Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2006-12-09   AnnonceScriptHP 2.0 - '/Templates/admin.dwt.php?email' Cross-Site Scripting 2 WEB Mr_KaLiMaN
2006-12-09   AnnonceScriptHP 2.0 - 'erreurinscription.php?email' Cross-Site Scripting 2 WEB Mr_KaLiMaN
2006-12-09   AnnonceScriptHP 2.0 - '/admin/admin_membre/fiche_membre.php?idmembre' SQL Injection 2 WEB Mr_KaLiMaN
2006-12-09   Messageriescripthp 2.0 - '/Contact/contact.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB Mr_KaLiMaN
2006-12-09   Messageriescripthp 2.0 - 'existeemail.php?email' Cross-Site Scripting 3 WEB Mr_KaLiMaN
2006-12-09   Messageriescripthp 2.0 - 'existepseudo.php?pseudo' Cross-Site Scripting 3 WEB Mr_KaLiMaN
2006-12-09   Messageriescripthp 2.0 - 'lire-avis.php?aa' SQL Injection 3 WEB Mr_KaLiMaN
2006-12-09   MaviPortal - 'Arama.asp' Cross-Site Scripting 3 WEB St@rExT
2006-12-08   Cilem Haber Free Edition - 'hata.asp?hata' Cross-Site Scripting 3 WEB ShaFuck31
2006-12-08   cPanel Web Hosting Manager 3.1 - Multiple Cross-Site Scripting Vulnerabilities 3 WEB Aria-Security Team
2006-12-08   cPanel 11 BoxTrapper - Manage.HTML Cross-Site Scripting 3 WEB Aria-Security Team
2006-11-18   Link CMS - 'prikazInformacije.php?IDStranicaPodaci' SQL Injection 3 WEB Ivan Markovic
2006-11-18   Link CMS - 'navigacija.php?IDMeniGlavni' SQL Injection 3 WEB Ivan Markovic
2006-12-06   Dol Storye - 'Dettaglio.asp' Multiple SQL Injections 3 WEB WarGame
2006-12-04   Vt-Forum Lite 1.3 - 'vf_newtopic.asp' IFRAME Element Cross-Site Scripting 3 WEB St@rExT
2006-12-04   Vt-Forum Lite 1.3 - 'vf_info.asp?StrMes' Cross-Site Scripting 3 WEB St@rExT
2006-12-04   ac4p Mobile - 'polls.php' Multiple Cross-Site Scripting Vulnerabilities (2) 3 WEB SwEET-DeViL
2006-12-04   ac4p Mobile - 'up.php?Taaa' Cross-Site Scripting 3 WEB SwEET-DeViL
2006-12-04   UApplication Uguestbook 1.0 - 'index.asp' SQL Injection 3 WEB Aria-Security Team
2006-12-04   Inside Systems Mail 2.0 - 'error.php' Cross-Site Scripting 3 WEB Vicente Aguilera Diaz
2006-12-04   Cerberus Helpdesk 2.x - 'Spellwin.php' Cross-Site Scripting 3 WEB En Douli
2006-12-04   BlueSocket BSC 2100 5.0/5.1 - Admin.pl Cross-Site Scripting 2 WEB Jesus Olmos Gonzalez
2006-12-04   Metyus Okul Yonetim 1.0 - 'Sistemi Uye_giris_islem.asp' SQL Injection 2 WEB ShaFuck31
2006-12-02   DUdownload 1.0/1.1 - 'detail.asp' Multiple SQL Injections 3 WEB Aria-Security Team
2006-12-02   PHPNews 1.3 - 'Link_Temp.php' Cross-Site Scripting 3 WEB Detefix
2006-12-02   CuteNews 1.3.6 - 'result' Cross-Site Scripting 3 WEB Detefix
2006-12-01   Aspee Ziyaretci Defteri - 'giris.asp' Multiple Field SQL Injections 3 WEB ShaFuq31
2006-12-27   FreeQBoard 1.0/1.1 - 'QB_Path' Multiple Remote File Inclusions 3 WEB Shell
2013-10-26   WordPress Theme Curvo - Cross-Site Request Forgery / Arbitrary File Upload 3 WEB Byakuya Kouta
2006-12-01   DZCP (deV!L_z Clanportal) 1.3.6 - 'Show' SQL Injection 3 WEB Tim Weber
2006-12-01   Invision Gallery 2.0.7 - 'index.php?IMG' SQL Injection 3 WEB infection
