2012-09-19
|
|
WordPress Plugin wp-topbar 4.02 - Multiple Vulnerabilities
|
2 |
WEB
|
Blake Entrekin
|
2012-09-19
|
|
SpiceWorks 6.0.00993 - Multiple Script Injection Vulnerabilities
|
2 |
WEB
|
LiquidWorm
|
2002-04-18
|
|
PVote 1.0/1.5 - Poll Content Manipulation
|
1 |
WEB
|
Daniel Nyström
|
2002-04-14
|
|
xNewsletter 1.0 - Form Field Input Validation
|
2 |
WEB
|
Firehack
|
2002-04-14
|
|
XGB 1.2 - Remote Form Field Input Validation
|
2 |
WEB
|
Firehack
|
2002-04-15
|
|
XGB Guestbook 1.2 - User-Embedded Scripting
|
1 |
WEB
|
Firehack
|
2002-04-15
|
|
Burning Board 1.1.1 - 'URL' Manipulation
|
2 |
WEB
|
SeazoN
|
2002-04-13
|
|
SunShop Shopping Cart 1.5/2.x - User-Embedded Scripting
|
2 |
WEB
|
ppp-design
|
2002-04-11
|
|
IBM Informix Web Datablade 4.1x - Page Request SQL Injection
|
2 |
WEB
|
Simon Lodal
|
2002-03-28
|
|
SquirrelMail 1.2.x - Theme Remote Command Execution
|
1 |
WEB
|
pokleyzz sakamaniaka
|
2002-03-28
|
|
PostNuke 0.703 - caselist Arbitrary Module Include
|
2 |
WEB
|
pokleyzz sakamaniaka
|
2002-03-25
|
|
DCShop Beta 1.0 - Form Manipulation
|
2 |
WEB
|
pokleyzz sakamaniaka
|
2002-03-21
|
|
PHP-Nuke 5.x - Error Message Web Root Disclosure
|
2 |
WEB
|
godminus
|
2002-03-13
|
|
PHProjekt 3.1 - Remote File Inclusion
|
2 |
WEB
|
b0iler
|
2012-09-17
|
|
Netsweeper WebAdmin Portal - Multiple Vulnerabilities
|
2 |
WEB
|
Jacob Holcomb
|
2012-09-17
|
|
Auxilium PetRatePro - Multiple Vulnerabilities
|
1 |
WEB
|
DaOne
|
2012-09-17
|
|
webERP 4.08.4 - 'WorkOrderEntry.php' SQL Injection
|
2 |
WEB
|
modpr0be
|
2012-09-17
|
|
luxcal 2.7.0 - Multiple Vulnerabilities
|
2 |
WEB
|
L0n3ly-H34rT
|
2012-09-14
|
|
Trend Micro Interscan Messaging Security Suite - Persistent Cross-Site Scripting / Cross-Site Reques
|
1 |
WEB
|
modpr0be
|
2012-09-14
|
|
NeoBill CMS 0.8 Alpha - Multiple Vulnerabilities
|
2 |
WEB
|
Vulnerability-Lab
|
2012-09-14
|
|
ASTPP VoIP Billing (4cf207a) - Multiple Vulnerabilities
|
2 |
WEB
|
Vulnerability-Lab
|
2002-03-04
|
|
ReBB 1.0 - Image Tag Cross-Agent Scripting
|
2 |
WEB
|
skizzik
|
2002-02-27
|
|
Snitz Forums 2000 3.0/3.1/3.3 - Image Tag Cross-Agent Scripting
|
1 |
WEB
|
Justin
|
2002-02-26
|
|
IkonBoard 2.17/3.0/3.1 - Image Tag Cross-Agent Scripting
|
3 |
WEB
|
godminus
|
2002-02-25
|
|
OpenBB 1.0.x - Image Tag Cross-Agent Scripting
|
2 |
WEB
|
skizzik
|
2002-02-22
|
|
XMB Forum 1.6 pre-beta - Image Tag Script Injection
|
2 |
WEB
|
skizzik
|
2002-02-22
|
|
Powie PForum 1.1x - 'Username' Cross-Site Scripting
|
2 |
WEB
|
Jens Liebchen
|
2002-02-04
|
|
Portix-PHP 0.4 - Cookie Manipulation
|
0 |
WEB
|
frog
|
2002-02-04
|
|
Portix-PHP 0.4 - 'view.php' Directory Traversal
|
0 |
WEB
|
frog
|
2002-02-04
|
|
Portix-PHP 0.4 - 'index.php' Directory Traversal
|
1 |
WEB
|
frog
|
2012-09-12
|
|
Ezylog Photovoltaic Management Server - Multiple Vulnerabilities
|
0 |
WEB
|
Roberto Paleari
|
2012-09-12
|
|
Knowledge Base Enterprise Edition 4.62.0 - SQL Injection
