2013-07-22
|
|
Collabtive - Multiple Vulnerabilities
|
2 |
WEB
|
Enrico Cinquini
|
2015-11-10
|
|
YesWiki 0.2 - 'template' Directory Traversal
|
2 |
WEB
|
HaHwul
|
2015-11-10
|
|
Jenkins 1.633 - Credential Recovery
|
1 |
WEB
|
The Repo
|
2015-11-09
|
|
TestLink 1.9.14 - Cross-Site Request Forgery
|
2 |
WEB
|
Aravind C Ajayan_ Balagopal N
|
2015-11-09
|
|
Arris TG1682G Modem - Persistent Cross-Site Scripting
|
2 |
WEB
|
Nu11By73
|
2013-07-11
|
|
PrestaShop - Multiple Cross-Site Request Forgery Vulnerabilities
|
3 |
WEB
|
EntPro Cyber Security Research Group
|
2013-07-12
|
|
Corda .NET Redirector - 'redirector.corda' Cross-Site Scripting
|
2 |
WEB
|
Adam Willard
|
2013-07-12
|
|
OpenEMR 4.1 - 'note' HTML Injection
|
2 |
WEB
|
Nate Drier
|
2013-07-12
|
|
Corda Highwire - 'Highwire.ashx' Full Path Disclosure
|
2 |
WEB
|
Adam Willard
|
2015-11-07
|
|
Google AdWords 6.2.0 API client libraries - XML eXternal Entity Injection
|
2 |
WEB
|
Dawid Golunski
|
2015-11-07
|
|
eBay Magento CE 1.9.2.1 - Unrestricted Cron Script (Code Execution / Denial of Service)
|
1 |
WEB
|
Dawid Golunski
|
2015-11-07
|
|
Google AdWords API PHP client library 6.2.0 - Arbitrary PHP Code Execution
|
1 |
WEB
|
Dawid Golunski
|
2015-11-06
|
|
WordPress Plugin My Calendar 2.4.10 - Multiple Vulnerabilities
|
1 |
WEB
|
Mysticism
|
2015-11-06
|
|
NXFilter 3.0.3 - Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
hyp3rlinx
|
2015-11-06
|
|
NXFilter 3.0.3 - Cross-Site Request Forgery
|
1 |
WEB
|
hyp3rlinx
|
2013-07-12
|
|
WordPress Plugin Pie Register - 'wp-login.php' Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
gravitylover
|
2013-07-12
|
|
S9Y Serendipity 1.6.2 - 'serendipity_admin_image_selector.php' Cross-Site Scripting
|
1 |
WEB
|
Omar Kurt
|
2015-11-05
|
|
JSSE - SKIP-TLS
|
1 |
WEB
|
Ramon de C Valle
|
2015-11-05
|
|
OpenSSL - Alternative Chains Certificate Forgery
|
1 |
WEB
|
Ramon de C Valle
|
2013-07-11
|
|
WordPress Plugin miniBB - SQL Injection / Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
Netsparker
|
2013-07-10
|
|
Mintboard - Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
Canberk BOLAT
|
2013-07-10
|
|
iVote - 'details.php' SQL Injection
|
1 |
WEB
|
Ashiyane Digital Security Team
|
2013-07-06
|
|
phpVibe 3.1 - Information Disclosure / Remote File Inclusion
|
1 |
WEB
|
indoushka
|
2015-11-05
|
|
vBulletin 5.1.x - Remote Code Execution
|
1 |
WEB
|
hhjj
|
2013-05-29
|
|
HostBill - 'cpupdate.php' Authentication Bypass
|
1 |
WEB
|
localhost.re
|
2013-07-02
|
|
WordPress Plugin Category Grid View Gallery - 'ID' Cross-Site Scripting
|
1 |
WEB
|
Iranian Exploit DataBase
|
2013-07-02
|
|
WordPress Plugin WP Feed - 'nid' SQL Injection
|
1 |
WEB
|
Iranian Exploit DataBase
|
2013-06-30
|
|
WordPress Plugin Xorbin Digital Flash Clock - 'widgetUrl' Cross-Site Scripting
|
1 |
WEB
|
Prakhar Prasad
|
2013-06-30
|
|
WordPress Plugin Xorbin Analog Flash Clock - 'widgetUrl' Cross-Site Scripting
|
1 |
WEB
|
Prakhar Prasad
|
2013-06-30
|
|
Atomy Maxsite - 'index.php' Arbitrary File Upload
|
1 |
WEB
|
Iranian_Dark_Coders_Team
|
2013-06-29
|
|
WordPress Plugin WP Private Messages - 'msgid' SQL Injection
|
1 |
WEB
|
IeDb ir
