[ECHO_ADV_97$2008] Pre News Manager <= 1.0 (index.php id) Sql Injection Vulnerability

2008-06-16 Thread erdc
ECHO_ADV_97$2008 - [ECHO_ADV_97$2008] Pre News Manager <= 1.0 (index.php id) Sql Injection Vulnerability - Author :

[ECHO_ADV_98$2008] Pre Ads Portal <= 2.0 Sql Injection Vulnerability

2008-06-16 Thread erdc
ECHO_ADV_98$2008 - [ECHO_ADV_98$2008] Pre Ads Portal <= 2.0 Sql Injection Vulnerability - Author : M.Hasran A

[ECHO_ADV_96$2008] HiveMaker Professional <= 1.0.2 (cid) Sql Injection Vulnerability

2008-06-02 Thread erdc
ECHO_ADV_96$2008 - [ECHO_ADV_96$2008] HiveMaker Professional <= 1.0.2 (cid) Sql Injection Vulnerability - Author

[ECHO_ADV_93$2008] Kmita Tellfriend <= 2.0 (file) Remote File Inclusion Vulnerability

2008-05-05 Thread erdc
ECHO_ADV_93$2008 - [ECHO_ADV_93$2008] Kmita Tellfriend <= 2.0 (file) Remote File Inclusion Vulnerability - Author

[ECHO_ADV_94$2008] Kmita Mail <= 3.0 (file) Remote File Inclusion Vulnerability

2008-05-05 Thread erdc
ECHO_ADV_94$2008 - [ECHO_ADV_94$2008] Kmita Mail <= 3.0 (file) Remote File Inclusion Vulnerability - Author

[ECHO_ADV_90$2008] PostNuke Module pnEncyclopedia <= 0.2.0 (id) Blind Sql Injection Vulnerability

2008-05-05 Thread erdc
ECHO_ADV_90$2008 - [ECHO_ADV_90$2008] PostNuke Module pnEncyclopedia <= 0.2.0 (id) Blind Sql Injection Vulnerability -

[ECHO_ADV_95$2008] BackLinkSpider (cat_id) Blind Sql Injection Vulnerability

2008-05-05 Thread erdc
ECHO_ADV_95$2008 - [ECHO_ADV_95$2008] BackLinkSpider (cat_id) Blind Sql Injection Vulnerability - Author : M.

[ECHO_ADV_92$2008] Anserv Auction XL (viewfaqs.php cat) Blind Sql Injection Vulnerability

2008-05-05 Thread erdc
ECHO_ADV_92$2008 - [ECHO_ADV_92$2008] Anserv Auction XL (viewfaqs.php cat) Blind Sql Injection Vulnerability - Autho

[ECHO_ADV_91$2008] Online Rental Property Script <= 4.5 (pid) Blind Sql Injection Vulnerability

2008-05-05 Thread erdc
ECHO_ADV_91$2008 - [ECHO_ADV_91$2008] Online Rental Property Script <= 4.5 (pid) Blind Sql Injection Vulnerability -

[ECHO_ADV_89$2008] Softbiz Web Host Directory Script (search_result.php host_id) Blind Sql Injection Vulnerability

2008-04-28 Thread erdc
ECHO_ADV_89$2008 - [ECHO_ADV_89$2008] Softbiz Web Host Directory Script (search_result.php host_id) Blind Sql Injection Vulnerability

[ECHO_ADV_88$2008] Prozilla Hosting Index (directory.php cat_id) Blind Sql Injection Vulnerability

2008-04-28 Thread erdc
ECHO_ADV_88$2008 - [ECHO_ADV_88$2008] Prozilla Hosting Index (directory.php cat_id) Blind Sql Injection Vulnerability

[ECHO_ADV_86$2007] Mambo/Joomla Component rsgallery <= 2.0 beta 5 (catid) Remote SQL Injection Vulnerability

2007-12-05 Thread erdc
ECHO_ADV_86$2007 - [ECHO_ADV_86$2007] Mambo/Joomla Component rsgallery <= 2.0 beta 5 (catid) Remote SQL Injection Vulnerability --

[ECHO_ADV_85$2007] alstrasoft E-Friends <= 4.98 (seid) Multiple Remote SQL Injection Vulnerabilities

