Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2010-03-09   TikiWik < 4.2 - Multiple Vulnerabilities 0 WEB Mateusz Drygas
2010-03-07   OpenCart 1.3.2 - 'page' SQL Injection 2 WEB Andrés Gómez
2010-03-08   KDPics 1.18 - '/admin/index.php' Authentication Bypass 1 WEB snakespc
2010-03-08   ASPCode CMS 1.5.8 - 'default.asp' Multiple Cross-Site Scripting Vulnerabilities 0 WEB Alberto Fontanella
2010-03-08   Max Network Technology BBSMAX 4.2 - 'post.aspx' Cross-Site Scripting 1 WEB Liscker
2010-03-08   Pre E-Learning Portal - 'search_result.asp' SQL Injection 1 WEB NoGe
2010-03-06   phpCOIN 1.2.1 - 'mod' Local File Inclusion 1 WEB _mlk_
2010-03-05   Six Apart Vox - 'search' Page Cross-Site Scripting 1 WEB Phenom
2010-03-05   Saskia's ShopSystem - 'id' Local File Inclusion 1 WEB cr4wl3r
2010-03-05   Spectrum Software WebManager CMS - 'pojam' Cross-Site Scripting 1 WEB hacker@sr.gov.yu
2014-06-11   SHOUTcast DNAS 2.2.1 - Persistent Cross-Site Scripting 1 WEB rob222
2010-03-05   Natychmiast CMS - Multiple Cross-Site Scripting / SQL Injections 1 WEB Maciej Gojny
2010-03-04   Drupal < 5.22/6.16 - Multiple Vulnerabilities 1 WEB David Rothstein
2010-03-04   BBSXP 2008 - 'ShowPost.asp' Cross-Site Scripting 1 WEB Liscker
2014-06-10   ZeroCMS 1.0 - 'zero_view_article.php' SQL Injection 1 WEB LiquidWorm
2014-06-09   DevExpress ASPxFileManager 10.2 < 13.2.8 - Directory Traversal 0 WEB RedTeam Pentesting
2014-06-09   WebTitan 4.01 (Build 68) - Multiple Vulnerabilities 2 WEB SEC Consult
2014-06-09   eFront 3.6.14.4 - 'surname' Persistent Cross-Site Scripting 1 WEB shyamkumar somana
2010-03-04   Comptel Provisioning and Activation - 'index.jsp?error_msg_parameter' Cross-Site Scripting 1 WEB thebluegenius
2010-03-02   Discuz! 6.0 - 'uid' Cross-Site Scripting 1 WEB lis cker
2010-03-02   Sparta Systems TrackWise EQms - Multiple Cross-Site Scripting Vulnerabilities 1 WEB Yaniv Miron
2010-03-01   DeDeCMS 5.5 - '_SESSION[dede_admin_id]' Authentication Bypass 1 WEB Wolves Security Team
2010-03-01   Blax Blog 0.1 - 'girisyap.php' SQL Injection 2 WEB cr4wl3r
2010-03-01   Article Friendly - 'Filename' Local File Inclusion 1 WEB pratul agrawal
2010-02-27   SLAED CMS 4 - Installation Script Unauthorized Access 1 WEB indoushka
2010-02-28   Open Educational System 0.1 Beta - 'CONF_INCLUDE_PATH' Multiple Remote File Inclusions 1 WEB cr4wl3r
2010-02-28   TRUC 0.11 - 'login_reset_password_page.php' Cross-Site Scripting 1 WEB snakespc
2010-02-26   ARISg 5.0 - 'wflogin.jsp' Cross-Site Scripting 1 WEB Yaniv Miron
2010-02-25   Newbie CMS 0.0.2 - Insecure Cookie Authentication Bypass 1 WEB JIKO
2010-02-25   IBM (Multiple Products) - Login Page Cross-Site Scripting 1 WEB Oren Hafif
2010-02-24   OpenInferno OI.Blogs 1.0 - Multiple Local File Inclusions 1 WEB JIKO
2010-02-24   Joomla! Component HD FLV Player - 'id' SQL Injection 1 WEB kaMtiEz
