Ciscoworks vulnerabilities and new updates for 08/16/2003

By N-Stalker Team on August 18, 2003

N-Stalker has made available the latest database update (v108) for N-Stealth Web Security Scanner.

This updates are available for the N-Stealth 5.0 version. If you are currently using an old version, please, contact us at:

  • E-mail: support@nstalker.com (24hs) or
  • Phone: +55-11-3675-7093 (9am to 18pm GMT-0300)

    This release has included the following vulnerabilities:

    – HostAdmin Path Disclosure Vulnerability
    – Clickcess ChitChat.NET 2.0 Message HTML Injection Vulnerability
    – HolaCMS 1.2.10 HTMLtags.PHP Local File Include Vulnerability
    – CiscoWorks Common Management Foundation Administrative Authentication Bypass Vulnerability
    – SurgeLDAP 10.0d User.CGI Cross-Site Scripting Vulnerability
    – PHPOutsourcing Zorum 3.4 Path Disclosure Vulnerability
    – PHP Website 0.9.3 Multiple Module Cross-Site Scripting Vulnerability
    – PHP Website 0.9.3 Calendar Module SQL Injection Vulnerabilities
    – News Wizard 2.0 Path Disclosure Vulnerability
    – PHPOutSourcing Zorum 3.4 Cross-Site Scripting Vulnerability
    – Invision Power Board 1.2 Admin.PHP Cross-Site Scripting Vulnerability
    – Stellar Docs 1.2 Path Disclosure Vulnerability
    – DCForum+ 1.2 Subject Field HTML Injection Vulnerability
    – Better Basket Pro Store Builder Remote Path Disclosure Vulnerability

    N-Stealth DB General Information
    Version: 108
    Release Date: 08/18/2003

  • This entry was posted in N-Stalker Latest Updates. Bookmark the permalink.