Section: .. / 0605-advisories /
| /// File Name: |
passmasterflex.txt |
Description:
|
PassMasterFlex suffers from cross site scripting flaws.
| | Author: | Nomenumbra | | File Size: | 706 | | Last Modified: | May 6 18:16:08 2006 |
| MD5 Checksum: | ac7b2a9c3822f79b12032f9bbe492dcd |
|
| /// File Name: |
pathdisclose.txt |
Description:
|
It appears that a slew of various programs written in PHP suffer from full path disclosure issues.
| | Author: | sirdarckcat | | File Size: | 2683 | | Last Modified: | May 21 23:18:38 2006 |
| MD5 Checksum: | ecb326286f7fed997f692b3d2f90bd7b |
|
| /// File Name: |
PGPcrack.txt |
Description:
|
A vulnerability in PGP Virtual Disks & PGP SDA , PGP 8.x, 9.x and Truecrypt has been discovered. Affected Products include: PGP 8.x, PGP 9.x (possibly earlier versions), Truecrypt 4.2 (and possibly earlier versions), Secure Email Attachments (SEA) V1.0
| | Author: | Adonis | | Homepage: | http://www.safehack.com/Advisory/pgp/PGPcrack.html | | File Size: | 6951 | | Last Modified: | May 29 01:28:08 2006 |
| MD5 Checksum: | 23c910fde91632b186e879e7645e1287 |
|
| /// File Name: |
PhotoalbumBWv1.3.txt |
Description:
|
Photoalbum B&W v1.3 suffers from XSS
| | Author: | black-cod3 | | File Size: | 534 | | Last Modified: | May 29 19:51:42 2006 |
| MD5 Checksum: | 71a8ace35c638030bf7bcaf1b9779196 |
|
| /// File Name: |
phpapachespi.txt |
Description:
|
A vulnerability exists in the PHP Apache SPI POST parsing code.
| | Author: | Mr Babs | | File Size: | 2062 | | Last Modified: | May 21 23:16:36 2006 |
| MD5 Checksum: | 6bc0ba0019ed5bfc7f5338985d8a380a |
|
| /// File Name: |
phpBB2.x-admin.txt |
Description:
|
phpBB 2.x suffers from a remote file inclusion vulnerability in admin/admin_hacks_list.php.
| | Homepage: | http://www.nukedx.com | | File Size: | 1802 | | Last Modified: | May 29 19:10:01 2006 |
| MD5 Checksum: | c79f6daf26c14b8a6d951366ab3fa88e |
|
| /// File Name: |
phpBB2.x-AMod.txt |
Description:
|
the Activity MOD Plus for phpBB 2.x suffers from a remote file inclusion vulnerability.
| | Homepage: | http://www.nukedx.com | | File Size: | 1974 | | Last Modified: | May 29 19:12:54 2006 |
| MD5 Checksum: | a90c8761bce772c0f723124d6fcb069d |
|
| /// File Name: |
phpbb2020multi.txt |
Description:
|
PHPBB 2.0.20 suffers from multiple security related issues having to do with avatars.
| | Author: | rgod | | Homepage: | http://retrogod.altervista.org/ | | File Size: | 2374 | | Last Modified: | May 21 18:37:41 2006 |
| MD5 Checksum: | 74e439e3f0c5bc174924656114fdc928 |
|
| /// File Name: |
PHPcafe.net.txt |
Description:
|
PHPcafe.net Tutorial Manager v1.0 Beta 2 suffers from SQL injection.
| | Author: | black-cod3 | | File Size: | 390 | | Last Modified: | May 29 03:59:03 2006 |
| MD5 Checksum: | cc262afa61fa1e3742e2f271f8ee816e |
|
| /// File Name: |
phpjobboard.txt |
Description:
|
phpjobboard allows anyone to edit or add a new job by bypassing the administration login.
| | Author: | alp_eren | | File Size: | 447 | | Last Modified: | May 29 03:20:43 2006 |
| MD5 Checksum: | 06823dd39e7f67da8ffca3beeb1cb56a |
|
| /// File Name: |
phpListPro-21.txt |
Description:
|
phpListPro versions less than or equal to 2.01 suffer from a remote file inclusion vulnerability.
| | Author: | Aesthetico | | Homepage: | http://www.majorsecurity.de | | File Size: | 1145 | | Last Modified: | May 17 02:48:05 2006 |
| MD5 Checksum: | b0a8a127c25e827ac1a9c65acaaa511f |
|
| /// File Name: |
PHPResidence-0.6.txt |
Description:
|
PHPResidence versions less than or equal to 0.6 does not sanitize any of its input leading to many XSS vulnerabilities.
| | Author: | Nomenumbra | | File Size: | 306 | | Last Modified: | May 29 03:00:37 2006 |
| MD5 Checksum: | 78a434578af33fb00d63d81c37ecf780 |
|
| /// File Name: |
PHPSimpleChoosev0.3.txt |
Description:
|
PHPSimple Choose v0.3 suffers from XSS and html injection vulnerabilities.