2007-11-22 Thread erdc
ECHO_ADV_85$2007 - [ECHO_ADV_85$2007] alstrasoft E-Friends <= 4.98 (seid) Multiple Remote SQL Injection Vulnerabilities -

[ECHO_ADV_84$2007] ProfileCMS <= 1.0 Remote SQL Injection Vulnerability

2007-11-19 Thread erdc
ECHO_ADV_84$2007 - [ECHO_ADV_84$2007] ProfileCMS <= 1.0 Remote SQL Injection Vulnerability - Author : M.Hasra

[ECHO_ADV_83$2007] PhpHostBot <= 1.06 (svr_rootscript) Remote File Inclusion Vulnerability

2007-08-09 Thread erdc
ECHO_ADV_83$2007 - [ECHO_ADV_83$2007] PhpHostBot <= 1.06 (svr_rootscript) Remote File Inclusion Vulnerability - Author

[ECHO_ADV_82$2007] wordpress plugins wp-Table <= 1.43 (wpPATH) Remote File Inclusion Vulnerability

2007-05-02 Thread erdc
- [ECHO_ADV_82$2007] wordpress plugins wp-Table <= 1.43 (wpPATH) Remote File Inclusion Vulnerability - Author : M

[ECHO_ADV_81$2007] wordpress plugins wordTube <= 1.43 (wpPATH) Remote File Inclusion Vulnerability

2007-05-02 Thread erdc
- [ECHO_ADV_81$2007] wordpress plugins wordTube <= 1.43 (wpPATH) Remote File Inclusion Vulnerability - Author : M

[ECHO_ADV_80$2007] Softerra Time-Assistant <= 6.2 (inc_dir) Remote File Inclusion Vulnerability

2007-03-30 Thread erdc
- [ECHO_ADV_80$2007] Softerra Time-Assistant <= 6.2 (inc_dir) Remote File Inclusion Vulnerability - Author : M.Ha

[ECHO_ADV_78$2007] C-Arbre <= 0.6PR7 (root_path) Remote File Inclusion Vulnerability

2007-03-27 Thread erdc
ECHO_ADV_78$2007 - [ECHO_ADV_78$2007] C-Arbre <= 0.6PR7 (root_path) Remote File Inclusion Vulnerability - Author

[ECHO_ADV_77$2007] Study planner (Studiewijzer) <= 0.15 Remote File Inclusion Vulnerability

2007-03-22 Thread erdc
ECHO_ADV_77$2007 - [ECHO_ADV_77$2007] Study planner (Studiewijzer) <= 0.15 Remote File Inclusion Vulnerability - Author

[ECHO_ADV_76$2007] Company WebSite Builder PRO (INCLUDE_PATH) Remote File Inclusion Vulnerability

2007-03-15 Thread erdc
-o @irc.dal.net --- Contact: ~ EcHo Research & Development Center http://advisories.echo.or.id erdc[at]echo[dot]or[dot]id the_day[at]echo[dot]or[dot]id [ EOF ]--

[ECHO_ADV_75$2007] Groupit 2.00b5 (c_basepath) Remote File Inclusion Vulnerability

2007-03-15 Thread erdc
rc.dal.net --- Contact: ~ EcHo Research & Development Center http://advisories.echo.or.id erdc[at]echo[dot]or[dot]id the_day[at]echo[dot]or[dot]id [ EOF ]--

[ECHO_ADV_71$2007] AMP v3.2 (base_path) Remote File Inclusion Vulnerability

2007-03-14 Thread erdc
p; Development Center http://advisories.echo.or.id erdc[at]echo[dot]or[dot]id the_day[at]echo[dot]or[dot]id [ EOF ]--

[ECHO_ADV_72$2007] CARE2X (root_path) Remote File Inclusion Vulnerability

2007-03-14 Thread erdc
~ #aikmel - #e-c-h-o @irc.dal.net --- Contact: ~~~ EcHo Research & Development Center http://advisories.echo.or.id erdc[at]echo[dot]or[dot]id the_day[at]echo[dot]or[dot]id [ EOF ]--

