Groupwise vulnerabilities and new updates

By N-Stalker Team on February 21, 2005

N-Stalker has made available the latest database update (v144) for N-Stealth Web Security Scanner.
You should be able to receive it automatically next time you execute the scanner

to manually download it, use the url:
https://secure.nstalker.com/customercenter/

 

 

If you need any additional assistance during this process, please, contact us at:
E-mail: support at nstalker (24hs) or

Phone: +55-11-3675-7093 (9am to 18pm GMT-0300)

This release has included the following vulnerabilities:

- Netegrity SiteMinder 6.5 HTML Page Injection Vulnerability
- PHP Gift 1.4 Registry Multiple SQL Injection Vulnerabilities
- ITA Forum 1.49 Multiple SQL Injection Vulnerabilities
- Novell GroupWise WebAccess 6.5 Remote Authentication Bypass Vulnerability
- Gallery 1.4.4pl4 Multiple Remote Vulnerabilities
- SparkleBlog Multiple Input Validation Vulnerabilities
- AWStats 6.2 Remote Command Execution Vulnerability
- MPM Guestbook 1.5 Header Input Validation Vulnerability
- Siteman 1.1.9 Page Parameter Cross-Site Scripting Vulnerability
- IlohaMail 0.8.14rc2 Insecure Default Installation Information Disclosure Vulnerability
- ForumKIT 1.0 MEMBERS Parameter Cross-Site Scripting Vulnerability
- Horde 3.0.2 Multiple Cross-Site Scripting Vulnerabilities
- Zeroboard 4.1pl5 Multiple File Disclosure Vulnerabilities
- Zeroboard 4.1pl5 Print_Category.PHP Remote File Include Vulnerability
- Dokeos Course 1.5.5 Description Multiple Remote HTML Injection Vulnerabilities
- BiTBOARD 2.5 IMG BBCode Tag JavaScript Injection Vulnerability
- SGallery Module For PHPNuke 1.0.1 SQL Injection Vulnerability

N-Stealth DB General Information
Version: 144
Release Date: 02/21/2005

This entry was posted in N-Stalker Latest Updates. Bookmark the permalink.