CGI abuses Family for Nessus

IDNameSeverity
31095Joomla! 'mosConfig_absolute_path' Parameter Remote File Include
critical
31051osCommerce Customer Testimonials customer_testimonials.php testimonial_id Parameter SQL Injection
high
31048Cacti index.php/sql.php Login Action login_username Parameter SQL Injection
high
30253ExtremeZ-IP File and Print Server Zidget/HTTP Server Traversal Arbitrary File Access
medium
30216F5 BIG-IP Web Management Interface Version
info
30211Symantec Backup Exec System Recovery Manager FileUpload Class Unauthorized File Upload
critical
30208Ipswitch WS_FTP Server Manager /WSFTPSVR/FTPLogServer/LogViewer.asp Authentication Bypass
medium
30151AkoGallery Component for Mambo / Joomla! 'id' Parameter SQLi
high
30132Coppermine imageObjectIM.class.php Command Execution Vulnerabilities
high
30131SQLiteManager confirm.php spaw_root Parameter Remote File Inclusion
medium
30129WordPress AdServe 'adclick.php' 'id' Parameter SQL Injection
high
30124Smart Publisher index.php filedata Parameter Arbitrary Command Execution
high
30110Mambo MOStlyCE Mambot Arbitrary File Rename
medium
30109WordPress fGallery 'fim_rss.php' 'album' Parameter SQL Injection
high
30108vTiger CRM Directory File Disclosure
medium
30107CandyPress Store admin/utilities_ConfigHelp.asp helpfield Parameter SQL Injection
high
30056ManageEngine Applications Manager Invalid URL Remote Information Disclosure
medium
30055MoinMoin MOIN_ID Cookie userform Action Traversal Arbitrary File Overwrite
high
30054YaBB SE Cookie Authentication Bypass
high
30053Kayako SupportSuite syncml/index.php Direct Request Remote Information Disclosure
medium
30052boastMachine mail.php id Parameter SQL Injection
high
30021BitDefender Update Server HTTP Request Traversal Arbitrary File Access
high
29996MyBB forumdisplay.php 'sortby' Parameter Arbitrary PHP Code Execution
high
29995Pixelpost index.php parent_id Parameter SQL Injection
medium
29981X7 Chat index.php day Parameter SQL Injection
high
29927eggBlog index.php eggblogpassword Parameter Cookie SQL Injection
medium
29897PortalApp forums.asp sortby Parameter SQL Injection
high
29871Web Server Malicious JavaScript Link Detection
critical
29870XoopsGallery init_basic.php GALLERY_BASEDIR Parameter Remote File Inclusion
high
29869Loudblog loudblog/inc/parse_old.php template Parameter Arbitrary Remote Code Execution
medium
29868Newbb_plus Module for RunCMS Client-Ip Header SQL Injection
medium
29867RunCMS Detection
info
29854Bitweaver wiki/edit.php suck_url Parameter Traversal Source Code Disclosure
medium
29853RunCMS Multiple Script lid Parameter SQL Injection
high
29852Mort Bay Jetty URL Multiple Slash Character Information Disclosure
medium
29835Site@School slideshow_full.php album_name Parameter SQL Injection
medium
29833PHP < 4.4.8 Multiple Vulnerabilities
high
29832Zenphoto rss.php albumnr Parameter SQL Injection
high
29829CMS Made Simple modules/TinyMCE/content_css.php templateid Parameter SQL Injection
high
29802CuteNews search.php files_arch Array Arbitrary File Access
medium
29800PMOS Help Desk form.php Arbitrary Code Execution
high
29799Tikiwiki tiki-listmovies.php movie Parameter Traversal Arbitrary File Access
medium
29746Plogger plog-rss.php id Parameter SQL Injection
high
29745WordPress 'query.php' is_admin() Function Information Disclosure
medium
29728RaidenHTTPD workspace.php ulang Parameter Local File Inclusion
high
29722Centreon 'fileOreonConf' Parameter File Include Vulnerabilities
high
29252Firefly Media Server Limited Directory Traversal Admin Credential Disclosure
high
29249HP OpenView Network Node Manager Multiple CGI Remote Overflows
high
29187Plumtree Portal User Object User Enumeration
medium
28375Seditio plug.php pag_sub Parameter SQL Injection
medium