phpMyAdmin vulnerabilities and multiple updates

By N-Stalker Team on February 8, 2008

N-Stalker has made available the latest database update for its Web Application Security Assessment Products.

You will be able to download it automatically in the following versions:

  • N-Stalker Web Application Security Scanner 2006 (Enterprise, QA and Infrastructure Edition)
    • WSI Update (N-Stalker Update Manager)
  • N-Stealth HTTP Security Scanner (not updated)

You should be able to receive it automatically next time you execute the scanner.

If you prefer to download it manually, please, use the following url: https://customer.nstalker.com.

If you need any additional assistance during this process, please, contact us at:
Web: Open new support ticket at https://customer.nstalker.com
E-mail: http://www.nstalker.com/about/contact (24hs) or
Phone: +55-11-3675-7093 (9am to 18pm GMT-0300)

This release has included the following vulnerabilities:

  • HotScripts Clone 1.0 SOFTWARE-DESCRIPTION.PHP SQL Injection Vulnerability [CVE-2007-6084]
  • Sciurus Hosting Panel 2.03 Code Injection Vulnerability [CVE-2007-6082]
  • SkyPortal RC6 Nc_Top.ASP SQL Injection Vulnerability [CVE-2007-6078]
  • SkyPortal RC6 Cp_Main.ASP SQL Injection Vulnerability [CVE-2007-6078]
  • SkyPortal RC6 Inc_SUBSCRIPTIONS.ASP SQL Injection Vulnerability [CVE-2007-6078]
  • SkyPortal RC6 Inc_Bookmarks.ASP SQL Injection Vulnerability [CVE-2007-6078]
  • Liferay 4.1.1 Portal Login Script Cross-Site Scripting Vulnerability [CVE-2007-6055]
  • Irokez CMS 0.7.1 Users.Func.PHP Remote File Include Vulnerability [CVE-2006-6771]
  • Irokez CMS 0.7.1 Sections.Func.PHP Remote File Include Vulnerability [CVE-2006-6771]
  • Irokez CMS 0.7.1 Js.Func.PHP Remote File Include Vulnerability [CVE-2006-6771]
  • Irokez CMS 0.7.1 Groups.Func.PHP Remote File Include Vulnerability [CVE-2006-6771]
  • Irokez CMS 0.7.1 General.Func.PHP Remote File Include Vulnerability [CVE-2006-6771]
  • Irokez CMS 0.7.1 Form.Func.PHP Remote File Include Vulnerability [CVE-2006-6771]
  • Irokez CMS 0.7.1 Xtextarea.Scr.PHP Remote File Include Vulnerability [CVE-2006-6771]
  • Irokez CMS 0.7.1 Search.Scr.PHP Remote File Include Vulnerability [CVE-2006-6771]
  • Irokez CMS 0.7.1 Rss.Scr.PHP Remote File Include Vulnerability [CVE-2006-6771]
  • Irokez CMS 0.7.1 Polls.Scr.PHP Remote File Include Vulnerability [CVE-2006-6771]
  • Irokez CMS 0.7.1 News.Scr.PHP Remote File Include Vulnerability [CVE-2006-6771]
  • Irokez CMS 0.7.1 Sitemap.Scr.PHP Remote File Include Vulnerability [CVE-2006-6771]
  • Irokez CMS 0.7.1 Gallery.Scr.PHP Remote File Include Vulnerability [CVE-2006-6771]
  • Joomla Equipment JUser 1.0.14 Xajax_Functions.PHP Remote File Include Vulnerability [CVE-2007-6038]
  • Citrix NetScaler 8.0 Generic_API_Call.PL Cross-Site Scripting Vulnerability [CVE-2007-6037]
  • PHPCMS 1.1.7 Parser.PHP Remote File Include Vulnerability [CVE-2006-3019]
  • PHPCMS 1.1.7 Counter.PHP Remote File Include Vulnerability [CVE-2006-3019]
  • PHPCMS 1.1.7 Class.Layout_Phpcms.PHP Remote File Include Vulnerability [CVE-2006-3019]
  • PHPCMS 1.1.7 Class.Lib_Indexer_Universal_Phpcms.PHP Remote File Include Vulnerability [CVE-2006-3019]
