2012-10-22
|
|
Schoolhos CMS Beta 2.29 - 'id' SQL Injection
|
2 |
WEB
|
Cumi
|
2012-10-22
|
|
WordPress Plugin White Label CMS 1.5 - Cross-Site Request Forgery / Persistent Cross-Site Scripting
|
1 |
WEB
|
pcsjj
|
2012-10-22
|
|
Joomla! Component com_kunena - 'search' SQL Injection
|
2 |
WEB
|
D35m0nd142
|
2012-10-22
|
|
Joomla! Component com_commedia - 'task' SQL Injection
|
2 |
WEB
|
D4NB4R
|
2012-10-22
|
|
Movable Type Pro 5.13en - Persistent Cross-Site Scripting
|
2 |
WEB
|
sqlhacker
|
2003-01-13
|
|
W-Agora 4.1.6 - 'modules.php?File' Traversal Arbitrary File Access
|
2 |
WEB
|
sonyy
|
2003-01-13
|
|
W-Agora 4.1.6 - 'index.php?bn' Traversal Arbitrary File Access
|
2 |
WEB
|
sonyy
|
2003-01-13
|
|
PHPPass 2 - 'AccessControl.php' SQL Injection
|
2 |
WEB
|
frog
|
2003-01-12
|
|
YABB 1.4.1 SE - 'Reminder.php' SQL Injection
|
2 |
WEB
|
VOID.AT Security
|
2003-01-09
|
|
FormMail-Clone - Cross-Site Scripting
|
2 |
WEB
|
Rynho Zeros Web
|
2003-01-06
|
|
S8Forum 3.0 - Remote Command Execution
|
2 |
WEB
|
nmsh_sa
|
2003-01-06
|
|
myPHPNuke 1.8.8 - 'Default_Theme' Cross-Site Scripting
|
2 |
WEB
|
Mindwarper
|
2003-01-06
|
|
DCP-Portal 5.0.1 - 'lib.php?Root' Remote File Inclusion
|
2 |
WEB
|
frog
|
2003-01-06
|
|
DCP-Portal 5.0.1 - 'editor.php?Root' Remote File Inclusion
|
2 |
WEB
|
frog
|
2003-01-06
|
|
OpenTopic 2.3.1 - Private Message HTML Injection
|
2 |
WEB
|
frog
|
2003-01-02
|
|
N/X Web Content Management System 2002 Prerelease 1 - 'datasets.php?c_path' Local File Inclusion
|
1 |
WEB
|
frog
|
2003-01-02
|
|
N/X Web Content Management System 2002 Prerelease 1 - 'menu.inc.php?c_path' Remote File Inclusion
|
1 |
WEB
|
frog
|
2002-12-31
|
|
PEEL 1.0b - Remote File Inclusion
|
1 |
WEB
|
frog
|
2002-12-22
|
|
CHETCPASSWD 1.12 - Shadow File Disclosure
|
1 |
WEB
|
Victor Pereira
|
2002-12-22
|
|
W-Agora 4.1.6 - 'EditForm.php' Cross-Site Scripting
|
2 |
WEB
|
xatr0z
|
2002-12-20
|
|
SPGPartenaires 3.0.1 - 'delete.php' SQL Injection
|
2 |
WEB
|
frog
|
2002-12-20
|
|
SPGPartenaires 3.0.1 - 'ident.php' SQL Injection
|
2 |
WEB
|
frog
|
2002-12-16
|
|
Captaris Infinite WebMail 3.61.5 - HTML Injection
|
2 |
WEB
|
Pedram Amini
|
2002-12-16
|
|
PHP-Nuke 6.0 - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
frog
|
2002-12-16
|
|
PHP-Nuke 6.0 - Multiple Full Path Disclosure Vulnerabilities
|
2 |
WEB
|
frog
|
2012-10-19
|
|
CMSQLite 1.3.2 - Multiple Vulnerabilities
|
2 |
WEB
|
Vulnerability-Lab
|
2012-10-19
|
|
Joomla! Component com_tag - 'tag' SQL Injection
|
2 |
WEB
|
D4NB4R
|
2012-10-19
|
|
Joomla! Component com_fss 1.9.1.1447 - SQL Injection
|
2 |
WEB
|
D4NB4R
|
2012-10-19
|
|
ManageEngine Security Manager Plus 5.5 build 5505 - Directory Traversal
|
2 |
WEB
|
xistence
|
2002-12-16
|
|
PHP-Nuke 6.0 - Web Mail Script Injection
|
2 |
WEB
|
Ulf Harnhammar
|
2002-12-16
|
|
PHP-Nuke 6.0 - Web Mail Remote PHP Script Execution
|
2 |
WEB
|
Ulf Harnhammar
|
2002-12-14
|
|
