Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2003-01-15   PHP TopSites 2.0/2.2 - HTML Injection 3 WEB Cyberarmy Application
2003-01-13   Psunami Bulletin Board 0.x - 'Psunami.cgi' Remote Command Execution (2) 4 WEB spabam
2003-01-13   Psunami Bulletin Board 0.x - 'Psunami.cgi' Remote Command Execution (1) 4 WEB dodo
2003-01-14   vSignup 2.1 - SQL Injection 3 WEB frog
2003-01-14   vAuthenticate 2.8 - SQL Injection 3 WEB frog
2003-01-14   Geeklog 1.3.7 - 'Homepage User' HTML Injection 3 WEB snooq
2003-01-14   Geeklog 1.3.7 - 'comment.php?cid' Cross-Site Scripting 3 WEB snooq
2003-01-14   Geeklog 1.3.7 - 'users.php?uid' Cross-Site Scripting 3 WEB snooq
2003-01-14   Geeklog 1.3.7 - 'profiles.php' Multiple Cross-Site Scripting Vulnerabilities 3 WEB snooq
2012-10-22   ATutor 1.2 - Multiple Vulnerabilities 3 WEB High-Tech Bridge SA
2012-10-22   subrion CMS 2.2.1 - Multiple Vulnerabilities 3 WEB High-Tech Bridge SA
2012-10-22   WordPress Plugin social discussions 6.1.1 - Multiple Vulnerabilities 3 WEB waraxe
2012-10-22   Schoolhos CMS Beta 2.29 - 'id' SQL Injection 3 WEB Cumi
2012-10-22   WordPress Plugin White Label CMS 1.5 - Cross-Site Request Forgery / Persistent Cross-Site Scripting 2 WEB pcsjj
2012-10-22   Joomla! Component com_kunena - 'search' SQL Injection 3 WEB D35m0nd142
2012-10-22   Joomla! Component com_commedia - 'task' SQL Injection 3 WEB D4NB4R
2012-10-22   Movable Type Pro 5.13en - Persistent Cross-Site Scripting 3 WEB sqlhacker
2003-01-13   W-Agora 4.1.6 - 'modules.php?File' Traversal Arbitrary File Access 3 WEB sonyy
2003-01-13   W-Agora 4.1.6 - 'index.php?bn' Traversal Arbitrary File Access 3 WEB sonyy
2003-01-13   PHPPass 2 - 'AccessControl.php' SQL Injection 3 WEB frog
2003-01-12   YABB 1.4.1 SE - 'Reminder.php' SQL Injection 3 WEB VOID.AT Security
2003-01-09   FormMail-Clone - Cross-Site Scripting 3 WEB Rynho Zeros Web
2003-01-06   S8Forum 3.0 - Remote Command Execution 3 WEB nmsh_sa
2003-01-06   myPHPNuke 1.8.8 - 'Default_Theme' Cross-Site Scripting 3 WEB Mindwarper
2003-01-06   DCP-Portal 5.0.1 - 'lib.php?Root' Remote File Inclusion 3 WEB frog
2003-01-06   DCP-Portal 5.0.1 - 'editor.php?Root' Remote File Inclusion 3 WEB frog
2003-01-06   OpenTopic 2.3.1 - Private Message HTML Injection 3 WEB frog
2003-01-02   N/X Web Content Management System 2002 Prerelease 1 - 'datasets.php?c_path' Local File Inclusion 3 WEB frog
2003-01-02   N/X Web Content Management System 2002 Prerelease 1 - 'menu.inc.php?c_path' Remote File Inclusion 3 WEB frog
2002-12-31   PEEL 1.0b - Remote File Inclusion 3 WEB frog
2002-12-22   CHETCPASSWD 1.12 - Shadow File Disclosure 2 WEB Victor Pereira
2002-12-22   W-Agora 4.1.6 - 'EditForm.php' Cross-Site Scripting 3 WEB xatr0z
2002-12-20   SPGPartenaires 3.0.1 - 'delete.php' SQL Injection 3 WEB frog
2002-12-20   SPGPartenaires 3.0.1 - 'ident.php' SQL Injection 3 WEB frog
2002-12-16   Captaris Infinite WebMail 3.61.5 - HTML Injection 3 WEB Pedram Amini
2002-12-16   PHP-Nuke 6.0 - Multiple Cross-Site Scripting Vulnerabilities 3 WEB frog
2002-12-16   PHP-Nuke 6.0 - Multiple Full Path Disclosure Vulnerabilities 3 WEB frog
2012-10-19   CMSQLite 1.3.2 - Multiple Vulnerabilities 3 WEB Vulnerability-Lab
2012-10-19   Joomla! Component com_tag - 'tag' SQL Injection 3 WEB D4NB4R
2012-10-19   Joomla! Component com_fss 1.9.1.1447 - SQL Injection 3 WEB D4NB4R
2012-10-19   ManageEngine Security Manager Plus 5.5 build 5505 - Directory Traversal 3 WEB xistence
2002-12-16   PHP-Nuke 6.0 - Web Mail Script Injection 3 WEB Ulf Harnhammar
