2009-09-24
|
|
e107 0.7.16 - Referer header Cross-Site Scripting
|
2 |
WEB
|
MustLive
|
2009-09-24
|
|
Swiss Mango CMS - SQL Injection
|
2 |
WEB
|
kaMtiEz
|
2009-09-24
|
|
Joomla! Component Fastball 1.1.0 < 1.2 - 'league' SQL Injection
|
2 |
WEB
|
kaMtiEz
|
2009-09-24
|
|
FSphp 0.2.1 - Remote File Inclusion
|
2 |
WEB
|
NoGe
|
2009-09-24
|
|
Regental Medien - Blind SQL Injection
|
2 |
WEB
|
NoGe
|
2009-09-25
|
|
Engeman 6.x - SQL Injection
|
2 |
WEB
|
crashbrz
|
2009-09-25
|
|
Klonet E-Commerce - 'products.php' SQL Injection
|
2 |
WEB
|
S3T4N
|
2009-09-28
|
|
Joomla! Component IRCm Basic - SQL Injection
|
1 |
WEB
|
kaMtiEz
|
2009-09-28
|
|
HEAT Call Logging 8.01 - SQL Injection
|
2 |
WEB
|
0 0
|
2009-09-29
|
|
Flatpress 0.804 < 0.812.1 - Local File Inclusion
|
2 |
WEB
|
Giuseppe Fuggiano
|
2009-09-21
|
|
Joomla! Component com_mytube (user_id) 1.0 Beta - Blind SQL Injection
|
2 |
WEB
|
Chip d3 bi0s
|
2009-09-21
|
|
Joomla! Component com_jinc 0.2 - 'newsid' Blind SQL Injection
|
2 |
WEB
|
Chip d3 bi0s
|
2009-09-21
|
|
WX Guestbook 1.1.208 - SQL Injection / Persistent Cross-Site Scripting
|
2 |
WEB
|
learn3r
|
2009-09-21
|
|
Loggix Project 9.4.5 - Multiple Remote File Inclusions
|
1 |
WEB
|
cr4wl3r
|
2009-09-21
|
|
ProdLer 2.0 - Remote File Inclusion
|
1 |
WEB
|
cr4wl3r
|
2009-09-21
|
|
CMScontrol (Content Management Portal Solutions) - SQL Injection
|
0 |
WEB
|
ph1l1ster
|
2009-09-21
|
|
cP Creator 2.7.1 - SQL Injection
|
2 |
WEB
|
Sina Yazdanmehr
|
2009-09-21
|
|
BAnner ROtation System mini - Multiple Remote File Inclusions
|
2 |
WEB
|
EA Ngel
|
2009-09-21
|
|
Joomla! Component com_jbudgetsmagic 0.3.2 < 0.4.0 - 'bid' SQL Injection
|
2 |
WEB
|
kaMtiEz
|
2009-09-21
|
|
DDL CMS 1.0 - Multiple Remote File Inclusions
|
2 |
WEB
|
HxH
|
2009-09-21
|
|
Joomla! Component com_surveymanager 1.5.0 - 'stype' SQL Injection
|
2 |
WEB
|
kaMtiEz
|
2009-09-18
|
|
FSphp 0.2.1 - Multiple Remote File Inclusions
|
2 |
WEB
|
NoGe
|
2009-09-18
|
|
FanUpdate 2.2.1 - 'show-cat.php' SQL Injection
|
2 |
WEB
|
(In)Security Romania
|
2009-09-18
|
|
Network Management/Inventory System - 'header.php' Remote File Inclusion
|
2 |
WEB
|
EA Ngel
|
2009-09-18
|
|
Zainu 1.0 - SQL Injection
|
1 |
WEB
|
snakespc
|
2009-10-18
|
|
Mambo Component com_koesubmit 1.0.0 - Remote File Inclusion
|
2 |
WEB
|
Don Tukulesto
|
2009-09-17
|
|
Joomla! Component com_jreservation 1.5 - 'pid' Blind SQL Injection
|
2 |
WEB
|
Chip d3 bi0s
|
2009-09-17
|
|
Nephp Publisher Enterprise 4.5 - Authentication Bypass
|
2 |
WEB
|
learn3r hacker
|
2009-09-17
|
|
FMyClone 2.3 - Multiple SQL Injections
|
2 |
WEB
|
learn3r hacker
|
2009-09-17
|
|
CF Shopkart 5.3x - 'itemID' SQL Injection
|
2 |
WEB
|
learn3r hacker
|
2009-09-17
|
|
OpenSiteAdmin 0.9.7b - 'pageHeader.php?path' Remote File Inclusion
|
2 |
WEB
|
EA Ngel
|
2009-09-17
|
|
Joomla! Component com_album 1.14 - Directory Traversal
