Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2012-03-08   Iciniti Store SQL Injection - Security Advisory - SOS-12-003 90 WEB Lists
2012-03-08   Promise WebPAM v2.2.0.13 Multiple Remote Vulnerabilities 84 WEB LiquidWorm
2012-03-08   WebfolioCMS <= 1.1.4 Multiple XSS 178 WEB Ivano Binetti
2012-03-08   Symfony 2 Unauthenticated Information Disclosure 104 WEB Phil Taylor
2012-03-08   Log1cms v2.1 Multiple XSRF File (Upload/Download) Vulnerabilities 106 WEB KedAns-Dz
2012-03-08   Zen Cart v.1.5.0 Remote Shell Upload 210 WEB Mr.ExiT
2012-03-06   Drupal CMS 7.12 (latest stable release) Multiple Vulnerabilities 87 WEB Ivano Binetti
2012-03-06   ForkCMS 3.2.5 Multiple Vulnerabilities 71 WEB Ivano Binetti
2012-03-06   lizard cart SQLi (search.php) 77 WEB Number 7
2012-03-06   Symfony2 Local File Disclosure - Security Advisory - SOS-12-002 89 WEB Lists
2012-03-06   EbizCare => SQL Injection Vulnerability 103 WEB dbx
2012-03-06   Open-Realty 2.5.8 Local File Inclusion 87 WEB Transparent
2012-03-06   BigDump Importer v0.32b RFU 131 WEB TeaM MosTa
2012-03-06   piwigo <== SQL Injector 78 WEB TeaM MosTa
2012-03-06   Multiple SQL injections in rivettracker <=1.03 77 WEB Ali Raheem
2012-03-06   CnnCMS 1.x SQL Injection Vulnerability 89 WEB X-Cisadane
2012-03-05   AneCMS v.2e2c583 LFI exploit 81 WEB I2sec-PJH
2012-03-05   deV!L`z Clanportal Witze Addon Versions 0.9 SQL Injection Vulnerability 107 WEB Easy Laster
2012-03-04   Timesheet Next Gen 1.5.2 Multiple SQLi 66 WEB G13
2012-03-04   Multiple SQL injection rivettracker <=1.03 97 WEB Ali Raheem
2012-03-03   Infoserve SQL Vulnerability 77 WEB Optimiz3r
2012-03-03   Endian UTM Firewall v2.4.x & v2.5.0 - Multiple Web Vulnerabilities 89 WEB expku
2012-03-03   Wpmanager version wpm 2.2.0 (FCKeditor) Remote File Upload 121 WEB T0x!c
2012-03-03   phxEventManager 2.0 beta 5 search.php search_terms SQL Injection 100 WEB skysbsb
2012-03-01   Wolf CMS v0.7.5 Multiple Vulnerabilities 89 WEB longrifle0x
2012-03-01   ImgPals Photo Host Version 1.0 Admin Account Disactivation 95 WEB CorryL
2012-03-01   Yealink VOIP Phone Persistent Cross Site Scripting Vulnerability 103 WEB Narendra Shinde
2012-03-01   Topics Viewer CSRF Add Admin 90 WEB Green Hornet
2012-03-01   BrewBlogger v2.3.2 Multiple (XSRF/ShellUpload/SQLi) Vulnerabilities 82 WEB KedAns-Dz
2012-02-29   WebfolioCMS <= 1.1.4 CSRF (Add Admin/Modify Pages) 81 WEB Ivano Binetti
2012-02-28   Bitweaver v2.81 Local File Inclusion Vulnerability 85 WEB I2sec-PJH
2012-02-28   Dotclear 2.4.2 Arbitrary File Upload Vulnerability 76 WEB T0x!c
2012-02-28   ContaoCMS (aka TYPOlight) <= 2.11 CSRF (Delete Admin - Delete Article) 89 WEB Ivano Binetti
2012-02-27   YVS Image Gallery Sql Injection 89 WEB CorryL
2012-02-27   CreateVision CMS Database injection. 145 WEB Zwierzchowski Oskar
2012-02-27   webgrind 1.0 (file param) Local File Inclusion Vulnerability 155 WEB LiquidWorm
2012-02-27   cPassMan v1.82 Remote Command Execution Exploit 70 WEB ls
2012-02-27   PHP Gift Registry 1.5.5 SQL Injection 84 WEB G13
2012-02-24   Snom IP Phone Privilege Escalation - Security Advisory - SOS-12-001 77 WEB Lists
2012-02-24   phpDenora <= 1.4.6 Multiple SQL Injection Vulnerabilities 118 WEB KnickLighter
2012-02-24   The Uploader 2.0.4 (Eng/Ita) Remote File Upload Remote Code Execution 96 WEB Danny Moules
