Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2006-10-04   osCommerce 2.2 - '/admin/newsletters.php?page' Cross-Site Scripting 3 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/manufacturers.php?page' Cross-Site Scripting 3 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/languages.php?page' Cross-Site Scripting 3 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/currencies.php?page' Cross-Site Scripting 3 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/countries.php?page' Cross-Site Scripting 3 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/banner_statistics.php?page' Cross-Site Scripting 3 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/banner_manager.php?page' Cross-Site Scripting 3 WEB Lostmon
2006-10-27   ASPPlayGround.NET Forum 2.4.5 - 'Calendar.asp' Cross-Site Scripting 3 WEB MizoZ
2006-10-04   Yener Haber Script 1.0/2.0 - SQL Injection 3 WEB Dj_ReMix
2006-10-03   HAMweather 3.9.8 - 'template.php' Script Code Injection 3 WEB GulfTech Security
2006-10-02   Digishop 4.0 - 'cart.php' Cross-Site Scripting 3 WEB meto5757
2006-10-02   PHP Web Scripts Easy Banner - 'functions.php' Remote File Inclusion 3 WEB abu ahmed
2006-10-02   DeluxeBB 1.09 - 'Sig.php' Remote File Inclusion 3 WEB r0ut3r
2006-09-30   Yblog - 'uss.php' Cross-Site Scripting 3 WEB You_You
2006-09-30   Yblog - 'tem.php' Cross-Site Scripting 3 WEB You_You
2006-09-30   Yblog - 'funk.php' Cross-Site Scripting 3 WEB You_You
2006-09-29   OlateDownload 3.4 - 'search.php?query' SQL Injection 3 WEB Hessam-x
2006-09-29   OlateDownload 3.4 - 'details.php?page' SQL Injection 3 WEB Hessam-x
2006-09-30   phpBB XS 0.58 - Multiple Remote File Inclusions 3 WEB xoron
2006-09-29   Geotarget - 'script.php' Remote File Inclusion 3 WEB RaVeR shi mozi
2006-09-28   Les Visiteurs 2.0 - Multiple Remote File Inclusions 3 WEB D_7J
2013-10-04   Aanval 7.1 build 70151 - Multiple Vulnerabilities 3 WEB xistence
2006-09-22   Red Mombin 0.7 - 'process_login.php' Cross-Site Scripting 3 WEB Armorize Technologies
2006-09-22   Red Mombin 0.7 - 'index.php' Cross-Site Scripting 3 WEB Armorize Technologies
2006-09-27   Web//News 1.4 - 'parser.php' Remote File Inclusion (2) 3 WEB ThE-WoLf-KsA
2006-09-27   Joomla! Component VirtueMart Joomla! eCommerce Edition 1.0.11 - Multiple Input Validation Vulnerabil 3 WEB Adrian Castro
2006-09-27   MKPortal 1.0/1.1 - 'PMPopup.php' Cross-Site Scripting 3 WEB HanowarS
2006-09-27   PHPSelect Web Development - 'index.php3' Remote File Inclusion 3 WEB rUnViRuS
2013-10-04   CMS Formulasi 2.07 - Multiple Vulnerabilities 3 WEB Sarahma Security
2006-09-26   PHP Invoice 2.2 - 'home.php' Cross-Site Scripting 4 WEB meto5757
2013-10-04   FlashChat 6.0.2 < 6.0.8 - Arbitrary File Upload 3 WEB x-hayben21
2013-10-04   elproLOG MONITOR Webaccess 2.1 - Multiple Vulnerabilities 3 WEB Vulnerability-Lab
2006-09-26   CubeCart 3.0.x - 'footer.inc.php?la_pow_by' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - '/admin/header.inc.php' Multiple Cross-Site Scripting Vulnerabilities 4 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - '/admin/image.php?image' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - '/admin/nav.php' Multiple Cross-Site Scripting Vulnerabilities 3 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - 'view_order.php?order_id' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - '/admin/print_order.php?order_id' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - '/admin/print_order.php?order_id' SQL Injection 2 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - 'view_doc.php?view_doc' SQL Injection 2 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - 'view_order.php?order_id' SQL Injection 2 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - '/admin/forgot_pass.php?user_name' SQL Injection 2 WEB HACKERS PAL
