Sun Java Server vulnerability and new updates

By N-Stalker Team on April 29, 2005

N-Stalker has made available the latest database update (v149) for N-Stealth Web Security Scanner.
You should be able to receive it automatically next time you execute the scanner.

to manually download it, use the url:
https://secure.nstalker.com/customercenter/

 

 

If you need any additional assistance during this process, please, contact us at:
E-mail: support at nstalker (24hs) or

Phone: +55-11-3675-7093 (9am to 18pm GMT-0300)

This release has included the following vulnerabilities:

– WEBInsta Mailing Manager 1.3d Remote File Include Vulnerability
– SocialMPN 1.2.5 Module Arbitrary Remote PHP File Include Vulnerability
– McNews 1.3 Header.PHP Arbitrary File Include Vulnerability
– PHPOutsourcing Zorum 3.5 Multiple Remote Vulnerabilities
– PY Software Active Webcam Webserver Multiple Vulnerabilities
– All Enthusiast PhotoPost 5.0rc3 PHP Pro Multiple Remote Vulnerabilities
– PHP-Fusion 5.0 BBCode IMG Tag Script Injection Vulnerability
– Drupal 4.5.2 Cross-Site Scripting Vulnerability
– PHP Arena PAFileDB 3.1 Multiple Remote Cross Site Scripting Vulnerabilities
– NewsScript Access Validation Vulnerability
– WF-Projects WF-Section 1.07 SQL Injection Vulnerability
– YaBB 2.0rc1 Remote UsersRecentPosts Cross-Site Scripting Vulnerability
– Xoops 2.0.9 Custom Avatar Remote Arbitrary PHP File Upload Vulnerability
– phpMyFAQ 1.5 Username SQL Injection Vulnerability
– BRT CopperExport 0.2 XP_Publish.PHP SQL Injection Vulnerability
– Aztek Forum 4.0 Unauthorized Access Vulnerability
– Jason Hines 0.5.3 PHPWebLog Remote File Include Vulnerability
– The Includer 1.1 Remote Command Execution Vulnerability
– Sun Solaris AnswerBook2 1.4.4 Multiple Cross-Site Scripting Vulnerabilities
– Stadtaus.Com PHP Form Mail 2.3 Script Remote File Include Vulnerability
– Stadtaus.Com Download Center Lite 1.5 Arbitrary Remote PHP File Include Vulnerability
– WoltLab Burning Board/Burning Board Lite 1.1.1 Session.PHP Multiple SQL Injection Vulnerabilities
– PABox 1.6 HTML Injection Vulnerability
– D-Forum 1.11 Nav.PHP3 Cross-Site Scripting Vulnerability
– Computalynx CProxy 3.4.4 Directory Traversal Vulnerability
– Typo3 3.7.0 CMW_Linklist Extension SQL Injection Vulnerability
– auraCMS 1.5 Multiple Cross-Site Scripting Vulnerabilities
– ProjectBB 0.4.5 Multiple Remote Cross-Site Scripting Vulnerabilities
– ProjectBB 0.4.5 Multiple SQL Injection Vulnerabilities
– MercuryBoard 1.1.2 Avatar HTML Injection Vulnerability
– Sun Java System Application Server UR5 Cross-Site Scripting Vulnerability

N-Stealth DB General Information
Version: 149
Release Date: 04/29/2005

This entry was posted in N-Stalker Latest Updates. Bookmark the permalink.