PHP-Nuke <= 7.9 Journal module (search.php) "forwhat" SQL Injection vulnerability

2006-10-31 Thread paisterist . nst
/* [N]eo [S]ecurity [T]eam [NST] - Advisory 29 - 2006-10-31 Program: PHP-Nuke Homepage: http://www.php.net Vulnerable Versions: PHP-Nuke <= 7.9 Risk: Medium Impact: Medium Risk -==PHP-

-==PHP Nuke <= 7.9 SQL Injection and Bypass SQL Injection Protection vulnerabilities==-

2006-10-23 Thread paisterist . nst
/* [N]eo [S]ecurity [T]eam [NST] - Advisory 27 - 2006-10-22 Program: PHP Nuke Homepage: http://www.php.net Vulnerable Versions: PHP Nuke <= 7.9 Risk: High! Impact: Critical Risk -==PHP

PHP open_basedir with symlink() function Race Condition PoC exploit

2006-10-09 Thread paisterist . nst
/* [N]eo [S]ecurity [T]eam [NST] - Advisory #26 - 09/10/06 Program: PHP Homepage: http://www.php.net Vulnerable Versions: PHP 3, 4, 5 Risk: High! Impact: Critical Risk -==PHP open_base

PHP Live! <= 3.1 help.php Remote File Inclusion vulnerability

2006-10-07 Thread paisterist . nst
/* [N]eo [S]ecurity [T]eam [NST] - Advisory #25 - 08/10/06 Program: PHP Live! Homepage: http://www.phplivesupport.com/ Vulnerable Versions: 3.1 and prior Risk: High! Impact: Critical Ri

Graffiti Forums v1.0 SQL Injection Vulnerabilities

2006-07-10 Thread paisterist . nst
/* [N]eo [S]ecurity [T]eam [NST] - Advisory #24 - 08/07/06 Program: Graffiti Forums Homepage: http://www.bluedojo.com/ Vulnerable Versions: 1.0. Risk: High! Impact: Critical Ris

PBL Guestbook <= 1.32 XSS & SQL Querys Vulnerabilities

2006-07-07 Thread paisterist . nst
/* [N]eo [S]ecurity [T]eam [NST]? - Advisory #23 - 07/07/06 Program: PBL Guestbook Homepage: www.pixelatedbylev.com Vulnerable Versions: 1.32 and lower. Risk: High! Impact: Crit

Pixel Post Multiple Vulnerabilities

2006-03-04 Thread paisterist . nst
/* [N]eo [S]ecurity [T]eam [NST] - Advisory #19 - 04/03/06 Program: Pixel Post Homepage: http://www.pixelpost.org/ Vulnerable Versions: 1.4.3, 1.5 beta1 and possibly lower versions. Ris

phpBB <= 2.0.19 Multiple DoS vulnerabilities

2006-03-04 Thread paisterist . nst
/* [N]eo [S]ecurity [T]eam [NST]® - Advisory #18 - 03/03/06 Program: phpBB Homepage: http://www.phpbb.com Vulnerable Versions: All phpBB versions Risk: High Risk!! Impact: Multiple DoS

Invision Power Board 2.1.4 Multiple Vulnerabilities

2006-02-22 Thread paisterist . nst
/* [N]eo [S]ecurity [T]eam [NST]® - Advisory #16 - 18/02/06 Program: Invision Power Board 2.1.4 Homepage: http://www.invisionboard.com Vulnerable Versions: 2.1.4 & Lower versions Risk: