Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2006-07-14   Invision Power Board 2.1 < 2.1.6 - SQL Injection (1) 1 WEB RusH
2006-07-13   CzarNews 1.14 - 'tpath' Remote File Inclusion 1 WEB SHiKaA
2006-07-13   Phorum 5 - 'pm.php' Arbitrary Local Inclusion 1 WEB rgod
2006-07-13   phpBB 3 - 'memberlist.php' SQL Injection 3 WEB rgod
2006-07-10   SQuery 4.5 - 'gore.php' Remote File Inclusion 1 WEB SHiKaA
2006-07-10   EJ3 TOPo 2.2 - 'descripcion' Remote Command Execution 2 WEB Hessam-x
2006-07-09   Ottoman CMS 1.1.3 - '?default_path=' Remote File Inclusion (2) 2 WEB Jacek Wlodarczyk
2006-07-09   Sabdrimer PRO 2.2.4 - 'pluginpath' Remote File Inclusion 2 WEB A.nosrati
2006-07-08   Mambo Component com_forum 1.2.4RC3 - Remote File Inclusion 2 WEB h4ntu
2006-07-08   Mambo Component SimpleBoard 1.1.0 - Remote File Inclusion 1 WEB h4ntu
2006-07-07   PAPOO 3_RC3 - SQL Injection / Admin Credentials Disclosure 2 WEB rgod
2006-07-07   Pivot 1.30 RC2 - Privilege Escalation / Remote Code Execution 2 WEB rgod
2006-07-06   Hosting Controller 6.1 Hotfix 3.1 - Privilege Escalation 1 WEB Soroush Dalili
2006-07-05   MyPHP CMS 0.3 - 'domain' Remote File Inclusion 1 WEB Kw3[R]Ln
2006-07-04   WonderEdit Pro CMS (template_path) - Remote File Inclusion 2 WEB OLiBekaS
2006-07-04   Mambo Module galleria 1.0b - Remote File Inclusion 2 WEB sikunYuk
2006-07-02   BXCP 0.3.0.4 - 'where' SQL Injection 2 WEB x23
2006-07-01   SmartSite CMS 1.0 - 'root' Multiple Remote File Inclusions 2 WEB CrAsh_oVeR_rIdE
2006-07-01   Randshop 1.1.1 - 'header.inc.php' Remote File Inclusion 2 WEB OLiBekaS
2006-07-01   Plume CMS 1.1.3 - 'dbinstall.php' Remote File Inclusion 2 WEB Hamid Ebadi
2006-07-01   Stud.IP 1.3.0-2 - Multiple Remote File Inclusions 2 WEB Hamid Ebadi
2006-07-01   DZCP (deV!L_z Clanportal) 1.34 - 'id' SQL Injection 2 WEB x128
2006-06-29   GeekLog 1.4.0sr3 - 'f(u)ckeditor' Remote Code Execution 2 WEB rgod
2006-06-29   GeekLog 1.4.0sr3 - '_CONF[path]' Remote File Inclusion 2 WEB Kw3[R]Ln
2006-06-28   XOOPS myAds Module - 'lid' SQL Injection 2 WEB KeyCoder
2006-06-28   Blog:CMS 4.0.0k - SQL Injection 2 WEB rgod
2006-06-28   RsGallery2 < 1.11.2 - 'rsgallery.html.php' File Inclusion 2 WEB marriottvn
2006-06-27   Scout Portal Toolkit 1.4.0 - 'forumid' SQL Injection 2 WEB simo64
2006-06-27   Mambo Component Pearl 1.6 - Multiple Remote File Inclusions 2 WEB Kw3[R]Ln
2006-06-26   Mambo Module CBSms 1.0 - Remote File Inclusion 2 WEB Kw3[R]Ln
2006-06-25   DreamAccount 3.1 - 'auth.api.php' Remote File Inclusion 2 WEB CrAsh_oVeR_rIdE
2006-06-25   DeluxeBB 1.07 - Remote Create Admin 2 WEB Hessam-x
2006-06-25   THoRCMS 1.3.1 - 'phpbb_root_path' Remote File Inclusion 2 WEB Kw3[R]Ln
2006-06-25   MagNet BeeHive CMS (header) - Remote File Inclusion 2 WEB Kw3[R]Ln
2006-06-25   MyBulletinBoard (MyBB) 1.1.3 - 'usercp.php' Create Admin 2 WEB Hessam-x
2006-06-24   phpMySms 2.0 - 'ROOT_PATH' Remote File Inclusion 2 WEB Persian-Defacer
2006-06-23   Jaws 0.6.2 - Search gadget SQL Injection 2 WEB rgod
2006-06-22   w-Agora 4.2.0 - 'inc_dir' Remote File Inclusion 2 WEB the_day
2006-06-22   Harpia CMS 1.0.5 - Remote File Inclusion 2 WEB Kw3[R]Ln
2006-06-22   ralf image Gallery 0.7.4 - Multiple Vulnerabilities 2 WEB Aesthetico
2006-06-22   Mambo 4.6rc1 - Weblinks Blind SQL Injection (2) 2 WEB rgod
