PHPBB vulnerabilities and new updates

By N-Stalker Team on June 12, 2004

N-Stalker has made available the latest database update (v138) for N-Stealth Web Security Scanner.
You should be able to receive it automatically next time you execute the scanner

to manually download it, use the url:
https://secure.nstalker.com/customercenter/

 

 

If you need any additional assistance during this process, please, contact us at:

E-mail: support at nstalker com (24hs) or
Phone: +55-11-3675-7093 (9am to 18pm GMT-0300)

This release has included the following vulnerabilities:

– ClickandBuild 5.0 LISTPOS Parameter Cross-Site Scripting Vulnerability
– PHPBB 2.0.10 Admin_cash.PHP Remote PHP File Include Vulnerability
– MiniBB 1.7 Remote SQL Injection Vulnerability
– NuKed-Klan 1.5 Messaging System HTML Injection Vulnerability
– PHPScheduleIt 1.0 Reservation.Class.PHP Unspecified Reservation Modification Vulnerability
– Moodle Multiple Unspecified Input Validation Vulnerabilities
– Event Calendar Multiple Remote Vulnerabilities
– Fastream NetFile FTP/Web Server 7.1.2 HEAD Request Denial Of Service Vulnerability
– Mark Zuckerberg Thefacebook Multiple Cross-Site Scripting Vulnerabilities
– Chacmool 1.1.3 Private Message System Multiple Vulnerabilities
– Aztek Forum 4.0 Multiple Input Validation Vulnerabilities
– PHPBB 2.0.10 Remote URLDecode Input Validation Vulnerability
– TWiki Search Shell Metacharacter Remote Arbitrary Command Execution Vulnerability
– Phorum 5.0.12 FOLLOW.PHP SQL Injection Vulnerability
– vBulletin 3.0.3 LAST.PHP SQL Injection Vulnerability
– WebCalendar 0.9.44 Multiple Remote Vulnerabilities
– 04WebServer 1.42 Multiple Remote Vulnerabilities
– SquirrelMail 1.4.3 decodeHeader HTML Injection Vulnerability
– Infusium ASP Message Board 2.2.1c Multiple Unspecified Input Validation Vulnerabilities
– Nucleus CMS 3.1 Multiple Unspecified Input Validation Vulnerabilities
– Netgear DG834 ADSL Firewall Router Multiple Vulnerabilities
– EGroupWare 1.0.0.3 JiNN Application Unspecified Vulnerability
– Mantis 0.19.0 Multiple Information Disclosure Vulnerabilities
– MiniShare Server 1.4.1 Remote Buffer Overflow Vulnerability
– GFHost 0.2 Cross-Site Scripting And Server-Side Script Execution Vulnerability

N-Stealth DB General Information
Version: 138
Release Date: 12/06/2004

This entry was posted in N-Stalker Latest Updates. Bookmark the permalink.