|
1 |
WEB
|
Vulnerability-Lab
|
2012-09-12
|
|
Webify Photo Gallery - Arbitrary File Deletion
|
1 |
WEB
|
JIKO
|
2012-09-12
|
|
Webify Business Directory - Arbitrary File Deletion
|
1 |
WEB
|
JIKO
|
2012-09-12
|
|
Webify eDownloads Cart - Arbitrary File Deletion
|
1 |
WEB
|
JIKO
|
2012-09-12
|
|
Subrion CMS 2.2.1 - Cross-Site Request Forgery (Add Admin)
|
1 |
WEB
|
LiquidWorm
|
2002-01-29
|
|
AHG Search Engine 1.0 - 'search.cgi' Arbitrary Command Execution
|
2 |
WEB
|
Aleksey Sintsov
|
2012-09-11
|
|
akcms 4.2.4 - Information Disclosure
|
2 |
WEB
|
L0n3ly-H34rT
|
2012-09-11
|
|
Webify Blog - Arbitrary File Deletion
|
2 |
WEB
|
JIKO
|
2002-01-02
|
|
WikkiTikkiTavi 0.x - Remote File Inclusion
|
1 |
WEB
|
Scott Moonen
|
2002-01-18
|
|
PHP-Nuke 4.x/5.x - SQL_Debug Information Disclosure
|
2 |
WEB
|
zataz.com
|
2002-01-16
|
|
PHP-Nuke 4.x/5.x - Arbitrary File Inclusion
|
2 |
WEB
|
Handle Nopman
|
2012-09-10
|
|
SiteGo - Remote File Inclusion
|
2 |
WEB
|
L0n3ly-H34rT
|
2012-09-10
|
|
Joomla! Component RokModule 1.1 - 'module' Blind SQL Injection
|
1 |
WEB
|
Yarolinux
|
2012-09-10
|
|
VICIDIAL Call Center Suite 2.2.1-237 - Multiple Vulnerabilities
|
1 |
WEB
|
Ertebat Gostar Co
|
2002-01-09
|
|
Ultimate Bulletin Board 5.4/6.0/6.2 - Cross-Agent Scripting
|
1 |
WEB
|
Obscure
|
2002-01-09
|
|
YaBB 9.1.2000 - Cross-Agent Scripting
|
1 |
WEB
|
Obscure
|
2002-01-06
|
|
PHP-Nuke AddOn PHPToNuke.php 1.0 - Cross-Site Scripting
|
1 |
WEB
|
frog
|
2001-12-18
|
|
Aktivate 1.0 3 - Shopping Cart Cross-Site Scripting
|
1 |
WEB
|
Tamer Sahin
|
2001-12-17
|
|
Agora.CGI 3.x/4.0 - Debug Mode Cross-Site Scripting
|
1 |
WEB
|
Tamer Sahin
|
2001-12-01
|
|
EasyNews 1.5 - NewsDatabase/Template Modification
|
2 |
WEB
|
markus arndt
|
2001-12-03
|
|
PHP-Nuke 1.0/2.5/3.0/4.x/5.x/6.x/7.x - 'modules.php' Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Cabezon Aurélien
|
2001-12-03
|
|
PHP-Nuke 1.0/2.5/3.0/4.x/5.x/6.x/7.x - 'user.php?uname' Cross-Site Scripting
|
2 |
WEB
|
Cabezon Aurélien
|
2001-11-19
|
|
bharat Mediratta Gallery 1.1/1.2 - Directory Traversal
|
2 |
WEB
|
Cabezon Aurelien
|
2012-09-08
|
|
Pinterest Clone Script - Multiple Vulnerabilities
|
2 |
WEB
|
DaOne
|
2012-09-07
|
|
TestLink 1.9.3 - Cross-Site Request Forgery
|
2 |
WEB
|
High-Tech Bridge SA
|
2012-09-07
|
|
Sitecom Home Storage Center - Authentication Bypass
|
2 |
WEB
|
Mattijs van Ommeren
|
2012-09-07
|
|
Clipster Video - Persistent Cross-Site Scripting
|
2 |
WEB
|
DaOne
|
2012-09-07
|
|
Cannonbolt Portfolio Manager 1.0 - Multiple Vulnerabilities
|
1 |
WEB
|
LiquidWorm
|
2001-10-13
|
|
PostNuke 0.6 - User Login
|
1 |
WEB
|
anonymous
|
2012-09-05
|
|
Ektron CMS 8.5.0 - Multiple Vulnerabilities
|
2 |
WEB
|
Sense of Security
|
2012-09-05
|
|
ES Job Search Engine 3.0 - SQL Injection
|
2 |
WEB
|
Vulnerability-Lab
|
2011-12-18
|
|
novell sentinel log manager 1.2.0.1 - Directory Traversal
|
2 |
WEB
|
Andrea Fabrizi
|