2006-11-30   Woltlab Burning Board 2.3.x - 'register.php' Cross-Site Scripting 3 WEB blueshisha
2006-11-30   Seditio1.10 / Land Down 8.0 Under - 'polls.php' SQL Injection 3 WEB ajann
2006-11-16   b2evolution 1.8.2/1.9 - '_referer_spam.page.php' Multiple Cross-Site Scripting Vulnerabilities 3 WEB lotto fischer
2006-11-16   b2evolution 1.8.2/1.9 - '_410_stats_gone.page.php?app_name' Cross-Site Scripting 3 WEB lotto fischer
2006-11-16   b2evolution 1.8.2/1.9 - '_404_not_found.page.php' Multiple Cross-Site Scripting Vulnerabilities 3 WEB lotto fischer
2006-11-27   Evolve Shopping Cart - 'products.asp' SQL Injection 2 WEB Aria-Security Team
2006-11-27   uPhotoGallery 1.1 - 'thumbnails.asp?ci' SQL Injection 2 WEB Aria-Security Team
2006-11-27   uPhotoGallery 1.1 - 'Slideshow.asp?ci' SQL Injection 2 WEB Aria-Security Team
2006-11-27   Click Gallery - Multiple Input Validation Vulnerabilities 2 WEB Aria-Security Team
2006-11-27   Clickblog - 'Displaycalendar.asp' SQL Injection 2 WEB Aria-Security Team
2006-11-27   ClickContact - 'default.asp' Multiple SQL Injections 2 WEB Aria-Security Team
2006-11-25   fipsShop - Multiple SQL Injections 2 WEB Aria-Security Team
2006-11-25   cPanel WebHost Manager 3.1 - 'park?ndomain' Cross-Site Scripting 2 WEB Aria-Security Team
2006-11-25   cPanel WebHost Manager 3.1 - 'dofeaturemanager?feature' Cross-Site Scripting 2 WEB Aria-Security Team
2006-11-25   cPanel WebHost Manager 3.1 - 'editzone?domain' Cross-Site Scripting 2 WEB Aria-Security Team
2006-11-25   cPanel WebHost Manager 3.1 - 'domts2?domain' Cross-Site Scripting 2 WEB Aria-Security Team
2006-11-25   cPanel WebHost Manager 3.1 - 'editpkg?pkg' Cross-Site Scripting 2 WEB Aria-Security Team
2006-11-25   cPanel WebHost Manager 3.1 - 'addon_configsupport.cgi?supporturl' Cross-Site Scripting 2 WEB Aria-Security Team
2006-11-25   cPanel WebHost Manager 3.1 - 'dochangeemail?email' Cross-Site Scripting 2 WEB Aria-Security Team
2006-11-25   cPanel 11 Beta - Multiple Cross-Site Scripting Vulnerabilities 2 WEB Aria-Security Team
2006-11-25   SIAP CMS - 'login.asp' SQL Injection 2 WEB nagazakig74
2006-11-24   Fixit iDms Pro Image Gallery - 'showfile.asp?fid' SQL Injection 3 WEB Aria-Security Team
2006-11-24   Fixit iDms Pro Image Gallery - 'filelist.asp' Multiple SQL Injections 3 WEB Aria-Security Team
2006-11-24   MMGallery 1.55 - 'Thumbs.php' Cross-Site Scripting 3 WEB Al7ejaz Hacker
2006-11-24   ASP ListPics 5.0 - 'Listpics.asp' SQL Injection 3 WEB Aria-Security Team
2006-11-24   Simple PHP Gallery 1.1 - 'System SP_Index.php' Cross-Site Scripting 3 WEB Al7ejaz Hacker
2006-11-24   MidiCart ASP - 'Item_Show.asp?ID2006quant' SQL Injection 3 WEB Aria-Security Team
2006-11-23   Active PHP BookMarks 1.1.2 - Multiple Remote File Inclusions 3 WEB ThE-LoRd-Of-CrAcKiNg
2006-11-22   PMOS Help Desk 2.3 - 'ticket.php?email' Cross-Site Scripting 3 WEB SwEET-DeViL
2006-11-22   PMOS Help Desk 2.3 - 'ticketview.php' Multiple Cross-Site Scripting Vulnerabilities 3 WEB SwEET-DeViL
