Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - '/tagmin/ban_watch.php?configpath' Remote File Inclusion 1 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - '/tagmin/addTagmin.php?configpath' Remote File Inclusion 2 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - '/CONFIG/errmsg.inc.php?configpath' Remote File Inclusion 2 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - 'tag_process.php' Multiple Remote File Inclusions 2 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - 'tagviewer.php' Multiple Remote File Inclusions 2 WEB K-159
2007-02-09   Atlassian JIRA 3.7.3 - BrowseProject.JSPA Cross-Site Scripting 2 WEB BL4CK
2007-02-09   eXtreme File Hosting - Arbitrary '.RAR' File Upload 2 WEB hamed bazargani
2007-02-08   cPanel 11 - PassWDMySQL Cross-Site Scripting 2 WEB s3rv3r_hack3r
2007-02-07   SYSCP 1.2.15 - System Control Panel CronJob Arbitrary Code Execution 2 WEB Daniel Schulte
2013-11-13   TOSHIBA e-Studio 232/233/282/283 - Cross-Site Request Forgery (Change Admin Password) 1 WEB Hubert Gradek
2007-02-06   MySQLNewsEngine - 'Affichearticles.php3' Remote File Inclusion 1 WEB Blaster
2007-02-05   Coppermine Photo Gallery 1.4.10 - Multiple Local/Remote File Inclusions 1 WEB anonymous
2007-02-05   Adobe ColdFusion 6/7 - User_Agent Error Page Cross-Site Scripting 1 WEB digi7al64
2007-02-03   PortailPHP 2 - '/mod_search/index.php?chemin' Remote File Inclusion 1 WEB laurent gaffie
2007-02-03   PortailPHP 2 - '/mod_news/goodies.php?chemin' Remote File Inclusion 1 WEB laurent gaffie
2007-02-03   PortailPHP 2 - '/mod_news/index.php?chemin' Remote File Inclusion 1 WEB laurent gaffie
2007-02-03   PortailPHP 2 - '/mod_news/goodies.php?chemin' Traversal Arbitrary File Access 2 WEB laurent gaffie
2007-02-03   PortailPHP 2 - '/mod_news/index.php?chemin' Traversal Arbitrary File Access 2 WEB laurent gaffie
2007-02-02   Uebimiau 2.7.10 - 'index.php' Cross-Site Scripting 2 WEB Doz
2007-02-02   PHPProbid 5.24 - 'Lang.php' Remote File Inclusion 2 WEB Hasadya Raed
2007-02-02   EasyMoblog 0.5.1 - Multiple Input Validation Vulnerabilities 2 WEB Tal Argoni
2007-01-31   OpenEMR 2.8.2 - 'Login_Frame.php' Cross-Site Scripting 1 WEB Michael Melewski
2007-01-31   OpenEMR 2.8.2 - 'Import_XML.php' Remote File Inclusion 1 WEB trzindan
2013-11-12   Juniper Junos J-Web - Privilege Escalation 1 WEB Sense of Security
2007-01-30   EncapsCMS 0.3.6 - 'common_foot.php' Remote File Inclusion 3 WEB Tr_ZiNDaN
2007-01-27   MDPro 1.0.76 - 'index.php' SQL Injection 2 WEB adexior
2007-01-27   SpoonLabs Vivvo Article Management CMS 3.40 - 'Show_Webfeed.php' SQL Injection 1 WEB St[at]rExT
2007-01-27   AdMentor - Admin Login SQL Injection 2 WEB Cr@zy_King
2007-01-26   FD Script 1.3.x - 'FName' Information Disclosure 2 WEB ajann
2007-01-26   PHP Membership Manager 1.5 - 'admin.php' Cross-Site Scripting 2 WEB Doz
2013-11-10   WordPress Theme Highlight Premium - Cross-Site Request Forgery / Arbitrary File Upload 2 WEB DevilScreaM
2007-01-24   WordPress Core 1.x/2.0.x - Pingback SourceURI Denial of Service / Information Disclosure 2 WEB Blake Matheny
2007-01-24   Virtual Host Administrator 0.1 - Modules_Dir Remote File Inclusion 2 WEB Dr Max Virus
2013-11-08   Horde Groupware Web Mail Edition 5.1.2 - Cross-Site Request Forgery (2) 1 WEB Marcela Benetrix
2013-11-08   Sagemcom F@st 3184 2.1.11 - Multiple Vulnerabilities 1 WEB Oz Elisyan
2013-11-08   Project'Or RIA 3.4.0 - 'objectDetail.php?objectId' SQL Injection 1 WEB Vicente Aguilera Diaz
2013-11-08   Vivotek IP Cameras - RTSP Authentication Bypass 1 WEB Core Security
2013-11-08   Flatpress 1.0 - Remote Code Execution 2 WEB Wireghoul
2013-11-08   appRain 3.0.2 - Blind SQL Injection 2 WEB High-Tech Bridge SA
