2012-11-19
|
|
WeBid 1.0.5 - Cross-Site Scripting
|
2 |
WEB
|
Woody Hughes
|
2003-06-23
|
|
VisNetic WebMail 5.8.6 .6 - Information Disclosure
|
2 |
WEB
|
posidron
|
2003-06-23
|
|
XMB Forum 1.8 - 'buddy.php?action' Cross-Site Scripting
|
2 |
WEB
|
Knight Commander
|
2003-06-23
|
|
XMB Forum 1.8 - 'member.php?member' Cross-Site Scripting
|
2 |
WEB
|
Knight Commander
|
2003-06-20
|
|
Tutos 1.1 - File_New Arbitrary File Upload
|
2 |
WEB
|
François SORIN
|
2003-06-20
|
|
Tutos 1.1 - 'File_Select.php' Cross-Site Scripting
|
2 |
WEB
|
François SORIN
|
2003-06-20
|
|
WebJeff FileManager 1.6 - File Disclosure
|
2 |
WEB
|
Adam Stephens
|
2003-06-19
|
|
pMachine 1.0/2.x - Search Module Cross-Site Scripting
|
2 |
WEB
|
Lorenzo Hernandez Garcia-Hierro
|
2003-06-19
|
|
pMachine 1.0/2.x - Multiple Script 'sfx' Full Path Disclosures
|
2 |
WEB
|
Lorenzo Hernandez Garcia-Hierro
|
2003-06-19
|
|
pMachine 1.0/2.x - '/lib/' Multiple Script Direct Request Full Path Disclosures
|
2 |
WEB
|
Lorenzo Hernandez Garcia-Hierro
|
2003-06-17
|
|
Tmax Soft JEUS 3.1.4 p1 - URL.jsp Cross-Site Scripting
|
2 |
WEB
|
Jeremy Bae
|
2003-06-18
|
|
Kerio MailServer 5.6.3 - Web Mail DO_MAP Module Cross-Site Scripting
|
1 |
WEB
|
David F.Madrid
|
2003-06-18
|
|
Kerio MailServer 5.6.3 - Web Mail ADD_ACL Module Cross-Site Scripting
|
2 |
WEB
|
David F.Madrid
|
2003-06-18
|
|
phpMyAdmin 2.x - Information Disclosure
|
2 |
WEB
|
Lorenzo Manuel Hernandez Garcia-Hierro
|
2003-06-17
|
|
SquirrelMail 1.2.11 - Multiple Vulnerabilities
|
2 |
WEB
|
dr_insane
|
2003-06-17
|
|
SquirrelMail 1.2.11 Administrator Plugin - 'options.php' Arbitrary Admin Account Creation
|
2 |
WEB
|
dr_insane
|
2003-06-17
|
|
SquirrelMail 1.2.11 - 'move_messages.php' Arbitrary File Moving
|
1 |
WEB
|
dr_insane
|
2003-06-16
|
|
Snitz Forums 2000 3.4.03 - 'search.asp' Cross-Site Scripting
|
2 |
WEB
|
JeiAr
|
2003-06-16
|
|
LedNews 0.7 Post Script - Code Injection
|
2 |
WEB
|
gilbert vilvoorde
|
2003-06-15
|
|
PMachine 2.2.1 - '/Lib.Inc.php' Remote File Inclusion / Command Execution
|
1 |
WEB
|
frog
|
2003-06-12
|
|
Infinity CGI Exploit Scanner 3.11 - Remote Command Execution
|
2 |
WEB
|
badpack3t
|
2003-06-12
|
|
Infinity CGI Exploit Scanner 3.11 - Cross-Site Scripting
|
2 |
WEB
|
badpack3t
|
2003-06-13
|
|
PostNuke 0.723 - 'user.php' UNAME Cross-Site Scripting
|
2 |
WEB
|
David F. Madrid
|
2012-11-16
|
|
friendsinwar FAQ Manager - 'view_faq.php?question' SQL Injection
|
1 |
WEB
|