2012-09-05
|
|
QNAP Turbo NAS TS-1279U-RP - Multiple Path Injections
|
2 |
WEB
|
Andrea Fabrizi
|
2012-09-05
|
|
MobileCartly 1.0 - Arbitrary File Creation (Metasploit)
|
2 |
WEB
|
Metasploit
|
2001-07-31
|
|
phpBB 1.x - Page Header Arbitrary Command Execution
|
2 |
WEB
|
UnderSpell
|
2012-09-04
|
|
Group Office Calendar - '/calendar/json.php' SQL Injection
|
2 |
WEB
|
Chris Cooper
|
2012-09-04
|
|
Support4Arabs Pages 2.0 - SQL Injection
|
1 |
WEB
|
L0n3ly-H34rT
|
2012-09-04
|
|
Splunk 4.3.3 - Arbitrary File Read
|
2 |
WEB
|
Marcio Almeida
|
2012-09-04
|
|
jira 4.4.3 / greenhopper < 5.9.8 - Multiple Vulnerabilities
|
0 |
WEB
|
Hoyt LLC Research
|
2001-08-03
|
|
phpBB 1.4 - SQL Query Manipulation
|
2 |
WEB
|
kill-9
|
2001-07-27
|
|
PHP-Nuke 5.0 - 'user.php' Form Element Substitution
|
2 |
WEB
|
dinopio
|
2012-09-03
|
|
Sitecom Home Storage Center - Directory Traversal
|
2 |
WEB
|
Mattijs van Ommeren
|
2012-09-03
|
|
Conceptronic Grab'n'Go Network Storage - Directory Traversal
|
2 |
WEB
|
Mattijs van Ommeren
|
2001-07-21
|
|
PHPLib Team PHPLIB 7.2 - Remote Script Execution
|
2 |
WEB
|
giancarlo pinerolo
|
2012-09-02
|
|
AV Arcade Free Edition - 'add_rating.php?id' Blind SQL Injection
|
2 |
WEB
|
DaOne
|
2012-09-02
|
|
Admidio 2.3.5 - Multiple Vulnerabilities
|
2 |
WEB
|
Stefan Schurtz
|
2001-07-06
|
|
Basilix Webmail 1.0 - File Disclosure
|
2 |
WEB
|
karol _
|
2001-07-05
|
|
Cobalt Qube Webmail 1.0 - Directory Traversal
|
1 |
WEB
|
kf
|
2001-07-02
|
|
Citrix Nfuse 1.51 - Webroot Disclosure
|
1 |
WEB
|
sween
|
2012-09-01
|
|
Joomla! Component Spider Calendar - SQL Injection
|
1 |
WEB
|
D4NB4R
|
2012-09-01
|
|
SugarCRM Community Edition 6.5.2 (Build 8410) - Multiple Vulnerabilities
|
2 |
WEB
|
Brendan Coles
|
2012-08-31
|
|
OTRS Open Technology Real Services 3.1.8/3.1.9 - Cross-Site Scripting
|
2 |
WEB
|
Mike Eduard
|
2012-08-31
|
|
vBulletin Yet Another Awards System 4.0.2 - SQL Injection
|
2 |
WEB
|
Backsl@sh/Dan
|
2012-08-30
|
|
Booking System Pro - Cross-Site Request Forgery
|
2 |
WEB
|
DaOne
|
2001-06-13
|
|
SiteWare 2.5/3.0/3.1 Editor Desktop - Directory Traversal
|
2 |
WEB
|
Foundstone Labs
|
2012-08-29
|
|
WordPress Plugin HD Webplayer 1.1 - SQL Injection
|
2 |
WEB
|
JoinSe7en
|
2012-08-29
|
|
Disqus Blog Comments - Blind SQL Injection
|
1 |
WEB
|
Spy_w4r3
|
2012-08-28
|
|
Conceptronic Grab'n'Go and Sitecom Storage Center - Password Disclosure
|
2 |
WEB
|
Mattijs van Ommeren
|
2012-08-28
|
|
RV Shopping Cart - Cross-Site Request Forgery
|
2 |
WEB
|
DaOne
|
2012-08-28
|
|
RV Article Publisher - Cross-Site Request Forgery
|
2 |
WEB
|
DaOne
|
2012-08-28
|
|
mieric AddressBook 1.0 - SQL Injection
|
1 |
WEB
|
Jean Pascal Pereira
|
2012-08-28
|
|
CommPort 1.01 - Multiple Vulnerabilities
|
2 |
WEB
|
Jean Pascal Pereira
|
2012-08-27
|
|
aoop CMS 0.3.6 - Multiple Vulnerabilities
|
0 |
WEB
|
Julien Ahrens
|
2012-08-27
|
|
Elcom CMS 7.4.10 - Community Manager Insecure Arbitrary File Upload
