Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2004-01-12   PHPGedView 2.5/2.6 - 'calendar.php' Cross-Site Scripting 1 WEB JeiAr
2004-01-12   PHPGedView 2.5/2.6 - 'Relationship.php' Cross-Site Scripting 1 WEB JeiAr
2004-01-12   PHPGedView 2.5/2.6 - 'login.php' Newlanguage Cross-Site Scripting 1 WEB JeiAr
2004-01-12   PHPGedView 2.5/2.6 - 'login.php?Username' Cross-Site Scripting 1 WEB JeiAr
2004-01-12   PHPGedView 2.5/2.6 - 'login.php?URL' Cross-Site Scripting 1 WEB JeiAr
2004-12-13   UBBCentral UBB.Threads 6.2.3/6.5 - 'online.php?Cat' Cross-Site Scripting 1 WEB dw. & ms.
2004-12-13   UBBCentral UBB.Threads 6.2.3/6.5 - 'login.php?Cat' Cross-Site Scripting 0 WEB dw. & ms.
2004-12-13   UBBCentral UBB.Threads 6.2.3/6.5 - 'calendar.php?Cat' Cross-Site Scripting 1 WEB dw. & ms.
2004-12-13   UBBCentral UBB.Threads 6.2.3/6.5 - 'showflat.php?Cat' Cross-Site Scripting 1 WEB dw. & ms.
2004-12-13   sugarsales 1.x/2.0 - Multiple Vulnerabilities 1 WEB Daniel Fabian
2004-01-12   PHPGedView 2.5/2.6 - 'Gdbi_interface.php' Cross-Site Scripting 0 WEB JeiAr
2004-01-12   PHPGedView 2.5/2.6 - 'Gedrecord.php' Cross-Site Scripting 1 WEB JeiAr
2004-01-12   PHPGedView 2.5/2.6 - 'Imageview.php' Cross-Site Scripting 1 WEB JeiAr
2004-01-12   PHPGedView 2.5/2.6 - 'Source.php' Cross-Site Scripting 1 WEB JeiAr
2004-12-13   phpMyAdmin 2.x - External Transformations Remote Command Execution 1 WEB Nicolas Gregoire
2004-01-12   PHPGedView 2.5/2.6 - 'Individual.php' Cross-Site Scripting 1 WEB JeiAr
2004-01-12   PHPGedView 2.5/2.6 - 'index.php' Cross-Site Scripting 1 WEB JeiAr
2004-01-19   PHPGedView 2.x - 'Descendancy.php' Cross-Site Scripting 1 WEB JeiAr
2004-12-07   darryl burgdorf weblibs 1.0 - Directory Traversal 1 WEB John Bissell
2004-12-07   Blog Torrent 0.80 - 'BTDownload.php' Cross-Site Scripting 1 WEB Lostmon
2004-12-04   PAFileDB 3.1 - Error Message Full Path Disclosure 0 WEB y3dips
2004-12-02   Advanced Guestbook 2.2/2.3 - Cross-Site Scripting 1 WEB Emile van Elen
2004-12-02   Blog Torrent 0.8 - Directory Traversal 1 WEB Steve Kemp
2004-11-30   IPCop 1.4.1 - Web Administration Interface Proxy Log HTML Injection 1 WEB Paul Kurczaba
2013-03-15   Open-Xchange Server 6 - Multiple Vulnerabilities 1 WEB Martin Braun
2013-03-15   ClipShare 4.1.4 - Multiple Vulnerabilities 1 WEB AkaStep
2013-03-15   WordPress Plugin LeagueManager 3.8 - SQL Injection 1 WEB Joshua Reynolds
2013-03-15   Cisco Video Surveillance Operations Manager 6.3.2 - Multiple Vulnerabilities 1 WEB Bassem
2004-11-26   pntresmailer 6.0 - Directory Traversal 1 WEB John Cobb
2004-11-26   phpCMS 1.1/1.2 - Cross-Site Scripting 1 WEB Cyrille Barthelemy
2004-11-25   InShop and InMail - Cross-Site Scripting 1 WEB Carlos Ulver
2004-11-24   JSPWiki 2.1 - Cross-Site Scripting 1 WEB Jeremy Bae
2004-11-24   Zwiki 0.10/0.36.2 - Cross-Site Scripting 0 WEB Jeremy Bae
