Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2006-08-21   Mambo Component Display MOSBot Manager - 'MosConfig_absolute_path' Remote File Inclusion 29 WEB O.U.T.L.A.W
2013-09-20   vTiger CRM 5.4.0 - 'index.php?onlyforuser' SQL Injection 28 WEB High-Tech Bridge SA
2006-08-19   XennoBB 1.0.x/2.2 - Icon_Topic SQL Injection 23 WEB Chris Boulton
2006-08-18   Mambo Component Rssxt 1.0 - 'MosConfig_absolute_path' Multiple Remote File Inclusions 28 WEB Crackers_Child
2006-08-18   Mambo Component LMTG Myhomepage 1.2 - Multiple Remote File Inclusions 26 WEB O.U.T.L.A.W
2006-08-17   Blog:CMS 4.1 - 'Dir_Plugins' Multiple Remote File Inclusions 23 WEB Drago84
2006-08-17   CubeCart 3.0.x - Multiple Input Validation Vulnerabilities 27 WEB rgod
2006-08-16   Mambo Component Reporter 1.0 - 'Reporter.sql.php' Remote File Inclusion 25 WEB Crackers_Child
2006-08-16   Fusionphp Fusion News 3.7 - 'index.php' Remote File Inclusion 22 WEB O.U.T.L.A.W
2013-09-19   AspxCommerce 2.0 - Arbitrary File Upload 26 WEB SANTHO
2006-08-15   Zen Cart Web Shopping Cart 1.3.0.2 - 'autoload_func.php?autoLoadConfig[999][0][loadFile]' Remote Fil 25 WEB GulfTech Security
2006-08-15   Lizge 20 - 'index.php' Multiple Remote File Inclusions 27 WEB Crackers_Child
2006-08-15   PHP-Nuke 2.0 AutoHTML Module - Local File Inclusion 29 WEB MosT3mR
2006-08-14   BlaBla 4U - Multiple Cross-Site Scripting Vulnerabilities 28 WEB Vampire
2006-08-14   WordPress Plugin WP-DB Backup 1.6/1.7 - 'edit.php' Directory Traversal 25 WEB marc & shb
2006-08-10   WEBinsta Mailing List Manager 1.3 - 'Install3.php' Remote File Inclusion 28 WEB Philipp Niedziela
2006-08-10   miniBloggie 1.0 - 'Fname' Remote File Inclusion 27 WEB sh3ll
2013-09-18   WordPress Plugin Complete Gallery Manager 3.3.3 - Arbitrary File Upload 27 WEB Vulnerability-Lab
2006-08-10   Tiny Web Gallery 1.5 - 'Image' Multiple Remote File Inclusions 23 WEB x0r0n
2006-08-10   YaBBSE 1.x - 'index.php' Cross-Site Scripting 26 WEB O.U.T.L.A.W
2006-08-10   Mafia Moblog 6 - 'Big.php' Remote File Inclusion 27 WEB sh3ll
2006-06-02   MyBloggie 2.1.x - 'MyBloggie_Root_Path' Remote File Inclusion 25 WEB sh3ll
2006-08-09   XennoBB 1.0.5/1.0.6/2.1/2.2 - 'profile.php' Directory Traversal 27 WEB Chris Boulton
2006-08-09   CLUB Nuke 2.0 - Multiple SQL Injections 24 WEB ASIANEAGLE
2006-08-09   Simple One File Guestbook 1.0 - Security Bypass 25 WEB omnipresent
2006-08-07   phpPrintAnalyzer 1.1 - 'index.php' Remote File Inclusion 25 WEB sh3ll
2006-08-07   VWar 1.5 - 'stats.php?vwar_root' Remote File Inclusion 26 WEB AG-Spider
2006-08-07   VWar 1.5 - 'news.php?vwar_root' Remote File Inclusion 24 WEB AG-Spider
2006-08-07   VWar 1.5 - 'joinus.php?vwar_root' Remote File Inclusion 24 WEB AG-Spider
2006-08-07   VWar 1.5 - 'challenge.php?vwar_root' Remote File Inclusion 26 WEB AG-Spider
2006-08-07   VWar 1.5 - 'calendar.php?vwar_root' Remote File Inclusion 23 WEB AG-Spider
