Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2006-06-06   GANTTy 1.0.3 - 'index.php' Cross-Site Scripting 0 WEB Luny
2006-06-05   Alex DownloadEngine 1.4.1 - 'comments.php' SQL Injection 1 WEB ajann
2006-06-05   myNewsletter 1.1.2 - 'Username' SQL Injection 0 WEB FarhadKey
2006-06-05   Kmita FAQ 1.0 - 'index.php?catid' SQL Injection 1 WEB Luny
2006-06-05   Kmita FAQ 1.0 - 'search.php?q' Cross-Site Scripting 1 WEB Luny
2006-06-05   Bookmark4U 2.0 - '/inc/function.php?env[include_prefix]' Remote File Inclusion 1 WEB SnIpEr_SA
2006-06-05   Bookmark4U 2.0 - '/inc/common.php?env[include_prefix]' Remote File Inclusion 1 WEB SnIpEr_SA
2006-06-05   Bookmark4U 2.0 - '/inc/config.php?env[include_prefix]' Remote File Inclusion 1 WEB SnIpEr_SA
2006-06-05   Bookmark4U 2.0 - '/inc/dbase.php?env[include_prefix]' Remote File Inclusion 1 WEB SnIpEr_SA
2006-06-05   ESTsoft InternetDisk - Arbitrary File Upload / Script Execution 1 WEB Kil13r
2006-06-05   CyBoards PHP Lite 1.21/1.25 - 'Common.php' Remote File Inclusion 0 WEB SpC-x
2006-06-05   CoolForum 0.x - 'editpost.php' SQL Injection 1 WEB DarkFig
2006-06-03   XUEBook 1.0 - 'index.php' SQL Injection 1 WEB SpC-x
2006-06-03   IBWd Guestbook 1.0 - 'index.php' SQL Injection 1 WEB SpC-x
2006-06-02   phpBB 2.0.x - 'template.php' Remote File Inclusion 1 WEB Canberx
2006-06-02   LocazoList Classifieds 1.0 - 'Viewmsg.asp' SQL Injection 1 WEB ajann
2006-06-02   PHP ManualMaker 1.0 - Multiple Input Validation Vulnerabilities 1 WEB Luny
2006-06-02   DELTAScripts PHP Pro Publish 2.0 - Multiple Cross-Site Scripting Vulnerabilities 1 WEB Soot
2006-06-02   Ovidentia 5.6.x/5.8 - 'options.php?babInstallPath' Remote File Inclusion 1 WEB black-cod3
2006-06-02   Ovidentia 5.6.x/5.8 - 'posts.php?babInstallPath' Remote File Inclusion 1 WEB black-cod3
2006-06-02   Ovidentia 5.6.x/5.8 - 'search.php?babInstallPath' Remote File Inclusion 1 WEB black-cod3
2006-06-02   Ovidentia 5.6.x/5.8 - 'statart.php?babInstallPath' Remote File Inclusion 1 WEB black-cod3
2006-06-02   Ovidentia 5.6.x/5.8 - 'vacadm.php?babInstallPath' Remote File Inclusion 1 WEB black-cod3
2006-06-02   Ovidentia 5.6.x/5.8 - 'vacadma.php?babInstallPath' Remote File Inclusion 1 WEB black-cod3
2006-06-02   Ovidentia 5.6.x/5.8 - 'vacadmb.php?babInstallPath' Remote File Inclusion 1 WEB black-cod3
2006-06-02   Ovidentia 5.6.x/5.8 - 'approb.php?babInstallPath' Remote File Inclusion 1 WEB black-cod3
2006-06-02   Squirrelmail 1.4.x - 'Redirect.php' Local File Inclusion 1 WEB brokejunker
2006-06-02   TAL RateMyPic 1.0 - Multiple Input Validation Vulnerabilities 1 WEB Luny
2006-06-02   Portix-PHP 2-0.3.2 Portal - Multiple Cross-Site Scripting Vulnerabilities 1 WEB SpC-x
2006-06-02   Enigma Haber 4.2 - Cross-Site Scripting 1 WEB The_BeKiR
