2004-09-28
|
|
WordPress Core 1.2 - 'edit.php?s' Cross-Site Scripting
|
3 |
WEB
|
Thomas Waldegger
|
2004-09-28
|
|
WordPress Core 1.2 - 'categories.php?cat_ID' Cross-Site Scripting
|
3 |
WEB
|
Thomas Waldegger
|
2004-09-28
|
|
WordPress Core 1.2 - 'bookmarklet.php' Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
Thomas Waldegger
|
2004-09-28
|
|
WordPress Core 1.2 - 'admin-header.php?redirect_url' Cross-Site Scripting
|
3 |
WEB
|
Thomas Waldegger
|
2004-09-28
|
|
WordPress Core 1.2 - 'wp-login.php' Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
Thomas Waldegger
|
2004-09-27
|
|
@lexPHPTeam @lex Guestbook 3.12 - PHP Remote File Inclusion
|
3 |
WEB
|
Himeur Nourredine
|
2004-09-27
|
|
PD9 Software MegaBBS 2.0/2.1 - 'view-profile.asp' Multiple SQL Injections
|
2 |
WEB
|
pigrelax
|
2004-09-27
|
|
PD9 Software MegaBBS 2.0/2.1 - 'ladder-log.asp' Multiple SQL Injections
|
3 |
WEB
|
pigrelax
|
2004-09-27
|
|
PD9 Software MegaBBS 2.0/2.1 - 'thread-post.asp' Multiple Header CRLF Injections
|
3 |
WEB
|
pigrelax
|
2013-03-07
|
|
mnoGoSearch 3.3.12 (search.cgi) - Arbitrary File Read
|
3 |
WEB
|
Sergey Bobrov
|
2013-03-07
|
|
CosCMS 1.721 - OS Command Injection
|
3 |
WEB
|
High-Tech Bridge SA
|
2013-03-07
|
|
Qool CMS 2.0 RC2 - Multiple Vulnerabilities
|
3 |
WEB
|
LiquidWorm
|
2004-09-27
|
|
FreezingCold Broadboard - 'profile.asp' SQL Injection
|
2 |
WEB
|
pigrelax
|
2004-09-27
|
|
FreezingCold Broadboard - 'search.asp' SQL Injection
|
2 |
WEB
|
pigrelax
|
2004-09-20
|
|
TUTOS - 'app_new.php?t' Cross-Site Scripting
|
3 |
WEB
|
Joxean Koret
|
2004-09-20
|
|
TUTOS - 'file_overview.php?link_id' SQL Injection
|
3 |
WEB
|
Joxean Koret
|
2004-09-20
|
|
Mambo Open Source 4.5.1 (1.0.9) - 'Function.php' Arbitrary Command Execution
|
3 |
WEB
|
Joxean Koret
|
2004-09-20
|
|
Mambo Open Source 4.5.1 (1.0.9) - Cross-Site Scripting
|
3 |
WEB
|
Joxean Koret
|
2004-09-18
|
|
Remository - SQL Injection
|
3 |
WEB
|
khoaimi
|
2004-09-17
|
|
YaBB 1.x/9.1.2000 - 'YaBB.pl IMSend' Cross-Site Scripting
|
3 |
WEB
|
GulfTech Security
|
2004-09-17
|
|
YaBB 1.x/9.1.2000 - Administrator Command Execution
|
3 |
WEB
|
GulfTech Security
|
2004-09-16
|
|
Snitz Forums 2000 - 'down.asp' HTTP Response Splitting
|
2 |
WEB
|
Maestro De-Seguridad
|
2013-03-06
|
|
Remote File Manager 1.2 iOS - Multiple Vulnerabilities
|
3 |
WEB
|
Vulnerability-Lab
|
2004-09-15
|
|
BBS E-Market Professional bf_130 1.3.0 - Multiple File Disclosure Vulnerabilities
