2008-11-29
|
|
Active Web Mail 4 - Blind SQL Injection
|
1 |
WEB
|
R3d-D3V!L
|
2008-11-29
|
|
ActiveVotes 2.2 - 'AccountID' Blind SQL Injection
|
1 |
WEB
|
R3d-D3V!L
|
2008-11-29
|
|
OraMon 2.0.1 - Remote Configuration File Disclosure
|
1 |
WEB
|
ahmadbady
|
2008-11-29
|
|
CMS Made Simple 1.4.1 - Local File Inclusion
|
1 |
WEB
|
M4ck-h@cK
|
2008-11-29
|
|
PHP TV Portal 2.0 - 'mid' SQL Injection
|
1 |
WEB
|
Cyber-Zone
|
2008-11-29
|
|
Active Price Comparison 4 - Authentication Bypass
|
1 |
WEB
|
R3d-D3V!L
|
2008-11-29
|
|
Active Trade 2 - Authentication Bypass
|
1 |
WEB
|
R3d-D3V!L
|
2008-11-29
|
|
Active Web Mail 4 - Authentication Bypass
|
1 |
WEB
|
R3d-D3V!L
|
2008-11-29
|
|
Active NewsLetter 4.3 - Authentication Bypass
|
0 |
WEB
|
R3d-D3V!L
|
2008-11-29
|
|
eWebquiz 8 - Authentication Bypass
|
0 |
WEB
|
R3d-D3V!L
|
2008-11-29
|
|
Active Membership 2 - Authentication Bypass
|
0 |
WEB
|
R3d-D3V!L
|
2008-11-29
|
|
Active Websurvey 9.1 - Authentication Bypass
|
0 |
WEB
|
R3d-D3V!L
|
2008-11-29
|
|
Active Test 2.1 - Authentication Bypass
|
0 |
WEB
|
R3d-D3V!L
|
2008-11-29
|
|
ActiveVotes 2.2 - Authentication Bypass
|
0 |
WEB
|
R3d-D3V!L
|
2008-11-29
|
|
ASPReferral 5.3 - 'AccountID' Blind SQL Injection
|
0 |
WEB
|
R3d-D3V!L
|
2008-11-29
|
|
Active Force Matrix 2 - Authentication Bypass
|
1 |
WEB
|
R3d-D3V!L
|
2008-11-28
|
|
Ocean12 FAQ Manager Pro - 'ID' Blind SQL Injection
|
1 |
WEB
|
Stack
|
2008-11-28
|
|
ReVou Twitter Clone - Authentication Bypass
|
1 |
WEB
|
R3d-D3V!L
|
2008-11-28
|
|
CMS little 0.0.1 - 'term' SQL Injection
|
0 |
WEB
|
CWH Underground
|
2008-11-28
|
|
Bluo CMS 1.2 - Blind SQL Injection
|
1 |
WEB
|
The_5p3ctrum
|
2008-11-28
|
|
SailPlanner 0.3a - Authentication Bypass
|
1 |
WEB
|
JIKO
|
2008-11-28
|
|
All Club CMS 0.0.2 - Remote Database Configuration Retrieve
|
2 |
WEB
|
StAkeR
|
2008-11-28
|
|
Web Calendar System 3.40 - Cross-Site Scripting / SQL Injection
|
2 |
WEB
|
Bl@ckbe@rD
|
2008-11-28
|
|
Booking Centre 2.01 - Authentication Bypass
|
2 |
WEB
|
MrDoug
|
2008-11-28
|
|
Basic-CMS - Blind SQL Injection
|
2 |
WEB
|
CWH Underground
|
2008-11-28
|
|
Basic-CMS - Remote Database Disclosure
|
2 |
WEB
|
Stack
|
2008-11-27
|
|
Comersus ASP Shopping Cart - File Disclosure / Cross-Site Scripting
|
2 |
WEB
|
Bl@ckbe@rD
|
2008-11-27
|
|
Ocean12 FAQ Manager Pro - Database Disclosure
|
1 |
WEB
|
Stack
|
2008-11-27
|
|
Turnkey Arcade Script - SQL Injection (1)
|
1 |
WEB
|
The_5p3ctrum
|
2008-11-27
|
|
pagetree CMS 0.0.2 Beta 0001 - Remote File Inclusion
|
1 |
WEB
|
NoGe
|
2008-11-27
|
|
Ocean12 Membership Manager Pro - Authentication Bypass
|
1 |
WEB
|
Cyber-Zone
|
2008-11-27
|
|