MyPHPSoft MyPHPLinks 2.1.9/2.2 - SQL Injection Administration Bypassing
|
1 |
WEB
|
frog
|
2002-12-12
|
|
Mambo Site Server 4.0.11 - Full Path Disclosure
|
2 |
WEB
|
euronymous
|
2002-12-12
|
|
Mambo Site Server 4.0.11 - 'PHPInfo.php' Information Disclosure
|
1 |
WEB
|
euronymous
|
2002-12-12
|
|
Deerfield VisNetic WebSite 3.5.13.1 - Cross-Site Scripting
|
1 |
WEB
|
Ory Segal
|
2002-11-09
|
|
Xoops 1.3.5 - Private Message System Font Attributes HTML Injection
|
2 |
WEB
|
fred magistrat
|
2002-11-09
|
|
vBulletin 2.2.7/2.2.8 - HTML Injection
|
2 |
WEB
|
Dorin Balanica
|
2002-11-08
|
|
Ultimate PHP Board Board 1.0 final Beta - 'viewtopic.php' Cross-Site Scripting
|
2 |
WEB
|
euronymous
|
2002-11-08
|
|
Ultimate PHP Board 1.0 final Beta - 'viewtopic.php' Directory Contents Browsing
|
2 |
WEB
|
euronymous
|
2002-12-06
|
|
APBoard 2.0 2 - Unauthorized Thread Reading
|
2 |
WEB
|
DNA ESC
|
2012-10-18
|
|
WordPress Plugin FireStorm Professional Real Estate 2.06.01 - SQL Injection
|
2 |
WEB
|
Ashiyane Digital Security Team
|
2012-10-18
|
|
OTRS 3.1 - Persistent Cross-Site Scripting
|
2 |
WEB
|
Mike Eduard
|
2002-12-03
|
|
phpBB 2.0.3 - 'search.php' Cross-Site Scripting
|
2 |
WEB
|
f_a_a
|
2002-11-28
|
|
YaBB 1 Gold SP 1 - 'YaBB.pl' Cross-Site Scripting
|
2 |
WEB
|
Fabricio Angeletti
|
2002-11-27
|
|
BizDesign ImageFolio 2.x/3.0.1 - 'nph-build.cgi' Cross-Site Scripting
|
2 |
WEB
|
SecurityTracker.com
|
2002-11-27
|
|
BizDesign ImageFolio 2.x/3.0.1 - 'imageFolio.cgi?direct' Cross-Site Scripting
|
2 |
WEB
|
SecurityTracker.com
|
2002-11-26
|
|
News Evolution 1.0/2.0 - Include Undefined Variable Command Execution
|
2 |
WEB
|
frog
|
2002-11-26
|
|
FreeNews 2.1 - Include Undefined Variable Command Execution
|
2 |
WEB
|
frog
|
2002-11-25
|
|
Working Resources BadBlue 1.7.1 - Search Page Cross-Site Scripting
|
2 |
WEB
|
Matthew Murphy
|
2002-11-25
|
|
Web Server Creator Web Portal 0.1 - Remote File Inclusion
|
2 |
WEB
|
frog
|
2002-11-25
|
|
phpBB 2.0.3 - Script Injection
|
2 |
WEB
|
Pete Foster
|
2002-11-25
|
|
vBulletin 2.0.x/2.2.x - 'members2.php' Cross-Site Scripting
|
2 |
WEB
|
Sp.IC
|
2012-10-17
|
|
Oracle WebCenter Sites (FatWire Content Server) - Multiple Vulnerabilities
|
2 |
WEB
|
SEC Consult
|
2012-10-17
|
|
ManageEngine Support Center Plus 7908 - Multiple Vulnerabilities
|
2 |
WEB
|
xistence
|
2012-10-17
|
|
Symphony CMS 2.3 - Multiple Vulnerabilities
|
0 |
WEB
|
Wireghoul
|
2012-10-17
|
|
Sisfokol 4.0 - Arbitrary File Upload
|
1 |
WEB
|
cr4wl3r
|
2002-11-25
|
|
PHP-Nuke 5.x/6.0/6.5 Beta 1 - Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
Matthew Murphy
|
2002-11-22
|
|
vBulletin 2.0/2.2.x - 'memberlist.php' Cross-Site Scripting
|
1 |
WEB
|
Sp.IC
|
2002-11-13
|
|
phpBB Advanced Quick Reply Hack 1.0/1.1 - Remote File Inclusion
|
1 |
WEB
|
Hai Nam Luke
|
2002-11-12
|
|
W3Mail 1.0.6 - File Disclosure
|
1 |
WEB
|
Tim Brown
|
2002-11-11
|
|
EZ Systems HTTPBench 1.1 - Information Disclosure
|
2 |
WEB
|
Tacettin Karadeniz
