Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2012-11-19   WeBid 1.0.5 - Cross-Site Scripting 2 WEB Woody Hughes
2003-06-23   VisNetic WebMail 5.8.6 .6 - Information Disclosure 2 WEB posidron
2003-06-23   XMB Forum 1.8 - 'buddy.php?action' Cross-Site Scripting 2 WEB Knight Commander
2003-06-23   XMB Forum 1.8 - 'member.php?member' Cross-Site Scripting 2 WEB Knight Commander
2003-06-20   Tutos 1.1 - File_New Arbitrary File Upload 2 WEB François SORIN
2003-06-20   Tutos 1.1 - 'File_Select.php' Cross-Site Scripting 2 WEB François SORIN
2003-06-20   WebJeff FileManager 1.6 - File Disclosure 2 WEB Adam Stephens
2003-06-19   pMachine 1.0/2.x - Search Module Cross-Site Scripting 2 WEB Lorenzo Hernandez Garcia-Hierro
2003-06-19   pMachine 1.0/2.x - Multiple Script 'sfx' Full Path Disclosures 2 WEB Lorenzo Hernandez Garcia-Hierro
2003-06-19   pMachine 1.0/2.x - '/lib/' Multiple Script Direct Request Full Path Disclosures 2 WEB Lorenzo Hernandez Garcia-Hierro
2003-06-17   Tmax Soft JEUS 3.1.4 p1 - URL.jsp Cross-Site Scripting 2 WEB Jeremy Bae
2003-06-18   Kerio MailServer 5.6.3 - Web Mail DO_MAP Module Cross-Site Scripting 1 WEB David F.Madrid
2003-06-18   Kerio MailServer 5.6.3 - Web Mail ADD_ACL Module Cross-Site Scripting 2 WEB David F.Madrid
2003-06-18   phpMyAdmin 2.x - Information Disclosure 2 WEB Lorenzo Manuel Hernandez Garcia-Hierro
2003-06-17   SquirrelMail 1.2.11 - Multiple Vulnerabilities 2 WEB dr_insane
2003-06-17   SquirrelMail 1.2.11 Administrator Plugin - 'options.php' Arbitrary Admin Account Creation 2 WEB dr_insane
2003-06-17   SquirrelMail 1.2.11 - 'move_messages.php' Arbitrary File Moving 1 WEB dr_insane
2003-06-16   Snitz Forums 2000 3.4.03 - 'search.asp' Cross-Site Scripting 2 WEB JeiAr
2003-06-16   LedNews 0.7 Post Script - Code Injection 2 WEB gilbert vilvoorde
2003-06-15   PMachine 2.2.1 - '/Lib.Inc.php' Remote File Inclusion / Command Execution 1 WEB frog
2003-06-12   Infinity CGI Exploit Scanner 3.11 - Remote Command Execution 2 WEB badpack3t
2003-06-12   Infinity CGI Exploit Scanner 3.11 - Cross-Site Scripting 2 WEB badpack3t
2003-06-13   PostNuke 0.723 - 'user.php' UNAME Cross-Site Scripting 2 WEB David F. Madrid
2012-11-16   friendsinwar FAQ Manager - 'view_faq.php?question' SQL Injection 1 WEB unsuprise
2003-06-13   Sphera HostingDirector 1.0/2.0/3.0 VDS Control Panel - Multiple Cross-Site Scripting Vulnerabilities 2 WEB Lorenzo Hernandez Garcia-Hierro
2003-06-13   PostNuke 0.723 - Multiple Cross-Site Scripting Vulnerabilities 1 WEB David F. Madrid
2003-06-13   Sphera HostingDirector 1.0/2.0/3.0 - VDS Control Panel Account Configuration Modification 2 WEB Lorenzo Hernandez Garcia-Hierro
2003-06-09   H-Sphere 2.x - HTML Template Inclusion Cross-Site Scripting 2 WEB Lorenzo Hernandez Garcia-Hierro
