Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

ZeusCMS SQL Injection and Information Disclosure

BugsAlert Home > ZeusCMS SQL Injection and Information Disclosure
 
 

EgiX has discovered two vulnerabilities in ZeusCMS, which can be exploited by malicious people to disclose sensitive information or to conduct SQL injection attacks.


Be sure to check if your system is missing security updates or have insecure applications installed:
http://secunia.com/software_inspector/

Feature Overview - The Secunia Software Inspector:
* Detects insecure versions of applications installed
* Verifies that all Microsoft patches are applied
* Assists you in updating your system and applications
* Runs through your browser. No installation or download is required.




Original Source: http://secunia.com/advisories/28194/

Learn more about ZeusCMS SQL Injection and Information Disclosure
 
Tags: zeuscms sql injection information disclosure

Related Items

      Debian: New dbus packages fix privilege escalation

      Cisco ASA Crypto Accelerator Memory Leak

      FrSIRT - Mandriva Security Update Fixes Wireshark Denial of Service Issues

      CVE-2008-2595 (Database 9i, Database 10g)

      FrSIRT - Article Friendly Standard "autid" Parameter SQL Injection Vulnerability

      FrSIRT - Prozilla Hosting Index "id" Remote SQL Injection Vulnerability

      CVE-2007-6169 (DWD Realty)

 

Pixel