Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2011-10-31   WordPress WP Glossary Plugin SQL Injection 109 WEB longrifle0x
2011-10-31   WordPress Classipress Theme <= 3.1.4 Stored XSS 109 WEB Paul Loftness
2011-10-31   BroadWin WebAccess SCADA/HMI Client Remote Code Execution 120 WEB Snake
2011-10-31   Joomla HM-Community (com_hmcommunity) Multiple Vulnerabilities 98 WEB 599eme Man
2011-10-31   Vik Real Estate 1.0 Joomla Component Multiple Vulnerabilities 195 WEB Chris Russell
2011-10-31   JEEMA SMS 3.2 Joomla Component Multiple Vulnerabilities 102 WEB Chris Russell
2011-10-31   Barter Sites 1.3 Joomla Component Multiple Vulnerabilities 116 WEB Chris Russell
2011-10-31   PHP Photo Album <= (0.4.1.16) Multiple Disclosure Vulnerabilities 204 WEB BHG Security Center
2011-10-31   Techfolio 1.0 Joomla Component SQL Injection Vulnerability 108 WEB Chris Russell
2011-10-28   phpScheduleIt PHP reserve.php start_date Parameter Arbitrary Code Injection 108 WEB EgiX
2011-10-28   WordPress wptouch plugin SQL Injection Vulnerability 104 WEB longrifle0x
2011-10-28   eFront <= 3.6.10 (build 11944) Multiple Security Vulnerabilities 108 WEB EgiX
2011-10-27   Web Wiz Rich Text Editor 4.4 Remote File Upload 145 WEB ZxH-Labs
2011-10-27   Online Subtitles Workshop XSS vulnerabilities 116 WEB M.Jock3R
2011-10-26   Joomla YJ Contact us Component Local File Inclusion Vulnerability 135 WEB MeGo
2011-10-26   SAP Management Console OSExecute Payload Execution 109 WEB Chris John Riley
2011-10-26   phpLDAPadmin <= 1.2.1.1 (query_engine) Remote PHP Code Injection 128 WEB TecR0c
2011-10-21   Cyclope Internet Filtering Proxy - Stored XSS Vuln 162 WEB loneferret
2011-10-20   1024 CMS 1.1.0 Beta force_download.php Local File Inclusion 100 WEB Sangyun YOO
2011-10-20   WHMCompleteSolution (cart.php) Local File Disclosure 109 WEB Lagripe-Dz
2011-10-20   Openemr-4.1.0 SQL injection Vulnerability 120 WEB I2sec-dae jin Oh
2011-10-20   Yet Another CMS 1.0 SQL Injection & XSS vulnerabilities 111 WEB Stefan Schurtz
2011-10-20   Intelligent Technology Shop-Script 2.0.5 Remote File Disclosure 112 WEB d3v1l r00t3r
2011-10-19   Dolphin <= 7.0.7 (member_menu_queries.php) Remote PHP Code Injection 111 WEB EgiX
2011-10-19   Tap In Solutions Blind SQL Injection Vulnerability 106 WEB poach3r
2011-10-19   NoNumber Framework Joomla! Plugin Multiple Vulnerabilities 253 WEB jdc
2011-10-18   Gnuboard <= 4.33.02 tp.php PATH_INFO SQL Injection 173 WEB flyh4t
2011-10-18   Dominant Creature BBG/RPG Browser Game Persistent XSS 99 WEB M.Jock3R
2011-10-18   WordPress BackWPUp Plugin 2.1.4 Code Execution 105 WEB Sense of Security
2011-10-17   WordPress wpsf-js plugin, SQL Injection 97 WEB longrifle0x
2011-10-17   WordPress 2.0.3 Denial of Service Exploits 112 WEB Angel Injection