2006-06-21   DataLife Engine 4.1 - SQL Injection 2 WEB RusH
2006-06-21   DataLife Engine 4.1 - SQL Injection 2 WEB RusH
2006-06-20   SmartSite CMS 1.0 - 'root' Remote File Inclusion 1 WEB Archit3ct
2006-06-20   dotProject 2.0.3 - 'baseDir' Remote File Inclusion 1 WEB h4ntu
2006-06-20   BandSite CMS 1.1.1 - 'ROOT_PATH' Remote File Inclusion 1 WEB Kw3[R]Ln
2006-06-20   Ultimate PHP Board 1.96 GOLD - Multiple Vulnerabilities 1 WEB Michael Brooks
2006-06-19   ASP Stats Generator 2.1.1 - SQL Injection 1 WEB Hamid Ebadi
2006-06-19   WeBBoA Host Script 1.1 - SQL Injection 1 WEB EntriKa
2006-06-19   Micro CMS 0.3.5 - 'microcms_path' Remote File Inclusion 1 WEB CeNGiZ-HaN
2006-06-19   IdeaBox 1.1 - 'gorumDir' Remote File Inclusion 2 WEB Kacper
2006-06-18   PHP Live Helper 1.x - 'abs_path' Remote File Inclusion 2 WEB SnIpEr_SA
2006-06-18   Indexu 5.0.1 - 'admin_template_path' Remote File Inclusion 2 WEB CrAsh_oVeR_rIdE
2006-06-17   Ad Manager Pro 2.6 - 'ipath' Remote File Inclusion 2 WEB Basti
2006-06-17   Joomla! 1.0.9 - 'Weblinks' Blind SQL Injection 3 WEB rgod
2006-06-17   FlashBB 1.1.8 - 'phpbb_root_path' Remote File Inclusion 2 WEB h4ntu
2006-06-17   Mambo 4.6rc1 - Weblinks Blind SQL Injection (1) 2 WEB rgod
2006-06-16   CMS Faethon 1.3.2 - 'mainpath' Remote File Inclusion 2 WEB K-159
2006-06-15   Bitweaver 1.3 - 'tmpImagePath' Attachment mod_mime 2 WEB rgod
2006-06-15   DeluxeBB 1.06 - 'templatefolder' Remote File Inclusion 3 WEB Andreas Sandblad
2006-06-14   Content-Builder (CMS) 0.7.2 - Multiple Include Vulnerabilities 2 WEB Kacper
2006-06-14   PHP Blue Dragon CMS 2.9.1 - 'template.php' File Inclusion 2 WEB Federico Fazzi
2006-06-14   The Bible Portal Project 2.12 - 'destination' File Inclusion 3 WEB Kacper
2006-06-13   MyBulletinBoard (MyBB) < 1.1.3 - Remote Code Execution 2 WEB Javier Olascoaga
2006-06-13   Minerva 2.0.8a Build 237 - 'phpbb_root_path' File Inclusion 2 WEB Kacper
2006-06-13   aWebNews 1.5 - 'visview.php' Remote File Inclusion 2 WEB SpC-x
2006-06-12   DCP-Portal 6.1.x - 'root' Remote File Inclusion 2 WEB Federico Fazzi
2006-06-12   blur6ex 0.3.462 - 'ID' Admin Disclosure / Blind SQL Injection 2 WEB rgod
2006-06-11   Content-Builder (CMS) 0.7.5 - Multiple Include Vulnerabilities 2 WEB Federico Fazzi
2006-06-11   AWF CMS 1.11 - 'spaw_root' Remote File Inclusion 1 WEB Federico Fazzi
2006-06-11   RCblog 1.03 - 'POST' Remote Command Execution 1 WEB Hessam-x
2006-06-11   MaxiSepet 1.0 - 'link' SQL Injection 0 WEB nukedx
2006-06-11   free QBoard 1.1 - 'qb_path' Remote File Inclusion 1 WEB Kacper
2006-06-11   WebprojectDB 0.1.3 - 'INCDIR' Remote File Inclusion 1 WEB Kacper
2006-06-10   phpOnDirectory 1.0 - Remote File Inclusion 1 WEB Kacper
2006-06-10   aePartner 0.8.3 - 'dir[data]' Remote File Inclusion 1 WEB Kacper
2006-06-10   empris r20020923 - 'phormationdir' Remote File Inclusion 1 WEB Kacper
2006-06-09   MailEnable Enterprise 2.0 - 'ASP' Multiple Vulnerabilities 1 WEB Soroush Dalili
2006-06-08   Guestex Guestbook 1.00 - 'email' Remote Code Execution 1 WEB K-sPecial
2006-06-08   Enterprise Payroll Systems 1.1 - 'footer' Remote File Inclusion 1 WEB Kacper
2006-06-08   CMS-Bandits 2.5 - 'spaw_root' Remote File Inclusion 1 WEB Federico Fazzi
2006-06-08   Back-End CMS 0.7.2.1 - 'jpcache.php' Remote File Inclusion 1 WEB Federico Fazzi
