2014-09-08
|
|
Atmail Webmail 7.2 - Multiple Vulnerabilities
|
2 |
WEB
|
smash
|
2014-09-08
|
|
TP-Link TL-WR841N / TL-WR841ND - Multiple Vulnerabilities
|
2 |
WEB
|
smash
|
2014-09-08
|
|
TP-Link TL-WR340G / TL-WR340GD - Multiple Vulnerabilities
|
2 |
WEB
|
smash
|
2014-09-08
|
|
osCommerce 2.3.4 - Multiple Vulnerabilities
|
2 |
WEB
|
smash
|
2014-09-08
|
|
Zen Cart 1.5.3 - Multiple Vulnerabilities
|
2 |
WEB
|
smash
|
2014-09-08
|
|
phpMyFAQ 2.8.x - Multiple Vulnerabilities
|
2 |
WEB
|
smash
|
2014-09-08
|
|
vBulletin 5.1.x - Persistent Cross-Site Scripting
|
2 |
WEB
|
smash
|
2014-09-08
|
|
WordPress Theme Acento - 'view-pdf.php?File' Arbitrary File Download
|
2 |
WEB
|
alieye
|
2014-09-08
|
|
WordPress Plugin Bulk Delete Users by Email 1.0 - Cross-Site Request Forgery
|
2 |
WEB
|
Fikri Fadzil
|
2014-09-08
|
|
Joomla! Component Spider Calendar 3.2.6 - SQL Injection
|
2 |
WEB
|
Claudio Viviani
|
2010-09-03
|
|
NuSOAP 0.9.5 - 'nusoap.php' Cross-Site Scripting
|
2 |
WEB
|
Bogdan Calin
|
2010-09-02
|
|
CMS WebManager-Pro - 'c.php' SQL Injection
|
2 |
WEB
|
MustLive
|
2010-09-02
|
|
OneCMS 2.6.1 - 'index.php' Cross-Site Scripting
|
2 |
WEB
|
anT!-Tr0J4n
|
2009-10-14
|
|
AdaptBB 1.0 - 'q' Cross-Site Scripting
|
2 |
WEB
|
drunken danish rednecks
|
2009-09-07
|
|
KingCMS 0.6 - 'CONFIG[AdminPath]' Remote File Inclusion
|
2 |
WEB
|
Securitylab.ir
|
2010-09-01
|
|
ArtGK CMS - Cross-Site Scripting / HTML Injection
|
1 |
WEB
|
High-Tech Bridge SA
|
2010-09-01
|
|
Rumba XML 2.4 - 'index.php' Multiple HTML Injection Vulnerabilities
|
2 |
WEB
|
High-Tech Bridge SA
|
2010-09-01
|
|
Amiro.CMS 5.8.4.0 - Multiple HTML Injection Vulnerabilities
|
2 |
WEB
|
High-Tech Bridge SA
|
2014-09-07
|
|
PhpOnlineChat 3.0 - Cross-Site Scripting
|
2 |
WEB
|
N0 Feel
|
2014-09-07
|
|
WordPress Plugin Like Dislike Counter 1.2.3 - SQL Injection
|
2 |
WEB
|
Att4ck3r.ir
|
2014-09-07
|
|
LoadedCommerce7 - Systemic Query Factory
|
2 |
WEB
|
Breaking.Technology
|
2014-09-07
|
|
Invision Power Board (IP.Board) 3.x - Cross-Site Request Forgery / Token Hjiacking
|
1 |
WEB
|
Piotr S.
