2009-12-15
|
|
Ez Blog 1.0 - Cross-Site Scripting / Cross-Site Request Forgery
|
1 |
WEB
|
Milos Zivanovic
|
2009-12-15
|
|
LinkPal 1.0 - SQL Injection
|
1 |
WEB
|
R3d-D3V!L
|
2009-12-15
|
|
ClickTrackerASP - 'sitedetails.asp?siteid' SQL Injection
|
1 |
WEB
|
R3d-D3V!L
|
2009-12-15
|
|
DesigNsbyjm CMS 1.0 - 'PageId' SQL Injection
|
1 |
WEB
|
Red-D3v1L
|
2009-12-15
|
|
Ez Faq Maker - Multiple Vulnerabilities
|
1 |
WEB
|
Milos Zivanovic
|
2009-12-15
|
|
SitioOnline - SQL Injection
|
1 |
WEB
|
4lG3r14n0-t3r0
|
2009-12-15
|
|
Ez News Manager / Pro - Cross-Site Request Forgery (Change Admin Password)
|
1 |
WEB
|
Milos Zivanovic
|
2009-12-15
|
|
Linkster - PHP/MySQL SQL Injection
|
1 |
WEB
|
Angela Zhang
|
2009-12-15
|
|
EEGshop 1.2 - SQL Injection
|
1 |
WEB
|
Securitylab.ir
|
2009-12-14
|
|
Oracle E-Business Suite - Multiple Vulnerabilities
|
1 |
WEB
|
Hacktics
|
2009-12-14
|
|
Traidnt Discovery - Cross-Site Request Forgery (Create Staff Account)
|
0 |
WEB
|
G0D-F4Th3r
|
2009-12-14
|
|
WSCreator 1.1 - Blind SQL Injection
|
2 |
WEB
|
Salvatore Fresta
|
2009-12-14
|
|
Tender System 0.9.5b - Local File Inclusion
|
2 |
WEB
|
Packetdeath
|
2009-12-14
|
|
mini Hosting Panel - Cross-Site Request Forgery (Change Admin Settings)
|
2 |
WEB
|
Milos Zivanovic
|
2009-12-14
|
|
Text Exchange Pro - Cross-Site Request Forgery (Add Admin)
|
2 |
WEB
|
bi0
|
2009-12-14
|
|
Easy Banner Pro - Cross-Site Request Forgery (Add Admin)
|
2 |
WEB
|
bi0
|
2009-12-14
|
|
Ez Poll Hoster - Multiple Cross-Site Scripting / Cross-Site Request Forgery Vulnerabilities
|
2 |
WEB
|
Milos Zivanovic
|
2009-12-14
|
|
AdManagerPro - Cross-Site Request Forgery (Add Admin)
|
2 |
WEB
|
bi0
|
2009-12-14
|
|
Smart PHP Subscriber - Multiple Disclosure Vulnerabilities
|
2 |
WEB
|
Milos Zivanovic
|
2009-12-14
|
|
Link Up Gold - Cross-Site Request Forgery (Add Admin)
|
2 |
WEB
|
bi0
|
2009-12-14
|
|
Mail Manager Pro - Cross-Site Request Forgery (Change Admin Password)
|
2 |
WEB
|
Milos Zivanovic
|
2009-12-14
|
|
Zabbix Server - Multiple Vulnerabilities
|
2 |
WEB
|
Nicob
|
2009-12-14
|
|
Zabbix Agent < 1.6.7 - Remote Bypass
|
2 |
WEB
|
Nicob
|
2009-12-14
|
|
NAS Uploader 1.0/1.5 - Arbitrary File Upload
|
2 |
WEB
|
ViRuSMaN
|
2009-12-14
|
|
myPHPupload 0.5.1 - Arbitrary File Upload
|
2 |
WEB
|
ViRuSMaN
|
2009-12-14
|
|
Maxs AJAX File Uploader - Arbitrary File Upload
|
2 |
WEB
|
ViRuSMaN
|
2009-12-14
|
|
Digital Hive - Multiple Vulnerabilities
|
1 |
WEB
|
ViRuSMaN
|
2009-12-14
|
|
[WS] upload - Arbitrary File Upload
|
1 |
WEB
|
ViRuSMaN
|
2009-12-14
|
|
Quartz Concept Content Manager 3.00 - Authentication Bypass
|
0 |
WEB
|
Mr.aFiR
|
2009-12-14
|
|
Redmine 0.8.6 - Cross-Site Request Forgery (Add Admin)
|
1 |
WEB
|
p0deje
|
2009-12-14
|
|
eoCMS 0.9.03 - Remote File Inclusion
|
1 |
WEB
|
1nd0n3s14n l4m3r
|
2009-12-14
|
|
