Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2005-11-23   blogBuddies 0.3 - 'index.php?u' Cross-Site Scripting 3 WEB gb.network
2005-11-23   Ezyhelpdesk 1.0 - Multiple SQL Injections 3 WEB r0t
2005-11-23   CommodityRentals 2.0 - SQL Injection 3 WEB r0t3d3Vil
2005-11-23   PHP Labs Survey Wizard - SQL Injection 3 WEB r0t
2005-11-23   OmnistarLive 5.2 - Multiple SQL Injections 3 WEB r0t
2005-11-23   WSN Forum 1.21 - 'memberlist.php' SQL Injection 3 WEB r0t
2005-11-23   Tunez 1.21 - 'search.php?searchFor' Cross-Site Scripting 3 WEB r0t3d3Vil
2005-11-23   Tunez 1.21 - 'songinfo.php?song_id' SQL Injection 3 WEB r0t3d3Vil
2005-11-23   AFFCommerce Shopping Cart 1.1.4 - 'ItemReview.php?item_id' SQL Injection 3 WEB r0t3d3Vil
2005-11-23   AFFCommerce Shopping Cart 1.1.4 - 'ItemInfo.php?item_id' SQL Injection 3 WEB r0t3d3Vil
2005-11-23   AFFCommerce Shopping Cart 1.1.4 - 'subcategory.php?cl' SQL Injection 3 WEB r0t3d3Vil
2005-11-23   1-2-3 Music Store 1.0 - 'Process.php' SQL Injection 3 WEB r0t
2005-11-22   PmWiki 2.0.x - Search Cross-Site Scripting 2 WEB Moritz Naumann
2005-11-22   Virtual Hosting Control System 2.2/2.4 - Error Message Cross-Site Scripting 3 WEB Moritz Naumann
2013-07-02   Machform Form Maker 2 - Multiple Vulnerabilities 4 WEB Yashar shahinzadeh
2005-11-22   OTRS 2.0 - 'index.pl' Multiple Cross-Site Scripting Vulnerabilities 3 WEB Moritz Naumann
2005-11-22   OTRS 2.0 - AgentTicketPlain Action Multiple SQL Injections 3 WEB Moritz Naumann
2005-11-22   OTRS 2.0 - Login Function 'User' SQL Injection 3 WEB Moritz Naumann
2005-11-22   Torrential 1.2 - 'Getdox.php' Directory Traversal 3 WEB Shell
2005-11-21   PHPPost 1.0 - 'mail.php?user' Cross-Site Scripting 3 WEB trueend5
2005-11-21   PHPPost 1.0 - 'profile.php?user' Cross-Site Scripting 3 WEB trueend5
2005-11-21   Tru-Zone Nuke ET 3.x - Search Module SQL Injection 2 WEB Lostmon
2005-11-21   PHP Download Manager 1.1.x - 'files.php' SQL Injection 3 WEB ksa_ksa82
2005-11-21   APBoard - 'thread.php' SQL Injection 2 WEB ksa_ksa82
2005-11-21   SimplePoll - 'results.php' SQL Injection 3 WEB stranger-killer
2005-11-21   Advanced Poll 2.0.2/2.0.3 - 'popup.php' Cross-Site Scripting 3 WEB [GB]
2005-11-19   PHP-Fusion 4.0/5.0/6.0 - 'options.php?/ viewforum.php' SQL Injection 3 WEB Robin Verton
2005-11-17   VP-ASP Shopping Cart - 'Shopadmin.asp' HTML Injection 3 WEB ConcorDHacK
2005-11-17   Litespeed 2.1.5 - 'ConfMgr.php' Cross-Site Scripting 3 WEB Gama Sec
2005-11-17   Revize CMS HTTPTranslatorServlet - Cross-Site Scripting 3 WEB Lostmon
2005-11-17   Revize CMS - 'Revize.XML' Information Disclosure 3 WEB Lostmon
2005-11-17   Revize CMS - 'Query_results.jsp' SQL Injection 3 WEB Lostmon
2013-07-01   GLPI 0.83.9 - 'Unserialize()' Remote Code Execution 3 WEB Xavier Mehrenberger
2013-07-01   Fortigate Firewalls - Cross-Site Request Forgery 3 WEB Sven Wurth