Booking Centre 2.01 - 'HotelID' SQL Injection
|
1 |
WEB
|
R3d-D3V!L
|
2008-11-27
|
|
Web Calendar 4.1 - Authentication Bypass
|
1 |
WEB
|
Cyber-Zone
|
2008-11-27
|
|
Star Articles 6.0 - Arbitrary File Upload
|
1 |
WEB
|
ZoRLu
|
2008-11-27
|
|
RakhiSoftware Shopping Cart - SQL Injection
|
2 |
WEB
|
XaDoS
|
2008-11-27
|
|
Family Project 2.x - Authentication Bypass
|
2 |
WEB
|
The_5p3ctrum
|
2008-11-27
|
|
Ocean12 Calendar Manager Gold - Database Disclosure
|
2 |
WEB
|
Pouya_Server
|
2008-11-27
|
|
Ocean12 Poll Manager Pro - Database Disclosure
|
1 |
WEB
|
Pouya_Server
|
2008-11-27
|
|
Ocean12 Membership Manager Pro - Database Disclosure
|
1 |
WEB
|
Pouya_Server
|
2008-11-27
|
|
Ocean12 Contact Manager Pro - SQL Injection / Cross-Site Scripting / File Disclosure
|
0 |
WEB
|
Pouya_Server
|
2008-11-27
|
|
Star Articles 6.0 - Blind SQL Injection (2)
|
0 |
WEB
|
Stack
|
2008-11-27
|
|
Web Calendar System 3.12/3.30 - Multiple Vulnerabilities
|
0 |
WEB
|
Bl@ckbe@rD
|
2008-11-27
|
|
TxtBlog 1.0 Alpha - Local File Inclusion
|
0 |
WEB
|
CWH Underground
|
2008-11-26
|
|
Star Articles 6.0 - Blind SQL Injection (1)
|
0 |
WEB
|
b3hz4d
|
2008-11-26
|
|
ParsBlogger - 'blog.asp' SQL Injection
|
0 |
WEB
|
h4ck3r
|
2008-11-26
|
|
Post Affiliate Pro 3 - 'umprof_status' Blind SQL Injection
|
0 |
WEB
|
XaDoS
|
2008-11-26
|
|
CMS Ortus 1.13 - SQL Injection
|
0 |
WEB
|
otmorozok428
|
2008-11-25
|
|
Jamit Job Board 3.x - Blind SQL Injection
|
0 |
WEB
|
XaDoS
|
2008-11-25
|
|
VideoGirls BiZ - Blind SQL Injection
|
0 |
WEB
|
Cyber-Zone
|
2008-11-25
|
|
LoveCMS 1.6.2 Final (Download Manager 1.0) - Arbitrary File Upload
|
0 |
WEB
|
cOndemned
|
2008-11-25
|
|
SimpleBlog 3.0 - Database Disclosure
|
0 |
WEB
|
EL_MuHaMMeD
|
2008-11-25
|
|
Fuzzylime CMS 3.03 - 'track.php' Local File Inclusion
|
0 |
WEB
|
Alfons Luja
|
2008-11-25
|
|
Clean CMS 1.5 - Blind SQL Injection
|
1 |
WEB
|
JosS
|
2008-11-25
|
|
FAQ Manager 1.2 - 'header.php' Remote File Inclusion
|
1 |
WEB
|
ZoRLu
|
2008-11-25
|
|
Clean CMS 1.5 - Blind SQL Injection / Cross-Site Scripting
|
1 |
WEB
|
ZoRLu
|
2008-11-25
|
|
chipmunk topsites - Authentication Bypass / Cross-Site Scripting
|
1 |
WEB
|
ZoRLu
|
2008-11-25
|
|
Pie Web m{a_e}sher mod rss 0.1 - Remote File Inclusion
|
1 |
WEB
|
ZoRLu
|
2008-11-25
|
|
FAQ Manager 1.2 - 'categorie.php' SQL Injection
|
1 |
WEB
|
cOndemned
|
2008-11-25
|
|
WebStudio eCatalogue - Blind SQL Injection
|
1 |
WEB
|
Hussin X
|
2008-11-25
|
|
WebStudio eHotel - Blind SQL Injection
|
1 |
WEB
|
Hussin X
|
2008-11-24
|
|
Pie Web M{a_e}sher 0.5.3 - Multiple Remote File Inclusions
|
1 |
WEB
|
NoGe
|
2008-11-24
|
|
Nitrotech 0.0.3a - Remote File Inclusion / SQL Injection
|
0 |