Automne.ws CMS 4.0.0rc2 - Multiple Remote File Inclusions
|
1 |
WEB
|
1nd0n3s14n l4m3r
|
2009-12-14
|
|
Ez Guestbook 1.0 - Multiple Vulnerabilities
|
1 |
WEB
|
Milos Zivanovic
|
2009-12-13
|
|
Chipmunk Board Script 1.x - Multiple Cross-Site Request Forgery Vulnerabilities
|
1 |
WEB
|
Milos Zivanovic
|
2009-12-13
|
|
Ele Medios CMS - SQL Injection
|
0 |
WEB
|
Dr.0rYX & Cr3W-DZ
|
2009-12-13
|
|
Piwigo 2.0.6 - Multiple Vulnerabilities
|
1 |
WEB
|
mr_me
|
2009-12-13
|
|
Frog CMS 0.9.5 - Cross-Site Request Forgery
|
1 |
WEB
|
Milos Zivanovic
|
2009-12-13
|
|
Acc PHP eMail 1.1 - Cross-Site Request Forgery
|
1 |
WEB
|
bi0
|
2009-12-10
|
|
phpLDAPadmin - Local File Inclusion
|
1 |
WEB
|
ipsecs
|
2009-12-13
|
|
SpireCMS 2.0 - SQL Injection
|
1 |
WEB
|
Dr.0rYX & Cr3W-DZ
|
2009-12-13
|
|
Joomla! Component com_virtuemart 1.0 - 'Product_ID' SQL Injection
|
1 |
WEB
|
SOA Crew
|
2009-12-13
|
|
AccStatistics 1.1 - Cross-Site Request Forgery (Change Admin Settings)
|
1 |
WEB
|
Milos Zivanovic
|
2009-12-13
|
|
Interspire Shopping Cart - Full Path Disclosure
|
2 |
WEB
|
Mr.aFiR
|
2009-12-13
|
|
Uploadscript 1.0 - Multiple Vulnerabilities
|
2 |
WEB
|
Mr.aFiR
|
2009-12-13
|
|
Acc Auto Dealer Script 5.0 - Persistent Cross-Site Scripting / SQL Backup
|
2 |
WEB
|
bi0
|
2009-12-12
|
|
ZeeCareers 2.x - PHP HR Manager Website (Cross-Site Scripting / Authentication Bypass)
|
2 |
WEB
|
bi0
|
2009-12-12
|
|
Miniweb 2.0 - Full Path Disclosure
|
2 |
WEB
|
Salvatore Fresta
|
2009-12-11
|
|
B2C Booking Centre Systems - SQL Injection
|
2 |
WEB
|
Salvatore Fresta
|
2009-12-11
|
|
XAMPP 1.7.2 - Change Administrative Password
|
2 |
WEB
|
bi0
|
2009-12-11
|
|
phpCollegeExchange 0.1.5c - Multiple SQL Injections
|
2 |
WEB
|
Salvatore Fresta
|
2009-12-11
|
|
Illogator Shop - SQL Injection Bypass
|
2 |
WEB
|
bi0
|
2009-12-11
|
|
Chipmunk NewsLetter - Cross-Site Request Forgery
|
2 |
WEB
|
Milos Zivanovic
|
2005-05-07
|
|
Sun Solaris AnswerBook2 - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Thomas Liam Romanis
|
2009-12-11
|
|
E-Store - SQL Injection
|
0 |
WEB
|
Salvatore Fresta
|
2009-12-11
|
|
Digital Scribe 1.4.1 - Multiple SQL Injections
|
2 |
WEB
|
Salvatore Fresta
|
2009-12-11
|
|
oBlog - Persistent Cross-Site Scripting / Cross-Site Request Forgery / Admin Brute Force
|
0 |
WEB
|
Milos Zivanovic
|
2009-12-10
|
|
Nuggetz CMS 1.0 - Remote Code Execution
|
2 |
WEB
|
Amol Naik
|
2009-12-11
|
|
Billwerx RC 3.1 - Multiple Vulnerabilities
|
2 |
WEB
|
mr_me
|
2009-12-10
|
|
OPMANAGER - Blind SQL Injection / XPath Injection
|
1 |
WEB
|
Asheesh kumar Mani Tripathi
|
2009-12-10
|
|
PHP Inventory 1.2 - Authentication Bypass
|
2 |
WEB
|
mr_me
|
2009-12-10
|
|
Joomla! Component Mamboleto 2.0 RC3 - Remote File Inclusion
|
2 |
WEB
|
Don Tukulesto
|
2009-12-10
|
|
Free ASP Upload - Arbitrary File Upload
|
2 |
WEB
|
Mr.aFiR
|
