Mambo Components multiple vulnerabilities

By N-Stalker Team on May 12, 2008

N-Stalker has made available the latest database update for its Web Application Security Assessment Products.

You will be able to download it automatically in the following versions:

  • N-Stalker Web Application Security Scanner 2006 (Enterprise, QA and Infrastructure Edition)
    • WSI Update (N-Stalker Update Manager)
  • N-Stealth HTTP Security Scanner (not updated)

You should be able to receive it automatically next time you execute the scanner.

If you prefer to download it manually, please, use the following url: https://customer.nstalker.com.

If you need any additional assistance during this process, please, contact us at:
Web: Open new support ticket at https://customer.nstalker.com
E-mail: http://www.nstalker.com/about/contact (24hs) or
Phone: +55-11-3675-7093 (9am to 18pm GMT-0300)

This release has included the following vulnerabilities:

  • Online-rent.com Property Rental Script 4.5 Index.PHP SQL Injection Vulnerability
  • VisualShapers EzContents 2.0 Printer.PHP SQL Injection Vulnerability
  • VisualShapers EzContents 2.0 Showdetails.PHP SQL Injection Vulnerability
  • Forum Rank System 6.0 Profile.PHP Local File Include Vulnerability
  • Forum Rank System 6.0 Forum.PHP Local File Include Vulnerability
  • Sphider 1.3.4 Search.PHP Cross-Site Scripting Vulnerability
  • Pre Shopping Mall 1.1 Search.PHP SQL Injection Vulnerability
  • Power Editor 2.0 Editor.PHP Local File Include Vulnerability
  • Power Editor 2.0 Editor.PHP Cross-Site Scripting Vulnerability
  • PHPEasyData 1.5.4 Annuaire.PHP SQL Injection Vulnerability
  • SonicWALL Email Security 6.1.1 Error Page Cross-Site Scripting Vulnerability
  • iGaming CMS 1.5 Poll_Vote.PHP SQL Injection Vulnerability
  • Intesync LLC Miniweb 2.0 Blog Writer Module Index.PHP SQL Injection Vulnerability
  • BatmanPorTaL Uyeadmin.ASP SQL Injection Vulnerability
  • BatmanPorTaL Profil.ASP SQL Injection Vulnerability
  • BackLinkSpider 1.1 Link.PHP SQL Injection Vulnerability [CVE-2008-2096]
  • BackLinkSpider 1.1 Backlinkspider.PHP SQL Injection Vulnerability [CVE-2008-2096]
  • GEDCOM_to_MySQL2 Prenom.PHP NOM Parameter Cross-Site Scripting Vulnerabilit
  • GEDCOM_to_MySQL2 Info.PHP PRENOM Parameter Cross-Site Scripting Vulnerabilit
  • GEDCOM_to_MySQL2 Info.PHP NOM Parameter Cross-Site Scripting Vulnerabilit
  • GEDCOM_to_MySQL2 Info.PHP NOM_BRANCHE Parameter Cross-Site Scripting Vulnerabilit
  • GEDCOM_to_MySQL2 Index.PHP NOM_BRANCHE Parameter Cross-Site Scripting Vulnerabilit
  • GEDCOM_to_MySQL2 Prenom.PHP NOM_BRANCHE Parameter Cross-Site Scripting Vulnerabilit
  • phpDirectorySource 1.1.6 Show.PHP SQL Injection Vulnerability
  • ScorpNews 2.0 Example.PHP Remote File Include Vulnerability
  • ScorpNews 2.0 News/Example.PHP Remote File Include Vulnerability
  • Kmita Mail 3.0 Htmlcode.PHP Remote File Include Vulnerability
  • Scout Portal Toolkit 1.4 SPT–BrowseResources.PHP SQL Injection Vulnerability
  • osCommerce 2.2 Categories.PHP PID Parameter Cross-Site Scripting Vulnerability
  • osCommerce 2.2 Orders.PHP CID Parameter Cross-Site Scripting Vulnerability
  • osCommerce 2.2 Categories.PHP PAGE Parameter Cross-Site Scripting Vulnerability
  • AnServ Auction XL Viewfaqs.PHP SQL Injection Vulnerability
  • Kmita Tellfriend 2.0 Htmlcode.PHP Remote File Include Vulnerability
  • Online-rent.com Property Rental Script 4.5 Index.PHP SQL Injection Vulnerability
  • Maian Uploader 4.0 Index.PHP PROCESS/KEYWORD Parameter Cross Site Scripting Vulnerability
  • Maian Uploader 4.0 Header.PHP MSG_HEADER9 Parameter Cross Site Scripting Vulnerability
  • Maian Uploader 4.0 Header.PHP MSG_CHARSET Parameter Cross Site Scripting Vulnerability
  • Maian Uploader 4.0 Index.PHP SEARCH/KEYWORD Parameter Cross Site Scripting Vulnerability
  • pnEncyclopedia 0.2 Index.PHP SQL Injection Vulnerability
  • OpenAutoClassifieds 1.4.3 Listings.PHP SQL Injection Vulnerability
  • ChiCoMaS 2.0.4 Index.PHP Cross Site Scripting Vulnerability
  • TLM CMS 1.1 Index.PHP IDNEWS Parameter SQL Injection Vulnerability
  • TLM CMS 1.1 Index.PHP ID Parameter SQL Injection Vulnerability
  • Sphider 1.3.4 Search.PHP Cross-Site Scripting Vulnerability
  • PHPEasyData 1.5.4 Annuaire.PHP SQL Injection Vulnerability
  • Pre Shopping Mall 1.1 Search.PHP SQL Injection Vulnerability
  • Maian Script World 1.1 Header.PHP MSG_ADMINHEADER Parameter Cross-Site Scripting Vulnerability
  • Maian Script World 1.1 Index.PHP SQL Injection Vulnerability
  • Maian Script World 1.1 Header.PHP MSG_SCRIPT2 Parameter Cross-Site Scripting Vulnerability
  • Maian Script World 1.1 Header.PHP MSG_SCRIPT Parameter Cross-Site Scripting Vulnerability
  • Maian Script World 1.1 Index.PHP KEYWORDS Parameter SQL Injection Vulnerability
  • Maian Script World 1.1 Index.PHP Cross-Site Scripting Vulnerability
  • Maian Script World 1.1 Index.PHP Cross-Site Scripting Vulnerability
