Re: phpinfo() XSS Vulnerability

2010-03-08 Thread Salvatore Fresta aka Drosophila
I tested it with php 5.1.6 and 5.2.6 and seems not work. The request_uri's content is encoded before to be printed: /phpinfo.php?+%3CScRipT%3Ealert(011100110110010101100011011101010111001001101001011101000001);%3C/sCrIpT%3E+ -- Salvatore Fresta aka Drosophila http://www.salvatorefrest

MX Simulator Server 2010-02-06 Remote Buffer Overflow PoC

2010-03-23 Thread Salvatore Fresta aka Drosophila
MX Simulator Server is affected by a remote stack overflow. This bug was found by Luigi Auriemma. A Proof of Concept can be found on the following link: http://www.salvatorefresta.net/files/poc/PoC-MXSimulatorServer2010-02-06.zip -- Salvatore Fresta aka Drosophila http

Re: Vulnerabilities in WeBAM

2010-03-25 Thread Salvatore Fresta aka Drosophila
Are they the same bugs reported by you in a previous e-mail with subject "Vulnerabilities in CaptchaSecurityImages" ? -- Salvatore Fresta aka Drosophila http://www.salvatorefresta.net CWNP444351

Re: [Suspected Spam]New vulnerabilities in CMS SiteLogic

2010-04-20 Thread Salvatore Fresta aka Drosophila
d to know the access to the control panel). Many web hosting provider doesn't allow an user to execute commands using the classic functions, such as system, shell_execute and others. -- Salvatore Fresta aka Drosophila http://www.salvatorefresta.net CWNP444351

New vulnerabilities in CMS SiteLogic

2010-04-26 Thread Salvatore Fresta aka Drosophila
e that can be used to execute commands or other operations on the target server, but it isn't a direct command execution vulnerability, understand? The my is only a clarification. -- Salvatore Fresta aka Drosophila http://www.salvatorefresta.net CWNP444351

Family Connections 2.2.3 Multiple Remote Vulnerabilities

2010-05-10 Thread Salvatore Fresta aka Drosophila
-- Salvatore Fresta aka Drosophila http://www.salvatorefresta.net CWNP444351 Family Connections 2.2.3 Multiple Remote Vulnerabilities Name Family Connections Vendorhttp://www.familycms.com Versions Affected 2.2.3 AuthorSalvatore Fresta aka Drosophila

Re: Vulnerabilities in Sebo - webstore

2010-05-11 Thread Salvatore Fresta aka Drosophila
ntf C function, will you send an e-mail for each software that uses it? A friendly advice for the future: more information about the bugs and fewer links to your site. -- Salvatore Fresta aka Drosophila http://www.salvatorefresta.net CWNP444351

Re: Vulnerabilities in Sebo - webstore

2010-05-11 Thread Salvatore Fresta aka Drosophila
ges.php. > Still the same "bugs"?! A question: if you find (ad absurdum) a bug in the printf C function, will you send an e-mail for each software that uses it? -- Salvatore Fresta aka Drosophila http://www.salvatorefresta.net CWNP444351

REVISION: iScripts EasySnaps 2.0 Multiple SQL Injection Vulnerabilities

2010-07-02 Thread Salvatore Fresta aka Drosophila
iScripts EasySnaps 2.0 Multiple SQL Injection Vulnerabilities Name iScripts EasySnaps Vendorhttp://www.iscripts.com Versions Affected 2.0 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact

iScripts ReserveLogic 1.0 SQL Injection Vulnerability

2010-07-02 Thread Salvatore Fresta aka Drosophila
iScripts ReserveLogic 1.0 SQL Injection Vulnerability Name iScripts ReserveLogic Vendorhttp://www.iscripts.com Versions Affected 1.0 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact

iScripts CyberMatch 1.0 Blind SQL Injection Vulnerability

2010-07-02 Thread Salvatore Fresta aka Drosophila
-- Salvatore Fresta aka Drosophila http://www.salvatorefresta.net CWNP444351 iScripts CyberMatch 1.0 Blind SQL Injection Vulnerability Name iScripts CyberMatch Vendorhttp://www.iscripts.com Versions Affected 1.0 AuthorSalvatore Fresta aka Drosophila

iScripts SocialWare 2.2.x Multiple Remote Vulnerability

2010-07-05 Thread Salvatore Fresta aka Drosophila
iScripts SocialWare 2.2.x Multiple Remote Vulnerability Name iScripts SocialWare Vendorhttp://www.iscripts.com Versions Affected 2.2.x AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact

iScripts MultiCart 2.2 Multiple SQL Injection Vulnerability

2010-07-05 Thread Salvatore Fresta aka Drosophila
iScripts MultiCart 2.2 Multiple SQL Injection Vulnerability Name iScripts MultiCart Vendorhttp://www.iscripts.com Versions Affected 2.2 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact

