2004-03-20
|
|
Expinion.net Member Management System 2.1 - 'error.asp?err' Cross-Site Scripting
|
1 |
WEB
|
Manuel Lopez
|
2004-03-20
|
|
Expinion.net Member Management System 2.1 - 'resend.asp?ID' SQL Injection
|
1 |
WEB
|
Manuel Lopez
|
2004-03-20
|
|
Expinion.net Member Management System 2.1 - 'news_view.asp?ID' SQL Injection
|
1 |
WEB
|
Manuel Lopez
|
2004-03-18
|
|
PHP-Nuke Error Manager Module 2.1 - 'error.php' Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
Janek Vind
|
2004-03-18
|
|
PHP-Nuke Error Manager Module 2.1 - 'error.php?language' Full Path Disclosure
|
1 |
WEB
|
Janek Vind
|
2004-03-17
|
|
Belchior Foundry VCard 2.8 - Authentication Bypass
|
2 |
WEB
|
saudi linux
|
2004-03-16
|
|
PHP-Nuke 6.x/7.0/7.1 - Image Tag Admin Command Execution
|
2 |
WEB
|
Janek Vind
|
2004-03-16
|
|
Mambo Open Source 4.5 - 'index.php' SQL Injection
|
1 |
WEB
|
JeiAr
|
2013-01-02
|
|
Astium VoIP PBX 2.1 build 25399 - Multiple Vulnerabilities/Remote Command Execution
|
1 |
WEB
|
xistence
|
2013-01-02
|
|
e107 1.0.2 - SQL Injection (via Cross-Site Request Forgery)
|
1 |
WEB
|
Joshua Reynolds
|
2013-01-02
|
|
e107 1.0.1 - Arbitrary JavaScript Execution (via Cross-Site Request Forgery)
|
1 |
WEB
|
Joshua Reynolds
|
2004-03-16
|
|
Mambo Open Source 4.5 - 'index.php?mos_change_template' Cross-Site Scripting
|
2 |
WEB
|
JeiAr
|
2004-03-16
|
|
Mambo Open Source 4.5 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
JeiAr
|
2004-03-16
|
|
vBulletin 3.0 - 'showthread.php' Cross-Site Scripting
|
2 |
WEB
|
JeiAr
|
2004-03-16
|
|
vBulletin 3.0 - 'forumdisplay.php' Cross-Site Scripting
|
1 |
WEB
|
JeiAr
|
2004-01-04
|
|
phpBB 1.x/2.0.x - 'search.php?search_results' SQL Injection
|
1 |
WEB
|
pokleyzz
|
2004-03-15
|
|
Phorum 3.x - 'profile.php?target' Cross-Site Scripting
|
0 |
WEB
|
JeiAr
|
2004-03-15
|
|
Phorum 3.x - 'login.php' HTTP_REFERER Cross-Site Scripting
|
1 |
WEB
|
JeiAr
|
2004-03-15
|
|
Phorum 3.x - 'register.php' HTTP_REFERER Cross-Site Scripting
|
1 |
WEB
|
JeiAr
|
2004-03-15
|
|
WarpSpeed 4nAlbum Module 0.92 - 'nmimage.php?z' Cross-Site Scripting
|
1 |
WEB
|
Janek Vind
|
2004-03-15
|
|
WarpSpeed 4nAlbum Module 0.92 - 'modules.php?gid' SQL Injection
|
0 |
WEB
|
Janek Vind
|
2004-03-15
|
|
WarpSpeed 4nAlbum Module 0.92 - 'displaycategory.php?basepath' Remote File Inclusion
|
2 |
WEB
|
Janek Vind
|
2004-03-15
|
|
PHP-Nuke 7.1 Recommend_Us Module - 'fname' Cross-Site Scripting
|
3 |
WEB
|
Janek Vind
|
2004-03-15
|
|
VocalTec VGW4/8 Telephony Gateway - Remote Authentication Bypass
|
1 |
WEB
|
Rafel Ivgi The-Insider
