Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2005-12-14   ASPBB 0.4 - 'profile.asp?PROFILE_ID' SQL Injection 1 WEB Dj_Eyes
2005-12-14   ASPBB 0.4 - 'forum.asp?FORUM_ID' SQL Injection 1 WEB Dj_Eyes
2005-12-14   ASPBB 0.4 - 'topic.asp?TID' SQL Injection 0 WEB Dj_Eyes
2005-12-14   ASP-DEV XM Forum - 'forum.asp' Cross-Site Scripting 1 WEB Dj_Eyes
2005-12-14   News Module for Envolution - 'modules.php' Multiple SQL Injections 1 WEB X1ngBox
2005-12-14   News Module for Envolution - 'modules.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB X1ngBox
2005-12-14   PHP-Nuke 7.x - Content Filtering Bypass 2 WEB Maksymilian Arciemowicz
2005-12-14   CourseForum Technologies ProjectForum 4.7 - Multiple Cross-Site Scripting Vulnerabilities 1 WEB r0t3d3Vil
2005-12-14   DreamLevels Dream Poll 3.0 - 'View_Results.php' SQL Injection 1 WEB r0t3d3Vil
2005-12-14   Jamit Job Board 2.4.1 - 'index.php' SQL Injection 1 WEB r0t3d3Vil
2005-12-14   PHP Web Scripts Ad Manager Pro 2.0 - 'Advertiser_statistic.php' SQL Injection 1 WEB r0t3d3Vil
2005-12-13   McGallery 1.0/1.1/2.2 - 'index.php?album' SQL Injection 1 WEB r0t
2005-12-13   McGallery 1.0/1.1/2.2 - 'show.php' Multiple SQL Injections 1 WEB r0t
2005-12-13   McGallery 1.0/1.1/2.2 - 'index.php?language' Traversal Local File Inclusion 1 WEB r0t
2013-07-13   McAfee ePO 4.6.6 - Multiple Vulnerabilities 1 WEB Nuri Fattah
2013-07-13   BMC Service Desk Express 10.2.1.95 - Multiple Vulnerabilities 1 WEB Nuri Fattah
2013-07-13   WordPress Plugin Spicy Blogroll - Local File Inclusion 1 WEB Ahlspiess
2005-12-13   Snipe Gallery 3.1.4 - 'search.php?keyword' Cross-Site Scripting 1 WEB r0t
2005-12-13   Snipe Gallery 3.1.4 - 'image.php?image_id' SQL Injection 1 WEB r0t
2005-12-13   Snipe Gallery 3.1.4 - 'view.php?gallery_id' SQL Injection 1 WEB r0t
2005-12-13   Mantis Bug Tracker 0.x/1.0 - 'View_filters_page.php' Cross-Site Scripting 1 WEB r0t
2005-12-13   PHP JackKnife 2.21 - Cross-Site Scripting 1 WEB r0t3d3Vil
2005-12-13   VCD-db 0.9x Search Module - 'batch' Cross-Site Scripting 0 WEB r0t3d3Vil
2005-12-13   VCD-db 0.9x - 'search.php?by' SQL Injection 1 WEB r0t3d3Vil
2005-12-13   Plogger Beta 2 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB r0t
2005-12-13   Plogger Beta 2 - 'index.php?id' SQL Injection 1 WEB r0t
2005-12-13   PHPWebGallery 1.3.4/1.5.1 - 'picture.php' SQL Injection 0 WEB r0t3d3Vil
2005-12-13   PHPWebGallery 1.3.4/1.5.1 - 'category.php' SQL Injection 0 WEB r0t3d3Vil
2005-12-13   PHPWebGallery 1.3.4/1.5.1 - 'comments.php' SQL Injection 0 WEB r0t3d3Vil
2005-12-13   EncapsGallery 1.0 - 'gallery.php' SQL Injection 0 WEB r0t3d3Vil
2005-12-13   PHPCOIN 1.2.2 - '/includes/db.php?$_CCFG[_PKG_PATH_DBSE]' Traversal Arbitrary File Access 0 WEB retrogod@aliceposta.it