2010-02-24   MySmartBB 1.7 - Multiple Cross-Site Scripting Vulnerabilities 1 WEB indoushka
2010-02-23   Softbiz Jobs - 'sbad_type' Cross-Site Scripting 2 WEB pratul agrawal
2010-02-22   Galerie Dezign-Box - Multiple Input Validation Vulnerabilities 2 WEB indoushka
2010-02-20   vBulletin 4.0.2 - Multiple Cross-Site Scripting Vulnerabilities 1 WEB indoushka
2010-02-20   Joomla! Component com_recipe - Multiple SQL Injections 1 WEB FL0RiX
2010-02-19   Social Web CMS 2 - 'index.php' Cross-Site Scripting 1 WEB GoLdeN-z3r0
2010-02-18   Subex Nikira Fraud Management System GUI - 'message' Cross-Site Scripting 1 WEB thebluegenius
2010-02-18   XlentProjects SphereCMS 1.1 - 'archive.php' SQL Injection 1 WEB AmnPardaz Security Research Team
2014-06-06   Madness Pro 1.14 - SQL Injection 1 WEB bwall
2014-06-06   Madness Pro 1.14 - Persistent Cross-Site Scripting 1 WEB bwall
2010-02-18   New-CMS 1.08 - Multiple Local File Inclusion / HTML Injection Vulnerabilities 1 WEB Alberto Fontanella
2010-02-16   EziScript Google Page Rank 1.1 - Cross-Site Scripting 1 WEB sarabande
2010-02-16   Extreme Mobster - 'login' Cross-Site Scripting 1 WEB indoushka
2010-02-16   BGSvetionik BGS CMS - 'search' Cross-Site Scripting 1 WEB hacker@sr.gov.yu
2010-02-16   Portrait Software Portrait Campaign Manager 4.6.1.22 - Multiple Cross-Site Scripting Vulnerabilities 1 WEB Roel Schouten
2009-12-31   Joomla! Component MS Comment 0.8.0b - Security Bypass / Cross-Site Scripting 1 WEB Jeff Channell
2010-02-12   Basic-CMS - 'nav_id' Cross-Site Scripting 1 WEB Red-D3v1L
2010-02-12   CMS Made Simple 1.6.6 - Local File Inclusion / Cross-Site Scripting 0 WEB Beenu Arora
2009-09-17   Joomla! Component F!BB 1.5.96 RC - SQL Injection / HTML Injection 1 WEB Jeff Channell
2009-09-17   Joomla! Component EasyBook 2.0.0rc4 - Multiple HTML Injection Vulnerabilities 0 WEB Jeff Channell
2009-11-15   Joomla! Component Webee Comments 1.1/1.2 - Multiple BBCode Tags Cross-Site Scripting Vulnerabilities 2 WEB Jeff Channell
2009-11-15   Joomla! Component Webee Comments 1.1/1.2 - 'index2.php' articleId SQL Injection 1 WEB Jeff Channell
2010-02-03   Interspire Knowledge Manager 5 - 'callback.snipshot.php' Arbitrary File Creation 2 WEB Cory Marsh
2010-02-11   CommodityRentals CD Rental Software - 'index.php' SQL Injection 2 WEB Don Tukulesto
2014-06-03   IPSwitch IMail Server WEB client 12.4 - Persistent Cross-Site Scripting 2 WEB Peru
2014-06-03   Bluetooth Photo-File Share 2.1 iOS - Multiple Vulnerabilities 2 WEB Vulnerability-Lab
2014-06-03   AllReader 1.0 iOS - Multiple Vulnerabilities 0 WEB Vulnerability-Lab
2014-06-03   TigerCom My Assistant 1.1 iOS - Local File Inclusion 2 WEB Vulnerability-Lab
2014-06-03   Privacy Pro 1.2 HZ iOS - Local File Inclusion 2 WEB Vulnerability-Lab