|
2004-03-15
|
|
YABB SE 1.5.1 - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Cheng Peng Su
|
2004-03-12
|
|
Emumail EMU Webmail 5.2.7 - 'emumail.fcgi' Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
dr_insane
|
2004-03-12
|
|
Emumail EMU Webmail 5.2.7 - nit.emu Information Disclosure
|
1 |
WEB
|
dr_insane
|
2004-03-12
|
|
cPanel 5/6/7/8/9 - Login Script Remote Command Execution
|
1 |
WEB
|
Arab VieruZ
|
2004-03-12
|
|
cPanel 5/6/7/8/9 - 'dir' Cross-Site Scripting
|
1 |
WEB
|
Fable
|
2004-03-09
|
|
Confixx 2 - Perl Debugger Remote Command Execution
|
1 |
WEB
|
wkr
|
2004-03-09
|
|
Confixx 2 - 'DB' SQL Injection
|
1 |
WEB
|
wkr
|
2004-03-09
|
|
Invision Power Board (IP.Board) 1.3 - 'Pop' Cross-Site Scripting
|
1 |
WEB
|
Rafel Ivgi The-Insider
|
2004-03-05
|
|
VirtuaSystems VirtuaNews 1.0.x (Multiple Modules) - Cross-Site Scripting
|
1 |
WEB
|
Rafel Ivgi The-Insider
|
2004-03-03
|
|
SpiderSales 2.0 Shopping Cart - Multiple Vulnerabilities
|
1 |
WEB
|
Nick Gudov
|
2012-12-31
|
|
Joomla! Component Spider Calendar - 'date' Blind SQL Injection
|
2 |
WEB
|
Red-D3v1L
|
2012-12-31
|
|
MyBB 1.6.9 - 'editpost.php?posthash' Blind SQL Injection
|
2 |
WEB
|
Joshua Rogers
|
2004-03-01
|
|
YaBB SE 1.5.x - Multiple SQL Injections
|
2 |
WEB
|
Alnitak & BackSpace
|
2004-03-01
|
|
YaBB SE 1.5.x - Arbitrary File Deletion
|
1 |
WEB
|
Alnitak & BackSpace
|
2004-03-01
|
|
IGeneric Free Shopping Cart 1.4 - Cross-Site Scripting
|
1 |
WEB
|
David Sopas Ferreira
|
2004-03-01
|
|
IGeneric Free Shopping Cart 1.4 - SQL Injection
|
2 |
WEB
|
David Sopas Ferreira
|
2004-03-01
|
|
Invision Power Board (IP.Board) 1.3 - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Rafel Ivgi The-Insider
|
2004-02-24
|
|
Working Resources BadBlue Server 2.40 - 'PHPtest.php' Full Path Disclosure
|
1 |
WEB
|
Rafel Ivgi
|
2004-02-23
|
|
LiveJournal 1.1 - CSS HTML Injection
|
2 |
WEB
|
Michael Scovetta
|
2004-02-23
|
|
XMB Forum 1.8 - 'forumdisplay.php' Multiple SQL Injections
|
2 |
WEB
|
Janek Vind
|
2004-02-23
|
|
XMB Forum 1.8 - BBcode align Tag Cross-Site Scripting
|
2 |
WEB
|
Janek Vind
|
2004-02-23
|
|
XMB Forum 1.8 - 'editprofile.php?user' Cross-Site Scripting
|
2 |
WEB
|
Janek Vind
|
2004-02-23
|
|
XMB Forum 1.8 - 'u2uadmin.php?uid' Cross-Site Scripting
|
2 |
WEB
|
Janek Vind
|
2004-02-23
|
|
EZBoard 7.3 - Font Tag HTML Injection
|
1 |
WEB
|
Cheng Peng Su
|
2004-02-23
|
|
phpNewsManager 1.36 - functions Script File Disclosure
|
2 |
WEB
|
G00db0y
|
2004-02-18
|
|
WebCortex WebStores2000 - 'error.asp' Cross-Site Scripting
|
2 |
WEB
|
Nick Gudov
