2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - '/includes/base_state_criteria.inc.php?base_path'
|
1 |
WEB
|
indoushka
|
2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - '/includes/base_output_query.inc.php?base_path' Re
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - '/includes/base_output_html.inc.php?base_path' Rem
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - '/includes/base_include.inc.php?base_path' Remote
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - '/includes/base_db.inc.php?base_path' Remote File
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - '/includes/base_cache.inc.php?base_path' Remote Fi
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - '/includes/base_action.inc.php?base_path' Remote F
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - '/help/base_setup_help.php?base_path' Remote File
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - 'base_payload.php?base_path' Remote File Inclusion
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - 'base_maintenance.php?base_path' Remote File Inclu
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - 'base_main.php?base_path' Remote File Inclusion
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - 'base_logout.php?base_path' Remote File Inclusion
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - 'base_local_rules.php?base_path' Remote File Inclu
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - 'base_graph_main.php?base_path' Remote File Inclus
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - 'base_graph_form.php?base_path' Remote File Inclus
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - 'base_graph_display.php?base_path' Remote File Inc
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - 'base_graph_common.php?base_path' Remote File Incl
|
3 |
WEB
|
indoushka
|
2012-02-11
|
|
Basic Analysis and Security Engine (BASE) 1.4.5 - 'base_db_setup.php?base_path' Remote File Inclusio
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Nova CMS - '/includes/function/usertpl.php?conf[blockfile]' Remote File Inclusion
|
1 |
WEB
|
indoushka
|
2012-02-11
|
|
Nova CMS - '/includes/function/gets.php?Filename' Remote File Inclusion
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Nova CMS - '/optimizer/index.php?fileType' Remote File Inclusion
|
2 |
WEB
|
indoushka
|
2012-02-11
|
|
Nova CMS - '/administrator/modules/moduleslist.php?id' Remote File Inclusion
|
2 |
WEB
|
indoushka
|
2012-02-13
|
|
Zimbra - 'view' Cross-Site Scripting
|
2 |
WEB
|
sonyy
|
2012-02-12
|
|
eFront Community++ 3.6.10 - SQL Injection / Multiple HTML Injection Vulnerabilities
|
2 |
WEB
|
Benjamin Kunz Mejri
|
2012-02-10
|
|
RabbitWiki - 'title' Cross-Site Scripting
|
2 |
WEB
|
sonyy
|
2015-04-09
|
|
WordPress Plugin Windows Desktop and iPhone Photo Uploader - Arbitrary File Upload
|
2 |
WEB
|
Manish Tanwar
|
2000-12-19
|
|
BOA Web Server 0.94.8.2 - Arbitrary File Access
|
2 |
WEB
|
llmora
|
2012-02-10
|
|
Zen Cart 1.3.9h - '/path_to_admin/product.php' Cross-Site Request Forgery
|
2 |
WEB
|
DisK0nn3cT
|
2012-02-10
|
|
CubeCart 3.0.20 - 'switch.php?r' Arbitrary Site Redirect
|
2 |
WEB
|
Aung Khant
|
2012-02-10
|
|
CubeCart 3.0.20 - '/admin/login.php?goto' Arbitrary Site Redirect
|
2 |
WEB
|
Aung Khant
|
2012-02-10
|
|
