Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2006-09-26   CubeCart 3.0.x - 'view_doc.php?view_doc' SQL Injection 0 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - 'view_order.php?order_id' SQL Injection 0 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - '/admin/forgot_pass.php?user_name' SQL Injection 0 WEB HACKERS PAL
2006-09-26   vBulletin 2.3.x - 'global.php' SQL Injection 0 WEB HACKERS PAL
2006-09-26   Phoenix Evolution CMS - '/modules/pageedit/index.php?pageid' Cross-Site Scripting 0 WEB Root3r_H3ll
2006-09-26   Phoenix Evolution CMS - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 0 WEB Root3r_H3ll
2006-09-25   Quickblogger 1.4 - Remote File Inclusion 0 WEB You_You
2006-09-25   PHP_news 2.0 - 'creat_news_all.php?language' Remote File Inclusion 0 WEB Root3r_H3ll
2006-09-25   PHP_news 2.0 - '/admin/catagory.php?language' Remote File Inclusion 0 WEB Root3r_H3ll
2006-09-25   PHP_news 2.0 - '/admin/news.php?language' Remote File Inclusion 1 WEB Root3r_H3ll
2006-09-25   PHP_news 2.0 - 'user_user.php?language' Remote File Inclusion 1 WEB Root3r_H3ll
2006-09-25   My-BIC 0.6.5 - 'Mybic_Server.php' Remote File Inclusion 1 WEB Root3r_H3ll
2013-10-02   GLPI 0.84.1 - Multiple Vulnerabilities 1 WEB High-Tech Bridge SA
2013-10-02   Gnew 2013.1 - Multiple Vulnerabilities (2) 1 WEB High-Tech Bridge SA
2006-09-25   Back-End CMS 0.4.5 - 'search.php?includes_path' Remote File Inclusion 1 WEB Root3r_H3ll
2006-09-25   Back-End CMS 0.4.5 - 'Facts.php?includes_path' Remote File Inclusion 1 WEB Root3r_H3ll
2006-09-25   Back-End CMS 0.4.5 - '/admin/index.php?includes_path' Remote File Inclusion 1 WEB Root3r_H3ll
2006-09-25   Exporia 0.3 - 'Common.php' Remote File Inclusion 1 WEB Root3r_H3ll
2006-09-25   BBSNew 2.0.1 - 'index2.php' Remote File Inclusion 1 WEB Root3r_H3ll
2006-09-25   DanPHPSupport 0.5 - 'admin.php?do' Cross-Site Scripting 1 WEB You_You
2006-09-25   DanPHPSupport 0.5 - 'index.php?page' Cross-Site Scripting 1 WEB You_You
2006-09-25   BirdBlog 1.x - 'user.php?uid' Cross-Site Scripting 1 WEB Root3r_H3ll
2006-09-25   BirdBlog 1.x - 'index.php?page' Cross-Site Scripting 1 WEB Root3r_H3ll
2006-09-25   BirdBlog 1.x - 'comment.php?entryid' Cross-Site Scripting 1 WEB Root3r_H3ll
2006-09-25   WWWThreads 5.4 - 'Cat' Multiple Cross-Site Scripting Vulnerabilities 1 WEB Root3r_H3ll
2006-09-25   Opial AV Download Management 1.0 - 'index.php' Cross-Site Scripting 1 WEB meto5757
2006-09-25   Photostore - 'view_photog.php?photogid' Cross-Site Scripting 1 WEB meto5757
2006-09-25   Photostore - 'details.php?gid' Cross-Site Scripting 1 WEB meto5757
2006-09-24   ToendaCMS 1.0.4 - 'Media.php' Directory Traversal 1 WEB MoHaJaLi
2006-09-24   cPanel 5-10 - SUID Wrapper Privilege Escalation 1 WEB Nima Salehi
2006-09-24   Jamroom 3.0.16 - 'login.php' Cross-Site Scripting 1 WEB meto5757
2006-09-23   MyPhotos 0.1.3b - 'index.php' Remote File Inclusion 1 WEB Root3r_H3ll
2013-09-30   SimpleRisk 20130915-01 - Multiple Vulnerabilities 1 WEB Ryan Dewhurst
2013-09-30   XAMPP 1.8.1 - 'lang.php?WriteIntoLocalDisk method' Local Write Access 0 WEB Manuel García Cárdenas
2013-09-30   mod_accounting Module 0.5 - Blind SQL Injection 1 WEB Wireghoul
2013-09-30   Asus RT-N66U 3.0.0.4.374_720 - Cross-Site Request Forgery 1 WEB cgcai
2013-09-30   Tenda W309R Router 5.07.46 - Configuration Disclosure 1 WEB SANTHO
2006-09-22   PLESK 7.5/7.6 - 'FileManager.php' Directory Traversal 1 WEB GuanYu
2006-09-22   mysource 2.14.8/2.16 - Multiple Vulnerabilities 0 WEB Patrick Webster
2006-09-22   CakePHP 1.1.7.3363 - 'Vendors.php' Directory Traversal 1 WEB GulfTech Security
2006-09-22   Google Mini Search Appliance 4.4.102.M.36 - Information Disclosure 1 WEB Patrick Webster
