rigadicomando.org

Whatever you can cat

Random Quote

The Tao is like a bellows:
it is empty yet infinitely capable.
The more you use it, the more it produces;
the more you talk of it, the less you understand.

• Lao Tzu

Secondary links

  • About
  • Contacts
  • Disclaimer

Home News aggregator Categories

CMS

SA-2008-069 - CCK for 5.x and 6.x - XSS vulnerabilities

Drupal Security - Wed, 2008-11-05 18:51
  • Advisory ID: DRUPAL-SA-2008-069
  • Project: Content Construction Kit (third-party module)
  • Versions: 5.x, 6.x
  • Date: 2008-November-5
  • Security risk: Minor
  • Exploitable from: Remote
  • Vulnerability: Cross site scripting

read more

Categories: CMS

SA-2008-068 - Localization client and Localization server - Cross site request forgery

Drupal Security - Wed, 2008-10-22 20:34
  • Advisory ID: DRUPAL-SA-2008-068
  • Project: Localization client and Localization server (third-party modules)
  • Versions: 5.x, 6.x
  • Date: 2008-October-22
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Cross site request forgery

read more

Categories: CMS

SA-2008-067 - Drupal core - Multiple vulnerabilities

Drupal Security - Wed, 2008-10-22 19:06
  • Advisory ID: DRUPAL-SA-2008-067
  • Project: Drupal core
  • Versions: 5.x and 6.x
  • Date: 2008-October-22
  • Security risk: Less Critical
  • Exploitable from: Local/Remote
  • Vulnerability: Multiple vulnerabilities

read more

Categories: CMS

SA-2008-066 - Shindig-Integrator - Multiple vulnerabilities

Drupal Security - Wed, 2008-10-15 19:02
  • Advisory ID: DRUPAL-SA-2008-066
  • Project: Shindig-Integrator (third-party module)
  • Versions: 5.x
  • Date: 2008-October-15
  • Security risk: Less critical
  • Exploitable from: Remote
  • Vulnerability: Multiple vulnerabilities

read more

Categories: CMS

SA-2008-065 - Node Clone - Access bypass

Drupal Security - Wed, 2008-10-15 18:27
  • Advisory ID: DRUPAL-SA-2008-065
  • Project: Node Clone (third-party module)
  • Version: 6.x, and 5.x.
  • Date: 2008-October-15
  • Security risk: Less critical
  • Exploitable from: Remote
  • Vulnerability: Access bypass

read more

Categories: CMS

SA-2008-064 - Node Vote - SQL injection vulnerability

Drupal Security - Wed, 2008-10-15 16:46
  • Advisory ID: DRUPAL-SA-2008-064
  • Project: Node Vote (third-party module)
  • Versions: 5.x and 6.x
  • Date: 2008-October-15
  • Security risk: Critical
  • Exploitable from: Remote
  • Vulnerability: SQL injection

read more

Categories: CMS

SA-2008-063 - multiple third party modules - Access bypass due to incorrect Drupal 6 updates

Drupal Security - Thu, 2008-10-09 19:41
  • Advisory ID: DRUPAL-SA-2008-063
  • Project: Several Third-Party Modules incorrectly updated for the Drupal 6 menu system
  • Version: 6.x
  • Date: 2008-October-8
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Access bypass

read more

Categories: CMS

SA-2008-063 - multiple third party modules - Access bypass due to incorrect Drupal 6 updates

Drupal Security - Thu, 2008-10-09 14:49
  • Advisory ID: DRUPAL-SA-2008-063
  • Project: Several Third-Party Modules incorrectly updated for the Drupal 6 menu system
  • Version: 6.x
  • Date: 2008-October-8
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Access bypass

read more

Categories: CMS

SA-2008-062 - SIOC - access bypass

Drupal Security - Wed, 2008-10-08 21:47
  • Advisory ID: DRUPAL-SA-2008-062
  • Project: SIOC (third-party module)
  • Versions: 5.x and 6.x
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Access bypass

read more

Categories: CMS

SA-2008-061 - Everyblog - Multiple vulnerabilities

Drupal Security - Wed, 2008-10-08 21:45
  • Advisory ID: DRUPAL-SA-2008-061
  • Project: EveryBlog (third-party module)
  • Versions: 5.x and 6.x
  • Date: 2008-October-08
  • Security risk: Highly critical
  • Exploitable from: Remote
  • Vulnerability:SQL injection, Cross-site scripting (XSS), Privilege escalation, access bypass

read more

Categories: CMS

SA-2008-060 - Drupal core - Multiple vulnerabilities

Drupal Security - Wed, 2008-10-08 21:43
  • Advisory ID: DRUPAL-SA-2008-060
  • Project: Drupal core
  • Versions: 5.x and 6.x
  • Date: 2008-October-8
  • Security risk: Critical
  • Exploitable from: Remote
  • Vulnerability: Multiple vulnerabilities

read more

Categories: CMS

SA-2008-063 - multiple modules - Access bypass due to incorrect Drupal 6 updates

Drupal Security - Wed, 2008-10-08 21:28
  • Advisory ID: DRUPAL-SA-2008-063
  • Project: Several Modules incorrectly updated for the Drupal 6 menu system
  • Version: 6.x
  • Date: 2008-October-8
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Access bypass

