2004-01-12
|
|
PHPGedView 2.5/2.6 - 'calendar.php' Cross-Site Scripting
|
1 |
WEB
|
JeiAr
|
2004-01-12
|
|
PHPGedView 2.5/2.6 - 'Relationship.php' Cross-Site Scripting
|
1 |
WEB
|
JeiAr
|
2004-01-12
|
|
PHPGedView 2.5/2.6 - 'login.php' Newlanguage Cross-Site Scripting
|
1 |
WEB
|
JeiAr
|
2004-01-12
|
|
PHPGedView 2.5/2.6 - 'login.php?Username' Cross-Site Scripting
|
1 |
WEB
|
JeiAr
|
2004-01-12
|
|
PHPGedView 2.5/2.6 - 'login.php?URL' Cross-Site Scripting
|
1 |
WEB
|
JeiAr
|
2004-12-13
|
|
UBBCentral UBB.Threads 6.2.3/6.5 - 'online.php?Cat' Cross-Site Scripting
|
1 |
WEB
|
dw. & ms.
|
2004-12-13
|
|
UBBCentral UBB.Threads 6.2.3/6.5 - 'login.php?Cat' Cross-Site Scripting
|
0 |
WEB
|
dw. & ms.
|
2004-12-13
|
|
UBBCentral UBB.Threads 6.2.3/6.5 - 'calendar.php?Cat' Cross-Site Scripting
|
1 |
WEB
|
dw. & ms.
|
2004-12-13
|
|
UBBCentral UBB.Threads 6.2.3/6.5 - 'showflat.php?Cat' Cross-Site Scripting
|
1 |
WEB
|
dw. & ms.
|
2004-12-13
|
|
sugarsales 1.x/2.0 - Multiple Vulnerabilities
|
1 |
WEB
|
Daniel Fabian
|
2004-01-12
|
|
PHPGedView 2.5/2.6 - 'Gdbi_interface.php' Cross-Site Scripting
|
0 |
WEB
|
JeiAr
|
2004-01-12
|
|
PHPGedView 2.5/2.6 - 'Gedrecord.php' Cross-Site Scripting
|
1 |
WEB
|
JeiAr
|
2004-01-12
|
|
PHPGedView 2.5/2.6 - 'Imageview.php' Cross-Site Scripting
|
1 |
WEB
|
JeiAr
|
2004-01-12
|
|
PHPGedView 2.5/2.6 - 'Source.php' Cross-Site Scripting
|
1 |
WEB
|
JeiAr
|
2004-12-13
|
|
phpMyAdmin 2.x - External Transformations Remote Command Execution
|
1 |
WEB
|
Nicolas Gregoire
|
2004-01-12
|
|
PHPGedView 2.5/2.6 - 'Individual.php' Cross-Site Scripting
|
1 |
WEB
|
JeiAr
|
2004-01-12
|
|
PHPGedView 2.5/2.6 - 'index.php' Cross-Site Scripting
|
1 |
WEB
|
JeiAr
|
2004-01-19
|
|
PHPGedView 2.x - 'Descendancy.php' Cross-Site Scripting
|
1 |
WEB
|
JeiAr
|
2004-12-07
|
|
darryl burgdorf weblibs 1.0 - Directory Traversal
|
1 |
WEB
|
John Bissell
|
2004-12-07
|
|
Blog Torrent 0.80 - 'BTDownload.php' Cross-Site Scripting
|
1 |
WEB
|
Lostmon
|
2004-12-04
|
|
PAFileDB 3.1 - Error Message Full Path Disclosure
|
0 |
WEB
|
y3dips
|
2004-12-02
|
|
Advanced Guestbook 2.2/2.3 - Cross-Site Scripting
|
1 |
WEB
|
Emile van Elen
|
2004-12-02
|
|
Blog Torrent 0.8 - Directory Traversal
|
1 |
WEB
|
Steve Kemp
|
2004-11-30
|
|
IPCop 1.4.1 - Web Administration Interface Proxy Log HTML Injection
|
1 |
WEB
|
Paul Kurczaba
|
2013-03-15
|
|
Open-Xchange Server 6 - Multiple Vulnerabilities
|
1 |
WEB
|
Martin Braun
|
2013-03-15
|
|
ClipShare 4.1.4 - Multiple Vulnerabilities
|
1 |
WEB
|
AkaStep
|
