2006-07-14
|
|
Invision Power Board 2.1 < 2.1.6 - SQL Injection (1)
|
1 |
WEB
|
RusH
|
2006-07-13
|
|
CzarNews 1.14 - 'tpath' Remote File Inclusion
|
1 |
WEB
|
SHiKaA
|
2006-07-13
|
|
Phorum 5 - 'pm.php' Arbitrary Local Inclusion
|
1 |
WEB
|
rgod
|
2006-07-13
|
|
phpBB 3 - 'memberlist.php' SQL Injection
|
3 |
WEB
|
rgod
|
2006-07-10
|
|
SQuery 4.5 - 'gore.php' Remote File Inclusion
|
1 |
WEB
|
SHiKaA
|
2006-07-10
|
|
EJ3 TOPo 2.2 - 'descripcion' Remote Command Execution
|
2 |
WEB
|
Hessam-x
|
2006-07-09
|
|
Ottoman CMS 1.1.3 - '?default_path=' Remote File Inclusion (2)
|
2 |
WEB
|
Jacek Wlodarczyk
|
2006-07-09
|
|
Sabdrimer PRO 2.2.4 - 'pluginpath' Remote File Inclusion
|
2 |
WEB
|
A.nosrati
|
2006-07-08
|
|
Mambo Component com_forum 1.2.4RC3 - Remote File Inclusion
|
2 |
WEB
|
h4ntu
|
2006-07-08
|
|
Mambo Component SimpleBoard 1.1.0 - Remote File Inclusion
|
1 |
WEB
|
h4ntu
|
2006-07-07
|
|
PAPOO 3_RC3 - SQL Injection / Admin Credentials Disclosure
|
2 |
WEB
|
rgod
|
2006-07-07
|
|
Pivot 1.30 RC2 - Privilege Escalation / Remote Code Execution
|
2 |
WEB
|
rgod
|
2006-07-06
|
|
Hosting Controller 6.1 Hotfix 3.1 - Privilege Escalation
|
1 |
WEB
|
Soroush Dalili
|
2006-07-05
|
|
MyPHP CMS 0.3 - 'domain' Remote File Inclusion
|
1 |
WEB
|
Kw3[R]Ln
|
2006-07-04
|
|
WonderEdit Pro CMS (template_path) - Remote File Inclusion
|
2 |
WEB
|
OLiBekaS
|
2006-07-04
|
|
Mambo Module galleria 1.0b - Remote File Inclusion
|
2 |
WEB
|
sikunYuk
|
2006-07-02
|
|
BXCP 0.3.0.4 - 'where' SQL Injection
|
2 |
WEB
|
x23
|
2006-07-01
|
|
SmartSite CMS 1.0 - 'root' Multiple Remote File Inclusions
|
2 |
WEB
|
CrAsh_oVeR_rIdE
|
2006-07-01
|
|
Randshop 1.1.1 - 'header.inc.php' Remote File Inclusion
|
2 |
WEB
|
OLiBekaS
|
2006-07-01
|
|
Plume CMS 1.1.3 - 'dbinstall.php' Remote File Inclusion
|
2 |
WEB
|
Hamid Ebadi
|
2006-07-01
|
|
Stud.IP 1.3.0-2 - Multiple Remote File Inclusions
|
2 |
WEB
|
Hamid Ebadi
|
2006-07-01
|
|
DZCP (deV!L_z Clanportal) 1.34 - 'id' SQL Injection
|
2 |
WEB
|
x128
|
2006-06-29
|
|
GeekLog 1.4.0sr3 - 'f(u)ckeditor' Remote Code Execution
|
2 |
WEB
|
rgod
|
2006-06-29
|
|
GeekLog 1.4.0sr3 - '_CONF[path]' Remote File Inclusion
|
2 |
WEB
|
Kw3[R]Ln
|
2006-06-28
|
|
XOOPS myAds Module - 'lid' SQL Injection
|
2 |
WEB
|
KeyCoder
|
2006-06-28
|
|
Blog:CMS 4.0.0k - SQL Injection
|
2 |
WEB
|
rgod
|
2006-06-28
|
|
RsGallery2 < 1.11.2 - 'rsgallery.html.php' File Inclusion
|
2 |
WEB
|
marriottvn
|
2006-06-27
|
|
Scout Portal Toolkit 1.4.0 - 'forumid' SQL Injection
|
2 |
WEB
|
simo64
|
2006-06-27
|
|
Mambo Component Pearl 1.6 - Multiple Remote File Inclusions
|
2 |
WEB
|
Kw3[R]Ln
|
2006-06-26
|
|
Mambo Module CBSms 1.0 - Remote File Inclusion
|
2 |
WEB
|
Kw3[R]Ln
|
2006-06-25
|
|
DreamAccount 3.1 - 'auth.api.php' Remote File Inclusion
|
2 |
WEB
|
CrAsh_oVeR_rIdE
|
2006-06-25
|
|
