Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2003-06-22   XMB Forum 1.8 - 'member.php' Cross-Site Scripting 5 WEB Marc Ruef
2003-05-21   SudBox Boutique 1.2 - 'login.php' Authentication Bypass 6 WEB frog
2003-05-20   ttCMS 2.2/2.3 / ttForum 1.1 - 'index.php' Instant-Messages Preferences SQL Injection 6 WEB ScriptSlave@gmx.net
2003-05-17   ttCMS 2.2/2.3 - 'header.php' Remote File Inclusion 6 WEB ScriptSlave@gmx.net
2003-05-16   EZ Publish 2.2 - 'index.php' IMG Tag Cross-Site Scripting 5 WEB Ferruh Mavituna
2003-05-15   OneOrZero Helpdesk 1.4 - 'install.php' Administrative Access 5 WEB frog
2003-05-15   OneOrZero Helpdesk 1.4 - 'TUpdate.php' SQL Injection 5 WEB frog
2003-05-14   PHP-Proxima - 'autohtml.php' Information Disclosure 5 WEB Mind Warper
2003-05-14   Owl Intranet Engine 0.7 - Authentication Bypass 4 WEB cdowns
2003-05-14   vBulletin 3.0 - Private Message HTML Injection 5 WEB Ferruh Mavituna
2003-05-13   PHP-Nuke 6.0/6.5 Web_Links Module - Full Path Disclosure 5 WEB Rynho Zeros Web
2003-05-13   PHP-Nuke 6.5 (Multiple Downloads Module) - SQL Injection 5 WEB Albert Puigsech Galicia
2003-05-13   PHP-Nuke 6.5 - 'modules.php?Username' Cross-Site Scripting 5 WEB Ferruh Mavituna
2003-05-12   Happymall E-Commerce Software 4.3/4.4 - 'Normal_HTML.cgi' File Disclosure 5 WEB Julio Cesar
2012-11-09   NetOffice Dwins 1.4p3 - SQL Injection 5 WEB dun
2003-05-12   PHP-Nuke 5.x/6.x Web_Links Module - SQL Injection 5 WEB Albert Puigsech Galicia
2003-05-12   Happymall E-Commerce Software 4.3/4.4 - 'Normal_HTML.cgi' Cross-Site Scripting 5 WEB Julio Cesar
2003-05-10   Snitz Forums 2000 - 'register.asp' SQL Injection 6 WEB sharpiemarker
2003-05-09   Phorum 3.4.x - 'Message Form' HTML Injection 7 WEB WiciU
2003-05-09   ttCMS 2.2 / ttForum 1.1 - 'install.php?installdir' Remote File Inclusion 5 WEB Charles Reinold
2003-05-09   ttCMS 2.2 / ttForum 1.1 - 'news.php?template' Remote File Inclusion 5 WEB Charles Reinold
2003-05-08   HappyMall E-Commerce Software 4.3/4.4 - 'Member_HTML.cgi' Command Execution 7 WEB Revin Aldi
2003-05-07   HappyMall E-Commerce Software 4.3/4.4 - 'Normal_HTML.cgi' Command Execution 5 WEB Revin Aldi
2003-05-01   Stockman Shopping Cart 7.8 - Arbitrary Command Execution 5 WEB Aleksey Sintsov
2003-05-01   PHP-Nuke Splatt Forum 4.0 Module - HTML Injection 5 WEB Morning Wood
2003-05-01   PHP-Nuke Splatt Forum 4.0 Module - Cross-Site Scripting 5 WEB Morning Wood
2003-04-30   Microsoft BizTalk Server 2000/2002 DTA - 'RawCustomSearchField.asp' SQL Injection 5 WEB Cesar Cerrudo
2003-04-30   Microsoft BizTalk Server 2000/2002 DTA - 'rawdocdata.asp' SQL Injection 5 WEB Cesar Cerrudo
2012-11-07   AVerCaster Pro RS3400 Web Server - Directory Traversal 5 WEB Patrick Saladino
