Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2009-11-16   PHD Help Desk 1.43 - 'area.php' Multiple Cross-Site Scripting Vulnerabilities 5 WEB Amol Naik
2014-05-14   Broadcom PIPA C211 - Sensitive Information Disclosure 4 WEB Portcullis
2009-11-06   McAfee Network Security Manager 5.1.7 - Information Disclosure 4 WEB Daniel King
2009-11-06   McAfee Network Security Manager 5.1.7 - Multiple Cross-Site Scripting Vulnerabilities 5 WEB Daniel King
2009-11-10   CuteNews 1.4.6 editnews Module - doeditnews Action Admin Moderation Bypass 4 WEB Andrew Horton
2009-11-10   CuteNews 1.4.6 - 'index.php' Cross-Site Request Forgery (New User Creation) 4 WEB Andrew Horton
2009-11-10   CuteNews 1.4.6 - 'result' Cross-Site Scripting 3 WEB Andrew Horton
2009-11-10   CuteNews 1.4.6 - 'search.php' Multiple Cross-Site Scripting Vulnerabilities 5 WEB Andrew Horton
2009-11-10   CuteNews 1.4.6 - 'from_date_day' Full Path Disclosure 3 WEB Andrew Horton
2009-11-10   CuteNews 1.4.6 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 4 WEB Andrew Horton
2014-05-12   VM Turbo Operations Manager 4.5x - Directory Traversal 4 WEB Jamal Pecou
2014-05-12   SpiceWorks 7.2.00174 - Persistent Cross-Site Scripting 4 WEB Dolev Farhi
2014-05-12   Skybox Security 6.3.x < 6.4.x - Multiple Information Disclosures 4 WEB Luigi Vezzoso
2009-11-02   TFTgallery 0.13 - 'sample' Cross-Site Scripting 4 WEB blake
2014-05-12   Alienvault Open Source SIEM (OSSIM) 4.6.1 - (Authenticated) SQL Injection (Metasploit) 4 WEB Chris Hebert
2009-10-26   TFTgallery 0.13 - 'album' Cross-Site Scripting 4 WEB blake
2009-10-27   Sahana 0.6.2 - 'mod' Local File Disclosure 4 WEB Greg Miernicki
2009-10-26   RunCMS - 'forum' SQL Injection 4 WEB Nine:Situations:Group::bookoo
2009-10-21   OpenDocMan 1.2.5 - 'view_file.php' Cross-Site Scripting 5 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'user.php' Cross-Site Scripting 4 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'search.php' Cross-Site Scripting 4 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'rejects.php' Cross-Site Scripting 4 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'profile.php' Cross-Site Scripting 4 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'department.php' Cross-Site Scripting 5 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'category.php' Cross-Site Scripting 6 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'admin.php?last_message' Cross-Site Scripting 5 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'index.php?last_message' Cross-Site Scripting 4 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'toBePublished.php' Multiple Cross-Site Scripting Vulnerabilities 5 WEB Amol Naik
2009-10-21   OpenDocMan 1.2.5 - 'add.php?last_message' Cross-Site Scripting 4 WEB Amol Naik
2009-10-19   TBmnetCMS 1.0 - Cross-Site Scripting 4 WEB drunken danish rednecks