2006-11-21   My Little Weblog 2006.11.21 - 'Weblog.php' Cross-Site Scripting 3 WEB the_Edit0r
2006-11-21   CuteNews 1.4.5 - 'rss_title' Cross-Site Scripting 3 WEB Alireza Hassani
2006-11-21   CuteNews 1.4.5 - 'show_news.php' Cross-Site Scripting 2 WEB Alireza Hassani
2006-11-21   Seditio 1.10 - 'Users.Profile.Inc.php' SQL Injection 3 WEB Mustafa Can Bjorn
2006-11-21   CreaDirectory 1.2 - 'search.asp?search' Cross-Site Scripting 3 WEB laurent gaffie
2006-11-21   CreaDirectory 1.2 - 'addlisting.asp?cat' Cross-Site Scripting 3 WEB laurent gaffie
2006-11-21   CreaDirectory 1.2 - 'search.asp?category' SQL Injection 3 WEB laurent gaffie
2006-11-21   JiRos Link Manager 1.0 - 'viewlinks.asp?categoryId' SQL Injection 3 WEB laurent gaffie
2006-11-21   JiRos Link Manager 1.0 - 'openlink.asp?LinkID' SQL Injection 3 WEB laurent gaffie
2006-11-21   Link Exchange Lite 1.0 - Multiple SQL Injections 3 WEB laurent gaffie
2013-10-24   WordPress Theme SAICO 1.0 < 1.0.2 - Arbitrary File Upload 3 WEB Byakuya Kouta
2006-11-20   Wabbit PHP Gallery 0.9 - 'Dir' Directory Traversal 3 WEB the_Edit0r
2006-11-20   Klf-Realty 2.0 - 'detail.asp?property_id' SQL Injection 3 WEB laurent gaffie
2006-11-20   Klf-Realty 2.0 - 'search_listing.asp' Multiple SQL Injections 3 WEB laurent gaffie
2006-11-20   The Classified Ad System 3.0 - 'default.asp' Multiple Cross-Site Scripting Vulnerabilities 3 WEB laurent gaffie
2006-11-20   Rapid Classified 3.1 - 'advsearch.asp' Cross-Site Scripting 3 WEB laurent gaffie
2006-11-20   Rapid Classified 3.1 - 'reply.asp' Cross-Site Scripting 4 WEB laurent gaffie
2006-11-20   Rapid Classified 3.1 - 'search.asp' Cross-Site Scripting 3 WEB laurent gaffie
2006-11-20   Rapid Classified 3.1 - 'view_print.asp' Cross-Site Scripting 3 WEB laurent gaffie
2006-11-20   Rapid Classified 3.1 - 'viewad.asp' SQL Injection 4 WEB laurent gaffie
2013-10-22   ARRIS DG860A - NVRAM Backup Password Disclosure 3 WEB Justin Oberdorf
2006-11-20   Vikingboard 0.1.2 - 'admin.php?act' Traversal Arbitrary File Access 3 WEB laurent gaffie
2006-11-20   Gnews Publisher - Multiple SQL Injections 3 WEB Aria-Security Team
2006-11-20   Enthrallweb eHomes - 'result.asp' Multiple Cross-Site Scripting Vulnerabilities 4 WEB laurent gaffie
2006-11-20   Enthrallweb eHomes - 'result.asp' Multiple SQL Injections 3 WEB laurent gaffie
2006-11-20   Enthrallweb eHomes - 'compareHomes.asp' Multiple SQL Injections 3 WEB laurent gaffie
2006-11-20   Enthrallweb eHomes - 'homeDetail.asp?AD_ID' SQL Injection 2 WEB laurent gaffie
2006-11-20   Enthrallweb eClassifieds - 'dirSub.asp?sid' SQL Injection 3 WEB laurent gaffie
2006-11-20   Enthrallweb eClassifieds - 'dircat.asp?cid' SQL Injection 3 WEB laurent gaffie
2006-11-20   Enthrallweb eClassifieds - 'ad.asp' Multiple SQL Injections 3 WEB laurent gaffie
2006-11-20   Grandora Rialto 1.6 - 'forminfo.asp?refno' Cross-Site Scripting 3 WEB laurent gaffie
2006-11-20   Grandora Rialto 1.6 - 'searchmain.asp?cat' Cross-Site Scripting 3 WEB laurent gaffie
