SAP Application vulnerability and new updates
N-Stalker has made available the latest database update (v169) for N-Stealth Web Security Scanner.
You should be able to receive it automatically next time you execute the scanner.
![]() |
to manually download it, use the url: https://secure.nstalker.com/customercenter/ |
If you need any additional assistance during this process, please, contact us at:
E-mail: support at nstalker (24hs) or
Phone: +55-11-3675-7093 (9am to 18pm GMT-0300)
This release has included the following vulnerabilities:
– PHPWCMS 1.2.5 Multiple Remote File Include Vulnerabilities
– PHPWCMS 1.2.5 Multiple Cross-Site Scripting Vulnerabilities
– Pearl Forums 2.0 Index.PHP Multiple SQL Injection Vulnerabilities
– Walla TeleSite 3.0 Multiple Input Validation Vulnerabilities
– Cyphor 0.19 Show.PHP SQL Injection Vulnerability
– Codegrrl PHPQuotes 1.0 Protection.PHP Unspecified Code Execution Vulnerability
– Help Center Live 2.0 Module.PHP Local File Include Vulnerability
– Wizz Forum Multiple SQL Injection Vulnerabilities
– Basic Analysis And Security Engine 1.2 Base_qry_main.PHP SQL Injection Vulnerability
– MidiCart ASP Search_List.ASP Searchstring Parameter SQL Injection Vulnerability
– ActiveCampaign 1-2-All Broadcast 4.0.7 Email Admin Control Panel Username SQL Injection Vulnerability
– PHPSysInfo 2.3 Multiple Input Validation Vulnerabilities
– Exponent CMS 0.96.1 Multiple SQL Injection Vulnerabilities
– OcoMon 1.21 Multiple Unspecified SQL Injection Vulnerabilities
– Moodle 1.6 Multiple SQL Injection Vulnerabilities
– Antville 1.1 Cross-Site Scripting Vulnerability
– TikiWiki 1.9.2 Tiki-view_forum_thread.PHP Cross-Site Scripting Vulnerability
– ASPKnowledgebase Adminlogin.ASP SQL Injection Vulnerability
– SAP Web Application Server 7.0 URI Redirection Vulnerability
– ATutor 1.5.1pl2 Registration.PHP SQL Injection Vulnerability
– PHPKit 1.6.1 Multiple Input Validation Vulnerabilities
– toendaCMS 0.6.1 Remote File Upload Vulnerability
– toendaCMS 0.6.1 Admin.PHP Directory Traversal Vulnerability
– Invision Power Services Invision Board 2.1 Multiple Cross-Site Scripting Vulnerabilities
– PHPList 2.10.1 Multiple Input Validation Vulnerabilities
– XMB 1.9.3 U2U.PHP Cross-Site Scripting Vulnerability
– PHPFM 0.2.3 Arbitrary File Upload Vulnerability
– Darryl Burgdorf Webhints 1.3 Remote Command Execution Vulnerability
– cPanel 10.6.0 Chat Message Field HTML Injection Vulnerability
– Ocean12 ASP Calendar Manager 1.0.1 SQL Injection Vulnerability
– Ocean12 ASP Calendar Manager 1.0.1 Authentication Bypass Vulnerability
– PunBB/BLOG:CMS 1.2.9 Information Disclosure Vulnerability
– PunBB/BLOG:CMS 1.2.9 Origin Spoofing Vulnerability
– PunBB/Blog:CMS 1.2.9 Image Upload HTML Injection Vulnerability
– JPortal 2.3.1 Multiple SQL Injection Vulnerabilities
– Galerie 2.4 ShowGallery.PHP SQL Injection Vulnerability
N-Stealth DB General Information
Version: 169
Release Date: 01/11/2006