[ECHO_ADV_74$2007] WebCreator <= 0.2.6-rc3 (moddir) Remote File Inclusion Vulnerability

2007-03-14 Thread erdc
dvisories.echo.or.id erdc[at]echo[dot]or[dot]id the_day[at]echo[dot]or[dot]id [ EOF ]--

[ECHO_ADV_69$2007] OES (Open Educational System) 0.1beta Remote File Inclusion Vulnerability

2007-03-13 Thread erdc
- [ECHO_ADV_69$2007] OES (Open Educational System) 0.1beta Remote File Inclusion Vulnerability - Author : M.Hasra

[ECHO_ADV_73$2007] MySQL Commander <= 2.7 (home) Remote File Inclusion Vulnerability

2007-03-13 Thread erdc
- [ECHO_ADV_73$2007] MySQL Commander <= 2.7 (home) Remote File Inclusion Vulnerability - Author : M.Hasran Addahr

[ECHO_ADV_68$2007] PMB Services <= 3.0.13 Multiple Remote File Inclusion Vulnerability

2007-03-10 Thread erdc
- [ECHO_ADV_68$2007] PMB Services <= 3.0.13 Multiple Remote File Inclusion Vulnerability - Author : M.Hasran Adda

[ECHO_ADV_67$2007] WEBO (Web Organizer) <= 1.0 (baseDir) Remote File Inclusion Vulnerability

2007-03-09 Thread erdc
ECHO_ADV_67$2007 - [ECHO_ADV_67$2007] WEBO (Web Organizer) <= 1.0 (baseDir) Remote File Inclusion Vulnerability - Author

[ECHO_ADV_66$2007] SendStudio <= 2004.14 Remote File Inclusion Vulnerability

2007-02-22 Thread erdc
ECHO_ADV_66$2007 - [ECHO_ADV_66$2007] SendStudio <= 2004.14 Remote File Inclusion Vulnerability - Author : M.Hasr

[ECHO_ADV_61_2006] a-ConMan <= v3.2beta Remote File Inclusion

2006-11-23 Thread erdc
-- [ECHO_ADV_61$2006] a-ConMan <= v3.2beta Remote File Inclusion -- Author : Ahmad Maulana a.k.a Matdhule Date Found : November, 22n

[ECHO_ADV_60_2006] OpenEMR <=2.8.1 Multiple Remote File Inclusion Vulnerability

2006-11-06 Thread erdc
--- [ECHO_ADV_60$2006] OpenEMR <=2.8.1 Multiple Remote File Inclusion Vulnerability --- Author : Dedi Dwi

[ECHO_ADV_59_2006]Agora 1.4 RC1 "$_SESSION[PATH_COMPOSANT]" Remote File Inclusion Vulnerability

2006-11-06 Thread erdc
--- [ECHO_ADV_59$2006]Agora 1.4 RC1 "$_SESSION[PATH_COMPOSANT]" Remote File Inclusion Vulnerability --- Author

[ECHO_ADV_58_2006]Cyberfolio <=2.0 RC1 $av Remote File Inclusion Vulnerability

2006-11-06 Thread erdc
--- [ECHO_ADV_58$2006]Cyberfolio <=2.0 RC1 $av Remote File Inclusion Vulnerability --- Author : Dedi Dwi

[ECHO_ADV_57_2006]Soholaunch Pro <=4.9 r36 Multiple Remote File Inclusion Vulnerability

2006-11-06 Thread erdc
--- [ECHO_ADV_57$2006]Soholaunch Pro <=4.9 r36 Multiple Remote File Inclusion Vulnerability --- Author :

[ECHO_ADV_53$2006] QnECMS <= 2.5.6 (adminfolderpath) Remote File Inclusion Vulnerability

2006-10-30 Thread erdc
ECHO_ADV_53$2006 - [ECHO_ADV_53$2006] QnECMS <= 2.5.6 (adminfolderpath) Remote File Inclusion Vulnerability - Author

[ECHO_ADV_46$2006] P-Book <= 1.17 (pb_lang) Remote File Inclusion

2006-10-18 Thread erdc
ECHO_ADV_56$2006 - [ECHO_ADV_46$2006] P-Book <= 1.17 (pb_lang) Remote File Inclusion -- Author : Ahmad Maulana a.k.a Matdhule Date Found

