New User, Welcome!     Login

K/159

[ECHO_ADV_107$2009] FubarForum <= 1.6 Critical File Disclosure Vulnerability

-----------------------------------------------------------------------------------------
[ECHO_ADV_107$2009] FubarForum <= 1.6 Critical File Disclosure Vulnerability
-----------------------------------------------------------------------------------------

Author       : K-159
Date         : March, 16 th 2009
Location     : Jakarta, Indonesia
Web          : http://e-rdc.org/v1/news.php?readmore=131
Critical Lvl : Moderate
Impact       : Exposure of sensitive information

[ECHO_ADV_103$2009] taifajobs <= 1.0 (jobid) Remote SQL Injection Vulnerability

-----------------------------------------------------------------------------------------
[ECHO_ADV_103$2009] taifajobs <= 1.0 (jobid) Remote SQL Injection Vulnerability
-----------------------------------------------------------------------------------------

Author       : K-159
Date         : February, 23 th 2009
Location     : Jakarta, Indonesia
Web          : http://e-rdc.org/v1/news.php?readmore=126
Critical Lvl : Medium
Impact       : Manipulation of data / Exposure of sensitive information

[ECHO_ADV_111$2009] Joomla Hotel Booking System Component XSS/SQL Injection Multiple Vulnerability

-----------------------------------------------------------------------------------------
[ECHO_ADV_111$2009] Joomla Hotel Booking System Component XSS/SQL Injection Multiple Vulnerability
-----------------------------------------------------------------------------------------

Author       : K-159
Date         : September, 11 th 2009
Location     : Jakarta, Indonesia
Web          : http://e-rdc.org/v1/news.php?readmore=142
Critical Lvl : Moderate
Impact       : Exposure of sensitive information

[ECHO_ADV_113$2010] BSI Hotel Booking System Admin Login Bypass Vulnerability

-----------------------------------------------------------------------------------------
[ECHO_ADV_113$2010] BSI Hotel Booking System Admin Login Bypass Vulnerability
-----------------------------------------------------------------------------------------

Author        : K-159
Date          : September, 22th 2010
Location      : Jakarta, Indonesia
Web           : http://e-rdc.org/v1/news.php?readmore=165
Critical Lvl  : Moderate
Impact        : Exposure of sensitive information

[ECHO_ADV_104$2009] WeBid <= 0.7.3 RC9 Multiple Remote File Inclution Vulnerabilities

-----------------------------------------------------------------------------------------
[ECHO_ADV_104$2009] WeBid <= 0.7.3 RC9 Multiple Remote File Inclution Vulnerabilities
-----------------------------------------------------------------------------------------

Author       : K-159
Date         : March, 11 th 2009
Location     : Jakarta, Indonesia
Web          : http://e-rdc.org/v1/news.php?readmore=127
Critical Lvl : High
Impact       : System Access

[ECHO_ADV_105$2009] chaozzDB <= 1.2 Critical File Disclosure Vulnerability

-----------------------------------------------------------------------------------------
[ECHO_ADV_105$2009] chaozzDB <= 1.2 Critical File Disclosure Vulnerability
-----------------------------------------------------------------------------------------

Author       : K-159
Date         : March, 16 th 2009
Location     : Jakarta, Indonesia
Web          : http://e-rdc.org/v1/news.php?readmore=129
Critical Lvl : Moderate
Impact       : Exposure of sensitive information

[ECHO_ADV_108$2009] JobHut <= 1.2 (pk) Remote Sql Injection Vulnerability

-----------------------------------------------------------------------------------------
[ECHO_ADV_108$2009] JobHut <= 1.2 (pk) Remote Sql Injection Vulnerability
-----------------------------------------------------------------------------------------

Author       : K-159
Date         : March, 30 th 2009
Location     : Jakarta, Indonesia
Web          : http://e-rdc.org/v1/news.php?readmore=132
Critical Lvl : Moderate
Impact       : Exposure of sensitive information

[ECHO_ADV_106$2009] FireAnt <= 1.3 Critical File Disclosure Vulnerability

-----------------------------------------------------------------------------------------
[ECHO_ADV_106$2009] FireAnt <= 1.3 Critical File Disclosure Vulnerability
-----------------------------------------------------------------------------------------

Author       : K-159
Date         : March, 16 th 2009
Location     : Jakarta, Indonesia
Web          : http://e-rdc.org/v1/news.php?readmore=130
Critical Lvl : Moderate
Impact       : Exposure of sensitive information

