eVuln Security Advisories
We are looking for new vulnerabilities in open source web applications to keep up to date and improve our skills in website security. The result of this work is displayed in the eVuln Security Advisories list. Currently our own advisories list has 175 security advisories including 209 CVE entries.
The list of security advisories published by eVuln.
- Sensitive Information Disclosure in Text Rider
2006.01.23
Version: 2.4
Status: Unpatched
Risk level: high - XSS Vulnerability in Pixelpost Photoblog
2006.01.21
Version: 1.4.3
Status: Unpatched
Risk level: medium - Weblog Sensitive Information Disclosure in Note-A-Day
2006.01.20
Version: 2.1
Status: Unpatched
Risk level: medium - SQL Injection Vulnerability in e-moBLOG
2006.01.20
Version: 1.3
Status: Unpatched
Risk level: medium - Directory Traversal and Data Disclosure in RCBlog
2006.01.19
Version: 1.0.3 1.0.2 (1.0.2 - checked by Nicolas Cenciarini, nicolas@criston.com)
Status: Unpatched
Risk level: high - Authentication Bypass Vulnerability in WebspotBlogging
2006.01.18
Version: 3.0
Status: Patched
Risk level: high - XSS and Multiple SQL Injection in SaralBlog
2006.01.18
Version: 1.0
Status: Unpatched
Risk level: medium - Multiple SQL Injection and XSS in eggblog
2006.01.17
Version: 2.0
Status: Unpatched
Risk level: medium - Sensitive Information Disclosure in Flog
2006.01.17
Version: 1.0.1
Status: Unpatched
Risk level: medium - Multiple Vulnerabilities in aoblogger
2006.01.16
Version: 2.3
Status: Unpatched
Risk level: medium