2006-05-26
|
|
Plume CMS 1.0.3 - 'manager_path' Remote File Inclusion
|
1 |
WEB
|
beford
|
2006-05-25
|
|
APC ActionApps CMS 2.8.1 - Remote File Inclusion
|
1 |
WEB
|
Kacper
|
2006-05-25
|
|
DoceboLms 2.0.5 - 'help.php' Remote File Inclusion
|
0 |
WEB
|
beford
|
2006-05-25
|
|
V-Webmail 1.6.4 - 'pear_dir' Remote File Inclusion
|
0 |
WEB
|
beford
|
2006-05-25
|
|
Socketmail 2.2.6 - 'site_path' Remote File Inclusion
|
0 |
WEB
|
Aesthetico
|
2006-05-25
|
|
Back-End CMS 0.7.2.2 - 'BE_config.php' Remote File Inclusion
|
0 |
WEB
|
Kacper
|
2006-05-25
|
|
open-medium.CMS 0.25 - '404.php' Remote File Inclusion
|
0 |
WEB
|
Kacper
|
2006-05-25
|
|
BASE 1.2.4 - melissa Snort Frontend Remote File Inclusion
|
0 |
WEB
|
str0ke
|
2006-05-24
|
|
Drupal 4.7 - 'Attachment mod_mime' Remote Command Execution
|
0 |
WEB
|
rgod
|
2006-05-23
|
|
phpCommunityCalendar 4.0.3 - Cross-Site Scripting / SQL Injection
|
0 |
WEB
|
X0r_1
|
2006-05-23
|
|
Docebo 3.0.3 - Multiple Remote File Inclusions
|
0 |
WEB
|
Kacper
|
2006-05-23
|
|
Nucleus CMS 3.22 - 'DIR_LIBS' Remote File Inclusion
|
0 |
WEB
|
rgod
|
2006-05-22
|
|
UBBCentral UBB.Threads 6.4.x < 6.5.2 - 'thispath' Remote File Inclusion
|
0 |
WEB
|
V4mu
|
2006-05-21
|
|
Fusion News 1.0 (fil_config) - Remote File Inclusion
|
0 |
WEB
|
X0r_1
|
2006-05-21
|
|
XOOPS 2.0.13.2 - 'xoopsOption[nocommon]' Remote Command Execution
|
0 |
WEB
|
rgod
|
2006-05-20
|
|
Woltlab Burning Board 2.3.5 - 'links.php' SQL Injection
|
0 |
WEB
|
666
|
2006-05-20
|
|
CaLogic Calendars 1.2.2 - 'CLPath' Remote File Inclusion
|
0 |
WEB
|
Kacper
|
2006-05-19
|
|
phpMyDirectory 10.4.4 - 'ROOT_PATH' Remote File Inclusion
|
0 |
WEB
|
OLiBekaS
|
2006-05-19
|
|
Zix Forum 1.12 - 'layid' SQL Injection
|
0 |
WEB
|
FarhadKey
|
2006-05-19
|
|
phpListPro 2.0.1 - 'Language' Remote Code Execution
|
1 |
WEB
|
[Oo]
|
2006-05-19
|
|
phpBazar 2.1.0 - Remote File Inclusion / Authentication Bypass
|
0 |
WEB
|
[Oo]
|
2006-05-17
|
|
ScozNews 1.2.1 - 'mainpath' Remote File Inclusion
|
0 |
WEB
|
Kacper
|
2006-05-17
|
|
Quezza BB 1.0 - 'quezza_root_path' File Inclusion
|
0 |
WEB
|
nukedx
|
2006-05-16
|
|
DeluxeBB 1.06 - 'Attachment mod_mime' Remote Command Execution
|
0 |
WEB
|
rgod
|
2006-05-16
|
|
PHP-Fusion 6.00.306 - 'srch_where' SQL Injection
|
0 |
WEB
|
rgod
|
2006-05-15
|
|
ezusermanager 1.6 - Remote File Inclusion
|
0 |
WEB
|
OLiBekaS
|
2006-05-15
|
|
DeluxeBB 1.06 - 'name' SQL Injection (mq=off)
|
0 |
WEB
|
KingOfSka
|
2006-05-15
|
|
Squirrelcart 2.2.0 - 'cart_content.php' Remote File Inclusion
|
0 |
WEB
|
OLiBekaS
|
2006-05-15
|
|
TR Newsportal 0.36tr1 - 'poll.php' Remote File Inclusion
|
0 |
WEB
|
Kacper
|
2006-05-14
|
|
Sugar Suite Open Source 4.2 - 'OptimisticLock' Command Execution
|
0 |
WEB
|
rgod
|
2006-05-13
|
|
phpBB 2.0.20 - Admin/Restore DB/default_lang Remote Command Execution