|
2004-02-18
|
|
Fool's Workshop Owl's Workshop 1.0 - 'resultsignore.php' Arbitrary File Access
|
2 |
WEB
|
G00db0y
|
2004-02-18
|
|
Fool's Workshop Owl's Workshop 1.0 - 'readings/index.php' Arbitrary File Access
|
2 |
WEB
|
G00db0y
|
2004-02-18
|
|
Fool's Workshop Owl's Workshop 1.0 - '/glossaries/index.php?File' Arbitrary File Access
|
2 |
WEB
|
G00db0y
|
2004-02-18
|
|
Fool's Workshop Owl's Workshop 1.0 - 'newmultiplechoice.php' Arbitrary File Access
|
1 |
WEB
|
G00db0y
|
2004-02-18
|
|
Fool's Workshop Owl's Workshop 1.0 - 'glossary.php' Arbitrary File Access
|
1 |
WEB
|
G00db0y
|
2004-02-18
|
|
Fool's Workshop Owl's Workshop 1.0 - 'multiplechoice/index.php' Arbitrary File Access
|
1 |
WEB
|
G00db0y
|
2004-02-18
|
|
eCommerce Corporation Online Store Kit 3.0 - 'listing.php?id' SQL Injection
|
1 |
WEB
|
G00db0y
|
2004-02-18
|
|
eCommerce Corporation Online Store Kit 3.0 - 'shop_by_brand.php?cat_manufacturer' SQL Injection
|
1 |
WEB
|
G00db0y
|
2004-02-18
|
|
eCommerce Corporation Online Store Kit 3.0 - 'shop.php?cat' SQL Injection
|
1 |
WEB
|
G00db0y
|
2003-02-17
|
|
eCommerce Corporation Online Store Kit 3.0 - 'More.php' Cross-Site Scripting
|
1 |
WEB
|
David Sopas Ferreira
|
2003-02-17
|
|
eCommerce Corporation Online Store Kit 3.0 - 'More.php?id' SQL Injection
|
1 |
WEB
|
David Sopas Ferreira
|
2004-02-16
|
|
YABB SE 1.5 - 'Quote' SQL Injection
|
1 |
WEB
|
BaCkSpAcE
|
2004-02-16
|
|
ShopCartCGI 2.3 - genindexpage.cgi Traversal Arbitrary File Access
|
1 |
WEB
|
G00db0y
|
2004-02-16
|
|
ShopCartCGI 2.3 - 'gotopage.cgi' Traversal Arbitrary File Access
|
1 |
WEB
|
G00db0y
|
2004-02-16
|
|
ProductCart 1.x/2.x - 'Custva.asp?redirectUrl' Cross-Site Scripting
|
1 |
WEB
|
Nick Gudov
|
2004-02-16
|
|
ProductCart 1.x/2.x - 'advSearch_h.asp' Multiple SQL Injections
|
2 |
WEB
|
Nick Gudov
|
2004-02-16
|
|
ProductCart 1.x/2.x - Weak Cryptography
|
1 |
WEB
|
Nick Gudov
|
2004-02-16
|
|
AllMyLinks 0.x - 'footer.inc.php' Arbitrary Code Execution
|
1 |
WEB
|
Pablo Santana
|
2004-02-16
|
|
AllMyVisitors 0.x - 'info.inc.php' Arbitrary Code Execution
|
1 |
WEB
|
Pablo Santana
|
2004-02-16
|
|
AllMyGuests 0.x - 'info.inc.php' Arbitrary Code Execution
|
1 |
WEB
|
Pablo Santana
|
2004-02-01
|
|
ASP Portal - Multiple Vulnerabilities
|
0 |
WEB
|
Manuel Lopez
|
2004-02-13
|
|
vBulletin 3.0 - 'search.php' Cross-Site Scripting
|
1 |
WEB
|
Rafel Ivgi The-Insider
|
2004-02-12
|
|
vBulletin 1.0/1.1/2.0.x/2.2.x - Cross-Site Scripting
|
1 |
WEB
|
Jamie Fisher
|
2004-02-12
|
|
Macallan Mail Solution Macallan Mail Solution 2.8.4.6 (Build 260) - Web Interface Authentication Byp