2006-06-01   Abarcar Realty Portal 5.1.5 - 'content.php' SQL Injection 1 WEB SpC-x
2006-06-01   Tekno.Portal - 'Bolum.php' SQL Injection 1 WEB SpC-x
2006-05-01   Hogstorps Guestbook 2.0 - Unauthorized Access 1 WEB omnipresent
2006-05-31   vBulletin 3.0.10 - 'Portal.php' SQL Injection 1 WEB SpC-x
2006-05-31   osTicket 1.x - 'Open_form.php' Remote File Inclusion 1 WEB Sweet
2005-05-31   PHP-Nuke 7.x - Multiple Remote File Inclusions 1 WEB ERNE
2006-05-31   PHPMyDesktop/Arcade 1.0 - 'index.php' Local File Inclusion 1 WEB darkgod
2006-05-31   ToendaCMS 0.7 - 'index.php' Cross-Site Scripting 1 WEB Jokubas
2006-05-30   EVA-Web 2.1.2 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB r0t
2006-05-30   EVA-Web 2.1.2 - 'rubrique.php3?date' Cross-Site Scripting 1 WEB r0t
2006-05-30   EVA-Web 2.1.2 - 'article-album.php3?debut_image' Cross-Site Scripting 1 WEB r0t
2006-05-11   Geeklog 1.4 - Multiple Input Validation Vulnerabilities 1 WEB trueend5
2006-05-29   ASPBB 0.5.2 - 'Perform_search.asp' Cross-Site Scripting 1 WEB Mustafa Can Bjorn
2006-05-29   TikiWiki 1.9 - 'tiki-lastchanges.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB Blwood
2006-05-29   Photoalbum B&W 1.3 - 'index.php' Cross-Site Scripting 1 WEB black-code
2006-05-29   Mini-NUKE 2.3 - 'Your_Account.asp' Multiple SQL Injections 1 WEB Mustafa Can Bjorn
2006-05-27   CoolPHP - 'index.php' Cross-Site Scripting 1 WEB black-code
2006-03-11   vCard 2.9 - Multiple Cross-Site Scripting Vulnerabilities 2 WEB black-code
2006-05-27   AR-Blog 5.2 - Multiple Cross-Site Scripting Vulnerabilities 0 WEB black-code
2006-05-27   Chipmunk Directory - 'index.php' Cross-Site Scripting 0 WEB black-code
2006-05-27   Chipmunk 1.4 - 'Guestbook index.php' Cross-Site Scripting 0 WEB black-code
2006-05-27   SaPHPLesson 2.0 - 'show.php' SQL Injection 1 WEB SwEET-DeViL
2006-05-26   DoceboLms 2.0.x - 'Lang' Multiple Remote File Inclusions 1 WEB beford
2006-05-23   DoceboLms 2.0.x/3.0.x / DoceboKms 3.0.3 / Docebo CMS 3.0.x - Multiple Remote File Inclusions 1 WEB Kacper
2006-05-19   Artmedic NewsLetter 4.1 - 'Log.php' Remote Script Execution 1 WEB C.Schmitz
2006-05-19   JemWeb DownloadControl 1.0 - 'DC.php' SQL Injection 1 WEB Luny
2006-05-19   CodeAvalanche News 1.2 - 'default.asp' SQL Injection 1 WEB omnipresent
2006-05-18   ASPBB 0.5.2 - 'profile.asp?get' Cross-Site Scripting 1 WEB TeufeL
2006-05-18   ASPBB 0.5.2 - 'default.asp?action' Cross-Site Scripting 1 WEB TeufeL
2006-05-18   Cosmoshop 8.10.78/8.11.106 - 'Lshop.cgi' SQL Injection 1 WEB l0om
2006-05-17   Open Wiki 0.78 - 'ow.asp' Cross-Site Scripting 1 WEB LiNuX_rOOt
2006-05-17   BoastMachine 3.1 - 'admin.php' Cross-Site Scripting 1 WEB Yunus Emre Yilmaz
2006-05-16   Caucho Resin 3.0.17/3.0.18 - Viewfile Information Disclosure 1 WEB Joseph Pierini