  • PHPCMS 1.1.7 Class.Search_Phpcms.PHP Remote File Include Vulnerability [CVE-2006-3019]
  • PHPCMS 1.1.7 Class.Cache_Phpcms.PHP Remote File Include Vulnerability [CVE-2006-3019]
  • PHPCMS 1.1.7 Class.Http_Indexer_Phpcms.PHP Remote File Include Vulnerability [CVE-2006-3019]
  • PHPCMS 1.1.7 Class.Parser_Phpcms.PHP Remote File Include Vulnerability [CVE-2006-3019]
  • PHPCMS 1.1.7 Class.Session_Phpcms.PHP Remote File Include Vulnerability [CVE-2006-3019]
  • PHPCMS 1.1.7 Class.Parser_Phpcms.PHP Remote File Include Vulnerability [CVE-2006-3019]
  • Aleris Web Publishing Server 3.0 Page.ASP SQL Injection Vulnerability [CVE-2007-6032]
  • Nuked-Klan 1.7.5 Index.PHP Cross-Site Scripting Vulnerability [CVE-2007-6090]
  • IceBB 1.0 HTTP_X_FORWARDED_FOR SQL Injection Vulnerability [CVE-2007-6083]
  • ProfileCMS 1.0 Index.PHP CODES SQL Injection Vulnerability [CVE-2007-6058]
  • ProfileCMS 1.0 Index.PHP GAMES SQL Injection Vulnerability [CVE-2007-6058]
  • ProfileCMS 1.0 Index.PHP VIDEOS SQL Injection Vulnerability [CVE-2007-6058]
  • p3mbo Content Injector 1.52 Index.PHP SQL Injection Vulnerability [CVE-2007-6137]
  • PHPKIT 1.6.4 Article.PHP SQL Injection Vulnerability [CVE-2007-6134]
  • DevMass Cart 1.0 Initialise.PHP Remote File Include Vulnerability [CVE-2007-6133]
  • Carousel Flash Image Gallery Admin.JJGallery.PHP Remote File Include Vulnerability [CVE-2007-6027]
  • PHP-Nuke NSN Script Depository 1.0 Source Code Information Disclosure Vulnerability
  • GWExtranet 3.0 Scp.DLL FILTER Parameter HTML Injection Vulnerability
  • GWExtranet 3.0 Scp.DLL TEMPLATE Parameter HTML Injection Vulnerability
  • GWExtranet 3.0 Scp.DLL MONTH Parameter HTML Injection Vulnerability
  • GWExtranet 3.0 Scp.DLL USER Parameter HTML Injection Vulnerability
  • NetAuctionHelp 4.1 Search.ASP SQL Injection Vulnerability
  • Shadowed Portal Include.PHP Remote File Include Vulnerability [CVE-2006-6850]
  • DocuSafe Search Parameter SQL Injection Vulnerability [CVE-2007-6012]
  • Cafelog B2 Blog B2Verifauth.PHP Remote File Include Vulnerability [CVE-2006-6830]
  • Bandersnatch 0.4 Index.PHP FUNC Parameter Cross-Site Scripting Vulnerability [CVE-2007-6001]
  • Bandersnatch 0.4 Index.PHP USER/JID Parameter Cross-Site Scripting Vulnerability [CVE-2007-6001]
  • Bandersnatch 0.4 Index.PHP LOG/JID Parameter Cross-Site Scripting Vulnerability [CVE-2007-6001]
  • Bandersnatch 0.4 Index.PHP DATE Parameter Cross-Site Scripting Vulnerability [CVE-2007-6001]
  • FooSun Api_Response.ASP SQL Injection Vulnerability
  • Toko Instan 7.6 Index.PHP ID Parameter SQL Injection Vulnerability [CVE-2007-6004]
  • Toko Instan 7.6 Index.PHP KATID Parameter SQL Injection Vulnerability [CVE-2007-6004]
  • Softbiz Online Auctions Script PRODUCT_DESC.PHP SQL Injection Vulnerability [CVE-2007-5999]
  • Softbiz Ad Management PLUS Script 1.0 ADS.PHP SQL Injection Vulnerability [CVE-2007-5998]
  • Softbiz Link Directory Script SEARCHRESULT.PHP SQL Injection Vulnerability [CVE-2007-5996]
  • VTLS Web Gateway 48.1 Searchtype Parameter Cross-Site Scripting Vulnerability [CVE-2007-5993]
  • PHP Application Tools patBBCode 1.0 BBCODESOURCE.PHP Remote File Include Vulnerability [CVE-2007-5995]
  • Yappa-NG 2.3.2 Check_Noimage.PHP Remote File Include Vulnerability [CVE-2007-5994]
