Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2006-07-03   Plume CMS 1.0.4 - 'search.php?_PX_config[manager_path]' Remote File Inclusion 2 WEB CrAsh_oVeR_rIdE
2007-07-03   Plume CMS 1.0.4 - 'rss.php?_PX_config[manager_path]' Remote File Inclusion 2 WEB CrAsh_oVeR_rIdE
2007-07-03   Plume CMS 1.0.4 - 'index.php?_PX_config[manager_path]' Remote File Inclusion 2 WEB CrAsh_oVeR_rIdE
2006-07-03   Vincent Leclercq News 5.2 - Cross-Site Scripting 2 WEB DarkFig
2006-07-01   SturGeoN Upload - Arbitrary File Upload 1 WEB Jihad BENABRA
2006-07-01   Diesel Joke Site - 'Category.php' SQL Injection 2 WEB black-code
2006-06-01   SiteBuilder-FX - 'top.php' Remote File Inclusion 2 WEB MazaGi
2006-06-29   SoftBiz Banner Exchange Script 1.0 - 'index.php?PHPSESSID' Cross-Site Scripting 2 WEB securityconnection
2006-06-29   SoftBiz Banner Exchange Script 1.0 - 'gen_confirm_mem.php?PHPSESSID' Cross-Site Scripting 2 WEB securityconnection
2006-06-29   SoftBiz Banner Exchange Script 1.0 - 'lostpassword.php?PHPSESSID' Cross-Site Scripting 2 WEB securityconnection
2006-06-29   SoftBiz Banner Exchange Script 1.0 - 'insertmember.php?city' Cross-Site Scripting 2 WEB securityconnection
2006-06-23   Vincent-Leclercq News 5.2 - 'Diver.php' SQL Injection 2 WEB DarkFig
2006-06-29   newsPHP 2006 PRO - '/inc/rss_feed.php?category' SQL Injection 2 WEB securityconnection
2006-06-29   newsPHP 2006 PRO - 'index.php' Multiple SQL Injections 2 WEB securityconnection
2006-06-29   newsPHP 2006 PRO - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB securityconnection
2006-06-29   PHP ICalender 2.22 - 'index.php' Cross-Site Scripting 2 WEB Kurdish Security
2013-09-06   Practico CMS 13.7 - Authentication Bypass 2 WEB shiZheni
2013-09-06   CMS Mini 0.2.2 - Multiple Vulnerabilities 2 WEB SANTHO
2013-09-06   Woltlab Burning Board FLVideo Addon - 'video.php?value' SQL Injection 2 WEB Easy Laster
2006-06-28   PHPClassifieds.Info - Multiple Input Validation Vulnerabilities 2 WEB Luny
2006-06-28   MKPortal 1.0.1 - 'index.php' Directory Traversal 2 WEB rUnViRuS
2006-06-19   vCard PRO - 'search.php?event_id' SQL Injection 2 WEB CrAzY CrAcKeR
2006-06-19   vCard PRO - 'create.php?card_id' SQL Injection 2 WEB CrAzY CrAcKeR
2006-06-19   vCard PRO - 'rating.php?card_id' SQL Injection 2 WEB CrAzY CrAcKeR
2006-06-19   vCard PRO - 'gbrowse.php?cat_id' SQL Injection 2 WEB CrAzY CrAcKeR
2006-06-27   MF Piadas 1.0 - 'admin.php' Remote File Inclusion 2 WEB botan
2006-06-27   H-Sphere 2.5.1 - Multiple Cross-Site Scripting Vulnerabilities 2 WEB r0t
2006-06-27   MF Piadas 1.0 - 'admin.php' Cross-Site Scripting 1 WEB botan
2006-06-27   CrisoftRicette 1.0 - 'Cookbook.php' Remote File Inclusion 2 WEB CrAzY.CrAcKeR
2006-06-27   cPanel 10.8.1/10.8.2 - OnMouseover Cross-Site Scripting 1 WEB MexHackTeam.org
2006-06-26   OpenGuestbook 0.5 - 'view.php?offset' SQL Injection 1 WEB simo64
2006-06-26   OpenGuestbook 0.5 - 'header.php?title' Cross-Site Scripting 1 WEB simo64
2006-06-26   MVNForum Activatemember 1.0 - Cross-Site Scripting 1 WEB r0t
2006-06-23   Usenet 0.5 - 'index.php' Cross-Site Scripting 1 WEB Luny
2006-06-26   MyMail 1.0 - 'login.php' Cross-Site Scripting 0 WEB botan
2006-06-26   cPanel 10 - Select.HTML Cross-Site Scripting 1 WEB preth00nker