CubeCart 3.0.20 - Multiple Script 'redir' Arbitrary Site Redirects
|
2 |
WEB
|
Aung Khant
|
2012-02-10
|
|
LxCenter Kloxo 6.1.10 - Multiple HTML Injection Vulnerabilities
|
2 |
WEB
|
anonymous
|
2012-02-10
|
|
Dolibarr ERP/CRM 3.x - '/adherents/fiche.php' SQL Injection
|
2 |
WEB
|
Benjamin Kunz Mejri
|
2015-04-08
|
|
Novell ZENworks Configuration Management 11.3.1 - Remote Code Execution
|
2 |
WEB
|
Pedro Ribeiro
|
2015-04-08
|
|
WordPress Plugin Traffic Analyzer 3.4.2 - Blind SQL Injection
|
2 |
WEB
|
Dan King
|
2015-04-08
|
|
Balero CMS 0.7.2 - Multiple JS/HTML Injection Vulnerabilities
|
2 |
WEB
|
LiquidWorm
|
2015-04-08
|
|
Balero CMS 0.7.2 - Multiple Blind SQL Injections
|
3 |
WEB
|
LiquidWorm
|
2015-04-08
|
|
WordPress Plugin Shareaholic 7.6.0.3 - Cross-Site Scripting
|
2 |
WEB
|
Kacper Szurek
|
2015-04-08
|
|
WordPress Plugin All In One WP Security & Firewall 3.9.0 - SQL Injection
|
2 |
WEB
|
Claudio Viviani
|
2012-02-07
|
|
eFront 3.6.10 - 'administrator.php' Cross-Site Scripting
|
2 |
WEB
|
Chokri B.A
|
2012-02-07
|
|
ManageEngine ADManager Plus 5.2 Build 5210 - 'domainName' Cross-Site Scripting
|
2 |
WEB
|
LiquidWorm
|
2012-02-07
|
|
ManageEngine ADManager Plus 5.2 Build 5210 - 'Operation' Cross-Site Scripting
|
2 |
WEB
|
LiquidWorm
|
2012-02-07
|
|
Simple Groupware 0.742 - 'export' Cross-Site Scripting
|
2 |
WEB
|
Infoserve Security Team
|
2012-02-06
|
|
Vespa 0.8.6 - 'getid3.php' Local File Inclusion
|
2 |
WEB
|
T0x!c
|
2012-02-03
|
|
PHP-Fusion 7.2.4 - 'weblink_id' SQL Injection
|
2 |
WEB
|
Am!r
|
2012-02-03
|
|
project-open 3.4.x - 'account-closed.tcl' Cross-Site Scripting
|
3 |
WEB
|
Michail Poultsakis
|
2012-02-02
|
|
Joomla! Component Currency Converter 1.0.0 - 'from' Cross-Site Scripting
|
2 |
WEB
|
BHG Security Center
|
2012-02-02
|
|
iknSupport 'search' Module - Cross-Site Scripting
|
2 |
WEB
|
Red Security TEAM
|
2012-02-02
|
|
Joomla! Component com_bnf - 'seccion_id' SQL Injection
|
2 |
WEB
|
Daniel Godoy
|
2012-02-02
|
|
GForge 5.7.1 - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
sonyy
|
2012-02-01
|
|
phpLDAPadmin 1.2.0.5-2 - 'server_id' Cross-Site Scripting
|
2 |
WEB
|
andsarmiento
|
2012-02-01
|
|
phpLDAPadmin 1.2.2 - 'base' Cross-Site Scripting
|
2 |
WEB
|
andsarmiento
|
2012-02-01
|
|
OpenEMR 4.1 - '/Interface/fax/fax_dispatch.php?File' 'exec()' Call Arbitrary Shell Command Execution
|
2 |
WEB
|
High-Tech Bridge SA
|
2012-02-01
|
|
OpenEMR 4.1 - '/contrib/acog/print_form.php?formname' Traversal Local File Inclusion
|
2 |
WEB
|
High-Tech Bridge SA
|
2012-02-01
|
|
OpenEMR 4.1 - '/Interface/patient_file/encounter/load_form.php?formname' Traversal Local File Inclus
|
2 |
WEB
|
High-Tech Bridge SA
|
2012-02-01
|
|
OpenEMR 4.1 - '/Interface/patient_file/encounter/trend_form.php?formname' Traversal Local File Inclu
|
2 |
WEB
|
High-Tech Bridge SA
|
2012-01-21
|
|
Lead Capture - 'login.php' Script Cross-Site Scripting
|
1 |
WEB
|
HashoR
|
2012-01-28
|
|
Joomla! Component com_cmotour - 'id' SQL Injection
|
2 |
WEB
|
the_cyber_nuxbie
|
2012-01-31
|
|
4Images 1.7.10 - '/admin/index.php?redirect' Arbitrary Site Redirect
|
3 |
WEB
|
RandomStorm
|
2012-01-31
|
|
4Images 1.7.10 - '/admin/categories.php?cat_parent_id' Cross-Site Scripting
|
2 |
WEB
|
RandomStorm
|
2012-01-31
|
|
4Images 1.7.10 - '/admin/categories.php?cat_parent_id' SQL Injection