Canteen Joomla Component 1.0 Multiple Remote Vulnerabilities

2010-07-05 Thread Salvatore Fresta aka Drosophila
Canteen Joomla Component 1.0 Multiple Remote Vulnerabilities Name Canteen Vendorhttp://www.miniwork.eu Versions Affected 1.0 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact salvatorefresta [at

ArtForms 2.1b7.2 RC2 Joomla Component Multiple Remote Vulnerabilities

2010-07-07 Thread Salvatore Fresta aka Drosophila
ArtForms 2.1b7.2 RC2 Joomla Component Multiple Remote Vulnerabilities Name ArtForms Vendorhttp://joomlacode.org/gf/project/jartforms/ Versions Affected 2.1b7.2 RC2 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net

Sandbox 2.0.3 Multiple Remote Vulnerabilities

2010-07-07 Thread Salvatore Fresta aka Drosophila
Sandbox 2.0.3 Multiple Remote Vulnerabilities Name Sandbox Vendorhttp://www.iguanadons.net Versions Affected 2.0.3 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact salvatorefresta [at] gmail [dot

RedShop 1.0.23.1 Joomla Component Blind SQL Injection Vulnerability

2010-07-16 Thread Salvatore Fresta aka Drosophila
RedShop 1.0.23.1 Joomla Component Blind SQL Injection Vulnerability Name RedShop Vendorhttp://redweb.dk Versions Affected 1.0.23.1 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact salvatorefresta

WhiteBoard 0.1.30 Multiple Blind SQL Injection Vulnerabilities

2010-07-26 Thread Salvatore Fresta aka Drosophila
WhiteBoard 0.1.30 Multiple Blind SQL Injection Vulnerabilities Name WhiteBoard Vendorhttp://sarosoftware.com Versions Affected 0.1.30 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact

TTVideo 1.0 Joomla Component SQL Injection Vulnerability

2010-07-27 Thread Salvatore Fresta aka Drosophila
TTVideo 1.0 Joomla Component SQL Injection Vulnerability Name TTVideo Vendorhttp://www.toughtomato.com Versions Affected 1.0 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact salvatorefresta [at

Appointinator 1.0.1 Joomla Component Multiple Remote Vulnerabilities

2010-07-28 Thread Salvatore Fresta aka Drosophila
Appointinator 1.0.1 Joomla Component Multiple Remote Vulnerabilities Name Appointinator Vendorhttp://appointinator.chemeia.info Versions Affected 1.0.1 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact

PhotoMap Gallery 1.6.0 Joomla Component Multiple Blind SQL Injection

2010-07-28 Thread Salvatore Fresta aka Drosophila
PhotoMap Gallery 1.6.0 Joomla Component Multiple Blind SQL Injection Name PhotoMap Gallery Vendorhttp://photoindochina.com Versions Affected 1.6.0 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact

PBBooking 1.0.4_3 Joomla Component Multiple Blind SQL Injection

2010-07-29 Thread Salvatore Fresta aka Drosophila
PBBooking 1.0.4_3 Joomla Component Multiple Blind SQL Injection Name PBBooking Vendorhttp://sourceforge.net/projects/pbbooking/ Versions Affected 1.0.4_3 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact

Spielothek 1.6.9 Joomla Component Multiple Blind SQL Injection

2010-08-02 Thread Salvatore Fresta aka Drosophila
Spielothek 1.6.9 Joomla Component Multiple Blind SQL Injection Name Spielothek Vendorhttp://www.spielban.de Versions Affected 1.6.9 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact salvatorefresta

cgTestimonial 2.2 Joomla Component Multiple Remote Vulnerabilities

2010-08-09 Thread Salvatore Fresta aka Drosophila
cgTestimonial 2.2 Joomla Component Multiple Remote Vulnerabilities Name cgTestimonial Vendorhttp://www.cmsgalaxy.com Versions Affected 2.2 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact

Teams 1_1028_100809_1711 Joomla Component Multiple Blind SQL Injection Vulnerabilities

2010-08-10 Thread Salvatore Fresta aka Drosophila
Teams 1_1028_100809_1711 Joomla Component Multiple Blind SQL Injection Vulnerabilities Name Teams Vendorhttp://www.joomlamo.com Versions Affected 1_1028_100809_1711 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net

