Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2008-02-19   Jinzora 2.7.5 - 'ajax_request.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB Alexandr Polyakov
2008-02-19   Jinzora 2.7.5 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB Alexandr Polyakov
2008-02-18   WebcamXP 3.72.440/4.05.280 Beta - '/show_gallery_pic?id' Arbitrary Memory Disclosure 1 WEB Luigi Auriemma
2008-02-18   WebcamXP 3.72.440/4.05.280 Beta - '/pocketpc?camnum' Arbitrary Memory Disclosure 1 WEB Luigi Auriemma
2008-02-18   WordPress Plugin wp-people 2.0 - 'wp-people-popup.php' SQL Injection 1 WEB S@BUN
2008-02-18   ProjectPier 0.8 - Multiple HTML Injection / Cross-Site Scripting Vulnerabilities 1 WEB L4teral
2008-02-18   WordPress Plugin Recipes Blog - 'id' SQL Injection 1 WEB S@BUN
2008-02-18   Yellow Swordfish Simple Forum 1.x - 'sf-profile.php' SQL Injection 1 WEB S@BUN
2008-02-18   Joomla! / Mambo Component com_detail - 'id' SQL Injection 1 WEB S@BUN
2008-02-18   RunCMS 1.6.1 - 'admin.php' Cross-Site Scripting 2 WEB NBBN
2008-02-19   Joomla! / Mambo Component com_profile - 'oid' SQL Injection 1 WEB S@BUN
2014-01-27   Ability Mail Server 2013 -Persistent Cross-Site Scripting / Cross-Site Request Forgery (Password Res 1 WEB David Um
2008-02-16   BanPro Dms 1.0 - 'index.php' Local File Inclusion 1 WEB muuratsalo
2008-02-15   Joomla! / Mambo Component com_scheduling - 'id' SQL Injection 1 WEB S@BUN
2008-02-16   Joomla! / Mambo Component Filebase - 'filecatid' SQL Injection 1 WEB S@BUN
2008-02-16   Joomla! / Mambo Component com_lexikon - 'id' SQL Injection 1 WEB S@BUN
2008-02-15   Joomla! / Mambo Component com_salesrep - 'rid' SQL Injection 1 WEB S@BUN
2008-02-15   Yellow Swordfish Simple Forum 1.x - 'topic' SQL Injection 1 WEB S@BUN
2008-02-15   Yellow Swordfish Simple Forum 1.7/1.9 - 'index.php' SQL Injection 1 WEB S@BUN
2008-02-15   Yellow Swordfish Simple Forum 1.10/1.11 - 'topic' SQL Injection 1 WEB S@BUN
2008-02-15   Joomla! / Mambo Component faq - 'catid' SQL Injection 1 WEB S@BUN
2008-02-15   Joomla! / Mambo Component com_sg - 'pid' SQL Injection 1 WEB S@BUN
2008-02-15   Joomla! / Mambo Component com_activities - 'id' SQL Injection 1 WEB S@BUN
2008-02-15   Joomla! / Mambo Component com_smslist - 'listid' SQL Injection 1 WEB S@BUN
2008-02-14   PlutoStatus Locator 1.0pre alpha - 'index.php' Local File Inclusion 1 WEB muuratsalo
2008-02-14   artmedic webdesign weblog - Multiple Local File Inclusions 1 WEB muuratsalo
2008-02-15   Dokeos 1.8.4 - '/main/create_course/add_course.php?tutor_name' SQL Injection 1 WEB Alexandr Polyakov
2008-02-15   Dokeos 1.8.4 - '/main/mySpace/index.php?tracking_list_coaches_column' SQL Injection 1 WEB Alexandr Polyakov
2008-02-15   Dokeos 1.8.4 - '/main/admin/session_list.php?cmessage' Cross-Site Scripting 1 WEB Alexandr Polyakov
