MS Vulnerability and new signatures added

By N-Stalker Team on March 13, 2005

N-Stalker has made available the latest database update (v146) for N-Stealth Web Security Scanner.
You should be able to receive it automatically next time you execute the scanner

to manually download it, use the url:
https://secure.nstalker.com/customercenter/

 

 

If you need any additional assistance during this process, please, contact us at:
E-mail: support at nstalker (24hs) or
Phone: +55-11-3675-7093 (9am to 18pm GMT-0300)

This release has included the following vulnerabilities:

- MyPHP Forum 1.0 Multiple SQL Injection Vulnerabilities
- ArGoSoft Mail Server 1.8.7.3 Multiple Directory Traversal Vulnerabilities
- MercuryBoard 1.1.1 INDEX.PHP SQL Injection Vulnerability
- GNU Mailman 2.1.5 Remote Directory Traversal Vulnerability
- PostWrap 2.5 Module Multiple Vulnerabilities
- PHP-Fusion 4.0 Viewthread.PHP Information Disclosure Vulnerbility
- XGB 2.0 Authentication Bypass Vulnerability
- Microsoft Outlook Web Access 2003 Login Form Remote URI Redirection Vulnerability
- PerlDesk 1.0 SQL Injection Vulnerability
- BXCP 0.2.9.7 Input Validation PHP Script Execution Vulnerability
- RaidenHTTPD 1.1.27 Remote File Disclosure Vulnerability
- LiteForum 2.1.1 Enter.PHP SQL Injection Vulnerability
- WWWBoard 2.1a Password Database Disclosure Vulnerability
- MediaWiki 1.3.9 Cross-Site Scripting Vulnerability
- Claroline Add_Course.PHP Cross-Site Scripting Vulnerability
- SunShop Shopping Cart 3.4 Cross-Site Scripting Vulnerability
- Linksys PSUS4 PrintServer Malformed HTTP POST Request Denial Of Service
- ht://Dig 3.2 Cross-Site Scripting Vulnerability
- Eurofull E-Commerce Mensresp.ASP Cross-Site Scripting Vulnerability
- Ventia DeskNow 2.5.13 Mail And Collaboration Server Multiple Remote Directory Traversal Vulnerabilities
- PHP-Fusion 4.0 Forum_Search.PHP Information Disclosure Vulnerability
- Mambo Open Source 4.5.1 Global Variables Unauthorized Access Vulnerability
- Savant Web Server 3.1 Remote Buffer Overflow Vulnerability
- SquirrelMail 1.2.6 URL Remote Code Execution Vulnerability
- Eternal Lines Web Server 1.0 Remote Denial Of Service Vulnerability

N-Stealth DB General Information
Version: 146
Release Date: 03/14/2005

This entry was posted in N-Stalker Latest Updates. Bookmark the permalink.