CGI abuses Family for Nessus

IDNameSeverity
25087WebSpeed Development Mode Check
high
24999XOOPS Jobs Module index.php cid Parameter SQL Injection
high
24910TestDirector (TD) for Mercury Quality Center SPIDERLib.Loader ActiveX Control (Spider90.ocx) ProgColor Property Overflow (2)
high
24908XOOPS WF-Section Module print.php articleid Parameter SQL Injection
high
24907PHP < 5.2.1 Multiple Vulnerabilities
high
24906PHP < 4.4.5 Multiple Vulnerabilities
high
24902XOOPS Articles Module print.php id Parameter SQL Injection
high
24900TYPOlight < 2.2.5 Unspecified Vulnerability
high
24899RWCards Component for Joomla! 'category_id' Parameter SQLi
medium
24874Moodle 'moodledata/sessions' Session Files Remote Information Disclosure
medium
24864Webapp.org WebAPP < 0.9.9.6 Multiple Vulnerabilities
high
24813Apache mod_jk Long URL Worker Map Stack Remote Overflow
high
24784LedgerSMB / SQL-Ledger admin.pl Admin Authentication Bypass
high
24783LedgerSMB / SQL-Ledger file Parameter Multiple Vulnerabilities
high
24780WebCalendar includes/functions.php noSet Variable Overwrite
high
24756Symantec Mail Security for SMTP Admin Center Default Credentials
high
24759WordPress < 2.1.1 Multiple Script Backdoors
high
24746getID3 < 1.7.8-b1 Multiple Remote Vulnerabilities
high
24743OrangeHRM login.php txtUserName Parameter SQL Injection
high
24726SQLiteManager SQLiteManager_currentTheme Cookie Traversal Local File Inclusion
medium
24713Pagesetter for PostNuke index.php id Parameter Traversal Arbitrary File Access
medium
24711DokuWiki Detection
info
24698ZPanel 2.0 Multiple Script Remote File Inclusion
high
24690Trend Micro ServerProtect for Linux splx_2376_info Cookie Authentication Bypass
high
24672phpMyFAQ < 1.6.10 Multiple Script Arbitrary File Upload
medium
24669Plain Old Webserver URI Traversal Arbitrary File Access
medium
24356LifeType rss.php profile Parameter Traversal Arbitrary File Access
medium
24345MailEnable Web Mail Client Multiple Vulnerabilities (XSS, CSRF)
medium
24322DevTrack Web Service UserName Field SQL Injection
high
24284Advanced Poll admin/index.php Session Identifier Replay Authentication Bypass
high
24283ColdFusion / JRun on IIS Double Encoded NULL Byte Request File Content Disclosure
medium
24267ExoPHPDesk faq.php id Parameter SQL Injection
medium
24266Drupal Comment Module comment_form_add_preview() Function Arbitrary Code Execution
medium
24265Drupal Comment Function Arbitrary Code Execution
medium
24264Drupal Multiple Module $_SESSION Manipulation CAPTCHA Bypass
medium
24263CVSTrac Text Output Formatter SQL Injection DoS
medium
24262LedgerSMB / SQL-Ledger login.pl script Parameter Arbitrary Perl Code Execution
high
24261PHProxy Detection
info
24237WordPress Pingback File Information Disclosure
medium
24235Website Baker REMEMBER_KEY Cookie SQL Injection
medium
24228Oreon lang/index.php file Parameter Remote File Inclusion
high
24223WoltLab Burning Board search.php Multiple Parameter SQL Injection
high
24014WordPress Trackback 'wp-trackback.php' 'tb_id' Parameter SQL Injection
high
24011WordPress Trackback Charset Decoding SQL Injection
medium
24003Cuyahoga FCKEditor Misconfiguration Unrestricted File Upload
medium
24001phpMyFAQ < 1.6.8 Multiple SQL Injection Vulnerabilities
high
23968phpBB < 2.0.22 Multiple Vulnerabilities
critical
23966Ultimate PHP Board chat/login.php username Parameter Arbitrary Command Execution
high
23965Jinzora Multiple Script include_path Parameter Remote File Inclusion
medium
23964Cacti copy_cacti_user.php template_user Variable SQL Injection
high