CGI abuses Family for Nessus

IDNameSeverity
31606XOOPS Dictionary Module print.php id Parameter SQL Injection
high
31346MediaWiki JSON Callback Crafted API Request Information Disclosure
medium
31342netOffice Dwins demoSession Parameter Authentication Bypass
high
31299Centreon include/doc/get_image.php 'img' Parameter Traversal Arbitrary File Access
medium
31192Nukedit utilities/login.asp email Parameter SQL Injection
high
31191Hosting Controller hosting/addreseller.asp reseller Parameter Authentication Bypass
high
31167Sniplets Plugin for WordPress execute.php 'text' Parameter Arbitrary Command Execution
high
31137Coppermine Photo Gallery album Password Cookie SQL Injection
high
31134ListManager < 9.3b / 9.2c / 8.95d Multiple Vulnerabilities
medium
31116Dokeos main/inc/lib/events.lib.inc.php Referer HTTP Header SQL Injection
high
31098Default Password (changeme) for SHOUTcast Server Service Port
high
31095Joomla! 'mosConfig_absolute_path' Parameter Remote File Include
critical
31051osCommerce Customer Testimonials customer_testimonials.php testimonial_id Parameter SQL Injection
high
31048Cacti index.php/sql.php Login Action login_username Parameter SQL Injection
high
30253ExtremeZ-IP File and Print Server Zidget/HTTP Server Traversal Arbitrary File Access
medium
30216F5 BIG-IP Web Management Interface Version
info
30211Symantec Backup Exec System Recovery Manager FileUpload Class Unauthorized File Upload
critical
30208Ipswitch WS_FTP Server Manager /WSFTPSVR/FTPLogServer/LogViewer.asp Authentication Bypass
medium
30151AkoGallery Component for Mambo / Joomla! 'id' Parameter SQLi
high
30132Coppermine imageObjectIM.class.php Command Execution Vulnerabilities
high
30131SQLiteManager confirm.php spaw_root Parameter Remote File Inclusion
medium
30129WordPress AdServe 'adclick.php' 'id' Parameter SQL Injection
high
30124Smart Publisher index.php filedata Parameter Arbitrary Command Execution
high
30110Mambo MOStlyCE Mambot Arbitrary File Rename
medium
30109WordPress fGallery 'fim_rss.php' 'album' Parameter SQL Injection
high
30108vTiger CRM Directory File Disclosure
medium
30107CandyPress Store admin/utilities_ConfigHelp.asp helpfield Parameter SQL Injection
high
30056ManageEngine Applications Manager Invalid URL Remote Information Disclosure
medium
30055MoinMoin MOIN_ID Cookie userform Action Traversal Arbitrary File Overwrite
high
30054YaBB SE Cookie Authentication Bypass
high
30053Kayako SupportSuite syncml/index.php Direct Request Remote Information Disclosure
medium
30052boastMachine mail.php id Parameter SQL Injection
high
30021BitDefender Update Server HTTP Request Traversal Arbitrary File Access
high
29996MyBB forumdisplay.php 'sortby' Parameter Arbitrary PHP Code Execution
high
29995Pixelpost index.php parent_id Parameter SQL Injection
medium
29981X7 Chat index.php day Parameter SQL Injection
high
29927eggBlog index.php eggblogpassword Parameter Cookie SQL Injection
medium
29897PortalApp forums.asp sortby Parameter SQL Injection
high
29871Web Server Malicious JavaScript Link Detection
critical
29870XoopsGallery init_basic.php GALLERY_BASEDIR Parameter Remote File Inclusion
high
29869Loudblog loudblog/inc/parse_old.php template Parameter Arbitrary Remote Code Execution
medium
29868Newbb_plus Module for RunCMS Client-Ip Header SQL Injection
medium
29867RunCMS Detection
info
29854Bitweaver wiki/edit.php suck_url Parameter Traversal Source Code Disclosure
medium
29853RunCMS Multiple Script lid Parameter SQL Injection
high
29852Mort Bay Jetty URL Multiple Slash Character Information Disclosure
medium
29835Site@School slideshow_full.php album_name Parameter SQL Injection
medium
29833PHP < 4.4.8 Multiple Vulnerabilities
high
29832Zenphoto rss.php albumnr Parameter SQL Injection
high
29829CMS Made Simple modules/TinyMCE/content_css.php templateid Parameter SQL Injection
high