|
0 |
WEB
|
rgod
|
2006-05-12
|
|
PHP Blue Dragon CMS 2.9 - Remote File Inclusion
|
0 |
WEB
|
Kacper
|
2006-05-12
|
|
Foing 0.7.0 - 'phpBB' Remote File Inclusion
|
0 |
WEB
|
Kurdish Security
|
2006-05-11
|
|
Unclassified NewsBoard 1.6.1 patch 1 - Local File Inclusion
|
0 |
WEB
|
rgod
|
2006-05-09
|
|
pafileDB 2.0.1 - 'mxBB'/'phpBB' Remote File Inclusion
|
1 |
WEB
|
Darkfire
|
2006-05-09
|
|
phpRaid 3.0.b3 - 'phpBB'/'SMF' Remote File Inclusion
|
1 |
WEB
|
Kurdish Security
|
2006-05-08
|
|
phpListPro 2.01 - Multiple Remote File Inclusions
|
1 |
WEB
|
Aesthetico
|
2006-05-08
|
|
ActualAnalyzer Pro 6.88 - 'rf' Remote File Inclusion
|
0 |
WEB
|
ReZEN
|
2006-05-08
|
|
ActualAnalyzer Server 8.23 - 'rf' Remote File Inclusion
|
0 |
WEB
|
Aesthetico
|
2006-05-08
|
|
Claroline E-Learning 1.75 - 'ldap.inc.php' Remote File Inclusion
|
0 |
WEB
|
beford
|
2006-05-08
|
|
Dokeos Lms 1.6.4 - 'authldap.php' Remote File Inclusion
|
0 |
WEB
|
beford
|
2006-05-07
|
|
EQdkp 1.3.0 - 'dbal.php' Remote File Inclusion
|
0 |
WEB
|
OLiBekaS
|
2006-05-07
|
|
ACal 2.2.6 - 'day.php' Remote File Inclusion
|
0 |
WEB
|
PiNGuX
|
2006-05-07
|
|
Jetbox CMS 2.1 - 'relative_script_path' Remote File Inclusion
|
0 |
WEB
|
beford
|
2006-05-07
|
|
PHP-Fusion 6.00.306 - Multiple Vulnerabilities
|
0 |
WEB
|
rgod
|
2006-05-06
|
|
VP-ASP 6.00 - 'shopcurrency.asp' SQL Injection
|
0 |
WEB
|
tracewar
|
2006-05-06
|
|
HiveMail 1.3 - 'addressbook.add.php' Remote Code Execution
|
0 |
WEB
|
[Oo]
|
2006-05-06
|
|
AWStats 6.5 - 'migrate' Remote Shell Command Injection
|
0 |
WEB
|
redsand
|
2006-05-05
|
|
TotalCalendar 2.30 - 'inc' Remote File Inclusion
|
0 |
WEB
|
Aesthetico
|
2006-05-05
|
|
StatIt 4 - 'statitpath' Remote File Inclusion
|
0 |
WEB
|
IGNOR3
|
2006-05-05
|
|
Limbo CMS 1.0.4.2 - 'catid' SQL Injection
|
0 |
WEB
|
[Oo]
|
2006-05-04
|
|
Auction 1.3m - 'phpbb_root_path' Remote File Inclusion
|
0 |
WEB
|
webDEViL
|
2006-05-03
|
|
Albinator 2.0.6 - 'Config_rootdir' Remote File Inclusion
|
0 |
WEB
|
webDEViL
|
2006-05-02
|
|
Fast Click 1.1.3/2.3.8 - 'show.php' Remote File Inclusion
|
1 |
WEB
|
R@1D3N
|
2006-05-02
|
|
X7 Chat 2.0 - 'help_file' Remote Command Execution
|
1 |
WEB
|
rgod
|
2006-05-01
|
|
Invision Power Board 2.1.5 - 'from_contact' SQL Injection
|
1 |
WEB
|
Ykstortion Security
|
2006-04-30
|
|
Aardvark Topsites PHP 4.2.2 - 'lostpw.php' Remote File Inclusion
|
1 |
WEB
|
cijfer
|
2006-04-30
|
|
phpMyAgenda 3.0 Final - 'rootagenda' Remote File Inclusion
|
1 |
WEB
|
Aesthetico
|
2006-04-30
|
|
Aardvark Topsites PHP 4.2.2 - 'path' Remote File Inclusion
|
1 |
WEB
|
[Oo]
|
2006-04-29
|
|
Limbo CMS 1.0.4.2 - 'sql.php' Remote File Inclusion
|
1 |
WEB
|
[Oo]
|
2006-04-29
|
|
Knowledge Base Mod 2.0.2 - 'phpBB' Remote File Inclusion
|
1 |
WEB
|
[Oo]
|
2006-04-29
|
|
openPHPNuke 2.3.3 - Remote File Inclusion
|
1 |