2013-07-01   Barracuda SSL VPN 680Vx 2.3.3.193 - Multiple Script Injection Vulnerabilities 2 WEB LiquidWorm
2013-07-01   C.P.Sub 4.5 - Authentication Bypass 3 WEB Chako
2005-11-15   Ekinboard 1.0.3 - 'profile.php' Cross-Site Scripting 3 WEB trueend5
2005-11-15   Alstrasoft Template Seller Pro 3.25 - Remote File Inclusion 3 WEB Robin Verton
2005-11-15   PHPWCMS 1.2.5 -DEV - Multiple Cross-Site Scripting Vulnerabilities 3 WEB Stefan Lochbihler
2005-11-15   PHPWCMS 1.2.5 -DEV - 'imgdir' Traversal Arbitrary File Access 3 WEB Stefan Lochbihler
2005-11-15   PHPWCMS 1.2.5 -DEV - 'login.php?form_lang' Traversal Arbitrary File Access 3 WEB Stefan Lochbihler
2005-11-15   Pearl Forums 2.0 - 'index.php' Local File Inclusion 3 WEB abducter_minds@yahoo.com
2005-11-15   Pearl Forums 2.0 - 'index.php' Multiple SQL Injections 3 WEB abducter_minds@yahoo.com
2005-11-15   Walla TeleSite 3.0 - 'ts.cgi' File Existence Enumeration 3 WEB Rafi Nahum
2005-11-15   Walla TeleSite 3.0 - 'ts.exe?sug' SQL Injection 3 WEB Rafi Nahum
2005-11-15   Walla TeleSite 3.0 - 'ts.exe?sug' Cross-Site Scripting 3 WEB Rafi Nahum
2005-11-15   Walla TeleSite 3.0 - 'ts.exe?tsurl' Arbitrary Article Access 2 WEB Rafi Nahum
2005-11-14   Codegrrl - 'Protection.php' Code Execution 3 WEB Robin Verton
2005-11-14   Wizz Forum - 'forumreply.php?TopicID' SQL Injection 3 WEB HACKERS PAL
2005-11-14   Wizz Forum - 'ForumAuthDetails.php?AuthID' SQL Injection 3 WEB HACKERS PAL
2005-11-14   Help Center Live 1.0/1.2/2.0 - 'module.php' Local File Inclusion 3 WEB HACKERS PAL
2005-11-12   ActiveCampaign 1-2-All Broadcast Email 4.0 - Admin Control Panel 'Username' SQL Injection 3 WEB bhs_team
2005-11-12   PHPWebThings 1.4 - 'download.php?File' SQL Injection 3 WEB A.1.M
2005-11-11   PHPSysInfo 2.x - Multiple Input Validation Vulnerabilities 3 WEB anonymous
2013-06-30   eFile Wifi Transfer Manager 1.0 - Multiple Vulnerabilities 3 WEB Vulnerability-Lab
2005-11-09   TikiWiki 1.9 - 'Tiki-view_forum_thread.php' Cross-Site Scripting 3 WEB Moritz Naumann
2005-11-09   SAP Web Application Server 6.x/7.0 - Open Redirection 3 WEB Leandro Meiners
2005-11-09   SAP Web Application Server 6.x/7.0 - 'frameset.htm?sap-syscmd' Cross-Site Scripting 3 WEB Leandro Meiners
2005-11-09   SAP Web Application Server 6.x/7.0 - Error Page Cross-Site Scripting 3 WEB Leandro Meiners
2005-11-07   PHPList Mailing List Manager 2.x - '/admin/users.php?find' Cross-Site Scripting 3 WEB Tobias Klein
2005-11-07   PHPList Mailing List Manager 2.x - '/admin/configure.php?id' Cross-Site Scripting 3 WEB Tobias Klein
2005-11-07   PHPList Mailing List Manager 2.x - '/admin/eventlog.php' Multiple Cross-Site Scripting Vulnerabiliti 2 WEB Tobias Klein
2005-11-07   PHPList Mailing List Manager 2.x - '/admin/editattributes.php?id' SQL Injection 3 WEB Tobias Klein
