Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2005-04-19   CityPost PHP LNKX 52.0 - 'message.php' Cross-Site Scripting 13 WEB Thom
2005-03-11   UBBCentral UBB.Threads 6.0 - 'Printthread.php' SQL Injection 15 WEB HLL
2005-04-19   OneWorldStore - 'DisplayResults.asp' Cross-Site Scripting 12 WEB Lostmon
2005-04-19   OneWorldStore - 'DisplayResults.asp' SQL Injection 12 WEB Lostmon
2005-04-13   phpBB 1.x/2.0.x - Knowledge Base Module 'KB.php' SQL Injection 15 WEB deluxe@security-project.org
2013-05-14   UMI CMS 2.9 - Cross-Site Request Forgery 12 WEB High-Tech Bridge SA
2013-05-14   Alienvault Open Source SIEM (OSSIM) 4.1.2 - Multiple SQL Injections 14 WEB RunRunLevel
2013-05-14   WHMCS 4.x - 'invoicefunctions.php?id' SQL Injection 15 WEB Ahmed Aboul-Ela
2013-05-14   Invision Power Board 1.x?/2.x/3.x - Admin Takeover 13 WEB John JEAN
2013-05-14   WordPress Plugin wp-FileManager - Arbitrary File Download 17 WEB ByEge
2005-04-18   MVNForum 1.0 - Search Cross-Site Scripting 14 WEB hoang yen
2005-04-18   eGroupWare 1.0 - 'index.php?cats_app' SQL Injection 16 WEB GulfTech Security
2005-04-18   eGroupWare 1.0 - '/tts/index.php?filter' SQL Injection 17 WEB GulfTech Security
2005-04-18   eGroupWare 1.0 - '/sitemgr-site/index.php?category_id' Cross-Site Scripting 16 WEB GulfTech Security
2005-04-18   eGroupWare 1.0 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 14 WEB GulfTech Security
2005-04-16   Datenbank Module For phpBB - 'Remote mod.php' Cross-Site Scripting 16 WEB tom cruise
2005-04-16   phpBB Remote - 'mod.php' SQL Injection 13 WEB tom cruise
2006-10-19   Ariadne CMS 2.4 - Remote File Inclusion 14 WEB Fidel Costa
2005-04-15   PHP-Nuke 7.6 Surveys Module - HTTP Response Splitting 13 WEB Dcrab
2005-04-14   OneWorldStore - 'OWListProduct.asp' Cross-Site Scripting 15 WEB Dcrab
2005-04-14   OneWorldStore - 'OWContactUs.asp' Cross-Site Scripting 19 WEB Dcrab
2005-04-14   OneWorldStore - 'OWProductDetail.asp' SQL Injection 14 WEB Dcrab
2005-04-14   OneWorldStore - 'OWListProduct.asp' Multiple SQL Injections 15 WEB Dcrab
2005-04-14   OneWorldStore - 'OWAddItem.asp' SQL Injection 15 WEB Dcrab
2005-04-14   SPHPBlog 0.4 - 'search.php' Cross-Site Scripting 15 WEB y3dips
2005-04-14   All4WWW-HomePageCreator 1.0 - 'index.php' Remote File Inclusion 15 WEB Francisco Alisson
2013-05-13   File Lite 3.3/3.5 PRO iOS - Multiple Vulnerabilities 17 WEB Vulnerability-Lab
2013-05-13   SimpleTransfer 2.2.1 - Command Injection 17 WEB Vulnerability-Lab
2013-05-13   Wireless Photo Access 1.0.10 iOS - Multiple Vulnerabilities 12 WEB Vulnerability-Lab
2013-05-13   Wifi Album 1.47 iOS - Command Injection 15 WEB Vulnerability-Lab
2013-05-13   Wifi Photo Transfer 2.1/1.1 PRO - Multiple Vulnerabilities 15 WEB Vulnerability-Lab
2013-05-13   Wireless Disk PRO 2.3 iOS - Multiple Vulnerabilities 13 WEB Vulnerability-Lab