2008-02-15   Dokeos 1.8.4 - '/main/admin/course_category.php?category' Cross-Site Scripting 1 WEB Alexandr Polyakov
2008-02-15   Dokeos 1.8.4 - '/main/calendar/myagenda.php?courseCode' Cross-Site Scripting 0 WEB Alexandr Polyakov
2008-02-15   Dokeos 1.8.4 - 'main/inc/lib/events.lib.inc.php' Referer HTTP Header SQL Injection 1 WEB Alexandr Polyakov
2008-02-15   Dokeos 1.8.4 - 'whoisonline.php?id' SQL Injection 1 WEB Alexandr Polyakov
2008-02-13   Joomla! / Mambo Component com_omnirealestate - 'objid' SQL Injection 1 WEB S@BUN
2008-02-13   Joomla! / Mambo Component com_model - 'objid' SQL Injection 1 WEB S@BUN
2008-02-13   Site2Nite Real Estate Web - 'agentlist.asp' Multiple SQL Injections 2 WEB S@BUN
2008-02-13   Cisco Unified Communications Manager 6.1 - 'key' SQL Injection 1 WEB Nico Leidecker
2014-01-24   Skybluecanvas CMS 1.1 r248-03 - Remote Command Execution 1 WEB Scott Parish
2014-01-24   Franklin Fueling TS-550 evo 2.0.0.6833 - Multiple Vulnerabilities 2 WEB Trustwave's SpiderLabs
2014-01-24   Joomla! Component JV Comment 3.0.2 - 'id' SQL Injection 2 WEB High-Tech Bridge SA
2014-01-24   Joomla! Component Komento 1.7.2 - Persistent Cross-Site Scripting 3 WEB High-Tech Bridge SA
2014-01-24   pChart 2.1.3 - Multiple Vulnerabilities 1 WEB Balazs Makany
2008-02-12   Prince Clan Chess Club 0.8 com_pcchess Component - 'user_id' SQL Injection 2 WEB S@BUN
2008-02-12   okul siteleri 'com_mezun' Component - SQL Injection 2 WEB S@BUN
2008-02-12   Cacti 0.8.7 - '/index.php/sql.php?Login Action login_username' SQL Injection 2 WEB aScii
2008-02-12   Cacti 0.8.7 - 'graph_xport.php?local_graph_id' SQL Injection 2 WEB aScii
2008-02-12   Cacti 0.8.7 - 'tree.php' Multiple SQL Injections 3 WEB aScii
2008-02-12   Cacti 0.8.7 - 'graph_view.php?filter' Cross-Site Scripting 2 WEB aScii
2008-02-12   Cacti 0.8.7 - 'graph.php?view_type' Cross-Site Scripting 2 WEB aScii
2008-02-12   Cacti 0.8.7 - 'graph_view.php?graph_list' SQL Injection 1 WEB aScii
2008-02-12   Joomla! / Mambo Component com_iomezun - 'id' SQL Injection 1 WEB S@BUN
2008-02-12   Counter Strike Portals - 'download' SQL Injection 2 WEB S@BUN
2014-01-23   Adult WebMaster PHP - Password Disclosure 1 WEB vinicius777
2014-01-23   Cells Blog 3.3 - Reflected Cross-Site Scripting / Blind SQLite Injection 2 WEB vinicius777
2014-01-23   Easy POS System - 'login.php' SQL Injection 2 WEB vinicius777
2014-01-23   mySeatXT 0.2134 - SQL Injection 2 WEB vinicius777
2014-01-23   PizzaInn_Project - SQL Injection 2 WEB vinicius777
2014-01-23   Simple E-document 1.31 - Authentication Bypass 2 WEB vinicius777
2014-01-23   godontologico 5 - SQL Injection 2 WEB vinicius777
2014-01-23   iTechClassifieds 3.03.057 - SQL Injection 2 WEB vinicius777
2008-02-11   Joomla! / Mambo Component com_comments 0.5.8.5g - 'id' SQL Injection 2 WEB CheebaHawk215
2008-02-11   Rapid-Source Rapid-Recipe Component - Multiple SQL Injections 2 WEB breaker_unit
