CGI abuses Family for Nessus

IDNameSeverity
33823Plogger plog-download.php checked[] Parameter SQL Injection
medium
33822XAMPP Example Pages Detection
high
33821.svn/entries Disclosed via Web Server
medium
33811Symphony sym_auth Cookie SQL Injection
high
33789Coppermine Photo Gallery include/functions.inc.php _data Cookie lang Parameter Traversal Local File Inclusion
medium
33761Gregarius ajax.php rsargs[] Parameter Array SQL Injection
high
33546fuzzylime (cms) comssrss.php files[] Parameter Traversal Local File Inclusion
high
33532CGI::Session File Driver CGISESSID Cookie Traversal Authentication Bypass
medium
33483Maian Scripts Cookie Manipulation Authentication Bypass
high
33479Mambo < 4.6.5 mos_user_template Local File Inclusion
medium
33478Xerox CentreWare Web < 4.6.46 Multiple Vulnerabilities (XRX08-008)
medium
33446Dolphin Multiple Scripts Remote File Inclusion
medium
33445trixbox Dashboard user/index.php langChoice Parameter Local File Inclusion
high
33439Sun Java System ASP < 4.0.3 Multiple Vulnerabilities
critical
33437Sun Java ASP Server Default Admin Password
high
33391Wordtrans-web exec_wordtrans Function Arbitrary Command Execution
high
33274TrailScout Module For Drupal Session Cookie SQL Injection
high
33272nBill component for Joomla! 'cid' Parameter SQLi
high
33271Trac quickjump Search Script q Parameter Arbitrary Site Redirect
medium
33270ASP.NET DEBUG Method Enabled
medium
33269Ektron CMS400.NET WorkArea/ContentRatingGraph.aspx res Parameter SQL Injection
high
33103LifeType for Drupal (pLog) index.php albumId Parameter SQL Injection
high
32505AEC Subscription Manager Component for Mambo / Joomla! 'usage' Parameter SQLi
high
32475Symantec Backup Exec System Recovery Manager Traversal Arbitrary File Access
medium
32381ViewVC Direct Request CVSROOT Information Disclosure
medium
32325Site Documentation Module for Drupal Database Tables Access Content Permission Information Disclosure
high
32324Mantis manage_user_create.php CSRF New User Creation
medium
32318Web Site Cross-Domain Policy File Detection
info
32317DatsoGallery Component for Joomla! sub_votepic.php User-Agent HTTP Header SQLi
high
32124Webhosting Component for Joomla! 'catid' Parameter SQLi
high
32123PHP < 5.2.6 Multiple Vulnerabilities
high
32122ActualAnalyzer Lite style Parameter Traversal Local File Inclusion
medium
32080WordPress index.php 'cat' Parameter Local File Inclusion
medium
32032Red Hat Administration Server (redhat-ds-admin) Multiple Remote Vulnerabilities
high
32030XOOPS Article Module article.php id Parameter SQL Injection
high
31865WEBrick Encoded Traversal Arbitrary CGI Source Disclosure
medium
31860HP OpenView Network Node Manager OpenView5.exe Action Parameter Traversal Arbitrary File Access
medium
31859Coppermine Photo Gallery bridge/coppermine.inc.php Bridge Wizard Session Cookie SQL Injection
high
31790Site Sift Listings detail.php id Parameter SQL Injection
high
31789OTRS SOAP Interface Unauthenticated Object Manipulation
high
31732McAfee Common Management Agent < 3.6.0.595 UDP Packet Handling Format String
high
31726Sympa Malformed Content-Type Header Remote DoS
medium
31725Sympa Detection
info
31720eggBlog _lib/user.php eb_login Function Cookie Handling SQL Injection
medium
31650my_gallery Plugin for e107 dload.php file Parameter Arbitrary File PHP Source Disclosure
medium
31649PHP 5.x < 5.2 Multiple Vulnerabilities
high
31646Custom Pages for Joomla! 'cpage' Parameter Local File Include
high
31643DNN (DotNetNuke) Upgrade Process ValidationKey Generation Weakness Privilege Escalation
high
31626Acajoom Component for Joomla! 'mailingid' Parameter SQLi
high
31608PHPAuction Multiple Script include_path Parameter File Inclusion
high