2006-08-07   VWar 1.5 - 'member.php?vwar_root' Remote File Inclusion 22 WEB AG-Spider
2006-08-07   VWar 1.5 - 'war.php?vwar_root' Remote File Inclusion 23 WEB AG-Spider
2006-08-07   TurnkeyWebTools PHP Simple Shop 2.0 - Multiple Remote File Inclusions 25 WEB Matdhule
2006-08-07   XennoBB 2.1 - 'profile.php' Multiple SQL Injections 22 WEB Chris Boulton
2006-08-05   vBulletin 3.0.14 - 'global.php' Encoded Cross-Site Scripting 23 WEB imei
2006-08-03   PSWD.JS - Insecure Password Hash 28 WEB Gianstefano Monni
2006-08-03   Anychart 3.0 - 'Password' SQL Injection 25 WEB sCORPINo
2013-09-17   Western Digital Arkeia Appliance 10.0.10 - Multiple Vulnerabilities 25 WEB xistence
2013-09-17   OpenEMR 4.1.1 Patch 14 - Multiple Vulnerabilities 25 WEB xistence
2006-08-03   VWar 1.x - 'war.php' Multiple SQL Injections 26 WEB mfoxhacker
2006-08-03   VWar 1.x - 'war.php?page' Cross-Site Scripting 23 WEB mfoxhacker
2006-08-24   BlackBoard Products 6 - Multiple HTML Injection Vulnerabilities 23 WEB proton
2006-08-01   TinyPHPForum 3.6 - 'UpdatePF.php' Authentication Bypass 22 WEB SirDarckCat
2006-08-01   TinyPHPForum 3.6 - 'error.php' Information Disclosure 21 WEB SirDarckCat
2006-08-01   Barracuda Spam Firewall 3.3.x - 'preview_email.cgi?file' Arbitrary File Access 25 WEB Greg Sinclair
2006-08-01   Knusperleicht Guestbook 3.5 - 'GB_PATH' Remote File Inclusion 24 WEB Kurdish Security
2006-08-01   Knusperleicht FAQ 1.0 Script - 'index.php' Remote File Inclusion 25 WEB Kurdish Security
2006-08-01   Knusperleicht Quickie - 'Quick_Path' Remote File Inclusion 24 WEB Kurdish Security
2006-08-01   WoW Roster 1.5 - 'hsList.php?subdir' Remote File Inclusion 24 WEB skulmatic
2006-07-31   TinyPHPForum 3.6 - Multiple Cross-Site Scripting Vulnerabilities (2) 24 WEB SirDarckCat
2006-07-31   Help Center Live 2.1.2 - 'module.php' Directory Traversal 24 WEB Dr.GooGle
2006-07-31   myEvent 1.2/1.3 - 'myevent.php' Remote File Inclusion 28 WEB CeNGiZ-HaN
2006-07-31   Moskool 1.5 Component - 'Admin.Moskool.php' Remote File Inclusion 27 WEB saudi.unix
2006-07-31   Seir Anphin V666 Community Management System - Multiple SQL Injections 25 WEB CR
2006-07-31   Banex PHP MySQL Banner Exchange 2.21 - 'members.php?cfg_root' Remote File Inclusion 23 WEB SirDarckCat
2006-07-31   Banex PHP MySQL Banner Exchange 2.21 - 'admin.php' Multiple SQL Injections 23 WEB SirDarckCat
2006-07-31   Banex PHP MySQL Banner Exchange 2.21 - 'signup.php?site_name' SQL Injection 21 WEB SirDarckCat
2006-07-31   Ajax Chat 0.1 - 'operator_chattranscript.php?chatid' Traversal Arbitrary File Access 22 WEB SirDarckCat
2006-07-29   X-Scripts X-Poll 1.10 - 'top.php' SQL Injection 24 WEB SirDarckCat
2006-07-29   X-Scripts X-Protection 1.10 - 'Protect.php' SQL Injection 26 WEB SirDarckCat
2006-07-30   Joomla! Component Liga Manager Online 2.0 - Remote File Inclusion 26 WEB vitux.manis