|
2 |
WEB
|
DreamTurk
|
2009-09-16
|
|
phpPollScript 1.3 - 'include_class' Remote File Inclusion
|
2 |
WEB
|
cr4wl3r
|
2009-09-16
|
|
Elite Gaming Ladders 3.2 - 'platform' SQL Injection
|
2 |
WEB
|
snakespc
|
2009-09-16
|
|
SaphpLesson 4.3 - Blind SQL Injection
|
2 |
WEB
|
Jafer Al Zidjali
|
2009-09-16
|
|
Micro CMS 3.5 - SQL Injection / Local File Inclusion
|
2 |
WEB
|
learn3r hacker
|
2009-09-16
|
|
Joomla! Component com_jlord_rss - 'id' Blind SQL Injection
|
2 |
WEB
|
Chip d3 bi0s
|
2009-09-16
|
|
Joomla! Component com_foobla_suggestions (idea_id) 1.5.11 - SQL Injection
|
2 |
WEB
|
Chip d3 bi0s
|
2009-09-16
|
|
AdsDX 3.05 - Authentication Bypass
|
1 |
WEB
|
snakespc
|
2009-09-15
|
|
Joomla! Component com_djcatalog - SQL Injection / Blind SQL Injection
|
2 |
WEB
|
Chip d3 bi0s
|
2009-09-15
|
|
iBoutique.MALL 1.2 - 'cat' Blind SQL Injection
|
2 |
WEB
|
InjEctOr5
|
2009-09-15
|
|
efront 3.5.4 - 'database.php?path' Remote File Inclusion
|
1 |
WEB
|
cr4wl3r
|
2009-09-15
|
|
HotWeb Rentals - 'details.asp?PropId' Blind SQL Injection
|
2 |
WEB
|
R3d-D3V!L
|
2009-09-15
|
|
Three Pillars Help Desk 3.0 - Authentication Bypass
|
2 |
WEB
|
snakespc
|
2009-09-14
|
|
Bs Counter 2.5.3 - 'page' SQL Injection
|
2 |
WEB
|
Bgh7
|
2009-09-14
|
|
PHP Pro Bid - Blind SQL Injection
|
2 |
WEB
|
NoGe
|
2009-09-14
|
|
Aurora CMS 1.0.2 - 'install.plugin.php' Remote File Inclusion
|
2 |
WEB
|
EA Ngel
|
2009-09-14
|
|
Joomla! Component AlphaUserPoints - SQL Injection
|
2 |
WEB
|
jdc
|
2009-09-14
|
|
Joomla! Component Turtushout 0.11 - 'Name' SQL Injection
|
2 |
WEB
|
jdc
|
2009-09-11
|
|
Joomla! Component Hotel Booking System - Cross-Site Scripting / SQL Injection
|
2 |
WEB
|
K-159
|
2009-09-11
|
|
PHP-IPNMonitor - 'maincat_id' SQL Injection
|
2 |
WEB
|
noname
|
2009-09-11
|
|
gyro 5.0 - SQL Injection / Cross-Site Scripting
|
2 |
WEB
|
OoN_Boy
|
2009-09-11
|
|
Image voting 1.0 - 'index.php?show' SQL Injection
|
2 |
WEB
|
SkuLL-HackeR
|
2009-09-10
|
|
T-HTB Manager 0.5 - Multiple Blind SQL Injections
|
2 |
WEB
|
Salvatore Fresta
|
2009-09-10
|
|
An image Gallery 1.0 - 'navigation.php' Local Directory Traversal
|
2 |
WEB
|
ThE g0bL!N
|
2009-09-10
|
|
Drunken:Golem Gaming Portal - 'admin_news_bot.php' Remote File Inclusion
|
2 |
WEB
|
EA Ngel
|
2009-09-10
|
|
Adult Portal escort listing - 'user_id' SQL Injection
|
2 |
WEB
|
Mr.SQL
|
2009-09-10
|
|
Bus Script - 'sitetext_id' SQL Injection
|
2 |
WEB
|
Mr.SQL
|
2009-09-10
|
|
Accommodation Hotel Booking Portal - 'hotel_id' SQL Injection
|
2 |
WEB
|
Mr.SQL
|
2009-09-10
|
|
iDesk - 'download.php?cat_id' SQL Injection
|
2 |
WEB
|
Mr.SQL
|
2009-09-10
|
|
MYRE Holiday Rental Manager - 'action' SQL Injection
|
1 |
WEB
|
Mr.SQL
|
2009-09-10
|
|
Graffiti CMS 1.x - Arbitrary File Upload
|
1 |
WEB
|
Alexander Concha
|
2009-09-10
|
|
