 |
|
|
|
| Ежедневная сводка ошибок в Web-приложениях (PHP, ASP, JSP, CGI, Perl ) | | Опубликовано: |  | 21 октября 2006 г. | | Источник: |  | | | SecurityVulns ID: |  | 6737 | | Тип: |  | удаленная | | Опасность: |  | 5/10 | | Описание: |  | Инъекции PHP, инъекции SQL, обратный путь в каталогах, межсайтовый скриптинг, утечка информации и т.д. |
| Оригинальный текст |  | alireza hassani, [KAPDA::#60] Mambo V4.6.x vulnerabilities (21.10.2006) |
| |  | mahmood ali, PHP Poll Creator 1.04 (poll_vote.php)File Include (21.10.2006) |
| |  | Mike Klingler, Advisory for Oneorzero helpdesk (21.10.2006) |
| |  | josecarlos.norte_(at)_gmail.com, PHPLibrary-1.5.3(Description.php) Remote File Include (21.10.2006) |
| |  | josecarlos.norte_(at)_gmail.com, Simple Machines Forum (SMF) XSS issue (21.10.2006) |
| |  | XORON, Open Meetings Filing Application (PROJECT_ROOT) Remote File Include Vulnerability (21.10.2006) |
| |  | XORON, Virtual Law Office (phpc_root_path) Remote File Include Vulnerability (21.10.2006) |
| |  | Le.CoPrA_(at)_hotmail.com, PHP Classifieds 7.1 - Remote File Include Vulnerability (21.10.2006) |
| |  | the_free_kernel_(at)_b0rizq.net, [Xss] IN SMF 1.1 RC2 (21.10.2006) |
| |  | security_(at)_armorize.com, Multiple XSS Vulnerabilities in KnowledgeBank 1.01 (21.10.2006) |
| |  | fireboy2006_(at)_gmail.com, KICS CMS sql injection (21.10.2006) |
| |  | navairum_(at)_gmail.com, SQL Injection simplog (21.10.2006) |
| |  | fireboy2006_(at)_gmail.com, UltraCMS 0.9 sql injection (21.10.2006) |
| |  | mahmood ali, DigitalHive 2.0 RC2 (base_include.php)File Include (21.10.2006) |
| |  | DRUPAL, [DRUPAL-SA-2006-026] Drupal 4.6.10 / 4.7.4 fixes HTML attribute injection issue (21.10.2006) |
| |  | DRUPAL, [DRUPAL-SA-2006-025] Drupal 4.6.10 / 4.7.4 fixes CRF issue (21.10.2006) |
| |  | DRUPAL, [DRUPAL-SA-2006-024] Drupal 4.6.10 / 4.7.4 fixes multiple XSS issues (21.10.2006) |
| |  | Stefan Esser, Advisory 11/2006: Serendipity Weblog XSS Vulnerabilities (21.10.2006) |
|
|
|
|
|
|
|
|