Complete Client Management and Billing script version 1.0.1 suffers from a remote SQL injection vulnerability.
81828d960033854d8be40ae6aaf8b6e90387b6315ab6ce7832ebf979e63a6073
The profile.callofduty.com site suffers from a cross site scripting vulnerability.
51263e977736c214f93598fe8b0a3642fb0f7d1eef0ba388f7b6cd5f02a5503b
Blogspot suffers from a cross site scripting vulnerability.
3087ca1250acb62189df6b2bd039fb5fa6c93eb981f58ed40720f9da803aa3e3
Secunia Security Advisory - loneferret has discovered a vulnerability in Xeams, which can be exploited by malicious people to conduct script insertion attacks.
8b783fab3c869b15f87c49ebe8765b32a51431b0ba60dc51f433a48d321d6fbb
Secunia Security Advisory - loneferret has reported a vulnerability in Mailtraq, which can be exploited by malicious people to conduct script insertion attacks.
0fed1f091fa8e947c49a2bc8ed348237c9dd70c2ba8826e594dbf58a285edf86
Secunia Security Advisory - Some vulnerabilities have been reported in Ruby on Rails, which can be exploited by malicious people to conduct cross-site scripting attacks.
73a4623371bb5930237c1d264471f5292083a3abea74ab2f2555ea019bec6114
Secunia Security Advisory - SUSE has issued an update for mono-web. This fixes a vulnerability, which can be exploited by malicious people to conduct cross-site scripting attacks.
c7ec293d9a2c63f2ddd7890d27c56731caa5facf004b7ead2c05c536a0941523
Secunia Security Advisory - Nafsh has discovered two vulnerabilities in Flogr, which can be exploited by malicious people to conduct cross-site scripting attacks.
d4e5153c7b708b38ef3c37f94e104c1ddd204e5179ece0850fa934cbebbe4529
Secunia Security Advisory - A vulnerability has been discovered in AXIGEN Mail Server, which can be exploited by malicious people to conduct script insertion attacks.
0c19eb8662b8e56da99ea4b27a332a82d3e7adba40fddd0d91eca3e3e9f08b68
Secunia Security Advisory - A vulnerability has been discovered in WinWebMail Server, which can be exploited by malicious people to conduct script insertion attacks.
2ef03786aabafc7ae4047d0cbed5a0232cf95609bd8294225cb171dcaceab0f6
Secunia Security Advisory - A vulnerability has been reported in the Better Revisions module for Drupal, which can be exploited by malicious users to conduct script insertion attacks.
f62062aede512bc747cdd5d29b74e01315eac8fffe61038b2bbc21406cf8c3c7
Secunia Security Advisory - A vulnerability has been reported in the Shorten URLs module for Drupal, which can be exploited by malicious users to conduct script insertion attacks.
76acf0912fd1bef511287486226dc7a54eae854d0dfaacb2cde4ba270633690f
Secunia Security Advisory - Vulnerability Lab has reported multiple vulnerabilities in Flynax General Classified, which can be exploited by malicious people to conduct cross-site scripting attacks.
ea2046e54cbc1fcf2a1df252d1785cdeff47ba79e26a5ef605e9aebef7a9ee60
Secunia Security Advisory - L0n3ly-H34rT has discovered multiple vulnerabilities in ProQuiz, which can be exploited by malicious users to conduct SQL injection attacks and compromise a vulnerable system and by malicious people to conduct cross-site scripting and SQL injection attacks.
4f46f52e9700c26bb4c944fc5835625d34059a3b1db17689a17c41ec57cf71a5
InterPhoto Image Gallery version 2.5.1 suffers from a cross site scripting vulnerability.
c0eee9371e9f66cbc2a99e66b0ebc0da116ec82ae2d3ee2b16ada2292169ebdf
Flynax General Classifieds version 4.0 suffers from remote SQL injection and cross site scripting vulnerabilities.
db1f2f313b482036bc130944faf4a29255e2a709435bf33a8280a2f78217792f
Mandriva Linux Security Advisory 2012-129 - The decompress function in ncompress allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via crafted data that leads to a buffer underflow. A missing DHCP option checking / sanitization flaw was reported for multiple DHCP clients. This flaw may allow DHCP server to trick DHCP clients to set e.g. system hostname to a specially crafted value containing shell special characters. Various scripts assume that hostname is trusted, which may lead to code execution when hostname is specially crafted. Additionally for Mandriva Enterprise Server 5 various problems in the ka-deploy and uClibc packages was discovered and fixed with this advisory. The updated packages have been patched to correct these issues. The wrong set of packages was sent out with the MDVSA-2012:129 advisory that lacked the fix for CVE-2006-1168. This advisory provides the correct packages.
c7875eb533c9d6beb3425c1a97fe6ed841b9a1c6086b68f13fd555c85ebb7760
Mandriva Linux Security Advisory 2012-129 - The decompress function in ncompress allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via crafted data that leads to a buffer underflow. A missing DHCP option checking / sanitization flaw was reported for multiple DHCP clients. This flaw may allow DHCP server to trick DHCP clients to set e.g. system hostname to a specially crafted value containing shell special characters. Various scripts assume that hostname is trusted, which may lead to code execution when hostname is specially crafted. Additionally for Mandriva Enterprise Server 5 various problems in the ka-deploy and uClibc packages was discovered and fixed with this advisory. The updated packages have been patched to correct these issues.
741a2545d765d1e9854cdcbf178dc20b6ca0f8fc1357ad76b6a268fa5cadabc4
WordPress Quick Post Widget version 1.9.1 suffers from multiple cross site scripting vulnerabilities.
c53903954e7e0f91b85b053b9af5e6097aaa459c1caeadd1de76de9bde6c66de
MIRC.net suffers from a cross site scripting vulnerability.
388573ab59f60d7f1ae307dc1529d37c0037eaa6e8bf9d907d014600b04a8936
commondatastorage.googleapis.com suffers from a cross site scripting vulnerability.
b0468c0de584c36500a92a6bfebb5cbd4017f2cdbdb1ab0e274d0531bdf70696
Galaxyscript / Daddy's File Host suffers from a local file inclusion vulnerability.
dadc66f671c78f98d5dcbdb371da58bd934ef63cab387184d201aa285b6d4453
www.manutd.com suffers from a cross site scripting vulnerability.
b93e7db422e3d4e0a24dc9704910e5058851a6c5c6f50e64a456dc615b7614cf
Various mynet.com sites suffer from a cross site scripting vulnerability.
313120e7301950a799a15a3cf6ad10e07d7ebc177f2a7e037a399b89b05cb1f6
Mandriva Linux Security Advisory 2012-128 - A stack-based buffer overflow flaw was found in the way bash, the GNU Bourne Again shell, expanded certain /dev/fd file names when checking file names and evaluating /dev/fd file names in conditional command expressions. A remote attacker could provide a specially-crafted Bash script that, when executed, would cause the bash executable to crash. Additionally the official patches 011 to 037 for bash-4.2 has been applied which resolves other issues found, including the CVE-2012-3410 vulnerability.
ded651ae3fb8a40f05143e18cd58c2e666fadd104e5caa2a2f8e3f23bba5151f
Flogr versions 2.5.6 and 2.3 suffer from cross site scripting vulnerabilities.
e563a6e62d273e7156eaf1960998c6211c0640e0fbec4ba1516ffb8425c37086