2009-12-10
|
|
Joomla! Component com_jphoto - 'id' SQL Injection
|
1 |
WEB
|
kaMtiEz
|
2009-12-10
|
|
Joomla! Component com_jsjobs 1.0.5.6 - SQL Injection
|
1 |
WEB
|
kaMtiEz
|
2009-12-09
|
|
TestLink Test Management and Execution System - Multiple Cross-Site Scripting / Injection Vulnerabil
|
2 |
WEB
|
Core Security
|
2009-12-09
|
|
Real Estate Portal X.0 - Authentication Bypass
|
2 |
WEB
|
AnTi SeCuRe
|
2009-12-08
|
|
AlefMentor 2.0 < 5.0 - 'id' SQL Injection
|
1 |
WEB
|
Red-D3v1L
|
2009-12-08
|
|
Alqatari group 1.0 < 5.0 - 'id' SQL Injection
|
0 |
WEB
|
Red-D3v1L
|
2009-12-08
|
|
Joomla! Component com_job - 'showMoreUse' SQL Injection
|
1 |
WEB
|
Palyo34
|
2009-12-08
|
|
Viscacha 0.8 Gold - Persistent Cross-Site Scripting
|
1 |
WEB
|
mr_me
|
2009-12-07
|
|
MarieCMS 0.9 - Local File Inclusion / Remote File Inclusion / Cross-Site Scripting
|
2 |
WEB
|
Amol Naik
|
2009-12-08
|
|
IRAN N.E.T E-Commerce Group - SQL Injection
|
2 |
WEB
|
Dr.0rYX & Cr3W-DZ
|
2009-12-07
|
|
Barracuda IMFirewall 620 - Multiple Vulnerabilities
|
2 |
WEB
|
Global-Evolution
|
2009-12-07
|
|
SiSplet CMS 2008-01-24 - Multiple Remote File Inclusions
|
2 |
WEB
|
cr4wl3r
|
2009-12-07
|
|
Chipmunk NewsLetter - Persistent Cross-Site Scripting
|
2 |
WEB
|
mr_me
|
2009-12-06
|
|
iWeb HTTP Server - Directory Traversal
|
2 |
WEB
|
mr_me
|
2009-12-06
|
|
Elkagroup - SQL Injection
|
2 |
WEB
|
SadHaCkEr
|
2009-12-06
|
|
AROUNDMe 1.1 - 'language_path' Remote File Inclusion
|
2 |
WEB
|
cr4wl3r
|
2009-12-05
|
|
WordPress Plugin Image Manager - Arbitrary File Upload
|
2 |
WEB
|
DigitALL
|
2009-12-05
|
|
phpShop 0.8.1 - Multiple Vulnerabilities
|
2 |
WEB
|
Andrea Fabrizi
|
2009-12-04
|
|
Joomla! Component yt_color YOOOtheme - Cross-Site Scripting / Cookie Stealing
|
1 |
WEB
|
andresg888
|
2009-12-04
|
|
BM Classifieds Ads - SQL Injection
|
1 |
WEB
|
Dr.0rYX & Cr3W-DZ
|
2009-12-04
|
|
Joomla! Component com_joomgallery 1.5.x - &func Incorrect Flood Filter
|
1 |
WEB
|
Jbyte
|
2009-12-04
|
|
Achievo 1.4.2 - Persistent Cross-Site Scripting
|
1 |
WEB
|
Nahuel Grisolia
|
2009-12-04
|
|
Achievo 1.4.2 - Arbitrary File Upload
|
2 |
WEB
|
Nahuel Grisolia
|
2009-12-04
|
|
UBBCentral UBB.Threads 7.5.4 2 - Multiple File Inclusions
|
2 |
WEB
|
R3VAN_BASTARD
|
2009-12-04
|
|
Invision Power Board 2.3.6/3.0.4 - Local File Inclusion / SQL Injection
|
2 |
WEB
|
Dawid Golunski
|
2009-12-04
|
|
427BB 2.3.2 - SQL Injection
|
2 |
WEB
|
cr4wl3r
|
2009-12-04
|
|
GeN3 forum 1.3 - SQL Injection
|
1 |
WEB
|
Dr.0rYX & Cr3W-DZ
|
2009-12-03
|
|
Vivid Ads Shopping Cart - 'prodid' SQL Injection
|
1 |
WEB
|
Yakir Wizman
|
2009-11-24
|
|
OSI Codes PHP Live! Support 3.1 - Remote File Inclusion
|
1 |
WEB
|
Don Tukulesto
|
2009-11-27
|
|
PHP-Nuke 8.0 - News Module Cross-Site Scripting / HTML Code Injection
|
1 |
WEB
|
K053
|
2009-12-01
|
|
