Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

yblog SQL Injection and Cross-Site Scripting

BugsAlert Home > yblog SQL Injection and Cross-Site Scripting
 
 

unohope has discovered some vulnerabilities in yblog, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks.


Be sure to check if your system is missing security updates or have insecure applications installed:
http://secunia.com/software_inspector/

Feature Overview - The Secunia Software Inspector:
* Detects insecure versions of applications installed
* Verifies that all Microsoft patches are applied
* Assists you in updating your system and applications
* Runs through your browser. No installation or download is required.




Original Source: http://secunia.com/advisories/30607/

Learn more about yblog SQL Injection and Cross-Site Scripting
 
Tags: yblog sql injection cross-site scripting

Related Items

      CVE-2008-1417 (Axyl)

      Sun SPARC Enterprise XCP Firmware Denial Of Service Vulnerabilities

      Never Installed a Firewall on Ubuntu? Try Firestarter

      Vuln: Mozilla SeaMonkey/Thunderbird Newsgroup Cancel Message Handling Buffer Overflow Vulnerability

      Malwarebyte Anti-Malware finds many trojans, while others ..

      CVE-2008-1822 (Application Express)

      Sun Solaris Event Port Local Denial of Service

 

Pixel