Cisco WLSE vulnerability and new updates

By N-Stalker Team on December 7, 2006

N-Stalker has made available the latest database update for its Web Application Security Assessment Products. Following the support life-cycle, we are still distributing updates for previous version.

You will be able to download it automatically in the following versions:

  • N-Stalker Web Application Security Scanner 2006 (Enterprise, QA and Infrastructure Edition)
    • WSI Update (N-Stalker Update Manager)
  • N-Stealth HTTP Security Scanner (database update 186)
    • Automatic DB Update

You should be able to receive it automatically next time you execute the scanner.

If you prefer to download it manually, please, use the following url: https://customer.nstalker.com.

If you need any additional assistance during this process, please, contact us at:
Web: Open new support ticket at https://customer.nstalker.com
E-mail: http://www.nstalker.com/about/contact (24hs) or
Phone: +55-11-3675-7093 (9am to 18pm GMT-0300)

This release has included the following vulnerabilities:

  • TalentSoft Web+ Shop 5.0 Deptname Parameter Cross-Site Scripting Vulnerability
  • phpMyForum 4.0 Index.PHP Multiple Cross-Site Scripting Vulnerabilities
  • PHPWebGallery 1.4.1 Multiple Cross-Site Scripting Vulnerabilities
  • JBook 1.3 Index.PHP Cross-Site Scripting Vulnerability
  • SPIP 1.8.3 Spip_login.PHP Remote File Include Vulnerability
  • Design Nation DNGuestbook 2.0 Admin.PHP SQL Injection Vulnerabilities
  • SQuery 4.5 LibPath Parameter Multiple Remote File Include Vulnerabilities
  • Shadowed Portal 5.7 Load.PHP Cross-Site Scripting Vulnerability
  • ShopWeezle 2.0 Multiple SQL Injection Vulnerabilities
  • AzDGVote Remote File Include Vulnerability
  • Dokeos 1.6.4 Viewtopic.PHP SQL Injection Vulnerability
  • SWSoft Confixx 3.1.2 Jahr Parameter Cross-Site Scripting Vulnerability
  • PHPKIT 1.6.1 R2 Include.PHP SQL Injection Vulnerability
  • Tritanium 1.2.3 Bulletin Board Multiple Cross-Site Scripting Vulnerabilities
  • VNews 1.2 Multiple SQL Injection Vulnerabilities
  • Interaktiv.shop V.5 Multiple Cross-Site Scripting Vulnerabilities
  • Chipmunk 1.3 Guestbook Index.PHP SQL Injection Vulnerability
  • MyBB 1.10 Member.PHP Cross-Site Scripting Vulnerability
  • PatroNet CMS Index.PHP Cross-Site Scripting Vulnerability
  • SWSoft Confixx 3.1.2 Index.PHP SQL Injection Vulnerability
  • AR-Blog 5.2 Print.PHP Cross-Site Scripting Vulnerability
  • PlanetSearch+ Planetsearchplus.PHP Cross-Site Scripting Vulnerability
  • PowerClan 1.14 Member.PHP SQL Injection Vulnerability
  • LifeType 1.0.3 Index.PHP Cross-Site Scripting Vulnerability
  • Papoo 2.1.5 Print.PHP Cross-Site Scripting Vulnerability
  • Papoo 2.1.5 Multiple Cross-Site Scripting Vulnerabilities
  • MODxCMS 0.9.1 Index.PHP Cross-Site Scripting Vulnerability
  • MODxCMS 0.9.1 Index.PHP Directory Traversal Vulnerability
  • FarsiNews 2.5.3 Search.PHP Cross-Site Scripting Vulnerability
  • phpFaber TopSites 0 Index.PHP Cross-Site Scripting Vulnerability
  • Monster Top List 1.4 Functions.PHP Remote File Include Vulnerability
  • TinyPHPForum 3.6 Multiple Cross-Site Scripting Vulnerabilities
  • DbbS 2.0-alpha Topics.PHP SQL Injection Vulnerability
  • Blursoft Blur6ex 0.3.462 Index.PHP Local File Include Vulnerability
  • Calendarix 1.5 .20050501 YearCal.PHP Cross-Site Scripting Vulnerability
  • Coppermine 1.4.4 Index.PHP Local File Include Vulnerability
  • Cisco Wireless Lan Solution Engine ArchiveApplyDisplay.JSP Cross-Site Scripting Vulnerability
  • LinPHA 1.1 Multiple Cross-Site Scripting Vulnerabilities
  • axoverzicht.CGI Cross-Site Scripting Vulnerability
  • phpLinks 2.1.3.1Index.PHP Cross-Site Scripting Vulnerability
  • MD News 1 Admin.PHP SQL Injection Vulnerability
  • RechnungsZentrale V2 1.1.3 Authent.PHP4 Remote File Include Vulnerability
  • PHPLister 0.4.1 Index.PHP Cross-Site Scripting Vulnerability
  • Article Publisher Pro 1.0.1 Multiple SQL Injection Vulnerabilities
  • ModernGigabyte ModernBill 4.3.2 User.PHP SQL Injection Vulnerability
  • Visale 1.0 Multiple Cross-Site Scripting Vulnerabilities
  • ThWboard 2.84 Showtopic.PHP SQL Injection Vulnerability
  • ContentBoxX 0 Login.PHP Cross-Site Scripting Vulnerability
  • BannerFarm 2.3 Multiple Cross-Site Scripting Vulnerabilities
  • Plexum X5 Multiple SQL Injection Vulnerabilities
  • Net Clubs Pro 4.0 Multiple Cross-Site Scripting Vulnerabilities
  • I-RATER Platinum Common.PHP Remote File Include Vulnerability
  • EasyGallery 1.17 EasyGallery.PHP Cross-Site Scripting Vulnerability
  • W2B Online Banking SID Parameter Cross-Site Scripting Vulnerability
  • 4homepages 4images 1.7 Member.PHP Cross-Site Scripting Vulnerability
  • ThWboard 3.0 Index.PHP Cross-Site Scripting Vulnerability
  • CutePHP CuteNews 1.4.1 Editnews Module Cross-Site Scripting Vulnerability
  • Mini-NUKE 2.3 Pages.ASP SQL Injection Vulnerability
  • dForum Multiple Remote File Include Vulnerabilities
  • Simplog 0.9.3 ImageList.PHP Cross-Site Scripting Vulnerability
  • TotalCalendar Multiple Remote File Include Vulnerabilities
  • Snipe Gallery 3.1.4 Multiple Cross-Site Scripting Vulnerabilities

This entry was posted in N-Stalker Latest Updates. Bookmark the permalink.