  • Maian Script World 1.1 Footer.PHP MSG_SCRIPT3 Parameter Cross-Site Scripting Vulnerability
  • Maian Script World 1.1 Header.PHP MSG_ADMINHEADER4 Parameter Cross-Site Scripting Vulnerability
  • Maian Script World 1.1 Header.PHP MSG_ADMINHEADER3 Parameter Cross-Site Scripting Vulnerability
  • Maian Script World 1.1 Header.PHP MSG_ADMINHEADER2 Parameter Cross-Site Scripting Vulnerability
  • vlbook 1.0.2 Global.Inc.PHP Local File Include Vulnerability
  • vlbook 1.0.2 Index.PHP Cross Site Scripting Vulnerability
  • SmartBlog 2.1 Index.PHP SQL Injection Vulnerability
  • BlogMe PHP Comments.PHP SQL Injection Vulnerability
  • Zomplog 3.8.2 Category.PHP Cross Site Scripting Vulnerability
  • Zen Cart 2008 Index.PHP Cross-Site Scripting Vulnerability
  • Zen Cart 2008 Index.PHP SQL Injection Vulnerability
  • Project Alumni 1.0.9 Cross-Site Scripting Vulnerability
  • Project Alumni 1.0.9 SQL Injection Vulnerability
  • BlackBook 1.0 Footer.PHP BOOKCOPYRIGHT Parameter Cross Site Scripting Vulnerability
  • BlackBook 1.0 Header.PHP ESTILOCSS Parameter Cross Site Scripting Vulnerability
  • BlackBook 1.0 Header.PHP BOOKMETATAGS Parameter Cross Site Scripting Vulnerability
  • BlackBook 1.0 Header.PHP BOOKNAME Parameter Cross Site Scripting Vulnerability
  • BlackBook 1.0 Footer.PHP VER Parameter Cross Site Scripting Vulnerability
  • QT-cute QuickTalk Guestbook 1.6 Qtf_Cmd.PHP Cross-Site Scripting Vulnerability
  • QT-cute QuickTalk Guestbook 1.6 Qtf_Ind_Search_Ov.PHP ID Parameter Cross-Site Scripting Vulnerability
  • QT-cute QuickTalk Guestbook 1.6 Qtf_Ind_Search_Ov.PHP A Parameter Cross-Site Scripting Vulnerability
  • QT-cute QuickTalk Guestbook 1.6 Qtf_Ind_Search_Ov.PHP N Parameter Cross-Site Scripting Vulnerability
  • QT-cute QuickTalk Guestbook 1.6 Qtf_Ind_Search_Kw.PHP TITLE Parameter Cross-Site Scripting Vulnerability
  • QT-cute QuickTalk Guestbook 1.6 Qtf_Ind_Search_Kw.PHP S Parameter Cross-Site Scripting Vulnerability
  • QT-cute QuickTalk Guestbook 1.6 Qtf_Ind_Stat.PHP Cross-Site Scripting Vulnerability
  • QT-cute QuickTalk Guestbook 1.6 Qtf_Ind_Post.PHP Cross-Site Scripting Vulnerability
  • QT-cute QuickTalk Guestbook 1.6 Qtf_Adm_Cmd.PHP Cross-Site Scripting Vulnerability
  • phpAddressBook 2.11 Index.PHP Local File Include Vulnerability
  • LiveCart ID Parameter SQL Injection Vulnerability [CVE-2008-1750]
  • Interact 2.4.1 Embedforum.PHP Remote File Include Vulnerability
  • Interact 2.4.1 Lib.Inc.PHP Remote File Include Vulnerability
  • Harris Wap Chat 1.0 Eng.WriteMsg.PHP Remote File Include Vulnerability
  • Harris Wap Chat 1.0 Eng.SearchMember.PHP Remote File Include Vulnerability
  • Harris Wap Chat 1.0 Eng.SaveNewRoom.PHP Remote File Include Vulnerability
  • Harris Wap Chat 1.0 Eng.RoomDeleteConfirm.PHP Remote File Include Vulnerability
  • Harris Wap Chat 1.0 Eng.ResultMember.PHP Remote File Include Vulnerability
  • Harris Wap Chat 1.0 Eng.PageLogout.PHP Remote File Include Vulnerability
  • Harris Wap Chat 1.0 Eng.Forward.PHP Remote File Include Vulnerability
  • Harris Wap Chat 1.0 Eng.CreateRoom.PHP Remote File Include Vulnerability
  • Harris Wap Chat 1.0 Eng.AdDispByTypeOptions.PHP Remote File Include Vulnerability
  • Harris Wap Chat 1.0 Eng.AdCreateSave.PHP Remote File Include Vulnerability
  • Harris Wap Chat 1.0 Eng.AdCreate.PHP Remote File Include Vulnerability
  • ActualScripts ActualAnalyzer Lite 2.78 Admin.PHP Local File Include Vulnerability
  • CoronaMatrix phpAddressBook 2.0 USERNAME Cross Site Scripting Vulnerability
  • MJGUEST 6.7 Mjguest.PHP Cross Site Scripting Vulnerability
  • PBCS 0.7.1 Multiple Input Validation Vulnerabilities
  • C-News 1.0.1 Install.PHP Cross Site Scripting Vulnerability
  • SiteXS CMS 0.1.1 Adm/Index.PHP Cross Site Scripting Vulnerability
  • Joovili 3.1 Browse.Videos.PHP SQL Injection Vulnerability
  • Softbiz Web Host Directory Script Search_Result.PHP SQL Injection Vulnerability
  • Prozilla Hosting Index Directory.PHP SQL Injection Vulnerability
  • MegaBBS 2.2 Send-Private-Message.ASP Cross-Site Scripting Vulnerability
  • MegaBBS 2.2 Controlpanel.ASP SQL Injection Vulnerability
  • FluentCMS View.PHP SQL Injection Vulnerability
  • Jokes Site Script CATEGORIE Parameter SQL Injection Vulnerability
  • ODFaq 2.1 Index.PHP SQL Injection Vulnerability
  • Content Management System for Phprojekt 0.6.1 Graphie.PHP Local File Include Vulnerability
  • miniBB 2.2a Bb_Admin.PHP Cross-Site Scripting Vulnerability
  • RunCMS MyArticles Module 0.6 TOPIC_ID Parameter SQL Injection Vulnerability
  • PHP Forge 3.0 ID Parameter SQL Injection Vulnerability
  • Angelo-Emlak 1.0 Default.ASP Cross-Site Scripting Vulnerability
  • Angelo-Emlak 1.0 Profil.ASP SQL Injection Vulnerability
  • Angelo-Emlak 1.0 Prodetail.ASP SQL Injection Vulnerability
  • pnFlashGames 1.5 PostNuke module ID Parameter SQL Injection Vulnerability
