Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2015-04-02   WordPress Plugin VideoWhisper Video Presentation 3.31.17 - Arbitrary File Upload 2 WEB Larry W. Cashdollar
2015-04-02   phpSFP Schedule Facebook Posts 1.5.6 - SQL Injection 2 WEB @u0x
2015-04-02   WordPress Plugin Simple Ads Manager - Information Disclosure 2 WEB ITAS Team
2015-04-02   WordPress Plugin Simple Ads Manager 2.5.94 - Arbitrary File Upload 2 WEB ITAS Team
2015-04-02   WordPress Plugin Simple Ads Manager - Multiple SQL Injections 2 WEB ITAS Team
2015-04-02   WordPress Plugin WP Easy Slideshow 1.0.3 - Multiple Vulnerabilities 2 WEB Divya
2015-04-02   Multiple WordPress UpThemes Themes - Arbitrary File Upload 2 WEB Divya
2015-04-02   WordPress Plugin Video Gallery 2.8 - Multiple Cross-Site Request Forgery Vulnerabilities 2 WEB Divya
2015-04-02   Kemp Load Master 7.1.16 - Multiple Vulnerabilities 2 WEB Roberto Suggi Liverani
2015-04-02   Joomla! Component com_rand - SQL Injection 2 WEB Jagriti Sahu
2015-04-02   WordPress Plugin Business Intelligence - SQL Injection (Metasploit) 2 WEB Jagriti Sahu
2015-04-02   WordPress Plugin Business Intelligence - SQL Injection (Metasploit) 3 WEB Jagriti Sahu
2015-04-02   WordPress Plugin Business Intelligence - SQL Injection (Metasploit) 2 WEB Jagriti Sahu
2012-01-21   Raven 1.0 - 'connector.asp' Arbitrary File Upload 3 WEB HELLBOY
2012-01-21   Joomla! Component com_kp - 'Controller' Local File Inclusion 3 WEB the_cyber_nuxbie
2012-01-21   Joomla! Component com_bulkenquery - 'Controller' Local File Inclusion 3 WEB the_cyber_nuxbie
2012-01-21   Joomla! Component com_some - 'Controller' Local File Inclusion 2 WEB the_cyber_nuxbie
2012-01-21   Joomla! Component com_car - Multiple SQL Injections 2 WEB the_cyber_nuxbie
2012-01-21   Joomla! Component com_boss - 'Controller' Local File Inclusion 4 WEB the_cyber_nuxbie
2012-01-23   Joomla! Component com_xball - 'team_id' SQL Injection 1 WEB CoBRa_21
2012-01-21   Joomla! Component Vik Real Estate 1.0 - Multiple SQL Injections 2 WEB the_cyber_nuxbie
2012-01-21   Joomla! Component Full - 'id' SQL Injection 2 WEB the_cyber_nuxbie
2012-01-21   Tribiq CMS - 'index.php' SQL Injection 2 WEB Skote Vahshat
2012-01-23   Joomla! Component com_br - 'Controller' Local File Inclusion 2 WEB the_cyber_nuxbie
2012-01-21   Acidcat ASP CMS 3.5 - Multiple Cross-Site Scripting Vulnerabilities 4 WEB Avram Marius
2012-01-20   Syneto Unified Threat Management 1.3.3/1.4.2 - Multiple Cross-Site Scripting / HTML Injection Vulner 2 WEB Alexander Fuchs
2012-01-20   Snitz Forums 2000 - 'TOPIC_ID' SQL Injection 3 WEB snup
2012-01-19   Vastal EzineShop - 'view_mags.php' SQL Injection 2 WEB Lazmania61
2012-01-19   PostNuke pnAddressbook Module - 'id' SQL Injection 2 WEB Robert Cooper
2012-01-18   OneOrZero AIMS - 'index.php' Cross-Site Scripting 2 WEB High-Tech Bridge SA
