Alerts from SecurityFocus Newsletter #370
APPLICATIONS USING PHP
- PHPMyAdmin Multiple Cross-Site Scripting Vulnerabilities
- Travelsized CMS Frontpage.PHP Remote File Include Vulnerability
- phpMyWebmin Multiple Remote File Include Vulnerabilities
- PhpBB XS Multiple Remote File Include Vulnerabilities
- Newswriter Editfunc.inc..PHP Remote File Include Vulnerability
- PowerPortal Register User Cross-Site Scripting Vulnerability
- Mercury SiteScope Unspecified HTML Injection Vulnerability
- Geotarget Script.PHP Remote File Include Vulnerability
- UBB.threads Multiple Input Validation Vulnerabilities
- PHP Krazy Image Host Script Display.PHP SQL Injection Vulnerability
- Zen Cart Multiple Cross-Site Scripting Vulnerabilities
- PHProjekt Include Path Multiple Remote File Include Vulnerabilities
- BSQ Sitestats Joomla Component Multiple Input Validation Vulnerabilities
- PHPMyProfiler Functions.PHP Remote File Include Vulnerability
- Klinza Professional CMS Show_Hlp.PHP Remote File Include Vulnerability
- Drupal IMCE Module Arbitrary File Deletion Vulnerability
- PostNuke Admin.PHP SQL Injection Vulnerability
- Net2FTP Index.PHP Cross-Site Scripting Vulnerability
- HAMweather Template.PHP Script Code Injection Vulnerability
- JAF CMS Forum.PHP Remote File Include Vulnerability
- OpenBiblio Multiple Input Validation Vulnerabilities
- AllMyGuests SignIn.PHP Remote File Include Vulnerability
- Pebble Search Functionality HTML Injection Vulnerability
- BBaCE Functions.PHP Remote File Include Vulnerability
- Digishop Cart.PHP Cross-Site Scripting Vulnerability
- DeluxeBB Sig.PHP Remote File Include Vulnerability
- PHP Web Scripts Easy Banner Functions.PHP Remote File Include Vulnerability
- OlateDownload Multiple Input Validation Vulnerabilities
- Yblog Multiple Cross-Site Scripting Vulnerabilities
- ConPresso CMS Multiple Input Validation Vulnerabilities
- Les Visiteurs Multiple Remote File Include Vulnerabilities
- WheatBlog Multiple HTML Injection Vulnerabilities
- Loudblog Message Comment HTML Injection Vulnerability
- Forum82 Multiple Remote File Include Vulnerabilities
RELATED STUFF
- Portable OpenSSH GSSAPI Remote Code Execution Vulnerability
This issue occurs when OpenSSH and Portable OpenSSH are configured to accept GSSAPI authentication. - OpenSSL Public Key Processing Denial of Service Vulnerability
Upgrade to versions 0.9.8d or 0.9.7l - OpenSSL SSL_Get_Shared_Ciphers Buffer Overflow Vulnerability
Upgrade to versions 0.9.8d or 0.9.7l - OpenSSL ASN.1 Structures Denial of Service Vulnerability
Upgrade to versions 0.9.8d or 0.9.7l - OpenSSL SSLv2 Null Pointer Dereference Client Denial of Service Vulnerability
Upgrade to versions 0.9.8d or 0.9.7l - Mozilla Firefox Unspecified Javascript Remote Code Execution Vulnerability