WEB
|
[Oo]
|
2006-04-29
|
|
Invision Power Board 2.1.5 - 'search.php' Remote Code Execution
|
1 |
WEB
|
Javier Olascoaga
|
2006-04-28
|
|
Advanced Guestbook 2.4.0 - 'phpBB' Remote File Inclusion
|
1 |
WEB
|
n0m3rcy
|
2006-04-28
|
|
TopList 1.3.8 - 'phpBB Hack' Remote File Inclusion (2)
|
1 |
WEB
|
FOX_MULDER
|
2006-04-28
|
|
Advanced Guestbook 2.4.0 - 'phpBB' File Inclusion
|
0 |
WEB
|
[Oo]
|
2006-04-27
|
|
TopList 1.3.8 - 'phpBB Hack' Remote File Inclusion (1)
|
1 |
WEB
|
[Oo]
|
2006-04-26
|
|
Invision Power Board 2.1.5 - 'lastdate' Remote Code Execution
|
1 |
WEB
|
RusH
|
2006-04-24
|
|
BK Forum 4.0 - 'member.asp' SQL Injection
|
0 |
WEB
|
n0m3rcy
|
2006-04-24
|
|
FlexBB 0.5.5 - '/function/showprofile.php' SQL Injection
|
0 |
WEB
|
Devil-00
|
2006-04-23
|
|
Built2Go PHP Movie Review 2B - Remote File Inclusion
|
0 |
WEB
|
Camille Myers
|
2006-04-23
|
|
Clansys 1.1 - 'index.php' PHP Code Insertion
|
0 |
WEB
|
nukedx
|
2006-04-22
|
|
My Gaming Ladder Combo System 7.0 - Remote Code Execution
|
0 |
WEB
|
nukedx
|
2006-04-21
|
|
dForum 1.5 - 'DFORUM_PATH' Multiple Remote File Inclusions
|
0 |
WEB
|
nukedx
|
2006-04-21
|
|
Simplog 0.9.3 - 'tid' SQL Injection
|
0 |
WEB
|
nukedx
|
2006-04-21
|
|
CoreNews 2.0.1 - 'userid' SQL Injection
|
0 |
WEB
|
nukedx
|
2006-04-20
|
|
PHPSurveyor 0.995 - 'surveyid' Remote Command Execution
|
0 |
WEB
|
rgod
|
2006-04-19
|
|
ASPSitem 1.83 - 'Haberler.asp' SQL Injection
|
0 |
WEB
|
nukedx
|
2006-04-19
|
|
RechnungsZentrale V2 < 1.1.3 - Remote File Inclusion
|
0 |
WEB
|
GroundZero Security
|
2006-04-19
|
|
Joomla! 1.0.7 / Mambo 4.5.3 - 'feed' Full Path Disclosure / Denial of Service
|
0 |
WEB
|
trueend5
|
2006-04-19
|
|
PCPIN Chat 5.0.4 - 'login/language' Remote Code Execution
|
0 |
WEB
|
rgod
|
2006-04-18
|
|
PHP Net Tools 2.7.1 - Remote Code Execution
|
0 |
WEB
|
FOX_MULDER
|
2006-04-18
|
|
Internet PhotoShow 1.3 - 'page' Remote File Inclusion
|
0 |
WEB
|
Hessam-x
|
2006-04-17
|
|
MyEvent 1.3 - 'event.php' Remote File Inclusion
|
0 |
WEB
|
botan
|
2006-04-17
|
|
FlexBB 0.5.5 - '/inc/start.php?_COOKIE' SQL Bypass
|
0 |
WEB
|
Devil-00
|
2006-04-16
|
|
Blackorpheus ClanMemberSkript 1.0 - SQL Injection
|
0 |
WEB
|
snatcher
|
2006-04-16
|
|
Fuju News 1.0 - Authentication Bypass / SQL Injection
|
0 |
WEB
|
snatcher
|
2006-04-15
|
|
Symantec Sygate Management Server - 'LOGIN' SQL Injection (Metasploit)
|
0 |
WEB
|
Nicob
|
2006-04-15
|
|
PHP Album 0.3.2.3 - Remote Command Execution
|
0 |
WEB
|
rgod
|
2006-04-14
|
|
SysInfo 1.21 - 'sysinfo.cgi' Remote Command Execution
|
0 |
WEB
|
rgod
|
2006-04-14
|
|
osCommerce 2.2 - 'extras' Source Code Disclosure
|
0 |
WEB
|
rgod
|
2006-04-14
|
|
phpWebSite 0.10.2 - 'hub_dir' Remote Command Execution
|
0 |
WEB
|
rgod
|
2006-04-13
|
|
PAJAX 0.5.1 - Remote Code Execution
|
0 |
WEB
|
Stoney
|
2006-04-13
|
|