2012-02-23   DFLabs PTK <= 1.0.5 Multiple Vulnerabilities (Steal Authentication Credentials) 87 WEB Ivano Binetti
2012-02-23   D-Link DSL-2640B Authentication Bypass 68 WEB Ivano Binetti
2012-02-23   WebcamXP and Webcam 7 Directory Traversal Vulnerability 99 WEB Silent Dream
2012-02-23   Dlink DCS series CSRF Change Admin Password 92 WEB rigan
2012-02-23   BRIM < 2.0.0 SQL Injection 84 WEB ifnull
2012-02-23   ForkCMS 3.2.5 Multiple Vulnerabilities 90 WEB Ivano Binetti
2012-02-23   Sagem F@ST 2604 CSRF Vulnerability (ADSL Router) 95 WEB KinG Of PiraTeS
2012-02-23   Limesurvey (PHPSurveyor v.1.91+ stable) Blind SQL Injection 81 WEB TorTukiTu
2012-02-23   VOXTRONIC Voxlog Professional 3.7.2.729 SQL Injection 305 WEB J. Greil
2012-02-23   TestLink SQL Injection Vulnerabilities 100 WEB Juan M. Natal
2012-02-23   Cisco Linksys WAG54GS (ADSL Router) change admin password 72 WEB Ivano Binetti
2012-02-23   MySQLDumper v1.2x.x SQL Injection/Execute Vulnerability 130 WEB KedAns-Dz
2012-02-23   Beats Website SQL Injection Vulnerability 89 WEB system k1ller
2012-02-22   Cisco Linksys WAG54GS CSRF Change Admin Password 108 WEB Ivano Binetti
2012-02-21   PlumeCMS <= 1.2.4 CSRF Vulnerability 66 WEB Ivano Binetti
2012-02-21   D-Link DSL-2640B (ADSL Router) CSRF Vulnerability 115 WEB Ivano Binetti
2012-02-21   Joomla com_etree Blind SQL-inj Vuln 89 WEB Mach1ne
2012-02-20   SyndeoCMS <= 3.0 CSRF Vulnerability 65 WEB Ivano Binetti
2012-02-20   4PSA CMS SQL Injection Vulnerabilities 58 WEB BHG Security Center
2012-02-20   almnzm 2.4 <= CSRF Vulnerability (Add Admin) 168 WEB HaNniBaL KsA
2012-02-20   Pandora FMS v4.0.1 - Local File Include Vulnerability 97 WEB Vulnerability-Lab
2012-02-20   Mitra Iranian CMS Remote File Upload 104 WEB Nitrojen90
2012-02-20   Joomla Component com_x-shop (idd) <= SQLi Vulnerability 73 WEB KedAns-Dz
2012-02-20   Joomla Component (com_xcomp) <= Local File Inclusion Vulnerability 77 WEB KedAns-Dz
2012-02-20   Joomla Component (com_xvs) <= Local File Inclusion Vulnerability 81 WEB KedAns-Dz
2012-02-20   CDPI Software SQL Injection Vulnerability 91 WEB ITTIHACK
2012-02-20   TopForm CMS SQL Injection Vulnerability 93 WEB faza02
2012-02-20   Solgens SQLInjection Vulnerability 70 WEB the_cyber_nuxbie
2012-02-20   Pirelli Discus DSL-DRGA112-07 Remote Change Password 77 WEB Daniel Godoy
2012-02-20   Telerom CMS SQLi Vulnerability 70 WEB ITTIHACK
2012-02-17   SocialCMS CSRF Vulnerability 92 WEB Ivano Binetti
2012-02-17   LEPTON 1.1.3 SQL Injection / XSS / Local File Inclusion 170 WEB expku
2012-02-17   BuyWebArt <<< SQL Injection Vulnerability 96 WEB Infamous
2012-02-17   Fork CMS v.3.2.4 - Multiple Vulnerabilities 58 WEB RandomStorm
2012-02-16   AHLANNET<<< SQL Injection Vulnerability 84 WEB Infamous
2012-02-15   Chicago Tribune Cross Site Scripting 101 WEB Janne Ahlberg
2012-02-15   Sonexis ConferenceManager Information Disclosure 130 WEB Netragard
2012-02-13   PBBoard v2.1.4 <= Multiple Vulnerabilites 84 WEB KedAns-Dz
2012-02-13   Razor CMS v1.2 <= Multiple File Disclosure Vulnerabilites 83 WEB KedAns-Dz
2012-02-13   Dolibarr CMS v3.2.0 Alpha - File Include Vulnerabilities 104 WEB Vulnerability-Lab
2012-02-10   SimogeoFilemanager Upload File Vulnerability 317 WEB hack`
2012-02-10   Pluck CMS 4.7 Multiple CSRF Vulnerabilities 91 WEB Gordon Security
2012-02-09   D-Link ShareCenter Remote Code Execution 75 WEB Roberto Paleari
