Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2010-01-05   LXR 0.9.x - Cross Referencer Multiple Cross-Site Scripting Vulnerabilities 2 WEB Dan Rosenberg
2010-01-04   MercuryBoard 1.1.5 - 'index.php' Cross-Site Scripting 1 WEB indoushka
2010-01-04   WMNews - '/admin/wmnews.php' Cross-Site Scripting 1 WEB indoushka
2010-01-04   pL-PHP 0.9 - 'index.php' Cross-Site Scripting 2 WEB indoushka
2010-01-03   SLAED CMS 2.0 - 'stop' Cross-Site Scripting 1 WEB indoushka
2010-01-03   Discuz! 2.0 - Multiple Cross-Site Scripting Vulnerabilities 2 WEB indoushka
2010-01-01   VisionGate 1.6 - 'login.php' Cross-Site Scripting 2 WEB indoushka
2010-01-01   VirtuaSystems VirtuaNews Pro 1.0.4 - 'admin.php' Cross-Site Scripting 2 WEB indoushka
2010-01-01   PHPCart 3.1.2 - 'search.php' Cross-Site Scripting 1 WEB indoushka
2010-01-01   Reamday Enterprises Magic News Plus 1.0.2 - Cross-Site Scripting 2 WEB indoushka
2009-12-31   DieselPay 1.6 - Cross-Site Scripting / Directory Traversal 2 WEB indoushka
2009-12-31   Discuz! 1.0 - 'referer' Cross-Site Scripting 2 WEB indoushka
2009-12-31   PhotoKorn 1.542 - Cross-Site Scripting / Remote File Inclusion 2 WEB indoushka
2009-12-31   StarDevelop Live Help 2.6 - 'SERVER' Multiple Cross-Site Scripting Vulnerabilities 2 WEB indoushka
2014-05-21   Binatone DT 850W Wireless Router - Multiple Cross-Site Request Forgery Vulnerabilities 2 WEB Samandeep Singh
2009-12-31   Imagevue r16 - 'amount' Cross-Site Scripting 2 WEB indoushka
2009-12-31   BosClassifieds 1.20 - 'recent.php' Cross-Site Scripting 2 WEB indoushka
2009-12-31   SendStudio 4.0.1 - Cross-Site Scripting / Security Bypass 1 WEB indoushka
2009-12-31   PHPMyCart 1.3 - Cross-Site Scripting / Authentication Bypass 2 WEB indoushka
2009-12-29   AzDGDatingMedium 1.9.3 - 'l' Multiple Cross-Site Scripting Vulnerabilities 2 WEB indoushka
2009-12-29   FreeWebShop 2.2.9 R2 - Multiple Remote Vulnerabilities 2 WEB Akita Software Security
2009-12-25   Barbo91 - 'upload.php' Cross-Site Scripting 2 WEB indoushka
2009-12-26   PHPInstantGallery 1.1 - 'admin.php' Cross-Site Scripting 2 WEB indoushka
2009-12-28   FreePBX 2.5.2 - Zap Channel Addition Description Parameter Cross-Site Scripting 2 WEB Global-Evolution
2009-12-28   FreePBX 2.5.2 - '/admin/config.php?tech' Cross-Site Scripting 1 WEB Global-Evolution
2009-12-28   Joomla! Component Joomulus 2.0 - 'tagcloud.swf' Cross-Site Scripting 2 WEB MustLive
2009-12-29   Joomla! Component iF Portfolio Nexus - 'Controller' Remote File Inclusion 2 WEB F10riX
2009-12-24   MyBB 1.4.10 - 'myps.php' Cross-Site Scripting 2 WEB Steven Abbagnaro
2009-12-23   webMathematica 3 - 'MSP' Script Cross-Site Scripting 2 WEB Floyd Fuh
2009-12-21   PHP-Calendar 1.1 - 'update10.php?configfile' Traversal Local File Inclusion 2 WEB Juan Galiana Lara
2009-12-21   PHP-Calendar 1.1 - 'update08.php?configfile' Traversal Local File Inclusion 2 WEB Juan Galiana Lara
2009-12-22   ClarkConnect Linux 5.0 - 'proxy.php' Cross-Site Scripting 2 WEB Edgard Chammas