2002-12-16   PHP-Nuke 6.0 - Web Mail Remote PHP Script Execution 3 WEB Ulf Harnhammar
2002-12-14   MyPHPSoft MyPHPLinks 2.1.9/2.2 - SQL Injection Administration Bypassing 3 WEB frog
2002-12-12   Mambo Site Server 4.0.11 - Full Path Disclosure 3 WEB euronymous
2002-12-12   Mambo Site Server 4.0.11 - 'PHPInfo.php' Information Disclosure 2 WEB euronymous
2002-12-12   Deerfield VisNetic WebSite 3.5.13.1 - Cross-Site Scripting 3 WEB Ory Segal
2002-11-09   Xoops 1.3.5 - Private Message System Font Attributes HTML Injection 3 WEB fred magistrat
2002-11-09   vBulletin 2.2.7/2.2.8 - HTML Injection 3 WEB Dorin Balanica
2002-11-08   Ultimate PHP Board Board 1.0 final Beta - 'viewtopic.php' Cross-Site Scripting 3 WEB euronymous
2002-11-08   Ultimate PHP Board 1.0 final Beta - 'viewtopic.php' Directory Contents Browsing 3 WEB euronymous
2002-12-06   APBoard 2.0 2 - Unauthorized Thread Reading 3 WEB DNA ESC
2012-10-18   WordPress Plugin FireStorm Professional Real Estate 2.06.01 - SQL Injection 4 WEB Ashiyane Digital Security Team
2012-10-18   OTRS 3.1 - Persistent Cross-Site Scripting 4 WEB Mike Eduard
2002-12-03   phpBB 2.0.3 - 'search.php' Cross-Site Scripting 3 WEB f_a_a
2002-11-28   YaBB 1 Gold SP 1 - 'YaBB.pl' Cross-Site Scripting 3 WEB Fabricio Angeletti
2002-11-27   BizDesign ImageFolio 2.x/3.0.1 - 'nph-build.cgi' Cross-Site Scripting 3 WEB SecurityTracker.com
2002-11-27   BizDesign ImageFolio 2.x/3.0.1 - 'imageFolio.cgi?direct' Cross-Site Scripting 3 WEB SecurityTracker.com
2002-11-26   News Evolution 1.0/2.0 - Include Undefined Variable Command Execution 3 WEB frog
2002-11-26   FreeNews 2.1 - Include Undefined Variable Command Execution 3 WEB frog
2002-11-25   Working Resources BadBlue 1.7.1 - Search Page Cross-Site Scripting 3 WEB Matthew Murphy
2002-11-25   Web Server Creator Web Portal 0.1 - Remote File Inclusion 3 WEB frog
2002-11-25   phpBB 2.0.3 - Script Injection 3 WEB Pete Foster
2002-11-25   vBulletin 2.0.x/2.2.x - 'members2.php' Cross-Site Scripting 3 WEB Sp.IC
2012-10-17   Oracle WebCenter Sites (FatWire Content Server) - Multiple Vulnerabilities 3 WEB SEC Consult
2012-10-17   ManageEngine Support Center Plus 7908 - Multiple Vulnerabilities 3 WEB xistence
2012-10-17   Symphony CMS 2.3 - Multiple Vulnerabilities 3 WEB Wireghoul
2012-10-17   Sisfokol 4.0 - Arbitrary File Upload 3 WEB cr4wl3r
2002-11-25   PHP-Nuke 5.x/6.0/6.5 Beta 1 - Multiple Cross-Site Scripting Vulnerabilities 3 WEB Matthew Murphy
2002-11-22   vBulletin 2.0/2.2.x - 'memberlist.php' Cross-Site Scripting 3 WEB Sp.IC
2002-11-13   phpBB Advanced Quick Reply Hack 1.0/1.1 - Remote File Inclusion 3 WEB Hai Nam Luke
2002-11-12   W3Mail 1.0.6 - File Disclosure 3 WEB Tim Brown
2002-11-11   EZ Systems HTTPBench 1.1 - Information Disclosure 3 WEB Tacettin Karadeniz
2012-10-16   Visual Tools DVR3.0.6.16_ vx series 4.2.19.2 - Multiple Vulnerabilities 3 WEB Andrea Fabrizi
2012-10-16   Joomla! Component com_icagenda - 'id' Multiple Vulnerabilities 3 WEB Dark-Puzzle
2012-10-16   MyBB Profile Albums Plugin 0.9 - 'albums.php?album' SQL Injection 3 WEB Zixem
2002-11-07   CuteCast 1.2 - User Credential Disclosure 3 WEB Zero-X
2012-10-15   BigPond 3G21WB - Multiple Vulnerabilities 2 WEB Roberto Paleari
2012-10-15   airVisionNVR 1.1.13 - 'readfile()' Disclosure / SQL Injection 3 WEB pennyGrit
2012-10-15   Cartweaver 3 - Local File Inclusion 3 WEB HaxOr
2002-11-01   ION Script 1.4 - Remote File Disclosure 4 WEB Zero X
2002-11-01   PHP-Nuke 5.6 - 'modules.php' SQL Injection 3 WEB kill9