2003-06-06   Zentrack 2.2/2.3/2.4 - 'index.php' Remote File Inclusion 2 WEB farking
2003-06-06   Maxwebportal 1.30 - Remote Database Disclosure 2 WEB JeiAr
2003-06-06   Maxwebportal 1.30 - 'search.asp?Search' Cross-Site Scripting 2 WEB JeiAr
2003-06-06   Synkron.Web 3.0 - HTML Injection 1 WEB Gyrniff
2003-06-05   ImageFolio 2.2x/3.0/3.1 - 'Admin.cgi' Directory Traversal 1 WEB Paul Craig
2012-11-15   ReciPHP 1.1 - SQL Injection 2 WEB cr4wl3r
2012-11-15   BabyGekko 1.2.2e - Multiple Vulnerabilities 2 WEB High-Tech Bridge SA
2012-11-15   Friends in War Make or Break 1.3 - Authentication Bypass 3 WEB d3b4g
2012-11-15   iDev Rentals 1.0 - Multiple Vulnerabilities 1 WEB Vulnerability-Lab
2003-06-04   Mailtraq 2.2 - Webmail Utility Full Path Disclosure 2 WEB Ziv Kamir
2003-06-04   Mailtraq 2.2 - 'Browse.asp' Cross-Site Scripting 2 WEB Ziv Kamir
2002-10-12   PHP 4 - 'PHPInfo()' Cross-Site Scripting 2 WEB Matthew Murphy
2003-06-04   Xpressions Interactive - Multiple SQL Injections 2 WEB Paul Craig
2003-06-02   SPChat 0.8 Module - Remote File Inclusion 2 WEB Rynho Zeros Web
2003-06-02   WebChat 2.0 - 'users.php' Cross-Site Scripting 2 WEB Rynho Zeros Web
2003-06-02   WebChat 2.0 - 'users.php?Database Username Disclosure 2 WEB Rynho Zeros Web
2012-11-14   MYRE Realty Manager - Multiple Vulnerabilities 2 WEB d3b4g
2012-11-14   MYREphp Vacation Rental Software - Multiple Vulnerabilities 2 WEB d3b4g
2012-11-14   Myrephp Business Directory - Multiple Vulnerabilities 2 WEB d3b4g
2012-11-14   friendsinwar FAQ Manager - SQL Injection / Authentication Bypass 2 WEB d3b4g
2012-11-14   Narcissus - Remote Command Execution 2 WEB dun
2012-11-14   dotProject 2.1.6 - Remote File Inclusion 2 WEB dun
2003-06-02   Webfroot Shoutbox 2.32 - 'Expanded.php' Directory Traversal 2 WEB _6mO_HaCk
2003-06-02   Webchat 2.0 Module - Full Path Disclosure 2 WEB Rynho Zeros Web
2003-06-02   Webfroot Shoutbox 2.32 - 'Expanded.php' Remote Command Execution 2 WEB _6mO_HaCk
2003-05-31   WebCortex WebStores2000 - SQL Injection 1 WEB Bosen
2003-05-31   iisCart2000 - Arbitrary File Upload 1 WEB Bosen
2003-05-30   cPanel 5/6 / Formail-Clone - E-Mail Restriction Bypass 2 WEB Chad C. Keep
2003-05-29   Zeus Web Server 4.x - Admin Interface 'VS_Diag.cgi' Cross-Site Scripting 0 WEB Hugo Vazquez
2003-05-29   M-TECH P-Synch 6.2.5 - 'nph-psa.exe?css' Remote File Inclusion 2 WEB JeiAr
2003-05-29   M-TECH P-Synch 6.2.5 - 'nph-psf.exe?css' Remote File Inclusion 2 WEB JeiAr
2003-05-29   Webfroot Shoutbox 2.32 - Remote Command Execution 1 WEB pokleyzz
2012-11-13   Eventy CMS 1.8 Plus - Multiple Vulnerabilities 2 WEB Vulnerability-Lab
2003-05-29   Geeklog 1.3.x - (Authenticated) SQL Injection 2 WEB pokleyzz
2003-05-29   philboard 1.14 - 'philboard_admin.asp' Authentication Bypass 2 WEB aresu@bosen.net