  • Irola My-Time 3.5 Login.ASP SQL Injection Vulnerabilities [CVE-2007-6217]
  • MyPHPNuke My_EGallery Module DisplayCategory.PHP Remote File Include Vulnerability [CVE-2006-6795]
  • Datecomm Social Networking Script Index.PHP SQL Injection Vulnerability [CVE-2007-5992]
  • Drake CMS XHTML.PHP Remote File Include Vulnerability [CVE-2006-5767]
  • AutoIndex PHP Script 2.2.2 PHP_SELF Index.PHP Cross-Site Scripting Vulnerability [CVE-2007-5983]
  • ExoPHPDesk 1.2.1 Index.PHP SQL Injection Vulnerability [CVE-2007-5991]
  • X7 Chat 2.0.4 Upgradev1.PHP Cross Site Scripting Vulnerability [CVE-2007-5982]
  • X7 Chat 2.0.4 Frame.PHP Cross Site Scripting Vulnerability [CVE-2007-5982]
  • X7 Chat 2.0.4 Index.PHP Cross Site Scripting Vulnerability [CVE-2007-5982]
  • Eggblog 3.1 Rss.PHP Cross-Site Scripting Vulnerability [CVE-2007-5980]
  • F5 FirePass 4100 5.4.2 SSL VPN Download_Plugin.PHP3 Cross-Site Scripting Vulnerability [CVE-2007-5979]
  • Wheatblog 1.1 Session.PHP Remote File Include Vulnerability [CVE-2006-4198]
  • Xoops 2.0.17.1 Mylinks Module Brokenlink.PHP SQL injection Vulnerability [CVE-2007-5978]
  • amensa-soft K+B-Bestellsystem 2.3.3 KB_Whois.CGI Remote Shell Command Execution Vulnerability [CVE-2007-6176]
  • amensa-soft K+B-Bestellsystem 2.3.3 KB_Whois.CGI Remote Shell Command Execution Vulnerability [CVE-2007-6176]
  • phpMyAdmin 2.11.1 DB_Create.PHP SQL Injection Vulnerability [CVE-2007-5976]
  • E-vanced Solutions Summer Re-ader 2007 Viewreviews.ASP SQL Injection Vulnerability
  • E-vanced Solutions E-vents 5.0 Eventsignup.ASP SQL Injection Vulnerability
  • GWExtranet Scp.DLL Directory Traversal Vulnerability
  • JPortal 2.3.1 Articles.PHP SQL Injection Vulnerability [CVE-2007-5973]
  • TorrentStrike 0.4 INDEX.PHP SQL Injection Vulnerability [CVE-2007-5975]
  • JLMForo System Buscado.PHP Cross-Site Scripting Vulnerability [CVE-2007-5954]
  • Helios Calendar 1.2 Admin/Index.PHP Cross Site Scripting Vulnerability [CVE-2007-5952]
  • E-Vendejo 0.2 Articles.PHP SQL Injection Vulnerability [CVE-2007-5951]
  • SF-Shoutbox 1.4 Main.PHP Multiple HTML Injection Vulnerabilit [CVE-2007-5948]
  • Computer Associates SiteMinder Web Agent Smpwservices.FCC Cross Site Scripting Vulnerability [CVE-2007-5923]
  • Efkan Forum Grup Variable SQL Injection Vulnerability [CVE-2006-6794]
  • Future Internet Index.CFM CATEGORYID Parameter Cross-Site Scripting Vulnerability [CVE-2006-6777]
  • Future Internet Index.CFM LANGID Parameter SQL Injection Vulnerability [CVE-2006-6777]
  • Future Internet Index.CFM CATEGORYID Parameter SQL Injection Vulnerability [CVE-2006-6777]
  • Future Internet Index.CFM NEWSID Parameter SQL Injection Vulnerability [CVE-2006-6777]
  • Enthrallweb EHomes Result.ASP ABEDROOMS Parameter SQL Injection Vulnerability [CVE-2006-6205]
  • Enthrallweb EHomes Result.ASP AMAXPRICE Parameter SQL Injection Vulnerability [CVE-2006-6204]
  • Enthrallweb EHomes Result.ASP AMINPRICE Parameter SQL Injection Vulnerability [CVE-2006-6204]
  • Enthrallweb EHomes CompareHomes.ASP ADID Parameter SQL Injection Vulnerability [CVE-2006-6204]
  • Enthrallweb EHomes CompareHomes.ASP CLEAR Parameter SQL Injection Vulnerability [CVE-2006-6204]
