Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2007-01-09   Magic Photo Storage Website - '/user/couple_profile.php?_config[site_path]' Remote File Inclusion 3 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/couple_milestone.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/change_catalog_template.php?_config[site_path]' Remote File Inc 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/add_news.php?_config[site_path]' Remote File Inclusion 3 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/add_category.php?_config[site_path]' Remote File Inclusion 3 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/include/db_config.php?_config[site_path]' Remote File Inclusion 3 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/include/config.php?_config[site_path]' Remote File Inclusion 3 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/send_email.php?_config[site_path]' Remote File Inclusion 3 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/membership_pricing.php?_config[site_path]' Remote File Inclusi 3 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/list_members.php?_config[site_path]' Remote File Inclusion 3 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/index.php?_config[site_path]' Remote File Inclusion 3 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/delete_member.php?_config[site_path]' Remote File Inclusion 3 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/approve_member.php?_config[site_path]' Remote File Inclusion 3 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/admin_paypal_email.php?_config[site_path]' Remote File Inclusi 3 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/add_templates.php?_config[site_path]' Remote File Inclusion 3 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/admin_email.php?_config[site_path]' Remote File Inclusion 3 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/add_welcome_text.php?_config[site_path]' Remote File Inclusion 3 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/admin_password.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   PHPKit 1.6.1 - 'comment.php' SQL Injection 3 WEB yorn
2007-01-09   MediaWiki 1.x - 'AJAX index.php' Cross-Site Scripting 3 WEB Moshe Ben-Abu
2007-01-08   CreateAuction - 'Cats.asp' SQL Injection 3 WEB IbnuSina
2007-01-06   Shopstorenow E-Commerce Shopping Cart - 'Orange.asp' SQL Injection 3 WEB IbnuSina
2007-01-05   Coppermine Photo Gallery 1.4.11 - SQL Injection 3 WEB DarkFig
2007-01-05   EditTag 1.2 - 'mkpw.cgi?plain' Cross-Site Scripting 3 WEB NetJackal
2007-01-05   EditTag 1.2 - 'mkpw.pl?plain' Cross-Site Scripting 3 WEB NetJackal
2007-01-05   EditTag 1.2 - 'mkpw_mp.cgi?plain' Cross-Site Scripting 4 WEB NetJackal
2007-01-05   EditTag 1.2 - 'edittag_mp.pl?file' Arbitrary File Disclosure 2 WEB NetJackal
2007-01-05   EditTag 1.2 - 'edittag_mp.cgi?file' Arbitrary File Disclosure 3 WEB NetJackal
