<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Open Source Security Buzz</title>
	<atom:link href="http://securityupdates.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://securityupdates.wordpress.com</link>
	<description>Recent Known Vulnerabilities</description>
	<lastBuildDate>Sun, 09 Jan 2011 07:25:55 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='securityupdates.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Open Source Security Buzz</title>
		<link>http://securityupdates.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://securityupdates.wordpress.com/osd.xml" title="Open Source Security Buzz" />
	<atom:link rel='hub' href='http://securityupdates.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Joomla Joomla!12Pictures Component File Inclusion</title>
		<link>http://securityupdates.wordpress.com/2007/09/25/joomla-joomla12pictures-component-file-inclusion/</link>
		<comments>http://securityupdates.wordpress.com/2007/09/25/joomla-joomla12pictures-component-file-inclusion/#comments</comments>
		<pubDate>Tue, 25 Sep 2007 04:09:37 +0000</pubDate>
		<dc:creator>kakkoi</dc:creator>
				<category><![CDATA[Content Management]]></category>
		<category><![CDATA[File Inclusions]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<category><![CDATA[Access Bypass]]></category>
		<category><![CDATA[joomla]]></category>
		<category><![CDATA[Joomla 1.0.x]]></category>

		<guid isPermaLink="false">http://securityupdates.wordpress.com/2007/09/28/joomla-joomla12pictures-component-file-inclusion/</guid>
		<description><![CDATA[
<ul>
	<li>Application: Joomla</li>
	<li>Affected Version: Joomla!12Pictures 1.x</li>
	<li>URL:<a href="http://www.renevanasten.net/components.html"> http://www.renevanasten.net/components.html</a></li>
	<li>Bug Type: Malicious Access</li>
	<li>Risk Level: High</li>
	<li>Solution: Edit the source code or look for patch file.</li>
</ul><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityupdates.wordpress.com&amp;blog=1806971&amp;post=3&amp;subd=securityupdates&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://securityupdates.wordpress.com/2007/09/25/joomla-joomla12pictures-component-file-inclusion/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c8745c5f64cb150712daa9dbdc23bccd?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Neko Kaneko</media:title>
		</media:content>
	</item>
		<item>
		<title>Joomla!FlashFun Component File Inclusion &#8211; Joomla 1.0.x</title>
		<link>http://securityupdates.wordpress.com/2007/09/20/joomlaflashfun-component-file-inclusion-joomla-10x/</link>
		<comments>http://securityupdates.wordpress.com/2007/09/20/joomlaflashfun-component-file-inclusion-joomla-10x/#comments</comments>
		<pubDate>Thu, 20 Sep 2007 04:31:52 +0000</pubDate>
		<dc:creator>kakkoi</dc:creator>
				<category><![CDATA[Content Management]]></category>
		<category><![CDATA[File Inclusions]]></category>
		<category><![CDATA[joomla]]></category>
		<category><![CDATA[Joomla 1.0.x]]></category>

		<guid isPermaLink="false">http://securityupdates.wordpress.com/2007/09/20/joomlaflashfun-component-file-inclusion-joomla-10x/</guid>
		<description><![CDATA[
<ul>
	<li>Application: Joomla</li>
	<li>Affected Version: Joomla!FlashFun 1.x</li>
	<li>URL: <a href="http://webscripts.softpedia.com/scriptDownload/Joomla-FlashFun-Download-22264.html">http://webscripts.softpedia.com</a></li>
	<li>Bug Type: File Inclusion</li>
	<li>Risk Level: High</li>
	<li>Solution: Edit the source code &#38; contact to component developer.</li>
</ul><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityupdates.wordpress.com&amp;blog=1806971&amp;post=6&amp;subd=securityupdates&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://securityupdates.wordpress.com/2007/09/20/joomlaflashfun-component-file-inclusion-joomla-10x/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c8745c5f64cb150712daa9dbdc23bccd?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Neko Kaneko</media:title>
		</media:content>
	</item>
		<item>
		<title>Joomla Nice Talk Component SQL Injection</title>
		<link>http://securityupdates.wordpress.com/2007/09/19/joomla-nice-talk-component-sql-injection/</link>
		<comments>http://securityupdates.wordpress.com/2007/09/19/joomla-nice-talk-component-sql-injection/#comments</comments>
		<pubDate>Wed, 19 Sep 2007 05:40:08 +0000</pubDate>
		<dc:creator>kakkoi</dc:creator>
				<category><![CDATA[Content Management]]></category>
		<category><![CDATA[SQL Injection]]></category>
		<category><![CDATA[joomla]]></category>
		<category><![CDATA[Joomla 1.0.x]]></category>

