Backup E-mails!   Data Recovery   Avast Antivirus Pro!

Archive for the 'web 2.0' Category

Exploit: EasyGallery is prone to multiple input-validation vulnerabilities

Thursday, March 13th, 2008

EasyGallery is prone to multiple input-validation vulnerabilities, including an SQL-injection issue and two cross-site scripting issues, because it fails to sufficiently sanitize user-supplied data.
Exploiting these issues could allow an attacker to steal cookie-based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
These issues affect EasyGallery 5.0tr; other […]

Sec: Joomla! and Mambo ‘Candle’ Component ‘cID’ Parameter SQL Injection Vulnerability

Wednesday, March 12th, 2008

The ‘Candle’ component for Joomla! and Mambo is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query.
Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
This issue affects Candle 1.0.0; other […]

Google Closes Deal on DoubleClick Aquisition!

Tuesday, March 11th, 2008

By David Lawsky and Eric Auchard
BRUSSELS/SAN FRANCISCO (Reuters) - Google Inc won approval on Tuesday from the European Commission of its planned acquisition of DoubleClick Inc and promptly closed the deal, sending its stock 6 percent higher.
The move will allow the Web search and advertising leader to accelerate its move into the market for corporate […]