|
2 |
WEB
|
RandomStorm
|
2012-01-30
|
|
Joomla! Component com_bbs - Multiple SQL Injections
|
2 |
WEB
|
the_cyber_nuxbie
|
2015-04-05
|
|
u-Auctions - Multiple Vulnerabilities
|
2 |
WEB
|
*Don*
|
2015-04-05
|
|
WordPress Plugin Work The Flow File Upload 2.5.2 - Arbitrary File Upload
|
2 |
WEB
|
Claudio Viviani
|
2012-01-30
|
|
Joomla! Component com_propertylab - 'id' SQL Injection
|
2 |
WEB
|
the_cyber_nuxbie
|
2012-01-31
|
|
Joomla! Component com_crhotels - 'catid' SQL Injection
|
2 |
WEB
|
the_cyber_nuxbie
|
2012-01-30
|
|
Joomla! Component com_firmy - 'Id' SQL Injection
|
2 |
WEB
|
the_cyber_nuxbie
|
2012-01-28
|
|
Joomla! Component com_visa - Local File Inclusion / SQL Injection
|
2 |
WEB
|
the_cyber_nuxbie
|
2012-01-26
|
|
xClick Cart 1.0.x - 'shopping_url' Cross-Site Scripting
|
2 |
WEB
|
sonyy
|
2012-01-26
|
|
WordPress Plugin Slideshow Gallery 1.1.x - 'border' Cross-Site Scripting
|
2 |
WEB
|
Bret Hawk
|
2012-01-26
|
|
Joomla! Component com_products - Multiple SQL Injections
|
1 |
WEB
|
the_cyber_nuxbie
|
2012-01-26
|
|
Joomla! Component com_motor - 'cid' SQL Injection
|
2 |
WEB
|
the_cyber_nuxbie
|
2012-01-25
|
|
vBadvanced CMPS 3.2.2 - 'vba_cmps_include_bottom.php' Remote File Inclusion
|
2 |
WEB
|
PacketiK
|
2012-01-25
|
|
DClassifieds 0.1 final - Cross-Site Request Forgery
|
2 |
WEB
|
High-Tech Bridge SA
|
2012-01-25
|
|
OSClass 2.3.3 - 'index.php?getParam()' Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
High-Tech Bridge SA
|
2012-01-25
|
|
OSClass 2.3.3 - 'index.php?sCategory' SQL Injection
|
2 |
WEB
|
High-Tech Bridge SA
|
2012-01-24
|
|
Joomla! Component JE Story Submit - 'index.php' Arbitrary File Upload
|
2 |
WEB
|
Robert Cooper
|
2012-01-24
|
|
Ultimate Locator - 'radius' SQL Injection
|
2 |
WEB
|
Robert Cooper
|
2012-01-24
|
|
glFusion 1.x - SQL Injection
|
3 |
WEB
|
KedAns-Dz
|
2012-01-24
|
|
WordPress Plugin YouSayToo auto-publishing 1.0 - 'submit' Cross-Site Scripting
|
1 |
WEB
|
H4ckCity Security Team
|
2015-04-02
|
|
Ericsson Drutt MSDP (Instance Monitor) - Directory Traversal
|
2 |
WEB
|
Anastasios Monachos
|
2015-04-02
|
|
WordPress Plugin VideoWhisper Video Conference Integration 4.91.8 - Arbitrary File Upload
|
2 |
WEB
|
Larry W. Cashdollar
|
2015-04-02
|
|
WordPress Plugin VideoWhisper Video Presentation 3.31.17 - Arbitrary File Upload
|
2 |
WEB
|
Larry W. Cashdollar
|
2015-04-02
|
|
phpSFP Schedule Facebook Posts 1.5.6 - SQL Injection
|
2 |
WEB
|
@u0x
|
2015-04-02
|
|
WordPress Plugin Simple Ads Manager - Information Disclosure
|
2 |
WEB
|
ITAS Team
|
2015-04-02
|
|
WordPress Plugin Simple Ads Manager 2.5.94 - Arbitrary File Upload
|
2 |
WEB
|
ITAS Team
|
2015-04-02
|
|
WordPress Plugin Simple Ads Manager - Multiple SQL Injections
|
2 |
WEB
|
ITAS Team
|
2015-04-02
|
|
WordPress Plugin WP Easy Slideshow 1.0.3 - Multiple Vulnerabilities
|
2 |
WEB
|
Divya
|
2015-04-02
|
|
Multiple WordPress UpThemes Themes - Arbitrary File Upload
|
2 |
WEB
|
Divya
|
2015-04-02
|
|
WordPress Plugin Video Gallery 2.8 - Multiple Cross-Site Request Forgery Vulnerabilities
|
2 |
WEB
|
Divya
|
2015-04-02
|
|
Kemp Load Master 7.1.16 - Multiple Vulnerabilities
|
2 |
WEB
|
Roberto Suggi Liverani
|
2015-04-02
|
|
Joomla! Component com_rand - SQL Injection
|
2 |
WEB
|
Jagriti Sahu
|
2015-04-02
|
|
