2009-11-26
|
|
Cacti 0.8.7e - Multiple Vulnerabilities
|
1 |
WEB
|
Moritz Naumann
|
2009-11-25
|
|
phpBazar-2.1.1fix - Remote Administration-Panel
|
1 |
WEB
|
kurdish hackers team
|
2009-11-25
|
|
Joomla! Component com_gcalendar 1.1.2 - 'gcid' SQL Injection
|
1 |
WEB
|
Yogyacarderlink Crew
|
2009-11-25
|
|
Radio istek scripti 2.5 - Remote Configuration Disclosure
|
0 |
WEB
|
kurdish hackers team
|
2009-11-25
|
|
Fake Hit Generator 2.2 - Arbitrary File Upload
|
2 |
WEB
|
DigitALL
|
2009-11-25
|
|
WordPress Plugin WP-Cumulus 1.20 - Full Path Disclosure / Cross-Site Scripting
|
2 |
WEB
|
MustLive
|
2009-11-25
|
|
Joomla! Component com_mygallery - 'cid' SQL Injection
|
2 |
WEB
|
S@BUN
|
2006-05-26
|
|
MDaemon WebAdmin 2.0.x - SQL Injection
|
2 |
WEB
|
KOUSULIN
|
2009-11-24
|
|
Quick.Cart 3.4 / Quick.CMS 2.4 - Cross-Site Request Forgery
|
2 |
WEB
|
Alice Kaerast
|
2009-11-24
|
|
W3infotech - Authentication Bypass
|
2 |
WEB
|
ViRuS_HiMa
|
2009-11-24
|
|
pointcomma 3.8b2 - Remote File Inclusion
|
2 |
WEB
|
cr4wl3r
|
2009-11-24
|
|
phptraverse 0.8.0 - Remote File Inclusion
|
1 |
WEB
|
cr4wl3r
|
2009-11-24
|
|
outreach project tool 1.2.6 - Remote File Inclusion
|
1 |
WEB
|
cr4wl3r
|
2009-11-24
|
|
NukeHall 0.3 - Multiple Remote File Inclusions
|
2 |
WEB
|
cr4wl3r
|
2009-11-24
|
|
kr-web 1.1b2 - Remote File Inclusion
|
2 |
WEB
|
cr4wl3r
|
2009-11-23
|
|
Joomla! Component mygallery - 'farbinform_krell' SQL Injection
|
2 |
WEB
|
Manas58 BAYBORA
|
2009-10-14
|
|
Everfocus 1.4 - EDSR Remote Authentication Bypass
|
2 |
WEB
|
Andrea Fabrizi
|
2009-11-21
|
|
Joomla! Component Com_Joomclip - 'cat' SQL Injection
|
2 |
WEB
|
599eme Man
|
2009-11-21
|
|
Betsy CMS versions 3.5 - Local File Inclusion
|
1 |
WEB
|
MizoZ
|
2009-11-19
|
|
Joomla! 1.5.12 TinyMCE - Remote Code Execution (via Arbitrary File Upload)
|
2 |
WEB
|
daath
|
2005-06-15
|
|
Bitrix Site Manager 4.0.5 - Remote File Inclusion
|
1 |
WEB
|
Don Tukulesto
|
2009-11-16
|
|
Simplog 0.9.3.2 - Multiple Vulnerabilities
|
1 |
WEB
|
Amol Naik
|
2009-10-20
|
|
Joomla! / Mambo Component D4J eZine 2.1 - Remote File Inclusion
|
1 |
WEB
|
kaMtiEz
|
2009-11-18
|
|
Joomla! Extension iF Portfolio Nexus - SQL Injection
|
0 |
WEB
|
599eme Man
|
2009-11-18
|
|
Xerver 4.31/4.32 - HTTP Response Splitting
|
1 |
WEB
|
s4squatch
|
2009-11-16
|
|
phpMyBackupPro - Arbitrary File Download
|
1 |
WEB
|
Amol Naik
|
2009-11-18
|
|
Shoutbox 1.0 - HTML / Cross-Site Scripting Injection
|
1 |
WEB
|
SkuLL-HackeR
|
2009-11-17
|
|
ActiveBids - 'default.asp' Blind SQL Injection
|
1 |
WEB
|
Hussin X
|
2009-11-17
|
|
ActiveTrade 2.0 - 'default.asp' Blind SQL Injection
|
1 |
WEB
|
Hussin X
|
2009-11-17
|
|
TelebidAuctionScript - 'aid' Blind SQL Injection
|
0 |
WEB
|
Hussin X
|
2009-11-17
|
|
JBS 2.0 / JBSX - Administration Panel Bypass / Arbitrary File Upload
|
1 |
WEB
|
blackenedsecurity
|
2009-11-16
|
|