|
2009-09-10
|
|
Datemill - 'search.php?st' Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2009-09-10
|
|
Datemill - 'photo_search.php?st' Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2009-09-10
|
|
Datemill - 'photo_view.php?return' Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2010-08-31
|
|
HP Insight Diagnostics Online Edition 8.4 - 'custom.php?testmode' Cross-Site Scripting
|
2 |
WEB
|
Mr Teatime
|
2010-08-31
|
|
HP Insight Diagnostics Online Edition 8.4 - 'globals.php?tabpage' Cross-Site Scripting
|
2 |
WEB
|
Mr Teatime
|
2010-08-31
|
|
HP Insight Diagnostics Online Edition 8.4 - 'survey.php?category' Cross-Site Scripting
|
2 |
WEB
|
Mr Teatime
|
2010-08-31
|
|
HP Insight Diagnostics Online Edition 8.4 - 'idstatusframe.php' Multiple Cross-Site Scripting Vulner
|
2 |
WEB
|
Mr Teatime
|
2010-08-31
|
|
HP Insight Diagnostics Online Edition 8.4 - 'parameters.php?device' Cross-Site Scripting
|
3 |
WEB
|
Mr Teatime
|
2010-08-29
|
|
WebsiteKit Gbplus - 'Name' / 'Body' HTML Injection
|
1 |
WEB
|
MiND
|
2014-09-05
|
|
MyBB User Social Networks Plugin 1.2 - Persistent Cross-Site Scripting
|
2 |
WEB
|
Fikri Fadzil
|
2014-09-05
|
|
WordPress Plugin Premium Gallery Manager - Configuration Access
|
3 |
WEB
|
Hannaichi
|
2010-08-26
|
|
CompuCMS - Multiple SQL Injections / Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
High-Tech Bridge SA
|
2010-08-26
|
|
Valarsoft WebMatic 3.0.5 - Multiple HTML Injection Vulnerabilities
|
2 |
WEB
|
High-Tech Bridge SA
|
2010-08-26
|
|
TCMS - Multiple Input Validation Vulnerabilities
|
2 |
WEB
|
High-Tech Bridge SA
|
2010-08-23
|
|
Auto CMS 1.6 - 'autocms.php' Cross-Site Scripting
|
2 |
WEB
|
High-Tech Bridge SA
|
2010-08-25
|
|
BlastChat Client 3.3 - Cross-Site Scripting
|
3 |
WEB
|
Aung Khant
|
2010-08-25
|
|
Acunetix Web Vulnerability Scanner - DLL Loading Arbitrary Code Execution
|
2 |
WEB
|
Kolor
|
2014-09-03
|
|
vBulletin 4.0.x < 4.1.2 - 'search.php?cat' SQL Injection
|
2 |
WEB
|
D35m0nd142
|
2014-09-02
|
|
Syslog LogAnalyzer 3.6.5 - Persistent Cross-Site Scripting
|
2 |
WEB
|
Dolev Farhi
|
2014-09-02
|
|
WordPress Plugin Huge-IT Image Gallery 1.0.1 - (Authenticated) SQL Injection
|
2 |
WEB
|
Claudio Viviani
|
2014-09-01
|
|
ManageEngine EventLog Analyzer - Multiple Vulnerabilities (1)
|
2 |
WEB
|
Hans-Martin Muench
|
2014-09-01
|
|
ManageEngine Desktop Central - Arbitrary File Upload / Remote Code Execution
|
1 |
WEB
|
Pedro Ribeiro
|
2014-09-01
|
|
WordPress Plugin Slideshow Gallery 1.4.6 - Arbitrary File Upload
|
2 |
WEB
|
Jesus Ramirez Pichardo
|
2014-09-01
|
|
Arachni Web Application Scanner Web UI - Persistent Cross-Site Scripting
|
2 |
WEB
|
Prakhar Prasad
|
2014-09-01
|
|
Mulitple WordPress Themes - 'admin-ajax.php?img' Arbitrary File Download
|
2 |
WEB
|
Hugo Santiago
|
2010-08-23
|
|
AneCMS 1.0/1.3 - 'register/next' SQL Injection
|
2 |
WEB
|
Sweet
|
2010-08-19
|
|
Cacti 0.8.7 (RedHat High Performance Computing [HPC]) - 'utilities.php?Filter' Cross-Site Scripting
|
2 |
WEB
|
Marc Schoenefeld
|
2010-08-19
|
|
Syntax Highlighter 3.0.83 - 'index.html' HTML Injection
|
2 |
WEB
|
indoushka
|
2009-08-10
|
|
Hitron Soft Answer Me - 'answers.php' Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2009-08-10
|
|
ViArt Helpdesk - 'products_search.php?search_category_id' Cross-Site Scripting
|
3 |
WEB
|
Moudi
|
2009-08-10
|
|
ViArt Helpdesk - 'forum.php?forum_id' Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2009-08-10
|
|
ViArt Helpdesk - 'reviews.php?category_id' Cross-Site Scripting
|
4 |
WEB
|
Moudi
|
2009-08-10
|
|
ViArt Helpdesk - 'product_details.php?category_id' Cross-Site Scripting