2005-11-07   PHPList Mailing List Manager 2.x - '/admin/admin.php?id' SQL Injection 3 WEB Tobias Klein
2005-11-07   ToendaCMS 0.6.1 - 'admin.php' Directory Traversal 3 WEB Bernhard Mueller
2005-11-07   Invision Power Board (IP.Board) 2.1 - 'admin.php' Multiple Cross-Site Scripting Vulnerabilities 3 WEB benjilenoob
2005-11-07   XMB Forum 1.9.3 - 'u2u.php' Cross-Site Scripting 3 WEB HACKERS PAL
2005-11-07   OSTE 1.0 - Remote File Inclusion 3 WEB khc@bsdmail.org
2005-11-07   Asterisk 0.x/1.0/1.2 Voicemail - Unauthorized Access 3 WEB Adam Pointon
2005-11-07   PHPFM - Arbitrary File Upload 3 WEB rUnViRuS
2005-11-04   Ocean12 ASP Calendar Manager 1.0 - Authentication Bypass 2 WEB syst3m_f4ult
2005-11-04   JPortal Web Portal 2.2.1/2.3.1 - 'news.php' SQL Injection 3 WEB Mousehack
2005-11-04   JPortal Web Portal 2.2.1/2.3.1 - 'comment.php' SQL Injection 2 WEB Mousehack
2005-11-03   Galerie 2.4 - 'showgallery.php' SQL Injection 2 WEB abducter_minds@yahoo.com
2005-11-03   PHP Handicapper (2005) - 'Process_signup.php' HTTP Response Splitting 3 WEB BiPi_HaCk
2005-11-02   CuteNews 1.4.1 - 'template' Traversal Arbitrary File Access 3 WEB retrogod@aliceposta.it
2005-11-02   CuteNews 1.4.1 - 'show_archives.php' Traversal Arbitrary File Access 3 WEB retrogod@aliceposta.it
2005-11-02   Simple PHP Blog 0.4 - 'colors.php' Multiple Cross-Site Scripting Vulnerabilities 3 WEB enji@infosys.tuwien.ac.at
2005-11-02   Simple PHP Blog 0.4 - 'preview_static_cgi.php' Multiple Cross-Site Scripting Vulnerabilities 3 WEB enji@infosys.tuwien.ac.at
2005-11-02   Simple PHP Blog 0.4 - 'preview_cgi.php' Multiple Cross-Site Scripting Vulnerabilities 3 WEB enji@infosys.tuwien.ac.at
2005-11-02   PHPWebThings 0.4.4 - 'forum.php' Cross-Site Scripting 3 WEB Linux_Drox
2005-11-02   News2Net 3.0 - 'index.php' SQL Injection 3 WEB Mousehack
2005-11-01   XMB Forum 1.9.3 - 'post.php' SQL Injection 3 WEB almaster
2005-11-01   VUBB - 'index.php' Cross-Site Scripting 2 WEB Alireza Hassani
2013-06-26   PHP-Charts 1.0 - 'index.php?type' Remote Code Execution 2 WEB infodox
2013-06-26   e107 Advanced Medal System Plugin - SQL Injection 3 WEB Life Wasted
2005-11-01   Elite Forum 1.0 - HTML Injection 3 WEB gladiator
2005-11-01   Belchior Foundry vCard Pro 3.1 - 'Addrbook.php' SQL Injection 3 WEB almaster
2005-10-31   Comersus Backoffice 4.x/5.0/6.0 - '/comersus/database/comersus.mdb' Direct Request Database Disclosu 3 WEB _6mO_HaCk
2005-10-31   Comersus Backoffice 4.x/5.0/6.0 - 'comersus_Backoffice_supportError.asp?error' Cross-Site Scripting 3 WEB _6mO_HaCk
2005-10-31   PHP 4.x - PHPInfo Cross-Site Scripting 3 WEB Stefan Esser
2005-10-31   OaBoard 1.0 - 'forum.php' Multiple SQL Injections 3 WEB abducter_minds@yahoo.com
2005-10-31   PHPCafe Tutorial Manager - 'index.php' SQL Injection 2 WEB almaster