  • Siteman 2.0.x2 MODULE Parameter Cross-Site Scripting Vulnerability
  • Joomla Visites 1.1 Component MyMailer.Class.PHP Remote File Include Vulnerability
  • F5 Networks FirePass 4100 SSL VPN InstallControl.PHP3 Cross-Site Scripting Vulnerability
  • @lex Guestbook 4.0.5 Index.PHP Cross-Site Scripting Vulnerability
  • @lex Guestbook 4.0.5 Setup.PHP Cross-Site Scripting Vulnerability
  • PostNuke PostSchedule Component 1.0 EID Parameter SQL Injection Vulnerability
  • miniBB 2.0.5 Index.PHP SQL Injection Vulnerability
  • miniBB 2.0.5 Index.PHP Cross-Site Scripting Vulnerability
  • PHCDownload 1.1 Index.PHP Cross-Site Scripting Vulnerability
  • PHCDownload 1.1 Index.PHP SQL Injection Vulnerability
  • Web Calendar Pro 4.1 One_Day.PHP SQL Injection Vulnerability [CVE-2008-1954]
  • Joomla! and Mambo Jpad Component 1.0 CID Parameter SQL Injection Vulnerability
  • Pixel Motion Blog List_Article.PHP Cross-Site Scripting Vulnerability
  • Digital Hive 2.0 Base.PHP Parameter Cross-Site Scripting Vulnerability
  • Joomla! and Mambo Community Builder COM_PROFILER Component SQL Injection Vulnerability
  • Horde Webmail 1.0.5 Addevent.PHP Cross-Site Scripting Vulnerability
  • Joomla! and Mambo FlippingBook Component 1.0.4 BOOK_ID Parameter SQL Injection Vulnerability
  • ContRay SEARCH Parameter Cross Site Scripting Vulnerability
  • Crazy Goomba 1.2.1 Commentaires.PHP SQL Injection Vulnerability
  • XOOPS Article Module Article.PHP SQL Injection Vulnerability
  • Tr Script News 2.1 News.PHP SQL Injection Vulnerability
  • Kubelance 1.6.4 Ipn.PHP Local File Include Vulnerability
  • RedDot CMS 7.5.1 IoRD.ASP SQL Injection Vulnerability [CVE-2008-1613]
  • OpenSSH 4.3p2 X Connections Session Hijacking Vulnerability [CVE-2008-1483]
  • WordPress wpSS 0.6 Spreadsheet Plugin SS_ID Parameter SQL Injection Vulnerability
  • W1L3D4 Philboard 1.0 Philboard_Newtopic.ASP SQL Injection Vulnerability
  • W1L3D4 Philboard 1.0 Philboard_Reply.ASP TOPIC Parameter SQL Injection Vulnerability
  • W1L3D4 Philboard 1.0 Philboard_Reply.ASP ID Parameter SQL Injection Vulnerability
  • PortailPHP 2.0 MOD_SEARCH Remote File Include Vulnerability
  • Chimaera Project Aterr 0.9.1 Common.Inc.PHP Local File Include Vulnerability
  • Chimaera Project Aterr 0.9.1 Functions.Inc.PHP Local File Include Vulnerability
  • XOOPS Recette 2.2 Detail.PHP SQL Injection Vulnerability
  • YourFreeWorld Apartment Search Script Listtest.PHP SQL Injection Vulnerability
  • Simple Customer 1.2 Contact.PHP SQL Injection Vulnerability
  • Voice of Web AllMyGuests 0.4.1 AMG_ID SQL Injection Vulnerability
  • Wikepage Opus 13.0 WIKI Parameter Cross-Site Scripting Vulnerability
  • WordPress 2.3.3 CAT Parameter Directory Traversal Vulnerability
  • 5th Avenue Shoppe Category_List.PHP SQL Injection Vulnerability
  • Grape Web Statistics 0.2a Functions.PHP Remote File Include Vulnerability
  • TLM CMS 3.1 Goodies.PHP SQL Injection Vulnerability
  • TLM CMS 3.1 A-B-Membres.PHP SQL Injection Vulnerability
  • Omnistar OSI Affiliate Login.PHP Cross-Site Scripting Vulnerability [CVE-2008-1850]
  • Amfphp 1.2 MethodTable.PHP Cross-Site Scripting Vulnerability
  • Amfphp 1.2 Details.PHP Cross-Site Scripting Vulnerability
  • Amfphp 1.2 Code.PHP CLASS/LOCATION Parameters Cross-Site Scripting Vulnerability
  • Amfphp 1.2 Code.PHP CLASS Parameter Cross-Site Scripting Vulnerability
  • BosDev BosNews 4.0 News.PHP SQL Injection Vulnerability
  • DevWorx BlogWorx 1.0 View.ASP SQL Injection Vulnerability
  • BosClassifieds 3.0 Index.PHP SQL Injection Vulnerability [CVE-2008-1838]
  • Cezanne Software 7.0 CFLookup.ASP SQL Injection Vulnerability
  • Cezanne Software 7.0 CznCustomContainer.ASP SQL Injection Vulnerability
  • Cezanne Software 7.0 CFLogon.ASP Cross-Site Scripting Vulnerability
  • Cezanne Software 7.0 CFLookUP.ASP Cross-Site Scripting Vulnerability
  • Cezanne Software 7.0 CznCustomContainer.ASP Cross-Site Scripting Vulnerability
  • Cezanne Software 7.0 Home.ASP Cross-Site Scripting Vulnerability
  • MyBoard 1.0.12 Rep.PHP Cross-Site Scripting Vulnerability
  • e107 123 FlashChat Module 123flashchat.PHP Remote File Include Vulnerability
  • Classifieds Caffe CAT_ID Parameter SQL Injection Vulnerability
  • Blogator-script 0.95 Bs_Auth.PHP Cross Site Scripting Vulnerability [CVE-2008-1892]
  • XplodPHP AutoTutorials 2.1 ID Parameter SQL Injection Vulnerability [CVE-2008-1889]
  • Carbon Communities 2.4 Events.ASP SQL Injection Vulnerability [CVE-2008-1895]
  • Carbon Communities 2.4 Member_Send.ASP Cross-Site Scripting Vulnerability [CVE-2008-1896]
  • Carbon Communities 2.4 Login.ASP Cross-Site Scripting Vulnerability [CVE-2008-1896]
  • Carbon Communities 2.4 Getpassword.ASP SQL Injection Vulnerability [CVE-2008-1895]
  • SmallBiz 4 Seasons Content.PHP SQL Injection Vulnerability
  • LASERnet CMS 1.5 NEW Parameter SQL Injection Vulnerability [CVE-2008-1913]
