| OSVDB ID | Disclosure Date | Title |
|
20951
Description:
Unclassified NewsBoard contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the search function not properly sanitizing user-supplied input to the 'DateFrom' or 'DateUntil' variables. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-11-18
|
Unclassified NewsBoard search.inc.php Multiple Parameter SQL Injection
|
|
20852
Description:
WF-Downloads Module contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the viewcat.php script not properly sanitizing user-supplied input to the 'list' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-11-12
|
XOOPS WF-Downloads Module viewcat.php list Parameter SQL Injection
|
|
20748
Description:
Moodle contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'get_record()' function in the datalib.php script not properly sanitizing user-supplied input to the 'id' variable in the category.php and info.php scripts. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-11-10
|
Moodle datalib.php get_record() Function Multiple Script SQL Injection
|
|
20749
Description:
Moodle contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the plot.php script not properly sanitizing user-supplied input to the "user" variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-11-10
|
Moodle plot.php user Parameter SQL Injection
|
|
20750
Description:
Moodle contains a flaw that may allow a remote attacker to trick a user into visiting an arbitrary site under the apparent trust of a legitimate site. The issue is due to the jumpto.php script providing a site redirect to an arbitrary web site. This may give an attacker a way to trick a user into clicking what appears to be a legitimate URL of a valid site, but really leads them to an arbitrary site with malicious content.
|
2005-11-10
|
Moodle jumpto.php jump Variable Arbitrary Site Redirect
|
|
20851
Description:
ATutor contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the registration.php script not properly sanitizing user-supplied input to the 'email' field. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-11-08
|
ATutor registration.php Email Field SQL Injection
|
|
20474
Description:
CuteNews contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to showarchives.php not properly sanitizing user input supplied to the 'template' variable. This may allow an attacker to include an arbitrary file. It also allows an attacker to gain administrative privileges by editing files and calling them with arbitrary commands.
|
2005-11-03
|
CuteNews show_archives.php Remote Command Execution
|
|
20291
Description:
PHP-Nuke contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the login script not properly sanitizing user-supplied input to the 'username' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-10-23
|
PHP-Nuke Your Account Username Field SQL Injection
|
|
20292
Description:
PHP-Nuke contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the downloads module (via modules.php) not properly sanitizing user-supplied input to the 'url' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-10-23
|
Downloads Module for PHP-Nuke modules.php url Parameter SQL Injection
|
|
20293
Description:
PHP-Nuke contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the web_links module not properly sanitizing user-supplied input to the 'description' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-10-23
|
PHP-Nuke Web_Links Module description Parameter SQL Injection
|
|
20266
Description:
MWChat contains a flaw that may allow a remote attacker to carry out an SQL injection attack. The issue is due to the 'chat.php' script not properly sanitizing user-supplied input to the 'Username' variable. This may allow a remote attacker to inject or manipulate SQL queries in the back-end database.
|
2005-10-21
|
MWChat chat.php Username Parameter SQL Injection
|
|
20070
Description:
e107 contains a flaw that may allow a remote attacker to carry out an SQL injection attack. The issue is due to the 'resetcore.php' script not properly sanitizing user-supplied input to the 'user' field. This may allow a remote attacker to inject or manipulate SQL queries in the back-end database.
|
2005-10-18
|
e107 resetcore.php user Field SQL Injection
|
|
20071
Description:
e107 contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate user-supplied input to the 'forum_title' field upon submission to the 'resetcore.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-10-18
|
e107 resetcore.php forum_title Field XSS
|
|
20072
Description:
e107 contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue occurs because the upload file functionality does not validate file extensions for user-supplied files. If an authenticated user uploads an executable file, it may be possible to execute arbitrary PHP code resulting in a loss of integrity.
|
2005-10-18
|
e107 resetcore.php File Upload Arbitrary Command Execution
|
|
19962
Description:
versatileBulletinBoard (vBB) contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the login script not properly sanitizing user-supplied input to the 'login:' field. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-10-10
|
versatileBulletinBoard (vBB) login: Field SQL Injection
|
|
19963
Description:
versatileBulletinBoard (vBB) contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'Search This Thread' feature not properly sanitizing user-supplied input to the search query. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-10-10
|
versatileBulletinBoard (vBB) Search This Thread Feature SQL Injection
|
|
19964
Description:
versatileBulletinBoard (vBB) contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the index.php script not properly sanitizing user-supplied input to the 'select' or 'categ' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-10-10
|
versatileBulletinBoard (vBB) index.php Multiple Parameter SQL Injection
|
|
19965
Description:
versatileBulletinBoard (vBB) contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the Private Message function not properly sanitizing user-supplied input to the 'to' field. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-10-10
|
versatileBulletinBoard (vBB) Private Message to Field SQL Injection
|
|
19966
Description:
versatileBulletinBoard (vBB) contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'Search for Posts' feature not properly sanitizing user-supplied input to the search query. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-10-10
|
versatileBulletinBoard (vBB) Search For Posts Feature SQL Injection
|
|
19967
Description:
versatileBulletinBoard (vBB) contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the userlistpre.php script not properly sanitizing user-supplied input to the 'list' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-10-10
|
versatileBulletinBoard (vBB) userlistpre.php list Parameter SQL Injection
|
|
19968
Description:
versatileBulletinBoard (vBB) contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'Forgot Password' feature not properly sanitizing user-supplied input to the 'email' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-10-10
|
versatileBulletinBoard (vBB) Forgot Password Feature email Field SQL Injection
|
|
19969
Description:
versatileBulletinBoard (vBB) contains a flaw that may allow a malicious user to adversely affect a user's browsing. The issue is triggered when an attacker uses the dereferrer.php script to redirect a person to an arbitrary site. It is possible that the flaw may allow the attacker to trick a user into executing arbitrary scripts on a malicious site.
