TITLE: FlashChat “info.php” Script Insertion Vulnerabilities - SecuObs

TITLE: FlashChat “info.php” Script Insertion Vulnerabilities - SecuObs
TITLE: FlashChat “info.php” Script Insertion VulnerabilitiesSecuObs, France - 19 hours ago… adding a new room and to the user name field when joining the chat is not properly sanitised before being used in info.php to display chat information. …TITLE: SMA-DB “pfad_z” File Inclusion Vulnerability SecuObsTITLE: phpBB++ “phpbb_root_path” File Inclusion Vulnerability SecuObsall 3 news articles

ACGVannu “index2.php” Security Bypass - Secunia

ACGVannu “index2.php” Security Bypass - Secunia
ACGVannu “index2.php” Security BypassSecunia, UK - 16 hours agoAn insecure authentication method in index2.php can be exploited to bypass authentication. Successful exploitation allows editing site information, …EQdkp Backup Referer Security Bypass Secuniaall 3 news articles

Coming in March: Month of PHP bugs

Coming in March: Month of PHP bugs
Stefan Esser’s frustrations with the PHP Security Response Team has boiled over into plans for “month of PHP bugs” project scheduled for March 2007