Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2006-10-12   FreeWPS 2.11 - 'upload.php' Remote Command Execution 8 WEB HACKERS PAL
2006-10-12   4Images 1.7 - 'details.php' Cross-Site Scripting 8 WEB Christian Marthen
2006-10-12   MamboLaiThai ExtCalThai 0.9.1 - 'mail.inc.php?CONFIG_EXT[LIB_DIR]' Remote File Inclusion 8 WEB k1tk4t
2006-10-12   MamboLaiThai ExtCalThai 0.9.1 - 'admin_events.php?CONFIG_EXT[LANGUAGES_DIR]' Remote File Inclusion 9 WEB k1tk4t
2006-10-12   PHP TopSites FREE 1.022b - 'config.php' Remote File Inclusion 8 WEB Le CoPrA
2006-10-12   phpList 2.x - Public Pages MultipleCross-Site Scripting Vulnerabilities 8 WEB Michiel Dethmers
2006-10-11   Dokeos 1.6.4 - Multiple Remote File Inclusions Vulnerabilities 8 WEB viper-haCker
2006-10-11   CommunityPortals 1.0 - 'bug.php' Remote File Inclusion 9 WEB Nima Salehi
2006-10-11   Gcards 1.13 - 'Addnews.php' Remote File Inclusion 10 WEB DeatH VirUs
2006-10-10   MySQLDumper 1.21 - 'sql.php' Cross-Site Scripting 9 WEB Crackers_Child
2006-10-10   Tagit2b - 'DelTagUser.php' Remote File Inclusion 8 WEB k1tk4t
2006-10-10   BlueShoes Framework 4.6 - 'GoogleSearch.php' Remote File Inclusion 9 WEB k1tk4t
2006-10-10   Softerra PHP Developer Library 1.5.3 - 'Grid3.lib.php' Remote File Inclusion 9 WEB k1tk4t
2006-10-10   Album Photo Sans Nom 1.6 - 'Getimg.php' Remote File Inclusion 9 WEB DarkFig
2006-10-16   ironwebmail 6.1.1 - Directory Traversal Information Disclosure 9 WEB Derek Callaway
2006-10-10   Hastymail 1.x - IMAP SMTP Command Injection 9 WEB Vicente Aguilera Diaz
2006-10-09   EXPBlog 0.3.5 - Multiple Cross-Site Scripting Vulnerabilities 8 WEB Tamriel
2006-10-09   phpWebSite 0.10.2 - 'PHPWS_SOURCE_DIR' Multiple Remote File Inclusions 9 WEB Crackers_Child
2006-10-09   Deep CMS 2.0 - 'index.php' Remote File Inclusion 9 WEB Crackers_Child
2006-10-09   ISearch 2.16 - 'ISEARCH_PATH' Remote File Inclusion 9 WEB MoHaNdKo
2006-10-08   PHP Polling Creator 1.03 - 'functions.inc.php' Remote File Inclusion 9 WEB ThE-WoLf-KsA
2006-10-08   Moodle Blog 1.18.2.2/1.6.2 Module - SQL Injection 8 WEB disfigure
2006-09-27   Interspire FastFind - 'index.php' Cross-Site Scripting 9 WEB MizoZ
2006-10-06   Emek Portal 2.1 - 'Uyegiris.asp' SQL Injection 8 WEB Dj ReMix
2006-10-06   AckerTodo 4.2 - 'login.php' Multiple SQL Injections 8 WEB Francesco Laurita
2006-10-05   Civica - 'Display.asp' SQL Injection 8 WEB CodeXpLoder'tq
2006-10-05   WikyBlog 1.2.x - 'index.php' Remote File Inclusion 8 WEB MoHaNdKo
2006-10-04   osCommerce 2.2 - '/admin/zones.php?page' Cross-Site Scripting 8 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/tax_rates.php?page' Cross-Site Scripting 9 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/tax_classes.php?page' Cross-Site Scripting 9 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/stats_products_viewed.php?page' Cross-Site Scripting 8 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/stats_products_purchased.php?page' Cross-Site Scripting 8 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/specials.php?page' Cross-Site Scripting 7 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/reviews.php?page' Cross-Site Scripting 8 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/products_expected.php?page' Cross-Site Scripting 8 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/products_attributes.php?page' Cross-Site Scripting 8 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/orders_status.php?page' Cross-Site Scripting 9 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/newsletters.php?page' Cross-Site Scripting 9 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/manufacturers.php?page' Cross-Site Scripting 8 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/languages.php?page' Cross-Site Scripting 8 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/currencies.php?page' Cross-Site Scripting 8 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/countries.php?page' Cross-Site Scripting 9 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/banner_statistics.php?page' Cross-Site Scripting 8 WEB Lostmon
