Cisco HTTP Vulnerability and new updates

By N-Stalker Team on April 26, 2006

N-Stalker has made available the latest database update (v174) for N-Stealth Web Security Scanner.
You should be able to receive it automatically next time you execute the scanner.

to manually download it, use the url:
https://secure.nstalker.com/customercenter/

 

 

If you need any additional assistance during this process, please, contact us at:
E-mail: support at nstalker (24hs) or
Phone: +55-11-3675-7093 (9am to 18pm GMT-0300)

This release has included the following vulnerabilities:

- ACME Perl-Cal 2.99.30 Cal_make.PL Cross-Site Scripting Vulnerability
- CF_Nuke 4.6 Index.CFM Cross-Site Scripting Vulnerabilities
- ASPMForum Multiple SQL Injection Vulnerabilities
- DRZES HMS 3.2 Login.PHP Cross-Site Scripting Vulnerability
- PHPMyChat 0.14.5 Multiple Cross-Site Scripting Vulnerabilities
- Cars Portal 1.1 Index.PHP Multiple SQL Injection Vulnerabilities
- PluggedOut Blog 1.9.5 Index.PHP Multiple SQL Injection Vulnerabilities
- RWAuction Pro 4.0 Search.ASP Cross-Site Scripting Vulnerability
- NetauctionHelp 3.0 Multiple Cross-Site Scripting Vulnerabilities
- A-FAQ 1.0 Multiple SQL Injection Vulnerabilities
- IISWorks ASPKnowledgeBase 2.0 KB.ASP Cross-Site Scripting Vulnerability
- DuWare DuPortalPro 3.4.3 Password.ASP Cross-Site Scripting Vulnerability
- Edgewall Software Trac 0.9.1 Search Module SQL Injection Vulnerability
- Web4Future Affiliate Manager PRO 4.1 Functions.PHP SQL Injection Vulnerability
- Web4Future Portal Solutions Arhiva.PHP Directory Traversal Vulnerability
- Web4Future Portal Solutions Comentarii.PHP SQL Injection Vulnerability
- Blog System 1.2 Multiple SQL Injection Vulnerabilities
- Web4Future eDating Professional Multiple SQL Injection Vulnerabilities
- Relative Realestate Systems 1.2 SQL Injection Vulnerability
- Hobosworld HobSR Multiple SQL Injection Vulnerabilities
- 1-Script 1-Search 1.8 1search.CGI Cross-Site Scripting Vulnerability
- SAMEDIA Landshop 0.6.3 Multiple SQL Injection Vulnerabilities
- Easy Search System 1.1 Search.cgi Cross-Site Scripting Vulnerability
- Web4Future eCommerce Enterprise Edition Multiple SQL Injection Vulnerabilities
- Widget Press Widget Property 1.1.19 Property.PHP SQL Injection Vulnerability
- PHPYellowTM 5.33 Multiple SQL Injection Vulnerabilities
- SiteBeater News 4.0 Archive.ASP Cross-Site Scripting Vulnerability
- Solupress News 1.0 Search.ASP Cross-Site Scripting Vulnerability
- Absolute Shopping Package Solutions Shopping Cart 2.9d Multiple Cross-Site Scripting Vulnerabilities
- NetClassifieds 1.9.6.3 Products Multiple SQL Injection Vulnerabilities
- PHPX 3.5.9 Admin Login.PHP SQL Injection Vulnerability
- PHPMyAdmin 2.6.3-pl1 Error.PHP Cross-Site Scripting Vulnerability
- PHPMyAdmin 2.6.4-rc1 Multiple Cross-Site Scripting Vulnerabilities
- Cisco IOS 12.4 HTTP Service HTML Injection Vulnerability
- Extreme Corporate 6.0 Extremesearch.PHP Cross-Site Scripting Vulnerability
- WebCalendar 1.0.1 Multiple SQL Injection Vulnerabilities
- WebCalendar 1.0.1 Layers_Toggle.PHP HTTP Response Splitting Vulnerability
- Horde 2.2.8 Unspecified Error Message Cross-Site Scripting Vulnerability
- PHPWordPress 3.0 Multiple SQL Injection Vulnerabilities
- PHP Upload Center Index.PHP Directory Traversal Vulnerability

N-Stealth DB General Information
Version: 174
Release Date: 04/26/2006

This entry was posted in N-Stalker Latest Updates. Bookmark the permalink.