2008-08-13
|
|
Meet#Web 0.8 - 'ManagerResource.class.php?root_path' Remote File Inclusion
|
3 |
WEB
|
Rakesh S
|
2008-08-13
|
|
Meet#Web 0.8 - 'modules.php?root_path' Remote File Inclusion
|
3 |
WEB
|
Rakesh S
|
2008-08-12
|
|
IDevSpot PHPLinkExchange 1.01/1.02 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
sl4xUz
|
2008-08-12
|
|
Datafeed Studio 1.6.2 - 'search.php' Cross-Site Scripting
|
3 |
WEB
|
Bug Researchers Group
|
2008-08-12
|
|
Datafeed Studio - 'patch.php' Remote File Inclusion
|
3 |
WEB
|
Bug Researchers Group
|
2008-08-11
|
|
Kayako SupportSuite 3.x - '/staff/index.php?customfieldlinkid' SQL Injection
|
3 |
WEB
|
GulfTech Security
|
2008-08-11
|
|
Kayako SupportSuite 3.x - 'index.php?filter' Cross-Site Scripting
|
3 |
WEB
|
GulfTech Security
|
2008-08-11
|
|
Kayako SupportSuite 3.x - '/visitor/index.php?sessionid' Cross-Site Scripting
|
3 |
WEB
|
GulfTech Security
|
2008-08-11
|
|
Domain Group Network GooCMS 1.02 - 'index.php' Cross-Site Scripting
|
5 |
WEB
|
ahmadbaby
|
2008-08-08
|
|
Linkspider 1.08 - Multiple Remote File Inclusions
|
3 |
WEB
|
Rohit Bansal
|
2008-08-09
|
|
RMSOFT Downloads Plus - '/(rmdp) 1.5/1.7 Module for XOOPS down.php?id' Cross-Site Scripting
|
3 |
WEB
|
Lostmon
|
2008-08-09
|
|
RMSOFT Downloads Plus - '/(rmdp) 1.5/1.7 Module for XOOPS search.php?key' Cross-Site Scripting
|
3 |
WEB
|
Lostmon
|
2014-03-12
|
|
FreePBX 2.11.0 - Remote Command Execution
|
3 |
WEB
|
@0x00string
|
2014-03-12
|
|
vTiger CRM 5.4.0/6.0 RC/6.0.0 GA - 'browse.php' Local File Inclusion
|
3 |
WEB
|
Portcullis
|
2014-03-12
|
|
Procentia IntelliPen 1.1.12.1520 - 'data.aspx' Blind SQL Injection
|
3 |
WEB
|
Portcullis
|
2014-03-12
|
|
LuxCal 3.2.2 - Cross-Site Request Forgery / Blind SQL Injection
|
3 |
WEB
|
TUNISIAN CYBER
|
2014-03-12
|
|
GNUPanel 0.3.5_R4 - Multiple Vulnerabilities
|
2 |
WEB
|
Necmettin COSKUN
|
2014-03-12
|
|
ZYXEL P-660HN-T1A Router - Authentication Bypass
|
3 |
WEB
|
Michael Grifalconi
|
2008-08-09
|
|
Yogurt Social Network 3.2 rc1 Module for XOOPS - 'tribes.php?uid' Cross-Site Scripting
|
3 |
WEB
|
Lostmon
|
2008-08-09
|
|
Yogurt Social Network 3.2 rc1 Module for XOOPS - 'index.php?uid' Cross-Site Scripting
|
3 |
WEB
|
Lostmon
|
2008-08-09
|
|
Yogurt Social Network 3.2 rc1 Module for XOOPS - 'scrapbook.php?uid' Cross-Site Scripting
|
3 |
WEB
|
Lostmon
|
2008-08-09
|
|
Yogurt Social Network 3.2 rc1 Module for XOOPS - 'album.php?uid' Cross-Site Scripting
|
3 |
WEB
|
Lostmon
|
2008-08-09
|
|
Yogurt Social Network 3.2 rc1 Module for XOOPS - 'seutubo.php?uid' Cross-Site Scripting
|
3 |
WEB
|
Lostmon
|
2008-08-09
|
|
Yogurt Social Network 3.2 rc1 Module for XOOPS - 'friends.php?uid' Cross-Site Scripting
