SECUNIA ADVISORY ID: SA23204
VERIFY ADVISORY: http://secunia.com/advisories/23204/
CRITICAL: Highly critical
IMPACT: System access
SOFTWARE: PHP Upload Center 2.x - http://secunia.com/product/12792/
DESCRIPTION: GregStar has discovered two vulnerabilities in PHP Upload Center, which can be exploited by malicious people to compromise a vulnerable system. Successful exploitation with other file extensions than ".php" requires that "magic_quotes_gpc" is disabled. The vulnerabilities are confirmed in version 2.0. Other versions may also be affected. Read More...
PHP Upload Center *footerpage* and *language* File Inclusion
Posted on Monday, December 04, 2006 @ 10:43:38 CST in Security
|
SquirrelMail Multiple Cross-Site Scripting Vulnerabilities
Posted on Monday, December 04, 2006 @ 10:41:59 CST in Security
|
rPath update for ImageMagick
Posted on Tuesday, November 28, 2006 @ 10:33:49 CST in Security
|
PHP-Nuke *modules/News/index.php* SQL Injection Vulnerabilities
Posted on Tuesday, November 28, 2006 @ 10:33:03 CST in Security
|
ProFTPD mod_tls Buffer Overflow Vulnerability
Posted on Tuesday, November 28, 2006 @ 10:31:59 CST in Security
|
phpMyAdmin Table Comment Script Insertion Vulnerability
Posted on Friday, November 17, 2006 @ 09:33:31 CST in Security
|