2013-03-15
|
|
WordPress Plugin LeagueManager 3.8 - SQL Injection
|
1 |
WEB
|
Joshua Reynolds
|
2013-03-15
|
|
Cisco Video Surveillance Operations Manager 6.3.2 - Multiple Vulnerabilities
|
1 |
WEB
|
Bassem
|
2004-11-26
|
|
pntresmailer 6.0 - Directory Traversal
|
1 |
WEB
|
John Cobb
|
2004-11-26
|
|
phpCMS 1.1/1.2 - Cross-Site Scripting
|
1 |
WEB
|
Cyrille Barthelemy
|
2004-11-25
|
|
InShop and InMail - Cross-Site Scripting
|
1 |
WEB
|
Carlos Ulver
|
2004-11-24
|
|
JSPWiki 2.1 - Cross-Site Scripting
|
1 |
WEB
|
Jeremy Bae
|
2004-11-24
|
|
Zwiki 0.10/0.36.2 - Cross-Site Scripting
|
0 |
WEB
|
Jeremy Bae
|
2004-11-24
|
|
KorWeblog 1.6.2 - Remote Directory Listing
|
1 |
WEB
|
Jeremy Bae
|
2004-11-23
|
|
SugarCRM 1.x/2.0 Module - Traversal Arbitrary File Access
|
1 |
WEB
|
GulfTech Security
|
2004-11-23
|
|
SugarCRM 1.x/2.0 Module - 'record' SQL Injection
|
1 |
WEB
|
GulfTech Security
|
2004-11-23
|
|
Nuked-klaN 1.x - Submit Link Function HTML Injection
|
1 |
WEB
|
XioNoX
|
2004-11-22
|
|
PHPKIT 1.6 - Multiple Input Validation Vulnerabilities
|
1 |
WEB
|
Steve
|
2004-11-20
|
|
IPBProArcade 2.5 - SQL Injection
|
2 |
WEB
|
axl daivy
|
2004-11-18
|
|
Invision Power Board 2.0 - 'index.php' Post Action SQL Injection
|
2 |
WEB
|
anonymous
|
2004-11-17
|
|
phpBB 2.0.x - 'admin_cash.php' PHP Remote File Inclusion
|
2 |
WEB
|
Jerome Athias
|
2004-11-16
|
|
event Calendar - Multiple Vulnerabilities
|
0 |
WEB
|
Janek Vind
|
2013-03-13
|
|
Apache Rave 0.11 < 0.20 - User Information Disclosure
|
1 |
WEB
|
Andreas Guth
|
2013-03-13
|
|
Web Cookbook - Multiple SQL Injections
|
1 |
WEB
|
Saadat Ullah
|
2013-02-24
|
|
AirDrive HD 1.6 iPad iPhone - Multiple Vulnerabilities
|
1 |
WEB
|
Vulnerability-Lab
|
2004-11-14
|
|
PowerPortal 1.3 - SQL Injection
|
1 |
WEB
|
ruggine
|
2004-11-13
|
|
Mark Zuckerberg Thefacebook - Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
Alex Lanstein
|
2004-11-04
|
|
phpWebSite 0.7.3/0.8.x/0.9.3 - User Module HTTP Response Splitting
|
1 |
WEB
|
Maestro De-Seguridad
|
2004-11-12
|
|
chacmool Private Message System 1.1.3 - 'send.php' Arbitrary Message Access
|
1 |
WEB
|
digital ex
|
2004-11-12
|
|
chacmool Private Message System 1.1.3 - 'send.php?tid' Cross-Site Scripting
|
2 |
WEB
|
digital ex
|
2004-11-11
|
|
Phorum 5.0.x - 'FOLLOW.php' SQL Injection
|
1 |
WEB
|
Janek Vind
|
2004-11-12
|
|
Aztek Forum 4.0 - Multiple Input Validation Vulnerabilities
|
1 |
WEB
|
benji lemien
|
2004-11-10
|
|
webcalendar 0.9.x - Multiple Vulnerabilities
|
1 |
WEB
|
Joxean Koret