2003-05-29   Cafelog b2 0.6 - Remote File Inclusion 1 WEB pokleyzz
2003-05-29   Webfroot Shoutbox 2.32 - 'URI' File Disclosure 2 WEB pokleyzz
2003-05-28   Bandmin 1.4 - Cross-Site Scripting 2 WEB silent needel
2003-05-27   Newsscript 1.0 - Administrative Privilege Escalation 2 WEB Peter Winter-Smith
2012-11-12   vBulletin vBay 1.1.9 - Error-Based SQL Injection 3 WEB Dan UK
2012-11-12   Bananadance Wiki b2.2 - Multiple Vulnerabilities 2 WEB Vulnerability-Lab
2003-05-26   PostNuke 0.72x Phoenix Glossary Module - SQL Injection 2 WEB Lorenzo Manuel Hernandez Garcia-Hierro
2003-05-24   Ultimate PHP Board 1.9 - 'admin_iplog.php' Arbitrary PHP Execution 2 WEB euronymous
2003-05-24   BLNews 2.1.3 - Remote File Inclusion 2 WEB Over_G
2003-05-23   IISProtect 2.1/2.2 - Web Administration Interface SQL Injection 1 WEB Gyrniff
2003-06-22   XMB Forum 1.8 - 'member.php' Cross-Site Scripting 2 WEB Marc Ruef
2003-05-21   SudBox Boutique 1.2 - 'login.php' Authentication Bypass 2 WEB frog
2003-05-20   ttCMS 2.2/2.3 / ttForum 1.1 - 'index.php' Instant-Messages Preferences SQL Injection 2 WEB ScriptSlave@gmx.net
2003-05-17   ttCMS 2.2/2.3 - 'header.php' Remote File Inclusion 2 WEB ScriptSlave@gmx.net
2003-05-16   EZ Publish 2.2 - 'index.php' IMG Tag Cross-Site Scripting 2 WEB Ferruh Mavituna
2003-05-15   OneOrZero Helpdesk 1.4 - 'install.php' Administrative Access 2 WEB frog
2003-05-15   OneOrZero Helpdesk 1.4 - 'TUpdate.php' SQL Injection 1 WEB frog
2003-05-14   PHP-Proxima - 'autohtml.php' Information Disclosure 2 WEB Mind Warper
2003-05-14   Owl Intranet Engine 0.7 - Authentication Bypass 1 WEB cdowns
2003-05-14   vBulletin 3.0 - Private Message HTML Injection 2 WEB Ferruh Mavituna
2003-05-13   PHP-Nuke 6.0/6.5 Web_Links Module - Full Path Disclosure 2 WEB Rynho Zeros Web
2003-05-13   PHP-Nuke 6.5 (Multiple Downloads Module) - SQL Injection 1 WEB Albert Puigsech Galicia
2003-05-13   PHP-Nuke 6.5 - 'modules.php?Username' Cross-Site Scripting 1 WEB Ferruh Mavituna
2003-05-12   Happymall E-Commerce Software 4.3/4.4 - 'Normal_HTML.cgi' File Disclosure 2 WEB Julio Cesar
2012-11-09   NetOffice Dwins 1.4p3 - SQL Injection 2 WEB dun
2003-05-12   PHP-Nuke 5.x/6.x Web_Links Module - SQL Injection 2 WEB Albert Puigsech Galicia
2003-05-12   Happymall E-Commerce Software 4.3/4.4 - 'Normal_HTML.cgi' Cross-Site Scripting 2 WEB Julio Cesar
2003-05-10   Snitz Forums 2000 - 'register.asp' SQL Injection 2 WEB sharpiemarker
2003-05-09   Phorum 3.4.x - 'Message Form' HTML Injection 2 WEB WiciU
2003-05-09   ttCMS 2.2 / ttForum 1.1 - 'install.php?installdir' Remote File Inclusion 0 WEB Charles Reinold
2003-05-09   ttCMS 2.2 / ttForum 1.1 - 'news.php?template' Remote File Inclusion 3 WEB Charles Reinold