  • eShop CMS Index.PHP SQL Injection Vulnerability
  • Istant-Replay Read.PHP Remote File Include Vulnerability
  • CoBaLT 2.0 Adminler.ASP SQL Injection Vulnerability
  • EsContacts 1.0 Login.PHP Cross-Site Scripting Vulnerability
  • EsContacts 1.0 Search.PHP Cross-Site Scripting Vulnerability
  • EsContacts 1.0 Groupes.PHP Cross-Site Scripting Vulnerability
  • EsContacts 1.0 Contacts.PHP Cross-Site Scripting Vulnerability
  • EsContacts 1.0 Add_Groupe.PHP Cross-Site Scripting Vulnerability
  • EsContacts 1.0 Importer.PHP Cross-Site Scripting Vulnerability
  • Php-Stats 0.1.9.1 Admin.PHP SEL_MESE Parameter Cross-Site Scripting Vulnerability
  • Php-Stats 0.1.9.1 Admin.PHP SEL_ANNO Parameter Cross-Site Scripting Vulnerability
  • Joomla! and Mambo eXtplorer Component 2.0 DIR Parameter Directory Traversal Vulnerability
  • PHPKB 2.0 Comment.PHP SQL Injection Vulnerability
  • Mumbo Jumbo Media OP4 ID Parameter SQL Injection Vulnerability
  • NewsOffice 1.1 News_Show.PHP Remote File Include Vulnerability
  • Joomla! and Mambo joomlaXplorer Component 1.6.2 Directory Traversal Vulnerability [CVE-2008-1849]
  • Joomla! and Mambo joomlaXplorer Component 1.6.2 Cross-Site Scripting Vulnerability [CVE-2008-1848]
  • osCommerce Poll Booth Add-On 2.0 Pollbooth.PHP SQL Injection Vulnerability
  • Pligg 9.9.0 Editlink.PHP SQL Injection Vulnerability [CVE-2008-1774]
  • MyBulletinBoard Custom Pages Module 1.0 PAGES Parameter SQL Injection Vulnerability
  • Koobi Pro 6.25 Index.PHP AREA/GALID Parameters SQL Injection Vulnerability
  • Koobi Pro 6.25 Index.PHP P/GALID Parameters SQL Injection Vulnerability
  • Koobi Pro 5.7 CATEG Parameter SQL Injection Vulnerability [CVE-2008-1122]
  • 724CMS 4.01 SQL Injection Vulnerability
  • iScripts SocialWare Events.PHP SQL Injection Vulnerability
  • My Gaming Ladder 7.5 SQL Injection Vulnerability [CVE-2008-1791]
  • Dragoon 0.1 Header.Inc.PHP Remote File Include Vulnerability [CVE-2008-1773]
  • Oxygen Bulletin Board 1.1.3 Member.PHP SQL Injection Vulnerability
  • URLStreet 1.0 Seeurl.PHP LANGUAGE Parameter Cross-Site Scripting Vulnerability
  • URLStreet 1.0 Seeurl.PHP FILTER Parameter Cross-Site Scripting Vulnerability
  • URLStreet 1.0 Seeurl.PHP ORDER Parameter Cross-Site Scripting Vulnerability
  • Pixel Motion Blog SQL Injection Vulnerability
  • Mole 2.1 Viewsource.PHP DIRN/FNAME Parameters Local File Include Vulnerability
  • Links Directory 1.1 Links.PHP SQL Injection Vulnerability
  • Site Sift Listings SQL Injection Vulnerability
  • Prozilla Gaming Directory 1.0 SQL Injection Vulnerability [CVE-2008-1788]
  • Prozilla Forum SQL Injection Vulnerability [CVE-2008-1789]
  • Prozilla Cheats 2.0 SQL Injection Vulnerability
  • Prozilla Software Index 1.1 SQL Injection Vulnerability
  • Dragoon 0.1 Calendrier.PHP Local File Include Vulnerability [CVE-2008-1798]
  • PIGMy-SQL 1.4.1 Getdata.PHP SQL Injection Vulnerability
  • Blogator-script 0.95 Sond_Result.PHP SQL Injection Vulnerability
  • Web Server Creator 0.1 Createdb.PHP Remote File Include Vulnerability
  • Tiny Portal 1.0 SHOUTS Cross-Site Scripting Vulnerability
  • Blogator-script 0.95 Struct_Admin.PHP Remote File Include Vulnerability [CVE-2008-1760]
  • Blogator-script 0.95 Struct_Admin_Blog.PHP Remote File Include Vulnerability [CVE-2008-1760]
  • Blogator-script 0.95 Struct_Main.PHP Remote File Include Vulnerability [CVE-2008-1760]
  • Terong PHP Photo Gallery 1.0 Index.PHP SQL Injection Vulnerability
  • sabros.us 1.75 Thumbnails.PHP Local File Include Vulnerability
  • CUPS 1.3.5 Multiple Buffer Overflow Vulnerability [CVE-2008-0053]
  • Software Zone View_Product.PHP SQL Injection Vulnerability
  • MyKnowledgeQuest KnowledgeQuest 2.6 Articletext.PHP SQL Injection Vulnerability [CVE-2008-1726]
  • MyKnowledgeQuest KnowledgeQuest 2.6 Articletextonly.PHP SQL Injection Vulnerability [CVE-2008-1726]
  • Koobi 5.4 Index.PHP IMG_ID Parameter SQL Injection Vulnerability
  • SuperNET Shop 1.0 Guncelle.ASP SQL Injection Vulnerability
  • SuperNET Shop 1.0 Giris.ASP SQL Injection Vulnerability
  • phpBB Fishing Cat Portal Addon Functions_Portal.PHP Remote File Include Vulnerability
  • Prediction Football 1.11 Showpredictionsformatch.PHP SQL Injection Vulnerability [CVE-2008-1732]
  • Microsoft Visio 2007 Object Header Remote Code Execution Vulnerability [CVE-2008-1089]
  • ProZilla Freelancers Project.PHP SQL Injection Vulnerability
  • Sun Java System Messenger Express 6.1-13-15 SID Cross-Site Scripting Vulnerability
  • Comdev News Publisher Index.PHP SQL Injection Vulnerability
  • Xpose PRO 3.05 Mail.HTML SQL Injection Vulnerability
  • RobotStats 0.1 Robotstats.Inc.PHP Remote File Include Vulnerability
  • RobotStats 0.1 Graph.PHP Remote File Include Vulnerability
  • KwsPHP 1.0 ConcoursPhoto Module \’VIEW\’ Parameter Cross-Site Scripting Vulnerability
  • Glossaire 2.0 Glossaire.PHP Cross-Site Scripting Vulnerability