2011-10-17   Ruubikcms v 1.1.0 (/extra/image.php) Local File Inclusion 129 WEB Sangyun YOO
2011-10-17   WP Photo Album Plus <= 4.1.1 SQL Injection Vulnerability 105 WEB Skraps
2011-10-17   WordPress Contact Form plugin <= 2.7.5 SQL Injection 125 WEB Skraps
2011-10-13   WordPress GD Star Rating plugin <= 1.9.10 SQL Injection 145 WEB Miroslav Stampar
2011-10-13   MyBB MyStatus 3.1 SQL Injection Vulnerability 157 WEB Mario_Vs
2011-10-12   Climeweb Blind SQL Injection Vulnerability 233 WEB poach3r
2011-10-12   WP-SpamFree WordPress Spam Plugin SQL Injection Vulnerability 152 WEB cheki
2011-10-11   MyBB Forum Userbar Plugin (Userbar v2.2) SQL Injection 105 WEB Mario_Vs
2011-10-11   MyBB Advanced Forum Signatures (afsignatures-2.0.4) SQL Injection 80 WEB Mario_Vs
2011-10-11   POSH Multiple Vulnerabilities 93 WEB Crashfr
2011-10-11   Cotonti CMS v0.9.4 Multiple Remote Vulnerabilities 99 WEB LiquidWorm
2011-10-11   RoundCube 0.3.1 XRF/SQL injection 90 WEB Smith Falcon
2011-10-11   6kbbs Multiple Vulnerabilities 96 WEB labs insight
2011-10-11   Filmis 0.2 Beta Multiple Vulnerabilities 76 WEB M.Jock3R
2011-10-11   KaiBB 2.0.1 SQL Injection vulnerability 91 WEB Stefan Schurtz
2011-10-11   openEngine 2.0 Multiple Blind SQL Injection vulnerabilities 92 WEB Stefan Schurtz
2011-10-11   myBB 1.6.4 Backdoor Exploit 140 WEB tdz
2011-10-11   Snortreport nmap.php and nbtscan.php Remote Command Execution 103 WEB Paul Rascagneres
2011-10-10   Sparhawk (shop) SQL Injection Vulnerability 225 WEB Kalashinkov3
2011-10-10   GotoCode Online Classifieds Multiple Vulnerabilities 91 WEB Nathaniel Carew
2011-10-09   JAK CONTENT MANAGEMENT SYSTEM PRO Persistent Cross-site Scripting 101 WEB Sid3^effects aKa HaRi
2011-10-09   Joomla Barter Site (com_listing) Multiple Vulnerabilites 113 WEB Sid3^effects aKa HaRi
2011-10-09   NexusPHP v1.5 SQL Injection 105 WEB flyh4t
2011-10-09   Joomla Component Time Returns (com_timereturns) SQL Injection 97 WEB kaMtiEz
2011-10-09   BOOKSolved 1.2.2 Remote File Disclosure 112 WEB bd0rk
2011-10-08   Feed on Feeds <= 0.5 Remote PHP Code Injection Exploit 307 WEB EgiX
2011-09-30   Typo3 File Disclosure 98 WEB Number 7
2011-09-29   Bintech Systems LLC Admin Auth Bypass Exploit 147 WEB Angel Injection
2011-09-29   SabadKharid Remote Arbitrary File Upload Exploit 118 WEB St493r
2011-09-29   TimeLive Time and Expense Tracking <= Multiple Vulnerabilities 104 WEB Nathaniel Carew
2011-09-29   E107 Persian Directory Traversal & Arbitrary File Download 124 WEB St493r
2011-09-29   Tajan System Arbitrary File Download Vulnerability 106 WEB St493r
2011-09-29   redmind Online-Shop / E-Commerce-System SQL Injection Vulnerability 109 WEB Mbah_Semar
2011-09-29   Multiple Vulnerability in "Omnidocs" 122 WEB Sohil Garg