2004-11-24   KorWeblog 1.6.2 - Remote Directory Listing 1 WEB Jeremy Bae
2004-11-23   SugarCRM 1.x/2.0 Module - Traversal Arbitrary File Access 1 WEB GulfTech Security
2004-11-23   SugarCRM 1.x/2.0 Module - 'record' SQL Injection 1 WEB GulfTech Security
2004-11-23   Nuked-klaN 1.x - Submit Link Function HTML Injection 1 WEB XioNoX
2004-11-22   PHPKIT 1.6 - Multiple Input Validation Vulnerabilities 1 WEB Steve
2004-11-20   IPBProArcade 2.5 - SQL Injection 2 WEB axl daivy
2004-11-18   Invision Power Board 2.0 - 'index.php' Post Action SQL Injection 2 WEB anonymous
2004-11-17   phpBB 2.0.x - 'admin_cash.php' PHP Remote File Inclusion 2 WEB Jerome Athias
2004-11-16   event Calendar - Multiple Vulnerabilities 0 WEB Janek Vind
2013-03-13   Apache Rave 0.11 < 0.20 - User Information Disclosure 1 WEB Andreas Guth
2013-03-13   Web Cookbook - Multiple SQL Injections 1 WEB Saadat Ullah
2013-02-24   AirDrive HD 1.6 iPad iPhone - Multiple Vulnerabilities 1 WEB Vulnerability-Lab
2004-11-14   PowerPortal 1.3 - SQL Injection 1 WEB ruggine
2004-11-13   Mark Zuckerberg Thefacebook - Multiple Cross-Site Scripting Vulnerabilities 1 WEB Alex Lanstein
2004-11-04   phpWebSite 0.7.3/0.8.x/0.9.3 - User Module HTTP Response Splitting 1 WEB Maestro De-Seguridad
2004-11-12   chacmool Private Message System 1.1.3 - 'send.php' Arbitrary Message Access 1 WEB digital ex
2004-11-12   chacmool Private Message System 1.1.3 - 'send.php?tid' Cross-Site Scripting 2 WEB digital ex
2004-11-11   Phorum 5.0.x - 'FOLLOW.php' SQL Injection 1 WEB Janek Vind
2004-11-12   Aztek Forum 4.0 - Multiple Input Validation Vulnerabilities 1 WEB benji lemien
2004-11-10   webcalendar 0.9.x - Multiple Vulnerabilities 1 WEB Joxean Koret
2004-11-03   TIPS MailPost 5.1.1 - Remote File Enumeration 0 WEB Gemma Hughes
2004-11-03   TIPS MailPost 5.1.1 - Error Message Cross-Site Scripting 1 WEB Procheckup
2004-11-03   TIPS MailPost 5.1.1 - 'APPEND' Cross-Site Scripting 1 WEB Procheckup
2004-11-02   Goolery 0.3 - 'viewalbum.php?page' Cross-Site Scripting 1 WEB Lostmon
2004-11-02   Goolery 0.3 - 'viewpic.php?conversation_id' Cross-Site Scripting 1 WEB Lostmon
2004-11-02   WebHost Automation Helm Control Panel 3.1.x - Multiple Input Validation Vulnerabilities 0 WEB Behrang Fouladi
2004-10-25   LinuxStat 2.x - Directory Traversal 1 WEB anonymous
2004-10-25   MoniWiki 1.0/1.1 - 'Wiki.php' Cross-Site Scripting 1 WEB Jeremy Bae
2004-10-22   Netbilling NBMEMBER Script - Information Disclosure 1 WEB ls
2004-10-21   UBBCentral UBB.Threads 3.4/3.5 - 'Dosearch.php' SQL Injection 1 WEB Florian Rock
2004-10-21   S9Y Serendipity 0.x - 'exit.php' HTTP Response Splitting 1 WEB ChaoticEvil
2004-10-19   Jan Erdmann Jebuch 1.0 - HTML Injection 2 WEB PuWu
2004-10-18   IBM Lotus Domino 6.x - Cross-Site Scripting / HTML Injection 1 WEB Juan C Calderon