  • ExBB 0.22 Threadstop.PHP Local File Include Vulnerability
  • Poplar Gedcom Viewer 2.0 Index.PHP TEXT Parameter Cross-Site Scripting Vulnerabilit
  • Poplar Gedcom Viewer 2.0 Index.PHP UL Parameter Cross-Site Scripting Vulnerabilit
  • Blackboard Academic Suite 7.3 VIEWCATALOG Cross-Site Scripting Vulnerability
  • KwsPHP 1.3.456 Archives Module ID Parameter SQL Injection Vulnerability
  • KwsPHP 1.3.456 Galerie Module ID_GAL Parameter SQL Injection Vulnerability
  • PhpBlock A8.4 Basicfogfactory.Class.PHP Remote File Include Vulnerability
  • mcGallery 1.1 Show.PHP Cross Site Scripting Vulnerability
  • mcGallery 1.1 Admin.PHP Cross Site Scripting Vulnerability
  • mcGallery 1.1 Resize.PHP Cross Site Scripting Vulnerability
  • mcGallery 1.1 Detail.PHP Cross Site Scripting Vulnerability
  • mcGallery 1.1 Stats.PHP Cross Site Scripting Vulnerability
  • mcGallery 1.1 Sess.PHP Cross Site Scripting Vulnerability
  • mcGallery 1.1 Index.PHP Cross Site Scripting Vulnerability
  • Joomla! and Mambo Joomlearn LMS Component CAT Parameter SQL Injection Vulnerability
  • Online FlashQuiz 1.0.2 Joomla! Component Db_Config.Inc.PHP Remote File Include Vulnerability [CVE-2008-1682]
  • DivXDB 2002 0.94b Index.PHP _PAGE_/CHOICE Parameter Cross-Site Scripting Vulnerability
  • DivXDB 2002 0.94b Index.PHP CHOICE Parameter Cross-Site Scripting Vulnerability
  • DivXDB 2002 0.94b Index.PHP IMPORT Parameter Cross-Site Scripting Vulnerability
  • DivXDB 2002 0.94b Index.PHP GENERAL_SEARCH Parameter Cross-Site Scripting Vulnerability
  • DivXDB 2002 0.94b Index.PHP OBJECT Parameter Cross-Site Scripting Vulnerability
  • DivXDB 2002 0.94b Index.PHP ZONE_ADMIN Parameter Cross-Site Scripting Vulnerability
  • DivXDB 2002 0.94b Index.PHP _PAGE_ Parameter Cross-Site Scripting Vulnerability
  • DivXDB 2002 0.94b Index.PHP CHOICE/_PAGE_ Parameter Cross-Site Scripting Vulnerability
  • DaZPHP 0.1 Makepost.PHP Local File Include Vulnerability [CVE-2008-1696]
  • LANDesk Management Suite 8.80.1.1 PXE TFTP Service Directory Traversal Vulnerability
  • EasySite 2.0 Browser.PHP Remote File Include Vulnerability [CVE-2008-1651]
  • EasySite 2.0 Skin_Chooser.PHP Remote File Include Vulnerability [CVE-2008-1651]
  • EasySite 2.0 Image_Editor.PHP Remote File Include Vulnerability [CVE-2008-1651]
  • Joomla! and Mambo actualite 1.0 Component ID Parameter SQL Injection Vulnerability
  • bamaGalerie 3.03 Viewcat.PHP SQL Injection Vulnerability [CVE-2008-1349]
  • Joomla! and Mambo Ahsshop Component 1.51 VARA Parameter SQL Injection Vulnerability
  • FaScript Faphoto 1.0 Show.PHP SQL Injection Vulnerability
  • EasyNews 4.0 Login.PHP Local File Include Vulnerability [CVE-2008-1651]
  • EasyNews 4.0 Index.PHP SQL Injection Vulnerability [CVE-2008-1650]
  • EasyNews 4.0 Index.PHP Cross-Site Scripting Vulnerability [CVE-2008-1649]
  • Neat weblog 0.2 ARTICLEID Parameter SQL Injection Vulnerability [CVE-2008-1639]
  • JGS-Treffen 2.0.2 Jgs_Treffen.PHP SQL Injection Vulnerability [CVE-2008-1640]
  • EfesTECH Video 5.0 CATID Parameter SQL Injection Vulnerability [CVE-2008-1641]
  • PHP Spam Manager 0.53 Body.PHP Local File Include Vulnerability [CVE-2008-1645]
  • PhpGKit 0.9 Connexion.PHP Remote File Include Vulnerability
  • Nuked-Klan 1.3 NUKED_NUDE Parameter Cross-Site Scripting Vulnerability
  • 2X ThinClientServer 5.0 TFTP service Directory Traversal Vulnerability
  • Jax Guestbook 3.31 Jax_Guestbook.PHP Cross-Site Scripting Vulnerability
  • @lex Poll Setup.PHP Cross-Site Scripting Vulnerability
  • Jack (tR) Jax LinkLists 1.00 Jax_Linklists.PHP Cross-Site Scripting Vulnerability
  • @lex Guestbook 4.0.5 Setup.PHP Cross-Site Scripting Vulnerability
  • @lex Guestbook 4.0.5 Index.PHP Cross-Site Scripting Vulnerability
  • WordPress Wp-Download Plugin 1.2 DL_ID Parameter SQL Injection Vulnerability [CVE-2008-1646]
  • mx_blogs 2.0.0 Weblogs Module for mxBB MX_ROOT_PATH Parameter Remote File Include Vulnerability
  • KISGB 5.1.1 View_Private.PHP Local File Include Vulnerability [CVE-2008-1635]
  • JV2 Folder Gallery 3.1 Index.PHP Cross-Site Scripting Vulnerability [CVE-2008-1634]
  • Smoothflash Admin_View_Image.PHP SQL Injection Vulnerability [CVE-2008-1623]
  • CuteFlow Bin 1.5 Showcirculation.PHP Cross Site Scripting Vulnerability [CVE-2008-1630]
  • CuteFlow Bin 1.5 Showtemplates.PHP Cross Site Scripting Vulnerability [CVE-2008-1630]
  • CuteFlow Bin 1.5 Editmailinglist_Step1.PHP Cross Site Scripting Vulnerability [CVE-2008-1630]
  • CuteFlow Bin 1.5 Showuser.PHP Cross Site Scripting Vulnerability [CVE-2008-1630]
  • CuteFlow Bin 1.5 Showfields.PHP Cross Site Scripting Vulnerability [CVE-2008-1630]
  • CuteFlow Bin 1.5 Edittemplate_Step2.PHP Cross Site Scripting Vulnerability [CVE-2008-1630]
  • Simple Machines Forum 1.1.4 Subs-Graphics.PHP Remote File Include Vulnerability
  • Simple Machines Forum 1.1.4 Themes.PHP Remote File Include Vulnerability