nullam blog 0.1.2 - Local File Inclusion / File Disclosure / SQL Injection / Cross-Site Scripting
|
3 |
WEB
|
Salvatore Fresta
|
2009-09-10
|
|
Advanced Comment System 1.0 - Multiple Remote File Inclusions
|
2 |
WEB
|
Kurd-Team
|
2009-09-09
|
|
ChartDirector 5.0.1 - 'cacheId' Arbitrary File Disclosure
|
2 |
WEB
|
DokFLeed
|
2009-09-09
|
|
PHPNagios 1.2.0 - 'menu.php' Local File Inclusion
|
2 |
WEB
|
CoBRa_21
|
2009-09-09
|
|
Mambo Component Hestar - SQL Injection
|
2 |
WEB
|
M3NW5
|
2009-09-09
|
|
Agoko CMS 0.4 - Remote Command Execution
|
1 |
WEB
|
StAkeR
|
2009-09-09
|
|
Joomla! Component Joomloc 1.0 - 'id' SQL Injection
|
1 |
WEB
|
Chip d3 bi0s
|
2009-09-09
|
|
Model Agency Manager Pro - 'user_id' SQL Injection
|
1 |
WEB
|
R3d-D3V!L
|
2009-09-09
|
|
Joomla! Component TPDugg 1.1 - Blind SQL Injection
|
1 |
WEB
|
NoGe
|
2009-09-09
|
|
Joomla! Component BF Survey Pro Free - SQL Injection
|
1 |
WEB
|
jdc
|
2009-09-09
|
|
OBOphiX 2.7.0 - 'fonctions_racine.php' Remote File Inclusion
|
1 |
WEB
|
EA Ngel
|
2009-09-09
|
|
The Rat CMS Alpha 2 - Arbitrary File Upload
|
2 |
WEB
|
Securitylab.ir
|
2009-09-04
|
|
Joomla! Component com_Joomlaub - 'aid' SQL Injection
|
1 |
WEB
|
599eme Man
|
2009-09-04
|
|
Ticket Support Script - 'ticket.php' Arbitrary File Upload
|
2 |
WEB
|
InjEctOr5
|
2009-09-04
|
|
ZeroBoard 4.1 pl7 - 'now_connect()' Remote Code Execution
|
2 |
WEB
|
SpeeDr00t
|
2009-09-04
|
|
Mambo Component com_zoom - 'catid' Blind SQL Injection
|
1 |
WEB
|
boom3rang
|
2009-09-03
|
|
PHPope 1.0.0 - Multiple Remote File Inclusions
|
2 |
WEB
|
cr4wl3r
|
2009-09-03
|
|
FreeSchool 1.1.0 - Multiple Remote File Inclusions
|
2 |
WEB
|
cr4wl3r
|
2009-09-02
|
|
PHP Live! 3.3 - 'deptid' SQL Injection
|
2 |
WEB
|
v3n0m
|
2009-09-02
|
|
Ve-EDIT 0.1.4 - 'highlighter' Remote File Inclusion
|
2 |
WEB
|
RoMaNcYxHaCkEr
|
2009-09-02
|
|
Discuz! Plugin JiangHu 1.1 - 'id' SQL Injection
|
2 |
WEB
|
ZhaoHuAn
|
2009-09-01
|
|
DataLife Engine 8.2 - dle_config_api Remote File Inclusion
|
2 |
WEB
|
Kurd-Team
|
2009-09-01
|
|
Joomla! Component com_gameserver 1.0 - 'id' SQL Injection
|
1 |
WEB
|
v3n0m
|
2009-09-01
|
|
Ve-EDIT 0.1.4 - 'debug_PHP.php' Local File Inclusion
|
1 |
WEB
|
CoBRa_21
|
2009-09-01
|
|
phpBB3 - addon prime_quick_style GetAdmin
|
2 |
WEB
|
-SmoG-
|
2009-09-01
|
|
KingCMS 0.6.0 - 'menu.php' Remote File Inclusion
|
1 |
WEB
|
CoBRa_21
|
2009-09-01
|
|
Xstate Real Estate 1.0 - Blind SQL Injection / Cross-Site Scripting
|
1 |
WEB
|
Moudi
|
2009-09-01
|
|
Joomla! Component Agora 3.0.0b (com_agora) - Local File Inclusion
|
1 |
WEB
|
ByALBAYX
|
2009-09-01
|
|
Joomla! Component com_artportal 1.0 - 'portalid' SQL Injection
|
1 |
WEB
|
599eme Man
|
2009-09-01
|
|
JSFTemplating / Mojarra Scales / GlassFish - File Disclosure
|
2 |
WEB
|
SEC Consult
|
2009-08-31
|
|
osCommerce Online Merchant 2.2 RC2a - Code Execution
|
2 |
WEB
|
flyh4t
|
