CGI abuses Family for Nessus

IDNameSeverity
14382WebMatic Unspecified Login Function Access Vulnerability
high
14379Merak Webmail / IceWarp Web Mail < 5.2.8 Multiple Vulnerabilities
high
14370HastyMail HTML Attachment Script Execution
medium
14365WebAPP Directory Traversal
medium
14364TikiWiki < 1.8.2 Multiple Input Validation Vulnerabilities
high
14363INL ulog-php port.php proto Parameter SQL Injection
high
14359TikiWiki Unauthorized Page Access
medium
14356PHP-Fusion Database Backup Disclosure
medium
14347AWStats rawlog.pm logfile Parameter Arbitrary Command Execution
high
14338Gallery save_photos.php Arbitrary Command Execution
high
14327MyDMS < 1.4.3 Multiple Vulnerabilities
high
14325ZixForum ZixForum.mdb DIrect Request Database Disclosure
medium
14324Mantis < 0.18.3 / 0.19.0a2 Multiple Vulnerabilities
medium
14312Trend Micro Scanmail for Domino nsf File Information Disclosure
medium
14300Sympa wwsympa.fcgi Unauthorised List Creation
medium
14299Sympa wwsympa Invalid LDAP Password Remote DoS
medium
14298Sympa wwsympa do_search_list Overflow DoS
medium
14296phpGroupWare Multiple Module SQL Injection
high
14295phpGroupWare Calendar Module Holiday File Save Extension Feature Arbitrary File Execution
high
14294phpGroupWare Unspecified Remote File Inclusion
high
14293phpGroupWare Admin/Setup Password Plaintext Cookie Storage
medium
14292phpGroupWare index.php Addressbook XSS
medium
14291CVSTrac timeline.c timeline_page Function Overflow
high
14290CVSTrac Ticket Title Arbitrary Command Execution
high
14289CVSTrac Malformed URI Infinite Loop DoS
medium
14288CVSTrac chdir() chroot Jail Escape
medium
14287CVSTrac Invalid Ticket DoS
medium
14286CVSTrac history.c history_update Function Overflow
high
14285CVSTrac Database Plaintext Password Storage
medium
14284CVSTrac cgi.c Multiple Overflows
high
14283CVSTrac CVSROOT/passwd Arbitrary Account Deletion
medium
14224Simple Form Multiple Parameter Arbitrary Mail Relaying
medium
14269YaPiG < 0.92.2 Multiple Scripts Arbitrary Command Execution
high
14260Nikto (NASL wrapper)
info
14258phpMyFAQ index.php action Parameter Local File Inclusion
medium
14255Microsoft Outlook Web Access (OWA) Version Detection
info
14308BasiliX Application Detection
info
14306Basilix Webmail tmp Directory Permission Weakness Attachment Disclosure
low
14305Basilix Webmail Attachment Crafted POST Arbitrary File Access
medium
14304BasiliX login.php3 username Variable Arbitrary Command Execution
medium
14237GoScript go.cgi Arbitrary Command Execution
high
14233ASPrunner 2.4 Multiple Vulnerabilities
high
14232PSCS VPOP3 messagelist.html msglistlen Parameter DoS
medium
14226phpBB Fetch All < 2.0.12 Multiple Scripts SQL Injection
high
14220CVSTrac filediff Arbitrary Remote Code Execution
high
14219Basilix Webmail id Variable SQL Injection
medium
14227Snitz Forums 2000 < 3.4.03 register.asp Email Parameter SQL Injection
high
14222RiSearch show.pl Arbitrary File Access
medium
14194Nucleus CMS action.php itemid Parameter SQL Injection
high
14193Polar HelpDesk Authentication Bypass
high