Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2009-11-26   Cacti 0.8.7e - Multiple Vulnerabilities 1 WEB Moritz Naumann
2009-11-25   phpBazar-2.1.1fix - Remote Administration-Panel 1 WEB kurdish hackers team
2009-11-25   Joomla! Component com_gcalendar 1.1.2 - 'gcid' SQL Injection 1 WEB Yogyacarderlink Crew
2009-11-25   Radio istek scripti 2.5 - Remote Configuration Disclosure 0 WEB kurdish hackers team
2009-11-25   Fake Hit Generator 2.2 - Arbitrary File Upload 2 WEB DigitALL
2009-11-25   WordPress Plugin WP-Cumulus 1.20 - Full Path Disclosure / Cross-Site Scripting 2 WEB MustLive
2009-11-25   Joomla! Component com_mygallery - 'cid' SQL Injection 2 WEB S@BUN
2006-05-26   MDaemon WebAdmin 2.0.x - SQL Injection 2 WEB KOUSULIN
2009-11-24   Quick.Cart 3.4 / Quick.CMS 2.4 - Cross-Site Request Forgery 2 WEB Alice Kaerast
2009-11-24   W3infotech - Authentication Bypass 2 WEB ViRuS_HiMa
2009-11-24   pointcomma 3.8b2 - Remote File Inclusion 2 WEB cr4wl3r
2009-11-24   phptraverse 0.8.0 - Remote File Inclusion 1 WEB cr4wl3r
2009-11-24   outreach project tool 1.2.6 - Remote File Inclusion 1 WEB cr4wl3r
2009-11-24   NukeHall 0.3 - Multiple Remote File Inclusions 2 WEB cr4wl3r
2009-11-24   kr-web 1.1b2 - Remote File Inclusion 2 WEB cr4wl3r
2009-11-23   Joomla! Component mygallery - 'farbinform_krell' SQL Injection 2 WEB Manas58 BAYBORA
2009-10-14   Everfocus 1.4 - EDSR Remote Authentication Bypass 2 WEB Andrea Fabrizi
2009-11-21   Joomla! Component Com_Joomclip - 'cat' SQL Injection 2 WEB 599eme Man
2009-11-21   Betsy CMS versions 3.5 - Local File Inclusion 1 WEB MizoZ
2009-11-19   Joomla! 1.5.12 TinyMCE - Remote Code Execution (via Arbitrary File Upload) 2 WEB daath
2005-06-15   Bitrix Site Manager 4.0.5 - Remote File Inclusion 1 WEB Don Tukulesto
2009-11-16   Simplog 0.9.3.2 - Multiple Vulnerabilities 1 WEB Amol Naik
2009-10-20   Joomla! / Mambo Component D4J eZine 2.1 - Remote File Inclusion 1 WEB kaMtiEz
2009-11-18   Joomla! Extension iF Portfolio Nexus - SQL Injection 0 WEB 599eme Man
2009-11-18   Xerver 4.31/4.32 - HTTP Response Splitting 1 WEB s4squatch
2009-11-16   phpMyBackupPro - Arbitrary File Download 1 WEB Amol Naik
2009-11-18   Shoutbox 1.0 - HTML / Cross-Site Scripting Injection 1 WEB SkuLL-HackeR
2009-11-17   ActiveBids - 'default.asp' Blind SQL Injection 1 WEB Hussin X
2009-11-17   ActiveTrade 2.0 - 'default.asp' Blind SQL Injection 1 WEB Hussin X
2009-11-17   TelebidAuctionScript - 'aid' Blind SQL Injection 0 WEB Hussin X
2009-11-17   JBS 2.0 / JBSX - Administration Panel Bypass / Arbitrary File Upload 1 WEB blackenedsecurity
2009-11-16   Cifshanghai - 'chanpin_info.php' CMS SQL Injection 1 WEB ProF.Code
2009-11-16   telepark wiki 2.4.23 - Multiple Vulnerabilities 1 WEB Abysssec
2009-11-13   OS Commerce 2.2r2 - Authentication Bypass 1 WEB Stuart Udall
2009-10-15   IBM Rational RequisitePro 7.10 / ReqWebHelp - Multiple Cross-Site Scripting Vulnerabilities 1 WEB IBM
2009-11-10   WordPress MU 1.2.2 < 1.3.1 - '/wp-includes/wpmu-functions.php' Cross-Site Scripting 1 WEB Juan Galiana Lara
2009-11-11   WordPress Core < 2.8.5 - Unrestricted Arbitrary File Upload / Arbitrary PHP Code Execution 1 WEB Dawid Golunski
2009-11-10   WordPress Core 2.0 < 2.7.1 - 'admin.php' Module Configuration Security Bypass 2 WEB Fernando Arnaboldi
2009-11-07   toutvirtual virtualiq pro 3.2 - Multiple Vulnerabilities 2 WEB Alberto Trivero
2009-10-06   PBBoard 2.0.2 - Full Path Disclosure 2 WEB rUnViRuS
