Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

Symphony SQL Injection and File Upload Vulnerabilities

BugsAlert Home > Symphony SQL Injection and File Upload Vulnerabilities
 
 

Raz0r has reported two vulnerabilities in Symphony, which can be exploited by malicious users to compromise a vulnerable system, and by malicious people to conduct SQL injection attacks.


Be sure to check if your system is missing security updates or have insecure applications installed:
http://secunia.com/software_inspector/

Feature Overview - The Secunia Software Inspector:
* Detects insecure versions of applications installed
* Verifies that all Microsoft patches are applied
* Assists you in updating your system and applications
* Runs through your browser. No installation or download is required.




Original Source: http://secunia.com/advisories/31293/

Learn more about Symphony SQL Injection and File Upload Vulnerabilities
 
Tags: symphony sql injection file upload vulnerabilities

Related Items

      Fedora Security Update Fixes Net-snmp Denial of Service Vulnerability

      Microsoft Security Advisory (925444): Vulnerability in the Microsoft DirectAnimation Path ActiveX Control Could Allow Remote Code Execution - 11/14/2006

      FrSIRT - IBM WebSphere Application Server Information Disclosure Vulnerabilities

      libpoppler uninitialized pointer

      TROJ_KILLWIN.AM

      Mandriva: Updated samba packages fix vulnerabilities

      CVE-2008-4777 (com_lms)

 

Pixel