|
3 |
WEB
|
Lostmon
|
2008-08-09
|
|
RMSOFT MiniShop 1.0 - 'search.php' Multiple Cross-Site Scripting Vulnerabilities
|
4 |
WEB
|
Lostmon
|
2008-08-06
|
|
PHP-Nuke Kleinanzeigen Module - 'lid' SQL Injection
|
2 |
WEB
|
Lovebug
|
2008-08-06
|
|
Kshop 2.22 - 'kshop_search.php' Cross-Site Scripting
|
4 |
WEB
|
Lostmon
|
2008-08-06
|
|
WebmasterSite (Multiple Products) - Remote Command Execution
|
3 |
WEB
|
otmorozok428
|
2008-08-06
|
|
Joomla! / Mambo Component com_utchat 0.2 - Multiple Remote File Inclusions
|
3 |
WEB
|
by_casper41
|
2008-08-06
|
|
Quate CMS 0.3.4 - Multiple Cross-Site Scripting Vulnerabilities
|
4 |
WEB
|
CraCkEr
|
2008-08-06
|
|
KAPhotoservice - 'search.asp?Filename' Cross-Site Scripting
|
3 |
WEB
|
by_casper41
|
2008-08-06
|
|
KAPhotoservice - 'order.asp?page' Cross-Site Scripting
|
3 |
WEB
|
by_casper41
|
2008-08-06
|
|
PHPKF-Portal 1.10 - 'anket_yonetim.php?portal_ayarlarportal_dili' Traversal Local File Inclusion
|
2 |
WEB
|
KnocKout
|
2008-08-06
|
|
PHPKF-Portal 1.10 - 'baslik.php?tema_dizin' Traversal Local File Inclusion
|
2 |
WEB
|
KnocKout
|
2008-08-06
|
|
Battle.net Clan Script 1.5.x - 'index.php' Multiple SQL Injections
|
4 |
WEB
|
Khashayar Fereidani
|
2008-08-06
|
|
Chupix CMS Contact Module 0.1 - 'index.php' Multiple Local File Inclusions
|
3 |
WEB
|
casper41
|
2008-08-05
|
|
POWERGAP ShopSystem - 's03.php' SQL Injection
|
3 |
WEB
|
Rohit Bansal
|
2008-08-05
|
|
Softbiz Image Gallery - 'browsecats.php?msg' Cross-Site Scripting
|
4 |
WEB
|
sl4xUz
|
2008-08-05
|
|
Softbiz Image Gallery - 'cleanup.php?msg' Cross-Site Scripting
|
3 |
WEB
|
sl4xUz
|
2008-08-05
|
|
Softbiz Image Gallery - 'changepassword.php?msg' Cross-Site Scripting
|
4 |
WEB
|
sl4xUz
|
2008-08-05
|
|
Softbiz Image Gallery - 'config.php?msg' Cross-Site Scripting
|
3 |
WEB
|
sl4xUz
|
2008-08-05
|
|
Softbiz Image Gallery - 'adminhome.php?msg' Cross-Site Scripting
|
4 |
WEB
|
sl4xUz
|
2008-08-05
|
|
Softbiz Image Gallery - 'image_desc.php?latest' Cross-Site Scripting
|
4 |
WEB
|
sl4xUz
|
2008-08-05
|
|
Softbiz Image Gallery - 'suggest_image.php' Multiple Cross-Site Scripting Vulnerabilities
|
4 |
WEB
|
sl4xUz
|
2008-08-05
|
|
Softbiz Image Gallery - 'images.php' Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
sl4xUz
|
2008-08-05
|
|
Softbiz Image Gallery - 'index.php' Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
sl4xUz
|
2008-08-05
|
|
Crafty Syntax Live Help 2.14.6 - 'livehelp_js.php' Cross-Site Scripting
|
3 |
WEB
|
CoRSaNTuRK
|
2008-08-05
|
|
Pluck CMS 4.5.2 - Multiple Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
Khashayar Fereidani
|
2014-03-10
|
|
ownCloud 4.0.x/4.5.x - 'upload.php?Filename' Remote Code Execution
