2003-02-25
|
|
CuteNews 0.88 - 'search.php' Remote File Inclusion
|
5 |
WEB
|
Over_G
|
2003-02-25
|
|
CuteNews 0.88 - 'shownews.php' Remote File Inclusion
|
5 |
WEB
|
Over_G
|
2003-02-24
|
|
WihPhoto 0.86 dev - 'sendphoto.php' File Disclosure
|
5 |
WEB
|
frog
|
2003-02-24
|
|
Mambo Site Server 4.0.12 RC2 - Cookie Validation
|
5 |
WEB
|
Simen Bergo
|
2003-02-24
|
|
GONiCUS System Administrator 1.0 - Remote File Inclusion
|
5 |
WEB
|
Karol Wiesek
|
2003-02-23
|
|
Nuked-klaN 1.3 - Remote Information Disclosure
|
5 |
WEB
|
gregory Le Bras
|
2003-02-20
|
|
myPHPNuke 1.8.8 - 'links.php' Cross-Site Scripting
|
5 |
WEB
|
Tacettin Karadeniz
|
2003-02-19
|
|
PHPBB2 - 'Page_Header.php' SQL Injection
|
5 |
WEB
|
David Zentner
|
2003-02-19
|
|
PHP-Nuke 5.6/6.0 - Search Engine SQL Injection
|
5 |
WEB
|
David Zentner
|
2003-02-19
|
|
cPanel 5.0 - 'Guestbook.cgi' Remote Command Execution (4)
|
5 |
WEB
|
pokleyzz
|
2003-02-19
|
|
cPanel 5.0 - 'Guestbook.cgi' Remote Command Execution (3)
|
5 |
WEB
|
SPAX
|
2003-02-19
|
|
cPanel 5.0 - 'Guestbook.cgi' Remote Command Execution (2)
|
5 |
WEB
|
CaMaLeoN
|
2003-02-19
|
|
cPanel 5.0 - 'Guestbook.cgi' Remote Command Execution (1)
|
5 |
WEB
|
bob
|
2003-02-18
|
|
D-Forum 1 - 'footer' Remote File Inclusion
|
5 |
WEB
|
frog
|
2003-02-18
|
|
D-Forum 1 - 'header' Remote File Inclusion
|
5 |
WEB
|
frog
|
2003-02-15
|
|
DotBr 0.1 - 'Exec.php3' Remote Command Execution
|
5 |
WEB
|
frog
|
2003-02-15
|
|
DotBr 0.1 - 'System.php3' Remote Command Execution
|
5 |
WEB
|
frog
|
2003-02-15
|
|
PHP-Board 1.0 - User Password Disclosure
|
5 |
WEB
|
frog
|
2003-02-09
|
|
Cedric Email Reader 0.4 - Global Configuration Script Remote File Inclusion
|
5 |
WEB
|
MGhz
|
2003-02-09
|
|
Cedric Email Reader 0.2/0.3 - Skin Configuration Script Remote File Inclusion
|
5 |
WEB
|
MGhz
|
2002-04-16
|
|
FileSeek - CGI Script File Disclosure
|
5 |
WEB
|
Thijs Bosschert
|
2002-04-16
|
|
FileSeek CGI Script - Remote Command Execution
|
5 |
WEB
|
Thijs Bosschert
|
2003-02-04
|
|
TOPO 1.41 - Full Path Disclosure
|
5 |
WEB
|
Rynho Zeros Web
|
2012-10-24
|
|
Bitweaver 2.8.1 - Multiple Vulnerabilities
|
5 |
WEB
|
Trustwave's SpiderLabs
|
2003-02-03
|
|
PHP-Nuke 5.x/6.0 - Avatar HTML Injection
|
6 |
WEB
|
delusion
|
2003-02-03
|
|
PHPMyShop 1.0 - 'compte.php' SQL Injection
|
5 |
WEB
|
frog
|
2003-02-03
|
|