  • Joomla! and Mambo MyAlbum Component 1.0 ALBUM Parameter SQL Injection Vulnerability
  • GeeCarts Search.PHP Remote File Include Vulnerability [CVE-2008-1622]
  • GeeCarts View.PHP Remote File Include Vulnerability [CVE-2008-1622]
  • GeeCarts Show.PHP Remote File Include Vulnerability [CVE-2008-1622]
  • GeeCarts View.PHP Cross-Site Scripting Vulnerability [CVE-2008-1621]
  • GeeCarts Search.PHP Cross-Site Scripting Vulnerability [CVE-2008-1621]
  • GeeCarts Show.PHP Cross-Site Scripting Vulnerability [CVE-2008-1621]
  • DigiDomain 2.2 Suggest_Result.ASP Cross-Site Scripting Vulnerability [CVE-2008-1560]
  • DigiDomain 2.2 Lookup_Result.ASP Cross-Site Scripting Vulnerability [CVE-2008-1560]
  • JAF CMS 4.0.0 Forum.PHP WEBSITE Parameter Remote File Include Vulnerability [CVE-2008-1609]
  • JAF CMS 4.0.0 Main.PHP MAIN_DIR Parameter Remote File Include Vulnerability [CVE-2008-1609]
  • JAF CMS 4.0.0 Main.PHP WEBSITE Parameter Remote File Include Vulnerability [CVE-2008-1609]
  • JAF CMS 4.0.0 Headlines.PHP MAIN_DIR Parameter Remote File Include Vulnerability [CVE-2008-1609]
  • JAF CMS 4.0.0 Headlines.PHP WEBSITE Parameter Remote File Include Vulnerability [CVE-2008-1609]
  • JAF CMS 4.0.0 Forum.PHP MAIN_DIR Parameter Remote File Include Vulnerability [CVE-2008-1609]
  • RSA WebID 5.3 IISWebAgentIF.DLL Cross-Site Scripting Vulnerability [CVE-2008-1470]
  • BolinOS 4.6.1 GBImageViewer.PHP Cross-Site Scripting Vulnerability [CVE-2008-1556]
  • BolinOS 4.6.1 Index.PHP Cross-Site Scripting Vulnerability [CVE-2008-1556]
  • BolinOS 4.6.1 GBLoginPage.PHP Cross-Site Scripting Vulnerability [CVE-2008-1556]
  • BolinOS 4.6.1 GBPassword.PHP Cross-Site Scripting Vulnerability [CVE-2008-1556]
  • BolinOS 4.6.1 GBLoginPage.PHP Cross-Site Scripting Vulnerability [CVE-2008-1556]
  • BolinOS 4.6.1 GBselectorContents.PHP Cross-Site Scripting Vulnerability [CVE-2008-1556]
  • BolinOS 4.6.1 Gbincluder.PHP Local File Include Vulnerability [CVE-2008-1555]
  • phpBB PJIRC Module 0.5 Irc.PHP Local File Include Vulnerability [CVE-2008-1565]
  • File Transfer 1.2e Request File Directory Traversal Vulnerability [CVE-2008-1564]
  • TopperMod 1.0 Mod.PHP Local File Include Vulnerability [CVE-2008-1553]
  • Blackboard Academic Suite 7.3 VIEWCATALOG Cross-Site Scripting Vulnerability
  • Blackboard Academic Suite 7.3 Announcement.PL Cross-Site Scripting Vulnerability
  • phpBB eXtreme Styles Module 2.3.1 Admin_Xs.PHP Local File Include Vulnerability [CVE-2008-1512]
  • Bomba Haber 2.0 Haberoku.PHP SQL Injection Vulnerability [CVE-2008-1607]
  • Aeries Browser Interface 3.8.1 Login.ASP Cross-Site Scripting Vulnerability [CVE-2008-1548]
  • Aeries Browser Interface 3.8.1 Loginproc.ASP Cross-Site Scripting Vulnerability [CVE-2008-1548]
  • Aeries Browser Interface 3.8.1 GradebookOptions.ASP SQL Injection Vulnerability [CVE-2008-1549]
  • Aeries Browser Interface 3.8.1 Loginproc.ASP SQL Injection Vulnerability [CVE-2008-1549]
  • Clever Copy 3.0 Postview.PHP SQL Injection Vulnerability [CVE-2008-0363]
  • Joomla! and Mambo Alphacontent Component 2.5.8 ID Parameter SQL Injection Vulnerability [CVE-2008-1559]
  • PowerPHPBoard 1.00b Header.Inc.PHP Local File Include Vulnerability [CVE-2008-1534]
  • PowerPHPBoard 1.00b Footer.Inc.PHP Local File Include Vulnerability [CVE-2008-1534]
  • Ruby 1.9 WEBrick Remote Directory Traversal Vulnerability [CVE-2008-1145]
  • PowerBook 1.21 PAGE Parameter Remote File Include Vulnerability [CVE-2008-1537]
  • Quick Classifieds 1.0 Index.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 Default.Scheme.Inc Remote File Include Vulnerability
  • Quick Classifieds 1.0 UsersHead.Inc Remote File Include Vulnerability
  • Quick Classifieds 1.0 AdminHead.Inc Remote File Include Vulnerability
  • Quick Classifieds 1.0 Sendit2.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 Sendit.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 SetUp.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 Mailadmin.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 Controlpannel/Index.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 CreateT.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 CreateS.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 CreateP.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 CreateNews.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 CreateM.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 CreateL.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 CreateHomepage.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 CreateFeatured.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 Createdb.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 Color_Help.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 AlterTheme.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 AlterNews.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 AlterHomepage.