[ECHO_ADV_101$2008] Attachmax Dolphin <= 2.1.0 Multiple Vulnerabilities

-----------------------------------------------------------------------------------------
[ECHO_ADV_101$2008] Attachmax Dolphin <= 2.1.0 Multiple Vulnerability
-----------------------------------------------------------------------------------------

Author       : K-159
Date         : September, 16 th 2008
Location     : Jakarta, Indonesia
Web          : http://e-rdc.org/v1/news.php?readmore=108
Critical Lvl : High
Impact       : System access

[ECHO_ADV_110$2009] Firefox (GNU/Linux version) <= 3.0.10 Denial Of Services

Shoutz:
~~~~~~~

~ my family (ana my wife and ali my son)

~ the_day, K-159, negative, hero, az001, rey, and also all echo staff
~ janex vind "waraxe", str0ke, chopstick
~ newbie_hacker[at]yahoogroups.com
~ #e-c-h-o @irc.dal.net

--------------------------------------------------------------------------------

[ECHO_ADV_91$2008] Online Rental Property Script <= 4.5 (pid) Blind Sql Injection Vulnerability

-----------------------------------------------------------------------------------------

Author         : M.Hasran Addahroni
Date           : May, 5 th 2008
Location       : Jakarta, Indonesia
Web            : http://advisories.echo.or.id/adv/adv91-K-159-2008.txt
Critical Lvl   : Medium
Impact         : System access
Where          : From Remote
---------------------------------------------------------------------------


[ECHO_ADV_92$2008] Anserv Auction XL (viewfaqs.php cat) Blind Sql Injection Vulnerability

-----------------------------------------------------------------------------------------

Author         : M.Hasran Addahroni
Date           : May, 5 th 2008
Location       : Jakarta, Indonesia
Web            : http://advisories.echo.or.id/adv/adv92-K-159-2008.txt
Critical Lvl   : Medium
Impact         : System access
Where          : From Remote
---------------------------------------------------------------------------


[ECHO_ADV_93$2008] Kmita Tellfriend <= 2.0 (file) Remote File Inclusion Vulnerability

-----------------------------------------------------------------------------------------

Author         : M.Hasran Addahroni
Date           : May, 5 th 2008
Location       : Jakarta, Indonesia
Web            : http://advisories.echo.or.id/adv/adv93-K-159-2008.txt
Critical Lvl   : High
Impact         : System access
Where          : From Remote
---------------------------------------------------------------------------


[ECHO_ADV_90$2008] PostNuke Module pnEncyclopedia <= 0.2.0 (id) Blind Sql Injection Vulnerability

-----------------------------------------------------------------------------------------

Author         : M.Hasran Addahroni
Date           : May, 5 th 2008
Location       : Jakarta, Indonesia
Web            : http://advisories.echo.or.id/adv/adv90-K-159-2008.txt
Critical Lvl   : Medium
Impact         : System access
Where          : From Remote
---------------------------------------------------------------------------


[ECHO_ADV_94$2008] Kmita Mail <= 3.0 (file) Remote File Inclusion Vulnerability

-----------------------------------------------------------------------------------------

Author         : M.Hasran Addahroni
Date           : May, 5 th 2008
Location       : Jakarta, Indonesia
Web            : http://advisories.echo.or.id/adv/adv94-K-159-2008.txt
Critical Lvl   : High
Impact         : System access
Where          : From Remote
---------------------------------------------------------------------------


[ECHO_ADV_84$2007] ProfileCMS <= 1.0 Remote SQL Injection Vulnerability

-----------------------------------------------------------------------------------------

Author         : M.Hasran Addahroni
Date           : November, 17 th 2007
Location       : Australia, Sydney
Web            : http://advisories.echo.or.id/adv/adv84-K-159-2007.txt
Critical Lvl   : Dangerous
Impact         : System access
Where          : From Remote
---------------------------------------------------------------------------


[ECHO_ADV_96$2008] HiveMaker Professional <= 1.0.2 (cid) Sql Injection Vulnerability

---------------------------------------------------------------------------
Contact:
~~~~~

     K-159 || echo|staff || eufrato[at]gmail[dot]com
     Homepage: http://www.e-rdc.org/

-------------------------------- [ EOF ] ----------------------------------



[ECHO_ADV_100$2008] Comdev Web Blogger <= 4.1.3 (arcmonth) Sql Injection Vulnerability