myphpPageTool 0.4.3-1 - Remote File Inclusion
|
6 |
WEB
|
frog
|
2003-01-30
|
|
Nukebrowser 2.x - Remote File Inclusion
|
5 |
WEB
|
Havenard
|
2000-09-13
|
|
MultiHTML 1.5 - File Disclosure
|
6 |
WEB
|
Niels Heinen
|
2003-01-25
|
|
FTLS Guestbook 1.1 - Script Injection
|
6 |
WEB
|
BrainRawt
|
2003-01-24
|
|
GNU Mailman 2.1 - Error Page Cross-Site Scripting
|
5 |
WEB
|
webmaster@procheckup.com
|
2003-01-24
|
|
GNU Mailman 2.1 - 'email' Cross-Site Scripting
|
5 |
WEB
|
webmaster@procheckup.com
|
2003-01-22
|
|
PHPOutsourcing Zorum 3.x - Remote File Inclusion Command Execution
|
5 |
WEB
|
MGhz
|
2003-01-22
|
|
YABB SE 0.8/1.4/1.5 - 'Packages.php' Remote File Inclusion
|
5 |
WEB
|
spabam
|
2003-01-20
|
|
MyRoom 3.5 GOLD - 'save_item.php' Arbitrary File Upload
|
5 |
WEB
|
frog
|
2003-01-17
|
|
phpBB 2.0.3 - 'privmsg.php' SQL Injection
|
5 |
WEB
|
Ulf Harnhammar
|
2012-10-23
|
|
ClanSphere 2011.3 - 'cs_lang' Cookie Local File Inclusion
|
5 |
WEB
|
blkhtc0rp
|
2003-01-16
|
|
PHPLinks 2.1.2 - Add Site HTML Injection
|
5 |
WEB
|
JeiAr
|
2003-01-15
|
|
PHP TopSites 2.0/2.2 - 'edit.php' SQL Injection
|
4 |
WEB
|
Cyberarmy Application
|
2003-01-15
|
|
PHP TopSites 2.0/2.2 - 'help.php' Cross-Site Scripting
|
5 |
WEB
|
Cyberarmy Application
|
2003-01-15
|
|
PHP TopSites 2.0/2.2 - HTML Injection
|
5 |
WEB
|
Cyberarmy Application
|
2003-01-13
|
|
Psunami Bulletin Board 0.x - 'Psunami.cgi' Remote Command Execution (2)
|
6 |
WEB
|
spabam
|
2003-01-13
|
|
Psunami Bulletin Board 0.x - 'Psunami.cgi' Remote Command Execution (1)
|
6 |
WEB
|
dodo
|
2003-01-14
|
|
vSignup 2.1 - SQL Injection
|
5 |
WEB
|
frog
|
2003-01-14
|
|
vAuthenticate 2.8 - SQL Injection
|
5 |
WEB
|
frog
|
2003-01-14
|
|
Geeklog 1.3.7 - 'Homepage User' HTML Injection
|
5 |
WEB
|
snooq
|
2003-01-14
|
|
Geeklog 1.3.7 - 'comment.php?cid' Cross-Site Scripting
|
5 |
WEB
|
snooq
|
2003-01-14
|
|
Geeklog 1.3.7 - 'users.php?uid' Cross-Site Scripting
|
5 |
WEB
|
snooq
|
2003-01-14
|
|
Geeklog 1.3.7 - 'profiles.php' Multiple Cross-Site Scripting Vulnerabilities
|
5 |
WEB
|
snooq
|
2012-10-22
|
|
ATutor 1.2 - Multiple Vulnerabilities
|
5 |
WEB
|
High-Tech Bridge SA
|
2012-10-22
|
|
subrion CMS 2.2.1 - Multiple Vulnerabilities
|
5 |
WEB
|
High-Tech Bridge SA
|
2012-10-22
|
|
WordPress Plugin social discussions 6.1.1 - Multiple Vulnerabilities
|
5 |
WEB
|
waraxe
|
2012-10-22