|
2005-10-10
|
versatileBulletinBoard (vBB) dereferrer.php Arbitrary External Site Redirection
|
|
19970
Description:
versatileBulletinBoard (vBB) contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'url' variable upon submission to the dereferrer.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-10-10
|
versatileBulletinBoard (vBB) dereferrer.php url Parameter XSS
|
|
19971
Description:
versatileBulletinBoard (vBB) contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'file' variable upon submission to the imagewin.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-10-10
|
versatileBulletinBoard (vBB) imagewin.php file Parameter XSS
|
|
19972
Description:
versatileBulletinBoard (vBB) contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'list' variable upon submission to the userlistpre.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-10-10
|
versatileBulletinBoard (vBB) userlistpre.php list Parameter XSS
|
|
19973
Description:
versatileBulletinBoard (vBB) contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when a remote attacker calls the getversions.php script, which will disclose detailed file and version information resulting in a loss of confidentiality.
|
2005-10-10
|
versatileBulletinBoard (vBB) getversions.php Information Disclosure
|
|
19943
Description:
Cyphor contains a flaw that may allow a remote attacker to carry out an SQL injection attack. The issue is due to the 'lostpwd.php' script not properly sanitizing user-supplied input to the 'nick' variable. This may allow a remote attacker to inject or manipulate SQL queries in the back-end database.
|
2005-10-08
|
Cyphor lostpwd.php nick Field SQL Injection
|
|
19944
Description:
Cyphor contains a flaw that may allow a remote attacker to carry out an SQL injection attack. The issue is due to the 'newmsg.php' script not properly sanitizing user-supplied input to the 'fid' variable. This may allow a remote attacker to inject or manipulate SQL queries in the back-end database.
|
2005-10-08
|
Cyphor newmsg.php fid Parameter SQL Injection
|
|
19945
Description:
Cyphor contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'fid' variable upon submission to the 'newmsg.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-10-08
|
Cyphor newmsg.php fid Parameter XSS
|
|
19946
Description:
Cyphor contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 't_login' variable upon submission to the 'footer.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-10-08
|
Cyphor footer.php t_login Parameter XSS
|
|
19940
Description:
Utopia News Pro contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'sitetitle' variable upon submission to the 'header.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-10-06
|
Utopia News Pro header.php sitetitle Parameter XSS
|
|
19941
Description:
Utopia News Pro contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate 'version' and 'query_count' variables upon submission to the 'footer.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-10-06
|
Utopia News Pro footer.php Multiple Parameter XSS
|
|
19942
Description:
Utopia News Pro contains a flaw that may allow a remote attacker to carry out an SQL injection attack. The issue is due to the 'news.php' script not properly sanitizing user-supplied input to the 'newsid' variable. This may allow a remote attacker to inject or manipulate SQL queries in the back-end database.
|
2005-10-06
|
Utopia News Pro news.php newsid Parameter SQL Injection
|
|
19935
Description:
myBloggie contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the login.php script not properly sanitizing user-supplied input beginning with a null character to the 'username' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-10-01
|
myBloggie login.php username Variable Null Character SQL Injection
|
|
19885
Description:
Lucid CMS contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the login form script not properly sanitizing user-supplied input to the 'login' field. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-09-29
|
lucidCMS Login Form login: Field SQL Injection
|
|
19718
Description:
PHP-Fusion contains a flaw that may allow a remote attacker to carry out an SQL injection attack. The issue is due to the 'messages.php' script not properly sanitizing user-supplied input to the 'msg_send' variable. This may allow a remote attacker to inject or manipulate SQL queries in the back-end database.
|
2005-09-28
|
PHP-Fusion messages.php msg_send Parameter SQL Injection
|
|
19679
Description:
Mailgust contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the password reminder page not properly sanitizing user-supplied input to the email field. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-09-24
|
Mailgust Password Reminder email Field SQL Injection
|
|
19650
Description:
My Little Forum contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the search.php script not properly sanitizing user-supplied input to the 'search' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-09-22
|
my little forum search.php search Field SQL Injection
|
|
19666
Description:
phpMyFAQ contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the password.php script not properly sanitizing user-supplied input to the user: field. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-09-22
|
phpMyFAQ password.php user Field SQL Injection
|
|
19667
Description:
phpMyFAQ contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'PMF_CONF[version]' variable upon submission to the footer.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-09-22
|
phpMyFAQ footer.php PMF_CONF[version] Parameter XSS
|