Alerts from SecurityFocus Newsletter #300
APPLICATIONS USING PHP
- JGS-Portal ID Variable SQL Injection Vulnerability
- PHPMyAdmin Insecure SQL Install Script Permissions Vulnerability
- CodeToSell ViArt Shop Enterprise Multiple Cross-Site Scripting Vulnerability
- OSTicket Multiple Input Validation and Remote Code Injection...
- SitePanel2 Multiple Input Validation Vulnerabilities
- Invision Power Board Act Parameter Cross-Site Scripting Vulnerability
- Invision Power Board Topics.PHP Highlite Parameter Cross-Site Scripting Vulnerability
- Invision Power Board Login.PHP SQL Injection Vulnerability
- Invision Power Board Search.PHP Highlite Parameter Scripting Vulnerability
- PHP Advanced Transfer Manager Arbitrary File Upload Vulnerability
- Interspire ArticleLive Multiple Remote Vulnerabilities
- FishNet FishCart Multiple Cross-Site Scripting and SQL Injection Vulnerability
- MyBloggie Multiple Input Validation Vulnerabilities
- MidiCart PHP Search_List.PHP SearchString Parameter SQL Injection Vulnerability
- MidiCart PHP Item_List.PHP MainGroup Parameter SQL Injection Vulnerability
- MidiCart PHP Item_List.PHP SecondGroup Parameter SQL Injection Vulnerability
- MidiCart PHP Item_Show.PHP Code_No Parameter SQL Injection V...
- MidiCart PHP Search_List.PHP SearchString Parameter Scripting Vulnerability
- MidiCart PHP Item_List.PHP SecondGroup Parameter Cross-Site ...
- MidiCart PHP Item_List.PHP Maingroup Parameter Cross-Site Sc...
- BirdBlog BB Code HTML Injection Vulnerability
- CJ Ultra Plus OUT.PHP SQL Injection Vulnerability
RELATED STUFF
- Firefox and Mozilla Vulnerabilities
A note from Dan: If you are using the Firefox or Mozilla web browsers, make sure you upgrade to the latest versions (FF = 1.0.4, Moz = 1.7.8).
