Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2007-02-16   Ezboo Webstats 3.03 - Administrative Authentication Bypass 24 WEB sn0oPy
2007-02-16   Meganoide's News 1.1.1 - 'Include.php' Remote File Inclusion 24 WEB KaRTaL
2007-02-16   CedStat 1.31 - 'index.php?hier' Cross-Site Scripting 24 WEB sn0oPy
2007-02-15   Calendar Express - 'search.php' Cross-Site Scripting 22 WEB BL4CK
2007-02-15   Deskpro 1.1 - 'faq.php' Cross-Site Scripting 26 WEB BLacK ZeRo
2007-02-15   ibProArcade 2.5.9+ - 'Arcade.php' SQL Injection 23 WEB sp00k
2007-02-14   WebTester 5.0.20060927 - 'typeID' SQL Injection 19 WEB Moran Zavdi
2007-02-13   Fullaspsite ASP Hosting Site - 'listmain.asp?cat' SQL Injection 23 WEB ShaFuck31
2007-02-13   Fullaspsite ASP Hosting Site - 'listmain.asp?cat' Cross-Site Scripting 24 WEB ShaFuck31
2007-02-13   TaskFreak! 0.5.5 - 'error.php' Cross-Site Scripting 21 WEB Spiked
2007-02-12   WordPress Core 1.x/2.0.x - 'Templates.php' Cross-Site Scripting 25 WEB PsychoGun
2007-02-12   Community Server - 'SearchResults.aspx' Cross-Site Scripting 23 WEB BL4CK
2007-02-12   EWay 4 - Default.APSX Cross-Site Scripting 22 WEB BLacK ZeRo
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - '/tagmin/wordfilter.php?Admin' Remote File Inclusion 21 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - '/tagmin/updatefilter.php?Admin' Remote File Inclusion 26 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - '/tagmin/updateconf.php?Admin' Remote File Inclusion 22 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - '/tagmin/readconf.php?Admin' Remote File Inclusion 25 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - '/tagmin/index.php?adminpath' Remote File Inclusion 23 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - '/tagmin/verify.php?configpath' Remote File Inclusion 23 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - '/tagmin/manageTagmins.php?configpath' Remote File Inclusion 24 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - '/tagmin/editTag.php?configpath' Remote File Inclusion 23 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - '/tagmin/editTagmin.php?configpath' Remote File Inclusion 23 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - '/tagmin/delTag.php?configpath' Remote File Inclusion 25 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - '/tagmin/delTagmin.php?configpath' Remote File Inclusion 24 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - '/tagmin/ban_watch.php?configpath' Remote File Inclusion 25 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - '/tagmin/addTagmin.php?configpath' Remote File Inclusion 23 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - '/CONFIG/errmsg.inc.php?configpath' Remote File Inclusion 26 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - 'tag_process.php' Multiple Remote File Inclusions 29 WEB K-159
2007-02-12   Tagit! Tagit2b 2.1.B Build 2 - 'tagviewer.php' Multiple Remote File Inclusions 27 WEB K-159
2007-02-09   Atlassian JIRA 3.7.3 - BrowseProject.JSPA Cross-Site Scripting 30 WEB BL4CK
2007-02-09   eXtreme File Hosting - Arbitrary '.RAR' File Upload 22 WEB hamed bazargani
2007-02-08   cPanel 11 - PassWDMySQL Cross-Site Scripting 26 WEB s3rv3r_hack3r
2007-02-07   SYSCP 1.2.15 - System Control Panel CronJob Arbitrary Code Execution 23 WEB Daniel Schulte
2013-11-13   TOSHIBA e-Studio 232/233/282/283 - Cross-Site Request Forgery (Change Admin Password) 25 WEB Hubert Gradek
2007-02-06   MySQLNewsEngine - 'Affichearticles.php3' Remote File Inclusion 26 WEB Blaster
2007-02-05   Coppermine Photo Gallery 1.4.10 - Multiple Local/Remote File Inclusions 22 WEB anonymous
2007-02-05   Adobe ColdFusion 6/7 - User_Agent Error Page Cross-Site Scripting 23 WEB digi7al64
2007-02-03   PortailPHP 2 - '/mod_search/index.php?chemin' Remote File Inclusion 26 WEB laurent gaffie
2007-02-03   PortailPHP 2 - '/mod_news/goodies.php?chemin' Remote File Inclusion 27 WEB laurent gaffie
2007-02-03   PortailPHP 2 - '/mod_news/index.php?chemin' Remote File Inclusion 25 WEB laurent gaffie
2007-02-03   PortailPHP 2 - '/mod_news/goodies.php?chemin' Traversal Arbitrary File Access 28 WEB laurent gaffie