unsuprise
|
2003-06-13
|
|
Sphera HostingDirector 1.0/2.0/3.0 VDS Control Panel - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Lorenzo Hernandez Garcia-Hierro
|
2003-06-13
|
|
PostNuke 0.723 - Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
David F. Madrid
|
2003-06-13
|
|
Sphera HostingDirector 1.0/2.0/3.0 - VDS Control Panel Account Configuration Modification
|
2 |
WEB
|
Lorenzo Hernandez Garcia-Hierro
|
2003-06-09
|
|
H-Sphere 2.x - HTML Template Inclusion Cross-Site Scripting
|
2 |
WEB
|
Lorenzo Hernandez Garcia-Hierro
|
2003-06-06
|
|
Zentrack 2.2/2.3/2.4 - 'index.php' Remote File Inclusion
|
2 |
WEB
|
farking
|
2003-06-06
|
|
Maxwebportal 1.30 - Remote Database Disclosure
|
2 |
WEB
|
JeiAr
|
2003-06-06
|
|
Maxwebportal 1.30 - 'search.asp?Search' Cross-Site Scripting
|
2 |
WEB
|
JeiAr
|
2003-06-06
|
|
Synkron.Web 3.0 - HTML Injection
|
1 |
WEB
|
Gyrniff
|
2003-06-05
|
|
ImageFolio 2.2x/3.0/3.1 - 'Admin.cgi' Directory Traversal
|
1 |
WEB
|
Paul Craig
|
2012-11-15
|
|
ReciPHP 1.1 - SQL Injection
|
2 |
WEB
|
cr4wl3r
|
2012-11-15
|
|
BabyGekko 1.2.2e - Multiple Vulnerabilities
|
2 |
WEB
|
High-Tech Bridge SA
|
2012-11-15
|
|
Friends in War Make or Break 1.3 - Authentication Bypass
|
3 |
WEB
|
d3b4g
|
2012-11-15
|
|
iDev Rentals 1.0 - Multiple Vulnerabilities
|
1 |
WEB
|
Vulnerability-Lab
|
2003-06-04
|
|
Mailtraq 2.2 - Webmail Utility Full Path Disclosure
|
2 |
WEB
|
Ziv Kamir
|
2003-06-04
|
|
Mailtraq 2.2 - 'Browse.asp' Cross-Site Scripting
|
2 |
WEB
|
Ziv Kamir
|
2002-10-12
|
|
PHP 4 - 'PHPInfo()' Cross-Site Scripting
|
2 |
WEB
|
Matthew Murphy
|
2003-06-04
|
|
Xpressions Interactive - Multiple SQL Injections
|
2 |
WEB
|
Paul Craig
|
2003-06-02
|
|
SPChat 0.8 Module - Remote File Inclusion
|
2 |
WEB
|
Rynho Zeros Web
|
2003-06-02
|
|
WebChat 2.0 - 'users.php' Cross-Site Scripting
|
2 |
WEB
|
Rynho Zeros Web
|
2003-06-02
|
|
WebChat 2.0 - 'users.php?Database Username Disclosure
|
2 |
WEB
|
Rynho Zeros Web
|
2012-11-14
|
|
MYRE Realty Manager - Multiple Vulnerabilities
|
2 |
WEB
|
d3b4g
|
2012-11-14
|
|
MYREphp Vacation Rental Software - Multiple Vulnerabilities
|
2 |
WEB
|
d3b4g
|
2012-11-14
|
|
Myrephp Business Directory - Multiple Vulnerabilities
|
2 |
WEB
|
d3b4g
|
2012-11-14
|
|
friendsinwar FAQ Manager - SQL Injection / Authentication Bypass
|
2 |
WEB
|
d3b4g
|
2012-11-14
|
|
Narcissus - Remote Command Execution
|
2 |
WEB
|
dun
|
2012-11-14
|
|
dotProject 2.1.6 - Remote File Inclusion
|