|
1 |
WEB
|
Sense of Security
|
2012-08-27
|
|
xt:Commerce VEYTON 4.0.15 - 'products_name_de' Script Insertion
|
2 |
WEB
|
LiquidWorm
|
2012-08-27
|
|
WordPress Plugin Count Per Day 3.2.3 - Cross-Site Scripting
|
2 |
WEB
|
Crim3R
|
2012-08-27
|
|
Vlinks 2.0.3 - 'id' SQL Injection
|
2 |
WEB
|
JIKO
|
2012-08-27
|
|
web@all CMS 2.0 - Multiple Vulnerabilities
|
2 |
WEB
|
LiquidWorm
|
2012-08-27
|
|
XWiki 4.2-milestone-2 - Multiple Persistent Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Shai rod
|
2012-08-27
|
|
Wiki Web Help 0.3.9 - Multiple Persistent Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Shai rod
|
2001-04-15
|
|
PHPSlash 0.5.3 2/0.6.1 - URL Block Arbitrary File Disclosure
|
2 |
WEB
|
tobozo tagada
|
2012-08-24
|
|
businesswiki 2.5rc3 - Persistent Cross-Site Scripting / Arbitrary file upload
|
1 |
WEB
|
Shai rod
|
2012-08-24
|
|
Easy Banner Pro - 'index.php' Local File Inclusion
|
2 |
WEB
|
Yakir Wizman
|
2012-08-24
|
|
AB Banner Exchange - 'index.php' Local File Inclusion
|
2 |
WEB
|
Yakir Wizman
|
2012-08-24
|
|
Text Exchange Pro - 'index.php' Local File Inclusion
|
2 |
WEB
|
Yakir Wizman
|
2012-08-24
|
|
Ad Manager Pro - Multiple Vulnerabilities
|
2 |
WEB
|
Yakir Wizman
|
2012-08-24
|
|
webpa 1.1.0.1 - Multiple Vulnerabilities
|
2 |
WEB
|
dun
|
2012-08-23
|
|
Ad Manager Pro 4 - Local File Inclusion
|
2 |
WEB
|
CorryL
|
2012-08-23
|
|
op5 Monitoring 5.4.2 - VM Applicance Multiple Vulnerabilities
|
2 |
WEB
|
loneferret
|
2012-08-23
|
|
letodms 3.3.6 - Multiple Vulnerabilities
|
1 |
WEB
|
Shai rod
|
2001-04-02
|
|
PHP-Nuke 1.0/2.5/3.0/4.x - Remote Ad Banner URL Change
|
1 |
WEB
|
Juan Diego
|
2012-08-22
|
|
XODA 0.4.5 - Arbitrary '.PHP' File Upload (Metasploit)
|
1 |
WEB
|
Metasploit
|
2012-08-22
|
|
E-Mail Security Virtual Appliance - 'learn-msg.cgi' Command Injection (Metasploit)
|
1 |
WEB
|
Metasploit
|
2012-08-22
|
|
VamCart 0.9 - Cross-Site Request Forgery
|
2 |
WEB
|
DaOne
|
2012-08-22
|
|
OpenDocMan 1.2.6.1 - Cross-Site Request Forgery (Password Change)
|
1 |
WEB
|
Shai rod
|
2012-08-21
|
|
Clipbucket 2.5 - Blind SQL Injection
|
1 |
WEB
|
loneferret
|
2012-08-21
|
|
Symantec Web Gateway 5.0.3.18 - Arbitrary Password Change
|
1 |
WEB
|
Kc57
|
2012-08-21
|
|
Symantec Web Gateway 5.0.3.18 - Arbitrary Password Change (Metasploit)
|
1 |
WEB
|
Kc57
|
2012-08-21
|
|
Clipbucket 2.5 - Directory Traversal
|
2 |
WEB
|
loneferret
|
2012-08-21
|
|
XODA Document Management System 0.4.5 - Cross-Site Scripting / Arbitrary File Upload
|
2 |
WEB
|
Shai rod
|
2012-08-20
|
|
IOServer 1.0.18.0 - Directory Traversal
|
1 |
WEB
|
hinge
|
2012-08-20
|
|
uebimiau webmail 2.7.2 - Persistent Cross-Site Scripting
|
1 |
WEB
|
Shai rod
|
2012-08-20
|
|
YourArcadeScript 2.4 - 'index.php?id' SQL Injection
|
1 |
WEB
|
DaOne
|
2012-08-20
|
|
Hivemail Webmail - Multiple Persistent Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
Shai rod
|