SECUNIA ADVISORY ID: SA24887
VERIFY ADVISORY: http://secunia.com/advisories/24887/
CRITICAL: Moderately critical
IMPACT: Cross Site Scripting, Manipulation of data, Exposure of sensitive information
WHERE: >From remote
SOFTWARE: vWar 1.x (module for PHP-Nuke) - http://secunia.com/product/13959/
DESCRIPTION: Janek Vind has discovered some vulnerabilities in the vWar module for PHP-Nuke, which can be exploited by malicious people to conduct SQL injection attacks and cross-site scripting attacks.
Read More...
PHP-Nuke vWar Module SQL Injection and Cross-Site Scripting
Posted on Wednesday, April 18, 2007 @ 09:14:25 CDT in Security
|
Simple PHP Scripts Gallery *gallery* File Inclusion
Posted on Wednesday, April 18, 2007 @ 00:37:42 CDT in Security
|
Mozilla Firefox Wizz RSS News Reader Extension Cross-Context Scripting
Posted on Wednesday, April 18, 2007 @ 00:33:43 CDT in Security
|
StoreFront for Gallery *GALLERY_BASEDIR* File Inclusion Vulnerabilities
Posted on Wednesday, April 18, 2007 @ 00:29:44 CDT in Security
|
FileZilla Unspecified Format String Vulnerabilities
Posted on Monday, April 16, 2007 @ 12:03:10 CDT in Security
|
Clam AntiVirus Two Vulnerabilities
Posted on Saturday, April 14, 2007 @ 12:16:54 CDT in Security
|