2009-08-31
|
|
Mybuxscript PTC-BUX - 'spnews.php' SQL Injection
|
2 |
WEB
|
HxH
|
2009-08-31
|
|
Rock Band CMS 0.10 - 'news.php' Multiple SQL Injections (1)
|
2 |
WEB
|
Affix
|
2009-08-31
|
|
Re-Script 0.99 Beta - 'listings.php?op' SQL Injection
|
2 |
WEB
|
Mr.SQL
|
2009-08-31
|
|
Modern Script 5.0 - 'index.php?s' SQL Injection
|
2 |
WEB
|
Red-D3v1L
|
2009-08-28
|
|
Silurus Classifieds System - 'category.php' SQL Injection
|
2 |
WEB
|
Mr.SQL
|
2009-08-27
|
|
Uiga Church Portal - 'year' SQL Injection
|
2 |
WEB
|
Mr.SQL
|
2009-08-27
|
|
Joomla! Component com_digifolio 1.52 - 'id' SQL Injection
|
2 |
WEB
|
v3n0m
|
2009-08-26
|
|
PHPSANE 0.5.0 - 'save.php' Remote File Inclusion
|
1 |
WEB
|
CoBRa_21
|
2009-08-26
|
|
allomani 2007 - 'cat' SQL Injection
|
1 |
WEB
|
NeX HaCkEr
|
2009-08-26
|
|
PAD Site Scripts 3.6 - 'list.php?string' SQL Injection
|
1 |
WEB
|
Mr.SQL
|
2009-08-26
|
|
Open Auto Classifieds 1.5.9 - Multiple Vulnerabilities
|
1 |
WEB
|
Andrew Horton
|
2009-08-26
|
|
Discuz! Plugin Crazy Star 2.0 - 'fmid' SQL Injection
|
1 |
WEB
|
ZhaoHuAn
|
2009-08-26
|
|
Simple CMS Framework 1.0 - 'page' SQL Injection
|
1 |
WEB
|
Red-D3v1L
|
2009-08-26
|
|
Moa Gallery 1.2.0 - 'p_filename' Remote File Disclosure
|
1 |
WEB
|
GoLd_M
|
2009-08-26
|
|
totalcalendar 2.4 - Blind SQL Injection / Local File Inclusion
|
0 |
WEB
|
Moudi
|
2009-08-26
|
|
Moa Gallery 1.2.0 - 'index.php?action' SQL Injection
|
0 |
WEB
|
Mr.SQL
|
2009-08-26
|
|
Moa Gallery 1.2.0 - Multiple Remote File Inclusions
|
1 |
WEB
|
cr4wl3r
|
2009-08-25
|
|
EMO Breader Manager - 'video.php?movie' SQL Injection
|
2 |
WEB
|
Mr.SQL
|
2009-08-25
|
|
TCPDB 3.8 - Remote Content Change Bypass
|
2 |
WEB
|
Securitylab.ir
|
2009-08-25
|
|
Turnkey Arcade Script - SQL Injection (2)
|
2 |
WEB
|
Red-D3v1L
|
2009-08-25
|
|
Joomla! Component com_siirler 1.2 - 'sid' SQL Injection
|
1 |
WEB
|
v3n0m
|
2009-08-24
|
|
Geeklog 1.6.0sr1 - Arbitrary File Upload
|
2 |
WEB
|
JaL0h
|
2009-08-24
|
|
Joomla! Component com_jtips 1.0.x - 'season' Blind SQL Injection
|
2 |
WEB
|
Chip d3 bi0s
|
2009-08-24
|
|
Joomla! Component com_ninjamonial 1.1 - 'testimID' SQL Injection
|
2 |
WEB
|
Chip d3 bi0s
|
2009-08-24
|
|
New5starRating 1.0 - 'rating.php' SQL Injection
|
2 |
WEB
|
Bgh7
|
2009-08-24
|
|
ITechBids 8.0 - 'ProductID' Blind SQL Injection
|
2 |
WEB
|
Mr.SQL
|
2009-08-24
|
|
humanCMS - Authentication Bypass
|
2 |
WEB
|
next
|
2009-08-24
|
|
Uebimiau Webmail 3.2.0-2.0 - Arbitrary Database Disclosure
|
2 |
WEB
|
Septemb0x
|
2009-11-16
|
|
Dow Group - 'new.php' SQL Injection
|
1 |
WEB
|
ProF.Code
|
2009-08-24
|
|
Lanai Core 0.6 - Remote File Disclosure / Info Disclosure
|
2 |
WEB
|
Khashayar Fereidani
|
2009-08-24
|
|
Cuteflow 2.10.3 - 'edituser.php' Security Bypass
|
2 |
WEB
|
Hever Costa Rocha
|
2009-08-24
|
|
PHP Dir Submit - 'aid' SQL Injection
|
2 |
WEB
|
Mr.tro0oqy
|