Alerts from SecurityFocus Newsletter #369
APPLICATIONS USING PHP
- Opial AV Download Management Index.PHP Cross-Site Scripting Vulnerability
- Kietu Hit.PHP Directory Traversal Vulnerability
- ToendaCMS Media.PHP Directory Traversal Vulnerability
- SyntaxCMS 0004_Init_Urls.PHP Multiple Remote File Include Vulnerability
- Web-News Template.PHP Remote File Include Vulnerability
- ZoomStats MySQL.PHP Remote File Include Vulnerability
- AVCX MCF.PHP Remote File Include Vulnerability
- My-BIC Mybic_server.PHP Remote File Include Vulnerability
- Exporia Common.PHP Remote File Include Vulnerability
Later analysis found this report to be wrong. - BBSNew Index2.PHP Remote File Include Vulnerability
- DanPHPSupport Multiple Cross-Site Scripting Vulnerabilities
- BrudaNews/GrudaGB Index.PHP Remote File Include Vulnerability
- faceStones Personal Fs_Forms_Links.PHP Remote File Include Vulnerability
- Minerva Admin_Topic_Action_Logging.PHP Remote File Include Vulnerability
- PBLang Lang_NL.PHP Remote File Include Vulnerability
- Polaring General.PHP Remote File Include Vulnerability
- PHPartenaire Dix.PHP3 Remote File Include Vulnerability
- PABugs Class.MySQL.PHP Remote File Include Vulnerability
- PHP Invoice Home.PHP Cross-Site Scripting Vulnerability
- PHPMyChat Index.PHP Connected_Users.Lib.PHP3 Local File Include Vulnerability
- VBulletin Global.PHP SQL Injection Vulnerability
- eyeOS Multiple Unspecified Cross-Site Scripting Vulnerabilities
- CubeCart Multiple Input Validation Vulnerabilities
- BirdBlog Multiple Cross-Site Scripting Vulnerabilities
- MySource Multiple Vulnerabilities
- Phoenix Evolution CMS Multiple Cross-Site Scripting Vulnerabilities
- Typo3 Indexed Search Cross-Site Scripting Vulnerability
- Photostore Multiple Cross-Site Scripting Vulnerabilities
- WWWThreads Cat Parameter Multiple Cross-Site Scripting Vulnerabilities
- Back-End CMS Multiple Remote File Include Vulnerabilities
- EvoBB Path Parameter Multiple Remote File Include Vulnerabilities
RELATED STUFF
- OpenSSH Duplicated Block Remote Denial of Service Vulnerability
Upgrade to version 4.4.