2008-02-11   VWar 1.5 - 'calendar.php' SQL Injection 2 WEB Pouya_Server
2008-02-09   PK-Designs PKs Movie Database 3.0.3 - '/index.php' SQL Injection / Cross-Site Scripting 2 WEB Houssamix
2008-02-08   Managed Workplace Service Center 4.x/5.x/6.x - Installation Information Disclosure 2 WEB Brook Powers
2008-02-08   S9Y Serendipity Freetag-plugin 2.95 - 'style' Cross-Site Scripting 2 WEB Alexander Brachmann
2008-02-08   Joovili 2.1 - 'members_help.php' Remote File Inclusion 2 WEB Cr@zy_King
2008-02-08   Calimero.CMS 3.3 - 'id' Cross-Site Scripting 2 WEB Psiczn
2008-02-07   Joomla! / Mambo Component com_sermon 0.2 - 'gid' SQL Injection 2 WEB S@BUN
2008-02-07   MODx 0.9.6 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB Alexandr Polyakov
2008-02-06   Ipswitch WS_FTP Server 6 - '/WSFTPSVR/FTPLogServer/LogViewer.asp' Authentication Bypass 2 WEB Luigi Auriemma
2008-02-06   Pagetool 1.07 - 'search_term' Cross-Site Scripting 2 WEB Phanter-Root
2008-02-06   MyNews 1.6.x - 'hash' Cross-Site Scripting 2 WEB SkyOut
2008-02-04   DevTracker Module For bcoos 1.1.11 and E-xoops 1.0.8 - Multiple Cross-Site Scripting Vulnerabilities 2 WEB Lostmon
2008-02-05   Download Management 1.00 for PHP-Fusion - Multiple Local File Inclusions 2 WEB Psiczn
2008-02-04   Portail Web PHP 2.5.1 - 'login.php' Remote File Inclusion 1 WEB Psiczn
2008-02-04   Portail Web PHP 2.5.1 - 'conf_modules.php' Remote File Inclusion 2 WEB Psiczn
2008-02-04   Portail Web PHP 2.5.1 - 'item.php' Remote File Inclusion 2 WEB Psiczn
2008-02-04   Portail Web PHP 2.5.1 - 'conf-activation.php' Remote File Inclusion 2 WEB Psiczn
2008-02-04   AstroSoft HelpDesk - '/operator/article/article_attachment.asp?Attach_Id' Cross-Site Scripting 2 WEB Alexandr Polyakov
2008-02-04   AstroSoft HelpDesk - '/operator/article/article_search_results.asp?txtSearch' Cross-Site Scripting 2 WEB Alexandr Polyakov
2008-02-04   HispaH YouTube Clone - 'load_message.php' Cross-Site Scripting 2 WEB Smasher
2008-02-04   Codice CMS - 'login.php' SQL Injection 2 WEB Psiczn
2008-02-04   Simple OS CMS 0.1c_beta - 'login.php' SQL Injection 2 WEB Psiczn
2008-02-04   CruxCMS 3.0 - 'search.php' Cross-Site Scripting 2 WEB Psiczn
2008-02-03   WordPress Plugin ShiftThis NewsLetter - SQL Injection 4 WEB S@BUN
2008-02-02   ITechClassifieds - 'viewcat.php?CatID' Cross-Site Scripting 2 WEB Crackers_Child
2008-02-02   ITechClassifieds - 'viewcat.php?CatID' SQL Injection 3 WEB Crackers_Child
2008-02-02   WordPress Plugin WP-Footnotes 2.2 - Multiple Remote Vulnerabilities 2 WEB NBBN
2008-02-02   Domain Trader 2.0 - 'catalog.php' Cross-Site Scripting 2 WEB Crackers_Child
2014-01-20   BLUE COM Router 5360/52018 - Password Reset 2 WEB KAI
2014-01-20   Teracom Modem T2-B-Gawv1.4U10Y-BI - Persistent Cross-Site Scripting 1 WEB Rakesh S
