CGI abuses Family for Nessus

IDNameSeverity
12074TalentSoft Web+ webplus.exe Path Disclosure
medium
12068X-News Password MD5 Hash Authentication Bypass
high
12064ShopCartCGI Multiple Script Traversal Arbitrary File Access
medium
12062Ecommerce Corp. Online Store Kit 3.0 Multiple Vulnerabilities
high
12059SandSurfer < 1.7.0 User Authentication Bypass
high
12043BEA WebLogic config.xml Operator/Admin Password Disclosure
medium
12042ReviewPost PHP Pro Multiple Script SQL Injections
high
12041phpMyAdmin export.php what Parameter Traversal Arbitrary File Access
medium
12040Qualiteam X-Cart Multiple Script perl_binary Parameter Arbitrary Command Execution
critical
12038Photopost PHP Pro photo Parameter SQL Injection
high
12035PJ CGI Neo PJreview_Neo.cgi p Parameter Traversal Arbitrary File Access
medium
12034phpGedView Arbitrary File Access / Remote File Inclusion
high
12033Leif Wright Web Blog blog.cgi ViewFile Request file Parameter Arbitrary Command Execution
high
12032JBrowser _admin/ Direct Request Admin Authentication Bypass
high
12031Aprox PHP Portal index.php Arbitrary File View
medium
12030Gallery HTTP Global Variables File Inclusion
medium
12026PHPix index.phtml Multiple Parameter Arbitrary Command Execution
high
12025Mambo mod_mainmenu.php mosConfig_absolute_path Parameter Remote File Inclusion
high
12020XTreme ASP Photo Gallery adminlogin.asp Multiple Parameter SQL Injection
high
12008PhpDig config.php relative_script_path Parameter Remote File Inclusion
high
11981vBulletin calendar.php eventid Parameter SQL Injection
high
11979HotNews Multiple Script Remote File Inclusion
high
11976EasyDynamicPages Multiple Script edp_relative_path Parameter Remote File Inclusion
high
11975QuikStore Shopping Cart quikstore.cgi template Parameter Traversal Arbitrary File Access
medium
11973BulletScript MailList bsml.pl Information Disclosure
medium
11969PHPCatalog id Parameter SQL Injection
high
11966PHP-Ping php-ping.php count Parameter Arbitrary Command Execution
high
11954SGDynamo sgdynamo.exe HTNAME Parameter Path Disclosure
medium
11942VP-ASP shopsearch SQL Injection
medium
11940CuteNews Debug Info Disclosure
medium
11939Foxweb foxweb.exe / foxweb.dll Long URL Remote Overflow
high
11938phpBB < 2.0.7 Multiple Script SQL Injection
high
11931My_eGallery < 3.1.1g Remote File Inclusion
high
11917Bugzilla < 2.16.4 / 2.17.5 Multiple Vulnerabilities (SQLi, ID)
medium
11914TheServer server.ini Direct Request Plaintext Credentials Disclosure
medium
11911Les Visiteurs Multiple Remote File Inclusion
high
11877myPHPcalendar Multiple Scripts cal_dir Parameter Remote File Inclusion
high
11876Gallery index.php GALLERY_BASEDIR Parameter Remote File Inclusion
high
11872Microsoft IIS ODBC Tool getdrvrs.exe DSN Creation
high
11866WordPress 'blog.header.php' Multiple Parameter SQL Injection
high
11850PHP < 4.3.3 Multiple Vulnerabilities
high
11836myPHPNuke My_eGallery gallery/displayCategory.php basepath Parameter Remote File Inclusion
high
11833EZsite Forum Discloses Passwords to Remote Users
medium
11824myPHPNuke phptonuke.php filnavn Parameter Traversal Arbitrary File Access
medium
11817Stellar Docs Malformed Query Path Disclosure
medium
11816phpWebSite < 0.9.x Multiple Vulnerabilities
high
11807PHP < 4.3.3 php_check_safe_mode_include_dir Function Safemode Bypass
medium
11806paFileDB <= 3.1 Multiple Vulnerabilities (1)
high
11805e107 db.php User Database Disclosure
medium
11799ashNews 0.83 Multiple Vulnerabilities
high