|
1 |
WEB
|
Ziv Kamir
|
2004-02-11
|
|
BosDev BosDates 3.x - SQL Injection
|
2 |
WEB
|
G00db0y
|
2004-02-11
|
|
VisualShapers EZContents 1.x/2.0 - 'archivednews.php' Arbitrary File Inclusion
|
2 |
WEB
|
Cedric Cochin
|
2004-02-11
|
|
VisualShapers EZContents 1.x/2.0 - 'db.php' Arbitrary File Inclusion
|
2 |
WEB
|
Cedric Cochin
|
2003-12-23
|
|
PHP-Nuke 6.x - 'Category' SQL Injection
|
1 |
WEB
|
pokleyzz
|
2004-02-10
|
|
Maxwebportal 1.3x - Personal Message 'SendTo' Cross-Site Scripting
|
2 |
WEB
|
Manuel Lopez
|
2004-02-10
|
|
Maxwebportal 1.3x - 'down.asp' HTTP_REFERER Cross-Site Scripting
|
2 |
WEB
|
Manuel Lopez
|
2012-12-26
|
|
Guru Auction 2.0 - Multiple SQL Injections
|
2 |
WEB
|
v3n0m
|
2004-02-09
|
|
PHP-Nuke 6.x/7.x - Public Message SQL Injection
|
1 |
WEB
|
Janek Vind
|
2004-02-09
|
|
PHP-Nuke 6.x/7.x 'Reviews' Module - Cross-Site Scripting
|
2 |
WEB
|
Janek Vind
|
2004-02-09
|
|
PHP-Nuke 6.x/7.0 'News' Module - Cross-Site Scripting
|
2 |
WEB
|
Janek Vind
|
2004-02-06
|
|
OpenJournal 2.0 - Authentication Bypassing
|
2 |
WEB
|
Tri Huynh
|
2004-02-05
|
|
Mambo Open Source 4.6 - 'Itemid' Cross-Site Scripting
|
2 |
WEB
|
David Sopas Ferreira
|
2004-02-05
|
|
Discuz! 2.0/3.0 - Cross-Site Scripting
|
2 |
WEB
|
Cheng Peng Su
|
2004-02-04
|
|
RXGoogle.CGI 1.0/2.5 - Cross-Site Scripting
|
2 |
WEB
|
Shaun Colley
|
2004-02-04
|
|
All Enthusiast ReviewPost PHP Pro 2.5 - 'showcat.php' SQL Injection
|
1 |
WEB
|
G00db0y
|
2004-02-04
|
|
All Enthusiast ReviewPost PHP Pro 2.5 - 'showproduct.php' SQL Injection
|
1 |
WEB
|
G00db0y
|
2004-02-03
|
|
PHPX 3.2.3 - Multiple Vulnerabilities
|
1 |
WEB
|
Manuel L?pez
|
2004-02-03
|
|
phpMyAdmin 2.x - 'Export.php' File Disclosure
|
2 |
WEB
|
Cedric Cochin
|
2004-02-03
|
|
Qualiteam X-Cart 3.x - Multiple Remote Information Disclosure Vulnerabilities
|
2 |
WEB
|
Philip
|
2004-02-03
|
|
Qualiteam X-Cart 3.x - 'upgrade.php?perl_binary' Arbitrary Command Execution
|
2 |
WEB
|
Philip
|
2004-02-03
|
|
Qualiteam X-Cart 3.x - 'general.php?perl_binary' Arbitrary Command Execution
|
2 |
WEB
|
Philip
|
2004-02-02
|
|
Niti Telecom Caravan Business Server 2.00-03D - Directory Traversal
|
2 |
WEB
|
dr_insane
|
2004-02-02
|
|
PHP-Nuke 6.x (Multiple Modules) - SQL Injection
|
1 |
WEB
|
Security Corporation
|
2004-01-31
|
|
Aprox Portal 3.0 - File Disclosure
|
2 |
WEB
|
Zero X
|
2004-01-31
|
|
Leif M. Wright Web Blog 1.1 - Remote Command Execution
|
2 |
WEB
|
ActualMInd
|
2004-01-30
|
|
JBrowser 1.0/2.x - Unauthorized Admin Access
|
1 |
WEB
|