2012-11-07   Xivo 1.2 - Arbitrary File Download 5 WEB Mr.Un1k0d3r
2012-11-07   Invision Power Board (IP.Board) 3.3.4 - Unserialize Regex Bypass 6 WEB webDEViL
2003-04-26   Mike Bobbitt Album.PL 0.61 - Remote Command Execution 4 WEB aresu@bosen.net
2003-04-26   Macromedia ColdFusion MX 6.0 - Error Message Full Path Disclosure 5 WEB Network Intelligence
2003-04-25   Onecenter Forum 4.0 - IMG Tag Script Injection 6 WEB David F. Madrid
2003-04-25   Xoops 1.3.x/2.0 MyTextSanitizer - HTML Injection 6 WEB magistrat
2003-04-25   Truegalerie 1.0 - Unauthorized Administrative Access 6 WEB frog
2003-04-23   Battleaxe Software BTTLXE Forum - 'login.asp' SQL Injection 7 WEB Du|L
2012-11-06   ZenPhoto 1.4.3.3 - Multiple Vulnerabilities 5 WEB waraxe
2003-04-22   XMB Forum 1.8 - 'member.php' SQL Injection 5 WEB zeez@bbugs.org
2003-04-22   OpenBB 1.0/1.1 - 'member.php' SQL Injection 4 WEB Albert Puigsech Galicia
2003-04-22   OpenBB 1.0/1.1 - 'board.php' SQL Injection 5 WEB Albert Puigsech Galicia
2003-04-22   OpenBB 1.0/1.1 - 'index.php' SQL Injection 5 WEB Albert Puigsech Galicia
2003-04-21   MPCSoftWeb 1.0 - Database Disclosure 5 WEB drG4njubas
2003-04-17   Web Wiz Forum 6.34 - Information Disclosure 5 WEB Uziel aka nuJIurpuM
2003-03-31   Xonic.ru News 1.0 - 'script.php' Remote Command Execution 5 WEB DWC Gr0up
2003-05-05   IkonBoard 3.1 - Lang Cookie Arbitrary Command Execution (2) 5 WEB snooq
2003-04-15   IkonBoard 3.1 - Lang Cookie Arbitrary Command Execution (1) 5 WEB Nick Cleaton
2003-04-15   osCommerce 2.2 - Authentication Bypass 4 WEB Lorenzo Hernandez Garcia-Hierro
2012-11-05   CheckPoint/Sofaware Firewall - Multiple Vulnerabilities 6 WEB Procheckup
2003-04-15   EZ Publish 2.2.7/3.0 - Multiple Full Path Disclosure Vulnerabilities 6 WEB gregory Le Bras
2003-04-15   EZ Publish 2.2.7/3.0 - Multiple Cross-Site Scripting Vulnerabilities 5 WEB gregory Le Bras
2012-11-05   ZPanel 10.0.1 - Cross-Site Request Forgery / Cross-Site Scripting / SQL Injection / Password Reset 5 WEB pcsjj
2003-04-14   Web Wiz Site News 3.6 - Information Disclosure 5 WEB drG4njubas
2003-04-14   InstaBoard 1.3 - 'index.cfm' SQL Injection 6 WEB Jim Dew
2003-04-11   Ocean12 ASP Guestbook Manager 1.0 - Information Disclosure 4 WEB drG4njubas
2003-04-10   Guestbook 4.0 - Sensitive Information Disclosure 5 WEB Over_G
2002-04-10   Super Guestbook 1.0 - Sensitive Information Disclosure 5 WEB Over_G
2003-04-09   PHPay 2.2 - Cross-Site Scripting 5 WEB Ahmet Sabri ALPER
2003-04-09   PHPay 2.2 - Multiple Full Path Disclosure Vulnerabilities 5 WEB Ahmet Sabri ALPER
2003-04-07   Py-Membres 4.0 - SQL Injection 5 WEB frog
2003-04-07   Coppermine Photo Gallery 1.0 - PHP Code Injection 5 WEB Berend-Jan Wever
