Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2009-01-15   Free Bible Search PHP Script - SQL Injection 1 WEB nuclear
2009-01-15   Blue Eye CMS 1.0.0 - 'clanek' Blind SQL Injection 1 WEB darkjoker
2009-01-15   MKPortal 1.2.1 - Multiple Vulnerabilities 1 WEB waraxe
2009-01-15   Joomla! Component RD-Autos 1.5.5 - SQL Injection 0 WEB H!tm@N
2009-01-15   Joomla! Component com_Eventing 1.6.x - Blind SQL Injection 1 WEB InjEctOr5
2009-01-15   GNUBoard 4.31.03 (08.12.29) - Local File Inclusion 1 WEB flyh4t
2009-01-15   DMXReady Billboard Manager 1.1 - Arbitrary File Upload 1 WEB ajann
2009-01-14   DMXReady SDK 1.1 - Arbitrary File Download 2 WEB ajann
2009-01-14   DMXReady BillboardManager 1.1 - Contents Change 2 WEB x0r
2009-01-14   DMXReady Secure Document Library 1.1 - SQL Injection 2 WEB ajann
2009-01-14   PHP Photo Album 0.8b - 'preview' Local File Inclusion 2 WEB Osirys
2009-01-14   DMXReady Registration Manager 1.1 - Contents Change 2 WEB ajann
2009-01-14   DMXReady Photo Gallery Manager 1.1 - Contents Change 2 WEB ajann
2009-01-14   DMXReady PayPal Store Manager 1.1 - Contents Change 2 WEB ajann
2009-01-14   phosheezy 2.0 - Remote Command Execution 2 WEB Osirys
2009-01-14   phpList 2.10.8 - Local File Inclusion 2 WEB BugReport.IR
2009-01-14   Joomla! Component Fantasytournament - SQL Injection 2 WEB H!tm@N
2009-01-14   Joomla! Component Camelcitydb2 2.2 - SQL Injection 2 WEB H!tm@N
2009-01-14   DMXReady Members Area Manager 1.2 - SQL Injection 2 WEB ajann
2009-01-14   DMXReady Member Directory Manager 1.1 - SQL Injection 2 WEB ajann
2009-01-14   DMXReady Links Manager 1.1 - Remote Contents Change 1 WEB ajann
2009-01-14   DMXReady Job Listing 1.1 - Remote Contents Change 1 WEB ajann
2009-01-14   DMXReady Faqs Manager 1.1 - Remote Contents Change 1 WEB ajann
2009-01-14   DMXReady Document Library Manager 1.1 - Contents Change 1 WEB ajann
2009-01-14   DMXReady Contact Us Manager 1.1 - Remote Contents Change 1 WEB ajann
2009-01-14   DMXReady Classified Listings Manager 1.1 - SQL Injection 2 WEB ajann
2009-01-14   DMXReady Catalog Manager 1.1 - Remote Contents Change 2 WEB ajann
2009-01-14   DMXReady Blog Manager 1.1 - Remote File Delete 2 WEB ajann
2009-01-14   Netvolution CMS 1.0 - Cross-Site Scripting / SQL Injection 2 WEB Ellinas
2009-01-14   Syzygy CMS 0.3 - Authentication Bypass 2 WEB darkjoker
2009-01-13   Dark Age CMS 0.2c Beta - Authentication Bypass 2 WEB darkjoker
2009-01-13   DMXReady Account List Manager 1.1 - Contents Change 2 WEB ajann
2009-01-13   HSPell 1.1 - 'cilla.cgi' Remote Command Execution 1 WEB ZeN
2009-01-13   DMXReady News Manager 1.1 - Arbitrary Category Change 2 WEB ajann
2009-01-13   Joomla! Component gigCalendar 1.0 - SQL Injection 2 WEB boom3rang
2009-01-13   Virtual Guestbook 2.1 - Remote Database Disclosure 2 WEB Moudi
2009-01-12   Realtor 747 - 'define.php?INC_DIR' Remote File Inclusion 2 WEB ahmadbady