Cifshanghai - 'chanpin_info.php' CMS SQL Injection
|
1 |
WEB
|
ProF.Code
|
2009-11-16
|
|
telepark wiki 2.4.23 - Multiple Vulnerabilities
|
1 |
WEB
|
Abysssec
|
2009-11-13
|
|
OS Commerce 2.2r2 - Authentication Bypass
|
1 |
WEB
|
Stuart Udall
|
2009-10-15
|
|
IBM Rational RequisitePro 7.10 / ReqWebHelp - Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
IBM
|
2009-11-10
|
|
WordPress MU 1.2.2 < 1.3.1 - '/wp-includes/wpmu-functions.php' Cross-Site Scripting
|
1 |
WEB
|
Juan Galiana Lara
|
2009-11-11
|
|
WordPress Core < 2.8.5 - Unrestricted Arbitrary File Upload / Arbitrary PHP Code Execution
|
1 |
WEB
|
Dawid Golunski
|
2009-11-10
|
|
WordPress Core 2.0 < 2.7.1 - 'admin.php' Module Configuration Security Bypass
|
2 |
WEB
|
Fernando Arnaboldi
|
2009-11-07
|
|
toutvirtual virtualiq pro 3.2 - Multiple Vulnerabilities
|
2 |
WEB
|
Alberto Trivero
|
2009-10-06
|
|
PBBoard 2.0.2 - Full Path Disclosure
|
2 |
WEB
|
rUnViRuS
|
2009-09-23
|
|
Novell Edirectory 8.8 SP5 - Cross-Site Scripting
|
1 |
WEB
|
Francis Provencher
|
2009-10-01
|
|
Novell eDirectory 8.8 SP5 - 'dconserv.dlm' Cross-Site Scripting
|
2 |
WEB
|
Francis Provencher
|
2009-10-05
|
|
Empire CMS 47 - SQL Injection
|
2 |
WEB
|
Securitylab Security Research
|
2009-10-05
|
|
Joomla! Component Soundset 1.0 - SQL Injection
|
2 |
WEB
|
kaMtiEz
|
2009-10-05
|
|
Joomla! Component CB Resume Builder - SQL Injection
|
2 |
WEB
|
kaMtiEz
|
2009-11-12
|
|
McAfee Network Security Manager < 5.1.11.8.1 - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Daniel King
|
2009-11-12
|
|
McAfee Network Security Manager < 5.1.11.8.1 - Information Disclosure
|
2 |
WEB
|
Daniel King
|
2009-10-07
|
|
Joomla! Component Recerca - SQL Injection
|
2 |
WEB
|
Don Tukulesto
|
2009-10-07
|
|
AIOCP 1.4.001 - Remote File Inclusion
|
1 |
WEB
|
Hadi Kiamarsi
|
2009-10-08
|
|
The BMW - 'inventory.php' SQL Injection
|
1 |
WEB
|
Dazz
|
2009-10-08
|
|
QuickCart 3.x - Cross-Site Scripting / Cross-Site Request Forgery / Local File Inclusion / Directory
|
1 |
WEB
|
kl3ryk
|
2009-10-12
|
|
EZRecipeZee CMS 91 - Remote File Inclusion
|
2 |
WEB
|
kaMtiEz
|
2009-10-12
|
|
EZsneezyCal CMS 95.1-95.2 - Remote File Inclusion
|
2 |
WEB
|
kaMtiEz
|
2009-10-12
|
|
Dazzle Blast - Remote File Inclusion
|
2 |
WEB
|
NoGe
|
2009-10-12
|
|
Community Translate - Remote File Inclusion
|
2 |
WEB
|
NoGe
|
2009-10-02
|
|
redcat media - SQL Injection
|
2 |
WEB
|
s4va
|
2009-10-14
|
|
Achievo 1.3.4 - SQL Injection
|
2 |
WEB
|
Ryan Dewhurst
|
2007-09-17
|
|
Alcatel-Lucent OmniPCX Enterprise Communication Server 7.1 - masterCGI Command Injection (Metasploit
|
2 |
WEB
|
patrick
|
2009-11-10
|
|
Joomla! Component JForJoomla! Jreservation 1.5 - 'pid' SQL Injection
|
2 |
WEB
|
Chip d3 bi0s
|
2009-10-02
|
|
Hyperic HQ 3.2 < 4.2-beta1 - Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
CoreLabs
|
2009-09-25
|
|
html2ps - 'include file' Server-Side Include Directive Directory Traversal