WEB
|
Osirys
|
2008-11-24
|
|
Quicksilver Forums 1.4.2 (Windows) - Remote Code Execution
|
1 |
WEB
|
girex
|
2008-11-24
|
|
WebStudio CMS - Blind SQL Injection
|
1 |
WEB
|
Glafkos Charalambous
|
2008-11-24
|
|
Bandwebsite 1.5 - SQL Injection / Cross-Site Scripting
|
1 |
WEB
|
ZoRLu
|
2008-11-24
|
|
ftpzik - Cross-Site Scripting / Local File Inclusion
|
1 |
WEB
|
JIKO
|
2008-11-24
|
|
VideoScript 3.0 < 4.1.5.55 - 'Unofficial' Shell Injection
|
1 |
WEB
|
G4N0K
|
2008-11-24
|
|
VideoScript 3.0 < 4.0.1.50 - 'Official' Shell Injection
|
1 |
WEB
|
G4N0K
|
2008-11-24
|
|
Goople CMS 1.7 - Arbitrary Code Execution
|
1 |
WEB
|
x0r
|
2008-11-24
|
|
Netartmedia Real Estate Portal 1.2 - 'ad_id' SQL Injection
|
1 |
WEB
|
Hussin X
|
2008-11-23
|
|
PHP Classifieds Script - Remote Database Disclosure
|
0 |
WEB
|
InjEctOr5
|
2008-11-23
|
|
Goople CMS 1.7 - Insecure Cookie Handling
|
1 |
WEB
|
BeyazKurt
|
2008-11-23
|
|
MODx CMS 0.9.6.2 - Remote File Inclusion / Cross-Site Scripting
|
1 |
WEB
|
RoMaNcYxHaCkEr
|
2008-11-23
|
|
PG Job Site - Blind SQL Injection
|
0 |
WEB
|
ZoRLu
|
2008-11-23
|
|
Pilot Group PG Roommate Finder Solution - Authentication Bypass
|
0 |
WEB
|
ZoRLu
|
2008-11-23
|
|
PG Real Estate - Authentication Bypass
|
0 |
WEB
|
ZoRLu
|
2008-11-23
|
|
Netartmedia Blog System - SQL Injection
|
0 |
WEB
|
snakespc
|
2008-11-23
|
|
Netartmedia Cars Portal 2.0 - SQL Injection
|
0 |
WEB
|
snakespc
|
2008-11-23
|
|
Goople CMS 1.7 - Arbitrary File Upload
|
1 |
WEB
|
x0r
|
2008-11-23
|
|
Prozilla Hosting Index - 'id' SQL Injection
|
0 |
WEB
|
snakespc
|
2008-11-22
|
|
LoveCMS 1.6.2 Final (Simple Forum 3.1d) - Change Admin Password
|
0 |
WEB
|
cOndemned
|
2008-11-22
|
|
Ez Ringtone Manager - Multiple Remote File Disclosure Vulnerabilities
|
0 |
WEB
|
b3hz4d
|
2008-11-22
|
|
getaphpsite Auto Dealers - Arbitrary File Upload
|
0 |
WEB
|
ZoRLu
|
2008-11-22
|
|
getaphpsite Real Estate - Arbitrary File Upload
|
0 |
WEB
|
ZoRLu
|
2008-11-22
|
|
Vlog System 1.1 - SQL Injection
|
2 |
WEB
|
Mr.SQL
|
2008-11-22
|
|
Discuz! - Remote Reset User Password
|
2 |
WEB
|
80vul
|
2008-11-22
|
|
e107 Plugin ZoGo-Shop 1.15.4 - 'product' SQL Injection
|
2 |
WEB
|
NoGe
|
2008-11-21
|
|
Joomla! Component Thyme 1.0 - SQL Injection
|
1 |
WEB
|
Ded MustD!e
|
2008-11-20
|
|
VCalendar - Remote Database Disclosure
|
2 |
WEB
|
Swan
|
2008-11-20
|
|
Natterchat 1.1 - Remote Authentication Bypass
|
2 |
WEB
|
Stack
|
2008-11-20
|
|
ToursManager - 'tourview.php' Blind SQL Injection
|
2 |
WEB
|
XaDoS
|
2008-11-20
|
|
Natterchat 1.12 - Authentication Bypass
|
2 |
WEB
|
Stack
|
2008-11-20
|
|
vBulletin 3.7.3 - Visitor Message Cross-Site Request Forgery / Worm
|
2 |