2012-11-04   WordPress Plugin Spider Catalog 1.1 - HTML Code Injection / Cross-Site Scripting 5 WEB D4NB4R
2003-04-05   Invision Board 1.1.1 - 'functions.php' SQL Injection 5 WEB Gossi The Dog
2003-04-04   PHPSysInfo 2.0/2.1 - 'index.php' LNG File Disclosure 5 WEB Albert Puigsech Galicia
2003-04-03   PHPSysInfo 2.0/2.1 - 'index.php' File Disclosure 5 WEB Albert Puigsech Galicia
2003-04-02   Phorum 3.4 - Email Subject Line Script Injection 5 WEB peter
2003-03-29   ScozBook 1.1 - Full Path Disclosure 5 WEB euronymous
2003-03-29   Justice Guestbook 1.3 - Full Path Disclosure 5 WEB euronymous
2003-03-29   Beanwebb Guestbook 1.0 - Unauthorized Administrative Access 5 WEB euronymous
2003-03-28   PostNuke 0.72x Members_List Module - Full Path Disclosure 4 WEB rkc
2003-03-28   PostNuke 0.72x Stats Module - Full Path Disclosure 5 WEB rkc
2002-03-27   MyGuestBK - Unauthorized Admin Panel Access 5 WEB Over_G
2002-03-27   MyGuestBK - 'Add.asp' Cross-Site Scripting 5 WEB Over_G
2012-11-02   Achievo 1.4.5 - Multiple Vulnerabilities (1) 5 WEB Canberk BOLAT
2012-11-02   PrestaShop 1.5.1 - Persistent Cross-Site Scripting 4 WEB David Sopas
2012-11-02   vBulletin ChangUonDyU Advanced Statistics - SQL Injection 5 WEB Juno_okyo
2012-11-02   WordPress Plugin All Video Gallery 1.1 - SQL Injection 5 WEB Ashiyane Digital Security Team
2003-03-25   PHP-Nuke 6.0/6.5 Forum Module - 'viewforum.php' SQL Injection 5 WEB frog
2003-03-25   PHP-Nuke 6.0/6.5 Forum Module - 'viewtopic.php' SQL Injection 5 WEB frog
2003-03-25   PHP-Nuke 6.5 Addon - 'Viewpage.php' File Disclosure 5 WEB Zero-X www.lobnan.de Team
2003-03-25   Web Chat Manager 2.0 - HTML Code Injection 5 WEB Over_G
2003-03-23   PHP-Nuke 5.6/6.x News Module - 'index.php' SQL Injection 5 WEB frog
2003-03-22   PHP-Nuke 5.6/6.x News Module - 'article.php' SQL Injection 5 WEB frog
2003-03-22   Advanced Poll 2.0 - Remote Information Disclosure 5 WEB subj
2003-03-22   PHP-Nuke 5.6/6.x - 'banners.php' Banner Manager Password Disclosure 5 WEB frog
2003-03-21   Planetmoon - Guestbook Clear Text Password Retrieval 5 WEB subj
2012-11-01   MyBB Follower User Plugin - SQL Injection 5 WEB Zixem
2012-11-01   Joomla! Component Spider Catalog 1.1 - 'Product_ID' SQL Injection 5 WEB D4NB4R
2012-11-01   Endpoint Protector 4.0.4.2 - Multiple Persistent Cross-Site Scripting Vulnerabilities 5 WEB CYBSEC Labs
2012-11-01   Invision Power Board (IP.Board) 3.3.4 - 'Unserialize()' PHP Code Execution 5 WEB EgiX
2012-11-01   WordPress Plugin bbPress - Multiple Vulnerabilities 5 WEB Dark-Puzzle
2003-03-20   osCommerce 2.1/2.2 - 'Checkout_Payment.php' Error Output Cross-Site Scripting 5 WEB iProyectos group
2003-03-20   osCommerce 2.1/2.2 - Info_Message Cross-Site Scripting 5 WEB iProyectos group
