2006-11-17
|
|
20/20 Applications Data Shed 1.0 - 'listings.asp' Multiple SQL Injections
|
3 |
WEB
|
laurent gaffie
|
2006-11-17
|
|
20/20 Applications Data Shed 1.0 - 'f-email.asp?itemID' SQL Injection
|
3 |
WEB
|
laurent gaffie
|
2006-11-17
|
|
20/20 Auto Gallery 3.2 - Multiple SQL Injections
|
3 |
WEB
|
laurent gaffie
|
2006-11-17
|
|
20/20 Real Estate 3.2 - Multiple SQL Injections
|
3 |
WEB
|
laurent gaffie
|
2006-11-17
|
|
ASPCart 4.5 - Multiple SQL Injections
|
3 |
WEB
|
laurent gaffie
|
2006-11-17
|
|
PHP Upload Tool 1.0 - Arbitrary File Upload / Directory Traversal
|
3 |
WEB
|
Craig Heffner
|
2006-11-17
|
|
cPanel 10 - DNSlook.HTML Cross-Site Scripting
|
3 |
WEB
|
Aria-Security Team
|
2013-10-19
|
|
WordPress Theme Area53 - Arbitrary File Upload
|
2 |
WEB
|
Byakuya Kouta
|
2013-10-19
|
|
WHMCompleteSolution (WHMCS) 5.2.8 - SQL Injection
|
2 |
WEB
|
g00n
|
2006-11-16
|
|
Xtreme ASP Photo Gallery 2.0 - 'displaypic.asp?catname' Cross-Site Scripting
|
2 |
WEB
|
Aria-Security Team
|
2006-11-16
|
|
Xtreme ASP Photo Gallery 2.0 - 'displaypic.asp?sortorder' SQL Injection
|
2 |
WEB
|
Aria-Security Team
|
2006-09-15
|
|
phpMyAdmin 2.x - Multiple Script Array Handling Full Path Disclosures
|
2 |
WEB
|
laurent gaffie
|
2006-09-15
|
|
phpMyAdmin 2.x - 'sql.php?pos' Cross-Site Scripting
|
2 |
WEB
|
laurent gaffie
|
2006-09-15
|
|
phpMyAdmin 2.x - 'querywindow.php' Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
laurent gaffie
|
2006-09-15
|
|
phpMyAdmin 2.x - 'db_operations.php' Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
laurent gaffie
|
2006-09-15
|
|
phpMyAdmin 2.x - 'db_create.php?db' Cross-Site Scripting
|
3 |
WEB
|
laurent gaffie
|
2006-11-16
|
|
Image Gallery with Access Database - 'default.asp' Multiple SQL Injections
|
2 |
WEB
|
Aria-Security Team
|
2006-11-16
|
|
Image Gallery with Access Database - 'dispimage.asp?id' SQL Injection
|
1 |
WEB
|
Aria-Security Team
|
2006-11-16
|
|
Sphpblog 0.8 - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
the_Edit0r
|
2006-11-16
|
|
Odysseus Blog 1.0 - 'blog.php' Cross-Site Scripting
|
3 |
WEB
|
the_Edit0r
|
2006-11-16
|
|
BlogTorrent Preview 0.92 - 'Announce.php' Cross-Site Scripting
|
2 |
WEB
|
the_Edit0r
|
2006-11-16
|
|
i-Gallery 3.4 - 'igallery.asp' Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
Aria-Security Team
|
2006-11-15
|
|
Hot Links - Perl PHP Information Disclosure
|
3 |
WEB
|
hack2prison
|
2006-11-15
|
|
ASPIntranet 2.1 - Multiple SQL Injections
|
3 |
WEB
|
Aria-Security Team
|
2006-11-15
|
|
Dragon Internet Events Listing 2.0.01 - 'admin_login.asp' Multiple Field SQL Injections