|
3 |
WEB
|
Portcullis
|
2014-03-10
|
|
Huawei E5331 MiFi Mobile Hotspot 21.344.11.00.414 - Multiple Vulnerabilities
|
3 |
WEB
|
SEC Consult
|
2014-03-10
|
|
Kentico CMS 7.0.75 - User Information Disclosure
|
3 |
WEB
|
Charlie Campbell & Lyndon Mendoza
|
2008-08-04
|
|
Pcshey Portal - 'kategori.asp' SQL Injection
|
3 |
WEB
|
U238
|
2008-08-04
|
|
UNAK-CMS 1.5 - 'connector.php' Local File Inclusion
|
3 |
WEB
|
Sina Yazdanmehr
|
2008-08-04
|
|
Meeting Room Booking System (MRBS) 1.2.6 - 'help.php' Cross-Site Scripting
|
3 |
WEB
|
sl4xUz
|
2008-08-04
|
|
Meeting Room Booking System (MRBS) 1.2.6 - 'report.php' Cross-Site Scripting
|
3 |
WEB
|
sl4xUz
|
2008-08-04
|
|
Meeting Room Booking System (MRBS) 1.2.6 - 'search.php' Cross-Site Scripting
|
3 |
WEB
|
sl4xUz
|
2008-08-04
|
|
Meeting Room Booking System (MRBS) 1.2.6 - 'month.php' Cross-Site Scripting
|
2 |
WEB
|
sl4xUz
|
2008-08-04
|
|
Meeting Room Booking System (MRBS) 1.2.6 - 'week.php' Cross-Site Scripting
|
2 |
WEB
|
sl4xUz
|
2008-08-04
|
|
Meeting Room Booking System (MRBS) 1.2.6 - 'day.php' Cross-Site Scripting
|
3 |
WEB
|
sl4xUz
|
2008-08-04
|
|
Keld PHP-MySQL News Script 0.7.1 - 'login.php' SQL Injection
|
3 |
WEB
|
crimsoN_Loyd9
|
2008-08-02
|
|
Pligg CMS 9.9.5 - 'CAPTCHA' Registration Automation Security Bypass
|
2 |
WEB
|
Micheal Brooks
|
2008-08-04
|
|
Homes 4 Sale - 'results.php' Cross-Site Scripting
|
4 |
WEB
|
Ghost Hacker
|
2008-08-01
|
|
PHP-Nuke Book Catalog Module 1.0 - 'catid' SQL Injection
|
3 |
WEB
|
H4ckCity Security Team
|
2008-08-01
|
|
freeForum 1.7 - 'acuparam' Cross-Site Scripting
|
3 |
WEB
|
ahmadbady
|
2008-07-31
|
|
common Solutions csphonebook 1.02 - 'index.php' Cross-Site Scripting
|
3 |
WEB
|
Ghost Hacker
|
2008-07-31
|
|
H0tturk Panel - 'gizli.php' Remote File Inclusion
|
3 |
WEB
|
U238
|
2014-03-09
|
|
ClipSharePro 4.1 - Local File Inclusion
|
3 |
WEB
|
Saadi Siddiqui
|
2008-07-30
|
|
DEV Web Management System 1.5 - Multiple Input Validation Vulnerabilities
|
3 |
WEB
|
Dr.Crash
|
2008-07-30
|
|
MJGUEST 6.8 - 'Guestbook.js.php' Cross-Site Scripting
|
3 |
WEB
|
DSecRG
|
2008-05-11
|
|
ScrewTurn Software ScrewTurn Wiki 2.0.x - 'System Log' Page HTML Injection
|
3 |
WEB
|
Portcullis
|
2008-07-29
|
|
MiniBB RSS 2.0 Plugin - Multiple Remote File Inclusions
|
3 |
WEB
|
Ghost Hacker
|
2008-07-28
|
|
Owl Intranet Engine 0.95 - 'register.php' Cross-Site Scripting
|
3 |
WEB
|
Fabian Fingerle
|
2008-07-28
|
|
Jamroom 3.3.8 - Cookie Authentication Bypass
|
3 |
WEB
|
GulfTech Security
|
2008-07-28
|
|
Web Wiz Forum 9.5 - 'admin_category_details.asp?mode' Cross-Site Scripting
|
3 |
WEB
|
CSDT
|
2008-07-28
|
|