2002-11-01   Jason Orcutt Prometheus 3.0/4.0/6.0 - Remote File Inclusion 3 WEB Karol Wiesek
2002-10-28   Benjamin Lefevre Dobermann Forum 0.x - 'newtopic.php?subpath' Remote File Inclusion 3 WEB frog
2002-10-28   Benjamin Lefevre Dobermann Forum 0.x - 'index.php?subpath' Remote File Inclusion 3 WEB frog
2002-10-28   Benjamin Lefevre Dobermann Forum 0.x - 'enteteacceuil.php?subpath' Remote File Inclusion 2 WEB frog
2002-10-28   Benjamin Lefevre Dobermann Forum 0.x - 'entete.php?subpath' Remote File Inclusion 3 WEB frog
2002-10-28   MailReader.com 2.3.x - 'NPH-MR.cgi' File Disclosure 3 WEB pokleyzz
2002-10-24   Mojo Mail 2.7 - Email Form Cross-Site Scripting 3 WEB Daniel Boland
2002-10-23   MyMarket 1.71 - 'Form_Header.php' Cross-Site Scripting 3 WEB qber66
2002-10-22   gBook 1.4 - Administrative Access 3 WEB frog
2002-10-21   PHP Arena PAFileDB 1.1.3/2.1.1/3.0 - 'Email To Friend' Cross-Site Scripting 9 WEB ersatz
2002-10-21   KMMail 1.0 - E-Mail HTML Injection 2 WEB Ulf Harnhammar
2002-10-18   YaBB 1.40/1.41 - Login Cross-Site Scripting 3 WEB Nir Adar
2002-10-18   vBulletin 2.0/2.2.x - Cross-Site Scripting 3 WEB Sp.IC
2002-10-10   PHPRank 1.8 - 'add.php' Cross-Site Scripting 3 WEB Jedi/Sector One
2002-10-10   PHPBBMod 1.3.3 - PHPInfo Information Disclosure 2 WEB Roland Verlander
2002-10-10   PHPReactor 1.2.7 pl1 - 'browse.php' Cross-Site Scripting 3 WEB Arab VieruZ
2012-10-16   Project Pier - Arbitrary File Upload (Metasploit) 3 WEB Metasploit
2002-10-09   Authoria HR Suite - 'AthCGI.exe' Cross-Site Scripting 3 WEB Max
2002-10-08   SurfControl SuperScout Email Filter 3.5 - User Credential Disclosure 4 WEB ken@FTU
2002-10-08   SurfControl SuperScout Email Filter 3.5 - 'MsgError.asp' Cross-Site Scripting 3 WEB ken@FTU
2002-10-09   VBZoom 1.0 - Arbitrary File Upload 4 WEB hish
2002-10-09   Microsoft Content Management Server 2001 - Cross-Site Scripting 3 WEB overclocking_a_la_abuela
2002-10-08   VBZoom 1.0 - SQL Injection 2 WEB hish
2002-10-08   SSGBook 1.0 - Image Tag HTML Injection 3 WEB frog
2002-10-07   Killer Protection 1.0 - Information Disclosure 3 WEB frog
2002-10-04   phpLinkat 0.1 - Multiple Cross-Site Scripting Vulnerabilities 2 WEB Sp.IC
2002-10-03   phpMyNewsletter 0.6.10 - Remote File Inclusion 3 WEB frog
2002-10-03   Michael Schatz Books 0.54/0.6 PostNuke Module - Cross-Site Scripting 4 WEB Pistone
2002-10-02   MySimpleNews 1.0 - Remote Readable Administrator Password 2 WEB frog
2002-10-02   MySimpleNews 1.0 - PHP Injection 3 WEB frog
2002-10-02   phpWebSite 0.8.3 - 'article.php' Cross-Site Scripting 4 WEB Sp.IC
2002-10-02   Midicart PHP - Arbitrary File Upload 3 WEB frog
2002-10-02   Jetty 3.1.6/3.1.7/4.1 Servlet Engine - Arbitrary Command Execution 3 WEB Matt Moore
2002-10-02   Midicart PHP - Information Disclosure 4 WEB frog
2002-10-02   TightAuction 3.0 - Config.INC Information Disclosure 4 WEB frog
2012-10-11   vOlk Botnet Framework 4.0 - Multiple Vulnerabilities 4 WEB Vulnerability-Lab
2012-10-11   Omnistar Document Manager 8.0 - Multiple Vulnerabilities 3 WEB Vulnerability-Lab
2002-10-02   Py-Membres 3.1 - 'index.php' Unauthorized Access 3 WEB frog
2002-09-30   Sun ONE Starter Kit 2.0 / ASTAware SearchDisc 3.1 - Search Engine Directory Traversal 3 WEB ET LoWNOISE
2002-09-29   EmuMail 5.0 Email Form - Script Injection 3 WEB FVS
2002-09-29   EmuMail 5.0 - Web Root Full Path Disclosure 3 WEB FVS
2002-09-28   Jetty 4.1 Servlet Engine - Cross-Site Scripting 2 WEB Skinnay
2002-09-27   vBulletin 2.0.3 - 'calendar.php' Command Execution 4 WEB gosper