2015-03-31   Fiyo CMS 2.0.1.8 - Multiple Vulnerabilities 3 WEB Mahendra
2015-03-31   Palo Alto Traps Server 3.1.2.1546 - Persistent Cross-Site Scripting 3 WEB Michael Hendrickx
2015-03-31   WordPress Plugin SP Project & Document Manager 2.5.3 - Blind SQL Injection 3 WEB Catsecurity
2015-03-31   JBoss AS 3/4/5/6 - Remote Command Execution 3 WEB João Filho Matos Figueiredo
2012-01-18   Freelance Zone - 'show_code.php' SQL Injection 4 WEB Lazmania61
2012-01-18   MMORPG Zone - 'view_news.php' SQL Injection 3 WEB Lazmania61
2012-01-18   Toner Cart - 'show_series_ink.php' SQL Injection 1 WEB Lazmania61
2012-01-16   Annuaire PHP - 'sites_inscription.php' Multiple Cross-Site Scripting Vulnerabilities 4 WEB Atmon3r
2012-01-16   Giveaway Manager - 'members.php' Cross-Site Scripting 3 WEB Am!r
2012-01-16   phpVideoPro 0.8.x/0.9.7 - Multiple Cross-Site Scripting Vulnerabilities 3 WEB Stefan Schurtz
2012-01-16   Beehive Forum 101 - Multiple Cross-Site Scripting Vulnerabilities 3 WEB Stefan Schurtz
2012-01-16   ATutor 2.0.3 - Multiple Cross-Site Scripting Vulnerabilities 3 WEB Stefan Schurtz
2015-03-30   Joomla! Component Contact Form Maker 1.0.1 - SQL Injection 3 WEB TUNISIAN CYBER
2015-03-30   Joomla! Component com_gallery_wd - SQL Injection 4 WEB CrashBandicot
2015-03-30   WordPress Plugin aspose-doc-exporter 1.0 - Arbitrary File Download 3 WEB ACC3SS
2015-03-30   WordPress Plugin Slider REvolution 4.1.4 - Arbitrary File Download 3 WEB Claudio Viviani
2015-03-30   JBoss JMXInvokerServlet JMXInvoker 0.3 - Remote Command Execution 2 WEB ikki
2012-01-16   BoltWire 3.4.16 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 3 WEB Stefan Schurtz
2012-01-15   PHP Ringtone Website - 'ringtones.php' Multiple Cross-Site Scripting Vulnerabilities 3 WEB Atmon3r
2012-01-16   PHP Membership Site Manager Script 2.1 - 'index.php' Cross-Site Scripting 3 WEB Atmon3r
2012-01-12   Joomla! Component com_contushdvideoshare 1.3 - 'id' SQL Injection 3 WEB Lazmania61
2012-01-13   Contus Job Portal - 'Category' SQL Injection 3 WEB Lazmania61
2012-01-12   MailEnable 6.02 - 'ForgottonPassword.aspx' Cross-Site Scripting 3 WEB Sajjad Pourali
2012-01-11   Kayako SupportSuite 3.x - Multiple Vulnerabilities 3 WEB Yuri Goltsev
2012-01-11   KnowledgeTree 3.x - Multiple Cross-Site Scripting Vulnerabilities 3 WEB High-Tech Bridge SA
2012-01-10   PHP-Fusion 7.2.4 - 'downloads.php' Cross-Site Scripting 3 WEB Am!r
2012-01-10   WordPress Plugin Age Verification 0.4 - 'redirect_to' Open Redirection 2 WEB Gianluca Brindisi
2012-01-09   Advanced File Management 1.4 - 'users.php' Cross-Site Scripting 3 WEB Am!r
2012-01-09   Gregarius 0.6.1 - Multiple SQL Injections / Cross-Site Scripting 3 WEB sonyy
2012-01-09   Marinet CMS - 'gallery.php?id' SQL Injection 4 WEB H4ckCity Security Team
2012-01-09   Marinet CMS - 'galleryphoto.php?id' SQL Injection 4 WEB H4ckCity Security Team