2014-06-03   Files Desk Pro 1.4 iOS - Local File Inclusion 2 WEB Vulnerability-Lab
2014-06-03   NG WifiTransfer Pro 1.1 - Local File Inclusion 2 WEB Vulnerability-Lab
2014-06-03   PHPBTTracker+ 2.2 - SQL Injection 2 WEB BackBox Linux Team
2010-02-11   vBulletin 3.5.4 - Multiple Cross-Site Scripting Vulnerabilities 2 WEB ROOT_EGY
2010-02-09   vBulletin Adsense Component - 'viewpage.php' SQL Injection 1 WEB JIKO
2010-02-08   VideoDB 3.0.3 - 'login.php' Cross-Site Scripting 1 WEB vr
2010-02-08   Zen Time Tracking 2.2 - Multiple SQL Injections 1 WEB cr4wl3r
2010-02-08   Aflam Online 1.0 - 'index.php' SQL Injection 1 WEB alnjm33
2014-06-02   WordPress Plugin Participants Database 1.5.4.8 - SQL Injection 2 WEB Yarubo Research Team
2010-02-05   ASCET Interactive Huski Retail - Multiple SQL Injections 1 WEB Wireghoul
2010-02-05   ASCET Interactive Huski CMS - 'i' Local File Inclusion 2 WEB Wireghoul
2010-02-05   LANDesk Management Gateway 4.x - Multiple Vulnerabilities 2 WEB Aureliano Calvo
2010-02-05   evalSMSI 2.1.3 - Multiple Input Validation Vulnerabilities 1 WEB ekse
2010-02-04   Data 1 Systems UltraBB 1.17 - 'view_post.php' Cross-Site Scripting 2 WEB s4r4d0
2010-02-04   KnowGate hipergate 4.0.12 - Multiple Cross-Site Scripting Vulnerabilities 2 WEB Nahuel Grisolia
2010-02-04   Interspire Knowledge Manager < 5.1.3 - Multiple Remote Vulnerabilities 1 WEB Cory Marsh
2010-02-01   Joomla! Component AutartiTarot - Directory Traversal 2 WEB B-HUNT3|2
2010-02-01   Joomla! Component com_gambling - 'gamblingEvent' SQL Injection 1 WEB md.r00t
2010-01-31   Joomla! Component com_rsgallery2 2.0 - 'catid' SQL Injection 1 WEB snakespc
2009-07-16   XAMPP 1.6.x - 'showcode.php' Local File Inclusion 1 WEB MustLive
2010-01-28   CommonSpot Server - '/utilities/longproc.cfm' Cross-Site Scripting 2 WEB Richard Brain
2010-01-27   Discuz! 6.0 - 'tid' Cross-Site Scripting 2 WEB s4r4d0
2010-01-26   Joomla! Component 3D Cloud - 'tagcloud.swf' Cross-Site Scripting 2 WEB MustLive
2009-10-24   Jetty 6.1.x - JSP Snoop Page Multiple Cross-Site Scripting Vulnerabilities 1 WEB aScii
2010-01-22   OpenX 2.6.1 - SQL Injection 2 WEB AndySoon
2010-01-21   cPanel and WHM 11.25 - 'failurl' HTTP Response Splitting 2 WEB Trancer
2014-05-28   Sharetronix 3.3 - Multiple Vulnerabilities 2 WEB High-Tech Bridge SA
2014-05-28   AuraCMS 3.0 - Multiple Vulnerabilities 2 WEB Mustafa ALTINKAYNAK
2010-01-20   PHPMySpace Gold 8.0 - 'gid' SQL Injection 2 WEB Ctacok
2010-01-19   VisualShapers EZContents 2.0.3 - Authentication Bypass / Multiple SQL Injections 2 WEB AmnPardaz Security Research Team
2010-01-18   vBulletin 4.0.1 - 'misc.php' SQL Injection 2 WEB indoushka
2010-01-18   Easysitenetwork Jokes Complete Website - 'searchingred' Cross-Site Scripting 2 WEB indoushka
2010-01-18   Easysitenetwork Jokes Complete Website - 'id' Cross-Site Scripting 2 WEB indoushka