2009-09-23   Novell Edirectory 8.8 SP5 - Cross-Site Scripting 1 WEB Francis Provencher
2009-10-01   Novell eDirectory 8.8 SP5 - 'dconserv.dlm' Cross-Site Scripting 2 WEB Francis Provencher
2009-10-05   Empire CMS 47 - SQL Injection 2 WEB Securitylab Security Research
2009-10-05   Joomla! Component Soundset 1.0 - SQL Injection 2 WEB kaMtiEz
2009-10-05   Joomla! Component CB Resume Builder - SQL Injection 2 WEB kaMtiEz
2009-11-12   McAfee Network Security Manager < 5.1.11.8.1 - Multiple Cross-Site Scripting Vulnerabilities 2 WEB Daniel King
2009-11-12   McAfee Network Security Manager < 5.1.11.8.1 - Information Disclosure 2 WEB Daniel King
2009-10-07   Joomla! Component Recerca - SQL Injection 2 WEB Don Tukulesto
2009-10-07   AIOCP 1.4.001 - Remote File Inclusion 1 WEB Hadi Kiamarsi
2009-10-08   The BMW - 'inventory.php' SQL Injection 1 WEB Dazz
2009-10-08   QuickCart 3.x - Cross-Site Scripting / Cross-Site Request Forgery / Local File Inclusion / Directory 1 WEB kl3ryk
2009-10-12   EZRecipeZee CMS 91 - Remote File Inclusion 2 WEB kaMtiEz
2009-10-12   EZsneezyCal CMS 95.1-95.2 - Remote File Inclusion 2 WEB kaMtiEz
2009-10-12   Dazzle Blast - Remote File Inclusion 2 WEB NoGe
2009-10-12   Community Translate - Remote File Inclusion 2 WEB NoGe
2009-10-02   redcat media - SQL Injection 2 WEB s4va
2009-10-14   Achievo 1.3.4 - SQL Injection 2 WEB Ryan Dewhurst
2007-09-17   Alcatel-Lucent OmniPCX Enterprise Communication Server 7.1 - masterCGI Command Injection (Metasploit 2 WEB patrick
2009-11-10   Joomla! Component JForJoomla! Jreservation 1.5 - 'pid' SQL Injection 2 WEB Chip d3 bi0s
2009-10-02   Hyperic HQ 3.2 < 4.2-beta1 - Multiple Cross-Site Scripting Vulnerabilities 1 WEB CoreLabs
2009-09-25   html2ps - 'include file' Server-Side Include Directive Directory Traversal 2 WEB epiphant
2009-10-08   DreamPoll 3.1 - SQL Injection 1 WEB Mark from infosecstuff
2009-10-09   Docebo 3.6.0.3 - Multiple SQL Injections 2 WEB Andrea Fabrizi
2009-11-10   CuteNews and UTF-8 CuteNews - Multiple Vulnerabilities 2 WEB Andrew Horton
2009-10-20   Websense Email Security - Cross-Site Scripting 2 WEB Nikolas Sotiriu
2009-10-22   Vivvo CMS 4.1.5.1 - file Disclosure 2 WEB Janek Vind
2009-10-23   TwonkyMedia Server 4.4.17/5.0.65 - Cross-Site Scripting 2 WEB Davide Canali
2009-11-16   Alteon OS BBI (Nortell) - Cross-Site Scripting / Cross-Site Request Forgery 1 WEB Alexey Sintsov
2009-10-26   SharePoint 2007 - Team Services Source Code Disclosure 2 WEB Daniel Martin
2009-10-26   RunCMS 2ma - 'post.php' SQL Injection 1 WEB bookoo
2009-10-26   RunCMS 2m1 - 'store()' SQL Injection 1 WEB bookoo
2009-10-14   QuickTeam 2.2 - SQL Injection 1 WEB drunken danish rednecks
2009-10-19   Piwik 1357 2009-08-02 - Arbitrary File Upload / Code Execution 2 WEB boecke
2009-10-19   phpCMS 2008 - File Disclosure 2 WEB Securitylab Security Research
2009-10-15   Pentaho 1.7.0.1062 - Cross-Site Scripting / Information Disclosure 2 WEB antisnatchor
2009-10-28   PHP168 6.0 - Command Execution 2 WEB Securitylab Security Research
2009-07-22   Joomla! Plugin tinybrowser 1.5.12 - Arbitrary File Upload / Execution 2 WEB spinbad
2009-10-28   Oscailt CMS 3.3 - Local File Inclusion 1 WEB s4r4d0
2009-02-25   ContentKeeper Web Appliance < 125.10 - Command Execution (Metasploit) 2 WEB patrick
2005-01-15   AWStats 6.2 < 6.1 - configdir Command Injection (Metasploit) 2 WEB Matteo Cantoni