Apache Tomcat 3.2.1 - 404 Error Page Cross-Site Scripting
|
1 |
WEB
|
MustLive
|
2009-12-01
|
|
Joomla! Component ProofReader 1.0 RC6 - Cross-Site Scripting
|
1 |
WEB
|
MustLive
|
2009-12-03
|
|
Theeta CMS - Multiple Vulnerabilities
|
1 |
WEB
|
c0dy
|
2009-11-25
|
|
Power BB 1.8.3 - Remote File Inclusions
|
1 |
WEB
|
DigitALL
|
2009-12-03
|
|
SAPID SHOP 1.3 - Remote File Inclusion
|
1 |
WEB
|
cr4wl3r
|
2009-09-07
|
|
MundiMail 0.8.2 - Remote Code Execution
|
2 |
WEB
|
Dedalo
|
2009-11-25
|
|
OpenCSP - Multiple Remote File Inclusions
|
2 |
WEB
|
EANgel
|
2009-12-01
|
|
Public Media Manager - Remote File Inclusion
|
1 |
WEB
|
cr4wl3r
|
2009-11-30
|
|
ita-forum 5.1.32 - SQL Injection
|
2 |
WEB
|
BAYBORA
|
2009-12-03
|
|
Thatware 0.5.3 - Multiple Remote File Inclusions
|
2 |
WEB
|
cr4wl3r
|
2009-12-03
|
|
Huawei MT882 Modem/Router - Multiple Vulnerabilities
|
2 |
WEB
|
DecodeX01
|
2009-12-02
|
|
Kide Shoutbox 0.4.6 - Cross-Site Scripting / AXFR
|
1 |
WEB
|
andresg888
|
2009-12-02
|
|
Simple Machines Forum (SMF) 1.1.10/2.0 RC2 - Multiple Vulnerabilities
|
2 |
WEB
|
SimpleAudit Team
|
2009-12-01
|
|
Joomla! Component MojoBlog 0.15 - Multiple Remote File Inclusions
|
2 |
WEB
|
kaMtiEz
|
2009-12-01
|
|
Joomla! Component Joaktree 1.0 - SQL Injection
|
2 |
WEB
|
Don Tukulesto
|
2009-12-01
|
|
Quate CMS 0.3.5 - Local/Remote File Inclusion
|
1 |
WEB
|
cr4wl3r
|
2009-12-01
|
|
ISPworker 1.23 - Remote File Disclosure
|
1 |
WEB
|
cr4wl3r
|
2009-12-01
|
|
dotDefender 3.8-5 - Remote Command Execution
|
2 |
WEB
|
John Dos
|
2009-12-01
|
|
Robert Zimmerman PHP / MySQL Scripts - Authentication Bypass
|
2 |
WEB
|
DUNDEE
|
2009-12-01
|
|
Ciamos CMS 0.9.5 - 'module_path' Remote File Inclusion
|
2 |
WEB
|
cr4wl3r
|
2009-11-30
|
|
WordPress Plugin WP-Polls 2.x - Incorrect Flood Filter
|
2 |
WEB
|
Jbyte
|
2009-11-30
|
|
Xxasp 3.3.2 - SQL Injection
|
2 |
WEB
|
Secu_lab_ir
|
2009-11-30
|
|
Eshopbuilde CMS - SQL Injection
|
2 |
WEB
|
Isfahan
|
2009-11-30
|
|
Joomla! Component Quick News - SQL Injection
|
2 |
WEB
|
Don Tukulesto
|
2009-11-30
|
|
Joomla! Component MusicGallery - SQL Injection
|
2 |
WEB
|
Don Tukulesto
|
2009-11-29
|
|
AdaptCMS Lite 1.5 - Remote File Inclusion
|
2 |
WEB
|
v3n0m
|
2009-11-29
|
|
Sugar CRM 5.5.0.rc2/5.2.0j - Multiple Vulnerabilities
|
1 |
WEB
|
waraxe
|
2009-11-27
|
|
Micronet SP1910 Data Access Controller UI - Cross-Site Scripting / HTML Code Injection
|
2 |
WEB
|
K053
|
2009-11-29
|
|
SweetRice 0.5.3 - Remote File Inclusion
|
2 |
WEB
|
cr4wl3r
|
2009-11-28
|
|
phpBazar 2.1.1fix - 'cid' SQL Injection
|
2 |
WEB
|
MizoZ
|
2009-11-28
|
|
Uploaderr 1.0 File Hosting Script - Arbitrary File Upload
|
2 |
WEB
|
DigitALL
|
2009-11-28
|
|
Joomla! Component com_lyftenbloggie 1.04 - SQL Injection
|
2 |
WEB
|
kaMtiEz
|
2009-11-26
|
|
Flashden - Multiple Arbitrary File Uploads
|
1 |
WEB
|
DigitALL
|