  • Enthrallweb EHomes CompareHomes.ASP COMPARE Parameter SQL Injection Vulnerability [CVE-2006-6204]
  • Enthrallweb EHomes Result.ASP SQL Injection Vulnerability [CVE-2006-6204]
  • Enthrallweb EHomes HomeDetail.ASP SQL Injection Vulnerability [CVE-2006-6204]
  • Enthrallweb EHomes Types.ASP SQL Injection Vulnerability [CVE-2006-6204]
  • Enthrallweb EHomes DirSub.ASP SQL Injection Vulnerability [CVE-2006-6204]
  • Enthrallweb EHomes Dircat.ASP SQL Injection Vulnerability [CVE-2006-6204]
  • Weblord.it MS-TopSites Unauthorized Access Vulnerability and HTML Injection Vulnerability [CVE-2007-5918]
  • Click&BaneX Details.ASP SQL Injection Vulnerability
  • PHP Helpdesk 0.6.16 Index.PHP Local File Include Vulnerability [CVE-2007-5915]
  • JPortal 2.0 Mailer.PHP SQL Injection Vulnerability [CVE-2007-5974]
  • Keep It Simple Guest Book Authenticate.PHP Remote File Include Vulnerability [CVE-2006-6764]
  • easyGB 2.1.1 Index.PHP Local File Include Vulnerability [CVE-2007-5890]
  • IDMOS CMS 1.0 Ia.PHP Cross-Site Scripting Vulnerability [CVE-2007-5293]
  • IDMOS CMS 1.0 Error.PHP Cross-Site Scripting Vulnerability [CVE-2007-5293]
  • ManageEngine OpManager 7.0 JSP/Login.DO Cross Site Scripting Vulnerability [CVE-2007-5891]
  • Simple PHP Gallery System SP_Index.PHP Cross-Site Scripting Vulnerability [CVE-2006-6273]
  • Newxooper Mapage.PHP Remote File Include Vulnerability [CVE-2006-6711]
  • scWiki 1.0 Common.PHP Remote File Include Vulnerability [CVE-2007-5843]
  • Coppermine Photo Gallery 1.4.13 Displayecard.PHP Cross-Site Scripting Vulnerability [CVE-2007-5888]
  • ASP Message Board 2.2.1 Printer.ASP SQL Injection Vulnerability [CVE-2007-5887]
  • Paristemi BuyCD.PHP Remote File Include Vulnerability [CVE-2006-6739]
  • GuppY 4.6.3 Includes.Inc Remote File Include Vulnerability [CVE-2007-5844]
  • Vortex Portal 1.0.42 Secure.PHP Remote File Include Vulnerability [CVE-2007-5842]
  • Vortex Portal 1.0.42 Checklogin.PHP Remote File Include Vulnerability [CVE-2007-5842]
  • JobSite Professional 2.0 File.PHP SQL injection Vulnerability [CVE-2007-5785]
  • TextSend Sender.PHP Remote File Include Vulnerability [CVE-2006-6686]
  • Valdersoft Shopping Cart 3.0 Common_Include/Common.PHP Remote File Include Vulnerability [CVE-2006-6691]
  • Valdersoft Shopping Cart 3.0 Include/Common.PHP Remote File Include Vulnerability [CVE-2006-6691]
  • Valdersoft Shopping Cart 3.0 Admin/Include/Common.PHP Remote File Include Vulnerability [CVE-2006-6691]
  • Webmaster-Tips.net Joomla! WMT Portfolio 1.0 Remote File Include Vulnerability [CVE-2007-5310]
  • Mini Web Shop View.PHP Viewcategory.PHP Cross-Site Scripting Vulnerability [CVE-2006-6735]
  • awzMB 4.2 Adminhelp.PHP Remote File Include Vulnerability [CVE-2007-5592]
  • awzMB 4.2 Core.Incl.PHP Remote File Include Vulnerability [CVE-2007-5592]
  • awzMB 4.2 Gbook.Incl.PHP Remote File Include Vulnerability [CVE-2007-5592]
  • awzMB 4.2 Help.Incl.PHP Remote File Include Vulnerability [CVE-2007-5592]
  • awzMB 4.2 Reg.Incl.PHP Remote File Include Vulnerability [CVE-2007-5592]
  • awzMB 4.2 Admin.Incl.PHP Remote File Include Vulnerability [CVE-2007-5592]
  • Sige 0.1 Sige_Init.PHP Remote File Include Vulnerability [CVE-2007-5781]