2006-09-21   BandSite CMS 1.1 - 'footer.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'signgbook_content.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'shows_content.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'reviews_content.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'releases_content.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'photo_content.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'pastshows_content.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'news_content.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'mp3_content.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'merch_content.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'member_content.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'lyrics_content.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'links_content.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'interview_content.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'gbook_content.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'bio_content.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'login_header.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'header.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'sendemail.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'help_mp3.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'help_merch.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'help_news.php' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-20   A.I-Pifou 1.8 - 'Choix_langue.php' Directory Traversal 1 WEB cdg393
2006-09-17   DotNetNuke 4.0 - HTML Injection 0 WEB Secure Shapes
2006-09-19   RedBLoG 0.5 - '/admin/index.php?root_path' Remote File Inclusion 1 WEB Root3r_H3ll
2006-09-19   RedBLoG 0.5 - 'common.php?root_path' Remote File Inclusion 1 WEB Root3r_H3ll
2006-09-19   RedBLoG 0.5 - '/admin/config.php?root_path' Remote File Inclusion 1 WEB Root3r_H3ll
2006-09-19   RedBLoG 0.5 - 'imgen.php?Root' Remote File Inclusion 1 WEB Root3r_H3ll
2006-09-20   NeoSys Neon Webmail for Java 5.06/5.07 - 'updateuser?in_name' Servlet Cross-Site Scripting 0 WEB Tan Chew Keong
2006-09-20   NeoSys Neon Webmail for Java 5.06/5.07 - 'updateuser?in_id' Servlet Arbitrary User Information Modif 1 WEB Tan Chew Keong
2006-09-20   NeoSys Neon Webmail for Java 5.06/5.07 - 'maillist' Servlet Multiple SQL Injections 1 WEB Tan Chew Keong
2006-09-20   NeoSys Neon Webmail for Java 5.06/5.07 - 'addrlist' Servlet Multiple SQL Injections 1 WEB Tan Chew Keong
2006-09-20   NeoSys Neon Webmail for Java 5.06/5.07 - 'updatemail' Servlet Arbitrary Mail Message Manipulation 1 WEB Tan Chew Keong
2006-09-20   NeoSys Neon Webmail for Java 5.06/5.07 - 'downloadfile' Servlet Traversal Arbitrary File Access 2 WEB Tan Chew Keong
2006-09-19   ESyndiCat 1.5 - 'search.php' Cross-Site Scripting 1 WEB meto5757
2006-09-19   Innovate Portal 2.0 - 'index.php' Cross-Site Scripting 1 WEB meto5757
2006-09-18   PT News 1.7.8 - 'search.php' Cross-Site Scripting 1 WEB Snake
2006-09-18   EShoppingPro 1.0 - 'Search_Run.asp' SQL Injection 1 WEB ajann
2006-09-18   NixieAffiliate 1.9 - 'lostpassword.php' Cross-Site Scripting 1 WEB s3rv3r_hack3r
2006-09-18   IDevSpot BizDirectory 1.9 - Multiple Cross-Site Scripting Vulnerabilities 1 WEB s3rv3r_hack3r
2006-09-18   ECardPro 2.0 - 'search.asp' SQL Injection 1 WEB ajann
2006-09-16   Artmedic Links 5.0 - 'index.php' Remote File Inclusion 1 WEB botan
2006-09-16   ZilekPortal 1.0 - 'Haberdetay.asp' SQL Injection 1 WEB chernobiLe
2006-09-16   PHP-post Web Forum 0.x.1.0 - 'pm.php?replyuser' Cross-Site Scripting 1 WEB HACKERS PAL
2006-09-16   PHP-post Web Forum 0.x.1.0 - 'profile.php' Multiple SQL Injections 1 WEB HACKERS PAL
2006-09-16   Hitweb 3.0 - 'REP_CLASS' Multiple Remote File Inclusions 1 WEB ERNE