2013-05-13   Joomla! Component com_s5clanroster - 'id' SQL Injection 17 WEB AtT4CKxT3rR0r1ST
2013-05-13   Ajax Availability Calendar 3.x - Multiple Vulnerabilities 20 WEB AtT4CKxT3rR0r1ST
2013-05-13   Getsimple CMS 3.2.1 - Arbitrary File Upload 14 WEB Ahmed Elhady Mohamed
2005-04-13   phpBB Photo Album Module 2.0.53 - 'Album_Comment.php' Cross-Site Scripting 16 WEB Dcrab
2005-04-13   phpBB Photo Album 2.0.53 Module - 'Album_Cat.php' Cross-Site Scripting 13 WEB Dcrab
2005-04-13   PHPBB2 Plus 1.5 - 'viewtopic.php' Cross-Site Scripting 11 WEB Dcrab
2005-04-13   PHPBB2 Plus 1.5 - 'Portal.php' Multiple Cross-Site Scripting Vulnerabilities 15 WEB Dcrab
2005-04-13   PHPBB2 Plus 1.5 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 14 WEB Dcrab
2005-04-13   PHPBB2 Plus 1.5 - 'GroupCP.php' Cross-Site Scripting 15 WEB Dcrab
2005-04-12   Pinnacle Cart - 'index.php' Cross-Site Scripting 14 WEB SmOk3
2005-04-12   Comersus Cart 4.0/5.0 - 'Comersus_Search_Item.asp' Cross-Site Scripting 14 WEB Lostmon
2005-04-11   jPORTAL 2.3.1 - 'Banner.php' SQL Injection 15 WEB CiNU5
2005-04-11   WebCT Discussion Board 4.1 - HTML Injection 16 WEB lacertosum
2005-04-11   Invision Power Board 1.x - 'ST' SQL Injection 15 WEB Dcrab
2005-04-11   Zoom Media Gallery 2.1.2 - 'index.php' SQL Injection 13 WEB Andreas Constantinides
2005-04-11   ModernGigabyte ModernBill 4.3 - 'Aid' Cross-Site Scripting 16 WEB GulfTech Security
2005-04-11   ModernGigabyte ModernBill 4.3 - 'C_CODE' Cross-Site Scripting 13 WEB GulfTech Security
2005-04-10   ModernGigabyte ModernBill 4.3 - 'news.php' File Inclusion 16 WEB GulfTech Security
2005-04-09   Azerbaijan Development Group AzDGDatingPlatinum 1.1.0 - 'view.php?id' SQL Injection 14 WEB kre0n
2005-04-09   Azerbaijan Development Group AzDGDatingPlatinum 1.1.0 - 'view.php?id' Cross-Site Scripting 15 WEB kre0n
2005-04-09   RadScripts RadBids Gold 2.0 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 13 WEB Dcrab
2005-04-09   RadScripts RadBids Gold 2.0 - 'faq.php?farea' Cross-Site Scripting 17 WEB Dcrab
2005-04-09   RadScripts RadBids Gold 2.0 - 'index.php?mode' SQL Injection 12 WEB Dcrab
2005-04-09   RadScripts RadBids Gold 2.0 - 'index.php?read' Traversal Arbitrary File Access 14 WEB Dcrab
2005-04-08   PostNuke Phoenix 0.760 RC3 - 'SID' SQL Injection 13 WEB Dcrab
2005-04-08   PostNuke Phoenix 0.760 RC3 - 'Module' Cross-Site Scripting 15 WEB Dcrab
2005-04-08   PostNuke Phoenix 0.760 RC3 - 'OP' Cross-Site Scripting 13 WEB Dcrab
2005-04-07   PHP-Nuke 7.6 Web_Links Module - Multiple SQL Injections 17 WEB Maksymilian Arciemowicz
2005-04-06   CubeCart 2.0.x - 'view_product.php?product' Full Path Disclosure 12 WEB John Cobb
2005-04-06   CubeCart 2.0.x - 'view_cart.php?add' Full Path Disclosure 17 WEB John Cobb
2005-04-06   CubeCart 2.0.x - 'tellafriend.php?product' Full Path Disclosure 15 WEB John Cobb
