Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2008-11-29   Active Web Mail 4 - Blind SQL Injection 1 WEB R3d-D3V!L
2008-11-29   ActiveVotes 2.2 - 'AccountID' Blind SQL Injection 1 WEB R3d-D3V!L
2008-11-29   OraMon 2.0.1 - Remote Configuration File Disclosure 1 WEB ahmadbady
2008-11-29   CMS Made Simple 1.4.1 - Local File Inclusion 1 WEB M4ck-h@cK
2008-11-29   PHP TV Portal 2.0 - 'mid' SQL Injection 1 WEB Cyber-Zone
2008-11-29   Active Price Comparison 4 - Authentication Bypass 1 WEB R3d-D3V!L
2008-11-29   Active Trade 2 - Authentication Bypass 1 WEB R3d-D3V!L
2008-11-29   Active Web Mail 4 - Authentication Bypass 1 WEB R3d-D3V!L
2008-11-29   Active NewsLetter 4.3 - Authentication Bypass 0 WEB R3d-D3V!L
2008-11-29   eWebquiz 8 - Authentication Bypass 0 WEB R3d-D3V!L
2008-11-29   Active Membership 2 - Authentication Bypass 0 WEB R3d-D3V!L
2008-11-29   Active Websurvey 9.1 - Authentication Bypass 0 WEB R3d-D3V!L
2008-11-29   Active Test 2.1 - Authentication Bypass 0 WEB R3d-D3V!L
2008-11-29   ActiveVotes 2.2 - Authentication Bypass 0 WEB R3d-D3V!L
2008-11-29   ASPReferral 5.3 - 'AccountID' Blind SQL Injection 0 WEB R3d-D3V!L
2008-11-29   Active Force Matrix 2 - Authentication Bypass 1 WEB R3d-D3V!L
2008-11-28   Ocean12 FAQ Manager Pro - 'ID' Blind SQL Injection 1 WEB Stack
2008-11-28   ReVou Twitter Clone - Authentication Bypass 1 WEB R3d-D3V!L
2008-11-28   CMS little 0.0.1 - 'term' SQL Injection 0 WEB CWH Underground
2008-11-28   Bluo CMS 1.2 - Blind SQL Injection 1 WEB The_5p3ctrum
2008-11-28   SailPlanner 0.3a - Authentication Bypass 1 WEB JIKO
2008-11-28   All Club CMS 0.0.2 - Remote Database Configuration Retrieve 2 WEB StAkeR
2008-11-28   Web Calendar System 3.40 - Cross-Site Scripting / SQL Injection 2 WEB Bl@ckbe@rD
2008-11-28   Booking Centre 2.01 - Authentication Bypass 2 WEB MrDoug
2008-11-28   Basic-CMS - Blind SQL Injection 2 WEB CWH Underground
2008-11-28   Basic-CMS - Remote Database Disclosure 2 WEB Stack
2008-11-27   Comersus ASP Shopping Cart - File Disclosure / Cross-Site Scripting 2 WEB Bl@ckbe@rD
2008-11-27   Ocean12 FAQ Manager Pro - Database Disclosure 1 WEB Stack
2008-11-27   Turnkey Arcade Script - SQL Injection (1) 1 WEB The_5p3ctrum
2008-11-27   pagetree CMS 0.0.2 Beta 0001 - Remote File Inclusion 1 WEB NoGe
2008-11-27   Ocean12 Membership Manager Pro - Authentication Bypass 1 WEB Cyber-Zone
2008-11-27   Booking Centre 2.01 - 'HotelID' SQL Injection 1 WEB R3d-D3V!L
2008-11-27   Web Calendar 4.1 - Authentication Bypass 1 WEB Cyber-Zone
2008-11-27   Star Articles 6.0 - Arbitrary File Upload 1 WEB ZoRLu
2008-11-27   RakhiSoftware Shopping Cart - SQL Injection 2 WEB XaDoS
2008-11-27   Family Project 2.x - Authentication Bypass 2 WEB The_5p3ctrum
2008-11-27   Ocean12 Calendar Manager Gold - Database Disclosure 2 WEB Pouya_Server
2008-11-27   Ocean12 Poll Manager Pro - Database Disclosure 1 WEB Pouya_Server
2008-11-27   Ocean12 Membership Manager Pro - Database Disclosure 1 WEB Pouya_Server
2008-11-27   Ocean12 Contact Manager Pro - SQL Injection / Cross-Site Scripting / File Disclosure 0 WEB Pouya_Server
2008-11-27   Star Articles 6.0 - Blind SQL Injection (2) 0 WEB Stack