|
2004-11-03
|
|
TIPS MailPost 5.1.1 - Remote File Enumeration
|
0 |
WEB
|
Gemma Hughes
|
2004-11-03
|
|
TIPS MailPost 5.1.1 - Error Message Cross-Site Scripting
|
1 |
WEB
|
Procheckup
|
2004-11-03
|
|
TIPS MailPost 5.1.1 - 'APPEND' Cross-Site Scripting
|
1 |
WEB
|
Procheckup
|
2004-11-02
|
|
Goolery 0.3 - 'viewalbum.php?page' Cross-Site Scripting
|
1 |
WEB
|
Lostmon
|
2004-11-02
|
|
Goolery 0.3 - 'viewpic.php?conversation_id' Cross-Site Scripting
|
1 |
WEB
|
Lostmon
|
2004-11-02
|
|
WebHost Automation Helm Control Panel 3.1.x - Multiple Input Validation Vulnerabilities
|
0 |
WEB
|
Behrang Fouladi
|
2004-10-25
|
|
LinuxStat 2.x - Directory Traversal
|
1 |
WEB
|
anonymous
|
2004-10-25
|
|
MoniWiki 1.0/1.1 - 'Wiki.php' Cross-Site Scripting
|
1 |
WEB
|
Jeremy Bae
|
2004-10-22
|
|
Netbilling NBMEMBER Script - Information Disclosure
|
1 |
WEB
|
ls
|
2004-10-21
|
|
UBBCentral UBB.Threads 3.4/3.5 - 'Dosearch.php' SQL Injection
|
1 |
WEB
|
Florian Rock
|
2004-10-21
|
|
S9Y Serendipity 0.x - 'exit.php' HTTP Response Splitting
|
1 |
WEB
|
ChaoticEvil
|
2004-10-19
|
|
Jan Erdmann Jebuch 1.0 - HTML Injection
|
2 |
WEB
|
PuWu
|
2004-10-18
|
|
IBM Lotus Domino 6.x - Cross-Site Scripting / HTML Injection
|
1 |
WEB
|
Juan C Calderon
|
2004-10-18
|
|
cPanel 9.9.1 -R3 Front Page Extension - Installation Information Disclosure
|
1 |
WEB
|
Karol Wiesek
|
2004-10-16
|
|
CoolPHP 1.0 - Multiple Remote Input Validation Vulnerabilities
|
0 |
WEB
|
R00tCr4ck
|
2004-10-14
|
|
Pinnacle Systems ShowCenter 1.51 - 'SettingsBase.php' Cross-Site Scripting
|
1 |
WEB
|
Secunia Research
|
2004-10-13
|
|
FuseTalk Forum 4.0 - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
steven
|
2004-10-13
|
|
SCT Campus Pipeline 1.0/2.x/3.x - 'Render.UserLayoutRootNode.uP' Cross-Site Scripting
|
2 |
WEB
|
Matthew Oyer
|
2004-10-11
|
|
DUforum 3.x - 'messageDetail.asp?MSG_ID' SQL Injection
|
2 |
WEB
|
Soroosh Dalili
|
2004-10-11
|
|
DUforum 3.x - 'messages.asp?FOR_ID' SQL Injection
|
2 |
WEB
|
Soroosh Dalili
|
2004-10-11
|
|
DUforum 3.x - Login Form 'Password' SQL Injection
|
2 |
WEB
|
Soroosh Dalili
|
2004-10-11
|
|
DUclassmate 1.x - 'account.asp?MM-recordId' Arbitrary Password Modification
|
2 |
WEB
|
Soroosh Dalili
|
2004-10-11
|
|
DUclassified 4.x - 'adDetail.asp' Multiple SQL Injections
|
2 |
WEB
|
Soroosh Dalili
|
2004-10-11
|
|
Go Smart Inc GoSmart Message Board - Multiple Input Validation Vulnerabilities
|
2 |
WEB
|
Positive Technologies
|
2004-10-07
|
|
WordPress Core 1.2 - 'wp-login.php' HTTP Response Splitting
