NYCPHP Meetup

NYPHP.org

[nycphp-talk] PHP in SecurityFocus #335

Daniel Convissor danielc at analysisandsolutions.com
Sun Mar 26 19:27:09 EST 2006


These summaries are available online
RSS:  http://phpsec.org/projects/vulnerabilities/securityfocus.xml
HTML: http://phpsec.org/projects/vulnerabilities/securityfocus.html

Alerts from SecurityFocus Newsletter #335

APPLICATIONS USING PHP
----------------------
Ashwebstudio Ashnews Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/16426

Nuked-klaN Index.PHP Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/16424

CRE Loaded Files.PHP Access Validation Vulnerability
http://www.securityfocus.com/bid/16415

sPaiz-Nuke Modules.PHP Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/16412

Invision Power Board Portal Plugin Index.PHP SQL Injection Vulnerability
http://www.securityfocus.com/bid/16447

Calendarix Multiple SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/16456

SZUserMgnt Username Parameter SQL Injection Vulnerability
http://www.securityfocus.com/bid/16454

FarsiNews Loginout.PHP Remote File Include Vulnerability
http://www.securityfocus.com/bid/16440

EasyCMS Multiple Cross-Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/16430

phpBB Rlink Module Rlink.PHP Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/16448

PunctWeb MyCO Name Field HTML Injection Vulnerability
http://www.securityfocus.com/bid/16444

MyBB Index.PHP Referrer Cookie SQL Injection Vulnerability
http://www.securityfocus.com/bid/16443

Cerberus Helpdesk Clients.PHP Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/16439

AshWebStudio AshNews Remote File Include Vulnerability
http://www.securityfocus.com/bid/16436

BrowserCRM Results.PHP Cross-Site Scripting Vulnerability
http://www.securityfocus.com/bid/16435

PmWiki Multiple Input Validation Vulnerabilities
http://www.securityfocus.com/bid/16421

Phpclanwebsite Multiple Input Validation Vulnerabilities
http://www.securityfocus.com/bid/16391

Phpclanwebsite Multiple Input Validation Vulnerabilities
http://www.securityfocus.com/bid/16391

AZ Bulletin Board Post.PHP HTML Injection Vulnerabilities
http://www.securityfocus.com/bid/16351


RELATED STUFF
-------------
OpenSSH SCP Shell Command Execution Vulnerability
http://www.securityfocus.com/bid/16369
Changes to version 4.3 resolve this issue.

Mozilla Firefox XBL -MOZ-BINDING Property Cross-Domain Scripting Vulnerability
http://www.securityfocus.com/bid/16427

Adobe Multiple Unspecified Local Privilege Escalation Vulnerabilities
http://www.securityfocus.com/bid/16451






More information about the talk mailing list