2004-10-18   cPanel 9.9.1 -R3 Front Page Extension - Installation Information Disclosure 1 WEB Karol Wiesek
2004-10-16   CoolPHP 1.0 - Multiple Remote Input Validation Vulnerabilities 0 WEB R00tCr4ck
2004-10-14   Pinnacle Systems ShowCenter 1.51 - 'SettingsBase.php' Cross-Site Scripting 1 WEB Secunia Research
2004-10-13   FuseTalk Forum 4.0 - Multiple Cross-Site Scripting Vulnerabilities 2 WEB steven
2004-10-13   SCT Campus Pipeline 1.0/2.x/3.x - 'Render.UserLayoutRootNode.uP' Cross-Site Scripting 2 WEB Matthew Oyer
2004-10-11   DUforum 3.x - 'messageDetail.asp?MSG_ID' SQL Injection 2 WEB Soroosh Dalili
2004-10-11   DUforum 3.x - 'messages.asp?FOR_ID' SQL Injection 2 WEB Soroosh Dalili
2004-10-11   DUforum 3.x - Login Form 'Password' SQL Injection 2 WEB Soroosh Dalili
2004-10-11   DUclassmate 1.x - 'account.asp?MM-recordId' Arbitrary Password Modification 2 WEB Soroosh Dalili
2004-10-11   DUclassified 4.x - 'adDetail.asp' Multiple SQL Injections 2 WEB Soroosh Dalili
2004-10-11   Go Smart Inc GoSmart Message Board - Multiple Input Validation Vulnerabilities 2 WEB Positive Technologies
2004-10-07   WordPress Core 1.2 - 'wp-login.php' HTTP Response Splitting 2 WEB Chaotic Evil
2004-10-06   Microsoft ASP.NET 1.x - URI Canonicalization Unauthorized Web Access 1 WEB anonymous
2004-10-06   DCP-Portal 3.7/4.x/5.x - 'calendar.php' HTTP Response Splitting 2 WEB Alexander Antipov
2004-10-06   DCP-Portal 3.7/4.x/5.x - Multiple HTML Injection Vulnerabilities 2 WEB Alexander Antipov
2004-10-06   DCP-Portal 3.7/4.x/5.x - 'contents.php?cid' Cross-Site Scripting 2 WEB Alexander Antipov
2004-10-06   DCP-Portal 3.7/4.x/5.x - 'news.php?cid' Cross-Site Scripting 1 WEB Alexander Antipov
2004-10-06   DCP-Portal 3.7/4.x/5.x - 'announcement.php?cid' Cross-Site Scripting 1 WEB Alexander Antipov
2004-10-06   DCP-Portal 3.7/4.x/5.x - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB Alexander Antipov
2004-10-06   DCP-Portal 3.7/4.x/5.x - 'calendar.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB Alexander Antipov
2004-10-06   BlackBoard Internet NewsBoard System 1.5.1 - Remote File Inclusion 1 WEB Lin Xiaofeng
2004-10-05   PHPLinks 2.1.x - Multiple Input Validation Vulnerabilities 2 WEB LSS Security
2004-09-30   W-Agora 4.1.6a - 'login.php?loginuser' Cross-Site Scripting 2 WEB Alexander Antipov
2004-09-30   W-Agora 4.1.6a - 'subscribe_thread.php' HTTP Response Splitting 2 WEB Alexander Antipov
2004-09-30   W-Agora 4.1.6 - 'a download_thread.php?thread' Cross-Site Scripting 2 WEB Alexander Antipov
2004-09-30   W-Agora 4.1.6 - 'a forgot_password.php?userid' Cross-Site Scripting 2 WEB Alexander Antipov
2004-09-30   W-Agora 4.1.6 - 'a redir_url.php?key' SQL Injection 2 WEB Alexander Antipov
2004-09-28   Parachat 5.5 - Directory Traversal 2 WEB Donato Ferrante
2004-09-28   WordPress Core 1.2 - 'edit-comments.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB Thomas Waldegger