|
|
Schoolhos CMS Beta 2.29 - 'id' SQL Injection
|
5 |
WEB
|
Cumi
|
2012-10-22
|
|
WordPress Plugin White Label CMS 1.5 - Cross-Site Request Forgery / Persistent Cross-Site Scripting
|
4 |
WEB
|
pcsjj
|
2012-10-22
|
|
Joomla! Component com_kunena - 'search' SQL Injection
|
5 |
WEB
|
D35m0nd142
|
2012-10-22
|
|
Joomla! Component com_commedia - 'task' SQL Injection
|
5 |
WEB
|
D4NB4R
|
2012-10-22
|
|
Movable Type Pro 5.13en - Persistent Cross-Site Scripting
|
5 |
WEB
|
sqlhacker
|
2003-01-13
|
|
W-Agora 4.1.6 - 'modules.php?File' Traversal Arbitrary File Access
|
5 |
WEB
|
sonyy
|
2003-01-13
|
|
W-Agora 4.1.6 - 'index.php?bn' Traversal Arbitrary File Access
|
5 |
WEB
|
sonyy
|
2003-01-13
|
|
PHPPass 2 - 'AccessControl.php' SQL Injection
|
5 |
WEB
|
frog
|
2003-01-12
|
|
YABB 1.4.1 SE - 'Reminder.php' SQL Injection
|
5 |
WEB
|
VOID.AT Security
|
2003-01-09
|
|
FormMail-Clone - Cross-Site Scripting
|
5 |
WEB
|
Rynho Zeros Web
|
2003-01-06
|
|
S8Forum 3.0 - Remote Command Execution
|
5 |
WEB
|
nmsh_sa
|
2003-01-06
|
|
myPHPNuke 1.8.8 - 'Default_Theme' Cross-Site Scripting
|
5 |
WEB
|
Mindwarper
|
2003-01-06
|
|
DCP-Portal 5.0.1 - 'lib.php?Root' Remote File Inclusion
|
5 |
WEB
|
frog
|
2003-01-06
|
|
DCP-Portal 5.0.1 - 'editor.php?Root' Remote File Inclusion
|
5 |
WEB
|
frog
|
2003-01-06
|
|
OpenTopic 2.3.1 - Private Message HTML Injection
|
5 |
WEB
|
frog
|
2003-01-02
|
|
N/X Web Content Management System 2002 Prerelease 1 - 'datasets.php?c_path' Local File Inclusion
|
5 |
WEB
|
frog
|
2003-01-02
|
|
N/X Web Content Management System 2002 Prerelease 1 - 'menu.inc.php?c_path' Remote File Inclusion
|
5 |
WEB
|
frog
|
2002-12-31
|
|
PEEL 1.0b - Remote File Inclusion
|
5 |
WEB
|
frog
|
2002-12-22
|
|
CHETCPASSWD 1.12 - Shadow File Disclosure
|
4 |
WEB
|
Victor Pereira
|
2002-12-22
|
|
W-Agora 4.1.6 - 'EditForm.php' Cross-Site Scripting
|
5 |
WEB
|
xatr0z
|
2002-12-20
|
|
SPGPartenaires 3.0.1 - 'delete.php' SQL Injection
|
5 |
WEB
|
frog
|
2002-12-20
|
|
SPGPartenaires 3.0.1 - 'ident.php' SQL Injection
|
5 |
WEB
|
frog
|
2002-12-16
|
|
Captaris Infinite WebMail 3.61.5 - HTML Injection
|
5 |
WEB
|
Pedram Amini
|
2002-12-16
|
|
PHP-Nuke 6.0 - Multiple Cross-Site Scripting Vulnerabilities
|
5 |
WEB
|
frog
|
2002-12-16
|
|
PHP-Nuke 6.0 - Multiple Full Path Disclosure Vulnerabilities
|
5 |
WEB
|
frog
|
2012-10-19
