Apache Cygwin vulnerabilities and new updates for Feb, 29 2004

By N-Stalker Team on March 3, 2004


N-Stalker has made available the latest database update (v121) for N-Stealth Web Security Scanner.

This updates are available for the N-Stealth 5.5 version. If you are currently using an old version, please, contact us at:
E-mail: support@nstalker.com (24hs) or
Phone: +55-11-3675-7093 (9am to 18pm GMT-0300)
Download: https://secure.nstalker.com/customercenter/release.php
This release has included the following vulnerabilities:

– PHPBB 2.0.7 ViewTopic.PHP “postorder” Cross-Site Scripting Vulnerability
– Invision Power Board 2.0 Search.PHP “st” SQL Injection Vulnerability
– CalaCode @mail Webmail System 3.64 Cross-Site Scripting
– Symantec Gateway Security 2.0 Error Page Cross-Site Scripting Vulnerability
– Opt-X 0.7.2 header.php Remote File Include Vulnerability
– Apache Cygwin Directory Traversal Vulnerability
– Working Resources BadBlue Server 2.4 phptest.php Path Disclosure Vulnerability
– Seyeon Technology FlexWATCH Server Cross-Site Scripting Vulnerability
– Gigabyte Gn-B46B Wireless Router Authentication Bypass Vulnerability
– phpNewsManager 1.36 Functions Script File Disclosure Vulnerability
– Avirt Voice 4.0 HTTP GET Remote Buffer Overrun Vulnerability
– Avirt Soho Server 4.3 HTTP GET Buffer Overrun Vulnerability
– Avirt Soho Web Service 4.3 HTTP GET Buffer Overrun Vulnerability
– XMB 1.8 SP2 Forum Multiple Input Validation Vulnerabilities
– LiveJournal CSS HTML Injection Vulnerability
– LiveJournal 1.1 HTML Injection Vulnerability
– Ecommerce Corporation Online Store Kit 3.0 Multiple SQL Injection Vulnerabilities
– Owl’s Workshop 1.0 Multiple Remote File Disclosure Vulnerabilities
– WebCortex WebStores2000 Error.ASP Cross-Site Scripting Vulnerability
– Ecommerce Corporation Online Store Kit 3.0 More.PHP Multiple Vulnerabilities
– YaBB 1.3.1 Information Leakage Weakness
– Vizer Web Server Remote Denial of Service Vulnerability
– KarjaSoft Sami HTTP Server GET Request Buffer Overflow Vulnerability
– Voice Of Web AllMyPHP 0.5 Remote File Include Vulnerabilities
– EarlyImpact ProductCart 2.5 Multiple Vulnerabilities
– ShopCartCGI 2.3 Remote File Disclosure Vulnerability
– YABB SE 1.5.5 Quote Parameter SQL Injection Vulnerability
– Multiple ASP Portal Vulnerabilities
– JelSoft VBulletin 3.0can4 Search.PHP Cross-Site Scripting Vulnerability
– Macallan Mail Solution Web Interface Authentication Bypass Vulnerability
– JelSoft VBulletin 2.3.4 Cross-Site Scripting Vulnerability
– VisualShapers ezContents 2.0.2 Multiple Module File Include Vulnerability
– BosDev 3.2 BosDates SQL Injection Vulnerability
– Monkey HTTP Daemon Missing Host Field Denial Of Service Vulnerability
– MaxWebPortal 1.32 Multiple Input Validation Vulnerabilities
– PHPNuke 6.9 Category Parameter SQL Injection Vulnerability
– Caucho Technology Resin Directory Listings Disclosure Vulnerability
– Brad Fears PHPCodeCabinet 0.4 comments.php HTML Injection Vulnerability

N-Stealth DB General Information
Version: 121
Release Date: 02/29/2004

This entry was posted in N-Stalker Latest Updates. Bookmark the permalink.