
| |  | Aliaksandr Hartsuyeu, [eVuln] TinyPHPForum Multiple Vulnerabilities (07.01.2006) |
| |  | night_warrior771_(at)_hotmail.com, CyberShop User Login Sql Injection (07.01.2006) |
| |  | eufrato_(at)_gmail.com, [ECHO_ADV_25$2006] Full path disclosure on boastMachine v3.1 (07.01.2006) |
| |  | Xez, Remote file include in appserv 2.4.5 (possible in previous versions) (07.01.2006) |
|
|
|
|
|
|
|
|