2 |
WEB
|
dun
|
2003-06-02
|
|
Webfroot Shoutbox 2.32 - 'Expanded.php' Directory Traversal
|
2 |
WEB
|
_6mO_HaCk
|
2003-06-02
|
|
Webchat 2.0 Module - Full Path Disclosure
|
2 |
WEB
|
Rynho Zeros Web
|
2003-06-02
|
|
Webfroot Shoutbox 2.32 - 'Expanded.php' Remote Command Execution
|
2 |
WEB
|
_6mO_HaCk
|
2003-05-31
|
|
WebCortex WebStores2000 - SQL Injection
|
1 |
WEB
|
Bosen
|
2003-05-31
|
|
iisCart2000 - Arbitrary File Upload
|
1 |
WEB
|
Bosen
|
2003-05-30
|
|
cPanel 5/6 / Formail-Clone - E-Mail Restriction Bypass
|
2 |
WEB
|
Chad C. Keep
|
2003-05-29
|
|
Zeus Web Server 4.x - Admin Interface 'VS_Diag.cgi' Cross-Site Scripting
|
0 |
WEB
|
Hugo Vazquez
|
2003-05-29
|
|
M-TECH P-Synch 6.2.5 - 'nph-psa.exe?css' Remote File Inclusion
|
2 |
WEB
|
JeiAr
|
2003-05-29
|
|
M-TECH P-Synch 6.2.5 - 'nph-psf.exe?css' Remote File Inclusion
|
2 |
WEB
|
JeiAr
|
2003-05-29
|
|
Webfroot Shoutbox 2.32 - Remote Command Execution
|
1 |
WEB
|
pokleyzz
|
2012-11-13
|
|
Eventy CMS 1.8 Plus - Multiple Vulnerabilities
|
2 |
WEB
|
Vulnerability-Lab
|
2003-05-29
|
|
Geeklog 1.3.x - (Authenticated) SQL Injection
|
2 |
WEB
|
pokleyzz
|
2003-05-29
|
|
philboard 1.14 - 'philboard_admin.asp' Authentication Bypass
|
2 |
WEB
|
aresu@bosen.net
|
2003-05-29
|
|
Cafelog b2 0.6 - Remote File Inclusion
|
1 |
WEB
|
pokleyzz
|
2003-05-29
|
|
Webfroot Shoutbox 2.32 - 'URI' File Disclosure
|
2 |
WEB
|
pokleyzz
|
2003-05-28
|
|
Bandmin 1.4 - Cross-Site Scripting
|
2 |
WEB
|
silent needel
|
2003-05-27
|
|
Newsscript 1.0 - Administrative Privilege Escalation
|
2 |
WEB
|
Peter Winter-Smith
|
2012-11-12
|
|
vBulletin vBay 1.1.9 - Error-Based SQL Injection
|
3 |
WEB
|
Dan UK
|
2012-11-12
|
|
Bananadance Wiki b2.2 - Multiple Vulnerabilities
|
2 |
WEB
|
Vulnerability-Lab
|
2003-05-26
|
|
PostNuke 0.72x Phoenix Glossary Module - SQL Injection
|
2 |
WEB
|
Lorenzo Manuel Hernandez Garcia-Hierro
|
2003-05-24
|
|
Ultimate PHP Board 1.9 - 'admin_iplog.php' Arbitrary PHP Execution
|
2 |
WEB
|
euronymous
|
2003-05-24
|
|
BLNews 2.1.3 - Remote File Inclusion
|
2 |
WEB
|
Over_G
|
2003-05-23
|
|
IISProtect 2.1/2.2 - Web Administration Interface SQL Injection
|
1 |
WEB
|
Gyrniff
|
2003-06-22
|
|
XMB Forum 1.8 - 'member.php' Cross-Site Scripting
|
2 |
WEB
|
Marc Ruef
|
2003-05-21
|
|
SudBox Boutique 1.2 - 'login.php' Authentication Bypass
|
2 |
WEB
|
frog
|
2003-05-20
|
|
ttCMS 2.2/2.3 / ttForum 1.1 - 'index.php' Instant-Messages Preferences SQL Injection
|
2 |
WEB
|