DeluxeBB 1.07 - Remote Create Admin
|
2 |
WEB
|
Hessam-x
|
2006-06-25
|
|
THoRCMS 1.3.1 - 'phpbb_root_path' Remote File Inclusion
|
2 |
WEB
|
Kw3[R]Ln
|
2006-06-25
|
|
MagNet BeeHive CMS (header) - Remote File Inclusion
|
2 |
WEB
|
Kw3[R]Ln
|
2006-06-25
|
|
MyBulletinBoard (MyBB) 1.1.3 - 'usercp.php' Create Admin
|
2 |
WEB
|
Hessam-x
|
2006-06-24
|
|
phpMySms 2.0 - 'ROOT_PATH' Remote File Inclusion
|
2 |
WEB
|
Persian-Defacer
|
2006-06-23
|
|
Jaws 0.6.2 - Search gadget SQL Injection
|
2 |
WEB
|
rgod
|
2006-06-22
|
|
w-Agora 4.2.0 - 'inc_dir' Remote File Inclusion
|
2 |
WEB
|
the_day
|
2006-06-22
|
|
Harpia CMS 1.0.5 - Remote File Inclusion
|
2 |
WEB
|
Kw3[R]Ln
|
2006-06-22
|
|
ralf image Gallery 0.7.4 - Multiple Vulnerabilities
|
2 |
WEB
|
Aesthetico
|
2006-06-22
|
|
Mambo 4.6rc1 - Weblinks Blind SQL Injection (2)
|
2 |
WEB
|
rgod
|
2006-06-21
|
|
DataLife Engine 4.1 - SQL Injection
|
2 |
WEB
|
RusH
|
2006-06-21
|
|
DataLife Engine 4.1 - SQL Injection
|
2 |
WEB
|
RusH
|
2006-06-20
|
|
SmartSite CMS 1.0 - 'root' Remote File Inclusion
|
1 |
WEB
|
Archit3ct
|
2006-06-20
|
|
dotProject 2.0.3 - 'baseDir' Remote File Inclusion
|
1 |
WEB
|
h4ntu
|
2006-06-20
|
|
BandSite CMS 1.1.1 - 'ROOT_PATH' Remote File Inclusion
|
1 |
WEB
|
Kw3[R]Ln
|
2006-06-20
|
|
Ultimate PHP Board 1.96 GOLD - Multiple Vulnerabilities
|
1 |
WEB
|
Michael Brooks
|
2006-06-19
|
|
ASP Stats Generator 2.1.1 - SQL Injection
|
1 |
WEB
|
Hamid Ebadi
|
2006-06-19
|
|
WeBBoA Host Script 1.1 - SQL Injection
|
1 |
WEB
|
EntriKa
|
2006-06-19
|
|
Micro CMS 0.3.5 - 'microcms_path' Remote File Inclusion
|
1 |
WEB
|
CeNGiZ-HaN
|
2006-06-19
|
|
IdeaBox 1.1 - 'gorumDir' Remote File Inclusion
|
2 |
WEB
|
Kacper
|
2006-06-18
|
|
PHP Live Helper 1.x - 'abs_path' Remote File Inclusion
|
2 |
WEB
|
SnIpEr_SA
|
2006-06-18
|
|
Indexu 5.0.1 - 'admin_template_path' Remote File Inclusion
|
2 |
WEB
|
CrAsh_oVeR_rIdE
|
2006-06-17
|
|
Ad Manager Pro 2.6 - 'ipath' Remote File Inclusion
|
2 |
WEB
|
Basti
|
2006-06-17
|
|
Joomla! 1.0.9 - 'Weblinks' Blind SQL Injection
|
3 |
WEB
|
rgod
|
2006-06-17
|
|
FlashBB 1.1.8 - 'phpbb_root_path' Remote File Inclusion
|
2 |
WEB
|
h4ntu
|
2006-06-17
|
|
Mambo 4.6rc1 - Weblinks Blind SQL Injection (1)
|
2 |
WEB
|
rgod
|
2006-06-16
|
|
CMS Faethon 1.3.2 - 'mainpath' Remote File Inclusion
|
2 |
WEB
|
K-159
|
2006-06-15
|
|
Bitweaver 1.3 - 'tmpImagePath' Attachment mod_mime
|
2 |
WEB
|
rgod
|
2006-06-15
|
|
DeluxeBB 1.06 - 'templatefolder' Remote File Inclusion
|
3 |
WEB
|
Andreas Sandblad
|
2006-06-14
|
|
Content-Builder (CMS) 0.7.2 - Multiple Include Vulnerabilities
|
2 |
WEB
|
Kacper
|
2006-06-14
|
|
PHP Blue Dragon CMS 2.9.1 - 'template.php' File Inclusion
|
2 |
WEB
|
Federico Fazzi
|
2006-06-14
|
|
The Bible Portal Project 2.12 - 'destination' File Inclusion
|
3 |
WEB
|
Kacper
|
2006-06-13
