2010-01-05
|
|
LXR 0.9.x - Cross Referencer Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Dan Rosenberg
|
2010-01-04
|
|
MercuryBoard 1.1.5 - 'index.php' Cross-Site Scripting
|
1 |
WEB
|
indoushka
|
2010-01-04
|
|
WMNews - '/admin/wmnews.php' Cross-Site Scripting
|
1 |
WEB
|
indoushka
|
2010-01-04
|
|
pL-PHP 0.9 - 'index.php' Cross-Site Scripting
|
2 |
WEB
|
indoushka
|
2010-01-03
|
|
SLAED CMS 2.0 - 'stop' Cross-Site Scripting
|
1 |
WEB
|
indoushka
|
2010-01-03
|
|
Discuz! 2.0 - Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
indoushka
|
2010-01-01
|
|
VisionGate 1.6 - 'login.php' Cross-Site Scripting
|
2 |
WEB
|
indoushka
|
2010-01-01
|
|
VirtuaSystems VirtuaNews Pro 1.0.4 - 'admin.php' Cross-Site Scripting
|
2 |
WEB
|
indoushka
|
2010-01-01
|
|
PHPCart 3.1.2 - 'search.php' Cross-Site Scripting
|
1 |
WEB
|
indoushka
|
2010-01-01
|
|
Reamday Enterprises Magic News Plus 1.0.2 - Cross-Site Scripting
|
2 |
WEB
|
indoushka
|
2009-12-31
|
|
DieselPay 1.6 - Cross-Site Scripting / Directory Traversal
|
2 |
WEB
|
indoushka
|
2009-12-31
|
|
Discuz! 1.0 - 'referer' Cross-Site Scripting
|
2 |
WEB
|
indoushka
|
2009-12-31
|
|
PhotoKorn 1.542 - Cross-Site Scripting / Remote File Inclusion
|
2 |
WEB
|
indoushka
|
2009-12-31
|
|
StarDevelop Live Help 2.6 - 'SERVER' Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
indoushka
|
2014-05-21
|
|
Binatone DT 850W Wireless Router - Multiple Cross-Site Request Forgery Vulnerabilities
|
2 |
WEB
|
Samandeep Singh
|
2009-12-31
|
|
Imagevue r16 - 'amount' Cross-Site Scripting
|
2 |
WEB
|
indoushka
|
2009-12-31
|
|
BosClassifieds 1.20 - 'recent.php' Cross-Site Scripting
|
2 |
WEB
|
indoushka
|
2009-12-31
|
|
SendStudio 4.0.1 - Cross-Site Scripting / Security Bypass
|
1 |
WEB
|
indoushka
|
2009-12-31
|
|
PHPMyCart 1.3 - Cross-Site Scripting / Authentication Bypass
|
2 |
WEB
|
indoushka
|
2009-12-29
|
|
AzDGDatingMedium 1.9.3 - 'l' Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
indoushka
|
2009-12-29
|
|
FreeWebShop 2.2.9 R2 - Multiple Remote Vulnerabilities
|
2 |
WEB
|
Akita Software Security
|
2009-12-25
|
|
Barbo91 - 'upload.php' Cross-Site Scripting
|
2 |
WEB
|
indoushka
|
2009-12-26
|
|
PHPInstantGallery 1.1 - 'admin.php' Cross-Site Scripting
|
2 |
WEB
|
indoushka
|
2009-12-28
|
|
FreePBX 2.5.2 - Zap Channel Addition Description Parameter Cross-Site Scripting
|
2 |
WEB
|
Global-Evolution
|
2009-12-28
|
|
FreePBX 2.5.2 - '/admin/config.php?tech' Cross-Site Scripting
|
1 |
WEB
|
Global-Evolution
|
2009-12-28
|
|
Joomla! Component Joomulus 2.0 - 'tagcloud.swf' Cross-Site Scripting
|
2 |
WEB
|
MustLive
|
2009-12-29