|
|
CMSQLite 1.3.2 - Multiple Vulnerabilities
|
5 |
WEB
|
Vulnerability-Lab
|
2012-10-19
|
|
Joomla! Component com_tag - 'tag' SQL Injection
|
5 |
WEB
|
D4NB4R
|
2012-10-19
|
|
Joomla! Component com_fss 1.9.1.1447 - SQL Injection
|
5 |
WEB
|
D4NB4R
|
2012-10-19
|
|
ManageEngine Security Manager Plus 5.5 build 5505 - Directory Traversal
|
4 |
WEB
|
xistence
|
2002-12-16
|
|
PHP-Nuke 6.0 - Web Mail Script Injection
|
5 |
WEB
|
Ulf Harnhammar
|
2002-12-16
|
|
PHP-Nuke 6.0 - Web Mail Remote PHP Script Execution
|
5 |
WEB
|
Ulf Harnhammar
|
2002-12-14
|
|
MyPHPSoft MyPHPLinks 2.1.9/2.2 - SQL Injection Administration Bypassing
|
5 |
WEB
|
frog
|
2002-12-12
|
|
Mambo Site Server 4.0.11 - Full Path Disclosure
|
6 |
WEB
|
euronymous
|
2002-12-12
|
|
Mambo Site Server 4.0.11 - 'PHPInfo.php' Information Disclosure
|
4 |
WEB
|
euronymous
|
2002-12-12
|
|
Deerfield VisNetic WebSite 3.5.13.1 - Cross-Site Scripting
|
5 |
WEB
|
Ory Segal
|
2002-11-09
|
|
Xoops 1.3.5 - Private Message System Font Attributes HTML Injection
|
5 |
WEB
|
fred magistrat
|
2002-11-09
|
|
vBulletin 2.2.7/2.2.8 - HTML Injection
|
5 |
WEB
|
Dorin Balanica
|
2002-11-08
|
|
Ultimate PHP Board Board 1.0 final Beta - 'viewtopic.php' Cross-Site Scripting
|
5 |
WEB
|
euronymous
|
2002-11-08
|
|
Ultimate PHP Board 1.0 final Beta - 'viewtopic.php' Directory Contents Browsing
|
5 |
WEB
|
euronymous
|
2002-12-06
|
|
APBoard 2.0 2 - Unauthorized Thread Reading
|
5 |
WEB
|
DNA ESC
|
2012-10-18
|
|
WordPress Plugin FireStorm Professional Real Estate 2.06.01 - SQL Injection
|
6 |
WEB
|
Ashiyane Digital Security Team
|
2012-10-18
|
|
OTRS 3.1 - Persistent Cross-Site Scripting
|
6 |
WEB
|
Mike Eduard
|
2002-12-03
|
|
phpBB 2.0.3 - 'search.php' Cross-Site Scripting
|
5 |
WEB
|
f_a_a
|
2002-11-28
|
|
YaBB 1 Gold SP 1 - 'YaBB.pl' Cross-Site Scripting
|
5 |
WEB
|
Fabricio Angeletti
|
2002-11-27
|
|
BizDesign ImageFolio 2.x/3.0.1 - 'nph-build.cgi' Cross-Site Scripting
|
5 |
WEB
|
SecurityTracker.com
|
2002-11-27
|
|
BizDesign ImageFolio 2.x/3.0.1 - 'imageFolio.cgi?direct' Cross-Site Scripting
|
5 |
WEB
|
SecurityTracker.com
|
2002-11-26
|
|
News Evolution 1.0/2.0 - Include Undefined Variable Command Execution
|
4 |
WEB
|
frog
|
2002-11-26
|
|
FreeNews 2.1 - Include Undefined Variable Command Execution
|
4 |
WEB
|
frog
|
2002-11-25
|
|