ScriptSlave@gmx.net
|
2003-05-17
|
|
ttCMS 2.2/2.3 - 'header.php' Remote File Inclusion
|
2 |
WEB
|
ScriptSlave@gmx.net
|
2003-05-16
|
|
EZ Publish 2.2 - 'index.php' IMG Tag Cross-Site Scripting
|
2 |
WEB
|
Ferruh Mavituna
|
2003-05-15
|
|
OneOrZero Helpdesk 1.4 - 'install.php' Administrative Access
|
2 |
WEB
|
frog
|
2003-05-15
|
|
OneOrZero Helpdesk 1.4 - 'TUpdate.php' SQL Injection
|
1 |
WEB
|
frog
|
2003-05-14
|
|
PHP-Proxima - 'autohtml.php' Information Disclosure
|
2 |
WEB
|
Mind Warper
|
2003-05-14
|
|
Owl Intranet Engine 0.7 - Authentication Bypass
|
1 |
WEB
|
cdowns
|
2003-05-14
|
|
vBulletin 3.0 - Private Message HTML Injection
|
2 |
WEB
|
Ferruh Mavituna
|
2003-05-13
|
|
PHP-Nuke 6.0/6.5 Web_Links Module - Full Path Disclosure
|
2 |
WEB
|
Rynho Zeros Web
|
2003-05-13
|
|
PHP-Nuke 6.5 (Multiple Downloads Module) - SQL Injection
|
1 |
WEB
|
Albert Puigsech Galicia
|
2003-05-13
|
|
PHP-Nuke 6.5 - 'modules.php?Username' Cross-Site Scripting
|
1 |
WEB
|
Ferruh Mavituna
|
2003-05-12
|
|
Happymall E-Commerce Software 4.3/4.4 - 'Normal_HTML.cgi' File Disclosure
|
2 |
WEB
|
Julio Cesar
|
2012-11-09
|
|
NetOffice Dwins 1.4p3 - SQL Injection
|
2 |
WEB
|
dun
|
2003-05-12
|
|
PHP-Nuke 5.x/6.x Web_Links Module - SQL Injection
|
2 |
WEB
|
Albert Puigsech Galicia
|
2003-05-12
|
|
Happymall E-Commerce Software 4.3/4.4 - 'Normal_HTML.cgi' Cross-Site Scripting
|
2 |
WEB
|
Julio Cesar
|
2003-05-10
|
|
Snitz Forums 2000 - 'register.asp' SQL Injection
|
2 |
WEB
|
sharpiemarker
|
2003-05-09
|
|
Phorum 3.4.x - 'Message Form' HTML Injection
|
2 |
WEB
|
WiciU
|
2003-05-09
|
|
ttCMS 2.2 / ttForum 1.1 - 'install.php?installdir' Remote File Inclusion
|
0 |
WEB
|
Charles Reinold
|
2003-05-09
|
|
ttCMS 2.2 / ttForum 1.1 - 'news.php?template' Remote File Inclusion
|
3 |
WEB
|
Charles Reinold
|
2003-05-08
|
|
HappyMall E-Commerce Software 4.3/4.4 - 'Member_HTML.cgi' Command Execution
|
2 |
WEB
|
Revin Aldi
|
2003-05-07
|
|
HappyMall E-Commerce Software 4.3/4.4 - 'Normal_HTML.cgi' Command Execution
|
2 |
WEB
|
Revin Aldi
|
2003-05-01
|
|
Stockman Shopping Cart 7.8 - Arbitrary Command Execution
|
1 |
WEB
|
Aleksey Sintsov
|
2003-05-01
|
|
PHP-Nuke Splatt Forum 4.0 Module - HTML Injection
|
1 |
WEB
|
Morning Wood
|
2003-05-01
|
|
PHP-Nuke Splatt Forum 4.0 Module - Cross-Site Scripting
|
1 |
WEB
|
Morning Wood
|
2003-04-30
|
|
Microsoft BizTalk Server 2000/2002 DTA - 'RawCustomSearchField.asp' SQL Injection
|
1 |
WEB
|
Cesar Cerrudo