|
3 |
WEB
|
Benjamin Moss
|
2006-11-15
|
|
Dragon Internet Events Listing 2.0.01 - 'event_searchdetail.asp?ID' SQL Injection
|
3 |
WEB
|
Benjamin Moss
|
2006-11-15
|
|
Dragon Internet Events Listing 2.0.01 - 'venue_detail.asp?VenueID' SQL Injection
|
2 |
WEB
|
Benjamin Moss
|
2006-11-15
|
|
Yetihost Helm 3.2.10 - Multiple Cross-Site Scripting Vulnerabilities
|
4 |
WEB
|
Aria-Security Team
|
2006-11-14
|
|
High Performance Computers Solutions Shopping Cart - Multiple SQL Injections
|
3 |
WEB
|
laurent gaffie
|
2006-11-15
|
|
CandyPress Store 3.5.2 14 - 'prodList.asp?brand' SQL Injection
|
3 |
WEB
|
laurent gaffie
|
2006-11-15
|
|
CandyPress Store 3.5.2 14 - 'openPolicy.asp?policy' SQL Injection
|
3 |
WEB
|
laurent gaffie
|
2013-10-18
|
|
Elite Graphix ElitCMS 1.01 / PRO - Multiple Web Vulnerabilities
|
3 |
WEB
|
Vulnerability-Lab
|
2006-11-14
|
|
MGinternet Property Site Manager - 'admin_login.asp' Multiple SQL Injections
|
3 |
WEB
|
laurent gaffie
|
2006-11-14
|
|
MGinternet Property Site Manager - 'listings.asp' Multiple SQL Injections
|
3 |
WEB
|
laurent gaffie
|
2006-11-14
|
|
MGinternet Property Site Manager - 'detail.asp?p' SQL Injection
|
3 |
WEB
|
laurent gaffie
|
2006-11-14
|
|
MGinternet Property Site Manager - 'listings.asp?s' Cross-Site Scripting
|
3 |
WEB
|
laurent gaffie
|
2006-11-14
|
|
Mega Mall - 'order-track.php?orderNo' SQL Injection
|
3 |
WEB
|
laurent gaffie
|
2006-11-14
|
|
Mega Mall - 'product_review.php' Multiple SQL Injections
|
3 |
WEB
|
laurent gaffie
|
2006-11-14
|
|
Evolve Merchant - 'viewcart.asp' SQL Injection
|
3 |
WEB
|
laurent gaffie
|
2006-11-14
|
|
Inventory Manager - Multiple Input Validation Vulnerabilities
|
3 |
WEB
|
laurent gaffie
|
2013-10-17
|
|
Woltlab Burning Board Regenbogenwiese 2007 Addon - SQL Injection
|
3 |
WEB
|
Easy Laster
|
2013-10-17
|
|
WordPress Plugin Realty - Blind SQL Injection
|
3 |
WEB
|
Napsterakos
|
2013-10-17
|
|
WordPress Plugin Quick Paypal Payments 3.0 - Presistant Cross-Site Scripting
|
3 |
WEB
|
Zy0d0x
|
2013-10-17
|
|
Zikula CMS 1.3.5 - Multiple Vulnerabilities
|
3 |
WEB
|
Vulnerability-Lab
|
2006-11-14
|
|
Plesk 7.5/8.0 - 'login_up.php3' Cross-Site Scripting
|
3 |
WEB
|
David Vieira-Kurz
|
2006-11-14
|
|
Plesk 7.5/8.0 - 'get_password.php' Cross-Site Scripting
|
3 |
WEB
|
David Vieira-Kurz
|
2006-11-14
|
|
Car Site Manager - '/csm/asp/listings.asp' Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
laurent gaffie
|
2006-11-14
|
|
Car Site Manager - '/csm/asp/detail.asp?p' SQL Injection
|
3 |
WEB
|
laurent gaffie
|