2006-09-15   Web Wiz Forums 7.01 - 'members.asp' Cross-Site Scripting 1 WEB Crack_MaN
2006-09-15   EasyPage 7 - 'Default.aspx' SQL Injection 1 WEB s3rv3r_hack3r
2006-09-15   Jupiter CMS 1.1.4/1.1.5 - modules/register Multiple SQL Injections 1 WEB HACKERS PAL
2006-09-15   Jupiter CMS 1.1.4/1.1.5 - '/modules/search.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB HACKERS PAL
2006-09-15   Jupiter CMS 1.1.4/1.1.5 - '/modules/mass-email.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB HACKERS PAL
2006-09-15   Jupiter CMS 1.1.4/1.1.5 - '/modules/register.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB HACKERS PAL
2006-09-15   Jupiter CMS 1.1.4/1.1.5 - '/modules/blocks.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB HACKERS PAL
2006-09-15   Jupiter CMS 1.1.4/1.1.5 - 'galleryuploadfunction.php' Arbitrary File Upload 1 WEB HACKERS PAL
2006-09-13   NextAge Cart - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB meto5757
2006-09-14   ClickBlog! 2.0 - 'default.asp' SQL Injection 1 WEB ajann
2006-09-14   PhotoPost Pro 4.6 - Multiple Remote File Inclusions 1 WEB Saudi Hackrz
2006-09-14   Blojsom 2.31 - Cross-Site Scripting 1 WEB Avinash Shenoi
2006-09-14   DCP-Portal 6.0 - 'login.php?Username' SQL Injection 0 WEB HACKERS PAL
2006-09-14   DCP-Portal 6.0 - '/admin/inc/header.inc.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB HACKERS PAL
2006-09-14   DCP-Portal 6.0 - '/admin/inc/footer.inc.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB HACKERS PAL
2006-09-14   Mailman 2.1.x - Multiple Input Validation Vulnerabilities 1 WEB Moritz Naumann
2006-09-14   ActiveCampaign KnowledgeBuilder 2.2 - Remote File Inclusion 1 WEB igi
2006-09-13   NX5Linkx 1.0 - 'links.php' HTTP Response Splitting 1 WEB Aliaksandr Hartsuyeu
2006-09-13   NX5Linkx 1.0 - Multiple SQL Injections 1 WEB Aliaksandr Hartsuyeu
2006-09-13   Snitz Forums 2000 - 'forum.asp' Cross-Site Scripting 1 WEB ajann
2006-09-13   PHP Event Calendar 1.4/1.5 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB NR Nandini
2013-09-26   ArticleSetup - Multiple Vulnerabilities 1 WEB DevilScreaM
2013-09-26   Posnic Stock Management System 1.02 - Multiple Vulnerabilities 1 WEB Sarahma Security
2013-09-26   Hewlett-Packard (HP) 2620 Switch Series. Edit Admin Account - Cross-Site Request Forgery 1 WEB Hubert Gradek
2013-09-26   Piwigo 2.5.2 - Cross-Site Scripting 1 WEB Arsan
2013-09-25   ZeroShell 'cgi-bin/kerbynet' - Local File Disclosure 0 WEB Yann CAM
2013-09-25   X2CRM 3.4.1 - Multiple Vulnerabilities 1 WEB High-Tech Bridge SA
2006-09-13   e107 website system 0.7.5 - 'user.php?Query String (PATH_INFO)' Cross-Site Scripting 0 WEB zark0vac
2013-09-25   Good for Enterprise 2.2.2.1611 - Cross-Site Scripting 0 WEB Mario
2006-09-13   e107 website system 0.7.5 - 'submitnews.php?PATH_INFO' Cross-Site Scripting 0 WEB zark0vac
2006-09-13   e107 website system 0.7.5 - 'signup.php?Query String (PATH_INFO)' Cross-Site Scripting 0 WEB zark0vac
2006-09-13   e107 website system 0.7.5 - 'search.php?Query String (PATH_INFO)' Cross-Site Scripting 0 WEB zark0vac
2006-09-13   e107 website system 0.7.5 - 'news.php?PATH_INFO' Cross-Site Scripting 0 WEB zark0vac
2006-09-13   e107 website system 0.7.5 - 'fpw.php?Query String (PATH_INFO)' Cross-Site Scripting 0 WEB zark0vac
2006-09-13   e107 website system 0.7.5 - 'admin.php?Query String (PATH_INFO)' Cross-Site Scripting 0 WEB zark0vac
2006-09-13   e107 website system 0.7.5 - 'download.php?Query String (PATH_INFO)' Cross-Site Scripting 0 WEB zark0vac
2006-09-13   e107 website system 0.7.5 - 'contact.php?Query String (PATH_INFO)' Cross-Site Scripting 2 WEB zark0vac
2006-09-13   K2News Management 1.3 - 'Ratings.php' Cross-Site Scripting 1 WEB meto5757