2007-02-03   PortailPHP 2 - '/mod_news/index.php?chemin' Traversal Arbitrary File Access 29 WEB laurent gaffie
2007-02-02   Uebimiau 2.7.10 - 'index.php' Cross-Site Scripting 30 WEB Doz
2007-02-02   PHPProbid 5.24 - 'Lang.php' Remote File Inclusion 29 WEB Hasadya Raed
2007-02-02   EasyMoblog 0.5.1 - Multiple Input Validation Vulnerabilities 26 WEB Tal Argoni
2007-01-31   OpenEMR 2.8.2 - 'Login_Frame.php' Cross-Site Scripting 22 WEB Michael Melewski
2007-01-31   OpenEMR 2.8.2 - 'Import_XML.php' Remote File Inclusion 26 WEB trzindan
2013-11-12   Juniper Junos J-Web - Privilege Escalation 25 WEB Sense of Security
2007-01-30   EncapsCMS 0.3.6 - 'common_foot.php' Remote File Inclusion 27 WEB Tr_ZiNDaN
2007-01-27   MDPro 1.0.76 - 'index.php' SQL Injection 26 WEB adexior
2007-01-27   SpoonLabs Vivvo Article Management CMS 3.40 - 'Show_Webfeed.php' SQL Injection 21 WEB St[at]rExT
2007-01-27   AdMentor - Admin Login SQL Injection 25 WEB Cr@zy_King
2007-01-26   FD Script 1.3.x - 'FName' Information Disclosure 23 WEB ajann
2007-01-26   PHP Membership Manager 1.5 - 'admin.php' Cross-Site Scripting 29 WEB Doz
2013-11-10   WordPress Theme Highlight Premium - Cross-Site Request Forgery / Arbitrary File Upload 25 WEB DevilScreaM
2007-01-24   WordPress Core 1.x/2.0.x - Pingback SourceURI Denial of Service / Information Disclosure 28 WEB Blake Matheny
2007-01-24   Virtual Host Administrator 0.1 - Modules_Dir Remote File Inclusion 22 WEB Dr Max Virus
2013-11-08   Horde Groupware Web Mail Edition 5.1.2 - Cross-Site Request Forgery (2) 26 WEB Marcela Benetrix
2013-11-08   Sagemcom F@st 3184 2.1.11 - Multiple Vulnerabilities 25 WEB Oz Elisyan
2013-11-08   Project'Or RIA 3.4.0 - 'objectDetail.php?objectId' SQL Injection 25 WEB Vicente Aguilera Diaz
2013-11-08   Vivotek IP Cameras - RTSP Authentication Bypass 24 WEB Core Security
2013-11-08   Flatpress 1.0 - Remote Code Execution 27 WEB Wireghoul
2013-11-08   appRain 3.0.2 - Blind SQL Injection 25 WEB High-Tech Bridge SA
2013-11-08   Vanilla Forums 2.0 < 2.0.18.5 - 'class.utilitycontroller.php' PHP Object Injection 30 WEB EgiX
2007-01-23   Vote! Pro 4.0 - Multiple PHP Code Execution Vulnerabilities 24 WEB r0ut3r
2007-01-22   212Cafe Guestbook 4.00 - 'show.php' Cross-Site Scripting 25 WEB Linux_Drox
2007-01-22   Bitweaver 1.3.1 Articles and Blogs - Multiple Cross-Site Scripting Vulnerabilities 28 WEB CorryL
2007-01-22   212Cafe Board 0.08 Beta / 6.30 Beta - Multiple Cross-Site Scripting Vulnerabilities 26 WEB Linux_Drox
2007-01-22   Unique Ads - 'Banner.php' SQL Injection 26 WEB Linux_Drox
2013-11-08   RASPcalendar 1.01 (ASP) - Admin Login 25 WEB Hackeri-AL UAH-Crew
2007-01-20   SMF 1.1 - 'index.php' HTML Injection 24 WEB Aria-Security Team
2007-01-20   Easebay Resources Login Manager - Multiple Input Validation Vulnerabilities 24 WEB Doz
2007-01-20   Easebay Resources Paypal Subscription - Manager Multiple Input Validation Vulnerabilities 20 WEB Doz
2007-01-17   MyBloggie 2.1.5 - 'login.php' Cross-Site Scripting 23 WEB CorryL
2007-01-17   MyBloggie 2.1.5 - 'index.php' Cross-Site Scripting 23 WEB CorryL
2007-01-16   Indexu 5.0/5.3 - 'login.php?Error_msg' Cross-Site Scripting 22 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'mailing_list.php' Multiple Cross-Site Scripting Vulnerabilities 23 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'new.php' Multiple Cross-Site Scripting Vulnerabilities 23 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'power_search.php' Multiple Cross-Site Scripting Vulnerabilities 26 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'register.php' Multiple Cross-Site Scripting Vulnerabilities 26 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'search.php?keyword' Cross-Site Scripting 23 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'send_pwd.php' Multiple Cross-Site Scripting Vulnerabilities 21 WEB SwEET-DeViL
2013-11-07   WordPress Theme Kernel - Arbitrary File Upload 22 WEB link_satisi
2007-01-16   Indexu 5.0/5.3 - 'Sendmail.php' Multiple Cross-Site Scripting Vulnerabilities 23 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'tell_friend.php' Multiple Cross-Site Scripting Vulnerabilities 27 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'user_detail.php?u' Cross-Site Scripting 22 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'suggest_category.php?Error_msg' Cross-Site Scripting 22 WEB SwEET-DeViL