|
|
Joomla! Component iF Portfolio Nexus - 'Controller' Remote File Inclusion
|
2 |
WEB
|
F10riX
|
2009-12-24
|
|
MyBB 1.4.10 - 'myps.php' Cross-Site Scripting
|
2 |
WEB
|
Steven Abbagnaro
|
2009-12-23
|
|
webMathematica 3 - 'MSP' Script Cross-Site Scripting
|
2 |
WEB
|
Floyd Fuh
|
2009-12-21
|
|
PHP-Calendar 1.1 - 'update10.php?configfile' Traversal Local File Inclusion
|
2 |
WEB
|
Juan Galiana Lara
|
2009-12-21
|
|
PHP-Calendar 1.1 - 'update08.php?configfile' Traversal Local File Inclusion
|
2 |
WEB
|
Juan Galiana Lara
|
2009-12-22
|
|
ClarkConnect Linux 5.0 - 'proxy.php' Cross-Site Scripting
|
2 |
WEB
|
Edgard Chammas
|
2014-05-19
|
|
HP Release Control - (Authenticated) XML External Entity (Metasploit)
|
1 |
WEB
|
Brandon Perry
|
2014-05-19
|
|
SafeNet Sentinel Protection Server 7.0 < 7.4 / Sentinel Keys Server 1.0.3 < 1.0.4 - Directory Traver
|
2 |
WEB
|
Matt Schmidt
|
2014-05-19
|
|
SPIP CMS < 2.0.23/ 2.1.22/3.0.9 - Privilege Escalation
|
2 |
WEB
|
Gregory Draperi
|
2009-12-21
|
|
Kasseler CMS 1.3.4 Lite - Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
Gamoscu
|
2009-12-20
|
|
JBC Explorer 7.20 - 'arbre.php' Cross-Site Scripting
|
1 |
WEB
|
Metropolis
|
2009-12-18
|
|
Ampache 3.4.3 - 'login.php' Multiple SQL Injections
|
1 |
WEB
|
R3d-D3V!L
|
2009-12-18
|
|
F3Site 2009 - '/mod/new.php?GLOBALS[nlang]' Traversal Local File Inclusion
|
2 |
WEB
|
cr4wl3r
|
2009-12-18
|
|
F3Site 2009 - '/mod/poll.php?GLOBALS[nlang]' Traversal Local File Inclusion
|
1 |
WEB
|
cr4wl3r
|
2009-12-17
|
|
Joomla! Component com_joomportfolio - 'secid' SQL Injection
|
1 |
WEB
|
Fl0riX & Snakespc
|
2009-12-17
|
|
cPanel 11.x - 'fileop' Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
RENO
|
2009-12-17
|
|
QuiXplorer 2.x - 'lang' Local File Inclusion
|
1 |
WEB
|
Juan Galiana Lara
|
2009-12-17
|
|
Pluxml-Blog 4.2 - '/core/admin/auth.php' Cross-Site Scripting
|
1 |
WEB
|
Metropolis
|
2009-12-16
|
|
iSupport 1.8 - 'index.php?which' Cross-Site Scripting
|
1 |
WEB
|
Stink & Essandre
|
2009-12-16
|
|
iSupport 1.8 - 'ticket_function.php' Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
Stink & Essandre
|
2009-12-16
|
|
Drupal Module Sections 5.x-1.2/6.x-1.2 - HTML Injection
|
1 |
WEB
|
Justin C. Klein Keane
|
2009-12-16
|
|
Article Directory - 'login.php' SQL Injection
|
1 |
WEB
|
R3d D3v!L
|
2009-12-15
|
|
Horde 3.3.5 - '/Administration Interface admin/sqlshell.php?PATH_INFO' Cross-Site Scripting
|
1 |
WEB
|
Juan Galiana Lara
|
2009-12-15
|
|
Horde 3.3.5 - '/Administration Interface admin/cmdshell.php?PATH_INFO' Cross-Site Scripting
|
2 |
WEB
|
Juan Galiana Lara
|
2009-12-15
|