2014-05-19   HP Release Control - (Authenticated) XML External Entity (Metasploit) 1 WEB Brandon Perry
2014-05-19   SafeNet Sentinel Protection Server 7.0 < 7.4 / Sentinel Keys Server 1.0.3 < 1.0.4 - Directory Traver 2 WEB Matt Schmidt
2014-05-19   SPIP CMS < 2.0.23/ 2.1.22/3.0.9 - Privilege Escalation 2 WEB Gregory Draperi
2009-12-21   Kasseler CMS 1.3.4 Lite - Multiple Cross-Site Scripting Vulnerabilities 1 WEB Gamoscu
2009-12-20   JBC Explorer 7.20 - 'arbre.php' Cross-Site Scripting 1 WEB Metropolis
2009-12-18   Ampache 3.4.3 - 'login.php' Multiple SQL Injections 1 WEB R3d-D3V!L
2009-12-18   F3Site 2009 - '/mod/new.php?GLOBALS[nlang]' Traversal Local File Inclusion 2 WEB cr4wl3r
2009-12-18   F3Site 2009 - '/mod/poll.php?GLOBALS[nlang]' Traversal Local File Inclusion 1 WEB cr4wl3r
2009-12-17   Joomla! Component com_joomportfolio - 'secid' SQL Injection 1 WEB Fl0riX & Snakespc
2009-12-17   cPanel 11.x - 'fileop' Multiple Cross-Site Scripting Vulnerabilities 1 WEB RENO
2009-12-17   QuiXplorer 2.x - 'lang' Local File Inclusion 1 WEB Juan Galiana Lara
2009-12-17   Pluxml-Blog 4.2 - '/core/admin/auth.php' Cross-Site Scripting 1 WEB Metropolis
2009-12-16   iSupport 1.8 - 'index.php?which' Cross-Site Scripting 1 WEB Stink & Essandre
2009-12-16   iSupport 1.8 - 'ticket_function.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB Stink & Essandre
2009-12-16   Drupal Module Sections 5.x-1.2/6.x-1.2 - HTML Injection 1 WEB Justin C. Klein Keane
2009-12-16   Article Directory - 'login.php' SQL Injection 1 WEB R3d D3v!L
2009-12-15   Horde 3.3.5 - '/Administration Interface admin/sqlshell.php?PATH_INFO' Cross-Site Scripting 1 WEB Juan Galiana Lara
2009-12-15   Horde 3.3.5 - '/Administration Interface admin/cmdshell.php?PATH_INFO' Cross-Site Scripting 2 WEB Juan Galiana Lara
2009-12-15   Horde 3.3.5 - Cross-Site Scripting 2 WEB Juan Galiana Lara
2009-12-14   phpFaber CMS 1.3.36 - 'module.php' Cross-Site Scripting 2 WEB bi0
2009-12-14   Million Pixel Script 3 - 'pa' Cross-Site Scripting 2 WEB bi0
2009-12-14   Ez Cart - 'sid' Cross-Site Scripting 3 WEB anti-gov
2009-12-10   Zeeways ZeeJobsite - 'basic_search_result.php' Cross-Site Scripting 2 WEB bi0
2009-12-09   Invision Power Board (IP.Board) 3.0.3 - '.txt' MIME-Type Cross-Site Scripting 2 WEB Xacker
2009-12-04   Joomla! Component You!Hostit! 1.0.1 Template - Cross-Site Scripting 1 WEB andresg888
2009-12-04   Joomla! Component YOOtheme Warp5 - 'yt_color' Cross-Site Scripting 1 WEB andresg888
2009-12-07   Advanced Image Hosting Script 2.x - 'search.php' Cross-Site Scripting 1 WEB aBo MoHaMeD
2009-12-04   WordPress Plugin Yoast Google Analytics 3.2.4 - 404 Error Page Cross-Site Scripting 1 WEB intern0t
2014-05-16   eGroupWare 1.8.006 - Multiple Vulnerabilities 1 WEB High-Tech Bridge SA
2009-12-01   phpMyFAQ < 2.5.4 - Multiple Cross-Site Scripting Vulnerabilities 1 WEB Amol Naik
2009-11-30   Elxis - 'Filename' Directory Traversal 3 WEB cr4wl3r