|
3 |
WEB
|
Jeong Jin-Seok
|
2004-09-13
|
|
PerlDesk Language Variable - Server-Side Script Execution
|
2 |
WEB
|
Nikyt0x Argentina
|
2004-09-10
|
|
GetSolutions GetInternet - Multiple SQL Injections
|
3 |
WEB
|
Criolabs
|
2004-09-10
|
|
GetSolutions GetIntranet 2.2 - Multiple Remote Input Validation Vulnerabilities
|
2 |
WEB
|
Criolabs
|
2004-09-10
|
|
PostNuke Modules Factory Subjects Module 2.0 - SQL Injection
|
3 |
WEB
|
Criolabs
|
2004-09-09
|
|
BBS E-Market Professional bf_130 (1.3.0) - Remote File Inclusion
|
3 |
WEB
|
Ahmad Muammar
|
2004-09-07
|
|
SAFE TEAM Regulus 2.2 - Customer Statistics Information Disclosure
|
3 |
WEB
|
masud_libra
|
2004-09-07
|
|
SAFE TEAM Regulus 2.2 - 'Custchoice.php' Update Your Password Action Information Disclosure
|
3 |
WEB
|
masud_libra
|
2004-09-07
|
|
UtilMind Solutions Site News 1.1 - Authentication Bypass
|
3 |
WEB
|
anonymous
|
2004-09-05
|
|
PSNews 1.1 - 'No' Cross-Site Scripting
|
3 |
WEB
|
Michal Blaszczak
|
2004-09-07
|
|
Webmin 1.x - HTML Email Command Execution
|
3 |
WEB
|
Keigo Yamazaki
|
2004-09-04
|
|
Keene Digital Media Server 1.0.2 - Cross-Site Scripting
|
3 |
WEB
|
dr_insane
|
2004-09-02
|
|
CuteNews 0.88/1.3.x - 'index.php' Cross-Site Scripting
|
3 |
WEB
|
Exoduks
|
2004-09-02
|
|
SiteCubed MailWorks Professional - Authentication Bypass
|
3 |
WEB
|
Paul Craig
|
2013-03-04
|
|
Nconf 1.3 - Multiple SQL Injections
|
3 |
WEB
|
Saadi Siddiqui
|
2013-03-04
|
|
D-Link DSL-2740B ADSL Router - Authentication Bypass
|
3 |
WEB
|
Ivano Binetti
|
2013-03-01
|
|
PHP-Fusion 7.02.05 - Multiple Vulnerabilities
|
3 |
WEB
|
waraxe
|
2013-03-01
|
|
Piwigo 2.4.6 - Multiple Vulnerabilities
|
3 |
WEB
|
High-Tech Bridge SA
|
2013-03-01
|
|
doorGets CMS - Cross-Site Request Forgery
|
2 |
WEB
|
n0pe
|
2013-02-27
|
|
WordPress Plugin Comment Rating 2.9.32 - Multiple Vulnerabilities
|
3 |
WEB
|
ebanyu
|
2013-02-27
|
|
Joomla! 3.0.2 - 'highlight.php' PHP Object Injection
|
3 |
WEB
|
EgiX
|
2013-02-26
|
|
WiFilet 1.2 iPad iPhone - Multiple Vulnerabilities
|
3 |
WEB
|
Vulnerability-Lab
|
2013-02-26
|
|
MTP Poll 1.0 - Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
LiquidWorm
|
2013-02-26
|
|
MTP Guestbook 1.0 - Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
LiquidWorm
|
2013-02-26
|
|
MTP Image Gallery 1.0 - 'edit_photos.php?title' Cross-Site Scripting
|
3 |
WEB
|
LiquidWorm
|
2013-02-26
|
|
iOS IPMap 2.5 - Arbitrary File Upload
|
2 |
WEB
|
Vulnerability-Lab
