IBM Directory Server and multiple updates for Dec 15, 2003
N-Stalker has made available the
latest database update (v118) for N-Stealth Web Security Scanner.
This updates are available for the N-Stealth 5.2 version. If you are currently using an old version, please, contact us at:
E-mail: support@nstalker.com (24hs) or
Phone: +55-11-3675-7093 (9am to 18pm GMT-0300)
Download: https://secure.nstalker.com/customercenter/release.php
This release has included the following vulnerabilities:
– RemotelyAnywhere Default.HTML Logout Message Injection Weakness
– Multiple VisitorBook LE Input Validation Vulnerabilities
– Cyclonic Webmail 4.0 Authentication Bypass Vulnerability
– Mambo Open Source 4.0.14 Server SQL Injection Vulnerability
– Mambo 4.0.14 Open Source PollBooth.PHP Multiple SQL Injection Vulnerabilities
– Bitfolge Snif 1.2.6 Index.PHP Path Cross-Site Scripting Vulnerability
– @mail Webmail 3.52 System Multiple Vulnerabilities
– BNCweb File Disclosure Vulnerability
– Ben’s Guestbook 1.0 HTML Injection Vulnerability
– Mantis 0.18 Multiple Unspecified Cross-Site Scripting Vulnerabilities
– EZMeeting 3.5.0 EZNet.EXE Long HTTP Request Remote Buffer Overflow Vulnerability
– Land Down Under 601 Auth.PHP SQL Injection Vulnerability
– Webgate WebEye Information Disclosure Vulnerability
– Abyss Web Server Authentication Bypass Vulnerability
– Chris Travers Hermes 0.3 Unspecified File Include Vulnerability
– FuzzyMonkey My Photo Gallery Unauthorized Access Vulnerability
– Xoops 2.0.5 Multiple Vulnerabilities
– Virtual Programming 5.0 VP-ASP shopdisplayproducts.asp Cross-Site Scripting Vulnerability
– Websense Enterprise Blocked Sites Cross-Site Scripting Vulnerability
– IBM Directory Server 4.1 Web Administration Interface Cross-Site Scripting Vulnerability
– CuteNews 1.3 Debug Query Information Disclosure Weakness
– IlohaMail 0.8.10 User Parameter Cross-Site Scripting Vulnerability
– Virtual Programming 5.0 VP-ASP shopdisplayproducts.asp SQL Injection Vulnerability
– MoinMoin 1.0 Unspecified Cross-Site Scripting Vulnerability
– Alabanza AlaCart 1.0 Administration Authentication Bypass SQL Injection Vulnerability
– Jason Maloney’s Guestbook 3.0 Remote Command Execution Vulnerability
– Apache mod_python Module Malformed Query Denial of Service Vulnerability
N-Stealth DB General Information
Version: 118
Release Date: 12/15/2003