2010-01-19   DataLife Engine 8.3 - '/engine/ajax/addcomments.php?_REQUEST[skin]' Remote File Inclusion 2 WEB indoushka
2010-01-19   DataLife Engine 8.3 - '/engine/ajax/pm.php?config[lang]' Remote File Inclusion 2 WEB indoushka
2010-01-19   DataLife Engine 8.3 - '/engine/inc/help.php?config[langs]' Remote File Inclusion 2 WEB indoushka
2010-01-19   DataLife Engine 8.3 - '/engine/inc/include/init.php?selected_language' Remote File Inclusion 2 WEB indoushka
2010-01-18   TestLink 1.8.5 - 'order_by_login_dir' Cross-Site Scripting 2 WEB Prashant Khandelwal
2010-01-15   LetoDms 1.4.x - 'lang' Local File Inclusion 2 WEB D. Fabian
2010-01-14   Joomla! Component com_marketplace 1.2 - 'catid' Cross-Site Scripting 2 WEB ViRuSMaN
2010-01-14   Xforum 1.4 - 'nbpageliste' Cross-Site Scripting 2 WEB ViRuSMaN
2010-01-14   Technology for Solutions 1.0 - 'id' Cross-Site Scripting 2 WEB PaL-D3v1L
2014-05-26   D-Link Routers - Multiple Vulnerabilities 2 WEB Kyle Lovett
2014-05-26   ZYXEL P-660HW-T1 3 Wireless Router - Cross-Site Request Forgery 2 WEB Mustafa ALTINKAYNAK
2014-05-26   Videos Tube 1.0 - Multiple SQL Injections 2 WEB Mustafa ALTINKAYNAK
2010-01-14   Zenoss 2.3.3 - Multiple SQL Injections 2 WEB nGenuity Information Services
2010-01-13   Tribisur - 'cat' Cross-Site Scripting 0 WEB ViRuSMaN
2010-01-13   Joomla! Component com_tienda - 'categoria' Cross-Site Scripting 2 WEB FL0RiX
2010-01-12   Simple PHP Blog 0.5.x - 'search.php' Cross-Site Scripting 2 WEB Sora
2010-01-12   Docmint 1.0/2.1 - 'id' Cross-Site Scripting 2 WEB Red-D3v1L
2014-05-24   Web Terra 1.1 - 'books.cgi' Remote Command Execution 2 WEB felipe andrian
2014-05-24   Mayan-EDms Web-Based Document Management OS System - Multiple Persistent Cross-Site Scripting Vulner 2 WEB Dolev Farhi
2010-01-11   Active Calendar 1.2 - '$_SERVER['PHP_SELF']' Multiple Cross-Site Scripting Vulnerabilities 1 WEB Martin Barbella
2010-01-12   PHPepperShop 2.5 - 'USER_ARTIKEL_HANDLING_AUFRUF.php' Cross-Site Scripting 1 WEB Crux
2010-01-11   @lex Guestbook 5.0 - Multiple Cross-Site Scripting Vulnerabilities 2 WEB D3V!L FUCKER
2010-01-11   Jamit Job Board - 'post_id' Cross-Site Scripting 2 WEB Crux
2010-01-11   DELTAScripts PHP Links 1.0 - 'email' Cross-Site Scripting 3 WEB Crux
2010-01-10   DigitalHive - 'mt' Cross-Site Scripting 2 WEB ViRuSMaN
2010-01-08   Joomla! Component Jobads - 'type' SQL Injection 2 WEB N0KT4
2010-01-07   Calendarix 0.7 - 'calpath' Remote File Inclusion 1 WEB Saywhat
2010-01-07   dotProject 2.1.3 - Multiple SQL Injections / HTML Injection Vulnerabilities 2 WEB Justin C. Klein Keane
2010-01-07   Joomla! Component DM Orders - 'id' SQL Injection 2 WEB NoGe
2010-01-06   Roundcube Webmail 0.2 - Cross-Site Scripting 2 WEB j4ck & Globus
2010-01-05   LineWeb 1.0.5 - Multiple Remote Vulnerabilities 3 WEB Ignacio Garrido