		<guid isPermaLink="false">http://securityupdates.wordpress.com/2007/09/19/joomla-nice-talk-component-sql-injection/</guid>
		<description><![CDATA[
<ul class="xoxo Hentry">
	<li>Application: Joomla</li>
	<li>Affected Version: Nice Talk 0.x.</li>
	<li>URL: <a href="http://extensions.joomla.org/component/option,com_mtree/task,viewlink/link_id,1676/Itemid,35/">Nice Talk</a></li>
	<li>Bug Type: SQL Injection Attacks</li>
	<li>Risk Level: Critical</li>
	<li>Solution: Edit the source code and ensure the input is sanitised.</li>
</ul><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityupdates.wordpress.com&amp;blog=1806971&amp;post=10&amp;subd=securityupdates&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://securityupdates.wordpress.com/2007/09/19/joomla-nice-talk-component-sql-injection/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c8745c5f64cb150712daa9dbdc23bccd?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Neko Kaneko</media:title>
		</media:content>
	</item>
		<item>
		<title>Joomla NeoRecruit Component SQL Injection &#8211; Joomla 1.0x</title>
		<link>http://securityupdates.wordpress.com/2007/09/19/joomla-neorecruit-component-sql-injection-joomla-10x/</link>
		<comments>http://securityupdates.wordpress.com/2007/09/19/joomla-neorecruit-component-sql-injection-joomla-10x/#comments</comments>
		<pubDate>Wed, 19 Sep 2007 05:30:29 +0000</pubDate>
		<dc:creator>kakkoi</dc:creator>
				<category><![CDATA[Content Management]]></category>
		<category><![CDATA[SQL Injection]]></category>
		<category><![CDATA[joomla]]></category>
		<category><![CDATA[Joomla 1.0.x]]></category>

		<guid isPermaLink="false">http://securityupdates.wordpress.com/2007/09/19/joomla-neorecruit-component-sql-injection-joomla-10x/</guid>
		<description><![CDATA[
<ul class="xoxo Hentry">
	<li>Application: Joomla</li>
	<li>Affected Version: NeoRecruit 1.x</li>
	<li>URL: <a href="http://www.neojoomla.com/joomla-article/extensions-joomla.html">http://www.neojoomla.com/</a></li>
	<li>Bug Type: SQL Injection Attack</li>
	<li>Risk Level: Critical</li>
	<li>Solution: Update to version <a href="http://www.neojoomla.com/news-joomla/extensions-neojoomla/security-update-for-neorecruit-1.4-20070824135.html">1.4.1</a>.</li>
</ul><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityupdates.wordpress.com&amp;blog=1806971&amp;post=11&amp;subd=securityupdates&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://securityupdates.wordpress.com/2007/09/19/joomla-neorecruit-component-sql-injection-joomla-10x/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c8745c5f64cb150712daa9dbdc23bccd?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Neko Kaneko</media:title>
		</media:content>
	</item>
		<item>
		<title>phpBB Styles Demo Module Multiples Vulnerability</title>
		<link>http://securityupdates.wordpress.com/2007/09/19/phpbb-styles-demo-module-multiples-vulnerability/</link>
		<comments>http://securityupdates.wordpress.com/2007/09/19/phpbb-styles-demo-module-multiples-vulnerability/#comments</comments>
		<pubDate>Wed, 19 Sep 2007 05:11:35 +0000</pubDate>
		<dc:creator>kakkoi</dc:creator>
				<category><![CDATA[Cross Site SCripting]]></category>
		<category><![CDATA[Discussion Boards]]></category>
		<category><![CDATA[SQL Injection]]></category>
		<category><![CDATA[PhpBB]]></category>
		<category><![CDATA[SQL]]></category>
		<category><![CDATA[XSS]]></category>

