Thinking OPEN

Archives for the ‘Security Notifications’ Category

Php Dir Submit [Medium]

By Security Team • Nov 18th, 2009 • Category: Security Notifications

SQL injection vulnerability in index.php in PHP Dir Submit (aka WebsiteSubmitter or Submitter Script) allows remote authenticated users to execute arbitrary SQL commands via the aid parameter in a showarticle action….

CVE Identifier: CVE-2009-3970
Vulnerability Type(s):
Severity: Medium



Joomla%21 1.0.9 and prior [High]

By Security Team • Nov 18th, 2009 • Category: Security Notifications

SQL injection vulnerability in the jTips (com_jtips) component 1.0.7 and 1.0.9 for Joomla! allows remote attackers to execute arbitrary SQL commands via the season parameter in a ladder action to index.php….

CVE Identifier: CVE-2009-3971
Vulnerability Type(s):
Severity: High



Joomla%21 1.2 and prior [High]

By Security Team • Nov 18th, 2009 • Category: Security Notifications

SQL injection vulnerability in the Q-Proje Siirler Bileseni (com_siirler) component 1.2 RC for Joomla! allows remote attackers to execute arbitrary SQL commands via the sid parameter in an sdetay action to index.php….

CVE Identifier: CVE-2009-3972
Vulnerability Type(s):
Severity: High



Turnkey Arcade Script [High]

By Security Team • Nov 18th, 2009 • Category: Security Notifications

SQL injection vulnerability in index.php in Turnkey Arcade Script allows remote attackers to execute arbitrary SQL commands via the id parameter in a browse action, a different vector than CVE-2008-5629….

CVE Identifier: CVE-2009-3973
Vulnerability Type(s):
Severity: High



Invision Power Board 3.0.2 and prior [High]

By Security Team • Nov 18th, 2009 • Category: Security Notifications

Multiple SQL injection vulnerabilities in Invision Power Board (IPB or IP.Board) 3.0.0, 3.0.1, and 3.0.2 allow remote attackers to execute arbitrary SQL commands via the (1) search_term parameter to admin/applications/core/modules_public/search/search.php and (2) aid parameter to admin/applications/core/modules_public/global/lostpass.php…

CVE Identifier: CVE-2009-3974
Vulnerability Type(s):
Severity: High



Moa 1.2.0 and prior [Medium]

By Security Team • Nov 18th, 2009 • Category: Security Notifications

SQL injection vulnerability in index.php in Moa Gallery 1.1.0 and 1.2.0 allows remote attackers to execute arbitrary SQL commands via the gallery_id parameter in a gallery_view action….

CVE Identifier: CVE-2009-3975
Vulnerability Type(s):
Severity: Medium



Proftpd 2.9 [Medium]

By Security Team • Nov 18th, 2009 • Category: Security Notifications

Buffer overflow in Labtam ProFTP 2.9 allows remote FTP servers to cause a denial of service (application crash) or execute arbitrary code via a long 220 reply (aka connection greeting or welcome message)….

CVE Identifier: CVE-2009-3976
Vulnerability Type(s):
Severity: Medium



Discovery%26dependency Mapping Inventory 7.60 and prior [High]

By Security Team • Nov 17th, 2009 • Category: Security Notifications

Unspecified vulnerability in HP Discovery & Dependency Mapping Inventory (DDMI) 2.5x, 7.5x, and 7.60 on Windows allows remote authenticated users to execute arbitrary code via unknown vectors….

CVE Identifier: CVE-2009-3841
Vulnerability Type(s):
Severity: High



Wordpress 2.8.5 and prior [Medium]

By Security Team • Nov 17th, 2009 • Category: Security Notifications

Unrestricted file upload vulnerability in the wp_check_filetype function in wp-includes/functions.php in WordPress before 2.8.6, when a certain configuration of the mod_mime module in the Apache HTTP Server is enabled, allows remote authenticated users to execute arbitrary code by posting an attachment with a multiple-extension filename, and then accessing this attachment via a direct request to a wp-content/uploads/ pathname, as demonstrated by a .php.jpg filename….

CVE Identifier: CVE-2009-3890
Vulnerability Type(s):
Severity: Medium



Wordpress 2.8.5 and prior [Low]

By Security Team • Nov 17th, 2009 • Category: Security Notifications

Cross-site scripting (XSS) vulnerability in wp-admin/press-this.php in WordPress before 2.8.6 allows remote authenticated users to inject arbitrary web script or HTML via the s parameter (aka the selection variable)….

CVE Identifier: CVE-2009-3891
Vulnerability Type(s):
Severity: Low