2007-01-05   EditTag 1.2 - 'edittag.pl?file' Arbitrary File Disclosure 3 WEB NetJackal
2007-01-05   EditTag 1.2 - 'edittag.cgi?file' Arbitrary File Disclosure 3 WEB NetJackal
2013-11-03   Practico 13.9 - Multiple Vulnerabilities 3 WEB LiquidWorm
2007-01-05   Kolayindir Download - 'down.asp' SQL Injection 3 WEB ShaFuck31
2007-01-05   RI Blog 1.3 - 'search.asp' Cross-Site Scripting 3 WEB ShaFuck31
2007-01-02   AShop Deluxe 4.5 - 'salesadmin.php' Cross-Site Scripting 3 WEB Hackers Center Security
2007-01-02   AShop Deluxe 4.5 - 'editcatalogue.php' Cross-Site Scripting 3 WEB Hackers Center Security
2007-01-02   AShop Deluxe 4.5 - 'shipping.php' Cross-Site Scripting 2 WEB Hackers Center Security
2007-01-02   AShop Deluxe 4.5 - 'search.php' Cross-Site Scripting 3 WEB Hackers Center Security
2007-01-02   AShop Deluxe 4.5 - 'basket.php' Cross-Site Scripting 2 WEB Hackers Center Security
2007-01-02   AShop Deluxe 4.5 - 'catalogue.php' Cross-Site Scripting 3 WEB Hackers Center Security
2007-01-02   VCard Pro - 'gbrowse.php' Cross-Site Scripting 3 WEB exexp
2007-01-02   Simplog 0.9.3 - 'archive.php' SQL Injection 3 WEB Javor Ninov
2006-12-30   Spooky 2.7 - 'login/register.asp' SQL Injection 3 WEB Doz
2006-12-29   Mobilelib Gold - Multiple Cross-Site Scripting Vulnerabilities 3 WEB viP HaCKEr
2006-12-27   PHP iCalendar 1.1/2.x - 'preferences.php' Cross-Site Scripting 3 WEB Lostmon
2006-12-27   PHP iCalendar 1.1/2.x - 'print.php' Cross-Site Scripting 3 WEB Lostmon
2006-12-27   PHP iCalendar 1.1/2.x - 'getdate' Cross-Site Scripting 3 WEB Lostmon
2006-12-27   PHP iCalendar 1.1/2.x - 'search.php' Cross-Site Scripting 3 WEB Lostmon
2006-12-27   PHP iCalendar 1.1/2.x - 'week.php' Cross-Site Scripting 3 WEB Lostmon
2006-12-27   PHP iCalendar 1.1/2.x - 'year.php' Cross-Site Scripting 3 WEB Lostmon
2006-12-27   PHP iCalendar 1.1/2.x - 'month.php' Cross-Site Scripting 3 WEB Lostmon
2006-12-27   PHP iCalendar 1.1/2.x - 'day.php' Cross-Site Scripting 3 WEB Lostmon
2006-12-27   DMXReady Secure Login Manager 1.0 - '/applications/SecureLoginManager/inc_secureloginmanager.asp?sen 3 WEB Doz
2006-12-27   DMXReady Secure Login Manager 1.0 - 'members.asp?sent' SQL Injection 3 WEB Doz
2006-12-27   DMXReady Secure Login Manager 1.0 - 'content.asp?sent' SQL Injection 3 WEB Doz
2006-12-27   DMXReady Secure Login Manager 1.0 - 'login.asp?sent' SQL Injection 3 WEB Doz
2006-12-27   Hosting Controller 7C - 'FolderManager.aspx' Directory Traversal 3 WEB KAPDA
2006-12-27   WordPress Core 1.x/2.0.x - 'template.php' HTML Injection 3 WEB David Kierznowski
2013-11-01   pdirl PHP Directory Listing 1.0.4 - Cross-Site Scripting 3 WEB Vulnerability-Lab
2006-12-26   phpCMS 1.1.7 - 'class.layout_PHPcms.php' Remote File Inclusion 2 WEB Federico Fazzi
2006-12-26   phpCMS 1.1.7 - 'class.lib_indexer_universal_PHPcms.php' Remote File Inclusion 3 WEB Federico Fazzi
2006-12-26   phpCMS 1.1.7 - 'class.search_PHPcms.php' Remote File Inclusion 3 WEB Federico Fazzi