WordPress Plugin Business Intelligence - SQL Injection (Metasploit)
|
1 |
WEB
|
Jagriti Sahu
|
2015-04-02
|
|
WordPress Plugin Business Intelligence - SQL Injection (Metasploit)
|
1 |
WEB
|
Jagriti Sahu
|
2015-04-02
|
|
WordPress Plugin Business Intelligence - SQL Injection (Metasploit)
|
1 |
WEB
|
Jagriti Sahu
|
2012-01-21
|
|
Raven 1.0 - 'connector.asp' Arbitrary File Upload
|
1 |
WEB
|
HELLBOY
|
2012-01-21
|
|
Joomla! Component com_kp - 'Controller' Local File Inclusion
|
2 |
WEB
|
the_cyber_nuxbie
|
2012-01-21
|
|
Joomla! Component com_bulkenquery - 'Controller' Local File Inclusion
|
2 |
WEB
|
the_cyber_nuxbie
|
2012-01-21
|
|
Joomla! Component com_some - 'Controller' Local File Inclusion
|
1 |
WEB
|
the_cyber_nuxbie
|
2012-01-21
|
|
Joomla! Component com_car - Multiple SQL Injections
|
1 |
WEB
|
the_cyber_nuxbie
|
2012-01-21
|
|
Joomla! Component com_boss - 'Controller' Local File Inclusion
|
3 |
WEB
|
the_cyber_nuxbie
|
2012-01-23
|
|
Joomla! Component com_xball - 'team_id' SQL Injection
|
0 |
WEB
|
CoBRa_21
|
2012-01-21
|
|
Joomla! Component Vik Real Estate 1.0 - Multiple SQL Injections
|
0 |
WEB
|
the_cyber_nuxbie
|
2012-01-21
|
|
Joomla! Component Full - 'id' SQL Injection
|
0 |
WEB
|
the_cyber_nuxbie
|
2012-01-21
|
|
Tribiq CMS - 'index.php' SQL Injection
|
0 |
WEB
|
Skote Vahshat
|
2012-01-23
|
|
Joomla! Component com_br - 'Controller' Local File Inclusion
|
0 |
WEB
|
the_cyber_nuxbie
|
2012-01-21
|
|
Acidcat ASP CMS 3.5 - Multiple Cross-Site Scripting Vulnerabilities
|
0 |
WEB
|
Avram Marius
|
2012-01-20
|
|
Syneto Unified Threat Management 1.3.3/1.4.2 - Multiple Cross-Site Scripting / HTML Injection Vulner
|
1 |
WEB
|
Alexander Fuchs
|
2012-01-20
|
|
Snitz Forums 2000 - 'TOPIC_ID' SQL Injection
|
1 |
WEB
|
snup
|
2012-01-19
|
|
Vastal EzineShop - 'view_mags.php' SQL Injection
|
1 |
WEB
|
Lazmania61
|
2012-01-19
|
|
PostNuke pnAddressbook Module - 'id' SQL Injection
|
1 |
WEB
|
Robert Cooper
|
2012-01-18
|
|
OneOrZero AIMS - 'index.php' Cross-Site Scripting
|
1 |
WEB
|
High-Tech Bridge SA
|
2015-03-31
|
|
Fiyo CMS 2.0.1.8 - Multiple Vulnerabilities
|
0 |
WEB
|
Mahendra
|
2015-03-31
|
|
Palo Alto Traps Server 3.1.2.1546 - Persistent Cross-Site Scripting
|
1 |
WEB
|
Michael Hendrickx
|
2015-03-31
|
|
WordPress Plugin SP Project & Document Manager 2.5.3 - Blind SQL Injection
|
1 |
WEB
|
Catsecurity
|
2015-03-31
|
|
JBoss AS 3/4/5/6 - Remote Command Execution
|
1 |
WEB
|
João Filho Matos Figueiredo
|
2012-01-18
|
|
Freelance Zone - 'show_code.php' SQL Injection
|
2 |
WEB
|
Lazmania61
|
2012-01-18
|
|
MMORPG Zone - 'view_news.php' SQL Injection
|
2 |
WEB
|
Lazmania61
|
2012-01-18
|
|
Toner Cart - 'show_series_ink.php' SQL Injection
|
0 |
WEB
|
Lazmania61
|
2012-01-16
|
|
Annuaire PHP - 'sites_inscription.php' Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
Atmon3r
|
2012-01-16
|
|
Giveaway Manager - 'members.php' Cross-Site Scripting
|
1 |
WEB
|
Am!r
|
2012-01-16
|
|
phpVideoPro 0.8.x/0.9.7 - Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
Stefan Schurtz
|
2012-01-16
|
|
Beehive Forum 101 - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Stefan Schurtz
|
2012-01-16
|
|
ATutor 2.0.3 - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Stefan Schurtz
|
2015-03-30
|
|
Joomla! Component Contact Form Maker 1.0.1 - SQL Injection
|
2 |
WEB
|
TUNISIAN CYBER
|