CGI abuses Family for Nessus

IDNameSeverity
29802CuteNews search.php files_arch Array Arbitrary File Access
medium
29800PMOS Help Desk form.php Arbitrary Code Execution
high
29799Tikiwiki tiki-listmovies.php movie Parameter Traversal Arbitrary File Access
medium
29746Plogger plog-rss.php id Parameter SQL Injection
high
29745WordPress 'query.php' is_admin() Function Information Disclosure
medium
29728RaidenHTTPD workspace.php ulang Parameter Local File Inclusion
high
29722Centreon 'fileOreonConf' Parameter File Include Vulnerabilities
high
29252Firefly Media Server Limited Directory Traversal Admin Credential Disclosure
high
29249HP OpenView Network Node Manager Multiple CGI Remote Overflows
high
29187Plumtree Portal User Object User Enumeration
medium
28375Seditio plug.php pag_sub Parameter SQL Injection
medium
28373Plumtree Portal Default Credentials
high
28293GWExtranet gwextranet/scp.dll Multiple Parameter Traversal Local File Inclusion
medium
28291RunCMS xoopsOption Parameter Local File Inclusion
medium
28181PHP < 5.2.5 Multiple Vulnerabilities
medium
27803IBM WebSphere Application Server navigateTree.do Multiple Vulnerabilities
medium
27802HP OpenView Client Configuration Manager Default Credentials
high
27620GuppY inc/includes.inc selskin Parameter Traversal Local File Inclusion
high
27597Module Builder DownloadModule Traversal Arbitrary File Disclosure
medium
27585Simple Machines Forum Search.php SQL Injection
medium
27575TikiWiki < 1.9.8.2 Multiple Scripts Local File Inclusion
medium
27526CA Host-Based Intrusion Prevention System Server Default Credentials
high
27523LiteSpeed Web Server MIME Type Injection Null Byte Script Source Code Disclosure
medium
26968TikiWiki tiki-graph_formula.php f Parameter Arbitrary Command Execution
high
26926SWAT Unauthenticated Access (Demo Mode)
high
26924Cart32 c32web.exe ImageName Traversal Arbitrary File Access
medium
26199Original inc/exif.inc.php exif_prog Parameter Arbitrary Command Execution
medium
26072ADOdb Lite adodb-perf-module.inc.php last_module Parameter Arbitrary Code Execution
medium
26065Shop-Script admin.php Admin Panel Security Bypass
high
26059Mambo / Joomla! Multiple Components 'mosConfig_live_site' Parameter Remote File Include
high
26056AWStats is Openly Accessible
info
26021Adobe Connect Enterprise Server Information Disclosure
medium
26011Claroline inc/lib/language.lib.php language Parameter Traversal Local File Inclusion
medium
26010MapServer Multiple Remote Vulnerabilities
high
26001QuickEStore insertorder.cfm CFTOKEN Parameter SQL Injection
high
25994SecurityReporter < 4.6.3p1 Multiple Vulnerabilities
medium
25993MDPro index.php topicid Parameter SQL Injection
high
25992Joomla! CMS com_search Component 'searchword' Parameter RCE
critical
25990VHCS PHPSESSID Cookie Session Fixation
medium
25971PHP < 5.2.4 Multiple Vulnerabilities
medium
25930SimpleFAQ Component for Joomla! 'aid' Parameter SQLi
high
25899EZPhotoSales Multiple Configuration Files Remote Information Disclosure
high
25898Help Center Live class/auth.php check_logout Function Admin Authentication Bypass
high
25824GMaps Component for Joomla! 'mapId' Parameter SQLi
high
25822PHP-Blogger pref.db Database Information Disclosure
medium
25811LinPHA include/img_view.class.php order parameter SQL Injection
high
25758CVS (Web-Based) Directory Spider
medium
25736Expose for Joomla! File Upload RCE
critical
25711MailMarshal Spam Quarantine Interface Arbitrary Account Password Retrieval
high
25708paFileDB includes/search.php categories Parameter SQL Injection
high