2005-04-06   CubeCart 2.0.x - 'index.php' Multiple Full Path Disclosures 15 WEB John Cobb
2005-04-06   Ocean12 Membership Manager Pro - Cross-Site Scripting 15 WEB Zinho
2005-04-06   Active Auction House - 'WatchThisItem.asp' Cross-Site Scripting 13 WEB Dcrab
2005-04-06   Active Auction House - 'sendpassword.asp' Multiple Cross-Site Scripting Vulnerabilities 16 WEB Dcrab
2005-04-06   WebWasher CSM 4.4.1 Build 752 Conf Script - Cross-Site Scripting 16 WEB Oliver Karow
2005-04-06   Active Auction House - 'account.asp?ReturnURL' Cross-Site Scripting 15 WEB Dcrab
2005-04-06   Active Auction House - 'start.asp?ReturnURL' Cross-Site Scripting 15 WEB Dcrab
2005-04-06   Active Auction House - 'ItemInfo.asp' SQL Injection 16 WEB Dcrab
2005-04-06   Active Auction House - 'default.asp' Multiple SQL Injections 16 WEB Dcrab
2005-04-06   phpBB 2.0.13 Linkz Pro Module - SQL Injection 14 WEB LovER BOY
2005-04-06   phpBB 2.0.13 DLMan Pro Module - SQL Injection 14 WEB LovER BOY
2005-04-06   PHP-Nuke 7.6 - 'banners.php' Cross-Site Scripting 13 WEB Maksymilian Arciemowicz
2005-04-06   PHP-Nuke 7.6 Web_Links Module - Multiple Cross-Site Scripting Vulnerabilities 14 WEB Maksymilian Arciemowicz
2005-04-05   PHP-Nuke 6.x/7.x 'Downloads' Module - 'Lid' Cross-Site Scripting 14 WEB sp3x@securityreason.com
2005-04-05   PHP-Nuke 6.x/7.x Your_Account Module - Avatarcategory Cross-Site Scripting 15 WEB sp3x@securityreason.com
2005-04-05   PHP-Nuke 6.x/7.x Your_Account Module - 'Username' Cross-Site Scripting 14 WEB sp3x@securityreason.com
2005-04-05   profitcode software payprocart 3.0 - Directory Traversal 14 WEB Diabolic Crab
2005-04-05   ProfitCode Software PayProCart 3.0 - 'Usrdetails.php' Cross-Site Scripting 15 WEB Diabolic Crab
2005-04-02   SiteEnable - SQL Injection 15 WEB Zinho
2005-04-04   SonicWALL SOHO 5.1.7 - Web Interface Multiple Remote Input Validation Vulnerabilities 14 WEB Oliver Karow
2005-04-03   phpMyAdmin 2.x - Convcharset Cross-Site Scripting 13 WEB Oriol Torrent Santiago
2005-04-01   Alstrasoft EPay Pro 2.0 - Multiple Cross-Site Scripting Vulnerabilities 16 WEB Dcrab
2005-04-01   Alstrasoft EPay Pro 2.0 - Remote File Inclusion 16 WEB Dcrab
2005-03-31   ASP-DEV XM Forum RC3 - IMG Tag Script Injection 13 WEB Zinho
2005-03-31   InterAKT Online MX Shop 1.1.1 - SQL Injection 16 WEB Dcrab
2005-03-29   Lighthouse Development Squirrelcart 1.5.5 - SQL Injection 14 WEB Diabolic Crab
2005-03-29   Iatek IntranetApp 2.3 - 'ad_click.asp?banner_id' SQL Injection 13 WEB Diabolic Crab
2005-03-29   UApplication Ublog 1.0.x - Cross-Site Scripting 15 WEB PersianHacker Team
2005-03-29   CPG Dragonfly 9.0.2.0 - Multiple Cross-Site Scripting Vulnerabilities 13 WEB mircia
2005-03-29   Chatness 2.5 - 'Message Form' HTML Injection 15 WEB 3nitro
2005-03-29   The Includer 1.0/1.1 - Remote File Inclusion 13 WEB hoang yen
