CGI abuses Family for Nessus

IDNameSeverity
31860HP OpenView Network Node Manager OpenView5.exe Action Parameter Traversal Arbitrary File Access
medium
31859Coppermine Photo Gallery bridge/coppermine.inc.php Bridge Wizard Session Cookie SQL Injection
high
31790Site Sift Listings detail.php id Parameter SQL Injection
high
31789OTRS SOAP Interface Unauthenticated Object Manipulation
high
31732McAfee Common Management Agent < 3.6.0.595 UDP Packet Handling Format String
high
31726Sympa Malformed Content-Type Header Remote DoS
medium
31725Sympa Detection
info
31720eggBlog _lib/user.php eb_login Function Cookie Handling SQL Injection
medium
31650my_gallery Plugin for e107 dload.php file Parameter Arbitrary File PHP Source Disclosure
medium
31649PHP 5.x < 5.2 Multiple Vulnerabilities
high
31646Custom Pages for Joomla! 'cpage' Parameter Local File Include
high
31643DNN (DotNetNuke) Upgrade Process ValidationKey Generation Weakness Privilege Escalation
high
31626Acajoom Component for Joomla! 'mailingid' Parameter SQLi
high
31608PHPAuction Multiple Script include_path Parameter File Inclusion
high
31606XOOPS Dictionary Module print.php id Parameter SQL Injection
high
31346MediaWiki JSON Callback Crafted API Request Information Disclosure
medium
31342netOffice Dwins demoSession Parameter Authentication Bypass
high
31299Centreon include/doc/get_image.php 'img' Parameter Traversal Arbitrary File Access
medium
31192Nukedit utilities/login.asp email Parameter SQL Injection
high
31191Hosting Controller hosting/addreseller.asp reseller Parameter Authentication Bypass
high
31167Sniplets Plugin for WordPress execute.php 'text' Parameter Arbitrary Command Execution
high
31137Coppermine Photo Gallery album Password Cookie SQL Injection
high
31134ListManager < 9.3b / 9.2c / 8.95d Multiple Vulnerabilities
medium
31116Dokeos main/inc/lib/events.lib.inc.php Referer HTTP Header SQL Injection
high
31098Default Password (changeme) for SHOUTcast Server Service Port
high
31095Joomla! 'mosConfig_absolute_path' Parameter Remote File Include
critical
31051osCommerce Customer Testimonials customer_testimonials.php testimonial_id Parameter SQL Injection
high
31048Cacti index.php/sql.php Login Action login_username Parameter SQL Injection
high
30253ExtremeZ-IP File and Print Server Zidget/HTTP Server Traversal Arbitrary File Access
medium
30216F5 BIG-IP Web Management Interface Version
info
30211Symantec Backup Exec System Recovery Manager FileUpload Class Unauthorized File Upload
critical
30208Ipswitch WS_FTP Server Manager /WSFTPSVR/FTPLogServer/LogViewer.asp Authentication Bypass
medium
30151AkoGallery Component for Mambo / Joomla! 'id' Parameter SQLi
high
30132Coppermine imageObjectIM.class.php Command Execution Vulnerabilities
high
30131SQLiteManager confirm.php spaw_root Parameter Remote File Inclusion
medium
30129WordPress AdServe 'adclick.php' 'id' Parameter SQL Injection
high
30124Smart Publisher index.php filedata Parameter Arbitrary Command Execution
high
30110Mambo MOStlyCE Mambot Arbitrary File Rename
medium
30109WordPress fGallery 'fim_rss.php' 'album' Parameter SQL Injection
high
30108vTiger CRM Directory File Disclosure
medium
30107CandyPress Store admin/utilities_ConfigHelp.asp helpfield Parameter SQL Injection
high
30056ManageEngine Applications Manager Invalid URL Remote Information Disclosure
medium
30055MoinMoin MOIN_ID Cookie userform Action Traversal Arbitrary File Overwrite
high
30054YaBB SE Cookie Authentication Bypass
high
30053Kayako SupportSuite syncml/index.php Direct Request Remote Information Disclosure
medium
30052boastMachine mail.php id Parameter SQL Injection
high
30021BitDefender Update Server HTTP Request Traversal Arbitrary File Access
high
29996MyBB forumdisplay.php 'sortby' Parameter Arbitrary PHP Code Execution
high
29995Pixelpost index.php parent_id Parameter SQL Injection
medium
29981X7 Chat index.php day Parameter SQL Injection
high