Web Wiz Forum 9.5 - 'admin_group_details.asp?mode' Cross-Site Scripting
|
2 |
WEB
|
CSDT
|
2008-07-27
|
|
Greatclone GC Auction Platinum - 'category.php' SQL Injection
|
3 |
WEB
|
Hussin X
|
2008-07-26
|
|
Willoughby TriO 2.1 - SQL Injection
|
3 |
WEB
|
dun
|
2008-07-25
|
|
EZContents - 'minicalendar.php' Remote File Inclusion
|
3 |
WEB
|
HACKERS PAL
|
2014-03-07
|
|
Ajax File Manager - Directory Traversal
|
3 |
WEB
|
Eduardo Alves
|
2008-07-24
|
|
AtomPhotoBlog 1.15 - 'atomPhotoBlog.php' SQL Injection
|
3 |
WEB
|
Mr.SQL
|
2008-07-23
|
|
EMC Centera Universal Access 4.0_4735.p4 - 'Username' SQL Injection
|
2 |
WEB
|
Lars Heidelberg
|
2008-07-22
|
|
Pre Survey Generator - 'default.asp' SQL Injection
|
3 |
WEB
|
DreamTurk
|
2008-07-22
|
|
Claroline 1.8 - '/tracking/toolaccess_details.php?toolId' Cross-Site Scripting
|
3 |
WEB
|
DSecRG
|
2008-07-22
|
|
Claroline 1.8 - '/tracking/courseLog.php?view' Cross-Site Scripting
|
3 |
WEB
|
DSecRG
|
2008-07-22
|
|
Claroline 1.8 - 'user/user.php' Query String Cross-Site Scripting
|
3 |
WEB
|
DSecRG
|
2008-07-22
|
|
Claroline 1.8 - 'learnPath/calendar/myagenda.php' Query String Cross-Site Scripting
|
3 |
WEB
|
DSecRG
|
2008-07-21
|
|
AlphAdmin CMS 1.0.5_03 - 'aa_login' Cookie Authentication Bypass
|
3 |
WEB
|
Ciph3r
|
2008-07-21
|
|
eSyndiCat 1.6 - 'admin_lng' Cookie Authentication Bypass
|
3 |
WEB
|
Ciph3r
|
2008-07-21
|
|
RunCMS 1.6.1 - 'bbPath[root_theme]' Remote File Inclusion
|
3 |
WEB
|
Ciph3r
|
2008-07-21
|
|
RunCMS 1.6.1 - 'bbPath[path]' Remote File Inclusion
|
3 |
WEB
|
Ciph3r
|
2008-07-21
|
|
XOOPS 2.0.18 - '/modules/system/admin.php?fct' Cross-Site Scripting
|
3 |
WEB
|
Ciph3r
|
2008-07-21
|
|
XOOPS 2.0.18 - '/modules/system/admin.php?fct' Traversal Local File Inclusion
|
3 |
WEB
|
Ciph3r
|
2008-07-21
|
|
EasyE-Cards 3.10 - SQL Injection / Cross-Site Scripting
|
3 |
WEB
|
Dr.Crash
|
2008-07-21
|
|
HiFriend - 'cgi-bin/hifriend.pl' Open Email Relay
|
3 |
WEB
|
Perforin
|
2008-07-21
|
|
PHPKF - 'forum_duzen.php' SQL Injection
|
3 |
WEB
|
U238
|
2008-07-21
|
|
Flip 3.0 - 'config.php' Remote File Inclusion
|
3 |
WEB
|
Cru3l.b0y
|
2008-07-21
|
|
MyBlog 0.9.8 - Multiple Remote Information Disclosure Vulnerabilities
|
3 |
WEB
|
AmnPardaz Security Research Team
|
2008-07-21
|
|
Maran PHP Blog - 'comments.php' Cross-Site Scripting
|
3 |
WEB
|
Dr.Crash
|
2008-07-21
|
|
EasyPublish 3.0 - 'read' Multiple SQL Injections / Cross-Site Scripting
|
3 |
WEB
|
Dr.Crash
|
2008-07-21
|
|
EasyDynamicPages 3.0 - Multiple SQL Injections / Cross-Site Scripting Vulnerabilities
|
3 |
WEB
|
Dr.Crash
|
2008-07-21
|
|
EasyBookMarker 4.0 - 'ajaxp_backend.php' Cross-Site Scripting
|
3 |
WEB
|
Dr.Crash
|
2008-07-18
|
|