|
Horde 3.3.5 - Cross-Site Scripting
|
2 |
WEB
|
Juan Galiana Lara
|
2009-12-14
|
|
phpFaber CMS 1.3.36 - 'module.php' Cross-Site Scripting
|
2 |
WEB
|
bi0
|
2009-12-14
|
|
Million Pixel Script 3 - 'pa' Cross-Site Scripting
|
2 |
WEB
|
bi0
|
2009-12-14
|
|
Ez Cart - 'sid' Cross-Site Scripting
|
3 |
WEB
|
anti-gov
|
2009-12-10
|
|
Zeeways ZeeJobsite - 'basic_search_result.php' Cross-Site Scripting
|
2 |
WEB
|
bi0
|
2009-12-09
|
|
Invision Power Board (IP.Board) 3.0.3 - '.txt' MIME-Type Cross-Site Scripting
|
2 |
WEB
|
Xacker
|
2009-12-04
|
|
Joomla! Component You!Hostit! 1.0.1 Template - Cross-Site Scripting
|
1 |
WEB
|
andresg888
|
2009-12-04
|
|
Joomla! Component YOOtheme Warp5 - 'yt_color' Cross-Site Scripting
|
1 |
WEB
|
andresg888
|
2009-12-07
|
|
Advanced Image Hosting Script 2.x - 'search.php' Cross-Site Scripting
|
1 |
WEB
|
aBo MoHaMeD
|
2009-12-04
|
|
WordPress Plugin Yoast Google Analytics 3.2.4 - 404 Error Page Cross-Site Scripting
|
1 |
WEB
|
intern0t
|
2014-05-16
|
|
eGroupWare 1.8.006 - Multiple Vulnerabilities
|
1 |
WEB
|
High-Tech Bridge SA
|
2009-12-01
|
|
phpMyFAQ < 2.5.4 - Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
Amol Naik
|
2009-11-30
|
|
Elxis - 'Filename' Directory Traversal
|
3 |
WEB
|
cr4wl3r
|
2009-11-30
|
|
SmartMedia Module 0.85 Beta for XOOPS - 'categoryId' Cross-Site Scripting
|
1 |
WEB
|
SoldierOfAllah
|
2009-11-30
|
|
Content Module 0.5 for XOOPS - 'id' SQL Injection
|
1 |
WEB
|
s4r4d0
|
2008-02-16
|
|
Power Phlogger 2.2.x - Cross-Site Scripting
|
1 |
WEB
|
MustLive
|
2009-11-23
|
|
Joomla! 1.5.x - 404 Error Page Cross-Site Scripting
|
2 |
WEB
|
MustLive
|
2009-11-16
|
|
Joomla! Component ProofReader 1.0 RC9 - Cross-Site Scripting
|
1 |
WEB
|
MustLive
|
2009-11-24
|
|
klinza Professional CMS 5.0.1 - 'menulast.php' Local File Inclusion
|
1 |
WEB
|
klinza
|
2009-11-24
|
|
Quick.Cart 3.4 / Quick.CMS 2.4 - Delete Function Cross-Site Request Forgery
|
1 |
WEB
|
Alice Kaerast
|
2009-11-21
|
|
Cacti 0.8.x - 'graph.php' Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
Moritz Naumann
|
2009-11-16
|
|
WordPress Plugin Subscribe to Comments 2.0 - Multiple Cross-Site Scripting Vulnerabilities
|
1 |
WEB
|
MustLive
|
2009-11-13
|
|
WordPress Plugin Fuctweb CapCC 1.0 CAPTCHA - Security Bypass
|
1 |
WEB
|
MustLive
|
2009-11-09
|
|
WordPress Plugin WP-Cumulus 1.x - 'tagcloud.swf' Cross-Site Scripting
|
1 |
WEB
|
MustLive
|
2014-05-15
|
|
ElasticSearch - Remote Code Execution
|
1 |
WEB
|
Jeff Geiger
|
2009-11-24
|
|
WordPress Plugin Firestats 1.0.2 - Multiple Cross-Site Scripting / Authentication Bypass Vulnerabili
|
1 |
WEB
|