2009-11-30   SmartMedia Module 0.85 Beta for XOOPS - 'categoryId' Cross-Site Scripting 1 WEB SoldierOfAllah
2009-11-30   Content Module 0.5 for XOOPS - 'id' SQL Injection 1 WEB s4r4d0
2008-02-16   Power Phlogger 2.2.x - Cross-Site Scripting 1 WEB MustLive
2009-11-23   Joomla! 1.5.x - 404 Error Page Cross-Site Scripting 2 WEB MustLive
2009-11-16   Joomla! Component ProofReader 1.0 RC9 - Cross-Site Scripting 1 WEB MustLive
2009-11-24   klinza Professional CMS 5.0.1 - 'menulast.php' Local File Inclusion 1 WEB klinza
2009-11-24   Quick.Cart 3.4 / Quick.CMS 2.4 - Delete Function Cross-Site Request Forgery 1 WEB Alice Kaerast
2009-11-21   Cacti 0.8.x - 'graph.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB Moritz Naumann
2009-11-16   WordPress Plugin Subscribe to Comments 2.0 - Multiple Cross-Site Scripting Vulnerabilities 1 WEB MustLive
2009-11-13   WordPress Plugin Fuctweb CapCC 1.0 CAPTCHA - Security Bypass 1 WEB MustLive
2009-11-09   WordPress Plugin WP-Cumulus 1.x - 'tagcloud.swf' Cross-Site Scripting 1 WEB MustLive
2014-05-15   ElasticSearch - Remote Code Execution 1 WEB Jeff Geiger
2009-11-24   WordPress Plugin Firestats 1.0.2 - Multiple Cross-Site Scripting / Authentication Bypass Vulnerabili 1 WEB MustLive
2009-11-24   WordPress Plugin Firestats 1.0.2 - Multiple Cross-Site Scripting / Authentication Bypass Vulnerabili 1 WEB MustLive
2009-11-15   WordPress Plugin Trashbin 0.1 - 'mtb_undelete' Cross-Site Scripting 1 WEB MustLive
2009-11-29   WordPress Plugin WP-phpList 2.10.2 - 'unsubscribeemail' Cross-Site Scripting 1 WEB MustLive
2009-11-19   CubeCart 3.0.4/4.3.6 - 'ProductID' SQL Injection 1 WEB Sangte Amtham
2009-11-17   JiRo's (Multiple Products) - '/files/login.asp' Multiple SQL Injections 2 WEB blackenedsecurity
2009-11-16   PHD Help Desk 1.43 - 'caso_insert.php?URL' Cross-Site Scripting 2 WEB Amol Naik
2009-11-16   PHD Help Desk 1.43 - 'atributo_list.php' Multiple Cross-Site Scripting Vulnerabilities 3 WEB Amol Naik
2009-11-16   PHD Help Desk 1.43 - 'atributo.php?URL' Cross-Site Scripting 3 WEB Amol Naik
2009-11-16   PHD Help Desk 1.43 - 'area_list.php' Multiple Cross-Site Scripting Vulnerabilities 4 WEB Amol Naik
2009-11-16   PHD Help Desk 1.43 - 'solic_display.php?q_registros' Cross-Site Scripting 3 WEB Amol Naik
2009-11-16   PHD Help Desk 1.43 - 'area.php' Multiple Cross-Site Scripting Vulnerabilities 3 WEB Amol Naik
2014-05-14   Broadcom PIPA C211 - Sensitive Information Disclosure 2 WEB Portcullis
2009-11-06   McAfee Network Security Manager 5.1.7 - Information Disclosure 3 WEB Daniel King
2009-11-06   McAfee Network Security Manager 5.1.7 - Multiple Cross-Site Scripting Vulnerabilities 4 WEB Daniel King
2009-11-10   CuteNews 1.4.6 editnews Module - doeditnews Action Admin Moderation Bypass 2 WEB Andrew Horton
2009-11-10   CuteNews 1.4.6 - 'index.php' Cross-Site Request Forgery (New User Creation) 3 WEB Andrew Horton
2009-11-10   CuteNews 1.4.6 - 'result' Cross-Site Scripting 2 WEB Andrew Horton
