NYCPHP Meetup

NYPHP.org

[nycphp-talk] PHP in SecurityFocus #328

Daniel Convissor danielc at analysisandsolutions.com
Sat Dec 24 13:44:45 EST 2005


These summaries are available online
RSS:  http://phpsec.org/projects/vulnerabilities/securityfocus.xml
HTML: http://phpsec.org/projects/vulnerabilities/securityfocus.html

Alerts from SecurityFocus Newsletter #328

APPLICATIONS USING PHP
----------------------
PHPMyAdmin Import_Blacklist Variable Overwrite Vulnerability
http://www.securityfocus.com/bid/15761
Upgrade to version 2.7-pl1

PHPMyAdmin Multiple Cross-Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/15735
Upgrade to version 2.7

Horde IMP Email Attachments HTML Injection Vulnerability
http://www.securityfocus.com/bid/15730

PHP-Fusion Messages.PHP SQL Injection Vulnerability
http://www.securityfocus.com/bid/15698

PHPYellowTM Multiple SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/15700

Widget Press Widget Property Property.PHP SQL Injection Vulnerability
http://www.securityfocus.com/bid/15701

MediaWiki User Language Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/15703

SAMEDIA Landshop Multiple SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/15709

Web4Future KeyWord Frequency Counter Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/15702

Web4Future eCommerce Enterprise Edition Multiple SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/15707

Web4Future eDating Professional Multiple SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/15715

Web4Future Portal Solutions Comentarii.PHP SQL Injection Vulnerability
http://www.securityfocus.com/bid/15716

Web4Future Affiliate Manager PRO Functions.PHP SQL Injection Vulnerability
http://www.securityfocus.com/bid/15717

Web4Future Portal Solutions Arhiva.PHP Directory Traversal Vulnerability
http://www.securityfocus.com/bid/15718

Quicksilver Forums SQL Injection Vulnerability
http://www.securityfocus.com/bid/15710

Hobosworld HobSR Multiple SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/15713

Relative Real Estate Systems SQL Injection Vulnerability
http://www.securityfocus.com/bid/15714

Blog System Multiple SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/15719

PluggedOut Nexus Search Script Input Validation Vulnerabilities
http://www.securityfocus.com/bid/15724

PluggedOut Blog Index.PHP Multiple SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/15746

PHPForumPro Multiple SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/15736

DoceboLMS Connector.PHP Directory Traversal Vulnerability
http://www.securityfocus.com/bid/15742

DoceboLMS Arbitrary File Upload Vulnerability
http://www.securityfocus.com/bid/15744

Cars Portal Index.PHP Multiple SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/15747

e107 Website System Voting Manipulation Vulnerability
http://www.securityfocus.com/bid/15748

ThWboard Multiple Input Validation Vulnerabilities
http://www.securityfocus.com/bid/15763

SimpleBBS Remote Arbitrary Command Execution Vulnerability
http://www.securityfocus.com/bid/15764

DRZES HMS Login.PHP Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/15766

Website Baker SQL Injection Vulnerability
http://www.securityfocus.com/bid/15776

Contenido CMS Unspecified Remote Command Execution Vulnerability
http://www.securityfocus.com/bid/15790

MilliScripts Register.PHP Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/15792

MyBB Multiple Unspecified Vulnerabilities
http://www.securityfocus.com/bid/15793

Flatnuke Index.PHP Directory Traversal Vulnerability
http://www.securityfocus.com/bid/15796


RELATED STUFF
-------------
Mozilla Firefox Large History File Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/15773






More information about the talk mailing list