|
2012-10-16
|
|
Visual Tools DVR3.0.6.16_ vx series 4.2.19.2 - Multiple Vulnerabilities
|
2 |
WEB
|
Andrea Fabrizi
|
2012-10-16
|
|
Joomla! Component com_icagenda - 'id' Multiple Vulnerabilities
|
2 |
WEB
|
Dark-Puzzle
|
2012-10-16
|
|
MyBB Profile Albums Plugin 0.9 - 'albums.php?album' SQL Injection
|
2 |
WEB
|
Zixem
|
2002-11-07
|
|
CuteCast 1.2 - User Credential Disclosure
|
2 |
WEB
|
Zero-X
|
2012-10-15
|
|
BigPond 3G21WB - Multiple Vulnerabilities
|
1 |
WEB
|
Roberto Paleari
|
2012-10-15
|
|
airVisionNVR 1.1.13 - 'readfile()' Disclosure / SQL Injection
|
2 |
WEB
|
pennyGrit
|
2012-10-15
|
|
Cartweaver 3 - Local File Inclusion
|
2 |
WEB
|
HaxOr
|
2002-11-01
|
|
ION Script 1.4 - Remote File Disclosure
|
1 |
WEB
|
Zero X
|
2002-11-01
|
|
PHP-Nuke 5.6 - 'modules.php' SQL Injection
|
1 |
WEB
|
kill9
|
2002-11-01
|
|
Jason Orcutt Prometheus 3.0/4.0/6.0 - Remote File Inclusion
|
1 |
WEB
|
Karol Wiesek
|
2002-10-28
|
|
Benjamin Lefevre Dobermann Forum 0.x - 'newtopic.php?subpath' Remote File Inclusion
|
1 |
WEB
|
frog
|
2002-10-28
|
|
Benjamin Lefevre Dobermann Forum 0.x - 'index.php?subpath' Remote File Inclusion
|
1 |
WEB
|
frog
|
2002-10-28
|
|
Benjamin Lefevre Dobermann Forum 0.x - 'enteteacceuil.php?subpath' Remote File Inclusion
|
0 |
WEB
|
frog
|
2002-10-28
|
|
Benjamin Lefevre Dobermann Forum 0.x - 'entete.php?subpath' Remote File Inclusion
|
1 |
WEB
|
frog
|
2002-10-28
|
|
MailReader.com 2.3.x - 'NPH-MR.cgi' File Disclosure
|
1 |
WEB
|
pokleyzz
|
2002-10-24
|
|
Mojo Mail 2.7 - Email Form Cross-Site Scripting
|
1 |
WEB
|
Daniel Boland
|
2002-10-23
|
|
MyMarket 1.71 - 'Form_Header.php' Cross-Site Scripting
|
1 |
WEB
|
qber66
|
2002-10-22
|
|
gBook 1.4 - Administrative Access
|
1 |
WEB
|
frog
|
2002-10-21
|
|
PHP Arena PAFileDB 1.1.3/2.1.1/3.0 - 'Email To Friend' Cross-Site Scripting
|
1 |
WEB
|
ersatz
|
2002-10-21
|
|
KMMail 1.0 - E-Mail HTML Injection
|
0 |
WEB
|
Ulf Harnhammar
|
2002-10-18
|
|
YaBB 1.40/1.41 - Login Cross-Site Scripting
|
1 |
WEB
|
Nir Adar
|
2002-10-18
|
|
vBulletin 2.0/2.2.x - Cross-Site Scripting
|
1 |
WEB
|
Sp.IC
|
2002-10-10
|
|
PHPRank 1.8 - 'add.php' Cross-Site Scripting
|
2 |
WEB
|
Jedi/Sector One
|
2002-10-10
|
|
PHPBBMod 1.3.3 - PHPInfo Information Disclosure
|
1 |
WEB
|
Roland Verlander
|
2002-10-10
|
|
PHPReactor 1.2.7 pl1 - 'browse.php' Cross-Site Scripting
|
2 |
WEB
|
Arab VieruZ
|
2012-10-16
|
|
Project Pier - Arbitrary File Upload (Metasploit)
|
2 |
WEB
|
Metasploit
|
2002-10-09
|
|
Authoria HR Suite - 'AthCGI.exe' Cross-Site Scripting
|
2 |
WEB
|
Max
|
2002-10-08
|
|
SurfControl SuperScout Email Filter 3.5 - User Credential Disclosure
|
2 |
WEB
|
ken@FTU
|
2002-10-08
|
|
SurfControl SuperScout Email Filter 3.5 - 'MsgError.asp' Cross-Site Scripting
|
1 |
WEB
|
ken@FTU
|
2002-10-09
|
|
VBZoom 1.0 - Arbitrary File Upload
|
2 |
WEB
|
hish
|
2002-10-09
|
|
Microsoft Content Management Server 2001 - Cross-Site Scripting
|
2 |
WEB
|