2007-01-16   Indexu 5.0/5.3 - 'upgrade.php?gateway' Cross-Site Scripting 23 WEB SwEET-DeViL
2013-11-07   Microweber 0.905 - Error-Based SQL Injection 22 WEB Zy0d0x
2007-01-16   Scriptme SmE 1.21 - File Mailer Login SQL Injection 21 WEB CorryL
2007-01-16   DT_Guestbook 1.0 - 'index.php' Cross-Site Scripting 23 WEB Jesper Jurcenoks
2007-01-15   Jax Petition 3.06 Book - 'smileys.php?languagepack' Local File Inclusion 24 WEB ilker Kandemir
2007-01-15   Jax Petition Book 3.06 - 'jax_petitionbook.php?languagepack' Local File Inclusion 22 WEB ilker Kandemir
2007-01-15   Liens_Dynamiques 2.1 - Multiple Cross-Site Scripting Vulnerabilities 23 WEB sn0oPy
2007-01-15   Liens_Dynamiques 2.1 - 'AdminLien.php' Security Restriction Bypass 22 WEB sn0oPy
2007-01-15   InstantASP 4.1 - 'Members1.aspx' Multiple Cross-Site Scripting Vulnerabilities 24 WEB Doz
2007-01-15   InstantASP 4.1 - 'Logon.aspx?sessionid' Cross-Site Scripting 23 WEB Doz
2007-01-13   PHP-Nuke 7.x - 'Block-Old_Articles.php' SQL Injection 24 WEB Paisterist
2007-01-12   All In One Control Panel 1.3.x - 'cp_downloads.php?did' SQL Injection 24 WEB Coloss
2007-01-12   Ezboxx 0.7.6 Beta - Multiple Input Validation Vulnerabilities 22 WEB Doron P
2007-01-11   phpBB 2.0.21 - 'privmsg.php' HTML Injection 31 WEB Demential
2007-01-09   Edit-X - 'Edit_Address.php' Remote File Inclusion 25 WEB IbnuSina
2007-01-07   Easy Banner Pro 2.8 - 'info.php' Remote File Inclusion 23 WEB rUnViRuS
2013-11-04   Apache Tomcat 5.5.25 - Cross-Site Request Forgery 32 WEB Ivano Binetti
2007-01-09   Magic Photo Storage Website - '/user/user_membership_password.php?_config[site_path]' Remote File In 23 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/user_extend.php?_config[site_path]' Remote File Inclusion 22 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/user_email.php?_config[site_path]' Remote File Inclusion 25 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/user_catelog_password.php?_config[site_path]' Remote File Inclu 34 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/upload_photo.php?_config[site_path]' Remote File Inclusion 27 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/register.php?_config[site_path]' Remote File Inclusion 24 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/logout.php?_config[site_path]' Remote File Inclusion 24 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/login.php?_config[site_path]' Remote File Inclusion 25 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/index.php?_config[site_path]' Remote File Inclusion 26 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/delete_category.php?_config[site_path]' Remote File Inclusion 26 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/couple_profile.php?_config[site_path]' Remote File Inclusion 25 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/couple_milestone.php?_config[site_path]' Remote File Inclusion 27 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/change_catalog_template.php?_config[site_path]' Remote File Inc 25 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/add_news.php?_config[site_path]' Remote File Inclusion 26 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/user/add_category.php?_config[site_path]' Remote File Inclusion 26 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/include/db_config.php?_config[site_path]' Remote File Inclusion 26 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/include/config.php?_config[site_path]' Remote File Inclusion 27 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/send_email.php?_config[site_path]' Remote File Inclusion 25 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/membership_pricing.php?_config[site_path]' Remote File Inclusi 27 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/list_members.php?_config[site_path]' Remote File Inclusion 27 WEB IbnuSina
2007-01-09   Magic Photo Storage Website - '/admin/index.php?_config[site_path]' Remote File Inclusion 25 WEB IbnuSina