PHPFreeChat 1.1 - 'demo21_with_hardocded_urls.php' Cross-Site Scripting
|
3 |
WEB
|
ahmadbady
|
2008-07-18
|
|
Def_Blog 1.0.3 - 'comlook.php?article' SQL Injection
|
3 |
WEB
|
CWH Underground
|
2008-07-18
|
|
Def_Blog 1.0.3 - 'comaddok.php?article' SQL Injection
|
2 |
WEB
|
CWH Underground
|
2008-07-18
|
|
Lemon CMS 1.10 - 'browser.php' Local File Inclusion
|
3 |
WEB
|
Ciph3r
|
2008-07-18
|
|
CreaCMS - '/fonctions/get_liste_langue.php?cfg[base_uri_admin]' Remote File Inclusion
|
3 |
WEB
|
Ciph3r
|
2008-07-18
|
|
CreaCMS - '/edition_article/edition_article.php?cfg[document_uri]' Remote File Inclusion
|
3 |
WEB
|
Ciph3r
|
2008-07-17
|
|
Community CMS 0.1 - 'include.php' Remote File Inclusion
|
2 |
WEB
|
N3TR00T3R
|
2008-07-17
|
|
IBS 0.15 - 'Username' Cross-Site Scripting
|
3 |
WEB
|
Cyb3r-1sT
|
2014-03-05
|
|
Ilch CMS 2.0 - Persistent Cross-Site Scripting
|
2 |
WEB
|
High-Tech Bridge SA
|
2014-03-05
|
|
OpenDocMan 1.2.7 - Multiple Vulnerabilities
|
1 |
WEB
|
High-Tech Bridge SA
|
2008-07-15
|
|
Claroline 1.8.9 - '/claroline/redirector.php?url' Arbitrary Site Redirect
|
2 |
WEB
|
Digital Security Research Group
|
2008-07-15
|
|
Claroline 1.8.9 - 'work/work.php' Cross-Site Scripting
|
2 |
WEB
|
Digital Security Research Group
|
2008-07-15
|
|
Claroline 1.8.9 - 'wiki/wiki.php' Cross-Site Scripting
|
1 |
WEB
|
Digital Security Research Group
|
2008-07-15
|
|
Claroline 1.8.9 - 'phpBB/viewtopic.php' Cross-Site Scripting
|
2 |
WEB
|
Digital Security Research Group
|
2008-07-15
|
|
Claroline 1.8.9 - 'phpBB/reply.php' Cross-Site Scripting
|
2 |
WEB
|
Digital Security Research Group
|
2008-07-15
|
|
Claroline 1.8.9 - '/phpBB/newtopic.php' Cross-Site Scripting
|
2 |
WEB
|
Digital Security Research Group
|
2008-07-15
|
|
Claroline 1.8.9 - 'group/group_space.php' Cross-Site Scripting
|
2 |
WEB
|
Digital Security Research Group
|
2008-07-15
|
|
Claroline 1.8.9 - 'exercise/exercise.php' Cross-Site Scripting
|
2 |
WEB
|
Digital Security Research Group
|
2008-07-15
|
|
Claroline 1.8.9 - 'document/document.php' Cross-Site Scripting
|
2 |
WEB
|
Digital Security Research Group
|
2008-07-15
|
|
Claroline 1.8.9 - 'course_description/index.php' Cross-Site Scripting
|
2 |
WEB
|
Digital Security Research Group
|
2008-07-15
|
|
Claroline 1.8.9 - 'course/index.php' Cross-Site Scripting
|
2 |
WEB
|
Digital Security Research Group
|
2008-07-15
|
|
Claroline 1.8.9 - 'calendar/agenda.php' Cross-Site Scripting
|
2 |
WEB
|
Digital Security Research Group
|
2008-07-15
|
|
Claroline 1.8.9 - 'announcements/announcements.php' Cross-Site Scripting
|
2 |
WEB
|
Digital Security Research Group
|
2008-07-16
|
|
OpenPro 1.3.1 - 'search_wA.php' Remote File Inclusion
|
2 |
WEB
|
Ghost Hacker
|