NYCPHP Meetup

NYPHP.org

[nycphp-talk] security focus 258

Daniel Convissor danielc at analysisandsolutions.com
Mon Jul 26 16:06:32 EDT 2004


SecurityFocus Newsletter #258

PHP Strip_Tags() Function Bypass Vulnerability
http://www.securityfocus.com/bid/10724
[This report is a bit weird.  First, there is mention in the that "Avaya 
has released an updated advisory that acknowledges this vulnerability for 
Avaya products."  Second, I don't see this happening on my installations.]

PHP memory_limit Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/10725

Moodle Help Script Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/10718

PHPBB Multiple Unspecified SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/10722

Apache Mod_SSL Log Function Format String Vulnerability
http://www.securityfocus.com/bid/10736

PHPBB Multiple Cross-Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/10738

Multiple PHPNuke SQL Injection And Cross-Site Scripting Vuln...
http://www.securityfocus.com/bid/10741

-- 
 T H E   A N A L Y S I S   A N D   S O L U T I O N S   C O M P A N Y
            data intensive web and database programming
                http://www.AnalysisAndSolutions.com/
 4015 7th Ave #4, Brooklyn NY 11232  v: 718-854-0335 f: 718-854-0409



More information about the talk mailing list