2005-12-13   phpCOIN 1.2.2 - CCFG[_PKG_PATH_DBSE] Remote File Inclusion 0 WEB retrogod@aliceposta.it
2005-12-13   EveryAuction 1.53 - Auction.pl Cross-Site Scripting 0 WEB $um$id
2005-12-12   Arab Portal 2.0 - 'Link.php' SQL Injection 0 WEB stranger-killer
2005-12-12   BTGrup Admin WebController - SQL Injection 0 WEB khc@bsdmail.org
2005-12-12   Scout Portal Toolkit 1.3.1 - 'SPT-UserLogin.php' SQL Injection 1 WEB Preddy
2005-12-12   Scout Portal Toolkit 1.3.1 - 'SPT-AdvancedSearch.php' Cross-Site Scripting 1 WEB Preddy
2005-12-12   Scout Portal Toolkit 1.3.1 - 'SPT-BrowseResources.php' Cross-Site Scripting 2 WEB Preddy
2005-12-12   Scout Portal Toolkit 1.3.1 - 'SPT-QuickSearch.php' Cross-Site Scripting 2 WEB Preddy
2005-12-12   BlackBoard Academic Suite 6.2.3.23 - Frameset.jsp Cross-Domain Frameset Loading 1 WEB dr_insane
2005-12-12   LocazoList Classifieds 1.0 - 'SearchDB.asp' Input Validation 1 WEB r0t3d3Vil
2005-12-12   Magic Book Professional 2.0 - 'Book.cfm' Cross-Site Scripting 1 WEB r0t
2005-12-08   Nortel SSL VPN 4.2.1.6 - Web Interface Input Validation 1 WEB Daniel Fabian
2005-12-08   MilliScripts 1.4 - 'register.php' Cross-Site Scripting 0 WEB Security Nation
2005-12-08   CF_Nuke 4.6 - 'index.cfm' Cross-Site Scripting 0 WEB r0t
2005-12-08   CF_Nuke 4.6 - 'index.cfm' Local File Inclusion 1 WEB r0t
2005-12-08   Magic Forum Personal - 'view_thread.cfm' Multiple SQL Injections 1 WEB r0t
2005-12-08   Magic Forum Personal - 'view_forum.cfm?ForumID' SQL Injection 1 WEB r0t
2005-12-08   Magic List Pro - 'view_archive.cfm?ListID' SQL Injection 1 WEB r0t
2005-12-07   Dell TrueMobile 2300 - Remote Credential Reset 1 WEB TNull
2005-12-07   ASPMForum - 'kullanicilistesi.asp?harf' SQL Injection 1 WEB dj_eyes2005
2005-12-07   ASPMForum - 'forum.asp?baslik' SQL Injection 1 WEB dj_eyes2005
2005-12-07   DRZES Hms 3.2 - 'login.php' Cross-Site Scripting 1 WEB Vipsta
2005-12-07   Thwboard Beta 2.8 - 'misc.php?userid' SQL Injection 1 WEB trueend5
2005-12-07   Thwboard Beta 2.8 - 'v_profile.php?user' SQL Injection 1 WEB trueend5
2005-12-07   Thwboard Beta 2.8 - 'calendar.php?year' SQL Injection 2 WEB trueend5
2005-12-06   Cars Portal 1.1 - 'index.php' Multiple SQL Injections 1 WEB r0t
2005-12-06   PluggedOut Blog 1.9.x - 'index.php' Multiple SQL Injections 1 WEB r0t
2005-12-06   DoceboLms 2.0.x - 'connector.php' Directory Traversal 1 WEB rgod
2005-12-06   A-FAQ 1.0 - 'faqDsp.asp?catcode' SQL Injection 1 WEB r0t
2005-12-06   A-FAQ 1.0 - 'faqDspItem.asp?faqid' SQL Injection 1 WEB r0t
2005-12-06   RWAuction Pro 4.0 - 'search.asp' Cross-Site Scripting 1 WEB r0t
2005-12-06   NetAuctionHelp 3.0 - Multiple Cross-Site Scripting Vulnerabilities 1 WEB r0t