2006-11-14
|
|
Car Site Manager - '/csm/asp/listings.asp' Multiple SQL Injections
|
2 |
WEB
|
laurent gaffie
|
2006-11-14
|
|
Pilot Cart 7.2 - 'Pilot.asp' SQL Injection
|
3 |
WEB
|
laurent gaffie
|
2006-11-14
|
|
DMXReady Site Engine Manager 1.0 - 'index.asp' SQL Injection
|
3 |
WEB
|
Aria-Security Team
|
2006-11-14
|
|
ASPIntranet 2.1 - 'default.asp' SQL Injection
|
3 |
WEB
|
Aria-Security Team
|
2006-11-14
|
|
SiteXpress E-Commerce System - 'Dept.asp' SQL Injection
|
3 |
WEB
|
Aria-Security Team
|
2006-11-15
|
|
SitesOutlet eCommerce Kit - Multiple SQL Injections
|
3 |
WEB
|
laurent gaffie
|
2006-11-14
|
|
FunkyASP Glossary 1.0 - 'Glossary.asp' SQL Injection
|
3 |
WEB
|
saps.audit
|
2006-11-12
|
|
DirectAdmin 1.28/1.29 - 'CMD_FTP_SHOW' Cross-Site Scripting
|
3 |
WEB
|
Aria-Security Team
|
2006-11-12
|
|
DirectAdmin 1.28/1.29 - 'CMD_EMAIL_LIST' Cross-Site Scripting
|
3 |
WEB
|
Aria-Security Team
|
2006-11-12
|
|
DirectAdmin 1.28/1.29 - 'CMD_EMAIL_VACATION_MODIFY' Cross-Site Scripting
|
3 |
WEB
|
Aria-Security Team
|
2006-11-12
|
|
DirectAdmin 1.28/1.29 - 'CMD_TICKET' Cross-Site Scripting
|
3 |
WEB
|
Aria-Security Team
|
2006-11-12
|
|
DirectAdmin 1.28/1.29 - 'CMD_EMAIL_FORWARDER_MODIFY' Cross-Site Scripting
|
3 |
WEB
|
Aria-Security Team
|
2006-11-12
|
|
DirectAdmin 1.28/1.29 - 'CMD_TICKET_CREATE' Cross-Site Scripting
|
3 |
WEB
|
Aria-Security Team
|
2006-11-12
|
|
DirectAdmin 1.28/1.29 - 'CMD_SHOW_USER' Cross-Site Scripting
|
3 |
WEB
|
Aria-Security Team
|
2006-11-12
|
|
DirectAdmin 1.28/1.29 - 'CMD_SHOW_RESELLER' Cross-Site Scripting
|
2 |
WEB
|
Aria-Security Team
|
2006-11-12
|
|
PHPdebug 1.1 - 'Debug_test.php' Remote File Inclusion
|
2 |
WEB
|
Firewall
|
2013-10-16
|
|
WebTester 5.x - Multiple Vulnerabilities
|
3 |
WEB
|
X-Cisadane
|
2006-11-13
|
|
INFINICART - 'browsesubcat.asp' Multiple SQL Injections
|
3 |
WEB
|
laurent gaffie
|
2006-11-13
|
|
INFINICART - 'added_to_cart.asp?ProductID' SQL Injection
|
3 |
WEB
|
laurent gaffie
|
2006-11-13
|
|
INFINICART - 'browse_group.asp?groupid' SQL Injection
|
2 |
WEB
|
laurent gaffie
|
2006-11-13
|
|
INFINICART - 'login.asp' Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
laurent gaffie
|
2006-11-13
|
|
INFINICART - 'sendpassword.asp?email' Cross-Site Scripting
|
3 |
WEB
|
laurent gaffie
|
2006-11-13
|
|
INFINICART - 'search.asp?search' Cross-Site Scripting
|
3 |
WEB
|
laurent gaffie
|
2006-11-13
|
|
Roundcube Webmail 0.1 - 'index.php' Cross-Site Scripting
|
2 |
WEB
|
RSnake
|
2006-11-13
|
|
ASP Portal 2.0/3.x/4.0 - 'Default1.asp' SQL Injection
|
3 |
WEB
|
ajann
|
2006-11-14
|
