Zabbix Multiple Frontend CSRF
“ZABBIX is an enterprise-class open source distributed monitoring solution.” Multiple Cross-Site Request Forgery (CSRF) vulnerabilities exist in Zabbix 1.6.2
OpenCart Order By Blind SQL Injection
An SQL Injection vulnerability exists within OpenCart 1.1.8 and possibly other versions that can be exploited using blind injection. This vulnerability exists due to the “order” URL parameter not being properly sanitized.