|
|
MyBulletinBoard (MyBB) < 1.1.3 - Remote Code Execution
|
2 |
WEB
|
Javier Olascoaga
|
2006-06-13
|
|
Minerva 2.0.8a Build 237 - 'phpbb_root_path' File Inclusion
|
2 |
WEB
|
Kacper
|
2006-06-13
|
|
aWebNews 1.5 - 'visview.php' Remote File Inclusion
|
2 |
WEB
|
SpC-x
|
2006-06-12
|
|
DCP-Portal 6.1.x - 'root' Remote File Inclusion
|
2 |
WEB
|
Federico Fazzi
|
2006-06-12
|
|
blur6ex 0.3.462 - 'ID' Admin Disclosure / Blind SQL Injection
|
2 |
WEB
|
rgod
|
2006-06-11
|
|
Content-Builder (CMS) 0.7.5 - Multiple Include Vulnerabilities
|
2 |
WEB
|
Federico Fazzi
|
2006-06-11
|
|
AWF CMS 1.11 - 'spaw_root' Remote File Inclusion
|
1 |
WEB
|
Federico Fazzi
|
2006-06-11
|
|
RCblog 1.03 - 'POST' Remote Command Execution
|
1 |
WEB
|
Hessam-x
|
2006-06-11
|
|
MaxiSepet 1.0 - 'link' SQL Injection
|
0 |
WEB
|
nukedx
|
2006-06-11
|
|
free QBoard 1.1 - 'qb_path' Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-06-11
|
|
WebprojectDB 0.1.3 - 'INCDIR' Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-06-10
|
|
phpOnDirectory 1.0 - Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-06-10
|
|
aePartner 0.8.3 - 'dir[data]' Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-06-10
|
|
empris r20020923 - 'phormationdir' Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-06-09
|
|
MailEnable Enterprise 2.0 - 'ASP' Multiple Vulnerabilities
|
1 |
WEB
|
Soroush Dalili
|
2006-06-08
|
|
Guestex Guestbook 1.00 - 'email' Remote Code Execution
|
1 |
WEB
|
K-sPecial
|
2006-06-08
|
|
Enterprise Payroll Systems 1.1 - 'footer' Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-06-08
|
|
CMS-Bandits 2.5 - 'spaw_root' Remote File Inclusion
|
1 |
WEB
|
Federico Fazzi
|
2006-06-08
|
|
Back-End CMS 0.7.2.1 - 'jpcache.php' Remote File Inclusion
|
1 |
WEB
|
Federico Fazzi
|
2006-06-07
|
|
Xtreme/Ditto News 1.0 - 'post.php' Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-06-07
|
|
OpenEMR 2.8.1 - 'fileroot' Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-06-06
|
|
myNewsletter 1.1.2 - 'adminLogin.asp' Authentication Bypass
|
1 |
WEB
|
FarhadKey
|
2006-06-06
|
|
Wikiwig 4.1 - 'wk_lang.php' Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-06-05
|
|
Dmx Forum 2.1a - 'edit.php' Remote Password Disclosure
|
1 |
WEB
|
DarkFig
|
2006-06-05
|
|
DreamAccount 3.1 - 'da_path' Remote File Inclusion
|
1 |
WEB
|
Aesthetico
|
2006-06-05
|
|
dotWidget CMS 1.0.6 - 'file_path' Remote File Inclusion
|
1 |
WEB
|
Aesthetico
|
2006-06-05
|
|
Particle Wiki 1.0.2 - SQL Injection
|
1 |
WEB
|
FarhadKey
|
2006-06-05
|
|
Claroline 1.7.6 - 'includePath' Remote Code Execution
|
1 |
WEB
|
rgod
|
2006-06-04
|
|
SCart 2.0 - 'page' Remote Code Execution
|
1 |
WEB
|
K-159
|
2006-06-04
|
|
FunkBoard CF0.71 - 'profile.php' Remote User Pass Change
|
1 |
WEB
|
ajann
|
2006-06-03
|
|
LifeType 1.0.4 - SQL Injection