|
2013-06-29
|
|
Nameko - 'nameko.php' Cross-Site Scripting
|
1 |
WEB
|
Andrea Menin
|
2012-06-28
|
|
Mobile USB Drive HD - Multiple Local File Inclusion / Arbitrary File Upload Vulnerabilities
|
1 |
WEB
|
Benjamin Kunz Mejri
|
2015-11-02
|
|
actiTIME 2015.2 - Multiple Vulnerabilities
|
1 |
WEB
|
LiquidWorm
|
2013-06-15
|
|
ZamFoo - 'date' Remote Command Injection
|
1 |
WEB
|
localhost.re
|
2013-06-26
|
|
Xaraya - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
High-Tech Bridge
|
2013-06-25
|
|
Barnraiser Prairie - 'get_file.php' Directory Traversal
|
1 |
WEB
|
prairie
|
2013-06-24
|
|
FtpLocate - HTML Injection
|
1 |
WEB
|
Chako
|
2013-06-19
|
|
Joomla! Component com_rokdownloads - Arbitrary File Upload
|
2 |
WEB
|
Am!r
|
2013-06-18
|
|
et-chat - Privilege Escalation / Arbitrary File Upload
|
1 |
WEB
|
MR.XpR
|
2013-06-17
|
|
BloofoxCMS - 'index.php' Arbitrary File Upload
|
2 |
WEB
|
CWH Underground
|
2013-06-12
|
|
WordPress Plugin NextGEN Gallery - 'upload.php' Arbitrary File Upload
|
0 |
WEB
|
Marcos Garcia
|
2015-10-30
|
|
Oxwall 1.7.4 - Cross-Site Request Forgery
|
0 |
WEB
|
High-Tech Bridge SA
|
2015-10-30
|
|
Pligg CMS 2.0.2 - Cross-Site Request Forgery / Code Execution
|
1 |
WEB
|
Curesec Research Team
|
2015-10-30
|
|
Pligg CMS 2.0.2 - Directory Traversal
|
1 |
WEB
|
Curesec Research Team
|
2015-10-30
|
|
Pligg CMS 2.0.2 - Multiple SQL Injections
|
1 |
WEB
|
Curesec Research Team
|
2015-10-30
|
|
Hitron Router CGN3ACSMR 4.5.8.16 - Arbitrary Code Execution
|
0 |
WEB
|
Dolev Farhi
|
2015-10-30
|
|
PHP Server Monitor 3.1.1 - Cross-Site Request Forgery / Privilege Escalation
|
1 |
WEB
|
hyp3rlinx
|
2015-10-30
|
|
eBay Magento 1.9.2.1 - PHP FPM XML eXternal Entity Injection
|
0 |
WEB
|
Dawid Golunski
|
2015-10-30
|
|
PHP Server Monitor 3.1.1 - Multiple Cross-Site Request Forgery Vulnerabilities
|
1 |
WEB
|
hyp3rlinx
|
2013-06-11
|
|
mkCMS - 'index.php' Arbitrary PHP Code Execution
|
0 |
WEB
|
CWH Underground
|
2013-06-10
|
|
ScriptCase - 'scelta_categoria.php' SQL Injection
|
1 |
WEB
|
Hossein Hezami
|
2013-06-10
|
|
Lokboard - 'index_4.php' PHP Code Injection
|
1 |
WEB
|
CWH Underground
|
2013-06-09
|
|
WordPress Theme Ambience - 'src' Cross-Site Scripting
|
1 |
WEB
|
Darksnipper
|
2013-06-09
|
|
Max Forum - Multiple Vulnerabilities
|
3 |
WEB
|
CWH Underground
|
2015-10-29
|
|
Joomla! Component com_jnews 8.5.1 - SQL Injection
|
3 |
WEB
|
Omer Ramić
|
2013-06-10
|
|
HP Insight Diagnostics 9.4.0.4710 - Local File Inclusion
|
2 |
WEB
|
Markus Wulftange
|
2013-06-10
|
|
HP Insight Diagnostics - Remote Code Injection
|
2 |
WEB
|
Markus Wulftange
|
2013-06-07
|
|
Caucho Resin - 'index.php?logout' Cross-Site Scripting
|
2 |
WEB
|
Gjoko Krstic
|
2013-06-07
|
|
Caucho Resin - '/resin-admin/' URI Cross-Site Scripting
|
0 |
WEB
|
Gjoko Krstic
|
2015-10-28
|
|
Sagem FAST3304-V2 - Authentication Bypass (2)
|
1 |
WEB
|
Soufiane Alami Hassani
|
2015-10-28
|
|
JIRA and HipChat for JIRA Plugin - Velocity Template Injection
|
1 |
WEB
|
Chris Wood
|
2013-06-05
|
|
QNAP VioStor NVR / QNAP NAS - Remote Code Execution
|
0 |
WEB
|
Tim Herres
|
2013-06-03
|
|
Telaen - Information Disclosure
|
1 |
WEB
|
