Release Date: 2008-11-05
Critical:
Less critical
Impact: Cross Site Scripting
Where: From remote
Solution Status: Unpatched
Software: DHCart
Description:
Lostmon has reported two vulnerabilities in DHCart, which can be exploited by malicious people to conduct cross-site scripting attacks.
Input passed to the "domain" and "d1" parameters in order.php is not properly sanitised before being returned to the user. This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.
Solution:
Filter malicious characters and character sequences in a web proxy.
Provided and/or discovered by:
Lostmon
Original Advisory:
http://lostmon.blogspot.com/2008/11/dhcart-multiple-variable-xss-and-stored.html
nicLOR Sito Includefile "page_file" Local File Inclusion
Release Date: 2008-11-05
Critical:
Moderately critical
Impact: Exposure of system information
Exposure of sensitive information
Where: From remote
Solution Status: Unpatched
Software: nicLOR Sito Includefile
Description:
StAkeR has discovered a vulnerability in nicLOR Sito Includefile, which can be exploited by malicious people to disclose sensitive information.
Input passed to the "page_file" parameter in includefile.php is not properly verified before being used to include files. This can be exploited to include arbitrary files from local resources via directory traversal attacks.
Successful exploitation requires that "register_globals" is enabled or that "magic_quotes_gpc" is disabled.
Solution:
Edit the source code to ensure that input is properly verified.
Provided and/or discovered by:
StAkeR
Original Advisory:
http://milw0rm.com/exploits/6990

Chowhound
Comic Vine
GameFAQs
GameSpot
Giant Bomb
TechRepublic