2008-11-27   Web Calendar System 3.12/3.30 - Multiple Vulnerabilities 0 WEB Bl@ckbe@rD
2008-11-27   TxtBlog 1.0 Alpha - Local File Inclusion 0 WEB CWH Underground
2008-11-26   Star Articles 6.0 - Blind SQL Injection (1) 0 WEB b3hz4d
2008-11-26   ParsBlogger - 'blog.asp' SQL Injection 0 WEB h4ck3r
2008-11-26   Post Affiliate Pro 3 - 'umprof_status' Blind SQL Injection 0 WEB XaDoS
2008-11-26   CMS Ortus 1.13 - SQL Injection 0 WEB otmorozok428
2008-11-25   Jamit Job Board 3.x - Blind SQL Injection 0 WEB XaDoS
2008-11-25   VideoGirls BiZ - Blind SQL Injection 0 WEB Cyber-Zone
2008-11-25   LoveCMS 1.6.2 Final (Download Manager 1.0) - Arbitrary File Upload 0 WEB cOndemned
2008-11-25   SimpleBlog 3.0 - Database Disclosure 0 WEB EL_MuHaMMeD
2008-11-25   Fuzzylime CMS 3.03 - 'track.php' Local File Inclusion 0 WEB Alfons Luja
2008-11-25   Clean CMS 1.5 - Blind SQL Injection 1 WEB JosS
2008-11-25   FAQ Manager 1.2 - 'header.php' Remote File Inclusion 1 WEB ZoRLu
2008-11-25   Clean CMS 1.5 - Blind SQL Injection / Cross-Site Scripting 1 WEB ZoRLu
2008-11-25   chipmunk topsites - Authentication Bypass / Cross-Site Scripting 1 WEB ZoRLu
2008-11-25   Pie Web m{a_e}sher mod rss 0.1 - Remote File Inclusion 1 WEB ZoRLu
2008-11-25   FAQ Manager 1.2 - 'categorie.php' SQL Injection 1 WEB cOndemned
2008-11-25   WebStudio eCatalogue - Blind SQL Injection 1 WEB Hussin X
2008-11-25   WebStudio eHotel - Blind SQL Injection 1 WEB Hussin X
2008-11-24   Pie Web M{a_e}sher 0.5.3 - Multiple Remote File Inclusions 1 WEB NoGe
2008-11-24   Nitrotech 0.0.3a - Remote File Inclusion / SQL Injection 0 WEB Osirys
2008-11-24   Quicksilver Forums 1.4.2 (Windows) - Remote Code Execution 1 WEB girex
2008-11-24   WebStudio CMS - Blind SQL Injection 1 WEB Glafkos Charalambous
2008-11-24   Bandwebsite 1.5 - SQL Injection / Cross-Site Scripting 1 WEB ZoRLu
2008-11-24   ftpzik - Cross-Site Scripting / Local File Inclusion 1 WEB JIKO
2008-11-24   VideoScript 3.0 < 4.1.5.55 - 'Unofficial' Shell Injection 1 WEB G4N0K
2008-11-24   VideoScript 3.0 < 4.0.1.50 - 'Official' Shell Injection 1 WEB G4N0K
2008-11-24   Goople CMS 1.7 - Arbitrary Code Execution 1 WEB x0r
2008-11-24   Netartmedia Real Estate Portal 1.2 - 'ad_id' SQL Injection 1 WEB Hussin X
2008-11-23   PHP Classifieds Script - Remote Database Disclosure 0 WEB InjEctOr5
2008-11-23   Goople CMS 1.7 - Insecure Cookie Handling 1 WEB BeyazKurt
2008-11-23   MODx CMS 0.9.6.2 - Remote File Inclusion / Cross-Site Scripting 1 WEB RoMaNcYxHaCkEr
2008-11-23   PG Job Site - Blind SQL Injection 0 WEB ZoRLu
2008-11-23   Pilot Group PG Roommate Finder Solution - Authentication Bypass 0 WEB ZoRLu
2008-11-23   PG Real Estate - Authentication Bypass 0 WEB ZoRLu
2008-11-23   Netartmedia Blog System - SQL Injection 0 WEB snakespc
2008-11-23   Netartmedia Cars Portal 2.0 - SQL Injection 0 WEB snakespc
2008-11-23   Goople CMS 1.7 - Arbitrary File Upload 1 WEB x0r
2008-11-23   Prozilla Hosting Index - 'id' SQL Injection 0 WEB snakespc
2008-11-22   LoveCMS 1.6.2 Final (Simple Forum 3.1d) - Change Admin Password 0 WEB cOndemned
2008-11-22   Ez Ringtone Manager - Multiple Remote File Disclosure Vulnerabilities 0 WEB b3hz4d