		<guid isPermaLink="false">http://securityupdates.wordpress.com/2007/09/19/phpbb-styles-demo-module-multiples-vulnerability/</guid>
		<description><![CDATA[
<ul class="xoxo Hentry">
	<li>Application: PhpBB</li>
	<li>Affected Version: Styles Demo Module 1.x</li>
	<li>Vendor’s URL: <a href="http://www.phpbb.com/">http://www.phpbb.com/</a></li>
	<li>Bug Type: SQL Injection &#38; Cross Site Scripting</li>
	<li>Risk Level: Critical</li>
	<li>Solution: Edit the source code &#38; contact to developer.</li>
</ul><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityupdates.wordpress.com&amp;blog=1806971&amp;post=7&amp;subd=securityupdates&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://securityupdates.wordpress.com/2007/09/19/phpbb-styles-demo-module-multiples-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c8745c5f64cb150712daa9dbdc23bccd?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Neko Kaneko</media:title>
		</media:content>
	</item>
		<item>
		<title>Invision Power Board Multiple Vulnerabilities &#8211; IPB 2.x</title>
		<link>http://securityupdates.wordpress.com/2007/09/19/invision-power-board-multiple-vulnerabilities/</link>
		<comments>http://securityupdates.wordpress.com/2007/09/19/invision-power-board-multiple-vulnerabilities/#comments</comments>
		<pubDate>Wed, 19 Sep 2007 04:37:43 +0000</pubDate>
		<dc:creator>kakkoi</dc:creator>
				<category><![CDATA[Cross Site SCripting]]></category>
		<category><![CDATA[Discussion Boards]]></category>
		<category><![CDATA[Access Bypass]]></category>
		<category><![CDATA[invision power board]]></category>
		<category><![CDATA[IPB 2.x]]></category>

		<guid isPermaLink="false">http://securityupdates.wordpress.com/2007/09/19/invision-power-board-multiple-vulnerabilities/</guid>
		<description><![CDATA[
<ul>
	<li>Application: Invision Power Board</li>
	<li>Affected Version: 2.x</li>
	<li>URL: <a href="http://www.invisionpower.com/community/board/">http://www.invisionpower.com/community/board/</a></li>
	<li>Bug Type: Security bypass &#38; Cross site scripting</li>
	<li>Risk Level: Medium</li>
	<li>Solution: Download the <a href="http://www.invisionpower.com/">latest version</a>. Apply the <a href="http://forums.invisionpower.com/index.php?act=attach&#38;type=post&#38;id=11869">patch</a> from vendor by refer <a href="http://forums.invisionpower.com/index.php?act=attach&#38;type=post&#38;id=11870">instruction</a> given.</li>
</ul><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityupdates.wordpress.com&amp;blog=1806971&amp;post=5&amp;subd=securityupdates&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://securityupdates.wordpress.com/2007/09/19/invision-power-board-multiple-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c8745c5f64cb150712daa9dbdc23bccd?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Neko Kaneko</media:title>
		</media:content>
	</item>
		<item>
		<title>Coppermine Photo Gallery Remote File Include Vulnerability &#8211; YABBSE.INC.PHP</title>
		<link>http://securityupdates.wordpress.com/2007/08/29/coppermine-photo-gallery-remote-file-include-vulnerability-yabbseincphp/</link>
		<comments>http://securityupdates.wordpress.com/2007/08/29/coppermine-photo-gallery-remote-file-include-vulnerability-yabbseincphp/#comments</comments>
		<pubDate>Wed, 29 Aug 2007 04:33:28 +0000</pubDate>
		<dc:creator>kakkoi</dc:creator>
				<category><![CDATA[File Inclusions]]></category>
		<category><![CDATA[Image Galleries]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<category><![CDATA[Coppermine Gallery]]></category>

		<guid isPermaLink="false">http://securityupdates.wordpress.com/2007/07/29/coppermine-photo-gallery-remote-file-include-vulnerability-yabbseincphp/</guid>
		<description><![CDATA[
<ul>
	<li>Application Affected :
<ul>
	<li>Coppermine Photo Gallery 1.4</li>
	<li>Coppermine Photo Gallery 1.3.4</li>
	<li>Coppermine Photo Gallery 1.3.3</li>
	<li>Coppermine Photo Gallery 1.3.2</li>
	<li>Coppermine Photo Gallery 1.3.1</li>
</ul>
</li>
<li>URL: <a href="http://coppermine-gallery.net/">http://coppermine-gallery.net/</a></li>
	<li>Bug Type: Input Validation</li>
	<li>Risk Level: Medium</li>
	<li>Solution: The fix will be included in newer version of  				 					Coppermine Photo Gallery 1.4.2</li>
</ul><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityupdates.wordpress.com&amp;blog=1806971&amp;post=4&amp;subd=securityupdates&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
		<wfw:commentRss>http://securityupdates.wordpress.com/2007/08/29/coppermine-photo-gallery-remote-file-include-vulnerability-yabbseincphp/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c8745c5f64cb150712daa9dbdc23bccd?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Neko Kaneko</media:title>
		</media:content>
	</item>
	</channel>
</rss>