2009-11-10   CuteNews 1.4.6 - 'search.php' Multiple Cross-Site Scripting Vulnerabilities 3 WEB Andrew Horton
2009-11-10   CuteNews 1.4.6 - 'from_date_day' Full Path Disclosure 2 WEB Andrew Horton
2009-11-10   CuteNews 1.4.6 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 3 WEB Andrew Horton
2014-05-12   VM Turbo Operations Manager 4.5x - Directory Traversal 2 WEB Jamal Pecou
2014-05-12   SpiceWorks 7.2.00174 - Persistent Cross-Site Scripting 4 WEB Dolev Farhi
2014-05-12   Skybox Security 6.3.x < 6.4.x - Multiple Information Disclosures 3 WEB Luigi Vezzoso
2009-11-02   TFTgallery 0.13 - 'sample' Cross-Site Scripting 3 WEB blake
2014-05-12   Alienvault Open Source SIEM (OSSIM) 4.6.1 - (Authenticated) SQL Injection (Metasploit) 3 WEB Chris Hebert
2009-10-26   TFTgallery 0.13 - 'album' Cross-Site Scripting 2 WEB blake
2009-10-27   Sahana 0.6.2 - 'mod' Local File Disclosure 2 WEB Greg Miernicki
2009-10-26   RunCMS - 'forum' SQL Injection 2 WEB Nine:Situations:Group::bookoo
2009-10-21   OpenDocMan 1.2.5 - 'view_file.php' Cross-Site Scripting 2 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'user.php' Cross-Site Scripting 2 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'search.php' Cross-Site Scripting 2 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'rejects.php' Cross-Site Scripting 2 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'profile.php' Cross-Site Scripting 2 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'department.php' Cross-Site Scripting 2 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'category.php' Cross-Site Scripting 2 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'admin.php?last_message' Cross-Site Scripting 2 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'index.php?last_message' Cross-Site Scripting 2 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'toBePublished.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'add.php?last_message' Cross-Site Scripting 2 WEB Amol Naik
2009-10-19   TBmnetCMS 1.0 - Cross-Site Scripting 2 WEB drunken danish rednecks
2009-10-15   IBM Rational RequisitePro 7.10 - ReqWeb Help Feature 'ReqWebHelp/basic/searchView.jsp' Multiple Cros 2 WEB IBM
2009-10-15   IBM Rational RequisitePro 7.10 - 'ReqWeb Help Feature ReqWebHelp/advanced/workingSet.jsp?Operation' 2 WEB IBM
2009-10-15   Snitz Forums 2000 3.4.7 - Sound Tag Onload Attribute Cross-Site Scripting 2 WEB Andrea Fabrizi
2009-10-15   Snitz Forums 2000 3.4.7 - 'pop_send_to_friend.asp?url' Cross-Site Scripting 4 WEB Andrea Fabrizi
2009-10-14   Zainu 1.0 - 'searchSongKeyword' Cross-Site Scripting 2 WEB drunken danish rednecks
2009-10-15   BloofoxCMS 0.3.5 - 'search' Cross-Site Scripting 2 WEB drunken danish rednecks
2009-10-14   Eclipse BIRT 2.2.1 - 'run?__report' Cross-Site Scripting 3 WEB Michele Orru
2009-10-14   Pentaho BI 1.x - Multiple Cross-Site Scripting / Information Disclosure Vulnerabilities 2 WEB euronymous
2009-10-13   Dream Poll 3.1 - '/index.php' Cross-Site Scripting / SQL Injection 2 WEB infosecstuff