[ECHO_ADV_55$2006]Phpmybibli <=2.1 Multiple Remote File Inclusion Vulnerability

2006-10-17 Thread erdc
ECHO_ADV_55$2006 --- [ECHO_ADV_55$2006]Phpmybibli <=2.1 Multiple Remote File Inclusion Vulnerability --- Autho

[ECHO_ADV_54$2006]vtiger CRM <=4.2 (calpath) Multiple Remote File Inclusion Vulnerability

2006-10-10 Thread erdc
ECHO_ADV_54$2006 --- [ECHO_ADV_54$2006]vtiger CRM <=4.2 (calpath) Multiple Remote File Inclusion Vulnerability -

[ECHO_ADV_52$2006]OpenDock Easy Gallery <=1.4 (doc_directory) Multiple Remote File Inclusion Vulnerability

2006-10-09 Thread erdc
ECHO_ADV_52$2006 --- [ECHO_ADV_52$2006]OpenDock Easy Gallery <=1.4 (doc_directory) Multiple Remote File Inclusion Vulnerability -

[ECHO_ADV_48$2006] WebYep <= 1.1.9 (webyep_sIncludePath) Multiple Remote File Inclusion Vulnerability

2006-10-09 Thread erdc
ECHO_ADV_48$2006 --- [ECHO_ADV_48$2006] WebYep <= 1.1.9 (webyep_sIncludePath) Multiple Remote File Inclusion Vulnerability --

[ECHO_ADV_51$2006] docmint <= 2.0 (MY_ENV[BASE_ENGINE_LOC]) Remote File Inclusion Vulnerability

2006-10-09 Thread erdc
ECHO_ADV_51$2006 - [ECHO_ADV_51$2006] docmint <= 2.0 (MY_ENV[BASE_ENGINE_LOC]) Remote File Inclusion Vulnerability - Aut

[ECHO_ADV_50$2006]OpenDock Easy Blog <=1.4 (doc_directory) Multiple Remote File Inclusion Vulnerability

2006-10-09 Thread erdc
ECHO_ADV_50$2006 --- [ECHO_ADV_50$2006]OpenDock Easy Blog <=1.4 (doc_directory) Multiple Remote File Inclusion Vulnerability

[ECHO_ADV_49$2006]OpenDock Easy Doc <=1.4 (doc_directory) Multiple Remote File Inclusion Vulnerability

2006-10-09 Thread erdc
ECHO_ADV_49$2006 --- [ECHO_ADV_49$2006]OpenDock Easy Doc <=1.4 (doc_directory) Multiple Remote File Inclusion Vulnerability -

[ECHO_ADV_46$2006] ExBB v1.9.1 (exbb[home_path]) Multiple Remote File Inclusion

2006-08-31 Thread erdc
ECHO.OR.ID -- [ECHO_ADV_46$2006] ExBB v1.9.1 (exbb[home_path]) Multiple Remote File Inclusion -- Author : Ahmad Maulana a.k.a Matdhul

[ECHO_ADV_45$2006] WEBinsta CMS 0.3.1 (templates_dir) Remote File Inclusion Vulnerability

2006-08-14 Thread erdc
ECHO_ADV_45$2006 - [ECHO_ADV_45$2006] WEBinsta CMS 0.3.1 (templates_dir) Remote File Inclusion Vulnerability - Autho

[ECHO_ADV_44$2006] PHP Simple Shop <= 2.0 (abs_path) Remote File Inclusion

2006-08-07 Thread erdc
ECHO_ADV_44$2006 -- [ECHO_ADV_44$2006] PHP Simple Shop <= 2.0 (abs_path) Remote File Inclusion -- Author : Ahmad Maulana a.k.a Matdh

[ECHO_ADV_42$2006] BufferOverflow in Eremove Client

2006-08-04 Thread erdc
\_ _/\_ ___ \ / | \\_ \ |__)_ /\ \//~\/ | \ |\\ \___\Y/|\ /___ / \__ /\___|_ /\___ / \/ \/ \/ \/ .OR.ID ECHO_ADV_42$2006 ---