---------------------------------------------------------------------------
Contact:
~~~~~~

K-159 || echo|staff || eufrato[at]gmail[dot]com
Homepage: http://www.e-rdc.org/

-------------------------------- [ EOF ] ---------------------------------- 



[ECHO_ADV_89$2008] Softbiz Web Host Directory Script (search_result.php host_id) Blind Sql Injection Vulnerability

-----------------------------------------------------------------------------------------

Author         : M.Hasran Addahroni
Date           : April, 28 th 2007
Location       : Jakarta, Indonesia
Web            : http://advisories.echo.or.id/adv/adv89-K-159-2008.txt
Critical Lvl   : Medium
Impact         : System access
Where          : From Remote
---------------------------------------------------------------------------


[ECHO_ADV_95$2008] BackLinkSpider (cat_id) Blind Sql Injection Vulnerability

-----------------------------------------------------------------------------------------

Author         : M.Hasran Addahroni
Date           : May, 5 th 2008
Location       : Jakarta, Indonesia
Web            : http://advisories.echo.or.id/adv/adv95-K-159-2008.txt
Critical Lvl   : Medium
Impact         : System access
Where          : From Remote
---------------------------------------------------------------------------


[ECHO_ADV_97$2008] Pre News Manager <= 1.0 (index.php id) Sql Injection Vulnerability

---------------------------------------------------------------------------
Contact:
~~~~~~

K-159 || echo|staff || eufrato[at]gmail[dot]com
Homepage: http://www.e-rdc.org/

-------------------------------- [ EOF ] ---------------------------------- 



[ECHO_ADV_99$2008] Relative Real Estate Systems <= 3.0 (listing_id) Sql Injection Vulnerability

---------------------------------------------------------------------------
Contact:
~~~~~

K-159 || echo|staff || eufrato[at]gmail[dot]com
Homepage: http://www.e-rdc.org/

-------------------------------- [ EOF ] ---------------------------------- 



[ECHO_ADV_88$2008] Prozilla Hosting Index (directory.php cat_id) Blind Sql Injection Vulnerability

-----------------------------------------------------------------------------------------

Author         : M.Hasran Addahroni
Date           : April, 28 th 2007
Location       : Jakarta, Indonesia
Web            : http://advisories.echo.or.id/adv/adv88-K-159-2008.txt
Critical Lvl   : Medium
Impact         : System access
Where          : From Remote
---------------------------------------------------------------------------


[ECHO_ADV_86$2007] Mambo/Joomla Component rsgallery <= 2.0 beta 5 (catid) Remote SQL Injection Vulnerability

-----------------------------------------------------------------------------------------

Author         : M.Hasran Addahroni
Date           : November, 30 th 2007
Location       : Australia, Sydney
Web            : http://advisories.echo.or.id/adv/adv86-K-159-2007.txt
Critical Lvl   : Medium
Impact         : System access
Where          : From Remote
---------------------------------------------------------------------------


[ECHO_ADV_102$2009] BusinessSpace <= 1.2 (id) Remote SQL Injection Vulnerability

---------------------------------------------------------------------------
Contact:
~~~~

K-159 || echo|staff || adv[at]e-rdc[dot]org
Homepage: http://www.e-rdc.org/

-------------------------------- [ EOF ] ---------------------------------- 



[ECHO_ADV_98$2008] Pre Ads Portal <= 2.0 Sql Injection Vulnerability

---------------------------------------------------------------------------
Contact:
~~~~~~

K-159 || echo|staff || eufrato[at]gmail[dot]com
Homepage: http://www.e-rdc.org/

-------------------------------- [ EOF ] ---------------------------------- 



[ECHO_ADV_85$2007] alstrasoft E-Friends <= 4.98 (seid) Multiple Remote SQL Injection Vulnerabilities

-----------------------------------------------------------------------------------------

Author         : M.Hasran Addahroni
Date           : November, 15 th 2007
Location       : Australia, Sydney
Web            : http://advisories.echo.or.id/adv/adv85-K-159-2007.txt
Critical Lvl   : Critical
Impact         : System access
Where          : From Remote
---------------------------------------------------------------------------


[ECHO_ADV_83$2007] PhpHostBot <= 1.06 (svr_rootscript) Remote File Inclusion Vulnerability

-----------------------------------------------------------------------------------------

Author         : M.Hasran Addahroni
Date           : August, 7 th 2007
Location       : Australia, Sydney
Web            : http://advisories.echo.or.id/adv/adv83-K-159-2007.txt
Critical Lvl   : Dangerous
Impact         : System access
Where          : From Remote
---------------------------------------------------------------------------




Copyright © 1995-2013 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!