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 AlterFeatured.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 AlterCats.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 Verify.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 UserSet.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 Update.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 Sign-Up.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 Remember.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 Pass.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 Manager.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 Controlcenter/Index.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 View.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 Classifieds/Index.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 Search_Results.PHP3 Remote File Include Vulnerability
  • Quick Classifieds 1.0 Locate.PHP3 Remote File Include Vulnerability
  • Efestech E-Kontor ID Parameter SQL Injection Vulnerability
  • CuteFlow Bin 1.5 Login.PHP Local File Include Vulnerability [CVE-2008-1493]
  • Alkacon OpenCms 7.0.3 Users_List.JSP LISTSEARCHFILTER Parameter Cross-Site Scripting Vulnerability [CVE-2008-1510]
  • Alkacon OpenCms 7.0.3 Users_List.JSP SEARCHFILTER Parameter Cross-Site Scripting Vulnerability [CVE-2008-1510]
  • HIS WebShop 2.50 His-Webshop.PL Directory Traversal Vulnerability [CVE-2008-1541]
  • Le Forum Fora-Acc.PHP3 Remote File Include Vulnerability
  • Joomla! and Mambo Cinema Component 1.0 ID Parameter SQL Injection Vulnerability
  • Joomla! and Mambo Rekry Component 1.0 OP_ID Parameter SQL Injection Vulnerability [CVE-2008-1535]
  • Joomla! and Mambo Download3000 Component 1.0 ID Parameter SQL Injection Vulnerability
  • PHP-Nuke Platinum 7.6.b.5 Dynamic_Titles.PHP SQL Injection Vulnerability [CVE-2008-1539]
  • ooComments 1.0 Class_Comments.PHP Remote File Include Vulnerability [CVE-2008-1511]
  • ooComments 1.0 Class_Admin.PHP Remote File Include Vulnerability [CVE-2008-1511]
  • phpMyChat 0.14.5 Setup.PHP3 Cross-Site Scripting Vulnerability [CVE-2008-1504]
  • cPanel 11.21 Manpage.HTML Cross-Site Scripting Vulnerability [CVE-2008-1499]
  • TinyPortal 1.0.3 Index.PHP Cross-Site Scripting Vulnerability [CVE-2008-1500]
  • D.E. Classifieds ShowCat.PHP SQL Injection Vulnerability
  • Elastic Path 4.1.1 GetImportFileRedirect.JSP Directory Traversal Vulnerability
  • RunCMS SECTIONS Module ARTID Parameter SQL Injection Vulnerability [CVE-2008-1462]
  • RunCMS PHOTO Module 3.02 CID Parameter SQL Injection Vulnerability [CVE-2008-1551]
  • Joomla! and Mambo Datsogallery 1.3.1 Component ID Parameter SQL Injection Vulnerability [CVE-2008-1540]
  • Apple Mac OS X 10.4.11 CoreServices .IEF Files Security Policy Violation Weakness [CVE-2008-0052]
  • Easy-Clanpage 2.2 User ID Parameter SQL Injection Vulnerability [CVE-2008-1494]
  • KAPhotoservice Album.ASP SQL Injection Vulnerability [CVE-2008-1426]
  • PEEL 2.7 Membre.PHP SQL Injection Vulnerability [CVE-2008-1496]
  • PEEL 2.7 Facture_Html.PHP SQL Injection Vulnerability [CVE-2008-1496]
  • PEEL 2.7 Historique_Commandes.PHP SQL Injection Vulnerability [CVE-2008-1496]
  • Iatek PortalApp 4.0 Links.ASP SQL Injection Vulnerability
  • CS-Cart 1.3.2 Index.PHP Cross-Site Scripting Vulnerability [CVE-2008-1458]
  • RunCMS SECTIONS Module ARTID Parameter SQL Injection Vulnerability [CVE-2008-1462]
  • Iatek Knowledge Base Content_By_Cat.ASP SQL Injection Vulnerability
  • w-Agora 4.0 Reorder_Forums.PHP Remote File Include Vulnerability [CVE-2008-1466]
  • w-Agora 4.0 Moderate_Notes.PHP Remote File Include Vulnerability [CVE-2008-1466]
  • w-Agora 4.0 Mail_Users.PHP Remote File Include Vulnerability [CVE-2008-1466]
  • w-Agora 4.0 Edit_Forum.PHP Remote File Include Vulnerability [CVE-2008-1466]
  • w-Agora 4.0 Delete_User.PHP Remote File Include Vulnerability [CVE-2008-1466]
  • w-Agora 4.0 Delete_Notes.PHP Remote File Include Vulnerability [CVE-2008-1466]
  • w-Agora 4.0 Create_User.PHP Remote File Include Vulnerability [CVE-2008-1466]
  • w-Agora 4.0 Create_Forum.PHP Remote File Include Vulnerability [CVE-2008-1466]
  • w-Agora 4.0 Add_User.PHP Remote File Include Vulnerability [CVE-2008-1466]
  • Joomla! and Mambo Datsogallery Component 1.3.1 ID Parameter SQL Injection Vulnerability [CVE-2008-1540]
  • News-Template 0.5 Print.PHP FILE_NAME Parameter Cross Site Scripting Vulnerability
  • News-Template 0.5 Print.PHP IDE Parameter Cross Site Scripting Vulnerability
  • MyBlog 1.6 Member.PHP SQL Injection Vulnerability
  • MyBlog 1.6 Post.PHP ID Parameter SQL Injection Vulnerability
  • MyBlog 1.6 Vote.PHP ID Parameter SQL Injection Vulnerability
  • MyBlog 1.6 Vote.PHP MID Parameter SQL Injection Vulnerability
  • MyBlog 1.6 Games.PHP ID Parameter Remote File Include Vulnerability
  • MyBlog 1.6 Games.PHP SCOREID Parameter Remote File Include Vulnerability
  • Joomla! and Mambo Alberghi Component 2.1.3 ID Parameter SQL Injection Vulnerability [CVE-2008-1459]