2008-11-22   getaphpsite Auto Dealers - Arbitrary File Upload 0 WEB ZoRLu
2008-11-22   getaphpsite Real Estate - Arbitrary File Upload 0 WEB ZoRLu
2008-11-22   Vlog System 1.1 - SQL Injection 2 WEB Mr.SQL
2008-11-22   Discuz! - Remote Reset User Password 2 WEB 80vul
2008-11-22   e107 Plugin ZoGo-Shop 1.15.4 - 'product' SQL Injection 2 WEB NoGe
2008-11-21   Joomla! Component Thyme 1.0 - SQL Injection 1 WEB Ded MustD!e
2008-11-20   VCalendar - Remote Database Disclosure 2 WEB Swan
2008-11-20   Natterchat 1.1 - Remote Authentication Bypass 2 WEB Stack
2008-11-20   ToursManager - 'tourview.php' Blind SQL Injection 2 WEB XaDoS
2008-11-20   Natterchat 1.12 - Authentication Bypass 2 WEB Stack
2008-11-20   vBulletin 3.7.3 - Visitor Message Cross-Site Request Forgery / Worm 2 WEB Mx
2008-11-20   PHP-Fusion 7.00.1 - 'messages.php' SQL Injection 1 WEB irk4z
2008-11-20   Natterchat 1.1 - Authentication Bypass 1 WEB Bl@ckbe@rD
2008-11-20   wPortfolio 0.3 - Admin Password Changing 2 WEB G4N0K
2008-11-20   PunBB Mod PunPortal 0.1 - Local File Inclusion 2 WEB StAkeR
2008-11-19   AskPert - Authentication Bypass 2 WEB TR-ShaRk
2008-11-19   wPortfolio 0.3 - Arbitrary File Upload 2 WEB Osirys
2008-11-19   Pre Job Board - Authentication Bypass 2 WEB R3d-D3V!L
2008-11-19   RevSense 1.0 - Authentication Bypass 1 WEB d3b4g
2008-11-19   MauryCMS 0.53.2 - Arbitrary File Upload 1 WEB StAkeR
2008-11-19   MyTopix 1.3.0 - SQL Injection 1 WEB cOndemned
2008-11-19   PunBB (Private Messaging System 1.2.x) - Multiple Local File Inclusions 1 WEB StAkeR
2008-11-19   Alex Article-Engine 1.3.0 - 'FCKeditor' Arbitrary File Upload 1 WEB Batter
2008-11-19   Alex News-Engine 1.5.1 - Arbitrary File Upload 1 WEB Batter
2008-11-18   E-topbiz Link Back Checker 1 - Insecure Cookie Handling 1 WEB x0r
2008-11-18   Free Directory Script 1.1.1 - 'API_HOME_DIR' Remote File Inclusion 1 WEB Ghost Hacker
2008-11-18   Pluck CMS 4.5.3 - 'g_pcltar_lib_dir' Local File Inclusion 1 WEB DSecRG
2008-11-18   MusicBox 2.3.8 - 'viewalbums.php' SQL Injection 1 WEB snakespc
2008-11-17   VideoScript 4.0.1.50 - Change Admin Password 2 WEB G4N0K
2008-11-17   Ultrastats 0.2.144/0.3.11 - 'serverid' SQL Injection 2 WEB eek
2008-11-17   SaturnCMS - Blind SQL Injection 1 WEB Hussin X
2008-11-17   Simple Customer 1.2 - Authentication Bypass 1 WEB d3b4g
2008-11-17   Jadu Galaxies - 'categoryId' Blind SQL Injection 1 WEB ZoRLu
2008-11-17   PHPfan 3.3.4 - 'init.php' Remote File Inclusion 1 WEB ahmadbady
2008-11-17   Q-Shop 3.0 - Cross-Site Scripting / SQL Injection 1 WEB Bl@ckbe@rD
2008-11-17   FREEze Greetings 1.0 - Remote Password Retrieve 1 WEB cOndemned
2008-11-17   E-topbiz ADManager 4 - 'group' Blind SQL Injection 1 WEB Hussin X
2008-11-17   OpenASP 3.0 - Blind SQL Injection 0 WEB StAkeR
2008-11-17   mxCamArchive 2.2 - Bypass Configuration Download 0 WEB ahmadbady
2008-11-16   PHPstore Wholesale - 'id' SQL Injection 1 WEB Hussin X
2008-11-16   FloSites Blog - Multiple SQL Injections 2 WEB Vrs-hCk
2008-11-16   yahoo answers - 'id' SQL Injection 1 WEB snakespc
2008-11-15   Minigal b13 - Remote File Disclosure 2 WEB Alfons Luja