|
2003-04-30
|
|
Microsoft BizTalk Server 2000/2002 DTA - 'rawdocdata.asp' SQL Injection
|
1 |
WEB
|
Cesar Cerrudo
|
2012-11-07
|
|
AVerCaster Pro RS3400 Web Server - Directory Traversal
|
1 |
WEB
|
Patrick Saladino
|
2012-11-07
|
|
Xivo 1.2 - Arbitrary File Download
|
2 |
WEB
|
Mr.Un1k0d3r
|
2012-11-07
|
|
Invision Power Board (IP.Board) 3.3.4 - Unserialize Regex Bypass
|
2 |
WEB
|
webDEViL
|
2003-04-26
|
|
Mike Bobbitt Album.PL 0.61 - Remote Command Execution
|
1 |
WEB
|
aresu@bosen.net
|
2003-04-26
|
|
Macromedia ColdFusion MX 6.0 - Error Message Full Path Disclosure
|
2 |
WEB
|
Network Intelligence
|
2003-04-25
|
|
Onecenter Forum 4.0 - IMG Tag Script Injection
|
2 |
WEB
|
David F. Madrid
|
2003-04-25
|
|
Xoops 1.3.x/2.0 MyTextSanitizer - HTML Injection
|
2 |
WEB
|
magistrat
|
2003-04-25
|
|
Truegalerie 1.0 - Unauthorized Administrative Access
|
3 |
WEB
|
frog
|
2003-04-23
|
|
Battleaxe Software BTTLXE Forum - 'login.asp' SQL Injection
|
2 |
WEB
|
Du|L
|
2012-11-06
|
|
ZenPhoto 1.4.3.3 - Multiple Vulnerabilities
|
2 |
WEB
|
waraxe
|
2003-04-22
|
|
XMB Forum 1.8 - 'member.php' SQL Injection
|
2 |
WEB
|
zeez@bbugs.org
|
2003-04-22
|
|
OpenBB 1.0/1.1 - 'member.php' SQL Injection
|
1 |
WEB
|
Albert Puigsech Galicia
|
2003-04-22
|
|
OpenBB 1.0/1.1 - 'board.php' SQL Injection
|
2 |
WEB
|
Albert Puigsech Galicia
|
2003-04-22
|
|
OpenBB 1.0/1.1 - 'index.php' SQL Injection
|
2 |
WEB
|
Albert Puigsech Galicia
|
2003-04-21
|
|
MPCSoftWeb 1.0 - Database Disclosure
|
2 |
WEB
|
drG4njubas
|
2003-04-17
|
|
Web Wiz Forum 6.34 - Information Disclosure
|
1 |
WEB
|
Uziel aka nuJIurpuM
|
2003-03-31
|
|
Xonic.ru News 1.0 - 'script.php' Remote Command Execution
|
1 |
WEB
|
DWC Gr0up
|
2003-05-05
|
|
IkonBoard 3.1 - Lang Cookie Arbitrary Command Execution (2)
|
1 |
WEB
|
snooq
|
2003-04-15
|
|
IkonBoard 3.1 - Lang Cookie Arbitrary Command Execution (1)
|
1 |
WEB
|
Nick Cleaton
|
2003-04-15
|
|
osCommerce 2.2 - Authentication Bypass
|
0 |
WEB
|
Lorenzo Hernandez Garcia-Hierro
|
2012-11-05
|
|
CheckPoint/Sofaware Firewall - Multiple Vulnerabilities
|
2 |
WEB
|
Procheckup
|
2003-04-15
|
|
EZ Publish 2.2.7/3.0 - Multiple Full Path Disclosure Vulnerabilities
|
2 |
WEB
|
gregory Le Bras
|
2003-04-15
|
|
EZ Publish 2.2.7/3.0 - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
gregory Le Bras
|
2012-11-05
|
|
ZPanel 10.0.1 - Cross-Site Request Forgery / Cross-Site Scripting / SQL Injection / Password Reset
|
2 |
WEB
|
pcsjj
|