2009-01-12   dMx READ - Remote Database Disclosure 1 WEB Cyber-Zone
2009-01-12   PWP Wiki Processor 1-5-1 - Arbitrary File Upload 2 WEB ahmadbady
2009-01-12   WordPress Plugin WP-Forum 1.7.8 - SQL Injection 2 WEB seomafia
2009-01-12   Comersus Shopping Cart 6.0 - Remote User Pass 1 WEB ajann
2009-01-12   Simple Machines Forum (SMF) 1.0.13/1.1.5 - 'Destroyer 0.1' Password Reset Security Bypass 0 WEB Xianur0
2009-01-12   Joomla! Component Portfol 1.2 - 'vcatid' SQL Injection 1 WEB H!tm@N
2009-01-11   Photobase 1.2 - 'Language' Local File Inclusion 1 WEB Osirys
2009-01-11   Silentum Uploader 1.4.0 - Remote File Deletion 1 WEB Danny Moules
2009-01-11   fttss 2.0 - Remote Command Execution 1 WEB dun
2009-01-11   Social Engine - SQL Injection 1 WEB snakespc
2009-01-11   PHP-Fusion Mod the_kroax - SQL Injection 1 WEB FasTWORM
2009-01-11   Weight Loss Recipe Book 3.1 - Authentication Bypass 1 WEB x0r
2009-01-11   BKWorks ProPHP 0.50b1 - Authentication Bypass 1 WEB SirGod
2009-01-11   XOOPS Module tadbook2 - SQL Injection 2 WEB stylextra
2009-01-11   phpMDJ 1.0.3 - 'id_animateur' Blind SQL Injection 2 WEB darkjoker
2009-01-11   Seo4SMF for SMF forums - Multiple Vulnerabilities 2 WEB WHK
2009-01-11   DZcms 3.1 - SQL Injection 2 WEB Glafkos Charalambous
2009-01-11   Fast Guest Book - Authentication Bypass 2 WEB Moudi
2009-01-11   Joomla! Component com_newsflash - 'id' SQL Injection 2 WEB EcHoLL
2009-01-11   Joomla! Component com_jashowcase - 'catid' SQL Injection 2 WEB EcHoLL
2009-01-11   Joomla! Component com_xevidmegahd - SQL Injection 1 WEB EcHoLL
2009-01-09   Fast FAQs System - Authentication Bypass 2 WEB x0r
2009-01-08   XOOPS 2.3.2 - 'mydirname' PHP Remote Code Execution 2 WEB StAkeR
2009-01-08   Pizzis CMS 1.5.1 - Blind SQL Injection 2 WEB darkjoker
2009-01-08   PHP-Fusion Mod vArcade 1.8 - 'comment_id' SQL Injection 2 WEB Khashayar Fereidani
2009-01-08   CuteNews 1.4.6 - 'ip ban' Authorized Cross-Site Scripting / Command Execution 2 WEB StAkeR
2009-01-07   QuoteBook - Remote Configuration File Disclosure 1 WEB Moudi
2009-01-07   PHP-Fusion Mod E-Cart 1.3 - 'items.php' SQL Injection 2 WEB Khashayar Fereidani
2009-01-07   PHP-Fusion Mod Members CV (job) 1.0 - SQL Injection 2 WEB Khashayar Fereidani
2009-01-07   Joomla! Component xstandard editor 1.5.8 - Local Directory Traversal 2 WEB irk4z
2009-01-06   PollHelper - Remote Configuration File Disclosure 2 WEB ahmadbady
2009-01-06   BlogHelper - Remote Configuration File Disclosure 2 WEB ahmadbady
2009-01-06   PlaySms 0.9.3 - Multiple Local/Remote File Inclusions 2 WEB ahmadbady
2009-01-06   ItCMS 2.1a - Authentication Bypass 2 WEB certaindeath
2009-01-06   Goople 1.8.2 - 'FrontPage.php' Blind SQL Injection 2 WEB darkjoker
2009-01-06   RiotPix 0.61 - Authentication Bypass 2 WEB ZoRLu
2009-01-06   ezpack 4.2b2 - Cross-Site Scripting / SQL Injection 1 WEB !-BUGJACK-!