2013-11-08   Vanilla Forums 2.0 < 2.0.18.5 - 'class.utilitycontroller.php' PHP Object Injection 2 WEB EgiX
2007-01-23   Vote! Pro 4.0 - Multiple PHP Code Execution Vulnerabilities 1 WEB r0ut3r
2007-01-22   212Cafe Guestbook 4.00 - 'show.php' Cross-Site Scripting 1 WEB Linux_Drox
2007-01-22   Bitweaver 1.3.1 Articles and Blogs - Multiple Cross-Site Scripting Vulnerabilities 1 WEB CorryL
2007-01-22   212Cafe Board 0.08 Beta / 6.30 Beta - Multiple Cross-Site Scripting Vulnerabilities 1 WEB Linux_Drox
2007-01-22   Unique Ads - 'Banner.php' SQL Injection 1 WEB Linux_Drox
2013-11-08   RASPcalendar 1.01 (ASP) - Admin Login 1 WEB Hackeri-AL UAH-Crew
2007-01-20   SMF 1.1 - 'index.php' HTML Injection 2 WEB Aria-Security Team
2007-01-20   Easebay Resources Login Manager - Multiple Input Validation Vulnerabilities 2 WEB Doz
2007-01-20   Easebay Resources Paypal Subscription - Manager Multiple Input Validation Vulnerabilities 2 WEB Doz
2007-01-17   MyBloggie 2.1.5 - 'login.php' Cross-Site Scripting 2 WEB CorryL
2007-01-17   MyBloggie 2.1.5 - 'index.php' Cross-Site Scripting 2 WEB CorryL
2007-01-16   Indexu 5.0/5.3 - 'login.php?Error_msg' Cross-Site Scripting 2 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'mailing_list.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'new.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'power_search.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'register.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'search.php?keyword' Cross-Site Scripting 2 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'send_pwd.php' Multiple Cross-Site Scripting Vulnerabilities 0 WEB SwEET-DeViL
2013-11-07   WordPress Theme Kernel - Arbitrary File Upload 1 WEB link_satisi
2007-01-16   Indexu 5.0/5.3 - 'Sendmail.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'tell_friend.php' Multiple Cross-Site Scripting Vulnerabilities 1 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'user_detail.php?u' Cross-Site Scripting 1 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'suggest_category.php?Error_msg' Cross-Site Scripting 1 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'upgrade.php?gateway' Cross-Site Scripting 2 WEB SwEET-DeViL
2013-11-07   Microweber 0.905 - Error-Based SQL Injection 2 WEB Zy0d0x
2007-01-16   Scriptme SmE 1.21 - File Mailer Login SQL Injection 2 WEB CorryL
2007-01-16   DT_Guestbook 1.0 - 'index.php' Cross-Site Scripting 2 WEB Jesper Jurcenoks
2007-01-15   Jax Petition 3.06 Book - 'smileys.php?languagepack' Local File Inclusion 2 WEB ilker Kandemir
2007-01-15   Jax Petition Book 3.06 - 'jax_petitionbook.php?languagepack' Local File Inclusion 2 WEB ilker Kandemir
2007-01-15   Liens_Dynamiques 2.1 - Multiple Cross-Site Scripting Vulnerabilities 2 WEB sn0oPy
2007-01-15   Liens_Dynamiques 2.1 - 'AdminLien.php' Security Restriction Bypass 1 WEB sn0oPy
2007-01-15   InstantASP 4.1 - 'Members1.aspx' Multiple Cross-Site Scripting Vulnerabilities 2 WEB Doz
2007-01-15   InstantASP 4.1 - 'Logon.aspx?sessionid' Cross-Site Scripting 2 WEB Doz
2007-01-13   PHP-Nuke 7.x - 'Block-Old_Articles.php' SQL Injection 1 WEB Paisterist
2007-01-12   All In One Control Panel 1.3.x - 'cp_downloads.php?did' SQL Injection 2 WEB Coloss
2007-01-12   Ezboxx 0.7.6 Beta - Multiple Input Validation Vulnerabilities 2 WEB Doron P
2007-01-11   phpBB 2.0.21 - 'privmsg.php' HTML Injection 2 WEB Demential
2007-01-09   Edit-X - 'Edit_Address.php' Remote File Inclusion 2 WEB IbnuSina
2007-01-07   Easy Banner Pro 2.8 - 'info.php' Remote File Inclusion 2 WEB rUnViRuS
2013-11-04   Apache Tomcat 5.5.25 - Cross-Site Request Forgery 2 WEB Ivano Binetti
