Apache and more than new 50 signatures

By N-Stalker Team on October 12, 2004

N-Stalker has made available the latest database update (v135) for N-Stealth Web Security Scanner.
You should be able to receive it automatically next time you execute the scanner (to manually download it, use the url
https://secure.nstalker.com/customercenter/).

If you need any additional assistance during this process, please, contact us at:
E-mail: support at nstalker com (24hs) or
Phone: +55-11-3675-7093 (9am to 18pm GMT-0300)

This release has included the following vulnerabilities:

– WordPress 1.2 Wp-login.PHP HTTP Response Splitting Vulnerability
– Brooky CubeCart 2.0.1 SQL Injection Vulnerability
– DCP-Portal 5.3.2 Calendar.PHP HTTP Response Splitting Vulnerability
– BlackBoard Internet Newsboard System 1.5.1 Remote File Include Vulnerability
– NetworkActiv Web Server 1.0 Remote Denial of Service Vulnerability
– FuzzyMonkey 1.20 My Blog Multiple Input Validation Vulnerabilities
– PHPLinks 2.1.3 Multiple Input Validation Vulnerabilities
– Jetty 4.2.19 Directory Traversal Vulnerability
– Invision Power Board 2.0 Referer Cross-Site Scripting Vulnerability
– Yappa-NG 2.2.2 Show Random Image AddOn Unauthorized Locked Album Access Vulnerability
– BBlog 0.7.3 RSS.PHP SQL Injection Vulnerability
– W-Agora 4.1.6 Multiple Remote Input Validation Vulnerabilities
– Silent-Storm Portal 2.1 Multiple Input Validation Vulnerabilities
– PHP-Fusion 4.0.1 Multiple SQL and HTML Injection Vulnerabilities
– MediaWiki Raw Page 1.3.4 Cross-Site Scripting Vulnerability
– PeopleSoft Human Resources Management System 7.0 Cross-Site Scripting Vulnerability
– Vignette Application Portal Remote Information Disclosure Vulnerability
– Serendipity 0.7 beta1 Multiple Input Validation Vulnerabilities
– ParaChat 5.5 Directory Traversal Vulnerability
– Icecast Server 2.0.1 HTTP Header Buffer Overflow Vulnerability
– WordPress 1.2 Multiple Cross-Site Scripting Vulnerabilities
– BroadBoard Message Board Multiple SQL Injection Vulnerabilities
– Baal Systems Portal Software Authentication Bypass Vulnerability
– PD9 Software MegaBBS 2.1 Multiple Vulnerabilities
– MyWebServer 1.0.3 Multiple Remote Vulnerabilities
– @lexPHPTeam @lex Guestbook 3.12 Remote PHP File Include Vulnerability
– Full Revolution aspWebCalendar 4.5 and aspWebAlbum 3.2 Multiple SQL Injection Vulnerabilities
– Macromedia JRun 4.0 Multiple Remote Vulnerabilities
– ActivePost 3.1 Messenger Multiple Remote Vulnerabilities
– Apache Satisfy Directive Access Control Bypass Vulnerability
– Subversion Mod_Authz_Svn Metadata Information Disclosure Vulnerability
– AllWebScripts MySQLGuest HTML Injection Vulnerability
– EmuLive Server4 Authentication Bypass And Denial Of Service Vulnerabilities
– Pinnacle ShowCenter 1.51 Web Interface Skin Denial Of Service Vulnerability
– Mambo Open Source 4.5.1 Multiple Input Validation Vulnerabilities
– Tutos 1.1 Multiple Remote Input Validation Vulnerabilities
– ReMOSitory SQL Injection Vulnerability
– Multiple Business Objects WebIntelligence 2.7.4 Vulnerabilities
– DNS4Me Denial Of Service And Cross-Site Scripting Vulnerabilities
– YaBB 9.1 YaBB.pl IMSend Cross-Site Scripting Vulnerability
– Snitz Forums 3.0 Down.ASP HTTP Response Splitting Vulnerability

N-Stealth DB General Information
Version: 135
Release Date: 09/11/2004

This entry was posted in N-Stalker Latest Updates. Bookmark the permalink.