MustLive
|
2009-11-24
|
|
WordPress Plugin Firestats 1.0.2 - Multiple Cross-Site Scripting / Authentication Bypass Vulnerabili
|
1 |
WEB
|
MustLive
|
2009-11-15
|
|
WordPress Plugin Trashbin 0.1 - 'mtb_undelete' Cross-Site Scripting
|
1 |
WEB
|
MustLive
|
2009-11-29
|
|
WordPress Plugin WP-phpList 2.10.2 - 'unsubscribeemail' Cross-Site Scripting
|
1 |
WEB
|
MustLive
|
2009-11-19
|
|
CubeCart 3.0.4/4.3.6 - 'ProductID' SQL Injection
|
1 |
WEB
|
Sangte Amtham
|
2009-11-17
|
|
JiRo's (Multiple Products) - '/files/login.asp' Multiple SQL Injections
|
2 |
WEB
|
blackenedsecurity
|
2009-11-16
|
|
PHD Help Desk 1.43 - 'caso_insert.php?URL' Cross-Site Scripting
|
2 |
WEB
|
Amol Naik
|
2009-11-16
|
|
PHD Help Desk 1.43 - 'atributo_list.php' Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
Amol Naik
|
2009-11-16
|
|
PHD Help Desk 1.43 - 'atributo.php?URL' Cross-Site Scripting
|
3 |
WEB
|
Amol Naik
|
2009-11-16
|
|
PHD Help Desk 1.43 - 'area_list.php' Multiple Cross-Site Scripting Vulnerabilities
|
4 |
WEB
|
Amol Naik
|
2009-11-16
|
|
PHD Help Desk 1.43 - 'solic_display.php?q_registros' Cross-Site Scripting
|
3 |
WEB
|
Amol Naik
|
2009-11-16
|
|
PHD Help Desk 1.43 - 'area.php' Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
Amol Naik
|
2014-05-14
|
|
Broadcom PIPA C211 - Sensitive Information Disclosure
|
2 |
WEB
|
Portcullis
|
2009-11-06
|
|
McAfee Network Security Manager 5.1.7 - Information Disclosure
|
3 |
WEB
|
Daniel King
|
2009-11-06
|
|
McAfee Network Security Manager 5.1.7 - Multiple Cross-Site Scripting Vulnerabilities
|
4 |
WEB
|
Daniel King
|
2009-11-10
|
|
CuteNews 1.4.6 editnews Module - doeditnews Action Admin Moderation Bypass
|
2 |
WEB
|
Andrew Horton
|
2009-11-10
|
|
CuteNews 1.4.6 - 'index.php' Cross-Site Request Forgery (New User Creation)
|
3 |
WEB
|
Andrew Horton
|
2009-11-10
|
|
CuteNews 1.4.6 - 'result' Cross-Site Scripting
|
2 |
WEB
|
Andrew Horton
|
2009-11-10
|
|
CuteNews 1.4.6 - 'search.php' Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
Andrew Horton
|
2009-11-10
|
|
CuteNews 1.4.6 - 'from_date_day' Full Path Disclosure
|
2 |
WEB
|
Andrew Horton
|
2009-11-10
|
|
CuteNews 1.4.6 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
Andrew Horton
|
2014-05-12
|
|
VM Turbo Operations Manager 4.5x - Directory Traversal
|
2 |
WEB
|
Jamal Pecou
|
2014-05-12
|
|
SpiceWorks 7.2.00174 - Persistent Cross-Site Scripting
|
4 |
WEB
|
Dolev Farhi
|
2014-05-12
|
|
Skybox Security 6.3.x < 6.4.x - Multiple Information Disclosures
|
3 |
WEB
|
Luigi Vezzoso
|
2009-11-02
|
|
TFTgallery 0.13 - 'sample' Cross-Site Scripting
|
3 |
WEB
|
blake
|
2014-05-12