2006-12-26   phpCMS 1.1.7 - 'class.cache_PHPcms.php' Remote File Inclusion 2 WEB Federico Fazzi
2006-12-26   phpCMS 1.1.7 - 'class.http_indexer_PHPcms.php' Remote File Inclusion 2 WEB Federico Fazzi
2006-12-26   phpCMS 1.1.7 - 'class.edit_PHPcms.php' Remote File Inclusion 2 WEB Federico Fazzi
2006-12-26   phpCMS 1.1.7 - 'class.session_PHPcms.php' Remote File Inclusion 2 WEB Federico Fazzi
2006-12-26   phpCMS 1.1.7 - 'class.parser_PHPcms.php' Remote File Inclusion 2 WEB Federico Fazzi
2006-12-26   phpCMS 1.1.7 - 'parser.php' Remote File Inclusion 2 WEB Federico Fazzi
2006-12-26   phpCMS 1.1.7 - 'counter.php' Remote File Inclusion 3 WEB Federico Fazzi
2006-12-26   Luckybot 3 - 'DIR' Multiple Remote File Inclusions 3 WEB Red_Casper
2006-12-25   vBulletin 3.5.x/3.6.x - SWF Script Injection 2 WEB Ashraf Morad
2006-12-24   TimberWolf 1.2.2 - 'shownews.php' Cross-Site Scripting 3 WEB CorryL
2006-12-24   Chatwm 1.0 - 'SelGruFra.asp' SQL Injection 2 WEB ShaFuq31
2006-12-23   Future Internet - 'index.cfm?categoryId' Cross-Site Scripting 3 WEB Linux_Drox
2006-12-23   Future Internet - 'index.cfm' Multiple SQL Injections 3 WEB Linux_Drox
2006-12-22   Efkan Forum 1.0 - 'Grup' SQL Injection 3 WEB ShaFuq31
2013-11-01   WordPress Theme Think Responsive 1.0 - Arbitrary File Upload 3 WEB Byakuya Kouta
2013-11-01   ImpressPages CMS 3.6 - 'manage()' Remote Code Execution 3 WEB LiquidWorm
2013-11-01   WordPress Theme Switchblade 1.3 - Arbitrary File Upload 3 WEB Byakuya Kouta
2013-11-01   ImpressPages CMS 3.6 - Arbitrary File Deletion 3 WEB LiquidWorm
2013-10-31   Opsview pre 4.4.1 - Blind SQL Injection 3 WEB J. Oquendo
2013-10-31   ImpressPages CMS 3.6 - Multiple Cross-Site Scripting / SQL Injection Vulnerabilities 3 WEB LiquidWorm
2006-12-22   Xt-News 0.1 - 'show_news.php?id_news' SQL Injection 3 WEB Mr_KaLiMaN
2006-12-22   Xt-News 0.1 - 'show_news.php?id_news' Cross-Site Scripting 3 WEB Mr_KaLiMaN
2013-10-30   Unicorn Router WB-3300NR - Cross-Site Request Forgery (Factory Reset/DNS Change) 4 WEB absane
2006-12-22   Xt-News 0.1 - 'add_comment.php?id_news' Cross-Site Scripting 3 WEB Mr_KaLiMaN
2006-12-22   Oracle Portal 9i/10g - Container_Tabs.jsp Cross-Site Scripting 3 WEB putosoft softputo
2006-12-22   A-Blog 1.0 - Cross-Site Scripting 3 WEB Fukumori
2006-12-20   Calacode @Mail Webmail 4.51 - Filtering Engine HTML Injection 3 WEB Philippe C. Caturegli
2006-11-08   PHPBuilder 0.0.2 - 'HTM2PHP.php' Directory Traversal 2 WEB the master
2006-12-20   Oracle Portal 9.0.2 - Calendar.jsp Multiple HTTP Response Splitting Vulnerabilities 3 WEB putosoft softputo
2006-12-20   Typo3 3.7/3.8/4.0 - 'Class.TX_RTEHTMLArea_PI1.php' Multiple Remote Command Execution Vulnerabilities 3 WEB D. Fabian
2006-12-19   Mini Web Shop 2.1.c - 'view.php?Viewcategory.php' Cross-Site Scripting 3 WEB Linux_Drox
2006-12-19   osTicket 1.2/1.3 Support Cards - 'view.php' Cross-Site Scripting 3 WEB Hacker CooL
