Ciscoworks vulnerabilities and new updates for 08/16/2003

By N-Stalker Team on August 18, 2003

N-Stalker has made available the latest database update (v108) for N-Stealth Web Security Scanner.

This updates are available for the N-Stealth 5.0 version. If you are currently using an old version, please, contact us at:

  • E-mail: [email protected] (24hs) or
  • Phone: +55-11-3675-7093 (9am to 18pm GMT-0300)

    This release has included the following vulnerabilities:

    - HostAdmin Path Disclosure Vulnerability
    - Clickcess ChitChat.NET 2.0 Message HTML Injection Vulnerability
    - HolaCMS 1.2.10 HTMLtags.PHP Local File Include Vulnerability
    - CiscoWorks Common Management Foundation Administrative Authentication Bypass Vulnerability
    - SurgeLDAP 10.0d User.CGI Cross-Site Scripting Vulnerability
    - PHPOutsourcing Zorum 3.4 Path Disclosure Vulnerability
    - PHP Website 0.9.3 Multiple Module Cross-Site Scripting Vulnerability
    - PHP Website 0.9.3 Calendar Module SQL Injection Vulnerabilities
    - News Wizard 2.0 Path Disclosure Vulnerability
    - PHPOutSourcing Zorum 3.4 Cross-Site Scripting Vulnerability
    - Invision Power Board 1.2 Admin.PHP Cross-Site Scripting Vulnerability
    - Stellar Docs 1.2 Path Disclosure Vulnerability
    - DCForum+ 1.2 Subject Field HTML Injection Vulnerability
    - Better Basket Pro Store Builder Remote Path Disclosure Vulnerability

    N-Stealth DB General Information
    Version: 108
    Release Date: 08/18/2003

  • This entry was posted in N-Stalker Latest Updates. Bookmark the permalink.