2011-09-29   TimeLive Time and Expense Tracking 4.1.1 Multiple Vulnerabilities 98 WEB Nathaniel Carew
2011-09-28   redmind Online-Shop / E-Commerce-System SQL Injection Vulnerability 105 WEB Indonesian BlackCoder
2011-09-28   Multiple Vulnerability in Omnidocs 91 WEB Sohil Garg
2011-09-28   Jarida 1.0 Multiple Vulnerabilities 77 WEB Ptrace Security
2011-09-28   WordPress Mingle Forum plugin <= 1.0.31 SQL Injection Vulnerability 102 WEB Miroslav Stampar
2011-09-27   WordPress CevherShare Plugin 2.0 SQL Injection 229 WEB bd0rk
2011-09-21   NETGEAR Wireless Cable Modem Gateway Auth Bypass and CSRF 94 WEB Sense of Security
2011-09-21   File disclosure via XEE in SharePoint 2007/2010 and DotNetNuke < 6 83 WEB Nicolas Gregoire
2011-09-20   Multiple Wordpress Plugin timthumb.php Vulnerabilites 210 WEB Ben Schmidt
2011-09-20   Cisco TelePresence Multiple Vulnerabilities - SOS-11-010 73 WEB Lists
2011-09-20   Wordpress Relocate Upload Plugin 0.14 Remote File Inclusion 81 WEB Ben Schmidt
2011-09-20   Wordpress Mini Mail Dashboard Widget Plugin 1.36 Remote File Inclusion 126 WEB Ben Schmidt
2011-09-20   Wordpress Zingiri Web Shop Plugin 2.2.0 Remote File Inclusion 139 WEB Ben Schmidt
2011-09-20   Wordpress Mailing List Plugin 1.3.2 Remote File Inclusion 112 WEB Ben Schmidt
2011-09-20   Wordpress Disclosure Policy Plugin 1.0 Remote File Inclusion 106 WEB Ben Schmidt
2011-09-20   Wordpress Livesig Plugin 0.4 Remote File Inclusion 88 WEB Ben Schmidt
2011-09-20   Wordpress Annonces Plugin 1.2.0.0 Remote File Inclusion 92 WEB Ben Schmidt
2011-09-20   Wordpress WPEasyStats Plugin 1.8 Remote File Inclusion 95 WEB Ben Schmidt
2011-09-20   Wordpress AllWebMenus Plugin 1.1.3 Remote File Inclusion 85 WEB Ben Schmidt
2011-09-20   Wordpress TheCartPress Plugin 1.1.1 Remote File Inclusion 107 WEB Ben Schmidt
2011-09-20   Toko Lite CMS 1.5.2 (edit.php) HTTP Response Splitting Vulnerability 120 WEB LiquidWorm
2011-09-20   WordPress Filedownload Plugin 0.1 (download.php) Remote File Disclosure Vulnerability 105 WEB Septemb0x
2011-09-16   StarDevelop.LiveHelp <= v2.0 (index.php) Local File Include Vulnerability 233 WEB KedAns-Dz
2011-09-16   Nortel Contact Recording Centralized Archive 6.5.1 SQL Injection Exploit 99 WEB rgod
2011-09-15   Cogent DataHub <= 7.1.1.63 Source Disclosure 129 WEB Luigi Auriemma
2011-09-15   WordPress Plugins (editormonkey-FCKe) Multiple File Upload Vulnerabilities 187 WEB KedAns-Dz
2011-09-15   WordPress WP e-Commerce plugin <= 3.8.6 SQL Injection Vulnerability 112 WEB Miroslav Stampar
2011-09-09   OpenCart v1.5.1.2 / Blind SQL Vulnerability 150 WEB RiRes Walid
2011-09-09   MyAuth3 Blind SQL Injection 116 WEB Marcio Almeida
2011-09-09   Pluck 4.7 multiple vulnerabilities 106 WEB Bl4k3
2011-09-09   Wordpress 1 Flash Gallery Plugin Arbiraty File Upload Exploit (MSF) 243 WEB Ben Schmidt