quizz 1.01 - 'quizz.pl' Remote Command Execution
|
0 |
WEB
|
FOX_MULDER
|
2006-04-13
|
|
Censtore 7.3.x - 'censtore.cgi' Remote Command Execution
|
0 |
WEB
|
FOX_MULDER
|
2006-04-13
|
|
vBulletin ImpEx 1.74 - Remote Command Execution
|
0 |
WEB
|
ReZEN
|
2006-04-12
|
|
PHP121 Instant Messenger 1.4 - Remote Code Execution
|
0 |
WEB
|
rgod
|
2006-04-12
|
|
Sphider 1.3 - 'configset.php' Remote File Inclusion
|
0 |
WEB
|
rgod
|
2006-04-11
|
|
Simplog 0.9.2 - 's' Remote Command Execution
|
0 |
WEB
|
rgod
|
2006-04-10
|
|
Clansys 1.1 (showid) - SQL Injection
|
0 |
WEB
|
snatcher
|
2006-04-10
|
|
phpBB 2.0.19 - 'user_sig_bbcode_uid' Remote Code Execution
|
0 |
WEB
|
RusH
|
2006-04-10
|
|
Horde 3.0.9/3.1.0 - Help Viewer Remote Code Execution (Metasploit)
|
0 |
WEB
|
Inkubus
|
2006-04-10
|
|
phpList 2.10.2 - 'GLOBALS[]' Remote Code Execution
|
0 |
WEB
|
rgod
|
2006-04-09
|
|
Sire 2.0 - '/lire.php' Remote File Inclusion / Arbitrary File Upload
|
0 |
WEB
|
simo64
|
2006-04-09
|
|
XBrite Members 1.1 - 'id' SQL Injection
|
0 |
WEB
|
snatcher
|
2006-04-09
|
|
autonomous lan party 0.98.1.0 - Remote File Inclusion
|
0 |
WEB
|
Codexploder
|
2006-04-09
|
|
dnGuestbook 2.0 - SQL Injection
|
0 |
WEB
|
snatcher
|
2006-04-09
|
|
ADODB < 4.70 (PHPOpenChat 3.0.x) - 'Server.php' SQL Injection
|
0 |
WEB
|
rgod
|
2006-04-07
|
|
Horde Help Viewer 3.1 - Remote Command Execution
|
0 |
WEB
|
deese
|
2006-04-06
|
|
phpMyChat 0.15.0dev - SYS enter Remote Code Execution
|
0 |
WEB
|
rgod
|
2006-04-05
|
|
phpMyChat 0.14.5 - SYS enter Remote Code Execution
|
0 |
WEB
|
rgod
|
2006-04-04
|
|
Crafty Syntax Image Gallery 3.1g - Remote Code Execution
|
0 |
WEB
|
undefined1_
|
2006-04-04
|
|
INDEXU 5.0.1 - 'base_path' Remote File Inclusion
|
0 |
WEB
|
K-159
|
2006-04-04
|
|
AngelineCMS 0.8.1 - 'installpath' Remote File Inclusion
|
1 |
WEB
|
K-159
|
2006-04-02
|
|
VWar 1.5.0 R12 - Remote File Inclusion
|
1 |
WEB
|
uid0
|
2006-04-02
|
|
ReloadCMS 1.2.5 - Cross-Site Scripting / Remote Code Execution
|
1 |
WEB
|
rgod
|
2006-04-01
|
|
PHPNuke-Clan 3.0.1 - 'vwar_root2' Remote File Inclusion
|
1 |
WEB
|
uid0
|
2006-04-01
|
|
SQuery 4.5 - 'libpath' Remote File Inclusion
|
1 |
WEB
|
uid0
|
2006-03-30
|
|
Claroline 1.7.4 - 'scormExport.inc.php' Remote Code Execution
|
1 |
WEB
|
rgod
|
2006-03-29
|
|
EzASPSite 2.0 RC3 - 'Scheme' SQL Injection
|
1 |
WEB
|
nukedx
|
2006-03-28
|
|
Plogger Beta 2.1 - Administrative Credentials Disclosure
|
1 |
WEB
|
rgod
|
2006-03-28
|
|
GreyMatter WebLog 1.21d - Remote Command Execution (2)
|
1 |
WEB
|
Hessam-x
|
2006-03-28
|
|
GreyMatter WebLog 1.21d - Remote Command Execution (1)
|
1 |
WEB
|
No_Face_King
|
2006-03-28
|
|
PHPCollab 2.x / NetOffice 2.x - 'sendpassword.php' SQL Injection
|
1 |
WEB
|
rgod
|
2006-03-26
|
|
Aztek Forum 4.0 - 'myadmin.php' User Privilege Escalation
|
1 |
WEB
|
Sparah
|