Sun One Vulnerabilities and new updates

By N-Stalker Team on August 22, 2005

N-Stalker has made available the latest database update (v159) for N-Stealth Web Security Scanner.
You should be able to receive it automatically next time you execute the scanner.

to manually download it, use the url:
https://secure.nstalker.com/customercenter/

 

 

If you need any additional assistance during this process, please, contact us at:
E-mail: support at nstalker (24hs) or
Phone: +55-11-3675-7093 (9am to 18pm GMT-0300)

This release has included the following vulnerabilities:

- I-Gallery Folder Argument Cross-Site Scripting Vulnerability
- PAFaq Question Cross-Site Scripting Vulnerability
- PAFaq Beta4 Administrator Username SQL Injection Vulnerability
- cPanel 9.1 User Parameter Cross-Site Scripting Vulnerability
- Uapplication Ublog 1.0.5 Reload Trackback.ASP Cross-Site Scripting Vulnerability
- Uapplication Ublog 1.0.5 Reload Multiple SQL Injection Vulnerabilities
- Ultimate PHP Board 1.9.6 Multiple Cross-Site Scripting Vulnerabilities
- Sun ONE/iPlanet Messaging Server 6.2 Webmail MSIE HTML Injection Vulnerability
- Contelligent 9.0.l5 Preview Privilege Escalation Vulnerability
- XAMMP 1.4.13 Lang.PHP HTML Injection Vulnerability
- osCommerce 2.2 Multiple HTTP Response Splitting Vulnerabilities
- Bitrix Site Manager 4.0.5 Remote File Include Vulnerability
- e107 Website System 0.617 Multiple Input Validation and Information Disclosure Vulnerabilities
- Cool Cafe Chat 1.2.1 LOGIN.ASP SQL Injection Vulnerability
- ATutor 1.4.3 Multiple Cross-Site Scripting Vulnerabilities
- PAFileDB 3.1 Multiple Input Validation Vulnerabilities
- Robot Linux Server 2.0 Remote Buffer Overflow Vulnerability
- McGallery 1.1 Lang Argument File Disclosure Vulnerability
- Annuaire 1Two 1.1 Index.PHP Cross-Site Scripting Vulnerability
- FusionBB 0.11 Multiple Input Validation Vulnerabilities
- Singapore Image Gallery 0.9.11 Index.PHP Cross-Site Scripting Vulnerability
- JamMail 1.8 Jammail.pl Remote Arbitrary Command Execution Vulnerability
- Siteframe 3.2 Siteframe.php Remote File Include Vulnerability
- Ovidentia FX Remote File Include Vulnerability
- Invision Community Blog 1.1 Multiple Input Validation Vulnerabilities
- Invision Power Services Invision Gallery 1.3 SQL Injection Vulnerability
- Loki Download Manager 2.0 Catinfo.ASP SQL Injection Vulnerability
- Cerberus Helpdesk 2.6.1 Multiple Cross-Site Scripting Vulnerabilities
- Mortiforo 0.9 Unauthorized Access Vulnerability
- FlatNuke 2.5.3 Multiple Input Validation Vulnerabilities

N-Stealth DB General Information
Version: 159
Release Date: 08/22/2005

This entry was posted in N-Stalker Latest Updates. Bookmark the permalink.