2005-12-06   IISWorks ASPKnowledgeBase 2.0 - 'KB.asp' Cross-Site Scripting 1 WEB r0t
2005-12-06   DuWare DuPortalPro 3.4.3 - 'Password.asp' Cross-Site Scripting 1 WEB Dj_Eyes
2013-07-10   Zoom Telephonics X4/X5 ADSL Modem - Multiple Vulnerabilities 1 WEB Kyle Lovett
2013-07-10   vBulletin vBShout Mod - Persistent Cross-Site Scripting 1 WEB []0iZy5
2013-07-10   vBulletin Advanced User Tagging Mod - Persistent Cross-Site Scripting 1 WEB []0iZy5
2005-12-05   Edgewall Software Trac 0.7.1/0.8/0.9 Search Module - SQL Injection 1 WEB anonymous
2005-12-05   Blog System 1.2 - 'index.php?cat' SQL Injection 1 WEB r0t3d3Vil
2005-12-05   Web4Future Portal Solutions - 'Arhiva.php' Directory Traversal 1 WEB r0t
2005-12-05   Web4Future Affiliate Manager PRO 4.1 - 'functions.php' SQL Injection 1 WEB r0t
2005-12-05   Web4Future Portal Solutions - 'Comentarii.php' SQL Injection 1 WEB r0t
2005-12-05   Web4Future eDating Professional 5.0 - 'fq.php?cid' SQL Injection 1 WEB r0t
2005-12-05   Web4Future eDating Professional 5.0 - 'articles.php?cat' SQL Injection 0 WEB r0t
2005-12-05   Web4Future eDating Professional 5.0 - 'gift.php?cid' SQL Injection 1 WEB r0t
2005-12-05   Web4Future eDating Professional 5.0 - 'index.php' Multiple SQL Injections 0 WEB r0t
2005-12-05   Relative Real Estate Systems 1.2 - SQL Injection 0 WEB r0t3d3Vil
2005-12-05   Hobosworld HobSR - Multiple SQL Injections 0 WEB r0t3d3Vil
2005-12-05   1-Script 1-Search 1.8 - '1search.CGI' Cross-Site Scripting 0 WEB r0t
2005-12-05   SAMEDIA LandShop 0.6.3 - 'ls.php' Multiple SQL Injections 1 WEB r0t3d3Vil
2005-12-05   Web4Future eCommerce Enterprise Edition 2.1 - 'viewbrands.php?bid' SQL Injection 1 WEB r0t3d3Vil
2005-12-05   Web4Future eCommerce Enterprise Edition 2.1 - 'index.php' Multiple SQL Injections 1 WEB r0t3d3Vil
2005-12-05   Web4Future eCommerce Enterprise Edition 2.1 - 'view.php' Multiple SQL Injections 1 WEB r0t3d3Vil
2005-12-05   Easy Search System 1.1 - 'search.cgi' Cross-Site Scripting 1 WEB r0t
2005-11-05   Widget Property 1.1.19 - 'Property.php' SQL Injection 1 WEB r0t3d3Vil
2005-12-03   PHPYellowTM 5.33 - 'print_me.php?ckey' SQL Injection 1 WEB r0t3d3Vil
2005-12-03   PHPYellowTM 5.33 - 'search_result.php?haystack' SQL Injection 1 WEB r0t3d3Vil
2005-12-03   Alisveristr E-Commerce Login - Multiple SQL Injections 2 WEB B3g0k
2005-12-03   PHP-Fusion 6.0.109 - 'messages.php' SQL Injection 1 WEB Nolan West
2005-12-03   SiteBeater News 4.0 - 'Archive.asp' Cross-Site Scripting 1 WEB r0t3d3Vil
2005-12-03   Solupress News 1.0 - 'search.asp' Cross-Site Scripting 1 WEB r0t3d3Vil
2005-12-03   ASPS Shopping Cart Lite 2.1/Professional 2.9 d - 'bsearch.asp?b_search' Cross-Site Scripting 1 WEB r0t3d3Vil