2006-05-16   Sphider 1.3 - 'search.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB Soot
2006-05-16   PHPRemoteView - 'PRV.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB Soot
2006-05-15   Confixx 3.0/3.1 - 'index.php' Cross-Site Scripting 1 WEB LoK-Crew
2005-05-15   MonoChat 1.0 - HTML Injection 1 WEB X-BOY
2006-05-15   PHPODP 1.5 - 'ODP.php' Cross-Site Scripting 1 WEB Kiki
2006-05-15   RadScripts RadLance 7.0 - 'popup.php' Local File Inclusion 1 WEB Mr.CrackerZ
2013-08-26   Joomla! Component com_virtuemart 2.0.22a - SQL Injection 1 WEB Matias Fontanini
2013-08-26   Loftek Nexus 543 IP Cameras - Multiple Vulnerabilities 1 WEB Craig Young
2013-08-26   MusicBox 2.3.8 - Multiple Vulnerabilities 1 WEB DevilScreaM
2013-08-26   PhpVibe 3.1 - Multiple Vulnerabilities 1 WEB Esac
2013-08-26   mooSocial 1.3 - Multiple Vulnerabilities 1 WEB Esac
2006-05-15   PHP Script Tools PSY Auction - 'email_request.php?user_id' Cross-Site Scripting 1 WEB Luny
2006-05-15   PHP Script Tools PSY Auction - 'item.php?id' SQL Injection 1 WEB Luny
2006-05-15   Pixaria PopPhoto 3.5.4 - 'CFG[popphoto_base_path]' Remote File Inclusion 2 WEB VietMafia
2006-05-13   Gphotos 1.4/1.5 - 'index.php?rep' Traversal Arbitrary Directory Listing 1 WEB Morocco Security Team
2006-05-13   Gphotos 1.4/1.5 - 'affich.php?image' Cross-Site Scripting 1 WEB Morocco Security Team
2006-05-13   Gphotos 1.4/1.5 - 'diapo.php?rep' Cross-Site Scripting 1 WEB Morocco Security Team
2006-05-13   Gphotos 1.4/1.5 - 'index.php?rep' Cross-Site Scripting 1 WEB Morocco Security Team
2006-05-12   phpBB 2.0.20 - Unauthorized HTTP Proxy 1 WEB rgod
2006-05-12   OZJournals 1.2 - 'Vname' Cross-Site Scripting 1 WEB Kiki
2006-05-11   phpBB Chart Mod 1.1 - 'charts.php?id' Cross-Site Scripting 1 WEB sn4k3.23
2006-05-11   phpBB Chart Mod 1.1 - 'charts.php?id' SQL Injection 1 WEB sn4k3.23
2006-05-11   Vizra - 'A_Login.php' Cross-Site Scripting 1 WEB R00TT3R
2006-04-25   Cartweaver 2.16.11 - 'Results.cfm' SQL Injection 2 WEB r0t
2006-05-09   EDirectoryPro - 'Search_result.asp' SQL Injection 1 WEB Dj_Eyes
2006-05-09   EImagePro - 'view.asp?Pic' SQL Injection 1 WEB Dj_Eyes
2006-05-09   EImagePro - 'subList.asp?CatID' SQL Injection 1 WEB Dj_Eyes
2006-05-09   ISPConfig 2.2.2/2.2.3 - 'Session.INC.php' Remote File Inclusion 1 WEB ReZEN
2006-05-09   EPublisherPro 0.9.7 - 'Moreinfo.asp' Cross-Site Scripting 0 WEB Dj_Eyes
2006-05-09   MyBB 1.1.1 - 'showthread.php' SQL Injection 1 WEB Breeeeh
2006-05-09   MultiCalendars 3.0 - 'All_calendars.asp' SQL Injection 1 WEB Dj_Eyes
2006-05-08   timobraun Dynamic Galerie 1.0 - 'galerie.php?id' Cross-Site Scripting 0 WEB d4igoro
2006-05-08   timobraun Dynamic Galerie 1.0 - 'index.php?pfad' Cross-Site Scripting 0 WEB d4igoro