2014-01-20   AfterLogic Pro and Lite 7.1.1.1 - Persistent Cross-Site Scripting 1 WEB Saeed reza Zamanian
2014-01-20   Doodle4Gift - Multiple Vulnerabilities 1 WEB Dr.NaNo
2008-02-01   Archimede Net 2000 - 'E-Guest_show.php' SQL Injection 1 WEB Sw33t h4cK3r
2008-01-31   Nilson's Blogger 0.11 - 'comments.php' Local File Inclusion 1 WEB muuratsalo
2008-01-31   Liferay Enterprise Portal 4.3.6 - User-Agent HTTP Header Cross-Site Scripting 1 WEB Tomasz Kuczynski
2007-10-10   OpenBSD 4.1 - bgplg 'cmd' Cross-Site Scripting 1 WEB Anton Karpov
2008-01-30   YeSiL KoRiDoR Ziyaretçi Defteri - 'index.php' SQL Injection 1 WEB ShaFuck31
2008-01-30   webSPELL 4.1.2 - 'whoisonline.php' Cross-Site Scripting 3 WEB NBBN
2008-01-30   Joomla! / Mambo Component com_buslicense - 'aid' SQL Injection 1 WEB S@BUN
2008-01-29   AmpJuke 0.7 - 'index.php' Cross-Site Scripting 1 WEB ShaFuck31
2008-01-20   Nucleus CMS 3.22 - 'action.php' Cross-Site Scripting 1 WEB Alexandr Polyakov
2008-01-29   SunGard Banner Student 7.3 - 'add1' Cross-Site Scripting 1 WEB Brendan M. Hickey
2008-01-28   VB Marketing - 'tseekdir.cgi' Local File Inclusion 1 WEB Sw33t h4cK3r
2008-01-28   ASPired2Protect Login Page - SQL Injection 1 WEB T_L_O_T_D
2008-01-28   eTicket 1.5.6-RC4 - 'index.php' Cross-Site Scripting 1 WEB jekil
2008-01-28   Mambo Module MOStlyCE 2.4 Image Manager Utility - Arbitrary File Upload 0 WEB AmnPardaz
2008-01-28   ClanSphere 2007.4.4 - 'install.php' Local File Inclusion 1 WEB p4imi0
2008-01-28   Mambo Module MOStlyCE 2.4 - 'connector.php' Cross-Site Scripting 1 WEB AmnPardaz
2008-01-26   F5 BIG-IP Application Security Manager 9.4.3 - 'report_type' Cross-Site Scripting 1 WEB nnposter
2008-01-25   WebCalendar 1.1.6 - 'search.php' Cross-Site Scripting 1 WEB Omer Singer
2008-01-25   WebCalendar 1.1.6 - 'pref.php' Cross-Site Scripting 1 WEB Omer Singer
2008-01-25   Fonality trixbox 2.4.2 - Cross-Site Scripting (2) 1 WEB Omer Singer
2008-01-25   Fonality trixbox 2.4.2 - Cross-Site Scripting (1) 0 WEB Omer Singer
2008-01-25   E-Smart Cart - 'Members Login' Multiple SQL Injection Vulnerabilities 2 WEB milad_sa2007
2008-01-25   Pre Hotel and Resorts - 'user_login.asp' Multiple SQL Injection Vulnerabilities 1 WEB milad_sa2007
2008-01-23   Web Wiz (Multiple Products) - Remote Information Disclosure 0 WEB AmnPardaz
2008-01-22   DeluxeBB 1.1 - 'attachments_header.php' Cross-Site Scripting 1 WEB NBBN
2008-01-22   PacerCMS 0.6 - 'id' Multiple SQL Injections 1 WEB RawSecurity.org
2008-01-21   Small Axe Weblog 0.3.1 - 'ffile' Remote File Inclusion 1 WEB anonymous
2008-01-21   Singapore 0.10.1 Modern Template - 'gallery' Cross-Site Scripting 2 WEB trew
2008-01-21   Alice Gate2 Plus Wi-Fi Router - Cross-Site Request Forgery 1 WEB WarGame
2008-01-21   MegaBBS 1.5.14b - 'upload.asp' Cross-Site Scripting 1 WEB Doz
2008-01-20   BloofoxCMS 0.3 - Multiple Input Validation Vulnerabilities 1 WEB AmnPardaz