eVuln Security Advisories
We are looking for new vulnerabilities in open source web applications to keep up to date and improve our skills in website security. The result of this work is displayed in the eVuln Security Advisories list. Currently our own advisories list has 175 security advisories including 209 CVE entries.
The list of security advisories published by eVuln.
- Authentication Bypass in GuestBookHost
2006.02.01
Version: 2005.04.25
Status: Unpatched
Risk level: medium - multiple XSS and SQL Injection in Shoutbox
2006.02.01
Version: 2005.07.21
Status: Unpatched
Risk level: medium - Multiple XSS and SQL Injection in Vanilla Guestbook
2006.02.01
Version: 1.0 Beta
Status: Unpatched
Risk level: medium - Authentication Bypass in SZUserMgnt
2006.01.26
Version: 1.4
Status: Unpatched
Risk level: medium - SQL Injection and Authentication Bypass in Calendarix
2006.01.26
Version: 0.6.20050830
Status: Unpatched
Risk level: medium - my little homepage products [link] BBCode XSS
2006.01.25
Version: 2004.04.20
Status: Unpatched
Risk level: low - SQL Injection Vulnerability in AndoNET Blog
2006.01.25
Version: 2004.09.02
Status: Unpatched
Risk level: medium - XSS Vulnerability in CheesyBlog
2006.01.24
Version: 1.0
Status: Unpatched
Risk level: low - Referer XSS in ExpressionEngine
2006.01.24
Version: 1.4.1
Status: Patched
Risk level: medium - Authentication Bypass in miniBloggie
2006.01.23
Version: 1.0
Status: Unpatched
Risk level: medium