|
1 |
WEB
|
rgod
|
2006-06-03
|
|
ProPublish 2.0 - 'catid' SQL Injection
|
1 |
WEB
|
FarhadKey
|
2006-06-03
|
|
CS-Cart 1.3.3 - 'classes_dir' Remote File Inclusion
|
0 |
WEB
|
Kacper
|
2006-06-03
|
|
WebspotBlogging 3.0.1 - 'path' Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-06-03
|
|
BlueShoes Framework 4.6 - Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-06-03
|
|
DotClear 1.2.4 - 'prepend.php' Remote File Inclusion
|
2 |
WEB
|
rgod
|
2006-06-03
|
|
PixelPost 1-5rc1-2 - Privilege Escalation
|
1 |
WEB
|
rgod
|
2006-06-02
|
|
PHP-Nuke 7.9 Final - 'phpbb_root_path' Remote File Inclusions
|
0 |
WEB
|
ddoshomo
|
2006-06-02
|
|
Informium 0.12.0 - 'common-menu.php' Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-06-02
|
|
ashNews 0.83 - 'pathtoashnews' Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-06-02
|
|
Igloo 0.1.9 - 'Wiki.php' Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-06-02
|
|
Redaxo 3.2 - 'INCLUDE_PATH' Remote File Inclusion
|
1 |
WEB
|
beford
|
2006-06-01
|
|
Bytehoard 2.1 - 'server.php' Remote File Inclusion
|
1 |
WEB
|
beford
|
2006-06-01
|
|
aspWebLinks 2.0 - SQL Injection / Admin Pass Change
|
1 |
WEB
|
ajann
|
2006-06-01
|
|
AssoCIateD CMS 1.1.3 - 'ROOT_PATH' Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-06-01
|
|
TinyPHP Forum 3.6 - 'profile.php' Remote Code Execution
|
1 |
WEB
|
Hessam-x
|
2006-05-31
|
|
metajour 2.1 - 'system_path' Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-05-31
|
|
Ottoman CMS 1.1.3 - '?default_path=' Remote File Inclusion (1)
|
1 |
WEB
|
Kacper
|
2006-05-31
|
|
pppBlog 0.3.8 - System Disclosure
|
1 |
WEB
|
rgod
|
2006-05-30
|
|
gnopaste 0.5.3 - 'common.php' Remote File Inclusion
|
0 |
WEB
|
SmokeZ
|
2006-05-29
|
|
Nukedit 4.9.6 - Unauthorized Admin Add
|
1 |
WEB
|
FarhadKey
|
2006-05-29
|
|
Speedy ASP Forum - 'profileupdate.asp' User Pass Change
|
0 |
WEB
|
ajann
|
2006-05-29
|
|
Fastpublish CMS 1.6.9 - config[fsBase] Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-05-28
|
|
CosmicShoppingCart - 'search.php' SQL Injection
|
1 |
WEB
|
Vympel
|
2006-05-28
|
|
Blend Portal 1.2.0 - 'phpBB Mod' Remote File Inclusion
|
1 |
WEB
|
nukedx
|
2006-05-28
|
|
ASPSitem 2.0 - SQL Injection / Database Disclosure
|
0 |
WEB
|
nukedx
|
2006-05-28
|
|
Activity MOD Plus 1.1.0 - 'phpBB Mod' File Inclusion
|
0 |
WEB
|
nukedx
|
2006-05-28
|
|
UBBCentral UBB.Threads 5.x/6.x - Multiple Remote File Inclusions
|
1 |
WEB
|
nukedx
|
2006-05-28
|
|
EggBlog < 3.07 - Remote SQL Injection / Privilege Escalation
|
1 |
WEB
|
nukedx
|
2006-05-28
|
|
F@cile Interactive Web 0.8x - Remote File Inclusion / Cross-Site Scripting
|
1 |
WEB
|
nukedx
|
2006-05-28
|
|
Enigma Haber 4.3 - Multiple SQL Injections
|
1 |
WEB
|
nukedx
|
2006-05-28
|
|
tinyBB 0.3 - Remote File Inclusion / SQL Injection
|
1 |
WEB
|
nukedx
|