2006-07-28   Joomla! Plugin JD-WordPress 2.0-1.0 RC2 - 'wp-trackback.php' Remote File Inclusion 26 WEB Drago84
2006-07-28   Joomla! Plugin JD-WordPress 2.0-1.0 RC2 - 'wp-feed.php' Remote File Inclusion 29 WEB Drago84
2006-07-28   Joomla! Plugin JD-WordPress 2.0-1.0 RC2 - 'wp-comments-post.php' Remote File Inclusion 22 WEB Drago84
2006-07-28   PHP-Nuke - 'INP modules.php' Cross-Site Scripting 25 WEB l2odon
2006-07-27   GeoClassifieds Enterprise 2.0.5.x - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 24 WEB EllipSiS Security
2006-07-27   MyBulletinBoard (MyBB) 1.x - 'usercp.php' Directory Traversal 25 WEB Roozbeh Afrasiabi
2006-07-27   Bosdates 3.x/4.0 - 'Payment.php' Remote File Inclusion 25 WEB admin@jaascois.com
2006-07-27   ZYXEL Prestige 660H-61 ADSL Router - Cross-Site Scripting 27 WEB jose.palanco
2006-07-26   phpBB-Auction 1.x - 'auction_store.php?u' SQL Injection 26 WEB l2odon
2006-07-26   phpBB-Auction 1.x - 'auction_room.php?ar' SQL Injection 28 WEB l2odon
2006-07-26   wwwThreads - 'calendar.php' Cross-Site Scripting 25 WEB l2odon
2013-09-14   Router ONO Hitron CDE-30364 - Cross-Site Request Forgery 23 WEB Matias Mingorance Svensson
2006-07-26   OpenCMS 6.0/6.2 - Multiple Unauthorized Access Vulnerabilities 26 WEB Meder Kydyraliev
2006-07-25   PHP Pro Bid 5.2.4 - 'categories.php?orderType' SQL Injection 27 WEB EllipSiS Security
2006-07-25   PHP Pro Bid 5.2.4 - 'viewfeedback.php' Multiple SQL Injections 24 WEB EllipSiS Security
2006-07-25   PHP Pro Bid 5.2.4 - 'auctionsearch.php?advsrc' Cross-Site Scripting 24 WEB EllipSiS Security
2006-07-25   PHPSavant Savant2 - 'Stylesheet.php?MosConfig_absolute_path' Remote File Inclusion 23 WEB botan
2013-09-13   Zimplit CMS 3.0 - Multiple Vulnerabilities 28 WEB Yashar shahinzadeh
2006-07-25   LinksCaffe 3.0 - 'menu.inc.php' Multiple Cross-Site Scripting Vulnerabilities 24 WEB simo64
2006-07-25   LinksCaffe 3.0 - 'links.php?newdays' Cross-Site Scripting 23 WEB simo64
2006-07-25   LinksCaffe 3.0 - 'counter.php?tablewidth' Cross-Site Scripting 20 WEB simo64
2006-07-25   LinksCaffe 3.0 - 'links.php' Multiple SQL Injections 24 WEB simo64
2006-07-24   Prince Clan Chess Club 0.8 - 'Include.PCchess.php' Remote File Inclusion 23 WEB OLiBekaS
2006-07-24   MusicBox 2.3.4 - 'page' SQL Injection 25 WEB EllipSiS Security
2006-07-24   RadScripts - 'a_editpage.php?Filename' Arbitrary File Overwrite 24 WEB INVENT
2006-07-24   Lussumo Vanilla 1.0 - RootDirectory Remote File Inclusion 25 WEB MFox
2006-07-21   Chameleon LE 1.203 - 'index.php' Directory Traversal 25 WEB kicktd
2006-07-21   Advanced Poll 2.0.2 - 'common.inc.php' Remote File Inclusion 27 WEB Solpot
2006-07-20   MiniBB 1.5 - 'news.php' Remote File Inclusion 26 WEB AG-Spider
2006-07-20   Geodesic Solutions (Multiple Products) - 'index.php?b' SQL Injection 23 WEB LBDT