|
2013-02-26
|
|
Rix4Web Portal - Blind SQL Injection
|
3 |
WEB
|
L0n3ly-H34rT
|
2013-02-26
|
|
Brewthology 0.1 - SQL Injection
|
3 |
WEB
|
cr4wl3r
|
2013-02-21
|
|
PHPMyRecipes 1.2.2 - 'viewrecipe.php?r_id' SQL Injection
|
3 |
WEB
|
cr4wl3r
|
2013-02-21
|
|
glFusion 1.2.2 - Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
High-Tech Bridge SA
|
2013-02-21
|
|
Alt-N MDaemon WorldClient 13.0.3 - Multiple Vulnerabilities
|
3 |
WEB
|
QSecure & Demetris Papapetrou
|
2013-02-21
|
|
Alt-N MDaemon 12.5.6/13.0.3 - Email Body HTML/JS Injection
|
3 |
WEB
|
QSecure & Demetris Papapetrou
|
2013-02-21
|
|
RTTucson Quotations Database Script - Authentication Bypass
|
3 |
WEB
|
cr4wl3r
|
2013-02-21
|
|
Web Cookbook - Multiple Vulnerabilities
|
3 |
WEB
|
cr4wl3r
|
2013-02-20
|
|
CKEditor 4.0.1 - Multiple Vulnerabilities
|
2 |
WEB
|
AkaStep
|
2013-02-20
|
|
RTTucson Quotations Database - Multiple Vulnerabilities
|
3 |
WEB
|
3spi0n
|
2013-02-19
|
|
Piwigo 2.4.6 - '/install.php' Arbitrary File Read/Delete
|
3 |
WEB
|
LiquidWorm
|
2013-02-18
|
|
USB Sharp 1.3.4 iPad iPhone - Multiple Vulnerabilities
|
3 |
WEB
|
Vulnerability-Lab
|
2013-02-18
|
|
Scripts Genie Hot Scripts Clone - 'showcategory.php?cid' SQL Injection
|
4 |
WEB
|
Easy Laster
|
2013-02-18
|
|
Cometchat Application - Multiple Vulnerabilities
|
3 |
WEB
|
z3r0sPlOiT
|
2013-02-18
|
|
Scripts Genie Pet Rate Pro - Multiple Vulnerabilities
|
3 |
WEB
|
TheMirkin
|
2013-02-18
|
|
Netgear DGN2200B - Multiple Vulnerabilities
|
3 |
WEB
|
m-1-k-3
|
2013-02-17
|
|
Scripts Genie Top Sites - 'out.php?id' SQL Injection
|
3 |
WEB
|
3spi0n
|
2013-02-17
|
|
Scripts Genie Domain Trader - 'catalog.php?id' SQL Injection
|
3 |
WEB
|
3spi0n
|
2013-02-17
|
|
Scripts Genie Games Site Script - 'index.php?id' SQL Injection
|
3 |
WEB
|
3spi0n
|
2013-02-17
|
|
Scripts Genie Gallery Personals - 'gallery.php?L' SQL Injection
|
3 |
WEB
|
3spi0n
|
2013-02-15
|
|
ChillyCMS 1.3.0 - Multiple Vulnerabilities
|
3 |
WEB
|
Abhi M Balakrishnan
|
2013-02-15
|
|
Cometchat - Multiple Vulnerabilities
|
3 |
WEB
|
B127Y
|
2013-02-15
|
|
TP-Link TL-WA701N / TL-WA701ND - Multiple Vulnerabilities
|
3 |
WEB
|
m-1-k-3
|
2013-02-15
|
|
Edimax EW-7206-APg and EW-7209APg - Multiple Vulnerabilities
|
3 |
WEB
|
m-1-k-3
|
2013-02-14
|
|
Ultra Light Forum - Persistent Cross-Site Scripting
|
3 |
WEB
|
cr4wl3r
|
2013-02-14
|
|
SonicWALL OEM Scrutinizer 9.5.2 - Multiple Vulnerabilities
|
2 |
WEB
|
Vulnerability-Lab
