CGI Family for Nessus Network Monitor

IDNameSeverity
3178Coppermine Gallery < 1.3.4 displayimage.php HTML Injection (deprecated)
low
3175Woltlab Burning Board modcp.php Multiple Parameter SQL Injection
high
3173Mantis < 0.19.3 Multiple Injection Vulnerabilities
high
3169phpPGAds/phpAdNew < 2.0.6 lib-view-direct.inc.php clientid Parameter SQL Injection
high
3168Dada Mail < 2.10 alpha 1 Archived Message XSS
low
3167Discuz File Extension Validation Weakness Arbitrary File Upload
medium
3163phpBB < 2.0.20 Multiple Vulnerabilities
high
3162WordPress < 1.5.1.4 RCE
medium
3157FlatNuke < 2.5.6 Multiple XSS
low
3111Atomic Photo Album apa_phpinclude.inc.php apa_module_basedir Parameter Remote File Inclusion
medium
3110FtpLocate Multiple Scripts fsite Parameter Remote File Inclusion
medium
3109Hobbit Monitor < 4.1.0 Remote DoS
medium
3104PHPNews < 1.3.0 auth.php Multiple Field SQL Injection
high
3103CMSimple < 2.5 Beta 3 Search Function XSS
low
3100PHP-Fusion < 6.00.107 Multiple Vulnerabilities
medium
3087GroupWise WebAccess < 6.5 SP5 EMail IMG SRC XSS
low
3086VP-ASP Multiple Script SQL Injection (2)
high
3063Moodle < 1.5.1 Unspecified Vulnerability
high
3061PPA functions.inc.php ppa_root_path Parameter Remote File Inclusion
high
3060Bugzilla < 2.18.2 / 2.20rc1 Multiple Vulnerabilities
medium
3058punBB < 1.2.6 profile.php $temp Parameter SQL Injection (deprecated)
high
3056Jinzora < 2.1 Multiple Scripts include_path Parameter Remote File Inclusion
medium
3055PHPAUCTION Multiple Vulnerabilities
high
3054Comersus Cart <= 6.0.41 Multiple XSS / SQL Injection
high
3053Drupal Public Comment PHP Code Injection
high
3051phpBB < 2.0.17 Nested BBCode URL Tags XSS
low
3050Geeklog < 1.3.12 comment.php order Parameter SQL Injection
high
3049phpPgAdmin < 3.5.4 index.php formLanguage Parameter Traversal Arbitrary File Access
medium
3047PHPNews < 1.2.6 news.php prevnext Parameter SQL Injection
high
3046osTicket < 1.3.1 Multiple Vulnerabilities
medium
3041Xoops < 2.0.12 Multiple XSS / SQL Injection
high
3038phpBB < 2.0.16 viewtopic.php Arbitrary Code Execution
medium
3037PHP-Fusion < 6.00.106 submit.php Multiple Parameter HTML Injection
low
3032UBB.threads < 6.5.2 Beta 2 XSS / SQL Injection
high
3028Simple Machines Forum < 1.0.5 SQL Injection
high
3026i-Gallery Traversal File Access / XSS
medium
3025Raxnet Cacti Detection
medium
3024MercuryBoard User-Agent HTTP Header SQL Injection
medium
3017Ultimate PHP Board < 1.9.7 Multiple XSS
low
3016SquirrelMail < 1.4.5 Multiple Vulnerabilities
medium
2944Exhibit Engine < 1.5 RC 5 list.php Multiple Parameter SQL Injection
high
2942Invision Board < 2.0.5 Privilege Escalation / SQL Injection
high
2937MaxWebPortal password.asp memKey Parameter SQL Injection
high
2933PHP Advanced Transfer Manager < 1.22 File Upload Arbitrary Command Execution
high
2920Serendipity < 0.80 RC7 Multiple Vulnerabilities
medium
2918WordPress < 1.5.1.2 Multiple Vulnerabilities
high
2917JGS-Portal < 3.03 Multiple Scripts SQL Injection
high
2903PhotoPost PHP Pro < 5.02 RC4 member.php uid Parameter SQL Injection
high
2900Bugzilla < 2.19.3 Information Disclosure
low
2898MaxWebPortal < 1.360 Multiple Vulnerabilities
high