2006-09-26   vBulletin 2.3.x - 'global.php' SQL Injection 2 WEB HACKERS PAL
2006-09-26   Phoenix Evolution CMS - '/modules/pageedit/index.php?pageid' Cross-Site Scripting 2 WEB Root3r_H3ll
2006-09-26   Phoenix Evolution CMS - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB Root3r_H3ll
2006-09-25   Quickblogger 1.4 - Remote File Inclusion 2 WEB You_You
2006-09-25   PHP_news 2.0 - 'creat_news_all.php?language' Remote File Inclusion 2 WEB Root3r_H3ll
2006-09-25   PHP_news 2.0 - '/admin/catagory.php?language' Remote File Inclusion 3 WEB Root3r_H3ll
2006-09-25   PHP_news 2.0 - '/admin/news.php?language' Remote File Inclusion 3 WEB Root3r_H3ll
2006-09-25   PHP_news 2.0 - 'user_user.php?language' Remote File Inclusion 3 WEB Root3r_H3ll
2006-09-25   My-BIC 0.6.5 - 'Mybic_Server.php' Remote File Inclusion 3 WEB Root3r_H3ll
2013-10-02   GLPI 0.84.1 - Multiple Vulnerabilities 3 WEB High-Tech Bridge SA
2013-10-02   Gnew 2013.1 - Multiple Vulnerabilities (2) 3 WEB High-Tech Bridge SA
2006-09-25   Back-End CMS 0.4.5 - 'search.php?includes_path' Remote File Inclusion 3 WEB Root3r_H3ll
2006-09-25   Back-End CMS 0.4.5 - 'Facts.php?includes_path' Remote File Inclusion 3 WEB Root3r_H3ll
2006-09-25   Back-End CMS 0.4.5 - '/admin/index.php?includes_path' Remote File Inclusion 3 WEB Root3r_H3ll
2006-09-25   Exporia 0.3 - 'Common.php' Remote File Inclusion 3 WEB Root3r_H3ll
2006-09-25   BBSNew 2.0.1 - 'index2.php' Remote File Inclusion 3 WEB Root3r_H3ll
2006-09-25   DanPHPSupport 0.5 - 'admin.php?do' Cross-Site Scripting 3 WEB You_You
2006-09-25   DanPHPSupport 0.5 - 'index.php?page' Cross-Site Scripting 3 WEB You_You
2006-09-25   BirdBlog 1.x - 'user.php?uid' Cross-Site Scripting 3 WEB Root3r_H3ll
2006-09-25   BirdBlog 1.x - 'index.php?page' Cross-Site Scripting 3 WEB Root3r_H3ll
2006-09-25   BirdBlog 1.x - 'comment.php?entryid' Cross-Site Scripting 3 WEB Root3r_H3ll
2006-09-25   WWWThreads 5.4 - 'Cat' Multiple Cross-Site Scripting Vulnerabilities 3 WEB Root3r_H3ll
2006-09-25   Opial AV Download Management 1.0 - 'index.php' Cross-Site Scripting 3 WEB meto5757
2006-09-25   Photostore - 'view_photog.php?photogid' Cross-Site Scripting 3 WEB meto5757
2006-09-25   Photostore - 'details.php?gid' Cross-Site Scripting 3 WEB meto5757
2006-09-24   ToendaCMS 1.0.4 - 'Media.php' Directory Traversal 3 WEB MoHaJaLi
2006-09-24   cPanel 5-10 - SUID Wrapper Privilege Escalation 3 WEB Nima Salehi
2006-09-24   Jamroom 3.0.16 - 'login.php' Cross-Site Scripting 3 WEB meto5757
2006-09-23   MyPhotos 0.1.3b - 'index.php' Remote File Inclusion 3 WEB Root3r_H3ll
2013-09-30   SimpleRisk 20130915-01 - Multiple Vulnerabilities 3 WEB Ryan Dewhurst
2013-09-30   XAMPP 1.8.1 - 'lang.php?WriteIntoLocalDisk method' Local Write Access 2 WEB Manuel García Cárdenas
2013-09-30   mod_accounting Module 0.5 - Blind SQL Injection 3 WEB Wireghoul
2013-09-30   Asus RT-N66U 3.0.0.4.374_720 - Cross-Site Request Forgery 3 WEB cgcai
2013-09-30   Tenda W309R Router 5.07.46 - Configuration Disclosure 3 WEB SANTHO
2006-09-22   PLESK 7.5/7.6 - 'FileManager.php' Directory Traversal 3 WEB GuanYu
2006-09-22   mysource 2.14.8/2.16 - Multiple Vulnerabilities 2 WEB Patrick Webster
2006-09-22   CakePHP 1.1.7.3363 - 'Vendors.php' Directory Traversal 3 WEB GulfTech Security
2006-09-22   Google Mini Search Appliance 4.4.102.M.36 - Information Disclosure 3 WEB Patrick Webster