  • Broadband Mechanics PeopleAggregator 1.2 Validations.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 AddGroupModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 Html_Generate.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 Auto_Email_Notify.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 Blogger.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 ViewAllMembersModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 VideosMediaGalleryModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 UserPhotoModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 UserMessagesModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 UploadMediaModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 TakerATourModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 ShowContentModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 ShowAnnouncementModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 SearchGroupsModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 RegisterModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 RecentTagsModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 RecentPostModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 RecentCommentsModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 ProfileFeedModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 PostContentModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 PopularTagsModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • PanetLuc.Com RateMe Main.Inc.PHP Remote File Include Vulnerability [CVE-2006-6648]
  • Broadband Mechanics PeopleAggregator 1.2 PeopleModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 NewestGroupsModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 NetworksDirectoryModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 NetworkResultUserModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Azucar CMS Index_sitios.PHP Remote File Include Vulnerability [CVE-2006-6720]
  • Broadband Mechanics PeopleAggregator 1.2 NetworkResultContentModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 NetworkModerateUserModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 NetworkDefaultLinksModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 NetworkDefaultControlModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Contra Haber Sistemi Haber.ASP SQL Injection Vulnerability [CVE-2006-6642]
  • Broadband Mechanics PeopleAggregator 1.2 NetworkAnnouncementModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 MyNetworksModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 MyLinksModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 MyGroupsModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 ModuleSelectorModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 Module.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 MessageModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 MembersFacewallModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 MediaManagementModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 MediaFullViewModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 LogoModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 Remoteauth_Functions.