2012-01-09   Marinet CMS - 'room2.php?roomid' SQL Injection 1 WEB H4ckCity Security Team
2012-01-09   Clipbucket 2.6 - 'channels.php?time' SQL Injection 3 WEB YaDoY666
2012-01-09   Clipbucket 2.6 - 'videos.php?time' SQL Injection 3 WEB YaDoY666
2012-01-09   Clipbucket 2.6 - 'view_item.php?type' Cross-Site Scripting 4 WEB YaDoY666
2012-01-09   Clipbucket 2.6 - 'view_collection.php?type' Cross-Site Scripting 3 WEB YaDoY666
2012-01-09   Clipbucket 2.6 - 'videos.php?cat' Cross-Site Scripting 3 WEB YaDoY666
2012-01-09   Clipbucket 2.6 - 'search_result.php?query' Cross-Site Scripting 2 WEB YaDoY666
2012-01-09   Clipbucket 2.6 - 'groups.php?cat' Cross-Site Scripting 2 WEB YaDoY666
2012-01-09   Clipbucket 2.6 - 'collections.php?cat' Cross-Site Scripting 3 WEB YaDoY666
2012-01-09   Clipbucket 2.6 - 'channels.php?cat' Cross-Site Scripting 2 WEB YaDoY666
2012-01-07   Atar2b CMS 4.0.1 - 'pageE.php?id' SQL Injection 2 WEB BHG Security Center
2012-01-07   Atar2b CMS 4.0.1 - 'pageH.php?id' SQL Injection 2 WEB BHG Security Center
2012-01-07   Atar2b CMS 4.0.1 - 'gallery_e.php?id' SQL Injection 2 WEB BHG Security Center
2015-03-27   Berta CMS - Arbitrary File Upload 3 WEB Simon Waters
2012-01-07   DIGIT CMS 1.0.7 - Cross-Site Scripting / SQL Injection 2 WEB BHG Security Center
2012-01-06   eFront 3.6.10 - 'download' Directory Traversal 2 WEB Chokri B.A
2012-01-05   SQLiteManager 1.2.4 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB Stefan Schurtz
2012-01-05   SQLiteManager 1.2.4 - 'main.php?dbsel' Cross-Site Scripting 2 WEB Stefan Schurtz
2012-01-05   VertrigoServ 2.25 - 'extensions.php' Script Cross-Site Scripting 2 WEB Stefan Schurtz
2015-03-26   pfSense 2.2 - Multiple Vulnerabilities 2 WEB High-Tech Bridge SA
2012-01-04   StatIt 4 - 'statistik.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB sonyy
2012-01-05   Yaws-Wiki 1.88 - Multiple Cross-Site Scripting / HTML Injection Vulnerabilities 2 WEB SiteWatch
2012-01-04   UBBCentral UBB.Threads 7.5.6 - 'Username' Cross-Site Scripting 1 WEB sonyy
2011-12-29   Pligg CMS 1.1.4 - 'SERVER[php_self]' Cross-Site Scripting 1 WEB SiteWatch
2011-12-29   Pligg CMS 1.1.2 - 'status' SQL Injection 1 WEB SiteWatch
2012-01-04   Limny 3.0.1 - 'login.php' Script Cross-Site Scripting 2 WEB Gjoko Krstic
2012-01-04   Orchard 1.3.9 - 'ReturnUrl' Open Redirection 1 WEB Mesut Timur
2012-01-04   GraphicsClone Script - 'term' Cross-Site Scripting 4 WEB Mr.PaPaRoSSe
2015-03-25   WordPress Plugin Marketplace 2.4.0 - Remote Code Execution (Add Admin) 2 WEB Claudio Viviani
2012-01-04   TextPattern 4.4.1 - 'ddb' Cross-Site Scripting 1 WEB Jonathan Claudius
2012-01-03   WordPress Plugin WHOIS 1.4.2 3 - 'domain' Cross-Site Scripting 2 WEB Atmon3r
2012-01-03   WordPress Plugin Comment Rating 2.9.20 - 'path' Cross-Site Scripting 2 WEB The Evil Thinker