Amblog 1.0 Joomla Component Multiple SQL Injection Vulnerabilities

2010-08-10 Thread Salvatore Fresta aka Drosophila
Amblog 1.0 Joomla Component Multiple SQL Injection Vulnerabilities Name Amblog Vendorhttp://robitbt.hu Versions Affected 1.0 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact salvatorefresta [at

Jgrid 1.0 Joomla Component Local File Inclusion Vulnerability

2010-08-16 Thread Salvatore Fresta aka Drosophila
Jgrid 1.0 Joomla Component Local File Inclusion Vulnerability Name Jgrid Vendorhttp://datagrids.clubsareus.org Versions Affected 1.0 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact

Re: Re: Amblog 1.0 Joomla Component Multiple SQL Injection Vulnerabilities

2010-08-16 Thread Salvatore Fresta aka Drosophila
No, it isn't a good idea. You can use always Jrequest::getVar specifing the type (http://api.joomla.org/Joomla-Framework/Environment/JRequest.html#getVar). The allowed types are: INT, FLOAT, BOOLEAN, WORD, ALNUM, CMD, BASE64, STRING, ARRAY, PATH. Regards. -- Salvatore Fresta aka Droso

Biblioteca 1.0 Beta Joomla Component Multiple SQL Injection Vulnerabilities

2010-08-23 Thread Salvatore Fresta aka Drosophila
Biblioteca 1.0 Beta Joomla Component Multiple SQL Injection Vulnerabilities Name Biblioteca Vendorhttp://www.cielostellato.info Versions Affected 1.0 Beta AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact

TimeTrack 1.2.4 Joomla Component Multiple SQL Injection Vulnerabilities

2010-09-22 Thread Salvatore Fresta aka Drosophila
TimeTrack 1.2.4 Joomla Component Multiple SQL Injection Vulnerabilities Name TimeTrack Vendorhttp://www.itrn.de Versions Affected 1.2.4 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact

JE Guestbook 1.0 Joomla Component Multiple Remote Vulnerabilities

2010-09-30 Thread Salvatore Fresta aka Drosophila
JE Guestbook 1.0 Joomla Component Multiple Remote Vulnerabilities Name JE Guestbook Vendorhttp://www.joomlaextensions.co.in Versions Affected 1.0 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact

JS Calendar 1.5.1 Joomla Component Multiple Remote Vulnerabilities

2010-10-12 Thread Salvatore Fresta aka Drosophila
JS Calendar 1.5.1 Joomla Component Multiple Remote Vulnerabilities Name JS Calendar Vendorhttp://www.joomlaseller.com Versions Affected 1.5.1 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact

AlstraSoft E-Friends 4.96 Multiple Remote Vulnerabilities

2010-10-27 Thread Salvatore Fresta aka Drosophila
AlstraSoft E-Friends 4.96 Multiple Remote Vulnerabilities Name AlstraSoft E-Friends Vendorhttp://www.alstrasoft.com Versions Affected 4.96 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact

Revision: Audacity <= 1.3 Beta Multiple Local Vulnerabilities ===> Audacity <= 1.3 Beta DLL Hijacking Vulnerability

2010-11-01 Thread Salvatore Fresta aka Drosophila
Audacity <= 1.3 DLL Hijacking Vulnerability Name Audacity Vendorhttp://audacity.sourceforge.net Versions Affected <= 1.3 Beta Author Salvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact salvatorefres

Audacity <= 1.3 Beta Multiple Local Vulnerabilities

2010-11-01 Thread Salvatore Fresta aka Drosophila
Audacity <= 1.3 Beta Multiple Local Vulnerabilities Name Audacity Vendorhttp://audacity.sourceforge.net Versions Affected <= 1.3 Beta Author Salvatore Fresta aka Drosophila Website http://www.salvatorefresta.net C

Zen Cart 1.3.9h Local File Inclusion Vulnerability

2010-11-04 Thread Salvatore Fresta aka Drosophila
Zen Cart 1.3.9h Local File Inclusion Vulnerability Name Zen Cart Vendorhttp://www.zen-cart.com Versions Affected 1.3.9h AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact salvatorefresta [at] gmail

JQuarks4s Joomla Component 1.0.0 Blind SQL Injection Vulnerability

2010-11-09 Thread Salvatore Fresta aka Drosophila
JQuarks4s Joomla Component 1.0.0 Blind SQL Injection Vulnerability Name JQuarks4s Vendor http://www.iptechinside.com/labs/projects/list_files/jquarks-for-surveys Versions Affected 1.0.0 AuthorSalvatore Fresta aka Drosophila Website http

eBlog 1.7 Multiple SQL Injection Vulnerabilities

2010-11-10 Thread Salvatore Fresta aka Drosophila
eBlog 1.7 Multiple SQL Injection Vulnerabilities Name eBlog Vendorhttps://emuci.com Versions Affected 1.7 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact salvatorefresta [at] gmail [dot] com