2004-09-28   WordPress Core 1.2 - 'edit.php?s' Cross-Site Scripting 2 WEB Thomas Waldegger
2004-09-28   WordPress Core 1.2 - 'categories.php?cat_ID' Cross-Site Scripting 2 WEB Thomas Waldegger
2004-09-28   WordPress Core 1.2 - 'bookmarklet.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB Thomas Waldegger
2004-09-28   WordPress Core 1.2 - 'admin-header.php?redirect_url' Cross-Site Scripting 2 WEB Thomas Waldegger
2004-09-28   WordPress Core 1.2 - 'wp-login.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB Thomas Waldegger
2004-09-27   @lexPHPTeam @lex Guestbook 3.12 - PHP Remote File Inclusion 2 WEB Himeur Nourredine
2004-09-27   PD9 Software MegaBBS 2.0/2.1 - 'view-profile.asp' Multiple SQL Injections 1 WEB pigrelax
2004-09-27   PD9 Software MegaBBS 2.0/2.1 - 'ladder-log.asp' Multiple SQL Injections 2 WEB pigrelax
2004-09-27   PD9 Software MegaBBS 2.0/2.1 - 'thread-post.asp' Multiple Header CRLF Injections 2 WEB pigrelax
2013-03-07   mnoGoSearch 3.3.12 (search.cgi) - Arbitrary File Read 2 WEB Sergey Bobrov
2013-03-07   CosCMS 1.721 - OS Command Injection 2 WEB High-Tech Bridge SA
2013-03-07   Qool CMS 2.0 RC2 - Multiple Vulnerabilities 2 WEB LiquidWorm
2004-09-27   FreezingCold Broadboard - 'profile.asp' SQL Injection 1 WEB pigrelax
2004-09-27   FreezingCold Broadboard - 'search.asp' SQL Injection 1 WEB pigrelax
2004-09-20   TUTOS - 'app_new.php?t' Cross-Site Scripting 2 WEB Joxean Koret
2004-09-20   TUTOS - 'file_overview.php?link_id' SQL Injection 2 WEB Joxean Koret
2004-09-20   Mambo Open Source 4.5.1 (1.0.9) - 'Function.php' Arbitrary Command Execution 2 WEB Joxean Koret
2004-09-20   Mambo Open Source 4.5.1 (1.0.9) - Cross-Site Scripting 2 WEB Joxean Koret
2004-09-18   Remository - SQL Injection 2 WEB khoaimi
2004-09-17   YaBB 1.x/9.1.2000 - 'YaBB.pl IMSend' Cross-Site Scripting 2 WEB GulfTech Security
2004-09-17   YaBB 1.x/9.1.2000 - Administrator Command Execution 2 WEB GulfTech Security
2004-09-16   Snitz Forums 2000 - 'down.asp' HTTP Response Splitting 0 WEB Maestro De-Seguridad
2013-03-06   Remote File Manager 1.2 iOS - Multiple Vulnerabilities 1 WEB Vulnerability-Lab
2004-09-15   BBS E-Market Professional bf_130 1.3.0 - Multiple File Disclosure Vulnerabilities 1 WEB Jeong Jin-Seok
2004-09-13   PerlDesk Language Variable - Server-Side Script Execution 0 WEB Nikyt0x Argentina
2004-09-10   GetSolutions GetInternet - Multiple SQL Injections 1 WEB Criolabs
2004-09-10   GetSolutions GetIntranet 2.2 - Multiple Remote Input Validation Vulnerabilities 0 WEB Criolabs
2004-09-10   PostNuke Modules Factory Subjects Module 2.0 - SQL Injection 1 WEB Criolabs
2004-09-09   BBS E-Market Professional bf_130 (1.3.0) - Remote File Inclusion 1 WEB Ahmad Muammar
2004-09-07   SAFE TEAM Regulus 2.2 - Customer Statistics Information Disclosure 1 WEB masud_libra