Manuel García Cárdenas
|
2013-06-04
|
|
CMS Gratis Indonesia - 'config.php' PHP Code Injection
|
1 |
WEB
|
CWH Underground
|
2013-06-04
|
|
Telaen 2.7.x - Open Redirection
|
1 |
WEB
|
Manuel García Cárdenas
|
2013-06-04
|
|
Telaen 2.7.x - Cross-Site Scripting
|
1 |
WEB
|
Manuel García Cárdenas
|
2013-05-28
|
|
Elastix - Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
cheki
|
2012-05-31
|
|
PHP4dvd - 'config.php' PHP Code Injection
|
1 |
WEB
|
CWH Underground
|
2013-05-27
|
|
WordPress Plugin ADIF Log Search Widget - 'logbook_search.php' Cross-Site Scripting
|
2 |
WEB
|
k3170makan
|
2015-10-26
|
|
Joomla! 3.2.x < 3.4.4 - SQL Injection
|
1 |
WEB
|
Manish Tanwar
|
2015-10-23
|
|
Joomla! Component Realtyna RPL 8.9.2 - Persistent Cross-Site Scripting / Cross-Site Request Forgery
|
0 |
WEB
|
Bikramaditya Guha
|
2015-10-23
|
|
Joomla! Component Realtyna RPL 8.9.2 - Multiple SQL Injections
|
1 |
WEB
|
Bikramaditya Guha
|
2015-10-23
|
|
Subrion 3.x - Multiple Vulnerabilities
|
2 |
WEB
|
bRpsd
|
2013-05-24
|
|
Matterdaddy Market - Multiple Vulnerabilities
|
2 |
WEB
|
KedAns-Dz
|
2013-05-23
|
|
Weyal CMS - Multiple SQL Injections
|
2 |
WEB
|
XroGuE
|
2013-05-16
|
|
WordPress Plugin WP Cleanfix - Cross-Site Request Forgery
|
2 |
WEB
|
Enigma Ideas
|
2013-05-15
|
|
Jojo CMS - 'x-forwarded-for' HTTP header SQL Injection
|
2 |
WEB
|
High-Tech Bridge SA
|
2013-05-15
|
|
Jojo CMS - 'search' Cross-Site Scripting
|
2 |
WEB
|
High-Tech Bridge SA
|
2013-05-16
|
|
WordPress Plugin Mail On Update - Cross-Site Request Forgery
|
2 |
WEB
|
Henri Salo
|
2013-05-14
|
|
Open Flash Chart - 'get-data' Cross-Site Scripting
|
2 |
WEB
|
Deepankar Arora
|
2013-05-15
|
|
WordPress Plugin wp-FileManager - 'path' Arbitrary File Download
|
2 |
WEB
|
ByEge
|
2015-10-22
|
|
Beckhoff CX9020 CPU Module - Remote Code Execution
|
2 |
WEB
|
Photubias
|
2013-05-14
|
|
Gallery Server Pro - Arbitrary File Upload
|
2 |
WEB
|
Drew Calcott
|
2013-05-11
|
|
WordPress Plugin Securimage-WP - 'siwp_test.php' Cross-Site Scripting
|
1 |
WEB
|
Gjoko Krstic
|
2013-05-10
|
|
Securimage - 'example_form.php' Cross-Site Scripting
|
2 |
WEB
|
Gjoko Krstic
|
2013-05-07
|
|
MyBB Game Section Plugin - 'games.php' Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
anonymous
|
2013-05-07
|
|
NetApp OnCommand System Manager - '/zapiServlet' User Management Interface Multiple Cross-Site Scrip
|
2 |
WEB
|
M. Heinzl
|
2013-05-07
|
|
NetApp OnCommand System Manager - '/zapiServlet' CIFS Configuration Management Interface Multiple Cr
|
1 |
WEB
|
M. Heinzl
|
2013-04-27
|
|
PHPValley Micro Jobs Site Script - Spoofing
|
1 |
WEB
|
Jason Whelan
|
2015-10-19
|
|
RealtyScript 4.0.2 - Multiple Blind SQL Injections
|
2 |
WEB
|
LiquidWorm
|
2015-10-19
|
|
RealtyScript 4.0.2 - Multiple Cross-Site Request Forgery / Persistent Cross-Site Scripting Vulnerabi
|
2 |
WEB
|
LiquidWorm
|
2013-04-24
|
|
WordPress Plugin WP Super Cache - PHP Remote Code Execution
|
2 |
WEB
|
anonymous
|
2013-04-23
|
|
SMF - '/index.php' HTML Injection / Multiple PHP Code Injection Vulnerabilities
|
1 |
WEB
|
Jakub Galczyk
|
2015-10-19
|
|
Belkin N150 Router 1.00.08/1.00.09 - Directory Traversal
|
2 |
WEB