2006-09-21   BandSite CMS 1.1 - 'footer.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'signgbook_content.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'shows_content.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'reviews_content.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'releases_content.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'photo_content.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'pastshows_content.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'news_content.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'mp3_content.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'merch_content.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'member_content.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'lyrics_content.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'links_content.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'interview_content.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'gbook_content.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'bio_content.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'login_header.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'header.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'sendemail.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'help_mp3.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'help_merch.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'help_news.php' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-20   A.I-Pifou 1.8 - 'Choix_langue.php' Directory Traversal 3 WEB cdg393
2006-09-17   DotNetNuke 4.0 - HTML Injection 4 WEB Secure Shapes
2006-09-19   RedBLoG 0.5 - '/admin/index.php?root_path' Remote File Inclusion 2 WEB Root3r_H3ll
2006-09-19   RedBLoG 0.5 - 'common.php?root_path' Remote File Inclusion 2 WEB Root3r_H3ll
2006-09-19   RedBLoG 0.5 - '/admin/config.php?root_path' Remote File Inclusion 2 WEB Root3r_H3ll
2006-09-19   RedBLoG 0.5 - 'imgen.php?Root' Remote File Inclusion 2 WEB Root3r_H3ll
2006-09-20   NeoSys Neon Webmail for Java 5.06/5.07 - 'updateuser?in_name' Servlet Cross-Site Scripting 2 WEB Tan Chew Keong
2006-09-20   NeoSys Neon Webmail for Java 5.06/5.07 - 'updateuser?in_id' Servlet Arbitrary User Information Modif 2 WEB Tan Chew Keong
2006-09-20   NeoSys Neon Webmail for Java 5.06/5.07 - 'maillist' Servlet Multiple SQL Injections 3 WEB Tan Chew Keong
2006-09-20   NeoSys Neon Webmail for Java 5.06/5.07 - 'addrlist' Servlet Multiple SQL Injections 3 WEB Tan Chew Keong
2006-09-20   NeoSys Neon Webmail for Java 5.06/5.07 - 'updatemail' Servlet Arbitrary Mail Message Manipulation 3 WEB Tan Chew Keong
2006-09-20   NeoSys Neon Webmail for Java 5.06/5.07 - 'downloadfile' Servlet Traversal Arbitrary File Access 4 WEB Tan Chew Keong
2006-09-19   ESyndiCat 1.5 - 'search.php' Cross-Site Scripting 3 WEB meto5757
2006-09-19   Innovate Portal 2.0 - 'index.php' Cross-Site Scripting 3 WEB meto5757
2006-09-18   PT News 1.7.8 - 'search.php' Cross-Site Scripting 3 WEB Snake
2006-09-18   EShoppingPro 1.0 - 'Search_Run.asp' SQL Injection 3 WEB ajann
2006-09-18   NixieAffiliate 1.9 - 'lostpassword.php' Cross-Site Scripting 3 WEB s3rv3r_hack3r
2006-09-18   IDevSpot BizDirectory 1.9 - Multiple Cross-Site Scripting Vulnerabilities 3 WEB s3rv3r_hack3r
2006-09-18   ECardPro 2.0 - 'search.asp' SQL Injection 3 WEB ajann
2006-09-16   Artmedic Links 5.0 - 'index.php' Remote File Inclusion 3 WEB botan
2006-09-16   ZilekPortal 1.0 - 'Haberdetay.asp' SQL Injection 3 WEB chernobiLe
2006-09-16   PHP-post Web Forum 0.x.1.0 - 'pm.php?replyuser' Cross-Site Scripting 3 WEB HACKERS PAL
2006-09-16   PHP-post Web Forum 0.x.1.0 - 'profile.php' Multiple SQL Injections 3 WEB HACKERS PAL