| | Author: | luny | | File Size: | 682 | | Last Modified: | May 29 03:11:35 2006 |
| MD5 Checksum: | 1e703bbcdf9a544e853e0f37d9289f06 |
|
| /// File Name: |
phpWebSite0.8.3.txt |
Description:
|
phpWebSite 0.8.3 suffers from SQL injection.
| | Author: | help-users | | File Size: | 357 | | Last Modified: | May 26 19:10:55 2006 |
| MD5 Checksum: | 8d54626b99af210ceda7db61dbf218ad |
|
| /// File Name: |
planetstat.txt |
Description:
|
plaNetStat is susceptible to an administrative bypass flaw.
| | Author: | alp_eren | | Homepage: | http://www.ayyildiz.org | | File Size: | 435 | | Last Modified: | May 21 13:43:41 2006 |
| MD5 Checksum: | ae7190d14ed63c7ac11376ba924983af |
|
| /// File Name: |
PlumeCMS.txt |
Description:
|
Plume CMS suffers from a remote file inclusion vulnerability.
| | Author: | beford | | File Size: | 335 | | Last Modified: | May 29 03:51:08 2006 |
| MD5 Checksum: | 9861bbe9624a2a3f262b97cd1296c902 |
|
| /// File Name: |
PostgreSQL-8.1.4.txt |
Description:
|
An attacker able to submit crafted strings to an application that will embed those strings in SQL commands can use invalidly-encoded multibyte characters to bypass standard string-escaping methods, resulting in possible injection of hostile SQL commands into the database. The attacks covered here work in any multibyte encoding. Affected versions: PostgreSQL 8.1.0-8.1.3, 8.0.0-8.0.7, 7.4.0-7.4.12, 7.3.0-7.3.14
| | Homepage: | http://www.postgresql.org/ | | File Size: | 3613 | | Last Modified: | May 26 18:38:13 2006 |
| MD5 Checksum: | 47bf71400d49c724eafa4d2916a4855d |
|
| /// File Name: |
PrettyGuestbookv1.txt |
Description:
|
Pretty Guestbook v1 suffers from XSS in view.php
| | Author: | luny | | File Size: | 502 | | Last Modified: | May 29 03:37:49 2006 |
| MD5 Checksum: | e8348862048f94f4e06f67345494ed7b |
|
| /// File Name: |
Publicistv0.95.txt |
Description:
|
Publicist v0.95 suffers from full path disclosure, XSS, and SQL injection vulnerabilities.
| | Author: | luny | | File Size: | 2157 | | Last Modified: | May 26 18:15:39 2006 |
| MD5 Checksum: | d4b63e99177e88a7fec0a3ac0d580f67 |
|
| /// File Name: |
QBv14.txt |
Description:
|
QBv14 suffers from many XSS vulnerabilities.
| | Author: | zerogue | | File Size: | 169 | | Last Modified: | May 26 18:06:55 2006 |
| MD5 Checksum: | 5b52bd7753c62a7545fb5a83932162fe |
|
| /// File Name: |
qjForum.txt |
Description:
|
qjForum suffers from a SQL injection vulnerability in member.asp
| | Author: | ajannhwt | | File Size: | 365 | | Last Modified: | May 29 03:21:24 2006 |
| MD5 Checksum: | 6cf6709eea7139cb662717391af70866 |
|
| /// File Name: |
quagga-broadcast.txt |
Description:
|
Quagga RIPD suffers from an unauthenticated route table broadcast issue. Verified on Quagga Suites 0.98.5 and 0.99.3.
| | Author: | Konstantin V. Gavrilenko | | Homepage: | http://www.arhont.com/ | | File Size: | 3058 | | Last Modified: | May 6 16:30:43 2006 |
| MD5 Checksum: | 7456ddf0728d922ab42ef51972b619fb |
|
| /// File Name: |
quagga-inject.txt |
Description:
|
Quagga RIPD suffers from an unauthenticated route injection issue. Verified on Quagga Suites 0.98.5 and 0.99.3.
| | Author: | Konstantin V. Gavrilenko | | Homepage: | http://www.arhont.com/ | | File Size: | 2397 | | Last Modified: | May 6 16:31:22 2006 |
| MD5 Checksum: | 968bcb8b8c26e44b05a7f20fce8bbcd3 |
|
| /// File Name: |
quake3-vuln.txt |
Description:
|
Two independent vulnerabilities (client and server side) have been discovered in the Quake3 engine and many derived games.
| | Author: | Thilo Schulz | | File Size: | 5229 | | Last Modified: | May 17 18:10:33 2006 |
| MD5 Checksum: | 9989c487ac7d58a57212b391c9cfa6c2 |
|
|
|
|
|