2003-03-20   osCommerce 2.1/2.2 - Error_Message Cross-Site Scripting 5 WEB iProyectos group
2003-03-20   XOOPS 2.0 XoopsOption - Information Disclosure 5 WEB gregory Le Bras
2003-03-19   DCP-Portal 5.3.1 - 'calendar.php' Cross-Site Scripting 5 WEB Ertan Kurt
2003-03-19   Siteframe CMS 2.2.4 - 'download.php' Information Disclosure 4 WEB Ertan Kurt
2003-03-19   Basit 1.0 Search Module - Cross-Site Scripting 5 WEB Ertan Kurt
2003-03-19   Basit 1.0 Submit Module - Cross-Site Scripting 5 WEB Ertan Kurt
2003-03-18   Mambo Site Server 4.0.10 - 'index.php' Cross-Site Scripting 5 WEB Ertan Kurt
2003-01-05   Smart Search 4.25 - Remote Command Execution 5 WEB knight420
2003-03-17   MyABraCaDaWeb 1.0 - Full Path Disclosure 5 WEB gregory Le Bras
2003-03-17   Kebi Academy 2001 - Input Validation 6 WEB dong-h0un U
2012-10-31   WordPress Plugin foxypress 0.4.2.5 - Multiple Vulnerabilities 6 WEB waraxe
2012-10-31   PG Dating Pro CMS 1.0 - Multiple Vulnerabilities 6 WEB Vulnerability-Lab
2012-10-31   vam shop 1.69 - Multiple Vulnerabilities 6 WEB Security Effect Team
2003-03-17   Outblaze Webmail - Cookie Authentication Bypass 6 WEB dong-h0un U
2003-03-15   RSA ClearTrust 4.6/4.7 - Login Page Cross-Site Scripting 5 WEB sir.mordred@hushmail.com
2003-03-12   PHP-Nuke Splatt Forum 3.2 Module - Full Path Disclosure 5 WEB Rynho Zeros Web
2003-03-12   PHP-Nuke 5.5/6.0 News Module - Full Path Disclosure 5 WEB Rynho Zeros Web
2003-03-12   PHP-Nuke 5.5/6.0 AvantGo Module - Full Path Disclosure 5 WEB Rynho Zeros Web
2003-03-11   VPOPMail 0.9x - 'vpopmail.php' Remote Command Execution 5 WEB ERRor
2003-03-07   SimpleBBS 1.0.6 - 'users.php' Insecure File Permissions 6 WEB flur
2003-03-07   Wordit Logbook 098b3 - Logbook.pl Remote Command Execution 6 WEB Aleksey Sintsov
2003-03-06   PHPPing 0.1 - Remote Command Execution 6 WEB gregory Le Bras
2003-03-03   Webchat 0.77 - 'Defines.php' Remote File Inclusion 5 WEB frog
2003-03-03   GTCatalog 0.8.16/0.9 - Remote File Inclusion 5 WEB frog
2003-02-28   Typo3 3.5 b5 - HTML Hidden Form Field Information Disclosure (2) 5 WEB Martin Eiszner
2003-02-28   Typo3 3.5 b5 - HTML Hidden Form Field Information Disclosure (1) 5 WEB Martin Eiszner
2012-10-28   WordPress Plugin Easy Webinar - Blind SQL Injection 5 WEB Robert Cooper
2003-02-28   Typo3 3.5 b5 - 'Translations.php' Remote File Inclusion 5 WEB Martin Eiszner
2003-02-28   Typo3 3.5 b5 - 'showpic.php' File Enumeration 5 WEB Martin Eiszner
2003-02-27   Invision Board 1.1.1 - 'ipchat.php' Remote File Inclusion 5 WEB frog
2003-01-06   E-theni - Remote File Inclusion Command Execution 5 WEB frog
2003-02-25   CuteNews 0.88 - 'comments.php' Remote File Inclusion 5 WEB Over_G