2006-06-07   Xtreme/Ditto News 1.0 - 'post.php' Remote File Inclusion 1 WEB Kacper
2006-06-07   OpenEMR 2.8.1 - 'fileroot' Remote File Inclusion 1 WEB Kacper
2006-06-06   myNewsletter 1.1.2 - 'adminLogin.asp' Authentication Bypass 1 WEB FarhadKey
2006-06-06   Wikiwig 4.1 - 'wk_lang.php' Remote File Inclusion 1 WEB Kacper
2006-06-05   Dmx Forum 2.1a - 'edit.php' Remote Password Disclosure 1 WEB DarkFig
2006-06-05   DreamAccount 3.1 - 'da_path' Remote File Inclusion 1 WEB Aesthetico
2006-06-05   dotWidget CMS 1.0.6 - 'file_path' Remote File Inclusion 1 WEB Aesthetico
2006-06-05   Particle Wiki 1.0.2 - SQL Injection 1 WEB FarhadKey
2006-06-05   Claroline 1.7.6 - 'includePath' Remote Code Execution 1 WEB rgod
2006-06-04   SCart 2.0 - 'page' Remote Code Execution 1 WEB K-159
2006-06-04   FunkBoard CF0.71 - 'profile.php' Remote User Pass Change 1 WEB ajann
2006-06-03   LifeType 1.0.4 - SQL Injection 1 WEB rgod
2006-06-03   ProPublish 2.0 - 'catid' SQL Injection 1 WEB FarhadKey
2006-06-03   CS-Cart 1.3.3 - 'classes_dir' Remote File Inclusion 0 WEB Kacper
2006-06-03   WebspotBlogging 3.0.1 - 'path' Remote File Inclusion 1 WEB Kacper
2006-06-03   BlueShoes Framework 4.6 - Remote File Inclusion 1 WEB Kacper
2006-06-03   DotClear 1.2.4 - 'prepend.php' Remote File Inclusion 2 WEB rgod
2006-06-03   PixelPost 1-5rc1-2 - Privilege Escalation 1 WEB rgod
2006-06-02   PHP-Nuke 7.9 Final - 'phpbb_root_path' Remote File Inclusions 0 WEB ddoshomo
2006-06-02   Informium 0.12.0 - 'common-menu.php' Remote File Inclusion 1 WEB Kacper
2006-06-02   ashNews 0.83 - 'pathtoashnews' Remote File Inclusion 1 WEB Kacper
2006-06-02   Igloo 0.1.9 - 'Wiki.php' Remote File Inclusion 1 WEB Kacper
2006-06-02   Redaxo 3.2 - 'INCLUDE_PATH' Remote File Inclusion 1 WEB beford
2006-06-01   Bytehoard 2.1 - 'server.php' Remote File Inclusion 1 WEB beford
2006-06-01   aspWebLinks 2.0 - SQL Injection / Admin Pass Change 1 WEB ajann
2006-06-01   AssoCIateD CMS 1.1.3 - 'ROOT_PATH' Remote File Inclusion 1 WEB Kacper
2006-06-01   TinyPHP Forum 3.6 - 'profile.php' Remote Code Execution 1 WEB Hessam-x
2006-05-31   metajour 2.1 - 'system_path' Remote File Inclusion 1 WEB Kacper
2006-05-31   Ottoman CMS 1.1.3 - '?default_path=' Remote File Inclusion (1) 1 WEB Kacper
2006-05-31   pppBlog 0.3.8 - System Disclosure 1 WEB rgod
2006-05-30   gnopaste 0.5.3 - 'common.php' Remote File Inclusion 0 WEB SmokeZ
2006-05-29   Nukedit 4.9.6 - Unauthorized Admin Add 1 WEB FarhadKey
2006-05-29   Speedy ASP Forum - 'profileupdate.asp' User Pass Change 0 WEB ajann
2006-05-29   Fastpublish CMS 1.6.9 - config[fsBase] Remote File Inclusion 1 WEB Kacper
2006-05-28   CosmicShoppingCart - 'search.php' SQL Injection 1 WEB Vympel
2006-05-28   Blend Portal 1.2.0 - 'phpBB Mod' Remote File Inclusion 1 WEB nukedx
2006-05-28   ASPSitem 2.0 - SQL Injection / Database Disclosure 0 WEB nukedx
2006-05-28   Activity MOD Plus 1.1.0 - 'phpBB Mod' File Inclusion 0 WEB nukedx
2006-05-28   UBBCentral UBB.Threads 5.x/6.x - Multiple Remote File Inclusions 1 WEB nukedx
2006-05-28   EggBlog < 3.07 - Remote SQL Injection / Privilege Escalation 1 WEB nukedx
2006-05-28   F@cile Interactive Web 0.8x - Remote File Inclusion / Cross-Site Scripting 1 WEB nukedx
2006-05-28   Enigma Haber 4.3 - Multiple SQL Injections 1 WEB nukedx
2006-05-28   tinyBB 0.3 - Remote File Inclusion / SQL Injection 1 WEB nukedx