|
2 |
WEB
|
Chaotic Evil
|
2004-10-06
|
|
Microsoft ASP.NET 1.x - URI Canonicalization Unauthorized Web Access
|
1 |
WEB
|
anonymous
|
2004-10-06
|
|
DCP-Portal 3.7/4.x/5.x - 'calendar.php' HTTP Response Splitting
|
2 |
WEB
|
Alexander Antipov
|
2004-10-06
|
|
DCP-Portal 3.7/4.x/5.x - Multiple HTML Injection Vulnerabilities
|
2 |
WEB
|
Alexander Antipov
|
2004-10-06
|
|
DCP-Portal 3.7/4.x/5.x - 'contents.php?cid' Cross-Site Scripting
|
2 |
WEB
|
Alexander Antipov
|
2004-10-06
|
|
DCP-Portal 3.7/4.x/5.x - 'news.php?cid' Cross-Site Scripting
|
1 |
WEB
|
Alexander Antipov
|
2004-10-06
|
|
DCP-Portal 3.7/4.x/5.x - 'announcement.php?cid' Cross-Site Scripting
|
1 |
WEB
|
Alexander Antipov
|
2004-10-06
|
|
DCP-Portal 3.7/4.x/5.x - 'index.php' Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Alexander Antipov
|
2004-10-06
|
|
DCP-Portal 3.7/4.x/5.x - 'calendar.php' Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Alexander Antipov
|
2004-10-06
|
|
BlackBoard Internet NewsBoard System 1.5.1 - Remote File Inclusion
|
1 |
WEB
|
Lin Xiaofeng
|
2004-10-05
|
|
PHPLinks 2.1.x - Multiple Input Validation Vulnerabilities
|
2 |
WEB
|
LSS Security
|
2004-09-30
|
|
W-Agora 4.1.6a - 'login.php?loginuser' Cross-Site Scripting
|
2 |
WEB
|
Alexander Antipov
|
2004-09-30
|
|
W-Agora 4.1.6a - 'subscribe_thread.php' HTTP Response Splitting
|
2 |
WEB
|
Alexander Antipov
|
2004-09-30
|
|
W-Agora 4.1.6 - 'a download_thread.php?thread' Cross-Site Scripting
|
2 |
WEB
|
Alexander Antipov
|
2004-09-30
|
|
W-Agora 4.1.6 - 'a forgot_password.php?userid' Cross-Site Scripting
|
2 |
WEB
|
Alexander Antipov
|
2004-09-30
|
|
W-Agora 4.1.6 - 'a redir_url.php?key' SQL Injection
|
2 |
WEB
|
Alexander Antipov
|
2004-09-28
|
|
Parachat 5.5 - Directory Traversal
|
2 |
WEB
|
Donato Ferrante
|
2004-09-28
|
|
WordPress Core 1.2 - 'edit-comments.php' Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Thomas Waldegger
|
2004-09-28
|
|
WordPress Core 1.2 - 'edit.php?s' Cross-Site Scripting
|
2 |
WEB
|
Thomas Waldegger
|
2004-09-28
|
|
WordPress Core 1.2 - 'categories.php?cat_ID' Cross-Site Scripting
|
2 |
WEB
|
Thomas Waldegger
|
2004-09-28
|
|
WordPress Core 1.2 - 'bookmarklet.php' Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Thomas Waldegger
|
2004-09-28
|
|
WordPress Core 1.2 - 'admin-header.php?redirect_url' Cross-Site Scripting
|
2 |
WEB
|
Thomas Waldegger
|
2004-09-28
|
|
WordPress Core 1.2 - 'wp-login.php' Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Thomas Waldegger
|
2004-09-27