2006-10-04   osCommerce 2.2 - '/admin/banner_manager.php?page' Cross-Site Scripting 8 WEB Lostmon
2006-10-27   ASPPlayGround.NET Forum 2.4.5 - 'Calendar.asp' Cross-Site Scripting 9 WEB MizoZ
2006-10-04   Yener Haber Script 1.0/2.0 - SQL Injection 9 WEB Dj_ReMix
2006-10-03   HAMweather 3.9.8 - 'template.php' Script Code Injection 8 WEB GulfTech Security
2006-10-02   Digishop 4.0 - 'cart.php' Cross-Site Scripting 9 WEB meto5757
2006-10-02   PHP Web Scripts Easy Banner - 'functions.php' Remote File Inclusion 8 WEB abu ahmed
2006-10-02   DeluxeBB 1.09 - 'Sig.php' Remote File Inclusion 8 WEB r0ut3r
2006-09-30   Yblog - 'uss.php' Cross-Site Scripting 8 WEB You_You
2006-09-30   Yblog - 'tem.php' Cross-Site Scripting 8 WEB You_You
2006-09-30   Yblog - 'funk.php' Cross-Site Scripting 9 WEB You_You
2006-09-29   OlateDownload 3.4 - 'search.php?query' SQL Injection 8 WEB Hessam-x
2006-09-29   OlateDownload 3.4 - 'details.php?page' SQL Injection 9 WEB Hessam-x
2006-09-30   phpBB XS 0.58 - Multiple Remote File Inclusions 8 WEB xoron
2006-09-29   Geotarget - 'script.php' Remote File Inclusion 9 WEB RaVeR shi mozi
2006-09-28   Les Visiteurs 2.0 - Multiple Remote File Inclusions 9 WEB D_7J
2013-10-04   Aanval 7.1 build 70151 - Multiple Vulnerabilities 8 WEB xistence
2006-09-22   Red Mombin 0.7 - 'process_login.php' Cross-Site Scripting 8 WEB Armorize Technologies
2006-09-22   Red Mombin 0.7 - 'index.php' Cross-Site Scripting 9 WEB Armorize Technologies
2006-09-27   Web//News 1.4 - 'parser.php' Remote File Inclusion (2) 9 WEB ThE-WoLf-KsA
2006-09-27   Joomla! Component VirtueMart Joomla! eCommerce Edition 1.0.11 - Multiple Input Validation Vulnerabil 9 WEB Adrian Castro
2006-09-27   MKPortal 1.0/1.1 - 'PMPopup.php' Cross-Site Scripting 8 WEB HanowarS
2006-09-27   PHPSelect Web Development - 'index.php3' Remote File Inclusion 9 WEB rUnViRuS
2013-10-04   CMS Formulasi 2.07 - Multiple Vulnerabilities 9 WEB Sarahma Security
2006-09-26   PHP Invoice 2.2 - 'home.php' Cross-Site Scripting 9 WEB meto5757
2013-10-04   FlashChat 6.0.2 < 6.0.8 - Arbitrary File Upload 8 WEB x-hayben21
2013-10-04   elproLOG MONITOR Webaccess 2.1 - Multiple Vulnerabilities 9 WEB Vulnerability-Lab
2006-09-26   CubeCart 3.0.x - 'footer.inc.php?la_pow_by' Cross-Site Scripting 8 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - '/admin/header.inc.php' Multiple Cross-Site Scripting Vulnerabilities 10 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - '/admin/image.php?image' Cross-Site Scripting 8 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - '/admin/nav.php' Multiple Cross-Site Scripting Vulnerabilities 8 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - 'view_order.php?order_id' Cross-Site Scripting 8 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - '/admin/print_order.php?order_id' Cross-Site Scripting 8 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - '/admin/print_order.php?order_id' SQL Injection 8 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - 'view_doc.php?view_doc' SQL Injection 8 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - 'view_order.php?order_id' SQL Injection 8 WEB HACKERS PAL
2006-09-26   CubeCart 3.0.x - '/admin/forgot_pass.php?user_name' SQL Injection 7 WEB HACKERS PAL
2006-09-26   vBulletin 2.3.x - 'global.php' SQL Injection 7 WEB HACKERS PAL
2006-09-26   Phoenix Evolution CMS - '/modules/pageedit/index.php?pageid' Cross-Site Scripting 9 WEB Root3r_H3ll
2006-09-26   Phoenix Evolution CMS - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 7 WEB Root3r_H3ll