2005-03-28   ACS Blog 0.8/0.9/1.0/1.1 - 'Name' HTML Injection 12 WEB Dan Crowley
2005-03-28   PhotoPost Pro 5.1 - 'showphoto.php?photo' SQL Injection 12 WEB Diabolic Crab
2005-03-28   PhotoPost Pro 5.1 - 'showmembers.php?sl' SQL Injection 14 WEB Diabolic Crab
2005-03-28   PhotoPost Pro 5.1 - 'Slideshow.php?photo' Cross-Site Scripting 16 WEB Diabolic Crab
2005-03-28   PhotoPost Pro 5.1 - 'showmembers.php' Multiple Cross-Site Scripting Vulnerabilities 15 WEB Diabolic Crab
2005-03-28   PhotoPost Pro 5.1 - 'showgallery.php' Multiple Cross-Site Scripting Vulnerabilities 15 WEB Diabolic Crab
2013-05-08   ColdFusion 9-10 - Credential Disclosure 16 WEB HTP
2013-05-08   MoinMoin - Arbitrary Command Execution 13 WEB HTP
2005-03-29   phpCoin 1.2 - 'auxpage.php?page' Traversal Arbitrary File Access 16 WEB GulfTech Security
2005-03-28   Valdersoft Shopping Cart 3.0 - Multiple Input Validation Vulnerabilities 16 WEB Diabolic Crab
2005-03-28   EXoops - Multiple Input Validation Vulnerabilities 16 WEB Diabolic Crab
2005-03-28   Tkai's Shoutbox - 'Query' Open Redirection 13 WEB CorryL
2013-05-07   b2evolution 4.1.6 - Multiple Vulnerabilities 15 WEB High-Tech Bridge SA
2013-05-07   Cisco Linksys E4200 - Multiple Vulnerabilities 16 WEB sqlhacker
2005-03-26   MagicScripts E-Store Kit-2 PayPal Edition - Remote File Inclusion 14 WEB Dcrab
2005-03-26   MagicScripts E-Store Kit-2 PayPal Edition - Cross-Site Scripting 15 WEB Dcrab
2005-03-26   Nuke BookMarks 0.6 - 'Marks.php' SQL Injection 15 WEB Gerardo Astharot Di Giacomo
2005-03-26   Nuke BookMarks 0.6 - Multiple Cross-Site Scripting Vulnerabilities 15 WEB Gerardo Astharot Di Giacomo
2005-03-26   Nuke BookMarks 0.6 - 'Marks.php' Full Path Disclosure 15 WEB Gerardo Astharot Di Giacomo
2005-03-26   ESMI PayPal StoreFront 1.7 - Cross-Site Scripting 13 WEB Dcrab
2005-03-26   ESMI PayPal StoreFront 1.7 - 'products1.php?id2' SQL Injection 17 WEB Dcrab
2005-03-26   ESMI PayPal StoreFront 1.7 - 'pages.php?idpages' SQL Injection 15 WEB Dcrab
2005-03-25   PHPMyDirectory 10.1.3 - 'review.php' Multiple Cross-Site Scripting Vulnerabilities 16 WEB mircia
2005-03-24   Dream4 Koobi CMS 4.2.3 - 'index.php' SQL Injection 13 WEB mircia
2005-03-24   Dream4 Koobi CMS 4.2.3 - 'index.php' Cross-Site Scripting 16 WEB mircia
2005-03-24   Double Choco Latte 0.9.3/0.9.4 - 'main.php' Arbitrary PHP Code Execution 12 WEB GulfTech Security
2004-03-24   Topic Calendar 1.0.1 - 'Calendar_Scheduler.php' Cross-Site Scripting 11 WEB Alberto Trivero
2005-03-24   Oracle Reports Server 10g - Multiple Cross-Site Scripting Vulnerabilities 13 WEB Paolo
2005-03-23   Invision Power Board 1.x/2.0 - HTML Injection 17 WEB Woody Hughes
2005-03-23   PHPSysInfo 2.0/2.3 - 'system_footer.php' Cross-Site Scripting 13 WEB Maksymilian Arciemowicz
2005-03-23   PHPSysInfo 2.0/2.3 - 'sensor_program' Cross-Site Scripting 15 WEB Maksymilian Arciemowicz