|
2 |
WEB
|
epiphant
|
2009-10-08
|
|
DreamPoll 3.1 - SQL Injection
|
1 |
WEB
|
Mark from infosecstuff
|
2009-10-09
|
|
Docebo 3.6.0.3 - Multiple SQL Injections
|
2 |
WEB
|
Andrea Fabrizi
|
2009-11-10
|
|
CuteNews and UTF-8 CuteNews - Multiple Vulnerabilities
|
2 |
WEB
|
Andrew Horton
|
2009-10-20
|
|
Websense Email Security - Cross-Site Scripting
|
2 |
WEB
|
Nikolas Sotiriu
|
2009-10-22
|
|
Vivvo CMS 4.1.5.1 - file Disclosure
|
2 |
WEB
|
Janek Vind
|
2009-10-23
|
|
TwonkyMedia Server 4.4.17/5.0.65 - Cross-Site Scripting
|
2 |
WEB
|
Davide Canali
|
2009-11-16
|
|
Alteon OS BBI (Nortell) - Cross-Site Scripting / Cross-Site Request Forgery
|
1 |
WEB
|
Alexey Sintsov
|
2009-10-26
|
|
SharePoint 2007 - Team Services Source Code Disclosure
|
2 |
WEB
|
Daniel Martin
|
2009-10-26
|
|
RunCMS 2ma - 'post.php' SQL Injection
|
1 |
WEB
|
bookoo
|
2009-10-26
|
|
RunCMS 2m1 - 'store()' SQL Injection
|
1 |
WEB
|
bookoo
|
2009-10-14
|
|
QuickTeam 2.2 - SQL Injection
|
1 |
WEB
|
drunken danish rednecks
|
2009-10-19
|
|
Piwik 1357 2009-08-02 - Arbitrary File Upload / Code Execution
|
2 |
WEB
|
boecke
|
2009-10-19
|
|
phpCMS 2008 - File Disclosure
|
2 |
WEB
|
Securitylab Security Research
|
2009-10-15
|
|
Pentaho 1.7.0.1062 - Cross-Site Scripting / Information Disclosure
|
2 |
WEB
|
antisnatchor
|
2009-10-28
|
|
PHP168 6.0 - Command Execution
|
2 |
WEB
|
Securitylab Security Research
|
2009-07-22
|
|
Joomla! Plugin tinybrowser 1.5.12 - Arbitrary File Upload / Execution
|
2 |
WEB
|
spinbad
|
2009-10-28
|
|
Oscailt CMS 3.3 - Local File Inclusion
|
1 |
WEB
|
s4r4d0
|
2009-02-25
|
|
ContentKeeper Web Appliance < 125.10 - Command Execution (Metasploit)
|
2 |
WEB
|
patrick
|
2005-01-15
|
|
AWStats 6.2 < 6.1 - configdir Command Injection (Metasploit)
|
2 |
WEB
|
Matteo Cantoni
|
2005-01-15
|
|
Cacti 0.8.6-d - 'graph_view.php' Command Injection (Metasploit)
|
2 |
WEB
|
David Maciejak
|
2006-05-04
|
|
AWStats 6.4 < 6.5 - AllowToUpdateStatsFromBrowser Command Injection (Metasploit)
|
2 |
WEB
|
patrick
|
2008-06-14
|
|
BASE 1.2.4 - 'base_qry_common.php' Remote File Inclusion (Metasploit)
|
2 |
WEB
|
MC
|
1999-11-05
|
|
The Matt Wright Guestbook.pl 2.3.1 - Server-Side Include
|
2 |
WEB
|
patrick
|
2008-06-14
|
|
Mambo 4.6.4 - Cache Lite Output Remote File Inclusion (Metasploit)
|
2 |
WEB
|
MC
|
2009-10-30
|
|
PSArt 1.2 - SQL Injection
|
2 |
WEB
|
Securitylab Research
|
2009-10-20
|
|
OpenDocMan 1.2.5 - Cross-Site Scripting / SQL Injection
|
1 |
WEB
|
Amol Naik
|
2009-10-29
|
|
Mura CMS 5.1 - Root Path Disclosure
|
2 |
WEB
|
Vladimir Vorontsov
|
2009-10-23
|
|
Mongoose Web Server 2.8 - Source Disclosure
|
2 |
WEB
|
Dr_IDE
|
2009-10-23
|
|
Joomla! Component Photo Blog alpha 3 < alpha 3a - SQL Injection
|
2 |
WEB
|
kaMtiEz
|
2009-10-23
|
|
Joomla! Component Jshop - SQL Injection
|
2 |
WEB
|
Don Tukulesto
|
2009-10-19