2009-10-15   IBM Rational RequisitePro 7.10 - ReqWeb Help Feature 'ReqWebHelp/basic/searchView.jsp' Multiple Cros 4 WEB IBM
2009-10-15   IBM Rational RequisitePro 7.10 - 'ReqWeb Help Feature ReqWebHelp/advanced/workingSet.jsp?Operation' 5 WEB IBM
2009-10-15   Snitz Forums 2000 3.4.7 - Sound Tag Onload Attribute Cross-Site Scripting 6 WEB Andrea Fabrizi
2009-10-15   Snitz Forums 2000 3.4.7 - 'pop_send_to_friend.asp?url' Cross-Site Scripting 7 WEB Andrea Fabrizi
2009-10-14   Zainu 1.0 - 'searchSongKeyword' Cross-Site Scripting 6 WEB drunken danish rednecks
2009-10-15   BloofoxCMS 0.3.5 - 'search' Cross-Site Scripting 5 WEB drunken danish rednecks
2009-10-14   Eclipse BIRT 2.2.1 - 'run?__report' Cross-Site Scripting 5 WEB Michele Orru
2009-10-14   Pentaho BI 1.x - Multiple Cross-Site Scripting / Information Disclosure Vulnerabilities 5 WEB euronymous
2009-10-13   Dream Poll 3.1 - '/index.php' Cross-Site Scripting / SQL Injection 4 WEB infosecstuff
2009-10-13   Achievo 1.x - Multiple Cross-Site Scripting / HTML Injection Vulnerabilities 5 WEB Ryan Dewhurst
2009-10-06   AfterLogic WebMail Pro 4.7.10 - Multiple Cross-Site Scripting Vulnerabilities 4 WEB Sébastien Duquette
2009-10-06   X-Cart Email Subscription - 'email' Cross-Site Scripting 3 WEB Paulo Santos
2009-10-05   Joomla! Component CB Resume Builder - 'group_id' SQL Injection 4 WEB kaMtiEz
2009-09-29   Interspire Knowledge Manager 5 - 'p' Directory Traversal 3 WEB Infected Web
2009-09-28   e107 0.7.x - CAPTCHA Security Bypass / Cross-Site Scripting 3 WEB MustLive
2009-09-23   IBM Lotus Connections 2.0.1 - 'simpleSearch.do' Cross-Site Scripting 3 WEB IBM
2014-05-08   Cobbler 2.4.x < 2.6.x - Local File Inclusion 4 WEB Dolev Farhi
2014-05-08   Collabtive 1.2 - Persistent Cross-Site Scripting 3 WEB Deepak Rathore
2014-05-08   Collabtive 1.2 - SQL Injection 3 WEB Deepak Rathore
2014-05-08   OpenFiler 2.99.1 - Multiple Persistent Cross-Site Scripting Vulnerabilities 3 WEB Dolev Farhi
2014-05-08   OpenFiler 2.99.1 - Arbitrary Code Execution 4 WEB Dolev Farhi
2009-09-23   Vastal I-Tech Agent Zone - 'view_listing.php' SQL Injection 3 WEB OoN_Boy
2009-09-22   Vastal I-Tech DVD Zone - 'view_mag.php' Cross-Site Scripting 4 WEB OoN_Boy
2009-09-22   Vastal I-Tech DVD Zone - 'view_mag.php' SQL Injection 4 WEB OoN_Boy
2009-09-22   Vastal I-Tech Cosmetics Zone - 'view_products.php' SQL Injection 3 WEB OoN_Boy
2009-09-22   Joomla! Component JoomlaFacebook - SQL Injection 3 WEB kaMtiEz
2009-09-22   Joomla! Component SportFusion 0.2.x - SQL Injection 3 WEB kaMtiEz
2009-09-22   Maxwebportal 1.365 - 'forum.asp' SQL Injection 4 WEB OoN_Boy
2009-09-19   MyBB 1.4.8 - 'search.php' SQL Injection 3 WEB $qL_DoCt0r
2009-09-18   Avaya Intuity Audix LX R1.1 - Multiple Remote Vulnerabilities 3 WEB pagvac
2009-09-16   TuttoPHP Morris Guestbook - 'view.php' Cross-Site Scripting 3 WEB Moudi
2009-09-16   Mega File Hosting Script 1.2 - 'emaillinks.php' Cross-Site Scripting 3 WEB Moudi