2005-01-15   Cacti 0.8.6-d - 'graph_view.php' Command Injection (Metasploit) 2 WEB David Maciejak
2006-05-04   AWStats 6.4 < 6.5 - AllowToUpdateStatsFromBrowser Command Injection (Metasploit) 2 WEB patrick
2008-06-14   BASE 1.2.4 - 'base_qry_common.php' Remote File Inclusion (Metasploit) 2 WEB MC
1999-11-05   The Matt Wright Guestbook.pl 2.3.1 - Server-Side Include 2 WEB patrick
2008-06-14   Mambo 4.6.4 - Cache Lite Output Remote File Inclusion (Metasploit) 2 WEB MC
2009-10-30   PSArt 1.2 - SQL Injection 2 WEB Securitylab Research
2009-10-20   OpenDocMan 1.2.5 - Cross-Site Scripting / SQL Injection 1 WEB Amol Naik
2009-10-29   Mura CMS 5.1 - Root Path Disclosure 2 WEB Vladimir Vorontsov
2009-10-23   Mongoose Web Server 2.8 - Source Disclosure 2 WEB Dr_IDE
2009-10-23   Joomla! Component Photo Blog alpha 3 < alpha 3a - SQL Injection 2 WEB kaMtiEz
2009-10-23   Joomla! Component Jshop - SQL Injection 2 WEB Don Tukulesto
2009-10-19   Joomla! Plugin JD-WordPress 2.0 RC2 - Remote File Inclusion 2 WEB Don Tukulesto
2009-10-19   Joomla! Component Book Library 1.0 - Remote File Inclusion 2 WEB kaMtiEz
2009-10-19   Joomla! Component Ajax Chat 1.0 - Remote File Inclusion 1 WEB kaMtiEz
2009-10-26   jetty 6.x < 7.x - Cross-Site Scripting / Information Disclosure / Injection 2 WEB Antonion Parata
2009-10-21   httpdx 1.4.6b - Source Disclosure 2 WEB Dr_IDE
2009-11-04   eNdonesia CMS 8.4 - Local File Inclusion 2 WEB s4r4d0
2009-10-17   DWebPro - Command Injection 2 WEB Rafael Sousa
2009-10-14   DeDeCMS 5.1 - SQL Injection 2 WEB Securitylab Security Research
2009-10-30   CubeCart 4 - Session Management Bypass 2 WEB Bogdan Calin
2009-10-28   Cherokee 0.5.4 - Directory Traversal 2 WEB Dr_IDE
2009-10-20   boxalino 09.05.25-0421 - Directory Traversal 1 WEB Axel Neumann
2009-10-19   Amiro.CMS 5.4.0.0 - Path Disclosure 2 WEB Vladimir Vorontsov
2009-10-14   Achievo 1.3.4 - Cross-Site Scripting 2 WEB Ryan Dewhurst
2009-10-30   Nagios3 - 'statuswml.cgi' Command Injection (Metasploit) 2 WEB H D Moore
2009-10-05   AfterLogic WebMail Pro 4.7.10 - Cross-Site Scripting 2 WEB Sébastien Duquette
2009-10-15   Snitz Forums 2000 - Multiple Cross-Site Scripting Vulnerabilities 2 WEB Andrea Fabrizi
2009-10-03   Geeklog 1.6.0sr2 - Arbitrary File Upload 2 WEB JaL0h
2009-11-02   TFTgallery .13 - Directory Traversal 2 WEB blake
2009-11-03   Xerox Fiery Webtools - SQL Injection 2 WEB Bernardo Trigo
2009-11-03   PunBB Extension Attachment 1.0.2 - SQL Injection 2 WEB puret_t
2009-11-04   Portili Personal and Team Wiki 1.14 - Multiple Vulnerabilities (1) 2 WEB Abysssec
2009-09-22   BPHolidayLettings 1.0 - Blind SQL Injection 2 WEB OoN Boy
2009-09-22   Joomla! Component GroupJive 1.8 B4 - Remote File Inclusion 2 WEB M3NW5
2009-09-22   Achievo 1.3.4 - Remote File Inclusion 2 WEB M3NW5
2009-09-22   BPGames 1.0 - Blind SQL Injection 2 WEB OoN Boy
2009-09-22   BPStudent 1.0 - Blind SQL Injection 2 WEB OoN Boy
2009-09-22   BPMusic 1.0 - Blind SQL Injection 2 WEB OoN Boy
2009-09-22   HB CMS 1.7 - SQL Injection 0 WEB Securitylab Security Research
2009-09-22   BPLawyerCaseDocuments - SQL Injection 2 WEB OoN Boy
2009-09-22   Joomla! Component com_facebook - SQL Injection 2 WEB kaMtiEz
2009-09-22   Joomla! / Mambo Component Tupinambis - SQL Injection 2 WEB Don Tukulesto
2009-09-23   Cour Supreme - SQL Injection 2 WEB CrAzY CrAcKeR
2009-09-23   OSSIM 2.1 - SQL Injection / Cross-Site Scripting 2 WEB Alexey Sintsov
2009-09-24   MindSculpt CMS - SQL Injection 2 WEB kaMitEz