2011-09-09   AM4SS 1.2 CSRF add admin Vulnerability 94 WEB red virus
2011-09-09   WordPress Community Events plugin <= 1.2.1 SQL Injection Vulnerability 126 WEB Miroslav Stampar
2011-09-09   WordPress Paid Downloads plugin <= 2.01 SQL Injection Vulnerability 109 WEB Miroslav Stampar
2011-09-08   WordPress Eventify - Simple Events plugin <= 1.7.f SQL Injection Vulnerability 136 WEB Miroslav Stampar
2011-09-08   WordPress SCORM Cloud plugin <= 1.0.6.6 SQL Injection Vulnerability 97 WEB Miroslav Stampar
2011-09-07   PlaySMS 0.9.5.2 <= Remote File Inclusion Vulnerability 111 WEB NoGe
2011-09-07   WordPress KNR Author List Widget plugin <= 2.0.0 SQL Injection Vulnerability 119 WEB Miroslav Stampar
2011-09-07   WordPress post highlights plugin <= 2.2 SQL Injection Vulnerability 93 WEB Miroslav Stampar
2011-09-07   WordPress Tweet Old Post plugin <= 3.2.5 SQL Injection Vulnerability 96 WEB sherl0ck_
2011-09-06   Webmobo WB News System Blind SQL Injection 133 WEB Eyup CELIK
2011-09-06   Elite Gaming Ladders v3.6 SQL Injection Vulnerability 146 WEB J.O
2011-09-06   WordPress oQey Gallery plugin <= 0.4.8 SQL Injection Vulnerability 92 WEB Miroslav Stampar
2011-09-05   Openads-2.0.11 Remote File inclusion Vulnerability 138 WEB HaCkErS eV!L
2011-08-30   WordPress iCopyright(R) Article Tools plugin <= 1.1.4 SQL Injection 129 WEB Miroslav Stampar
2011-08-30   WordPress SH Slideshow plugin <= 3.1.4 SQL Injection Vulnerability 118 WEB Miroslav Stampar
2011-08-29   cPanel Cross Site Request Forgery 123 WEB Net.Edit0r
2011-08-26   WordPress SendIt plugin <= 1.5.9 Blind SQL Injection Vulnerability 95 WEB evilsocket
2011-08-26   Mambo 4.6.5 CSRF Vuln (Change Admin Password) 115 WEB Caddy-Dz
2011-08-26   Zazavi <=1.2.1 Multiple (XSRF + Shell Upload) Vulnerabilities 123 WEB KedAns-Dz
2011-08-26   WordPress Yoast v4.1.3 Local File Disclosure Vulnerability 141 WEB Angel Injection
2011-08-25   Help Desk Software 1.1g XSRF (add admin) Vulnerability 120 WEB G13
2011-08-24   ManageEngine ServiceDesk Plus 8.0 Multiple Stored XSS Vulnerabilities 256 WEB LiquidWorm
2011-08-23   WordPress MM Duplicate plugin <= 1.2 SQL Injection Vulnerability 151 WEB Miroslav Stampar
2011-08-18   WordPress OdiHost Newsletter plugin <= 1.0 SQL Injection Vulnerability 89 WEB Miroslav Stampar
2011-08-18   WordPress Easy Contact Form Lite plugin <= 1.0.7 SQLi 93 WEB Miroslav Stampar
2011-08-18   WordPress WP Symposium plugin <= 0.64 SQL Injection Vulnerability 114 WEB Miroslav Stampar
2011-08-18   WordPress Contus HD FLV Player plugin <= 1.3 SQL Injection Vulnerability 95 WEB Miroslav Stampar
2011-08-18   WordPress File Groups plugin <= 1.1.2 SQL Injection Vulnerability 91 WEB Miroslav Stampar
2011-08-18   SoftwareDEP Classified Script SQL Injection Vulnerability 104 WEB v3n0m