|
|
Alienvault Open Source SIEM (OSSIM) 4.6.1 - (Authenticated) SQL Injection (Metasploit)
|
3 |
WEB
|
Chris Hebert
|
2009-10-26
|
|
TFTgallery 0.13 - 'album' Cross-Site Scripting
|
2 |
WEB
|
blake
|
2009-10-27
|
|
Sahana 0.6.2 - 'mod' Local File Disclosure
|
2 |
WEB
|
Greg Miernicki
|
2009-10-26
|
|
RunCMS - 'forum' SQL Injection
|
2 |
WEB
|
Nine:Situations:Group::bookoo
|
2009-10-21
|
|
OpenDocMan 1.2.5 - 'view_file.php' Cross-Site Scripting
|
2 |
WEB
|
Amol Naik
|
2009-10-21
|
|
OpenDocMan 1.2.5 - 'user.php' Cross-Site Scripting
|
2 |
WEB
|
Amol Naik
|
2009-10-21
|
|
OpenDocMan 1.2.5 - 'search.php' Cross-Site Scripting
|
2 |
WEB
|
Amol Naik
|
2009-10-21
|
|
OpenDocMan 1.2.5 - 'rejects.php' Cross-Site Scripting
|
2 |
WEB
|
Amol Naik
|
2009-10-21
|
|
OpenDocMan 1.2.5 - 'profile.php' Cross-Site Scripting
|
2 |
WEB
|
Amol Naik
|
2009-10-21
|
|
OpenDocMan 1.2.5 - 'department.php' Cross-Site Scripting
|
2 |
WEB
|
Amol Naik
|
2009-10-21
|
|
OpenDocMan 1.2.5 - 'category.php' Cross-Site Scripting
|
2 |
WEB
|
Amol Naik
|
2009-10-21
|
|
OpenDocMan 1.2.5 - 'admin.php?last_message' Cross-Site Scripting
|
2 |
WEB
|
Amol Naik
|
2009-10-21
|
|
OpenDocMan 1.2.5 - 'index.php?last_message' Cross-Site Scripting
|
2 |
WEB
|
Amol Naik
|
2009-10-21
|
|
OpenDocMan 1.2.5 - 'toBePublished.php' Multiple Cross-Site Scripting Vulnerabilities
|
2 |
WEB
|
Amol Naik
|
2009-10-21
|
|
OpenDocMan 1.2.5 - 'add.php?last_message' Cross-Site Scripting
|
2 |
WEB
|
Amol Naik
|
2009-10-19
|
|
TBmnetCMS 1.0 - Cross-Site Scripting
|
2 |
WEB
|
drunken danish rednecks
|
2009-10-15
|
|
IBM Rational RequisitePro 7.10 - ReqWeb Help Feature 'ReqWebHelp/basic/searchView.jsp' Multiple Cros
|
2 |
WEB
|
IBM
|
2009-10-15
|
|
IBM Rational RequisitePro 7.10 - 'ReqWeb Help Feature ReqWebHelp/advanced/workingSet.jsp?Operation'
|
2 |
WEB
|
IBM
|
2009-10-15
|
|
Snitz Forums 2000 3.4.7 - Sound Tag Onload Attribute Cross-Site Scripting
|
2 |
WEB
|
Andrea Fabrizi
|
2009-10-15
|
|
Snitz Forums 2000 3.4.7 - 'pop_send_to_friend.asp?url' Cross-Site Scripting
|
4 |
WEB
|
Andrea Fabrizi
|
2009-10-14
|
|
Zainu 1.0 - 'searchSongKeyword' Cross-Site Scripting
|
2 |
WEB
|
drunken danish rednecks
|
2009-10-15
|
|
BloofoxCMS 0.3.5 - 'search' Cross-Site Scripting
|
2 |
WEB
|
drunken danish rednecks
|
2009-10-14
|
|
Eclipse BIRT 2.2.1 - 'run?__report' Cross-Site Scripting
|
3 |
WEB
|
Michele Orru
|
2009-10-14
|
|
Pentaho BI 1.x - Multiple Cross-Site Scripting / Information Disclosure Vulnerabilities
|
2 |
WEB
|
euronymous
|
2009-10-13
|
|
Dream Poll 3.1 - '/index.php' Cross-Site Scripting / SQL Injection
|
2 |
WEB
|
infosecstuff
|