2006-07-20   GeoAuctions 1.0.6 Enterprise - 'index.php?d' SQL Injection 25 WEB LBDT
2006-07-20   IDevSpot PHPHostBot 1.0 - 'index.php' Remote File Inclusion 29 WEB r0t
2006-07-20   IDevSpot PHPLinkExchange 1.0 - 'index.php' Remote File Inclusion 25 WEB r0t
2013-09-12   Synology DiskStation Manager (DSM) 4.3-3776 - Multiple Vulnerabilities 23 WEB Andrea Fabrizi
2013-09-12   D-Link DSL-2740B - Multiple Cross-Site Request Forgery Vulnerabilities 25 WEB Ivano Binetti
2013-09-12   Microsoft SharePoint 2013 (Cloud) - Persistent Exception Handling (MS13-067) 26 WEB Vulnerability-Lab
2013-09-12   Talkie Bluetooth Video iFiles 2.0 iOS - Multiple Vulnerabilities 23 WEB Vulnerability-Lab
2006-07-17   Mambo Module Calendar 1.5.7 - 'Com_Calendar.php' Remote File Inclusion 29 WEB Matdhule
2006-07-17   ListMessenger 0.9.3 - 'LM_Path' Remote File Inclusion 25 WEB xoron
2006-07-17   VisNetic Mail Server 8.3.5 - Multiple File Inclusions 23 WEB Tan Chew Keong
2006-07-14   Subberz Lite - UserFunc Remote File Inclusion 28 WEB Chironex Fleckeri
2006-07-13   Dream4 Koobi Pro 5.6 - 'showtopic' SQL Injection 25 WEB Evampire chiristof
2006-07-13   Forum 5 - 'pm.php' Local File Inclusion 25 WEB rgod
2006-07-13   FlatNuke 2.5.7 - 'index.php' Remote File Inclusion 25 WEB rgod
2006-07-13   PHP Event Calendar 1.4 - 'calendar.php' Remote File Inclusion 26 WEB Solpot
2006-07-13   PhotoCycle 1.0 - 'PhotoCycle.php' Cross-Site Scripting 29 WEB Luny
2006-07-12   Lazarus Guestbook 1.6 - 'picture.php?img' Cross-Site Scripting 27 WEB simo64
2006-07-12   Lazarus Guestbook 1.6 - 'codes-english.php?show' Cross-Site Scripting 24 WEB simo64
2006-07-12   FlexWATCH 3.0 - 'AIndex.asp' Authentication Bypass 26 WEB Jaime Blasco
2006-07-11   Fantastic Guestbook 2.0.1 - 'Guestbook.php' HTML Injection 22 WEB omnipresent
2006-06-11   FlexWATCH Network Camera - Cross-Site Scripting 25 WEB Jaime Blasco
2006-07-11   SaPHPLesson 2.0 - 'add.php' SQL Injection 27 WEB C.B.B.L
2006-07-11   Hosting Controller 1.x - 'error.asp' Cross-Site Scripting 24 WEB Dea7h
2006-07-10   Graffiti Forums 1.0 - 'Topics.php' SQL Injection 21 WEB Paisterist
2006-07-10   Farsinews 3.0 - 'Tiny_mce_gzip.php' Directory Traversal 26 WEB armin390
2006-07-09   Mambo Componen phpBB 1.2.4 - Multiple Remote File Inclusions 25 WEB h4ntu
2006-07-08   RW::Download - 'stats.php' Remote File Inclusion 23 WEB StorMBoY
2006-07-08   Webvizyon - 'SayfalaAltList.asp' SQL Injection 23 WEB StorMBoY
2006-07-08   ATutor 1.5.3 - Multiple Input Validation Vulnerabilities 23 WEB securityconnection
2013-09-10   AjaXplorer 1.0 - Multiple Vulnerabilities 28 WEB Trustwave's SpiderLabs
2006-07-07   Extcalendar 2.0 - 'Extcalendar.php' Remote File Inclusion 23 WEB Matdhule
2013-09-10   glFusion 1.3.0 - 'search.php?cat_id' SQL Injection 25 WEB Omar Kurt
2013-09-10   D-Link DIR-505 1.06 - Multiple Vulnerabilities 26 WEB Alessandro Di Pinto