2009-09-11   Planet 2.0 - HTML Injection 3 WEB Steve Kemp
2009-09-11   Joomla! Component com_mediaalert - 'id' SQL Injection 3 WEB Moudi
2009-09-10   Joomla! Component com_pressrelease - 'id' SQL Injection 3 WEB Moudi
2009-09-04   DvBBS 2.0 - 'boardrule.php' SQL Injection 3 WEB Securitylab.ir
2009-09-03   Adobe RoboHelp Server 8 - Authentication Bypass 3 WEB Intevydis
2009-08-31   MKPortal 1.x - Multiple BBCode HTML Injection Vulnerabilities 4 WEB Inj3ct0r
2009-08-31   MKPortal 1.x (Multiple Modules) - Cross-Site Scripting 3 WEB Inj3ct0r
2009-09-09   phpAuction 3.2 - 'lan' Remote File Inclusion 3 WEB Beenu Arora
2009-07-27   68 Classifieds 4.1 - 'viewmember.php' Cross-Site Scripting 3 WEB Moudi
2009-07-27   68 Classifieds 4.1 - 'viewlisting.php' Cross-Site Scripting 3 WEB Moudi
2009-07-27   68 Classifieds 4.1 - 'toplistings.php' Cross-Site Scripting 3 WEB Moudi
2009-07-27   68 Classifieds 4.1 - 'searchresults.php' Cross-Site Scripting 3 WEB Moudi
2009-07-27   68 Classifieds 4.1 - 'login.php' Cross-Site Scripting 3 WEB Moudi
2009-07-27   68 Classifieds 4.1 - 'category.php' Cross-Site Scripting 4 WEB Moudi
2014-05-05   TeamHelpdesk Customer Web Service (CWS) 8.3.5 & Technician Web Access (TWA) 8.3.5 - Remote User Cred 3 WEB bhamb
2009-08-28   FlexCMS 2.5 - 'CookieUsername' Cookie SQL Injection 3 WEB Inj3ct0r
2009-08-25   OpenAutoClassifieds 1.5.9 - SQL Injection 2 WEB Andrew Horton
2009-08-26   PHP-Fusion 6.1.18 - Multiple Information Disclosure Vulnerabilities 3 WEB Inj3ct0r
2009-08-26   VideoGirls - 'view.php?p' Cross-Site Scripting 3 WEB Moudi
2009-08-26   VideoGirls - 'profile.php?profile_name' Cross-Site Scripting 3 WEB Moudi
2009-08-26   VideoGirls - 'forum.php?t' Cross-Site Scripting 3 WEB Moudi
2009-06-08   Computer Associates SiteMinder - Unicode Cross-Site Scripting Protection Security Bypass 3 WEB Arshan Dabirsiaghi
2009-08-19   Adobe Flex SDK 3.x - 'index.template.html' Cross-Site Scripting 3 WEB Adam Bixby
2009-06-08   Computer Associates SiteMinder - '%00' Cross-Site Scripting Protection Security Bypass 3 WEB Arshan Dabirsiaghi
2009-08-17   DUWare DUgallery 3.0 - '/admin/edit.asp' Authentication Bypass 3 WEB spymeta
2009-08-17   Adobe ColdFusion Server 8.0.1 - '/administrator/enter.cfm' Query String Cross-Site Scripting 3 WEB Alexander Polyakov
2009-08-17   Adobe ColdFusion Server 8.0.1 - '/wizards/common/_logintowizard.cfm' Query String Cross-Site Scripti 3 WEB Alexander Polyakov
2009-08-17   Adobe ColdFusion Server 8.0.1 - 'administrator/logviewer/searchlog.cfm?startRow' Cross-Site Scriptin 3 WEB Alexander Polyakov
2009-08-17   Adobe ColdFusion Server 8.0.1 - '/wizards/common/_authenticatewizarduser.cfm' Query String Cross-Sit 3 WEB Alexander Polyakov
2009-08-15   Discuz! 6.0 - '2fly_gift.php' SQL Injection 3 WEB Securitylab.ir
2009-08-10   Papoo 3.x - Upload Images Arbitrary File Upload 3 WEB RedTeam Pentesting GmbH