2005-10-31   Snitz Forum 2000 - 'post.asp' Cross-Site Scripting 2 WEB h4xorcrew
2005-10-31   Invision Gallery 2.0.3 - 'index.php' SQL Injection 2 WEB almaster
2005-10-29   PHP Advanced Transfer Manager 1.30 - Remote Unauthorized Access 2 WEB Zeelock
2005-10-29   MG2 0.5.1 - Authentication Bypass 2 WEB Preben Nylokken
2005-10-27   ASP Fast Forum - 'error.asp' Cross-Site Scripting 2 WEB syst3m_f4ult
2005-10-27   PBLang 4.65 - Multiple Cross-Site Scripting Vulnerabilities 3 WEB abducter
2005-10-27   ATutor 1.x - 'print.php?section' Remote File Inclusion 2 WEB Andreas Sandblad
2005-10-27   ATutor 1.x - 'body_header.inc.php?section' Local File Inclusion 2 WEB Andreas Sandblad
2005-10-27   ATutor 1.x - 'forum.inc.php' Arbitrary Command Execution 3 WEB Andreas Sandblad
2005-10-27   Novell ZENworks Patch Management 6.0.52 - '/reports/default.asp' Multiple SQL Injections 3 WEB Dennis Rand
2005-10-27   Novell ZENworks Patch Management 6.0.52 - '/computers/default.asp?Direction' SQL Injection 2 WEB Dennis Rand
2005-10-26   PHP-Nuke Search Enhanced Module 1.1/2.0 - HTML Injection 3 WEB bhfh01
2005-10-26   GCards 1.43 - 'news.php' SQL Injection 3 WEB svsecurity
2005-10-26   Techno Dreams (Multiple Scripts) - Multiple SQL Injections 3 WEB farhad koosha
2005-10-26   Woltlab 1.1/2.x - 'Info-DB Info_db.php' Multiple SQL Injections 3 WEB admin@batznet.com
2005-10-26   Mantis Bug Tracker 0.19.2/1.0 - 'Bug_sponsorship_list_view_inc.php' File Inclusion 3 WEB Andreas Sandblad
2013-06-24   Elemata CMS RC3.0 - 'global.php?id' SQL Injection 3 WEB CWH Underground
2013-06-24   Linksys X3000 1.0.03 build 001 - Multiple Vulnerabilities 2 WEB m-1-k-3
2013-06-24   PodHawk 1.85 - Arbitrary File Upload 3 WEB CWH Underground
2013-06-24   Collabtive 1.0 - 'manageuser.php' SQL Injection 3 WEB drone
2013-06-24   phpEventCalendar 0.2.3 - Multiple Vulnerabilities 3 WEB AtT4CKxT3rR0r1ST
2013-06-24   Alienvault Open Source SIEM (OSSIM) 4.1 - Multiple SQL Injection Vulnerabilities 3 WEB Glafkos Charalambous
2013-06-24   Top Games Script 1.2 - 'play.php?gid' SQL Injection 3 WEB AtT4CKxT3rR0r1ST
2013-06-24   TRENDnet TE100-P1U Print Server Firmware 4.11 - Authentication Bypass 3 WEB Chako
2005-10-26   Flyspray 0.9 - Multiple Cross-Site Scripting Vulnerabilities 3 WEB Lostmon
2005-10-26   Belchior Foundry VCard 2.9 - Remote File Inclusion 3 WEB X
2005-10-26   RSA ACE Agent 5.x - Image Cross-Site Scripting 3 WEB Bernhard Mueller
2005-10-26   IPBProArcade 2.5.2 - 'GameID' SQL Injection 3 WEB almaster
2005-10-26   MyBulletinBoard (MyBB) 1.0 - 'usercp.php' SQL Injection 3 WEB Animal
2005-10-25   Basic Analysis and Security Engine (BASE) 1.2 - 'Base_qry_main.php' SQL Injection 3 WEB Remco Verhoef
2005-05-21   MWChat 6.8 - 'chat.php' SQL Injection 3 WEB rgod
2005-05-20   phpMyAdmin 2.x - 'server_databases.php' Cross-Site Scripting 3 WEB Tobias Klein