|
20/20 Real Estate 3.2 - 'listings.asp' SQL Injection
|
3 |
WEB
|
Aria-Security Team
|
2006-11-13
|
|
cPanel 10 - 'newuser.html' Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
Aria-Security Team
|
2006-11-13
|
|
cPanel 10 - 'seldir.html?dir' Cross-Site Scripting
|
3 |
WEB
|
Aria-Security Team
|
2006-11-11
|
|
WordPress Core 2.0.5 - 'functions.php' Remote File Inclusion
|
3 |
WEB
|
_ANtrAX_
|
2013-10-15
|
|
DornCMS Application 1.4 - Multiple Web Vulnerabilities
|
3 |
WEB
|
Vulnerability-Lab
|
2013-10-15
|
|
Apple iOS 7.0.2 - Sim Lock Screen Display Bypass
|
3 |
WEB
|
Vulnerability-Lab
|
2013-10-15
|
|
UbiDisk File Manager 2.0 iOS - Multiple Web Vulnerabilities
|
3 |
WEB
|
Vulnerability-Lab
|
2013-10-15
|
|
OliveOffice Mobile Suite 2.0.3 iOS - Local File Inclusion
|
3 |
WEB
|
Vulnerability-Lab
|
2013-10-15
|
|
My File Explorer 1.3.1 iOS - Multiple Web Vulnerabilities
|
3 |
WEB
|
Vulnerability-Lab
|
2013-10-15
|
|
Zabbix 2.0.8 - SQL Injection / Remote Code Execution (Metasploit)
|
3 |
WEB
|
Jason Kratzer
|
2013-10-15
|
|
Dolibarr ERP/CRM 3.4.0 - 'exportcsv.php?sondage' SQL Injection
|
3 |
WEB
|
drone
|
2013-10-15
|
|
WordPress Plugin Dexs PM System - (Authenticated) Persistent Cross-Site Scripting
|
4 |
WEB
|
TheXero
|
2006-11-11
|
|
ExoPHPDesk 1.2 - 'Pipe.php' Remote File Inclusion
|
3 |
WEB
|
Firewall1954
|
2006-11-10
|
|
Bitweaver 1.x - '/wiki/list_pages.php?sort_mode' SQL Injection
|
3 |
WEB
|
laurent gaffie
|
2006-11-10
|
|
Bitweaver 1.x - '/wiki/orphan_pages.php?sort_mode' SQL Injection
|
3 |
WEB
|
laurent gaffie
|
2006-11-10
|
|
Bitweaver 1.x - '/fisheye/index.php?sort_mode' SQL Injection
|
3 |
WEB
|
laurent gaffie
|
2013-10-14
|
|
aMSN 0.98.9 Web App - Multiple Vulnerabilities
|
3 |
WEB
|
drone
|
2013-10-14
|
|
WordPress Plugin Cart66 1.5.1.14 - Multiple Vulnerabilities
|
3 |
WEB
|
absane
|
2013-10-14
|
|
StatusNet/Laconica 0.7.4/0.8.2/0.9.0beta3 - Arbitrary File Reading
|
3 |
WEB
|
spiderboy
|
2006-11-10
|
|
Bitweaver 1.x - '/fisheye/list_galleries.php?sort_mode' SQL Injection
|
3 |
WEB
|
laurent gaffie
|
2006-11-10
|
|
Bitweaver 1.x - '/blogs/list_blogs.php?sort_mode' SQL Injection
|
3 |
WEB
|
laurent gaffie
|
2006-11-09
|
|
Omnistar Article Manager - Multiple SQL Injections
|
2 |
WEB
|
Benjamin Moss
|
2006-11-09
|
|
LandShop 0.6.3 - 'ls.php' Multiple SQL Injections
|
3 |
WEB
|
laurent gaffie
|
2006-11-09
|
|
LandShop 0.6.3 - 'ls.php' Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
laurent gaffie
|
2006-11-09
|
|
bitweaver 1.x - '/newsletters/edition.php?tk' SQL Injection
|
3 |
WEB
|
laurent gaffie
|