WEB
|
Mx
|
2008-11-20
|
|
PHP-Fusion 7.00.1 - 'messages.php' SQL Injection
|
1 |
WEB
|
irk4z
|
2008-11-20
|
|
Natterchat 1.1 - Authentication Bypass
|
1 |
WEB
|
Bl@ckbe@rD
|
2008-11-20
|
|
wPortfolio 0.3 - Admin Password Changing
|
2 |
WEB
|
G4N0K
|
2008-11-20
|
|
PunBB Mod PunPortal 0.1 - Local File Inclusion
|
2 |
WEB
|
StAkeR
|
2008-11-19
|
|
AskPert - Authentication Bypass
|
2 |
WEB
|
TR-ShaRk
|
2008-11-19
|
|
wPortfolio 0.3 - Arbitrary File Upload
|
2 |
WEB
|
Osirys
|
2008-11-19
|
|
Pre Job Board - Authentication Bypass
|
2 |
WEB
|
R3d-D3V!L
|
2008-11-19
|
|
RevSense 1.0 - Authentication Bypass
|
1 |
WEB
|
d3b4g
|
2008-11-19
|
|
MauryCMS 0.53.2 - Arbitrary File Upload
|
1 |
WEB
|
StAkeR
|
2008-11-19
|
|
MyTopix 1.3.0 - SQL Injection
|
1 |
WEB
|
cOndemned
|
2008-11-19
|
|
PunBB (Private Messaging System 1.2.x) - Multiple Local File Inclusions
|
1 |
WEB
|
StAkeR
|
2008-11-19
|
|
Alex Article-Engine 1.3.0 - 'FCKeditor' Arbitrary File Upload
|
1 |
WEB
|
Batter
|
2008-11-19
|
|
Alex News-Engine 1.5.1 - Arbitrary File Upload
|
1 |
WEB
|
Batter
|
2008-11-18
|
|
E-topbiz Link Back Checker 1 - Insecure Cookie Handling
|
1 |
WEB
|
x0r
|
2008-11-18
|
|
Free Directory Script 1.1.1 - 'API_HOME_DIR' Remote File Inclusion
|
1 |
WEB
|
Ghost Hacker
|
2008-11-18
|
|
Pluck CMS 4.5.3 - 'g_pcltar_lib_dir' Local File Inclusion
|
1 |
WEB
|
DSecRG
|
2008-11-18
|
|
MusicBox 2.3.8 - 'viewalbums.php' SQL Injection
|
1 |
WEB
|
snakespc
|
2008-11-17
|
|
VideoScript 4.0.1.50 - Change Admin Password
|
2 |
WEB
|
G4N0K
|
2008-11-17
|
|
Ultrastats 0.2.144/0.3.11 - 'serverid' SQL Injection
|
2 |
WEB
|
eek
|
2008-11-17
|
|
SaturnCMS - Blind SQL Injection
|
1 |
WEB
|
Hussin X
|
2008-11-17
|
|
Simple Customer 1.2 - Authentication Bypass
|
1 |
WEB
|
d3b4g
|
2008-11-17
|
|
Jadu Galaxies - 'categoryId' Blind SQL Injection
|
1 |
WEB
|
ZoRLu
|
2008-11-17
|
|
PHPfan 3.3.4 - 'init.php' Remote File Inclusion
|
1 |
WEB
|
ahmadbady
|
2008-11-17
|
|
Q-Shop 3.0 - Cross-Site Scripting / SQL Injection
|
1 |
WEB
|
Bl@ckbe@rD
|
2008-11-17
|
|
FREEze Greetings 1.0 - Remote Password Retrieve
|
1 |
WEB
|
cOndemned
|
2008-11-17
|
|
E-topbiz ADManager 4 - 'group' Blind SQL Injection
|
1 |
WEB
|
Hussin X
|
2008-11-17
|
|
OpenASP 3.0 - Blind SQL Injection
|
0 |
WEB
|
StAkeR
|
2008-11-17
|
|
mxCamArchive 2.2 - Bypass Configuration Download
|
0 |
WEB
|
ahmadbady
|
2008-11-16
|
|
PHPstore Wholesale - 'id' SQL Injection
|
1 |
WEB
|
Hussin X
|
2008-11-16
|
|
FloSites Blog - Multiple SQL Injections
|
2 |
WEB
|
Vrs-hCk
|
2008-11-16
|
|
yahoo answers - 'id' SQL Injection
|
1 |
WEB
|
snakespc
|
2008-11-15
|
|
Minigal b13 - Remote File Disclosure
|
2 |
WEB
|
Alfons Luja
|