read more

Categories: CMS

SA-2008-059 - Brilliant Gallery - SQL Injection and Cross Site Scripting

Drupal Security - Wed, 2008-10-01 20:24
  • Advisory ID: DRUPAL-SA-2008-059
  • Project: Brilliant Gallery (third-party module)
  • Versions: 5.x
  • Date: 2008-October-1
  • Security risk: Critical
  • Exploitable from: Remote
  • Vulnerability: SQL injection and Cross Site Scripting

read more

Categories: CMS

SA-2008-058 - Brilliant Gallery - SQL Injection

Drupal Security - Wed, 2008-09-24 22:42
  • Advisory ID: DRUPAL-SA-2008-058
  • Project: Brilliant Gallery (third-party module)
  • Versions: 5.x, 6.x
  • Date: 2008-September-25
  • Security risk: Critical
  • Exploitable from: Remote
  • Vulnerability: SQL injection

read more

Categories: CMS

SA-2008-057 - Ajax Checklist - Multiple vulnerabilities

Drupal Security - Wed, 2008-09-24 19:48
  • Advisory ID: DRUPAL-SA-2008-057
  • Project: Ajax Checklist (third-party module)
  • Versions: 5.x
  • Date: 2008-September-24
  • Security risk: Critical
  • Exploitable from: Remote
  • Vulnerability: SQL injection, Cross site scripting

read more

Categories: CMS

SA-2008-056 - Simplenews - Cross site scripting

Drupal Security - Wed, 2008-09-24 18:58
  • Advisory ID: DRUPAL-SA-2008-056
  • Project: Simplenews (third-party module)
  • Versions: 5.x, 6.x
  • Date: 2008-September-24
  • Security risk: Not Critical
  • Exploitable from: Remote
  • Vulnerability: Cross site scripting

read more

Categories: CMS

SA-2008-055 - Stock - Cross site scripting

Drupal Security - Wed, 2008-09-24 18:13
  • Advisory ID: DRUPAL-SA-2008-055
  • Project: Stock (third-party module)
  • Versions: 6.x
  • Date: 2008-September-24
  • Security risk: Moderately Critical
  • Exploitable from: Remote
  • Vulnerability: Cross site scripting

read more

Categories: CMS

SA-2008-054 - Plugin Manager - Access bypass

Drupal Security - Wed, 2008-09-24 16:54
  • Advisory ID: DRUPAL-SA-2008-054
  • Project: Plugin Manager (third-party module)
  • Versions: 6.x
  • Date: 2008-September-24
  • Security risk: Critical
  • Exploitable from: Remote
  • Vulnerability: Access bypass

read more

Categories: CMS

SA-2008-053 - Answers - Cross site scripting

Drupal Security - Thu, 2008-09-18 13:31
  • Advisory ID: DRUPAL-SA-2008-053
  • Project: Answers (third-party module)
  • Versions: 5.x
  • Date: 2008-September-18
  • Security risk: Critical
  • Exploitable from: Remote
  • Vulnerability: Cross site scripting

read more

Categories: CMS

SA-2008-052 - Link To Us - Cross site scripting

Drupal Security - Wed, 2008-09-17 19:13
  • Advisory ID: DRUPAL-SA-2008-052
  • Project: Link To Us (third-party module)
  • Versions: 5.x
  • Date: 2008-September-17
  • Security risk: Critical
  • Exploitable from: Remote
  • Vulnerability: Cross site scripting

read more

Categories: CMS
12next ›last »

tags in Arguments

administrivia bash Debian GNU/Linux OS emacs howto perl scripts web
more tags

Navigation

  • Feedback
  • News aggregator
    • Categories
      • bash
      • CMS
      • ICT users' rights
      • operating system
    • Sources

ICT users' rights

  • Support freedom by joining the FSF during our year-end fundraiser
  • Bilski ruling: a victory on the path to ending software patents
  • FSF Releases New Version of GNU Free Documentation License
  • FSF reboots its High Priority list with a grant and call for input
  • "Avoiding Ruinous Compromises" by Richard Stallman
more

High Scalability Architecture

  • Scalability Perspectives #2: Van Jacobson – Content-Centric Networking
  • What CDN would you recommend?
  • Is Eucalyptus ready to be your private cloud?
  • Private/Public Cloud
  • Useful Cloud Computing Blogs
more

Debian Security

  • DSA-1667 python2.4
  • DSA-1666 libxml2
  • DSA-1665 libcdaudio
  • DSA-1664 ekg
  • DSA-1663 net-snmp
more

Drupal Security

  • SA-2008-069 - CCK for 5.x and 6.x - XSS vulnerabilities
  • SA-2008-068 - Localization client and Localization server - Cross site request forgery
  • SA-2008-067 - Drupal core - Multiple vulnerabilities
  • SA-2008-066 - Shindig-Integrator - Multiple vulnerabilities
  • SA-2008-065 - Node Clone - Access bypass
more

EFF

  • FBI Withdraws Unconstitutional National Security Letter After ACLU and EFF Challenge
  • EFF and Sheppard Mullin Defend Wikipedia in Defamation Case
  • Congress Must Investigate Electronic Searches at U.S. Borders
  • Betrayed MSN Music Customers Deserve More from Microsoft
  • EFF Report: FBI Slowed Terror Investigation with Improper NSL Request
more

Invent Geek

  • the ion cooler 2.0
  • the ultimate dance pad v1.0
  • thermaltake sponsors inventgeek
  • The Thermaltake MiniFridge Case Mod
  • Inventgeek gets a facelift and a butt tuck
more

 Privacy | Disclaimer | Drupal | Creative Commons

All content on this site is ditributed under Creative Commons License, each individual author is responsible for its own posts.

RoopleTheme