Groupwise vulnerabilities and new updates

By N-Stalker Team on February 21, 2005

N-Stalker has made available the latest database update (v144) for N-Stealth Web Security Scanner.
You should be able to receive it automatically next time you execute the scanner

to manually download it, use the url:
https://secure.nstalker.com/customercenter/

 

 

If you need any additional assistance during this process, please, contact us at:
E-mail: support at nstalker (24hs) or

Phone: +55-11-3675-7093 (9am to 18pm GMT-0300)

This release has included the following vulnerabilities:

– Netegrity SiteMinder 6.5 HTML Page Injection Vulnerability
– PHP Gift 1.4 Registry Multiple SQL Injection Vulnerabilities
– ITA Forum 1.49 Multiple SQL Injection Vulnerabilities
– Novell GroupWise WebAccess 6.5 Remote Authentication Bypass Vulnerability
– Gallery 1.4.4pl4 Multiple Remote Vulnerabilities
– SparkleBlog Multiple Input Validation Vulnerabilities
– AWStats 6.2 Remote Command Execution Vulnerability
– MPM Guestbook 1.5 Header Input Validation Vulnerability
– Siteman 1.1.9 Page Parameter Cross-Site Scripting Vulnerability
– IlohaMail 0.8.14rc2 Insecure Default Installation Information Disclosure Vulnerability
– ForumKIT 1.0 MEMBERS Parameter Cross-Site Scripting Vulnerability
– Horde 3.0.2 Multiple Cross-Site Scripting Vulnerabilities
– Zeroboard 4.1pl5 Multiple File Disclosure Vulnerabilities
– Zeroboard 4.1pl5 Print_Category.PHP Remote File Include Vulnerability
– Dokeos Course 1.5.5 Description Multiple Remote HTML Injection Vulnerabilities
– BiTBOARD 2.5 IMG BBCode Tag JavaScript Injection Vulnerability
– SGallery Module For PHPNuke 1.0.1 SQL Injection Vulnerability

N-Stealth DB General Information
Version: 144
Release Date: 02/21/2005

This entry was posted in N-Stalker Latest Updates. Bookmark the permalink.