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 LinksModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 LargestGroupsModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 InvitationStatusModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 ImagesModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 ImagesMediaGalleryModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 GroupsDirectoryModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 GroupsCategoryModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 GroupModerationModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 GroupModerateUserModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 GroupModerateContentModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 GroupForumPermalinkModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 GroupForumModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 FlickrModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 ExternalFeedModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 EnableModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 External.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 DynamicProfile.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 Desktop_Image.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 AudiosMediaGalleryModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 AddMessageModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 Flickrclient.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 AboutUserModule.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 UserHome.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 DeleteUser.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 DeleteContent.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 ContentHome.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 ConfigureText.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 Submit_Comment.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 Submit_Abuse.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • Broadband Mechanics PeopleAggregator 1.2 Network_Module_Selector.PHP Remote File Include Vulnerability [CVE-2007-5631]
  • phpMyAdmin 2.11.1 Server_Status.PHP Cross-Site Scripting Vulnerability [CVE-2007-5589]
  • phpFaber URLInn 2.0.5 Config.PHP Remote File Include Vulnerability [CVE-2007-5754]
  • SMART-SHOP Index.PHP EMAIL Parameter Cross Site Scripting Vulnerability [CVE-2007-5725]
  • SMART-SHOP Index.PHP BASKET Cross Site Scripting Vulnerability [CVE-2007-5725]
  • SMART-SHOP Index.PHP CURRENCIES Cross Site Scripting Vulnerability [CVE-2007-5725]
  • SMART-SHOP Index.PHP Cross Site Scripting Vulnerability [CVE-2007-5725]
  • Synergiser 1.2 Index.PHP Local File Include Vulnerability [CVE-2007-5802]
  • Ax Developer CMS 0.1.1 Index.PHP Local File Include Vulnerability [CVE-2007-5820]
  • GoSamba 1.0.1 Inc_Group.PHP Remote File Include Vulnerability [CVE-2007-5786]
  • GoSamba 1.0.1 Inc_Freigabe3.PHP Remote File Include Vulnerability [CVE-2007-5786]
  • GoSamba 1.0.1 Inc_Freigabe1.PHP Remote File Include Vulnerability [CVE-2007-5786]
  • GoSamba 1.0.1 Inc_Freigabe.PHP Remote File Include Vulnerability [CVE-2007-5786]
  • GoSamba 1.0.1 HTML_Oben.PHP Remote File Include Vulnerability [CVE-2007-5786]
  • GoSamba 1.0.1 Main.PHP Remote File Include Vulnerability [CVE-2007-5786]