2006-11-20   Grandora Rialto 1.6 - 'searchkey.asp?Keyword' Cross-Site Scripting 2 WEB laurent gaffie
2006-11-20   Grandora Rialto 1.6 - 'listmain.asp?cat' Cross-Site Scripting 3 WEB laurent gaffie
2006-11-20   Grandora Rialto 1.6 - 'searchoption.asp' Multiple SQL Injections 3 WEB laurent gaffie
2006-11-20   Grandora Rialto 1.6 - 'searchmain.asp' Multiple SQL Injections 3 WEB laurent gaffie
2006-11-20   Grandora Rialto 1.6 - 'searchkey.asp' Multiple SQL Injections 3 WEB laurent gaffie
2006-11-20   Grandora Rialto 1.6 - 'printmain.asp?ID' SQL Injection 3 WEB laurent gaffie
2006-11-20   Grandora Rialto 1.6 - 'listmain.asp?cat' SQL Injection 2 WEB laurent gaffie
2006-11-20   Grandora Rialto 1.6 - 'listfull.asp?ID' SQL Injection 3 WEB laurent gaffie
2006-11-20   Grandora Rialto 1.6 - '/admin/default.asp' Multiple SQL Injections 2 WEB laurent gaffie
2006-11-20   vSpin Classified System 2004 - 'search.asp?minprice' Cross-Site Scripting 2 WEB laurent gaffie
2006-11-20   vSpin Classified System 2004 - 'cat.asp?catname' Cross-Site Scripting 4 WEB laurent gaffie
2006-11-20   vSpin Classified System 2004 - 'search.asp' Multiple SQL Injections 3 WEB laurent gaffie
2006-11-20   vSpin Classified System 2004 - 'cat.asp?cat' SQL Injection 3 WEB laurent gaffie
2006-11-20   BirdBlog 1.4 - '/admin/logs.php?page' Cross-Site Scripting 3 WEB the_Edit0r
2006-11-20   BirdBlog 1.4 - '/admin/entries.php?month' Cross-Site Scripting 3 WEB the_Edit0r
2006-11-20   BirdBlog 1.4 - '/admin/comments.php?month' Cross-Site Scripting 3 WEB the_Edit0r
2006-11-20   BirdBlog 1.4 - '/admin/admincore.php?msg' Cross-Site Scripting 3 WEB the_Edit0r
2006-11-20   Boonex 2.0 Dolphin - 'index.php' Remote File Inclusion 3 WEB S.W.A.T.
2006-11-18   Blog:CMS 4.1.3 - 'list.php' Cross-Site Scripting 3 WEB Katatafish
2006-11-18   Texas Rankem - 'tournament_id' SQL Injection 3 WEB Aria-Security Team
2006-11-18   Texas Rankem - 'selPlayer' SQL Injection 3 WEB Aria-Security Team
2013-10-20   ZonPHP 2.25 - Remote Code Execution 3 WEB Halim Cruzito
2006-11-18   ActiveNews Manager - 'articleId' SQL Injection (2) 3 WEB laurent gaffie
2006-11-18   Active News Manager - 'catID' SQL Injection 3 WEB laurent gaffie
2006-11-18   ActiveNews Manager - 'query' Cross-Site Scripting 3 WEB laurent gaffie
2006-11-18   ActiveNews Manager - 'page' SQL Injection 3 WEB laurent gaffie
2006-11-18   ActiveNews Manager - 'articleId' SQL Injection (1) 3 WEB laurent gaffie
2006-11-18   Alan Ward A-CART 2.0 - 'category.asp?catcode' SQL Injection (1) 3 WEB laurent gaffie
2006-11-18   A-Cart Pro 2.0 - 'product.asp?ProductID' SQL Injection 3 WEB laurent gaffie
2006-11-17   BestWebApp Dating Site - 'login_form.asp?msg' Cross-Site Scripting 2 WEB laurent gaffie
2006-11-17   BestWebApp Dating Site Login Component - Multiple Field SQL Injections 3 WEB laurent gaffie
2006-11-17   vBulletin 3.6.x - Admin Control Panel Multiple Cross-Site Scripting Vulnerabilities 3 WEB insanity