overclocking_a_la_abuela
|
2002-10-08
|
|
VBZoom 1.0 - SQL Injection
|
1 |
WEB
|
hish
|
2002-10-08
|
|
SSGBook 1.0 - Image Tag HTML Injection
|
2 |
WEB
|
frog
|
2002-10-07
|
|
Killer Protection 1.0 - Information Disclosure
|
2 |
WEB
|
frog
|
2002-10-04
|
|
phpLinkat 0.1 - Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
Sp.IC
|
2002-10-03
|
|
phpMyNewsletter 0.6.10 - Remote File Inclusion
|
1 |
WEB
|
frog
|
2002-10-03
|
|
Michael Schatz Books 0.54/0.6 PostNuke Module - Cross-Site Scripting
|
3 |
WEB
|
Pistone
|
2002-10-02
|
|
MySimpleNews 1.0 - Remote Readable Administrator Password
|
1 |
WEB
|
frog
|
2002-10-02
|
|
MySimpleNews 1.0 - PHP Injection
|
1 |
WEB
|
frog
|
2002-10-02
|
|
phpWebSite 0.8.3 - 'article.php' Cross-Site Scripting
|
2 |
WEB
|
Sp.IC
|
2002-10-02
|
|
Midicart PHP - Arbitrary File Upload
|
2 |
WEB
|
frog
|
2002-10-02
|
|
Jetty 3.1.6/3.1.7/4.1 Servlet Engine - Arbitrary Command Execution
|
2 |
WEB
|
Matt Moore
|
2002-10-02
|
|
Midicart PHP - Information Disclosure
|
2 |
WEB
|
frog
|
2002-10-02
|
|
TightAuction 3.0 - Config.INC Information Disclosure
|
2 |
WEB
|
frog
|
2012-10-11
|
|
vOlk Botnet Framework 4.0 - Multiple Vulnerabilities
|
2 |
WEB
|
Vulnerability-Lab
|
2012-10-11
|
|
Omnistar Document Manager 8.0 - Multiple Vulnerabilities
|
2 |
WEB
|
Vulnerability-Lab
|
2002-10-02
|
|
Py-Membres 3.1 - 'index.php' Unauthorized Access
|
2 |
WEB
|
frog
|
2002-09-30
|
|
Sun ONE Starter Kit 2.0 / ASTAware SearchDisc 3.1 - Search Engine Directory Traversal
|
2 |
WEB
|
ET LoWNOISE
|
2002-09-29
|
|
EmuMail 5.0 Email Form - Script Injection
|
2 |
WEB
|
FVS
|
2002-09-29
|
|
EmuMail 5.0 - Web Root Full Path Disclosure
|
2 |
WEB
|
FVS
|
2002-09-28
|
|
Jetty 4.1 Servlet Engine - Cross-Site Scripting
|
1 |
WEB
|
Skinnay
|
2002-09-27
|
|
vBulletin 2.0.3 - 'calendar.php' Command Execution
|
2 |
WEB
|
gosper
|
2002-09-26
|
|
PostNuke 0.72 - 'modules.php' Cross-Site Scripting
|
2 |
WEB
|
Mark Grimes
|
2012-10-10
|
|
ServersCheck Monitoring Software 9.0.12/9.0.14 - Persistent Cross-Site Scripting
|
2 |
WEB
|
loneferret
|
2002-09-25
|
|
phpWebSite 0.8.3 - News Message HTML Injection
|
2 |
WEB
|
das@hush.com
|
2002-09-25
|
|
Drupal 4.0 - News Message HTML Injection
|
2 |
WEB
|
das@hush.com
|
2002-09-25
|
|
PHP-Nuke 6.0 - 'modules.php' SQL Injection
|
2 |
WEB
|
Pedro Inacio
|
2002-09-25
|
|
DaCode 1.2 - News Message HTML Injection
|
2 |
WEB
|
das@hush.com
|
2002-09-25
|
|
NPDS 4.8 - News Message HTML Injection
|
2 |
WEB
|
das@hush.com
|
2002-09-25
|
|
PHP-Nuke 6.0 - News Message HTML Injection
|
2 |
WEB
|
das@hush.com
|
2002-09-24
|
|
PHP-Nuke 6.0/6.5 - Search Form Cross-Site Scripting
|
2 |
WEB
|
Mark Grimes
|
2012-10-10
|
|
Auxilium RateMyPet - Arbitrary File Upload (Metasploit)
|
2 |
WEB
|
Metasploit
|
2012-10-10
|
|
qdPM 7.0 - Arbitrary '.PHP' File Upload (Metasploit)
|
2 |
WEB
|
Metasploit
|
2012-10-10
|
|
phpMyAdmin 3.5.2.2 - 'server_sync.php' Backdoor (Metasploit)
|
2 |
WEB
|
Metasploit
|