2005-12-03   ASPS Shopping Cart Lite 2.1/Professional 2.9 d - 'adv_search.asp?srch_product_name' Cross-Site Scrip 1 WEB r0t3d3Vil
2005-12-02   Java Search Engine 0.9.34 - search.jsp Cross-Site Scripting 1 WEB r0t
2005-12-02   NetClassifieds Standard 1.9/Professional 1.5/Premium 1.0 - 'ViewItem.php?ItemNum' SQL Injection 0 WEB r0t
2005-12-02   NetClassifieds Standard 1.9/Professional 1.5/Premium 1.0 - 'gallery.php?CatID' SQL Injection 0 WEB r0t
2005-11-30   PHPX 3.5.x - 'Admin 'login.php' SQL Injection 1 WEB rgod
2005-12-01   PHPMyChat 0.14.6 - 'users_popupL.php?From' Cross-Site Scripting 1 WEB Louis Wang
2005-12-01   PHPMyChat 0.14.6 - 'style.css.php?medium' Cross-Site Scripting 1 WEB Louis Wang
2005-12-01   PHPMyChat 0.14.6 - 'start_page.css.php?medium' Cross-Site Scripting 1 WEB Louis Wang
2005-12-01   Edgewall Software Trac 0.9 Ticket Query Module - SQL Injection 1 WEB David Maciejak
2005-12-01   Extreme Corporate 6.0 - 'Extremesearch.php' Cross-Site Scripting 1 WEB r0t
2005-12-01   WebCalendar 1.0.1 - 'Layers_Toggle.php' HTTP Response Splitting 1 WEB lwang
2005-12-01   DotClear 1.2.1/1.2.2 - 'Session.php' SQL Injection 0 WEB Siegfried
2005-12-01   Lore 1.5.4/1.5.6 - 'article.php' SQL Injection 1 WEB r0t
2005-12-01   WebCalendar 1.0.1 - Multiple SQL Injections 1 WEB lwang
2005-11-30   Instant Photo Gallery 1.0 - 'content.php?cid' SQL Injection 1 WEB r0t
2005-11-30   Instant Photo Gallery 1.0 - 'portfolio.php?cat_id' SQL Injection 1 WEB r0t
2005-11-30   88Scripts Event Calendar 2.0 - 'index.php' SQL Injection 0 WEB r0t
2005-11-30   O-Kiraku Nikki 1.3 - 'Nikki.php' SQL Injection 1 WEB r0t
2013-07-07   OpenNetAdmin 13.03.01 - Remote Code Execution 1 WEB Mandat0ry
2005-11-30   WSN Knowledge Base 1.2 - 'memberlist.php?id' SQL Injection 1 WEB r0t
2005-11-30   WSN Knowledge Base 1.2 - 'comments.php?id' SQL Injection 1 WEB r0t
2005-11-30   WSN Knowledge Base 1.2 - 'index.php' Multiple SQL Injections 1 WEB r0t
2005-11-30   FAQRing 3.0 - 'answer.php' SQL Injection 1 WEB r0t
2005-11-30   SoftBiz FAQ 1.1 - 'add_comment.php?id' SQL Injection 1 WEB r0t
2005-11-30   SoftBiz FAQ 1.1 - 'print_article.php?id' SQL Injection 1 WEB r0t
2005-11-30   SoftBiz FAQ 1.1 - 'refer_friend.php?id' SQL Injection 1 WEB r0t
2005-11-30   SoftBiz FAQ 1.1 - 'faq_qanda.php?id' SQL Injection 0 WEB r0t
2005-11-30   SoftBiz FAQ 1.1 - 'index.php?cid' SQL Injection 1 WEB r0t
2005-11-30   SoftBiz B2B trading Marketplace Script 1.1 - 'profiles.php?cid' SQL Injection 1 WEB r0t
2005-11-30   SoftBiz B2B trading Marketplace Script 1.1 - 'products.php?cid' SQL Injection 1 WEB r0t
2005-11-30   SoftBiz B2B trading Marketplace Script 1.1 - 'buyoffers.php?cid' SQL Injection 1 WEB r0t
2005-11-30   SoftBiz B2B trading Marketplace Script 1.1 - 'selloffers.php?cid' SQL Injection 1 WEB r0t