2009-01-06   RiotPix 0.61 - 'forumid' Blind SQL Injection 1 WEB cOndemned
2009-01-06   PHPAuctionSystem - Multiple Remote File Inclusions 1 WEB darkmasking
2009-01-05   PHPAuctionSystem - Insecure Cookie Handling 2 WEB ZoRLu
2009-01-05   PHPAuctionSystem - Cross-Site Scripting / SQL Injection 2 WEB x0r
2009-01-05   Joomla! Component com_phocadocumentation - 'id' SQL Injection 2 WEB EcHoLL
2009-01-05   Joomla! Component com_na_newsdescription - 'newsid' SQL Injection 2 WEB EcHoLL
2009-01-05   Cybershade CMS 0.2b - 'index.php' Remote File Inclusion 2 WEB JosS
2009-01-05   Joomla! Component simple_review 1.x - SQL Injection 1 WEB EcHoLL
2009-01-05   Ayemsis Emlak Pro - Authentication Bypass 1 WEB ByALBAYX
2009-01-05   Ayemsis Emlak Pro - 'acc.mdb' Database Disclosure 1 WEB ByALBAYX
2009-01-04   The Rat CMS Alpha 2 - Blind SQL Injection 1 WEB darkjoker
2009-01-04   plxAutoReminder 3.7 - 'id' SQL Injection 1 WEB ZoRLu
2009-01-04   PHPMesFilms 1.0 - 'index.php?id' SQL Injection 1 WEB SuB-ZeRo
2009-01-04   WSN Guest 1.23 - 'Search' SQL Injection 1 WEB DaiMon
2009-01-04   PNPHPBB2 < 1.2i - 'ModName' Multiple Local File Inclusions 0 WEB StAkeR
2009-01-04   webSPELL 4.01.02 - 'id' Remote Edit Topics 1 WEB StAkeR
2009-01-03   webSPELL 4 - Authentication Bypass 2 WEB anonymous
2009-01-03   Lito Lite CMS - Multiple Cross-Site Scripting / Blind SQL Injection Vulnerabilities 2 WEB darkjoker
2009-01-02   phpskelsite 1.4 - Local File Inclusion / Remote File Inclusion / Cross-Site Scripting 2 WEB ahmadbady
2009-01-02   Built2Go PHP Rate My Photo 1.46.4 - Arbitrary File Upload 2 WEB ZoRLu
2009-01-02   Built2Go PHP Link Portal 1.95.1 - Arbitrary File Upload 2 WEB ZoRLu
2009-01-01   PowerClan 1.14a - Authentication Bypass 2 WEB Virangar Security
2009-01-01   PowerNews 2.5.4 - 'newsid' SQL Injection 2 WEB Virangar Security
2009-01-01   w3blabor CMS 3.3.0 - Authentication Bypass 2 WEB DNX
2009-01-01   phpScribe 0.9 - 'user.cfg' Remote Configuration Disclosure 2 WEB ahmadbady
2009-01-01   Memberkit 1.0 - Arbitrary File Upload 2 WEB Lo$er
2009-01-01   PHPFootball 1.6 - Remote Hash Disclosure 2 WEB KinG-LioN
2009-01-01   ASPThai.Net WebBoard 6.0 - SQL Injection 1 WEB DaiMon
2009-01-01   EggBlog 3.1.10 - Cross-Site Request Forgery (Change Admin Password) 2 WEB x0r
2009-01-01   2Capsule - SQL Injection 1 WEB Zenith
2009-01-01   DDL-Speed Script - 'acp/backup' Admin Backup Bypass 2 WEB tmh
2009-01-01   Viart shopping cart 3.5 - Multiple Vulnerabilities 2 WEB Xia Shing Zee
2008-12-30   Pixel8 Web Photo Album 3.0 - SQL Injection 2 WEB AlpHaNiX
2008-12-30   Mole Group Vacation Estate Listing Script - Blind SQL Injection 2 WEB x0r
2008-12-30   CMScout 2.06 - SQL Injection / Local File Inclusion 2 WEB SirGod
2008-12-30   Flexphpic 0.0.x - Authentication Bypass 2 WEB S.W.A.T.
2008-12-29   Flexcustomer 0.0.6 - Admin Authentication Bypass / Possible PHP Code Writing 2 WEB Osirys
2008-12-29   PHPAlumni - SQL Injection 1 WEB Mr.SQL
2008-12-29   ThePortal 2.2 - Arbitrary File Upload 1 WEB siurek22
2008-12-29   eDNews 2.0 - SQL Injection 0 WEB Virangar Security
2008-12-29   Flexphplink 0.0.x - Authentication Bypass 1 WEB x0r
2008-12-29   Flexphpsite 0.0.1 - Authentication Bypass 1 WEB x0r
2008-12-29   FlexPHPDirectory 0.0.1 - Authentication Bypass 1 WEB x0r
2008-12-29   Sepcity Classified - 'ID' SQL Injection 1 WEB S.W.A.T.
2008-12-29   Joomla! Component com_na_content 1.0 - Blind SQL Injection 1 WEB Mehmet Ince
2008-12-29   CMS NetCat 3.0/3.12 - Blind SQL Injection 1 WEB s4avrd0w
2008-12-29   Sepcity Lawyer Portal - SQL Injection 1 WEB Osmanizim
2008-12-29   Sepcity Shopping Mall - SQL Injection 1 WEB Osmanizim
2008-12-29   Ultimate PHP Board 2.2.1 - Privilege Escalation 1 WEB StAkeR
2008-12-29   FubarForum 1.6 - Authentication Bypass Change User Password 1 WEB R31P0l
2008-12-29   TaskDriver 1.3 - Remote Change Admin Password 1 WEB cOndemned