2006-11-08
|
|
Speedywiki 2.0/2.1 - Multiple Input Validation Vulnerabilities
|
3 |
WEB
|
laurent gaffie
|
2006-11-08
|
|
Portix-PHP 0.4.2 - Multiple SQL Injections
|
3 |
WEB
|
Benjamin Moss
|
2006-11-08
|
|
PHPMyChat Plus 1.9 - Multiple Local File Inclusions
|
3 |
WEB
|
ajann
|
2006-11-08
|
|
Abarcar Realty Portal 5.1.5/6.0.1 - Multiple SQL Injections
|
3 |
WEB
|
Benjamin Moss
|
2006-11-08
|
|
FreeWebShop 2.1/2.2 - 'index.php?cat' Cross-Site Scripting
|
3 |
WEB
|
laurent gaffie
|
2006-11-08
|
|
FreeWebShop 2.1/2.2 - 'index.php?page' Traversal Arbitrary File Access
|
3 |
WEB
|
laurent gaffie
|
2006-11-08
|
|
Immediacy .NET CMS 5.2 - 'Logon.aspx' Cross-Site Scripting
|
3 |
WEB
|
Gemma Hughes
|
2006-11-08
|
|
PHPMyChat 0.14/0.15 - 'Languages.Lib.php' Local File Inclusion
|
1 |
WEB
|
ajann
|
2006-11-07
|
|
Kayako SupportSuite 3.0.32 - 'index.php' Cross-Site Scripting
|
2 |
WEB
|
Dr.HAiL
|
2006-11-07
|
|
IPManager 2.3 - 'index.php' Cross-Site Scripting
|
2 |
WEB
|
spaceballyopsolo
|
2006-11-06
|
|
AIOCP 1.3.x - 'cp_show_page_help.php' Full Path Disclosure
|
3 |
WEB
|
laurent gaffie
|
2006-11-06
|
|
AIOCP 1.3.x - 'cp_show_ec_products.php' Full Path Disclosure
|
2 |
WEB
|
laurent gaffie
|
2006-11-06
|
|
AIOCP 1.3.x - Multiple Vulnerabilities
|
2 |
WEB
|
laurent gaffie
|
2006-11-06
|
|
AIOCP 1.3.x - 'cp_links_search.php' SQL Injection
|
2 |
WEB
|
laurent gaffie
|
2006-11-06
|
|
AIOCP 1.3.x - 'cp_codice_fiscale.php' SQL Injection
|
2 |
WEB
|
laurent gaffie
|
2006-11-06
|
|
AIOCP 1.3.x - 'cp_users_online.php' SQL Injection
|
2 |
WEB
|
laurent gaffie
|
2006-11-06
|
|
AIOCP 1.3.x - 'cp_login.php' SQL Injection
|
2 |
WEB
|
laurent gaffie
|
2006-11-06
|
|
AIOCP 1.3.x - 'cp_show_ec_products.php' SQL Injection
|
3 |
WEB
|
laurent gaffie
|
2006-11-06
|
|
AIOCP 1.3.x - 'cp_contact_us.php' SQL Injection
|
2 |
WEB
|
laurent gaffie
|
2006-11-06
|
|
AIOCP 1.3.x - 'cp_links.php' SQL Injection
|
2 |
WEB
|
laurent gaffie
|
2006-11-06
|
|
AIOCP 1.3.x - 'cp_newsletter.php' SQL Injection
|
2 |
WEB
|
laurent gaffie
|
2006-11-06
|
|
AIOCP 1.3.x - 'cp_edit_user.php' SQL Injection
|
2 |
WEB
|
laurent gaffie
|
2006-11-06
|
|
AIOCP 1.3.x - 'cp_forum_view.php' SQL Injection
|
2 |
WEB
|
laurent gaffie
|
2006-11-06
|
|
AIOCP 1.3.x - 'cp_news.php' SQL Injection
|
2 |
WEB
|
laurent gaffie
|
2006-11-06
|
|
AIOCP 1.3.x - 'cp_dpage.php' SQL Injection
|
2 |
WEB
|
laurent gaffie
|
2006-11-06
|
|
AIOCP 1.3.x - 'load_page' Remote File Inclusion
|
2 |
WEB
|
laurent gaffie
|
2006-11-06
|
|
AIOCP 1.3.x - 'cp_links_search.php' Cross-Site Scripting
|
3 |
WEB
|
laurent gaffie
|