CGI abuses Family for Nessus

IDNameSeverity
22091Loudblog index.php id Parameter SQL Injection
high
22090X7 Chat upgradev1.php old_prefix Parameter SQL Injection
high
22089Invision Power Board classes/class_session.php CLIENT_IP HTTP Header SQL Injection
high
22079IceWarp Multiple Script Remote File Inclusion
medium
22078VHCS login.php check_login() Function Authentication Bypass
critical
22077VHCS include/sql.php include_path Parameter Remote File Inclusion
medium
22055MyBB HTTP Header 'CLIENT-IP' Field SQLi
high
22049Mambo / Joomla! Component / Module 'mosConfig_absolute_path' Multiple Parameter Remote File Include Vulnerabilities
high
22048Trend Micro OfficeScan 7.3 Multiple Vulnerabilities
high
22046McAfee Common Management Agent Traversal Arbitrary File Write
medium
22023SimpleBoard / Joomlaboard 'sbp' Parameter Remote File Include
high
22021Mambo phpBB Component download.php phpbb_root_path Parameter Remote File Inclusion
medium
22005LifeType index.php Date Parameter SQL Injection
high
21918phpFormGenerator Arbitrary File Upload
high
21787SiteBuilder-FX top.php admindir Parameter Remote File Inclusion
medium
21785Webmin 'miniserv.pl' Arbitrary File Disclosure
medium
21780FCKeditor on Apache connector.php Crafted File Extension Arbitrary File Upload
high
21779Geeklog Multiple Script _CONF[path] Parameter Remote File Inclusion
medium
21764Scout Portal Toolkit SPT--ForumTopics.php forumid Parameter SQL Injection
high
21748BlueDragon 6.2.1 Multiple Remote Vulnerabilities (XSS, DoS)
medium
21747BDPDT for DotNetNuke (.net nuke) uploadfilepopup.aspx File Upload Privilege Escalation
critical
21739w-Agora inc_dir Parameter Remote File Inclusion
high
21736Hosting Controller <= 6.1 Hotfix 3.1 Authenticated User Privilege Escalation
medium
21729Wikka wikka.php Local File Inclusion
high
21727Calendarix Multiple Script id Parameter SQL Injection
medium
21675OpenEMR C_FormEvaluation.class.php fileroot Parameter Remote File Inclusion
medium
21662DokuWiki Spell Checker Embedded Link Arbitrary PHP Code Execution
high
21645Pixelpost index.php category Parameter SQL Injection
medium
21641Claroline Multiple Script includePath Parameter Remote File Inclusion
medium
21631LifeType index.php articleId Parameter SQL Injection
high
21630SquirrelMail plugin.php plugins Parameter Local File Inclusion
high
21621e107 email.php Arbitrary Mail Relay
medium
21619Geeklog auth.inc.php loginname Parameter SQL Injection
medium
21611BASE Multiple Script BASE_path Parameter Remote File Inclusion
medium
21607Resin viewfile Servlet Arbitrary File Disclosure
medium
21605UBB.threads addpost_newpoll.php thispath Parameter Remote File Inclusion
medium
21597Sun Server Console Authentication Bypass
high
21596Nucleus CMS PLUGINADMIN.php DIR_LIBS Parameter Remote File Inclusion
medium
21582phpwcms spaw_control.class.php spaw_root Parameter Remote File Inclusion
low
21581XOOPS xoopsConfig Parameter Variable Overwrite Local File Inclusion
medium
21573FCKeditor upload.php Type Parameter Arbitrary File Upload
high
21572Ipswitch WhatsUp Professional Crafted Header Authentication Bypass
high
21571Squirrelcart cart_content.php cart_isp_root Parameter Remote File Inclusion
medium
21570SugarCRM <= 4.2.0a Multiple Script sugarEntry Parameter Remote File Inclusion
medium
21566WebCalendar Login Error Message User Account Enumeration
medium
21562Ipswitch WhatsUp Professional Multiple Vulnerabilities (XSS, Enum, ID)
medium
21558Limbo weblinks.html.php catid Parameter SQL Injection
medium
21557ACal embed/day.php path Parameter Remote File Inclusion
high
21555e107 e107_cookie Parameter SQL Injection
medium
21339Stadtaus Gaestebuch-Script index.php include_files Parameter Remote File Inclusion
medium