|
3 |
WEB
|
Moudi
|
2009-08-10
|
|
ViArt Helpdesk - 'article.php?category_id' Cross-Site Scripting
|
3 |
WEB
|
Moudi
|
2009-08-10
|
|
ViArt Helpdesk - 'products.php?category_id' Cross-Site Scripting
|
3 |
WEB
|
Moudi
|
2009-08-03
|
|
Payment Processor Script (PPScript) - 'shop.htm' SQL Injection
|
3 |
WEB
|
MizoZ
|
2009-08-10
|
|
Online Work Order Suite Lite Edition - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Moudi
|
2009-08-07
|
|
Facil Helpdesk - 'kbase/kbase.php' URI Cross-Site Scripting
|
1 |
WEB
|
Moudi
|
2009-10-19
|
|
phpCMS 2008 - 'download.php' Information Disclosure
|
2 |
WEB
|
Securitylab.ir
|
2009-10-14
|
|
FreeSchool - 'key_words' Cross-Site Scripting
|
2 |
WEB
|
drunken danish rednecks
|
2010-08-18
|
|
Joomla! Component com_dirfrm - Multiple SQL Injections
|
3 |
WEB
|
Hieuneo
|
2010-08-10
|
|
Nasim Guest Book - 'page' Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2009-08-10
|
|
TurnkeyForms Yahoo Answers Clone - 'questiondetail.php' Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2010-08-16
|
|
123 Flash Chat 7.8 - Multiple Vulnerabilities
|
2 |
WEB
|
Lincoln
|
2010-08-16
|
|
CMSimple 3.3 - Cross-Site Scripting / Cross-Site Request Forgery
|
2 |
WEB
|
High-Tech Bridge SA
|
2010-08-15
|
|
Joomla! Component com_fireboard - 'Itemid' SQL Injection
|
3 |
WEB
|
ViRuS Qalaa
|
2010-08-15
|
|
Zomplog 3.9 - 'message' Cross-Site Scripting
|
3 |
WEB
|
10n1z3d
|
2010-08-15
|
|
Joomla! Component Weblinks - 'Itemid' SQL Injection
|
3 |
WEB
|
ViRuS Qalaa
|
2009-09-01
|
|
Property Watch - 'login.php?redirect' Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2009-09-01
|
|
Property Watch - 'email.php?videoid' Cross-Site Scripting
|
4 |
WEB
|
Moudi
|
2009-09-01
|
|
PHPMass Real Estate - 'view_map.php' Cross-Site Scripting
|
3 |
WEB
|
Moudi
|
2009-09-01
|
|
Beex - 'partneralle.php?navaction' Cross-Site Scripting
|
3 |
WEB
|
Moudi
|
2009-09-01
|
|
Beex - 'news.php?navaction' Cross-Site Scripting
|
3 |
WEB
|
Moudi
|
2010-08-10
|
|
Onyx - Multiple Cross-Site Scripting Vulnerabilities
|
4 |
WEB
|
High-Tech Bridge SA
|
2010-08-10
|
|
Mystic 0.1.4 - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
High-Tech Bridge SA
|
2010-08-13
|
|
Edit-X PHP CMS - 'search_text' Cross-Site Scripting
|
2 |
WEB
|
High-Tech Bridge SA
|
2010-08-13
|
|
CMS Source - Multiple Input Validation Vulnerabilities
|
2 |
WEB
|
High-Tech Bridge SA
|
2010-08-10
|
|
SyntaxCMS - 'rows_per_page' SQL Injection
|
2 |
WEB
|
High-Tech Bridge SA
|
2009-10-19
|
|
Amiro.CMS 5.4 - Multiple Input Validation Vulnerabilities
|
3 |
WEB
|
Vladimir Vorontsov
|
2009-08-31
|
|
JBoard - Multiple Cross-Site Scripting / SQL Injections
|
2 |
WEB
|
Inj3ct0r
|
2010-08-12
|
|
Rock Band CMS 0.10 - 'news.php' Multiple SQL Injections (2)
|
2 |
WEB
|
Affix
|
2009-09-16
|
|
PaoBacheca 2.1 - 'scrivi.php' URI Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2009-09-16
|
|
PaoBacheca 2.1 - 'index.php' URI Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2014-08-28
|
|
XRms - Blind SQL Injection / Command Execution
|
2 |
WEB
|
Benjamin Harris
|
2014-08-28
|
|
PhpWiki - Remote Command Execution
|
2 |
WEB
|
Benjamin Harris
|
2014-08-28
|
|
ActualAnalyzer Lite 2.81 - Command Execution
|
2 |
WEB
|
Benjamin Harris
|
2014-08-28
|
|
ManageEngine DeviceExpert 5.9 - User Credential Disclosure
|
3 |
WEB
|
Pedro Ribeiro
|
2014-08-28
|
|
Plogger 1.0-RC1 - (Authenticated) Arbitrary File Upload
|
3 |
WEB
|
b0z
|
2009-08-31
|
|
LiveStreet 0.2 - '/include/ajax/blogInfo.php?asd' Cross-Site Scripting
|
2 |
WEB
|
Inj3ct0r
|
2009-08-31
|
|
LiveStreet 0.2 - Comment Topic Header Cross-Site Scripting