  • GoSamba 1.0.1 Inc_User.PHP Remote File Include Vulnerability [CVE-2007-5786]
  • GoSamba 1.0.1 Inc_Smb_Conf.PHP Remote File Include Vulnerability [CVE-2007-5786]
  • GoSamba 1.0.1 Inc_Newgroup.Php.PHP Remote File Include Vulnerability [CVE-2007-5786]
  • GoSamba 1.0.1 Inc_Manager.PHP Remote File Include Vulnerability [CVE-2007-5786]
  • nuBoard 0.5 Index.PHP Remote File Include Vulnerability [CVE-2007-5841]
  • FireConfig 0.5 DL.PHP Local File Include Vulnerability [CVE-2007-5782]
  • GHBoard Upload.JSP File Access Vulnerability [CVE-2007-5737]
  • GHBoard Download.JSP Directory Traversal Vulnerability [CVE-2007-5739]
  • GHBoard Upload.HTML File Access Vulnerability [CVE-2007-5737]
  • CaupoShop Pro 2.0 Index.PHP Remote File Include Vulnerability [CVE-2007-5784]
  • awrate.com message board 404.PHP Remote File Include Vulnerability [CVE-2007-5599]
  • awrate.com message board TopBar.PHP Remote File Include Vulnerability [CVE-2007-5599]
  • efileman 7.1 Upload.HTML File Upload Vulnerability [CVE-2007-5734]
  • efileman 7.1 Upload.CGI File Upload Vulnerability [CVE-2007-5734]
  • Galmeta Post 0.2 Upload_Config.PHP Remote File Include Vulnerability [CVE-2007-5567]
  • emagiC CMS (ASP) EMC.ASP SQL Injection Vulnerability [CVE-2007-5783]
  • Blue Coat ProxySG 4.1.2 Crl_Format Cross-Site Scripting Vulnerability [CVE-2007-5796]
  • Blue Coat ProxySG 4.1.2 Management Install_Upload_From_File.HTM Cross-Site Scripting Vulnerability [CVE-2007-5796]
  • PHPMyCMS Basic.Inc.PHP Remote File Include Vulnerability [CVE-2006-6612]
  • Quick and Dirty Blog 0.4 Categories.PHP Local File Include Vulnerability [CVE-2007-2304]
  • CM68 News Oldnews.Inc.PHP Remote File Include Vulnerability [CVE-2006-6462]
  • ISPworker 1.21 Download.PHP FILENAME Parameter Local File Include Vulnerability [CVE-2007-5813]
  • ISPworker 1.21 Download.PHP TICKETID Parameter Local File Include Vulnerability [CVE-2007-5813]
  • Omnistar Live KB.PHP Cross-Site Scripting Vulnerability [CVE-2007-5724]
  • Omnistar Live KB.PHP Cross-Site Scripting Vulnerability [CVE-2007-5724]
  • CONTENTCustomizer 3.1mp Dialog.PHP Information Disclosure Vulnerability [CVE-2007-5816]
  • i-Gallery 3.4 Igallery.ASP Remote Information Disclosure Vulnerability [CVE-2007-5776]
  • Scribe 0.2 Forum.PHP Remote PHP Code Execution Vulnerability [CVE-2007-5822]
  • AR_Memberscript UserCP_menu.PHP Remote File Include Vulnerability [CVE-2006-6590]
  • Gretech GOM Player 2.1.6 GomWeb3.DLL Remote Buffer Overflow Vulnerability [CVE-2007-5779]
  • LimeSurvey 1.52 LANGUAGE.PHP Remote File Include Vulnerability [CVE-2007-5573]
  • SyndeoCMS 2.5.1 MAIN.INC.PHP Remote File Include Vulnerability [CVE-2007-5840]
  • DM Guestbook 0.4.1 Guestbook.PHP Local File Include Vulnerability [CVE-2007-5821]
  • DM Guestbook 0.4.1 Ch_Lng.PHP Local File Include Vulnerability [CVE-2007-5821]
  • DM Guestbook 0.4.1 Glob_New.PHP Local File Include Vulnerability [CVE-2007-5821]
  • DM Guestbook 0.4.1 Admin.Guestbook.PHP Local File Include Vulnerability [CVE-2007-5821]
  • phpMyAdmin 2.11.1 Setup.PHP Cross-Site Scripting Vulnerability [CVE-2007-5386]
  • Teatro 1.6 Pub08_Comments.PHP Remote File Include Vulnerability [CVE-2007-5780]