Himeur Nourredine
|
2012-12-24
|
|
MyBB AwayList Plugin - 'index.php?id' SQL Injection
|
2 |
WEB
|
Red_Hat
|
2012-12-24
|
|
MyBB HM My Country Flags - SQL Injection
|
3 |
WEB
|
JoinSe7en
|
2012-12-24
|
|
City Directory Review and Rating Script - 'search.php' SQL Injection
|
2 |
WEB
|
3spi0n
|
2004-01-30
|
|
Laurent Adda Les Commentaires 2.0 - PHP Script 'admin.php' Remote File Inclusion
|
2 |
WEB
|
Himeur Nourredine
|
2004-01-30
|
|
Laurent Adda Les Commentaires 2.0 - PHP Script 'derniers_commentaires.php' Remote File Inclusion
|
2 |
WEB
|
Himeur Nourredine
|
2004-01-30
|
|
Laurent Adda Les Commentaires 2.0 - PHP Script 'fonctions.lib.php' Remote File Inclusion
|
2 |
WEB
|
Himeur Nourredine
|
2004-01-30
|
|
JBrowser 1.0/2.x - 'browser.php' Directory Traversal
|
1 |
WEB
|
Himeur Nourredine
|
2004-01-30
|
|
PHPGedView 2.x - '[GED_File]_conf.php' Remote File Inclusion
|
2 |
WEB
|
Cedric Cochin
|
2004-01-30
|
|
PHPGedView 2.x - 'Editconfig_gedcom.php' Directory Traversal
|
2 |
WEB
|
Cedric Cochin
|
2004-01-29
|
|
PJ CGI Neo Review - Directory Traversal
|
2 |
WEB
|
Zone-h Security Team
|
2004-01-20
|
|
Leif M. Wright Web Blog 1.1 - File Disclosure
|
1 |
WEB
|
Zone-h Security Team
|
2004-01-26
|
|
Kietu 2/3 - 'index.php' Remote File Inclusion
|
1 |
WEB
|
Himeur Nourredine
|
2004-01-26
|
|
Xoops 2.0.x - 'viewtopic.php' Cross-Site Scripting
|
0 |
WEB
|
Ben Drysdale
|
2004-01-26
|
|
Gallery 1.3.x/1.4 - Remote Global Variable Injection
|
1 |
WEB
|
Bharat Mediratta
|
2012-12-21
|
|
Elite Bulletin Board 2.1.21 - Multiple SQL Injections
|
2 |
WEB
|
High-Tech Bridge SA
|
2012-12-21
|
|
banana dance b.2.6 - Multiple Vulnerabilities
|
2 |
WEB
|
High-Tech Bridge SA
|
2012-12-21
|
|
YeaLink IP Phone SIP-TxxP Firmware 9.70.0.100 - Multiple Vulnerabilities
|
2 |
WEB
|
xistence
|
2012-12-21
|
|
SelectSurvey CMS - 'ASP.NET' Arbitrary File Upload
|
1 |
WEB
|
040
|
2004-01-20
|
|
DUware Software - Multiple Vulnerabilities
|
1 |
WEB
|
Security Corporation
|
2004-01-20
|
|
PHPix 2.0.3 - Arbitrary Command Execution
|
1 |
WEB
|
Max Stepanov
|
2004-01-19
|
|
YABB SE 1.x - 'SSI.php' ID_MEMBER SQL Injection
|
1 |
WEB
|
BaCkSpAcE
|
2004-01-19
|
|
Mambo Open Source 4.5/4.6 - 'mod_mainmenu.php' Remote File Inclusion
|
1 |
WEB
|
Yo_Soy
|
2004-01-16
|
|
MetaDot Portal Server 5.6.x - 'userchannel.pl?op' Cross-Site Scripting
|
1 |
WEB
|
JeiAr
|
2004-01-16
|
|
MetaDot Portal Server 5.6.x - 'index.pl' Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
JeiAr
|
2004-01-16
|
|
MetaDot Portal Server 5.6.x - index.pl Information Disclosure
|
1 |
WEB
|
JeiAr
|