Section: .. / 0609-advisories /
| /// File Name: |
blogcms41.txt |
Description:
|
BLOG:CMS version 4.1 suffers from SQL injection flaws.
| | Author: | Omid | | File Size: | 625 | | Last Modified: | Sep 8 07:51:28 2006 |
| MD5 Checksum: | 40b0bfd69aba7114964102325aec6662 |
|
| /// File Name: |
SS28S-WiFi.txt |
Description:
|
Zachary McGrew has discovered and reported that the FiWin SS28S WiFi VoIP SIP/Skype Phone with firmware version 01_02_07 has VxWorks Telnet open with a hardcoded user/pass of 1/1. Various debug commands enable viewing SIP credentials, WEP keys, etc. on the phone.
| | Homepage: | http://www.osnews.com/story.php/15923/Review-FiWin-SS28S-WiFi-VoIP-SIPSkype-Phone/ | | File Size: | 617 | | Last Modified: | Oct 3 01:16:43 2006 |
| MD5 Checksum: | 9e64e6051a1993ab8b3ae5b7969f1364 |
|
| /// File Name: |
Opial-1.0.txt |
Description:
|
Opial Audio/Video Download Management suffers from cross site scripting in index.php
| | Author: | meto5757 | | File Size: | 572 | | Last Modified: | Oct 3 01:52:36 2006 |
| MD5 Checksum: | 4102a3a0ee3136f47315374f6b7ba61e |
|
| /// File Name: |
toendaCMS..txt |
Description:
|
toendaCMS suffers from a local file inclusion vulnerability.
| | Author: | MoHaJaLi | | File Size: | 558 | | Last Modified: | Oct 3 01:50:51 2006 |
| MD5 Checksum: | 71fb4a31475c2f9320336ac582e8548f |
|
| /// File Name: |
runcms141.txt |
Description:
|
RunCMS version 1.4.1 suffers from SQL injection flaws.
| | Author: | Omid | | File Size: | 532 | | Last Modified: | Sep 8 07:52:01 2006 |
| MD5 Checksum: | 3cb5e7fbc6db63682e51302ddd9cd14b |
|
| /// File Name: |
bmb-5.5.txt |
Description:
|
Blue Magic Board (BMB) 5.5 suffers from full path disclosure in multiple php scripts.
| | Author: | hack2prison | | File Size: | 518 | | Last Modified: | Sep 15 00:59:24 2006 |
| MD5 Checksum: | beb8bc1e66aebd5df2a94c4558279b91 |
|
| /// File Name: |
MyBB-1.2.txt |
Description:
|
MyBB 1.2 suffers from full path disclosure and cross site scripting vulnerabilities.
| | Author: | HACKERS PAL | | Homepage: | http://WwW.SoQoR.NeT | | File Size: | 508 | | Last Modified: | Sep 22 02:34:05 2006 |
| MD5 Checksum: | a40afcc60b0ac3765382553eb8b5346c |
|
| /// File Name: |
webdictate.txt |
Description:
|
Web Dictate version 1.02 allows administrative login with a null password.
| | Author: | Revnic Vasile | | File Size: | 500 | | Last Modified: | Sep 7 09:57:30 2006 |
| MD5 Checksum: | 66d51d47a2973108b2b1e5188a529b71 |
|
| /// File Name: |
nextAgeCart-xss.txt |
Description:
|
NextAge Cart suffers from a cross site scripting vulnerability.
| | Author: | meto5757 | | File Size: | 433 | | Last Modified: | Sep 26 22:31:54 2006 |
| MD5 Checksum: | 6991dae218b729bf538f9ff907960fa0 |
|
| /// File Name: |
commercexss.txt |
Description:
|
Commerce Bank's website is susceptible to cross site scripting.
| | Author: | Matthew Benenati | | File Size: | 333 | | Last Modified: | Oct 2 23:53:02 2006 |
| MD5 Checksum: | 85fb4030c30d2aa005d11d56f87100be |
|
| /// File Name: |
Woltlab-2.3.x.txt |
Description:
|
Woltlab Burning Board 2.3.X SQL Injection Vulnerability
| | Author: | sn4k3.23 | | File Size: | 263 | | Last Modified: | Oct 3 01:15:30 2006 |
| MD5 Checksum: | 0ff0518c371aaab5c13ca0ea8485d36e |
|
| /// File Name: |
busybox-1.01.txt |
Description:
|
The Busy Box http daemon included in version 1.01 is vulnerable to a directory traversal attack.
| | Author: | bug-finder | | File Size: | 255 | | Last Modified: | Sep 22 02:10:57 2006 |
| MD5 Checksum: | 7ae71cd831ea4b4bf82ed007970d9cf4 |
|
| /// File Name: |
NixieAffiliate.txt |
Description:
|
NixieAffiliate suffers from an admin bypass vulnerability as well as cross site scripting.
| | Author: | s3rv3r_hack3r | | File Size: | 250 | | Last Modified: | Sep 27 23:29:39 2006 |
| MD5 Checksum: | 2c599d98ed4626448f2d0308703042d7 |
|
| /// File Name: |
Moodle1.6.1.txt |
Description:
|
Moodle 1.6.1+ and possibly prior versions are vulnerable to an SQL injection flaw in /blog/edit.php.
| | Author: | omid | | File Size: | 242 | | Last Modified: | Sep 22 02:31:01 2006 |
| MD5 Checksum: | 81dd861b7de0b6fea9c14f0c33cc3828 |
|
| /// File Name: |
BizDirectory.txt |
Description:
|
BizDirectory is vulnerable to cross site scripting attacks.
| | Author: | ali | | File Size: | 210 | | Last Modified: | Sep 22 02:55:45 2006 |
| MD5 Checksum: | 4aa255b7e496db620d562dc344569e0c |
|
| /// File Name: |
InnovatePortalv2.0.txt |
Description:
|
Innovate Portal v2.0 suffers from a cross site scripting vulnerability in index.php.
| | Author: | meto5757 | | File Size: | 187 | | Last Modified: | Sep 28 00:13:10 2006 |
| MD5 Checksum: | dbdeaec937cd02f9a7863442a8253051 |
|
|
|
|
|