2003-05-08   HappyMall E-Commerce Software 4.3/4.4 - 'Member_HTML.cgi' Command Execution 2 WEB Revin Aldi
2003-05-07   HappyMall E-Commerce Software 4.3/4.4 - 'Normal_HTML.cgi' Command Execution 2 WEB Revin Aldi
2003-05-01   Stockman Shopping Cart 7.8 - Arbitrary Command Execution 1 WEB Aleksey Sintsov
2003-05-01   PHP-Nuke Splatt Forum 4.0 Module - HTML Injection 1 WEB Morning Wood
2003-05-01   PHP-Nuke Splatt Forum 4.0 Module - Cross-Site Scripting 1 WEB Morning Wood
2003-04-30   Microsoft BizTalk Server 2000/2002 DTA - 'RawCustomSearchField.asp' SQL Injection 1 WEB Cesar Cerrudo
2003-04-30   Microsoft BizTalk Server 2000/2002 DTA - 'rawdocdata.asp' SQL Injection 1 WEB Cesar Cerrudo
2012-11-07   AVerCaster Pro RS3400 Web Server - Directory Traversal 1 WEB Patrick Saladino
2012-11-07   Xivo 1.2 - Arbitrary File Download 2 WEB Mr.Un1k0d3r
2012-11-07   Invision Power Board (IP.Board) 3.3.4 - Unserialize Regex Bypass 2 WEB webDEViL
2003-04-26   Mike Bobbitt Album.PL 0.61 - Remote Command Execution 1 WEB aresu@bosen.net
2003-04-26   Macromedia ColdFusion MX 6.0 - Error Message Full Path Disclosure 2 WEB Network Intelligence
2003-04-25   Onecenter Forum 4.0 - IMG Tag Script Injection 2 WEB David F. Madrid
2003-04-25   Xoops 1.3.x/2.0 MyTextSanitizer - HTML Injection 2 WEB magistrat
2003-04-25   Truegalerie 1.0 - Unauthorized Administrative Access 3 WEB frog
2003-04-23   Battleaxe Software BTTLXE Forum - 'login.asp' SQL Injection 2 WEB Du|L
2012-11-06   ZenPhoto 1.4.3.3 - Multiple Vulnerabilities 2 WEB waraxe
2003-04-22   XMB Forum 1.8 - 'member.php' SQL Injection 2 WEB zeez@bbugs.org
2003-04-22   OpenBB 1.0/1.1 - 'member.php' SQL Injection 1 WEB Albert Puigsech Galicia
2003-04-22   OpenBB 1.0/1.1 - 'board.php' SQL Injection 2 WEB Albert Puigsech Galicia
2003-04-22   OpenBB 1.0/1.1 - 'index.php' SQL Injection 2 WEB Albert Puigsech Galicia
2003-04-21   MPCSoftWeb 1.0 - Database Disclosure 2 WEB drG4njubas
2003-04-17   Web Wiz Forum 6.34 - Information Disclosure 1 WEB Uziel aka nuJIurpuM
2003-03-31   Xonic.ru News 1.0 - 'script.php' Remote Command Execution 1 WEB DWC Gr0up
2003-05-05   IkonBoard 3.1 - Lang Cookie Arbitrary Command Execution (2) 1 WEB snooq
2003-04-15   IkonBoard 3.1 - Lang Cookie Arbitrary Command Execution (1) 1 WEB Nick Cleaton
2003-04-15   osCommerce 2.2 - Authentication Bypass 0 WEB Lorenzo Hernandez Garcia-Hierro
2012-11-05   CheckPoint/Sofaware Firewall - Multiple Vulnerabilities 2 WEB Procheckup
2003-04-15   EZ Publish 2.2.7/3.0 - Multiple Full Path Disclosure Vulnerabilities 2 WEB gregory Le Bras
2003-04-15   EZ Publish 2.2.7/3.0 - Multiple Cross-Site Scripting Vulnerabilities 2 WEB gregory Le Bras
2012-11-05   ZPanel 10.0.1 - Cross-Site Request Forgery / Cross-Site Scripting / SQL Injection / Password Reset 2 WEB pcsjj