2006-09-25   Quickblogger 1.4 - Remote File Inclusion 8 WEB You_You
2006-09-25   PHP_news 2.0 - 'creat_news_all.php?language' Remote File Inclusion 8 WEB Root3r_H3ll
2006-09-25   PHP_news 2.0 - '/admin/catagory.php?language' Remote File Inclusion 10 WEB Root3r_H3ll
2006-09-25   PHP_news 2.0 - '/admin/news.php?language' Remote File Inclusion 8 WEB Root3r_H3ll
2006-09-25   PHP_news 2.0 - 'user_user.php?language' Remote File Inclusion 8 WEB Root3r_H3ll
2006-09-25   My-BIC 0.6.5 - 'Mybic_Server.php' Remote File Inclusion 9 WEB Root3r_H3ll
2013-10-02   GLPI 0.84.1 - Multiple Vulnerabilities 9 WEB High-Tech Bridge SA
2013-10-02   Gnew 2013.1 - Multiple Vulnerabilities (2) 9 WEB High-Tech Bridge SA
2006-09-25   Back-End CMS 0.4.5 - 'search.php?includes_path' Remote File Inclusion 8 WEB Root3r_H3ll
2006-09-25   Back-End CMS 0.4.5 - 'Facts.php?includes_path' Remote File Inclusion 9 WEB Root3r_H3ll
2006-09-25   Back-End CMS 0.4.5 - '/admin/index.php?includes_path' Remote File Inclusion 8 WEB Root3r_H3ll
2006-09-25   Exporia 0.3 - 'Common.php' Remote File Inclusion 8 WEB Root3r_H3ll
2006-09-25   BBSNew 2.0.1 - 'index2.php' Remote File Inclusion 8 WEB Root3r_H3ll
2006-09-25   DanPHPSupport 0.5 - 'admin.php?do' Cross-Site Scripting 9 WEB You_You
2006-09-25   DanPHPSupport 0.5 - 'index.php?page' Cross-Site Scripting 8 WEB You_You
2006-09-25   BirdBlog 1.x - 'user.php?uid' Cross-Site Scripting 9 WEB Root3r_H3ll
2006-09-25   BirdBlog 1.x - 'index.php?page' Cross-Site Scripting 8 WEB Root3r_H3ll
2006-09-25   BirdBlog 1.x - 'comment.php?entryid' Cross-Site Scripting 9 WEB Root3r_H3ll
2006-09-25   WWWThreads 5.4 - 'Cat' Multiple Cross-Site Scripting Vulnerabilities 8 WEB Root3r_H3ll
2006-09-25   Opial AV Download Management 1.0 - 'index.php' Cross-Site Scripting 8 WEB meto5757
2006-09-25   Photostore - 'view_photog.php?photogid' Cross-Site Scripting 8 WEB meto5757
2006-09-25   Photostore - 'details.php?gid' Cross-Site Scripting 8 WEB meto5757
2006-09-24   ToendaCMS 1.0.4 - 'Media.php' Directory Traversal 9 WEB MoHaJaLi
2006-09-24   cPanel 5-10 - SUID Wrapper Privilege Escalation 9 WEB Nima Salehi
2006-09-24   Jamroom 3.0.16 - 'login.php' Cross-Site Scripting 9 WEB meto5757
2006-09-23   MyPhotos 0.1.3b - 'index.php' Remote File Inclusion 9 WEB Root3r_H3ll
2013-09-30   SimpleRisk 20130915-01 - Multiple Vulnerabilities 9 WEB Ryan Dewhurst
2013-09-30   XAMPP 1.8.1 - 'lang.php?WriteIntoLocalDisk method' Local Write Access 7 WEB Manuel García Cárdenas
2013-09-30   mod_accounting Module 0.5 - Blind SQL Injection 8 WEB Wireghoul
2013-09-30   Asus RT-N66U 3.0.0.4.374_720 - Cross-Site Request Forgery 9 WEB cgcai
2013-09-30   Tenda W309R Router 5.07.46 - Configuration Disclosure 9 WEB SANTHO
2006-09-22   PLESK 7.5/7.6 - 'FileManager.php' Directory Traversal 9 WEB GuanYu
2006-09-22   mysource 2.14.8/2.16 - Multiple Vulnerabilities 8 WEB Patrick Webster
2006-09-22   CakePHP 1.1.7.3363 - 'Vendors.php' Directory Traversal 8 WEB GulfTech Security
2006-09-22   Google Mini Search Appliance 4.4.102.M.36 - Information Disclosure 8 WEB Patrick Webster
2006-09-21   BandSite CMS 1.1 - 'footer.php' Cross-Site Scripting 8 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'signgbook_content.php' Cross-Site Scripting 8 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'shows_content.php' Cross-Site Scripting 9 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'reviews_content.php' Cross-Site Scripting 8 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'releases_content.php' Cross-Site Scripting 8 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'photo_content.php' Cross-Site Scripting 12 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'pastshows_content.php' Cross-Site Scripting 8 WEB HACKERS PAL
2006-09-21   BandSite CMS 1.1 - 'news_content.php' Cross-Site Scripting 8 WEB HACKERS PAL