2012-01-03   Tienda Virtual - 'art_detalle.php' SQL Injection 3 WEB Arturo Zamora
2012-01-02   FuseTalk Forums 3.2 - 'windowed' Cross-Site Scripting 2 WEB sonyy
2011-01-01   PHPB2B 4.1 - 'q' Cross-Site Scripting 2 WEB H4ckCity Security Team
2012-01-01   WordPress Plugin WP Live.php 1.2.1 - 's' Cross-Site Scripting 2 WEB H4ckCity Security Team
2012-01-01   Siena CMS 1.242 - 'err' Cross-Site Scripting 2 WEB Net.Edit0r
2011-12-31   WordPress Plugin TheCartPress 1.6 - 'OptionsPostsList.php' Cross-Site Scripting 3 WEB 6Scan
2015-03-24   WordPress Plugin InBoundio Marketing 1.0 - Arbitrary File Upload 2 WEB KedAns-Dz
2011-12-21   epesi BIM 1.2 rev 8154 - Multiple Cross-Site Scripting Vulnerabilities 2 WEB High-Tech Bridge SA
2011-12-20   Cyberoam UTM 10 - 'tableid' SQL Injection 2 WEB Benjamin Kunz Mejri
2011-12-20   Joomla! Component com_caproductprices - 'id' SQL Injection 2 WEB CoBRa_21
2011-12-20   PHPShop CMS 3.4 - Multiple Cross-Site Scripting / SQL Injections 2 WEB High-Tech Bridge SA
2011-12-20   Tiki Wiki CMS Groupware 8.1 - 'show_errors' HTML Injection 2 WEB Stefan Schurtz
2011-12-20   Joomla! Component com_tsonymf - 'idofitem' SQL Injection 1 WEB CoBRa_21
2011-12-19   PHP Booking Calendar 10e - 'page_info_message' Cross-Site Scripting 2 WEB G13
2015-03-22   WordPress Plugin Marketplace 2.4.0 - Arbitrary File Download 1 WEB Kacper Szurek
2015-03-22   Joomla! Component Spider FAQ - SQL Injection 2 WEB Manish Tanwar
2015-03-21   Telescope 0.9.2 - Markdown Persistent Cross-Site Scripting 3 WEB shubs
2011-12-18   Video Community Portal - 'userID' SQL Injection 3 WEB Lazmania61
2011-12-17   Social Network Community 2 - 'userID' SQL Injection 4 WEB Lazmania61
2011-12-17   Flirt-Projekt 4.8 - 'rub' SQL Injection 3 WEB Lazmania61
2011-12-15   Websense 7.6 Products - 'favorites.exe' Authentication Bypass 3 WEB Ben Williams
2011-12-15   Websense 7.6 Triton - 'ws_irpt.exe' Remote Command Execution 3 WEB Ben Williams
2011-12-15   Websense 7.6 - Triton Report Management Interface Cross-Site Scripting 3 WEB Ben Williams
2011-12-15   Owl Intranet Engine 1.00 - 'userid' Authentication Bypass 3 WEB RedTeam Pentesting GmbH
2011-12-14   BrowserCRM 5.100.1 - 'login[]' Cross-Site Scripting 3 WEB High-Tech Bridge SA
2011-12-14   BrowserCRM 5.100.1 - 'clients.php' Cross-Site Scripting 4 WEB High-Tech Bridge SA
2011-12-14   BrowserCRM 5.100.1 - 'framed' Cross-Site Scripting 4 WEB High-Tech Bridge SA
2011-12-14   BrowserCRM 5.100.1 - URI Cross-Site Scripting 5 WEB High-Tech Bridge SA
2011-12-14   BrowserCRM 5.100.1 - 'contact_id' SQL Injection 6 WEB High-Tech Bridge SA
2011-12-14   BrowserCRM 5.100.1 - 'parent_id' SQL Injection 4 WEB High-Tech Bridge SA
2011-12-14   Pulse Pro 1.7.2 - Multiple Cross-Site Scripting Vulnerabilities 4 WEB Avram Marius
2011-12-16   Fork CMS 3.1.5 - Multiple Cross-Site Scripting Vulnerabilities 4 WEB Avram Marius