|
|
@lexPHPTeam @lex Guestbook 3.12 - PHP Remote File Inclusion
|
2 |
WEB
|
Himeur Nourredine
|
2004-09-27
|
|
PD9 Software MegaBBS 2.0/2.1 - 'view-profile.asp' Multiple SQL Injections
|
1 |
WEB
|
pigrelax
|
2004-09-27
|
|
PD9 Software MegaBBS 2.0/2.1 - 'ladder-log.asp' Multiple SQL Injections
|
2 |
WEB
|
pigrelax
|
2004-09-27
|
|
PD9 Software MegaBBS 2.0/2.1 - 'thread-post.asp' Multiple Header CRLF Injections
|
2 |
WEB
|
pigrelax
|
2013-03-07
|
|
mnoGoSearch 3.3.12 (search.cgi) - Arbitrary File Read
|
2 |
WEB
|
Sergey Bobrov
|
2013-03-07
|
|
CosCMS 1.721 - OS Command Injection
|
2 |
WEB
|
High-Tech Bridge SA
|
2013-03-07
|
|
Qool CMS 2.0 RC2 - Multiple Vulnerabilities
|
2 |
WEB
|
LiquidWorm
|
2004-09-27
|
|
FreezingCold Broadboard - 'profile.asp' SQL Injection
|
1 |
WEB
|
pigrelax
|
2004-09-27
|
|
FreezingCold Broadboard - 'search.asp' SQL Injection
|
1 |
WEB
|
pigrelax
|
2004-09-20
|
|
TUTOS - 'app_new.php?t' Cross-Site Scripting
|
2 |
WEB
|
Joxean Koret
|
2004-09-20
|
|
TUTOS - 'file_overview.php?link_id' SQL Injection
|
2 |
WEB
|
Joxean Koret
|
2004-09-20
|
|
Mambo Open Source 4.5.1 (1.0.9) - 'Function.php' Arbitrary Command Execution
|
2 |
WEB
|
Joxean Koret
|
2004-09-20
|
|
Mambo Open Source 4.5.1 (1.0.9) - Cross-Site Scripting
|
2 |
WEB
|
Joxean Koret
|
2004-09-18
|
|
Remository - SQL Injection
|
2 |
WEB
|
khoaimi
|
2004-09-17
|
|
YaBB 1.x/9.1.2000 - 'YaBB.pl IMSend' Cross-Site Scripting
|
2 |
WEB
|
GulfTech Security
|
2004-09-17
|
|
YaBB 1.x/9.1.2000 - Administrator Command Execution
|
2 |
WEB
|
GulfTech Security
|
2004-09-16
|
|
Snitz Forums 2000 - 'down.asp' HTTP Response Splitting
|
0 |
WEB
|
Maestro De-Seguridad
|
2013-03-06
|
|
Remote File Manager 1.2 iOS - Multiple Vulnerabilities
|
1 |
WEB
|
Vulnerability-Lab
|
2004-09-15
|
|
BBS E-Market Professional bf_130 1.3.0 - Multiple File Disclosure Vulnerabilities
|
1 |
WEB
|
Jeong Jin-Seok
|
2004-09-13
|
|
PerlDesk Language Variable - Server-Side Script Execution
|
0 |
WEB
|
Nikyt0x Argentina
|
2004-09-10
|
|
GetSolutions GetInternet - Multiple SQL Injections
|
1 |
WEB
|
Criolabs
|
2004-09-10
|
|
GetSolutions GetIntranet 2.2 - Multiple Remote Input Validation Vulnerabilities
|
0 |
WEB
|
Criolabs
|
2004-09-10
|
|
PostNuke Modules Factory Subjects Module 2.0 - SQL Injection
|
1 |
WEB
|
Criolabs
|
2004-09-09
|
|
BBS E-Market Professional bf_130 (1.3.0) - Remote File Inclusion
|
1 |
WEB
|
Ahmad Muammar
|
2004-09-07
|
|
SAFE TEAM Regulus 2.2 - Customer Statistics Information Disclosure
|
1 |
WEB
|
masud_libra
|