|
2 |
WEB
|
Inj3ct0r
|
2009-09-16
|
|
RSSMediaScript - 'index.php' Cross-Site Scripting
|
2 |
WEB
|
Moudi
|
2009-09-16
|
|
PaoLink 1.0 - 'scrivi.php' Cross-Site Scripting
|
3 |
WEB
|
Moudi
|
2010-05-13
|
|
JForum 2.08 - BBCode Color Tag HTML Injection
|
1 |
WEB
|
Giorgio Fedon
|
2010-08-12
|
|
Computer Associates Oneview Monitor 6.0 - 'doSave.jsp' Remote Code Execution
|
2 |
WEB
|
Giorgio Fedon
|
2010-08-11
|
|
MybbCentral TagCloud 2.0 - 'Topic' HTML Injection
|
3 |
WEB
|
3ethicalhackers.com
|
2014-08-28
|
|
WordPress Plugin ShortCode 0.2.3 - Local File Inclusion
|
2 |
WEB
|
Mehdi Karout & Christian Galeone
|
2010-10-22
|
|
Simple Directory Listing 2.1 - 'SDL2.php' Cross-Site Scripting
|
3 |
WEB
|
Amol Naik
|
2009-10-29
|
|
Wowd - 'index.html' Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
Lostmon
|
2010-08-09
|
|
Preation Eden Platform 27.7.2010 - Multiple HTML Injection Vulnerabilities
|
1 |
WEB
|
High-Tech Bridge SA
|
2010-08-09
|
|
Allinta CMS 22.07.2010 - Multiple SQL Injections / Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
High-Tech Bridge SA
|
2014-08-27
|
|
WordPress Plugin WooCommerce Store Exporter 1.7.5 - Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
Mike Manzotti
|
2014-08-26
|
|
VTLS Virtua InfoStation.cgi - SQL Injection
|
2 |
WEB
|
José Tozo
|
2014-08-26
|
|
ntopng 1.2.0 - Cross-Site Scripting Injection
|
3 |
WEB
|
Steffen Bauch
|
2010-08-06
|
|
Dataface 1.0 - 'admin.php' Cross-Site Scripting
|
2 |
WEB
|
MustLive
|
2010-08-06
|
|
Prado Portal 1.2 - 'page' Cross-Site Scripting
|
3 |
WEB
|
High-Tech Bridge SA
|
2010-08-05
|
|
Muraus Open Blog - Multiple HTML Injection Vulnerabilities
|
2 |
WEB
|
High-Tech Bridge SA
|
2010-08-05
|
|
Hulihan Applications Amethyst 0.1.5 - Multiple HTML Injection Vulnerabilities
|
3 |
WEB
|
High-Tech Bridge SA
|
2010-08-05
|
|
DiamondList - '/user/main/update_category?category[description]' Cross-Site Scripting
|
3 |
WEB
|
High-Tech Bridge SA
|
2010-08-05
|
|
DiamondList - '/user/main/update_settings?setting[site_title]' Cross-Site Scripting
|
3 |
WEB
|
High-Tech Bridge SA
|
2010-08-05
|
|
Hulihan Applications BXR 0.6.8 - SQL Injection / HTML Injection
|
3 |
WEB
|
High-Tech Bridge SA
|
2010-08-05
|
|
DT Centrepiece 4.5 - Cross-Site Scripting / Security Bypass
|
3 |
WEB
|
High-Tech Bridge SA
|
2010-08-05
|
|
PHPFinance 0.6 - '/group.php' SQL Injection / HTML Injection
|
2 |
WEB
|
skskilL
|
2014-08-25
|
|
ManageEngine Password Manager - MetadataServlet.dat SQL Injection (Metasploit)
|
2 |
WEB
|
Pedro Ribeiro
|
2014-08-25
|
|
Innovaphone PBX Admin-GUI - Cross-Site Request Forgery
|
2 |
WEB
|
Rainer Giedat
|
2014-08-25
|
|
PHP Stock Management System 1.02 - Multiple Persistent Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Ragha Deepthi K R
|
2009-10-08
|
|
OpenSolution Quick.Cart - Local File Inclusion / Cross-Site Scripting
|
3 |
WEB
|
kl3ryk
|
2009-10-04
|
|
PHP168 Template Editor - 'Filename' Directory Traversal
|
2 |
WEB
|
esnra
|
2014-08-03
|
|
RaidenTunes - 'music_out.php' Cross-Site Scripting
|
2 |
WEB
|
LiquidWorm
|
2009-09-25
|
|
Activedition - '/activedition/aelogin.asp' Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Richard Brain
|
2010-07-03
|
|
FuseTalk 3.2/4.0 - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Juan Manuel Garcia
|
2010-08-03
|
|
Joomla! Component com_jigsaw - 'Controller' Directory Traversal
|
1 |
WEB
|
FL0RiX
|
2010-08-02
|
|
MyIT CRM - 'index.php' Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Juan Manuel Garcia
|
2010-07-30
|
|
Sourcefabric Campsite - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
High-Tech Bridge SA
|