Blink Blog System Authentication Bypass

2009-08-03 Thread Salvatore Fresta aka Drosophila
-- Salvatore Fresta aka drosophila CWNP444351 Salvatore "drosophila" Fresta [+] Application: Blink Blog System [+] Version: Unknown [+] Website: http://blogink.sourceforge.net [+] Bugs: [A] Authentication Bypass [+] Exploitation: Remote [+] Date: 0

Discloser 0.0.4-rc2 SQL Injection Vulnerability

2009-08-03 Thread Salvatore Fresta aka Drosophila
-- Salvatore Fresta aka drosophila CWNP444351 Salvatore "drosophila" Fresta [+] Application: Discloser [+] Version: 0.0.4-rc2 [+] Website: http://discloser.sourceforge.net/ [+] Bugs: [A] SQL Injection [+] Exploitation: Remote [+] Date: 21 Feb 2004 [+] Dis

Nullam Blog Multiple Remote Vulnerabilities

2009-09-10 Thread Salvatore Fresta aka Drosophila
-- Salvatore Fresta aka drosophila CWNP444351 Salvatore "drosophila" Fresta [+] Application: Nullam Blog [+] Version: 0.1.2 [+] Website: http://nullam.net/ [+] Bugs: [A] Local File Inclusion [B] File Disclosure [C] Multiple Blind SQL

T-HTB Manager Mutiple Blind SQL Injection

2009-09-10 Thread Salvatore Fresta aka Drosophila
0 Sep 2009 [+] Discovered by: Salvatore Fresta aka drosophila [+] Author: Salvatore Fresta aka drosophila [+] E-mail: drosophilaxxx [at] gmail.com *** [+] Menu 1) Bugs 2) Code 3) Fix *** [+] Bugs - [A] Mult

E-Store SQL Injection Vulnerability

2009-12-11 Thread Salvatore Fresta aka Drosophila
E-Store SQL Injection Vulnerability Name E-Store Vendorhttp://www.getaphpsite.com AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact salvatorefresta [at] gmail [dot] com Date 2009-09-03

Digital Scribe 1.4.1 Multiple SQL Injection Vulnerabilities

2009-12-11 Thread Salvatore Fresta aka Drosophila
Digital Scribe 1.4.1 Multiple SQL Injection Vulnerabilities Name Digital Scribe Vendorhttp://www.digital-scribe.org Versions Affected 1.4.1 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact

phpCollegeExchange 0.1.5c Multiple SQL Injection Vulnerabilities

2009-12-11 Thread Salvatore Fresta aka Drosophila
phpCollegeExchange 0.1.5c Multiple SQL Injection Vulnerabilities Name phpCollegeExchange Vendorhttp://phpcollegeex.sourceforge.net Versions Affected 0.1.5c AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact

Miniweb 2.0 Full Path Disclosure

2009-12-14 Thread Salvatore Fresta aka Drosophila
Miniweb 2.0 Full Path Disclosure Name Miniweb 2.0 Vendorhttp://www.miniweb2.com AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact salvatorefresta [at] gmail [dot] com Date 2009-12-12 X

B2C Booking Centre Systems - SQL Injection Vulnerability

2009-12-14 Thread Salvatore Fresta aka Drosophila
B2C Booking Centre Systems - SQL Injection Vulnerability Name B2D Booking Centre Systems Vendorhttp://www.bookingcentre.eu AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact salvatorefresta [at] gmail

WSCreator 1.1 Blind SQL Injection

2009-12-15 Thread Salvatore Fresta aka Drosophila
WSCreator 1.1 Blind SQL Injection Name WSCreator Vendorhttp://www.wscreator.com Versions Affected 1.1 AuthorSalvatore Fresta aka Drosophila Website http://www.salvatorefresta.net Contact salvatorefresta [at] gmail [dot] com Date

Family Connections <= 2.1.3 Multiple Remote Vulnerabilities

2009-12-16 Thread Salvatore Fresta aka Drosophila
Family Connections <= 2.1.3 Multiple Remote Vulnerabilities  Name              Family Connections  Vendor            http://www.familycms.com  Versions Affected <= 2.1.3  Author            Salvatore Fresta aka Drosophila  Website           http://www.salvatorefresta.net  C