2012-02-09   Tibetsystem OwnServer 1.0 Directory Traversal 190 WEB Jason Ellison
2012-02-09   Cyberoam Central Console v2.00.2 - File Include Vulnerability 110 WEB Vulnerability-Lab
2012-02-09   Ananta Gazelle CMS - Update Statement Sql injection 73 WEB hackme
2012-02-08   Flyspray 0.9.9.6 CSRF Vulnerability 95 WEB Vaibhav Gupta
2012-02-07   XRayCMS 1.1.1 SQL Injection Vulnerability 77 WEB chap0
2012-02-07   Tube Ace(Adult PHP Tube Script) SQL Injection 116 WEB Daniel Godoy
2012-02-07   BASE 1.4.5 (base_qry_main.php t_view) SQL Injection Vulnerability 69 WEB a.kadir altan
2012-02-06   Tube Ace(Adult PHP Tube Script) SQL Injection 78 WEB Daniel Godoy
2012-02-06   GAzie <= 5.20 Cross Site Request Forgery 81 WEB Giuseppe D'Inverno
2012-02-03   Achievo v1.4.3 - Multiple Web Vulnerabilities 83 WEB Vulnerability-Lab
2012-02-03   OSCommerce v3.0.2 - Persistent Cross Site Vulnerability 170 WEB Vulnerability-Lab
2012-02-03   Apache Struts Multiple Persistent Cross-Site Scripting Vulnerabilities 213 WEB SecPod Research
2012-02-03   Sphinix Mobile Web Server 3.1.2.47 Multiple Persistent XSS Vulnerabilities 87 WEB SecPod Research
2012-02-02   MailEnable Webmail Cross-Site Scripting Vulnerability 89 WEB Sajjad Pourali
2012-02-02   Webkit normalize bug for android 2.2 (CVE-2010-1759) 95 WEB MJ Keith
2012-02-02   SiT! Support Incident Tracker 3.64 Multiple Vulnerabilities 79 WEB High-Tech Bridge SA
2012-02-02   swDesk Multiple Vulnerabilities 88 WEB Red Security TEAM
2011-12-13   Squiz Matrix - User Account Enumeration 76 WEB Troy Rose
2011-12-12   Docebo LMS <= v4.0.4 (messages) Remote Code Execution 96 WEB mr_me
2011-12-09   QContacts 1.0.6 (Joomla component) SQL injection 84 WEB Don
2011-12-09   SantriaCMS SQL Injection Vulnerability 103 WEB Troy
2011-12-09   QContacts 1.0.6 (Joomla component) SQL injection 90 WEB Don
2011-12-08   SourceBans <= 1.4.8 SQL/LFI Injection 100 WEB Havok
2011-12-08   SMF <= 2.0.1 SQL Injection, Privilege Escalation 106 WEB The:Paradox
2011-12-08   Traq <= 2.3 Authentication Bypass / Remote Code Execution Exploit 87 WEB EgiX
2011-12-08   phpBB MyPage Plugin SQL Injection 100 WEB CrazyMouse
2011-12-08   Family Connections less.php Remote Command Execution 89 WEB mr_me
2011-12-08   Php City Portal Script Software SQL Injection 123 WEB Don
2011-12-07   AlstraSoft EPay Enterprise v4.0 Blind SQL Injection 187 WEB Don
2011-12-07   PEC php calendars script SQL Injection 85 WEB Mr.MLL
2011-12-07   Five Star Review Remote SQL Injection (recommend.php) 97 WEB EthicalPractice
2011-12-07   Meditate Web Content Editor 'username_input' SQL-Injection vulnerability 78 WEB Stefan Schurtz
2011-12-06   Apache MyFaces information disclosure vulnerability 212 WEB expku
2011-12-06   Meditate Web Content Editor 'username_input' SQL-Injection vulnerability 82 WEB Stefan Schurtz
2011-12-06   majalty (category.php) Blind SQL Injection Vulnerability 259 WEB TH3.ONE
2011-12-05   Family Connections CMS v2.5.0-v2.7.1 (less.php) Remote Command Execution 86 WEB mr_me
2011-12-05   WSN Classifieds v.6.2.12 and 6.2.18 Multiple Vulnerabilities 108 WEB d3v1l
2011-12-05   Joomla Jobprofile Component (com_jobprofile) SQL Injection 96 WEB kaMtiEz
2011-12-05   CLEVAR CMS Multiple Vulnerabilities 120 WEB Mr.XHat
2011-12-05   Con-IMedia SQL inj: vulnerable 213 WEB nGa Sa Lu
2011-12-02   Muster Render Farm Management System Arbitrary File Download 78 WEB Nick Freeman