2014-05-03   Seagate BlackArmor NAS - Multiple Vulnerabilities 3 WEB Shayan S
2009-08-10   ViArt CMS - 'forum_topic_new.php?forum_id' Cross-Site Scripting 3 WEB Moudi
2009-08-10   ViArt CMS - 'forum.php?forum_id' Cross-Site Scripting 3 WEB Moudi
2014-05-03   Crime24 Stealer Panel 1.0 - Multiple Vulnerabilities 2 WEB Daisuke Dan
2009-08-10   ViArt CMS - 'forums.php?category_id' Cross-Site Scripting 2 WEB Moudi
2009-08-10   SQLiteManager 1.2 - 'main.php' Cross-Site Scripting 2 WEB Hadi Kiamarsi
2009-08-10   SupportPRO SupportDesk 3.0 - 'shownews.php' Cross-Site Scripting 4 WEB Moudi
2009-08-07   PhotoPost PHP 3.3.1 - 'cat' Cross-Site Scripting / SQL Injection 3 WEB 599eme Man
2009-08-06   Alkacon OpenCMS 7.x - Multiple Input Validation Vulnerabilities 3 WEB Katie French
2009-08-05   AJ Auction Pro 3.0 - 'txtkeyword' Cross-Site Scripting 2 WEB 599eme Man
2009-08-04   CS-Cart 2.0.5 - 'reward_points.post.php' SQL Injection 3 WEB Ryan Dewhurst
2009-06-29   Censura < 2.1.1 - Multiple Cross-Site Scripting Vulnerabilities 3 WEB mark99
2014-05-01   Netgear DGN2200 1.0.0.29_1.7.29_HotS - Persistent Cross-Site Scripting 3 WEB Dolev Farhi
2014-05-01   Fritz!Box - Remote Command Execution 3 WEB 0x4148
2009-07-30   Softbiz Dating Script 1.0 - 'cat_products.php' SQL Injection 3 WEB MizoZ
2009-06-30   XOOPS 2.3.3 - 'op' Multiple Cross-Site Scripting Vulnerabilities 3 WEB Sense of Security
2009-06-30   NTSOFT BBS E-Market Professional - Multiple Cross-Site Scripting Vulnerabilities (1) 3 WEB Ivan Sanchez
2014-04-30   Beetel 450TC2 Router - Cross-Site Request Forgery (Admin Password) 3 WEB shyamkumar somana
2009-06-29   Miniweb 2.0 Site Builder Module - Multiple Cross-Site Scripting Vulnerabilities 3 WEB Moudi
2009-06-28   Matterdaddy Market 1.x - 'index.php' Cross-Site Scripting 3 WEB Moudi
2009-06-28   Joomla! Component Permis 1.0 (com_groups) - 'id' SQL Injection 3 WEB Prince_Pwn3r
2009-06-27   Joomla! Component com_user - 'view' Open Redirection 3 WEB 599eme Man
2009-06-24   Pilot Group eTraining - 'lessons_login.php' Cross-Site Scripting 2 WEB Moudi
2009-06-24   Pilot Group eTraining - 'news_read.php' Cross-Site Scripting 3 WEB Moudi
2009-06-24   Pilot Group eTraining - 'courses_login.php' Cross-Site Scripting 3 WEB Moudi
2009-06-27   AlmondSoft Classifieds Pro - 'gmap.php?addr' Cross-Site Scripting 2 WEB Moudi
2009-06-27   AlmondSoft Multiple Classifieds Products - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB Moudi
2009-06-27   AlmondSoft Multiple Classifieds Products - 'index.php?replid' SQL Injection 2 WEB Moudi
2009-06-27   Joomla! Component Almond Classifieds 7.5 - Cross-Site Scripting / SQL Injection 1 WEB Moudi
2009-06-27   PG Roommate Finder Solution - 'viewprofile.php?part' Cross-Site Scripting 2 WEB Moudi
2009-06-27   PG Roommate Finder Solution - 'quick_search.php?part' Cross-Site Scripting 2 WEB Moudi
2009-06-27   AIOCP 1.4 - 'cp_html2txt.php' Remote File Inclusion 2 WEB Hadi Kiamarsi