Working Resources BadBlue 1.7.1 - Search Page Cross-Site Scripting
|
5 |
WEB
|
Matthew Murphy
|
2002-11-25
|
|
Web Server Creator Web Portal 0.1 - Remote File Inclusion
|
5 |
WEB
|
frog
|
2002-11-25
|
|
phpBB 2.0.3 - Script Injection
|
5 |
WEB
|
Pete Foster
|
2002-11-25
|
|
vBulletin 2.0.x/2.2.x - 'members2.php' Cross-Site Scripting
|
5 |
WEB
|
Sp.IC
|
2012-10-17
|
|
Oracle WebCenter Sites (FatWire Content Server) - Multiple Vulnerabilities
|
5 |
WEB
|
SEC Consult
|
2012-10-17
|
|
ManageEngine Support Center Plus 7908 - Multiple Vulnerabilities
|
5 |
WEB
|
xistence
|
2012-10-17
|
|
Symphony CMS 2.3 - Multiple Vulnerabilities
|
5 |
WEB
|
Wireghoul
|
2012-10-17
|
|
Sisfokol 4.0 - Arbitrary File Upload
|
5 |
WEB
|
cr4wl3r
|
2002-11-25
|
|
PHP-Nuke 5.x/6.0/6.5 Beta 1 - Multiple Cross-Site Scripting Vulnerabilities
|
5 |
WEB
|
Matthew Murphy
|
2002-11-22
|
|
vBulletin 2.0/2.2.x - 'memberlist.php' Cross-Site Scripting
|
5 |
WEB
|
Sp.IC
|
2002-11-13
|
|
phpBB Advanced Quick Reply Hack 1.0/1.1 - Remote File Inclusion
|
5 |
WEB
|
Hai Nam Luke
|
2002-11-12
|
|
W3Mail 1.0.6 - File Disclosure
|
5 |
WEB
|
Tim Brown
|
2002-11-11
|
|
EZ Systems HTTPBench 1.1 - Information Disclosure
|
5 |
WEB
|
Tacettin Karadeniz
|
2012-10-16
|
|
Visual Tools DVR3.0.6.16_ vx series 4.2.19.2 - Multiple Vulnerabilities
|
5 |
WEB
|
Andrea Fabrizi
|
2012-10-16
|
|
Joomla! Component com_icagenda - 'id' Multiple Vulnerabilities
|
5 |
WEB
|
Dark-Puzzle
|
2012-10-16
|
|
MyBB Profile Albums Plugin 0.9 - 'albums.php?album' SQL Injection
|
5 |
WEB
|
Zixem
|
2002-11-07
|
|
CuteCast 1.2 - User Credential Disclosure
|
5 |
WEB
|
Zero-X
|
2012-10-15
|
|
BigPond 3G21WB - Multiple Vulnerabilities
|
4 |
WEB
|
Roberto Paleari
|
2012-10-15
|
|
airVisionNVR 1.1.13 - 'readfile()' Disclosure / SQL Injection
|
5 |
WEB
|
pennyGrit
|
2012-10-15
|
|
Cartweaver 3 - Local File Inclusion
|
5 |
WEB
|
HaxOr
|
2002-11-01
|
|
ION Script 1.4 - Remote File Disclosure
|
6 |
WEB
|
Zero X
|
2002-11-01
|
|
PHP-Nuke 5.6 - 'modules.php' SQL Injection
|
5 |
WEB
|
kill9
|
2002-11-01
|
|
Jason Orcutt Prometheus 3.0/4.0/6.0 - Remote File Inclusion
|
5 |
WEB
|
Karol Wiesek
|
2002-10-28
|
|
Benjamin Lefevre Dobermann Forum 0.x - 'newtopic.php?subpath' Remote File Inclusion
|
5 |
WEB
|
frog
|
2002-10-28
|
|
Benjamin Lefevre Dobermann Forum 0.x - 'index.php?subpath' Remote File Inclusion
|
5 |
WEB
|
frog
|