  • BackUpWordPress 0.4.2b Archive.PHP Remote File Include Vulnerability [CVE-2007-5800]
  • BackUpWordPress 0.4.2b Reader.PHP Remote File Include Vulnerability [CVE-2007-5800]
  • BackUpWordPress 0.4.2b Writer.PHP Remote File Include Vulnerability [CVE-2007-5800]
  • BackUpWordPress 0.4.2b Predicate.PHP Remote File Include Vulnerability [CVE-2007-5800]
  • PHPDJ 0.5 DJPAGE.PHP Remote File Include Vulnerability [CVE-2007-5574]
  • mnoGoSearch 3.2.42 Search.CGI Cross-Site Scripting Vulnerability [CVE-2007-5588]
  • Miro Broadcast Machine 0.9.9 Login.PHP Cross Site Scripting Vulnerability [CVE-2007-3694]
  • PHP-Nuke Advertising Module 0.9 Modules.PHP SQL Injection Vulnerability
  • Softbiz Banner Exchange Script 1.0 CAMPAIGN_STATS.PHP SQL Injection Vulnerability [CVE-2007-5997]
  • TBsource 7alpha.1.01 Index.PHP SQL Injection Vulnerability [CVE-2007-5975]
  • Rapid Classified AgencyCatResult.ASP SQL Injection Vulnerability
  • NETGEAR SSL312 PROSAFE SSL VPN-Concentrator 25 Error Page Cross Site Scripting Vulnerability [CVE-2007-5562]
  • phpFidoNode 1.3 Phfito-Post.PHP Remote File Include Vulnerability [CVE-2007-5157]
  • Clansphere 2007.4 Index.PHP SQL Injection Vulnerability [CVE-2007-5061]
  • Chupix CMS 0.2.3 Header.PHP Remote File Include Vulnerability [CVE-2007-5139]
  • IntegraMOD Nederland 1.4.2 phpbb_root_path Remote File Include Vulnerability [CVE-2007-5140]
  • lustig.cms 2.5 Forum.PHP Remote File Include Vulnerability [CVE-2007-5138]
  • Novus 1.0 Buscar.ASP Cross-Site Scripting Vulnerability [CVE-2007-5142]
  • NukeSentinel 2.5.11 NukeSentinel.PHP SQL Injection Vulnerability [CVE-2007-5150]
  • Novus 1.0 Notas.ASP SQL Injection Vulnerability [CVE-2007-5123]
  • FrontAccounting 1.13 Language.PHP Remote File Include Vulnerability [CVE-2007-5117]
  • FrontAccounting 1.13 Login.PHP Remote File Include Vulnerability [CVE-2007-5117]
  • Softbiz Classifieds Store_Info.PHP SQL Injection Vulnerability [CVE-2007-5122]
  • SimpNews 2.41.3 Layout2b.PHP Cross-Site Scripting Vulnerability [CVE-2007-4874]
  • SimpNews 2.41.3 Comment.PHP Cross-Site Scripting Vulnerability [CVE-2007-4874]
  • PHP-Nuke Dance Music Module Index.PHP Local File Include Vulnerability [CVE-2007-5092]
  • eGroupWare 1.4.1 CLASS.UICATEGORIES.INC.PHP Cross-Site Scripting Vulnerability [CVE-2007-5091]
  • eGroupWare 1.4.1 CLASS.UICATEGORIES.INC.PHP Cross-Site Scripting Vulnerability [CVE-2007-5091]
  • sk.log 0.5.3 Log.Inc.PHP Remote File Include Vulnerability [CVE-2007-5089]
  • SimpGB 1.46.2 Index.PHP Cross-Site Scripting Vulnerability [CVE-2007-5127]
  • SimpGB 1.46.2 Emoticonlist.PHP Cross-Site Scripting Vulnerability [CVE-2007-5127]
  • LevelOne WBR3404TX Broadband Router R1.94p0vTIG DDNS DD Parameter Cross Site Scripting Vulnerability [CVE-2007-5027]
  • LevelOne WBR3404TX Broadband Router R1.94p0vTIG DDNS DU Parameter Cross Site Scripting Vulnerability [CVE-2007-5027]
  • DFD Cart 1.1 Product.Control.Config.PHP Remote File Include Vulnerability [CVE-2007-5098]
  • DFD Cart 1.1 Customer.Browse.Search.PHP Remote File Include Vulnerability [CVE-2007-5098]
  • DFD Cart 1.1 Customer.Browse.List.PHP Remote File Include Vulnerability [CVE-2007-5098]

This entry was posted in N-Stalker Latest Updates. Bookmark the permalink.