|
2013-02-14
|
|
Raidsonic IB-NAS5220 and IB-NAS4220-B - Multiple Vulnerabilities
|
3 |
WEB
|
m-1-k-3
|
2013-02-14
|
|
OpenPLI 3.0 Beta (OpenPLi-beta-dm7000-20130127-272) - Multiple Vulnerabilities
|
3 |
WEB
|
m-1-k-3
|
2013-02-14
|
|
Transferable Remote 1.1 iPad iPhone - Multiple Vulnerabilities
|
3 |
WEB
|
Vulnerability-Lab
|
2013-02-14
|
|
SonicWALL Scrutinizer 9.5.2 - SQL Injection
|
3 |
WEB
|
Vulnerability-Lab
|
2013-02-13
|
|
OpenEMR 4.1.1 - 'ofc_upload_image.php' Arbitrary File Upload
|
4 |
WEB
|
LiquidWorm
|
2013-02-11
|
|
Air Disk Wireless 1.9 iPad iPhone - Multiple Vulnerabilities
|
3 |
WEB
|
Vulnerability-Lab
|
2013-02-11
|
|
TP-Link - Admin Panel Multiple Cross-Site Request Forgery Vulnerabilities
|
3 |
WEB
|
CYBSEC Labs
|
2013-02-11
|
|
IP.Gallery 4.2.x/5.0.x - Persistent Cross-Site Scripting
|
3 |
WEB
|
Mohamed Ramadan
|
2013-02-11
|
|
IRIS Citations Management Tool - (Authenticated) Remote Command Execution
|
3 |
WEB
|
aeon
|
2013-02-11
|
|
Linksys WRT160N - Multiple Vulnerabilities
|
3 |
WEB
|
m-1-k-3
|
2013-02-11
|
|
D-Link DIR-615 Rev H - Multiple Vulnerabilities
|
3 |
WEB
|
m-1-k-3
|
2013-02-11
|
|
Linksys WAG200G - Multiple Vulnerabilities
|
3 |
WEB
|
m-1-k-3
|
2013-02-11
|
|
Linksys E1500/E2500 - Multiple Vulnerabilities
|
3 |
WEB
|
m-1-k-3
|
2013-02-10
|
|
Easy Live Shop System - SQL Injection
|
3 |
WEB
|
Ramdan Yantu
|
2013-02-07
|
|
WirelessFiles 1.1 iPad iPhone - Multiple Vulnerabilities
|
3 |
WEB
|
Vulnerability-Lab
|
2013-02-07
|
|
CubeCart 5.2.0 - 'cubecart.class.php' PHP Object Injection
|
3 |
WEB
|
EgiX
|
2013-02-07
|
|
Netgear DGN1000B - Multiple Vulnerabilities
|
3 |
WEB
|
m-1-k-3
|
2013-02-06
|
|
Hiverr 2.2 - Multiple Vulnerabilities
|
2 |
WEB
|
xStarCode
|
2013-02-05
|
|
Glossword 1.8.3 - SQL Injection
|
3 |
WEB
|
AkaStep
|
2013-02-05
|
|
glossword 1.8.12 - Multiple Vulnerabilities
|
2 |
WEB
|
AkaStep
|
2013-02-05
|
|
Free Monthly Websites 2.0 - Multiple Vulnerabilities
|
3 |
WEB
|
X-Cisadane
|
2013-02-05
|
|
D-Link DIR-600 / DIR-300 (Rev B) - Multiple Vulnerabilities
|
3 |
WEB
|
m-1-k-3
|
2013-02-05
|
|
AdaptCMS 2.0.4 - 'config.php?question' SQL Injection
|
3 |
WEB
|
kallimero
|
2013-02-05
|
|
ArrowChat 1.5.61 - Multiple Vulnerabilities
|
3 |
WEB
|
kallimero
|
2013-02-05
|
|
Cisco Unity Express - Multiple Vulnerabilities
|
3 |
WEB
|
Jacob Holcomb
|
2013-02-04
|
|
Simple Machine Forum 2.0.x < 2.0.4 - File Disclosure / Directory Traversal
|
3 |
WEB
|
NightlyDev