2007-01-09   Magic Photo Storage Website - '/user/user_membership_password.php?_config[site_path]' Remote File In 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/user_extend.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/user_email.php?_config[site_path]' Remote File Inclusion 1 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/user_catelog_password.php?_config[site_path]' Remote File Inclu 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/upload_photo.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/register.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/logout.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/login.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/index.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/delete_category.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/couple_profile.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/couple_milestone.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/change_catalog_template.php?_config[site_path]' Remote File Inc 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/add_news.php?_config[site_path]' Remote File Inclusion 3 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/add_category.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/include/db_config.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/include/config.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/send_email.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/membership_pricing.php?_config[site_path]' Remote File Inclusi 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/list_members.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/index.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/delete_member.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/approve_member.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/admin_paypal_email.php?_config[site_path]' Remote File Inclusi 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/add_templates.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/admin_email.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/add_welcome_text.php?_config[site_path]' Remote File Inclusion 2 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/admin_password.php?_config[site_path]' Remote File Inclusion 1 WEB IbnuSina
2007-01-09   PHPKit 1.6.1 - 'comment.php' SQL Injection 1 WEB yorn
2007-01-09   MediaWiki 1.x - 'AJAX index.php' Cross-Site Scripting 2 WEB Moshe Ben-Abu
2007-01-08   CreateAuction - 'Cats.asp' SQL Injection 2 WEB IbnuSina
2007-01-06   Shopstorenow E-Commerce Shopping Cart - 'Orange.asp' SQL Injection 2 WEB IbnuSina
2007-01-05   Coppermine Photo Gallery 1.4.11 - SQL Injection 2 WEB DarkFig
2007-01-05   EditTag 1.2 - 'mkpw.cgi?plain' Cross-Site Scripting 2 WEB NetJackal
2007-01-05   EditTag 1.2 - 'mkpw.pl?plain' Cross-Site Scripting 2 WEB NetJackal
2007-01-05   EditTag 1.2 - 'mkpw_mp.cgi?plain' Cross-Site Scripting 2 WEB NetJackal
2007-01-05   EditTag 1.2 - 'edittag_mp.pl?file' Arbitrary File Disclosure 0 WEB NetJackal
2007-01-05   EditTag 1.2 - 'edittag_mp.cgi?file' Arbitrary File Disclosure 1 WEB NetJackal
2007-01-05   EditTag 1.2 - 'edittag.pl?file' Arbitrary File Disclosure 2 WEB NetJackal
2007-01-05   EditTag 1.2 - 'edittag.cgi?file' Arbitrary File Disclosure 3 WEB NetJackal
2013-11-03   Practico 13.9 - Multiple Vulnerabilities 2 WEB LiquidWorm
2007-01-05   Kolayindir Download - 'down.asp' SQL Injection 2 WEB ShaFuck31
2007-01-05   RI Blog 1.3 - 'search.asp' Cross-Site Scripting 2 WEB ShaFuck31
2007-01-02   AShop Deluxe 4.5 - 'salesadmin.php' Cross-Site Scripting 2 WEB Hackers Center Security
2007-01-02   AShop Deluxe 4.5 - 'editcatalogue.php' Cross-Site Scripting 2 WEB Hackers Center Security