|
Rahul Pratap Singh
|
2013-04-21
|
|
WordPress Theme Colormix - Multiple Vulnerabilities
|
1 |
WEB
|
MustLive
|
2015-10-18
|
|
WordPress Plugin Ajax Load More < 2.8.2 - Arbitrary File Upload
|
2 |
WEB
|
PizzaHatHacker
|
2013-04-19
|
|
Crafty Syntax Live Help 3.1.2 - Remote File Inclusion / Full Path Disclosure
|
1 |
WEB
|
ITTIHACK
|
2013-04-18
|
|
Fork CMS - 'js.php' Local File Inclusion
|
1 |
WEB
|
Rafay Baloch
|
2013-03-06
|
|
Matrix42 Service Store - 'default.aspx' Cross-Site Scripting
|
2 |
WEB
|
43zsec
|
2013-04-17
|
|
Sosci Survey - Multiple Vulnerabilities
|
1 |
WEB
|
T. Lazauninkas
|
2013-04-14
|
|
Todoo Forum 2.0 - 'todooforum.php' Multiple SQL Injections
|
2 |
WEB
|
Chiekh Bouchenafa
|
2013-04-14
|
|
Todoo Forum 2.0 - 'todooforum.php' Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Chiekh Bouchenafa
|
2015-10-15
|
|
PROLiNK H5004NK ADSL Wireless Modem - Multiple Vulnerabilities
|
2 |
WEB
|
Karn Ganeshen
|
2015-10-15
|
|
netis RealTek Wireless Router / ADSL Modem - Multiple Vulnerabilities
|
2 |
WEB
|
Karn Ganeshen
|
2013-04-13
|
|
Aibolit - Information Disclosure
|
2 |
WEB
|
MustLive
|
2013-04-10
|
|
Hero Framework - '/users/forgot_password?error' Cross-Site Scripting
|
2 |
WEB
|
High-Tech Bridge
|
2013-04-10
|
|
Hero Framework - '/users/login?Username' Cross-Site Scripting
|
2 |
WEB
|
High-Tech Bridge
|
2013-03-29
|
|
jPlayer - 'Jplayer.swf' Script Cross-Site Scripting
|
1 |
WEB
|
Malte Batram
|
2013-04-11
|
|
Request Tracker - 'ShowPending' SQL Injection
|
2 |
WEB
|
cheki
|
2013-04-11
|
|
WordPress Plugin Spider Video Player - 'theme' SQL Injection
|
1 |
WEB
|
Ashiyane Digital Security Team
|
2015-10-14
|
|
ZYXEL PMG5318-B20A - OS Command Injection
|
0 |
WEB
|
Karn Ganeshen
|
2015-10-13
|
|
Kerio Control 8.6.1 - Multiple Vulnerabilities
|
1 |
WEB
|
Raschin Tavakoli
|
2015-10-13
|
|
Netgear Voice Gateway 2.3.0.23_2.3.23 - Multiple Vulnerabilities
|
2 |
WEB
|
Karn Ganeshen
|
2015-10-13
|
|
F5 Big-IP 10.2.4 Build 595.0 Hotfix HF3 - Directory Traversal
|
1 |
WEB
|
Karn Ganeshen
|
2015-10-11
|
|
Dream CMS 2.3.0 - Cross-Site Request Forgery (Add Extension) / Arbitrary File Upload / PHP Code Exec
|
0 |
WEB
|
LiquidWorm
|
2015-10-11
|
|
Joomla! Component com_realestatemanager 3.7 - SQL Injection
|
1 |
WEB
|
Omer Ramić
|
2015-10-11
|
|
Liferay 6.1.0 CE - Privilege Escalation
|
2 |
WEB
|
Massimo De Luca
|
2013-04-10
|
|
WordPress Plugin Spiffy XSPF Player - 'playlist_id' SQL Injection
|
2 |
WEB
|
Ashiyane Digital Security Team
|
2013-04-09
|
|
phpMyAdmin - 'tbl_gis_visualization.php' Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
waraxe
|
2013-04-09
|
|
WordPress Plugin Traffic Analyzer - 'aoid' Cross-Site Scripting
|
2 |
WEB
|
Beni_Vanda
|
2013-04-09
|
|
EasyPHP - '/index.php' Authentication Bypass / Remote PHP Code Injection
|
1 |
WEB
|
KedAns-Dz
|
2013-04-05
|
|
Zimbra - 'aspell.php' Cross-Site Scripting
|
0 |
WEB
|
Michael Scherer
|
2013-04-05
|
|
PHP Address Book - '/addressbook/register/admin_index.php?q' SQL Injection
|
1 |
WEB
|
Jurgen Voorneveld
|
2013-04-05
|
|
PHP Address Book - '/addressbook/register/checklogin.php?Username' SQL Injection
|
1 |
WEB
|
Jurgen Voorneveld
|