2006-12-18   Knusperleicht Shoutbox 2.6 - 'Shout.php' HTML Injection 3 WEB IMHOT3B
2006-12-16   Contra Haber Sistemi 1.0 - 'Haber.asp' SQL Injection 3 WEB ShaFuck31
2013-10-29   XAMPP for Windows 1.8.2 - Blind SQL Injection 3 WEB Sebastián Magof
2006-12-16   eXtreme-fusion 4.02 - 'Fusion_Forum_View.php' Local File Inclusion 3 WEB Kacper
2006-12-16   Omniture SiteCatalyst - Multiple Cross-Site Scripting Vulnerabilities 3 WEB Hackers Center Security
2006-12-14   Moodle 1.5/1.6 - '/mod/forum/discuss.php?navtail' Cross-Site Scripting 3 WEB Jose Miguel Yanez Venegas
2006-12-14   GenesisTrader 1.0 - 'form.php' Multiple Cross-Site Scripting Vulnerabilities 3 WEB Mr_KaLiMaN
2006-12-14   GenesisTrader 1.0 - 'form.php' Arbitrary File Source Disclosure 3 WEB Mr_KaLiMaN
2013-10-29   GTX CMS 2013 Optima - SQL Injection 3 WEB Vulnerability-Lab
2013-10-29   Olat CMS 7.8.0.1 - Persistent Cross-Site Scripting 3 WEB Vulnerability-Lab
2006-12-13   Work System eCommerce 3.0.3/3.0.4 - 'forum.php' Remote File Inclusion 3 WEB the_Edit0r
2006-12-11   Lotfian Request For Travel 1.0 - 'ProductDetails.asp' SQL Injection 3 WEB ajann
2006-12-11   Netwin SurgeFTP 2.3a1 - 'SurgeFTPMGR.cgi' Multiple Input Validation Vulnerabilities 3 WEB Umesh Wanve
2013-10-29   Horde Groupware Web Mail Edition 5.1.2 - Cross-Site Request Forgery (1) 3 WEB Marcela Benetrix
2006-12-11   CMS Made Simple 1.0.2 - 'SearchInput' Cross-Site Scripting 3 WEB Nicokiller
2006-12-09   AppIntellect SpotLight CRM - 'login.asp' SQL Injection 3 WEB ajann
2006-12-09   MXBB Profile Control Panel 0.91c - Module Remote File Inclusion 3 WEB bd0rk
2006-12-09   ProNews 1.5 - 'lire-avis.php?aa' Cross-Site Scripting 3 WEB Mr_KaLiMaN
2006-12-09   ProNews 1.5 - 'lire-avis.php?aa' SQL Injection 3 WEB Mr_KaLiMaN
2006-12-09   ProNews 1.5 - '/admin/change.php' Multiple Cross-Site Scripting Vulnerabilities 3 WEB Mr_KaLiMaN
2013-10-29   Stem Innovation - 'IZON' Hard-Coded Credentials 3 WEB Mark Stanislav
2013-10-29   ILIAS eLearning CMS 4.3.4 < 4.4 - Persistent Cross-Site Scripting 3 WEB Vulnerability-Lab
2013-10-28   Onpub CMS 1.4/1.5 - Multiple SQL Injections 3 WEB Vulnerability-Lab
2013-10-28   Pirelli Discus DRG A125g - Password Disclosure 3 WEB Sebastián Magof
2013-10-28   PHP RSS Reader 2010 - SQL Injection 2 WEB mishal abdullah
2006-12-09   KDPics 1.11/1.16 - 'galeries.inc.php3?categories' Cross-Site Scripting 3 WEB Mr_KaLiMaN
2006-12-09   KDPics 1.11/1.16 - 'index.php3?categories' Cross-Site Scripting 3 WEB Mr_KaLiMaN
2006-12-09   AnnonceScriptHP 2.0 - 'voirannonce.php?no' SQL Injection 2 WEB Mr_KaLiMaN
2006-12-09   AnnonceScriptHP 2.0 - 'email.php?id' SQL Injection 2 WEB Mr_KaLiMaN
2006-12-09   AnnonceScriptHP 2.0 - '/admin/admin_config/Aide.php?email' Cross-Site Scripting 2 WEB Mr_KaLiMaN
2006-12-09   AnnonceScriptHP 2.0 - 'membre.dwt.php?email' Cross-Site Scripting 3 WEB Mr_KaLiMaN
2006-12-09   AnnonceScriptHP 2.0 - '/Templates/commun.dwt.php?email' Cross-Site Scripting 2 WEB Mr_KaLiMaN