2006-05-08   timobraun Dynamic Galerie 1.0 - 'galerie.php?pfad' Arbitrary Directory Listing 0 WEB d4igoro
2006-05-08   timobraun Dynamic Galerie 1.0 - 'index.php?pfad' Arbitrary Directory Listing 1 WEB d4igoro
2006-05-08   EvoTopsite 2.0 - 'index.php' Multiple SQL Injections 1 WEB Hamid Ebadi
2006-05-08   Creative Software UK Community Portal 1.1 - 'DiscReply.php?mid' SQL Injection 1 WEB r0t
2006-05-08   Creative Software UK Community Portal 1.1 - 'PollResults.php' Multiple SQL Injections 1 WEB r0t
2006-05-08   Creative Software UK Community Portal 1.1 - 'EventView.php?event_id' SQL Injection 1 WEB r0t
2006-05-08   Creative Software UK Community Portal 1.1 - 'Discussions.php?forum_id' SQL Injection 1 WEB r0t
2006-05-08   Creative Software UK Community Portal 1.1 - 'DiscView.php?forum_id' SQL Injection 1 WEB r0t
2006-05-08   Creative Software UK Community Portal 1.1 - 'ArticleView.php?article_id' SQL Injection 1 WEB r0t
2006-05-08   Phil's Bookmark Script - 'admin.php' Authentication Bypass 1 WEB alp_eren@ayyildiz.org
2006-05-08   Ocean12 Technologies Calendar Manager Pro 1.0 1 - '/admin/main.asp?date' Cross-Site Scripting 1 WEB dj_eyes2005
2006-05-08   Ocean12 Technologies Calendar Manager Pro 1.0 1 - '/admin/edit.asp?ID' SQL Injection 0 WEB dj_eyes2005
2006-05-08   Ocean12 Technologies Calendar Manager Pro 1.0 1 - '/admin/view.asp?searchFor' SQL Injection 1 WEB dj_eyes2005
2006-05-08   Ocean12 Technologies Calendar Manager Pro 1.0 1 - '/admin/main.asp?date' SQL Injection 1 WEB dj_eyes2005
2006-05-08   Singapore 0.9.7 - 'index.php' Cross-Site Scripting 1 WEB alp_eren@ayyildiz.org
2006-05-08   openEngine 1.7/1.8 - Template Unauthorized Access 1 WEB ck@caroli.info
2006-05-06   MyBloggie 2.1.2/2.1.3 - BBCode IMG Tag HTML Injection 1 WEB zerogue
2006-05-06   OpenFAQ 0.4 - 'Validate.php' HTML Injection 1 WEB Kamil Sienicki
2006-05-05   CuteNews 1.4.1 - 'search.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB NST
2006-05-04   Invision Power Board 2.0/2.1 - 'index.php' SQL Injection 1 WEB almaster
2006-05-03   CyberBuild - 'result.asp' Multiple Cross-Site Scripting Vulnerabilities 1 WEB r0t
2006-05-03   CyberBuild - 'browse0.htm?ProductIndex' Cross-Site Scripting 1 WEB r0t
2006-05-03   CyberBuild - 'login.asp?sessionid' Cross-Site Scripting 2 WEB r0t
2006-05-03   CyberBuild - 'browse0.htm?ProductIndex' SQL Injection 1 WEB r0t
2006-05-03   CyberBuild - 'login.asp?sessionid' SQL Injection 1 WEB r0t
2006-05-03   PHP Linkliste 1.0 - 'Linkliste.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB d4igoro
2006-05-02   Albinator 2.0.8 - 'showpic.php?preloadSlideShow' Cross-Site Scripting 1 WEB r0t
2006-05-02   Albinator 2.0.8 - 'dlisting.php?cid' Cross-Site Scripting 1 WEB r0t
2006-05-03   MyNews 1.6.2 - Multiple Cross-Site Scripting Vulnerabilities 1 WEB DreamLord