  • Joomla! and Mambo Accombo Component 1.4 ID Parameter SQL Injection Vulnerability
  • Joomla! and Mambo Comp Restaurante Component 1.0 ID Parameter SQL Injection Vulnerability [CVE-2008-1465]
  • Joomla! and Mambo joovideo Component 1.2.2 ID Parameter SQL Injection Vulnerability [CVE-2008-1460]
  • Easy-Clanpage 2.2 ID Parameter SQL Injection Vulnerability [CVE-2008-1425]
  • Joomla! and Mambo Acajoom Component 1.1.5 MAILINGID Parameter SQL Injection Vulnerability [CVE-2008-1427]
  • Travelsized CMS 0.4.1 Index.PHP PAGE Parameter Cross-Site Scripting Vulnerability
  • Travelsized CMS 0.4.1 Index.PHP LANGUAGE Parameter Cross-Site Scripting Vulnerability
  • Travelsized CMS 0.4.1 Index.PHP PAGE/LANGUAGE Parameter Cross-Site Scripting Vulnerability
  • Travelsized CMS 0.4.1 Index.PHP PAGE_ID Parameter Cross-Site Scripting Vulnerability
  • Travelsized CMS 0.4.1 Frontpage.PHP Remote File Include Vulnerability
  • Travelsized CMS 0.4.1 Frontpage.PHP Local File Include Vulnerability
  • eForum 0.4 Busca.PHP LINK/BUSCA Parameters Cross Site Scripting Vulnerability [CVE-2008-1477]
  • eForum 0.4 Busca.PHP LINK Parameter Cross Site Scripting Vulnerability [CVE-2008-1477]
  • eForum 0.4 Busca.PHP BUSCA Parameter Cross Site Scripting Vulnerability [CVE-2008-1477]
  • webSPELL 4.1.2 Index.PHP Cross-Site Scripting Vulnerability [CVE-2008-1481]
  • phpstats 0.1_alpha Phpstats.PHP Cross-Site Scripting Vulnerability [CVE-2008-0125]
  • LifeType 1.0.4 Index.PHP SQL Injection Vulnerability [CVE-2006-2857]
  • PHPauction 2.51 Converter.Inc.PHP Remote File Include Vulnerability [CVE-2008-1416]
  • PHPauction 2.51 Messages.Inc.PHP Remote File Include Vulnerability [CVE-2008-1416]
  • PHPauction 2.51 Settings.Inc.PHP Remote File Include Vulnerability [CVE-2008-1416]
  • Exero CMS 1.0.1 Usercp/Index.PHP Local File Include Vulnerability [CVE-2008-1409]
  • Exero CMS 1.0.1 Nopermission.PHP Local File Include Vulnerability [CVE-2008-1409]
  • Exero CMS 1.0.1 Fullview.PHP Local File Include Vulnerability [CVE-2008-1409]
  • Exero CMS 1.0.1 News/Index.PHP Local File Include Vulnerability [CVE-2008-1409]
  • Exero CMS 1.0.1 Profile.PHP Local File Include Vulnerability [CVE-2008-1409]
  • Exero CMS 1.0.1 Memberslist.PHP Local File Include Vulnerability [CVE-2008-1409]
  • Exero CMS 1.0.1 404.PHP Local File Include Vulnerability [CVE-2008-1409]
  • Exero CMS 1.0.1 Custompage.PHP Local File Include Vulnerability [CVE-2008-1409]
  • Exero CMS 1.0.1 Avatar.PHP Local File Include Vulnerability [CVE-2008-1409]
  • Exero CMS 1.0.1 Editpassword.PHP Local File Include Vulnerability [CVE-2008-1409]
  • Cfnetgs 0.24 Index.PHP Cross-Site Scripting Vulnerability [CVE-2008-1479]
  • phpBP RC3 2.204 ID Parameter SQL Injection Vulnerability [CVE-2008-1408]
  • XOOPS Dictionary Module 0.94 Print.PHP SQL Injection Vulnerability [CVE-2008-0847]
  • Joomla! and Mambo COM_GUIDE Component CATEGORY Parameter SQL Injection Vulnerability
  • SNewsCMS 2.4 Search.PHP Cross-Site Scripting Vulnerability [CVE-2008-1413]
  • Multiple Time Sheets TAB Parameter Directory Traversal Vulnerability [CVE-2008-1415]
  • Multiple Time Sheets TAB Parameter Cross-Site Scripting Vulnerability [CVE-2008-1414]
  • beContent 0.3.1 News.PHP SQL Injection Vulnerability [CVE-2008-0921]
  • EasyCalendar 4.0 Calendar_Backend.PHP Cross-Site Scripting Vulnerability [CVE-2008-1345]
  • EasyCalendar 4.0 Calendar_Backend.PHP SQL Injection Vulnerability [CVE-2008-1344]
  • EasyCalendar 4.0 Ajaxp_Backend.PHP SQL Injection Vulnerability [CVE-2008-1344]
  • eXV2 Viso Module 2.03 KID Parameter SQL Injection Vulnerability [CVE-2008-1404]
  • eXV2 MyAnnonces Module 1.8 LID Parameter SQL Injection Vulnerability [CVE-2008-1406]
  • eXV2 CMS WebChat Module 1.60 ROOMID Parameter SQL Injection Vulnerability [CVE-2008-1407]
  • eXV2 eBlog Module 1.200 BLOG_ID Parameter SQL Injection Vulnerability
  • EasyGallery 5.0 Index.PHP PATH_INFO Parameter Cross-Site Scripting Vulnerability [CVE-2008-1347]
  • EasyGallery 5.0 Index.PHP SQL Injection Vulnerability [CVE-2008-1346]
  • EasyGallery 5.0 Index.PHP Q Parameter Cross-Site Scripting Vulnerability [CVE-2008-1347]
  • Virtual Support Office XP 2.0 MyIssuesView.ASP SQL Injection Vulnerability [CVE-2008-1354]
  • Edior CMS 3.0 Search.PHP Directory Traversal Vulnerability [CVE-2008-1352]
  • eWeather Modules.PHP Cross-Site Scripting Vulnerability [CVE-2008-1348]
  • Fully Modded PHPBB2 Kb.PHP SQL Injection Vulnerability [CVE-2008-1350]
  • Acyhost Index.PHP Remote File Include Vulnerability
  • XOOPS MyTutorials Module 2.1 Printpage.PHP SQL Injection Vulnerability [CVE-2008-1351]
  • XOOPS MyTutorials Module 2.1 Printpage.PHP SQL Injection Vulnerability [CVE-2008-1351]
  • bamaGalerie 3.03 Viewcat.PHP SQL Injection Vulnerability [CVE-2008-1349]

This entry was posted in N-Stalker Latest Updates. Bookmark the permalink.