| OSVDB ID | Disclosure Date | Title |
|
24237
Description:
@1 Event Publisher contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when an attacker makes a direct request to the eventpublisher.txt file, which will disclose private comments resulting in a loss of confidentiality.
|
2006-03-29
|
@1 Event Publisher eventpublisher.txt Direct Request Private Comment Disclosure
|
|
24235
Description:
@1 Event Publisher contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate Event, Description, Time, Website, and Public Remarks fields upon submission to the eventpublisher_admin.htm script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-03-27
|
@1 Event Publisher eventpublisher_admin.htm Multiple Parameter XSS
|
|
24236
Description:
@1 Event Publisher contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the Event, Description, Time, Website, and Public Remarks fields upon submission to the eventpublisher_usersubmit.htm script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-03-29
|
@1 Event Publisher eventpublisher_usersubmit.htm Multiple Parameter XSS
|
|
23863
Description:
@1 File Store contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the confirm.php script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-03-11
|
@1 File Store confirm.php id Parameter SQL Injection
|
|
23855
Description:
@1 File Store contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the control/files/delete.php script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-03-11
|
@1 File Store control/files/delete.php id Parameter SQL Injection
|
|
23854
Description:
@1 File Store contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the control/files/edit.php script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-03-11
|
@1 File Store control/files/edit.php id Parameter SQL Injection
|
|
23859
Description:
@1 File Store contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the control/folders/access.php script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-03-11
|
@1 File Store control/folders/access.php id Parameter SQL Injection
|
|
23860
Description:
@1 File Store contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the control/folders/delete.php script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-03-11
|
@1 File Store control/folders/delete.php id Parameter SQL Injection
|
|
23858
Description:
@1 File Store contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the control/folders/edit.php script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-03-11
|
@1 File Store control/folders/edit.php id Parameter SQL Injection
|
|
23862
Description:
@1 File Store contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the control/groups/delete.php script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-03-11
|
@1 File Store control/groups/delete.php id Parameter SQL Injection
|
|
23861
Description:
@1 File Store contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the control/groups/edit.php script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-03-11
|
@1 File Store control/groups/edit.php id Parameter SQL Injection
|
|
23857
Description:
@1 File Store contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the control/users/delete.php script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-03-11
|
@1 File Store control/users/delete.php id Parameter SQL Injection
|
|
23856
Description:
@1 File Store contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the control/users/edit.php script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-03-11
|
@1 File Store control/users/edit.php id Parameter SQL Injection
|
|
23864
Description:
@1 File Store contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the download.php script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-03-11
|
@1 File Store download.php id Parameter SQL Injection
|
|
24106
Description:
@1 File Store contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the folder.php script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-03-11
|
@1 File Store folder.php id Parameter SQL Injection
|
|
23852
Description:
@1 File Store contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the libs/functions.php script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-03-11
|
@1 File Store libs/functions.php id Parameter SQL Injection
|
|
23853
Description:
@1 File Store contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the libs/user.php script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-03-11
|
@1 File Store libs/user.php id Parameter SQL Injection
|
|
23851
Description:
@1 File Store contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the password.php script not properly sanitizing user-supplied input to the 'email' or 'id' variables. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-03-11
|
@1 File Store password.php Multiple Parameter SQL Injection
|
|
23850
Description:
@1 File Store contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'real_name', 'email' or 'login' variables upon submission to the signup.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-03-11
|
@1 File Store signup.php Multiple Parameter XSS
|
|
24238
Description:
@1 Table Publisher contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the Title of Table field upon submission to the tablepublisher.cgi script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-03-29
|
@1 Table Publisher tablepublisher.cgi Title of Table Field XSS
|
|
22203
Description:
@CardMAX contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'cat' variable upon submission to the 'index.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-01-03
|
@Card ME PHP index.php cat Parameter XSS
|
|
31246
Description:
@cid stats has been reported to contain a flaw that may allow a remote attacker to execute arbitrary commands. The issue is supposedly due to the install.php3 script not properly sanitizing user input supplied to the 'repertoire' variable. However, subsequent examination indicates the variable is previously set and can not be manipulated by an attacker.
|
2006-11-05
|
@cid stats install.php3 repertoire Parameter Remote File Inclusion
|
|
31708
Description:
(Description Provided by CVE) : Directory traversal vulnerability in admin/skins.php for @lex Guestbook 4.0.2 and earlier allows remote attackers to create files in arbitrary directories via ".." sequences in the (1) aj_skin and (2) skin_edit parameters. NOTE: this can be leveraged for file inclusion by creating a skin file in the lang directory, then referencing that file via the lang parameter to index.php, which passes a sanity check in livre_include.php.
|
2007-01-07
|
@lex Guestbook admin/skins.php Arbitrary Directory Access
|
|
31707
Description:
(Description Provided by CVE) : SQL injection vulnerability in index.php in @lex Guestbook 4.0.2 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the lang parameter.
|
2007-01-07
|
@lex Guestbook index.php lang Parameter SQL Injection
|
|
31709
Description:
(Description Provided by CVE) : Directory traversal vulnerability in admin/skins.php for @lex Guestbook 4.0.2 and earlier allows remote attackers to create files in arbitrary directories via ".." sequences in the (1) aj_skin and (2) skin_edit parameters. NOTE: this can be leveraged for file inclusion by creating a skin file in the lang directory, then referencing that file via the lang parameter to index.php, which passes a sanity check in livre_include.php.
|
2007-01-07
|
@lex Guestbook index.php lang Variable Traversal Arbitrary File Execution
|
|
61618
Description:
@lex Guestbook contains a flaw that allows a remote cross site scripting (XSS) attack. This flaw exists because the application does not validate the 'seeMess' and 'seeNotes' parameters upon submission to the 'index.php' script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2010-01-11
|
@lex Guestbook index.php Multiple Parameter XSS
|
|
31705
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in index.php in @lex Guestbook 4.0.1 allows remote attackers to inject arbitrary web script or HTML via the skin parameter.
|
2006-12-01
|
@lex Guestbook index.php skin Parameter XSS
|
|
31706
Description:
(Description Provided by CVE) : index.php in @lex Guestbook 4.0.1 allows remote attackers to obtain sensitive information via a skin parameter referencing a nonexistent skin, which reveals the installation path in an error message.
|
2006-11-30
|
@lex Guestbook index.php skin Variable Path Disclosure
|
|
57625
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in @lex Guestbook 4.0.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) language_setup parameter to setup.php or (2) test parameter to index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: a third party has been reported that the test parameter is not used in @lex Guestbook.
|
2008-03-31
|
@lex Guestbook index.php test Parameter XSS
|
|
10375
Description:
@lex Guestbook contains a flaw that may allow a remote attacker to execute arbitrary commands or code. The issue is due to the 'livre_include.php' script not properly sanitizing user input supplied to the 'chem_absolu' parameter. This may allow an attacker to include a file from a third-party remote host that contains commands or code that will be executed by the vulnerable script with the same privileges as the web server.
|
2004-09-28
|
@lex Guestbook livre_include.php chem_absolu Parameter Remote File Inclusion
|