Alerts from SecurityFocus Newsletter #302
APPLICATIONS USING PHP
- Shop-Script CategoryID SQL Injection Vulnerability
- Shop-Script ProductID SQL Injection Vulnerability
- PostNuke Blocks Module Directory Traversal Vulnerability
- WoltLab Burning Board Verify_email Function SQL Injection Vu...
- NPDS THOLD Parameter SQL Injection Vulnerability
- JGS-Portal Multiple Cross-Site Scripting and SQL Injection V...
- Wordpress WP-Trackback.PHP SQL Injection Vulnerability
- SafeHTML Quotes Handling Security Bypass Vulnerability
- Wordpress Post.PHP Cross-Site Scripting Vulnerability
- Wordpress Edit.PHP Cross-Site Scripting Vulnerability
- Help Center Live Multiple Input Validation Vulnerabilities
- Help Center Live Administrator Command Execution Vulnerability
- S9Y Serendipity Multiple Unspecified Remote Vulnerabilities
- PROMS Multiple Unspecified HTML Injection Vulnerabilities
- PROMS Project Members Unauthorized Access Vulnerability
- Core CMS Unspecified Security Vulnerability
- PHP Advanced Transfer Manager Arbitrary File Include Vulnerability
- EJ3 TOPo Multiple Index.PHP Cross-Site Scripting Vulnerability
- EJ3 TOPo Comments Multiple HTML Injection Vulnerabilities
RELATED STUFF
- MySQL mysql_install_db Insecure Temporary File Creation Vulnerability
MySQL versions prior to 4.0.12 and MySQL 5.x releases 5.0.4 and prior versions are reported to be affected.
