DUware

Short Name: DUware
Previous Names: [None Entered]
URL: http://www.duware.com/ [visit link]
Email: [None Entered]
Security URL: [None Entered]
Security Email: [None Entered]
Knowledge Base: http://www.duware.com/products/category.asp?iCat=5&nCat=Knowledge%20Base [visit link]
Notes: Web based contact form: http://www.duware.com/home/contact.asp

Full Details...

Vulnerabilities by Vendor Product

DUware

DUware
DUnews Watch-list
1.0
OSVDB ID: 3652 DUnews inc_menu.asp Admin Authentication Bypass
1.1
OSVDB ID: 21385 DUware Multiple Product type.asp iType SQL Injection
DUgallery Watch-list
3.0
OSVDB ID: 3659 DUgallery inc_menu.asp Admin Authentication Bypass
3.1
OSVDB ID: 3659 DUgallery inc_menu.asp Admin Authentication Bypass
3.2
OSVDB ID: 3659 DUgallery inc_menu.asp Admin Authentication Bypass
3.3
OSVDB ID: 3659 DUgallery inc_menu.asp Admin Authentication Bypass
OSVDB ID: 21385 DUware Multiple Product type.asp iType SQL Injection
DUpaypal Watch-list
3.0
OSVDB ID: 3644 DUware Multiple Product inc_menu.asp Admin Authentication Bypass
3.1
OSVDB ID: 21385 DUware Multiple Product type.asp iType SQL Injection
DUportal Watch-list
3.0
OSVDB ID: 3071 DUportal Account Hijacking
OSVDB ID: 3269 DUportal HTML Validation Execute Arbitrary Command
OSVDB ID: 3772 DUportal APPROVED Script Injection
OSVDB ID: 3773 DUportal U_ACCESS Administrator Access
OSVDB ID: 3774 DUportal Non-specific Database Query Tampering
OSVDB ID: 3775 DUportal Multiple Hidden Form Manipulation
OSVDB ID: 3776 DUportal Password Database Disclosure
OSVDB ID: 3644 DUware Multiple Product inc_menu.asp Admin Authentication Bypass
3.0 SQL
OSVDB ID: 3071 DUportal Account Hijacking
OSVDB ID: 3269 DUportal HTML Validation Execute Arbitrary Command
OSVDB ID: 3772 DUportal APPROVED Script Injection
OSVDB ID: 3773 DUportal U_ACCESS Administrator Access
OSVDB ID: 3774 DUportal Non-specific Database Query Tampering
OSVDB ID: 3775 DUportal Multiple Hidden Form Manipulation
OSVDB ID: 3776 DUportal Password Database Disclosure
3.1.2
OSVDB ID: 15852 DUportal channel.asp iChannel Variable SQL Injection
OSVDB ID: 15853 DUportal inc_poll_voting.asp DAT_PARENT Variable SQL Injection
OSVDB ID: 15854 DUportal inc_rating.asp Multiple Variable SQL Injection
OSVDB ID: 15855 DUportal type.asp iCat Variable SQL Injection
DUpics Watch-list
3.0
OSVDB ID: 3654 DUpics inc_menu.asp Admin Authentication Bypass
OSVDB ID: 3660 DUpics inc_add.asp Arbitrary File Upload
DUpoll Watch-list
3.0
OSVDB ID: 3655 DUpoll inc_menu.asp Admin Authentication Bypass
OSVDB ID: 28253 DUpoll DUpoll.mdb User Database Disclosure
DUpaypal Pro Watch-list
3.0
OSVDB ID: 17596 DUpaypal Pro detail.asp iPro Variable SQL Injection
OSVDB ID: 17602 DUware Multiple Product sub.asp iSub Variable SQL Injection
OSVDB ID: 21385 DUware Multiple Product type.asp iType SQL Injection
DUdownload Watch-list
1.0
OSVDB ID: 3650 DUdownload inc_menu.asp Admin Authentication Bypass
1.1
OSVDB ID: 21385 DUware Multiple Product type.asp iType SQL Injection
DUforum Watch-list
3.0
OSVDB ID: 10666 DUforum messageDetail.asp MSG_ID Parameter SQL Injection
OSVDB ID: 10665 DUforum messages.asp FOR_ID Parameter SQL Injection
OSVDB ID: 10664 DUforum Login Form Password Parameter SQL Injection
OSVDB ID: 3644 DUware Multiple Product inc_menu.asp Admin Authentication Bypass
3.1
OSVDB ID: 10666 DUforum messageDetail.asp MSG_ID Parameter SQL Injection
OSVDB ID: 10665 DUforum messages.asp FOR_ID Parameter SQL Injection
OSVDB ID: 10664 DUforum Login Form Password Parameter SQL Injection
OSVDB ID: 10667 DUforum Private Message XSS
OSVDB ID: 17585 DUforum post.asp iFor Variable SQL Injection
OSVDB ID: 17584 DUforum messages.asp iMsg Variable SQL Injection
OSVDB ID: 17586 DUforum forums.asp iFor Variable SQL Injection
OSVDB ID: 17587 DUforum userEdit.asp id Variable SQL Injection
DUfaq Watch-list
1.0
OSVDB ID: 3658 DUfaq inc_menu.asp Admin Authentication Bypass



DONATE NOW!

User Status

Quick Searches

Advertisements

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2008 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use