|
2013-01-31
|
|
Buffalo TeraStation TS-Series - Multiple Vulnerabilities
|
3 |
WEB
|
Andrea Fabrizi
|
2013-01-31
|
|
D-Link DCS Cameras - Multiple Vulnerabilities
|
3 |
WEB
|
Roberto Paleari
|
2013-01-31
|
|
Netgear SPH200D - Multiple Vulnerabilities
|
3 |
WEB
|
m-1-k-3
|
2013-01-29
|
|
pfSense UTM Platform 2.0.1 - Cross-Site Scripting
|
3 |
WEB
|
Dimitris Strevinas
|
2013-01-28
|
|
DataLife Engine 9.7 - 'preview.php' PHP Code Injection
|
3 |
WEB
|
EgiX
|
2013-01-29
|
|
Kohana Framework 2.3.3 - Directory Traversal
|
3 |
WEB
|
Vulnerability-Lab
|
2013-01-29
|
|
Fortinet FortiMail 400 IBE - Multiple Vulnerabilities
|
3 |
WEB
|
Vulnerability-Lab
|
2013-01-28
|
|
PHP weby directory software 1.2 - Multiple Vulnerabilities
|
3 |
WEB
|
AkaStep
|
2013-01-28
|
|
Microsoft Internet Explorer 8/9 - Steal Any Cookie
|
2 |
WEB
|
Christian Haider
|
2004-09-01
|
|
phpWebSite 0.7.3/0.8.x/0.9.x Comment Module - 'CM_pid' Cross-Site Scripting
|
3 |
WEB
|
GulfTech Security
|
2004-09-01
|
|
Newtelligence DasBlog 1.x - Request Log HTML Injection
|
3 |
WEB
|
Dominick Baier
|
2004-09-01
|
|
Comersus Cart 5.0 - HTTP Response Splitting
|
3 |
WEB
|
Maestro De-Seguridad
|
2004-08-31
|
|
Web Animations Password Protect - Multiple Input Validation Vulnerabilities
|
3 |
WEB
|
Criolabs
|
2004-08-28
|
|
Nagl XOOPS Dictionary Module 1.0 - Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
CyruxNET
|
2004-08-24
|
|
PHP Code Snippet Library 0.8 - Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
Nikyt0x Argentina
|
2004-08-24
|
|
Web-APP.Org WebAPP 0.8/0.9.x - Directory Traversal
|
4 |
WEB
|
Jerome Athias
|
2004-08-24
|
|
SWsoft Plesk Reloaded 7.1 - 'Login_name' Cross-Site Scripting
|
3 |
WEB
|
sourvivor
|
2004-08-23
|
|
eGroupWare 1.0 Calendar Module - 'date' Cross-Site Scripting
|
2 |
WEB
|
Joxean Koret
|
2004-08-23
|
|
Axis Network Camera 2.x And Video Server 1-3 - HTTP Authentication Bypass
|
3 |
WEB
|
bashis
|
2004-08-23
|
|
Axis Network Camera 2.x And Video Server 1-3 - Directory Traversal
|
3 |
WEB
|
bashis
|
2004-08-23
|
|
Axis Network Camera 2.x And Video Server 1-3 - 'virtualinput.cgi' Arbitrary Command Execution
|
3 |
WEB
|
bashis
|
2004-08-23
|
|
PhotoADay - 'Pad_selected' Cross-Site Scripting
|
3 |
WEB
|
King Of Love
|
2004-08-23
|
|
Compulsive Media CNU5 - 'News.mdb' Database Disclosure
|
4 |
WEB
|
Security .Net Information
|
2004-08-21
|
|
MyDms 1.4 - SQL Injection / Directory Traversal
|
3 |
WEB
|
Jose Antonio
|