Coppermine vulnerability and new updates
N-Stalker has made available the latest database update for its Web Application Security Assessment Products. Following the support life-cycle, we are still distributing updates for previous version.
You will be able to download it automatically in the following versions:
- N-Stalker Web Application Security Scanner 2006 (Enterprise, QA and Infrastructure Edition)
- WSI Update (N-Stalker Update Manager)
- N-Stealth HTTP Security Scanner (not updated)
You should be able to receive it automatically next time you execute the scanner.
If you prefer to download it manually, please, use the following url: https://customer.nstalker.com.
If you need any additional assistance during this process, please, contact us at:
Web: Open new support ticket at https://customer.nstalker.com
E-mail: http://www.nstalker.com/about/contact (24hs) or
Phone: +55-11-3675-7093 (9am to 18pm GMT-0300)
This release has included the following vulnerabilities:
- BytesFall Explorer 0.0.7 Multiple Unspecified SQL Injection Vulnerabilities
- PHPProfiles 2.1 Body.Inc.PHP Remote File Include Vulnerability
- PHPProfiles 2.1 Upload_Ht.Inc.PHP Remote File Include Vulnerability
- PHPProfiles 2.1 Body_Blog.Inc.PHP Remote File Include Vulnerability
- Foresite CMS Index_2.PHP Cross-Site Scripting Vulnerability
- OpenDocMan 1.2rc3 Username SQL Injection Vulnerability
- PHPEasyData 2.2.1 Index.PHP SQL Injection Vulnerability
- Techno Dreams Guestbook 1.0 Guestbookview.ASP SQL Injection Vulnerability
- Easy NotesManager 0.0.1 Multiple SQL Injection Vulnerabilities
- PHP My Ring 4.2.1 Cherche.PHP SQL Injection Vulnerability
- Techno Dreams Announcement MainAnnounce2.ASP SQL Injection Vulnerability
- Netref 4.0 Cat_For_AFF.PHP Directory Traversal Vulnerability
- Freenews 1.1 Aff_News.PHP Remote File Include Vulnerability
- Aktueldownload Haber Scripti 1.0 HaberDetay.ASP SQL Injection Vulnerability
- Simple Website Software 0.99 Common.PHP Remote File Include Vulnerability
- Actionpoll 1.1.1 DataReaderWriter.PHP Remote File Include Vulnerability
- Actionpoll 1.1.1 PollDB.PHP Remote File Include Vulnerability
- TextPattern g1.19 Publish.PHP Remote File Include Vulnerability
- FreePBX 2.1.3 Upgrade.PHP Remote File Include Vulnerability
- EE Tool 0.4-1 Ip.Inc.PHP Remote File Include Vulnerability
- Ascended Guestbook 1.0 Embedded.PHP Remote File Include Vulnerability
- Free File Hosting 1.1 Forgot_Pass.PHP Remote File Include Vulnerability
- WP-DB Backup For WordPress 2.0.4 Edit.PHP Directory Traversal Vulnerability
- PLS-Bannieres 1.21 Bannieres.PHP SQL Injection Vulnerability
- Free Image Hosting 1.0 Forgot_Pass.PHP Remote File Include Vulnerability
- BBSNew 2.0.1 Index2.PHP Remote File Include Vulnerability
- MiraksGalerie 2.62 Galsecurity.Lib.PHP Remote File Include Vulnerability
- MiraksGalerie 2.62 Galimage.Lib.PHP Remote File Include Vulnerability
- MiraksGalerie 2.62 Pcltar.Lib.PHP Remote File Include Vulnerability
- PHPTreeView 1.0 TreeViewClass.PHP Remote File Include Vulnerability
- Coppermine Photo Gallery 1.4.9 Picmgr.PHP SQL Injection Vulnerability
- N/X WCMS 4.1 NXHeader.Inc.PHP Remote File Include Vulnerability