|
|
Joomla! Plugin JD-WordPress 2.0 RC2 - Remote File Inclusion
|
2 |
WEB
|
Don Tukulesto
|
2009-10-19
|
|
Joomla! Component Book Library 1.0 - Remote File Inclusion
|
2 |
WEB
|
kaMtiEz
|
2009-10-19
|
|
Joomla! Component Ajax Chat 1.0 - Remote File Inclusion
|
1 |
WEB
|
kaMtiEz
|
2009-10-26
|
|
jetty 6.x < 7.x - Cross-Site Scripting / Information Disclosure / Injection
|
2 |
WEB
|
Antonion Parata
|
2009-10-21
|
|
httpdx 1.4.6b - Source Disclosure
|
2 |
WEB
|
Dr_IDE
|
2009-11-04
|
|
eNdonesia CMS 8.4 - Local File Inclusion
|
2 |
WEB
|
s4r4d0
|
2009-10-17
|
|
DWebPro - Command Injection
|
2 |
WEB
|
Rafael Sousa
|
2009-10-14
|
|
DeDeCMS 5.1 - SQL Injection
|
2 |
WEB
|
Securitylab Security Research
|
2009-10-30
|
|
CubeCart 4 - Session Management Bypass
|
2 |
WEB
|
Bogdan Calin
|
2009-10-28
|
|
Cherokee 0.5.4 - Directory Traversal
|
2 |
WEB
|
Dr_IDE
|
2009-10-20
|
|
boxalino 09.05.25-0421 - Directory Traversal
|
1 |
WEB
|
Axel Neumann
|
2009-10-19
|
|
Amiro.CMS 5.4.0.0 - Path Disclosure
|
2 |
WEB
|
Vladimir Vorontsov
|
2009-10-14
|
|
Achievo 1.3.4 - Cross-Site Scripting
|
2 |
WEB
|
Ryan Dewhurst
|
2009-10-30
|
|
Nagios3 - 'statuswml.cgi' Command Injection (Metasploit)
|
2 |
WEB
|
H D Moore
|
2009-10-05
|
|
AfterLogic WebMail Pro 4.7.10 - Cross-Site Scripting
|
2 |
WEB
|
Sébastien Duquette
|
2009-10-15
|
|
Snitz Forums 2000 - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Andrea Fabrizi
|
2009-10-03
|
|
Geeklog 1.6.0sr2 - Arbitrary File Upload
|
2 |
WEB
|
JaL0h
|
2009-11-02
|
|
TFTgallery .13 - Directory Traversal
|
2 |
WEB
|
blake
|
2009-11-03
|
|
Xerox Fiery Webtools - SQL Injection
|
2 |
WEB
|
Bernardo Trigo
|
2009-11-03
|
|
PunBB Extension Attachment 1.0.2 - SQL Injection
|
2 |
WEB
|
puret_t
|
2009-11-04
|
|
Portili Personal and Team Wiki 1.14 - Multiple Vulnerabilities (1)
|
2 |
WEB
|
Abysssec
|
2009-09-22
|
|
BPHolidayLettings 1.0 - Blind SQL Injection
|
2 |
WEB
|
OoN Boy
|
2009-09-22
|
|
Joomla! Component GroupJive 1.8 B4 - Remote File Inclusion
|
2 |
WEB
|
M3NW5
|
2009-09-22
|
|
Achievo 1.3.4 - Remote File Inclusion
|
2 |
WEB
|
M3NW5
|
2009-09-22
|
|
BPGames 1.0 - Blind SQL Injection
|
2 |
WEB
|
OoN Boy
|
2009-09-22
|
|
BPStudent 1.0 - Blind SQL Injection
|
2 |
WEB
|
OoN Boy
|
2009-09-22
|
|
BPMusic 1.0 - Blind SQL Injection
|
2 |
WEB
|
OoN Boy
|
2009-09-22
|
|
HB CMS 1.7 - SQL Injection
|
0 |
WEB
|
Securitylab Security Research
|
2009-09-22
|
|
BPLawyerCaseDocuments - SQL Injection
|
2 |
WEB
|
OoN Boy
|
2009-09-22
|
|
Joomla! Component com_facebook - SQL Injection
|
2 |
WEB
|
kaMtiEz
|
2009-09-22
|
|
Joomla! / Mambo Component Tupinambis - SQL Injection
|
2 |
WEB
|
Don Tukulesto
|
2009-09-23
|
|
Cour Supreme - SQL Injection
|
2 |
WEB
|
CrAzY CrAcKeR
|
2009-09-23
|
|
OSSIM 2.1 - SQL Injection / Cross-Site Scripting
|
2 |
WEB
|
Alexey Sintsov
|
2009-09-24
|
|
MindSculpt CMS - SQL Injection
|
2 |
WEB
|
kaMitEz
|