2006-06-16   Bee-hive 1.2 - Multiple Remote File Inclusions 1 WEB Kw3[R]Ln
2006-06-26   eNpaper1 - 'Root_Header.php' Remote File Inclusion 1 WEB almaster
2006-06-26   ADODB 4.6/4.7 - 'Tmssql.php' Cross-Site Scripting 1 WEB Rodrigo Silva
2006-06-24   Winged Gallery 1.0 - 'Thumb.php' Cross-Site Scripting 1 WEB Luny
2006-06-24   Custom Dating Biz 1.0 - Multiple Input Validation Vulnerabilities 1 WEB Luny
2006-06-22   PHP Blue Dragon CMS 2.9.1 - Multiple Remote File Inclusions 1 WEB Shm
2006-06-22   Dating Agent 4.7.1 - Multiple Input Validation Vulnerabilities 1 WEB EllipSiS Security
2006-06-22   SoftBizScripts Dating Script 1.0 - 'news_desc.php' SQL Injection 1 WEB EllipSiS Security
2006-06-22   SoftBizScripts Dating Script 1.0 - 'index.php' SQL Injection 1 WEB EllipSiS Security
2006-06-22   SoftBizScripts Dating Script 1.0 - 'products.php' SQL Injection 1 WEB EllipSiS Security
2006-06-22   SoftBizScripts Dating Script 1.0 - 'featured_photos.php' SQL Injection 1 WEB EllipSiS Security
2006-06-22   MyBulletinBoard (MyBB) 1.0.x/1.1.x - 'usercp.php' SQL Injection 1 WEB imei
2006-06-22   Woltlab Burning Board 1.2/2.0/2.3 - 'showmods.php?boardid' SQL Injection 1 WEB CrAzY CrAcKeR
2006-06-22   Woltlab Burning Board 1.2/2.0/2.3 - 'report.php?postid' SQL Injection 1 WEB CrAzY CrAcKeR
2006-06-22   Woltlab Burning Board 1.2/2.0/2.3 - 'newthread.php?boardid' SQL Injection 1 WEB CrAzY CrAcKeR
2006-06-22   PHP Event Calendar 4.2 - SQL Injection 1 WEB Silitix
2006-06-21   Maximus SchoolMAX 4.0.1 - 'Error_msg' Cross-Site Scripting 1 WEB Charles Hooper
2006-06-21   e107 0.7.5 - 'Subject' HTML Injection 2 WEB EllipSiS Security
2006-06-20   vBulletin 3.0.9/3.5.x - 'member.php' Cross-Site Scripting 2 WEB CrAzY.CrAcKeR
2006-06-20   V3 Chat Instant Messenger - 'mycontacts.php' membername Arbitrary User Buddy List Manipulation 2 WEB Luny
2006-06-20   V3 Chat Instant Messenger - 'expire.php?cust_name' Cross-Site Scripting 2 WEB Luny
2006-06-20   V3 Chat Instant Messenger - 'profileview.php?membername' Cross-Site Scripting 1 WEB Luny
2006-06-20   V3 Chat Instant Messenger - 'profile.php?site_id' Cross-Site Scripting 2 WEB Luny
2006-06-20   V3 Chat Instant Messenger - 'search.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB Luny
2006-06-20   V3 Chat Instant Messenger - 'online.php?site_id' Cross-Site Scripting 2 WEB Luny
2006-06-20   V3 Chat Instant Messenger - '/mail/reply.php?id' Cross-Site Scripting 2 WEB Luny
2006-06-20   V3 Chat Instant Messenger - '/mail/index.php?id' Cross-Site Scripting 1 WEB Luny
2006-06-19   Singapore 0.9.x/0.10 - 'index.php?template' Cross-Site Scripting 2 WEB simo64
2006-06-19   Singapore 0.9.x/0.10 - Multiple Traversal Arbitrary File Access 3 WEB simo64
2006-03-06   Qto File Manager 1.0 - 'index.php' Cross-Site Scripting 2 WEB alijsb
2006-06-19   e107 0.7.5 - 'search.php' Cross-Site Scripting 2 WEB securityconnection
2006-06-19   Cisco CallManager 3.x/4.x - 'Web Interface 'ccmuser/logon.asp' Cross-Site Scripting 2 WEB Jake Reynolds
2006-06-19   Cisco CallManager 3.x/4.x - 'Web Interface 'ccmadmin/phonelist.asp?Pattern' Cross-Site Scripting 2 WEB Jake Reynolds
2006-06-19   Datecomm 1.1 - Multiple Cross-Site Scripting Vulnerabilities 2 WEB Luny
2006-06-19   SaphpLesson 1.1/2.0/3.0 - Multiple SQL Injections 2 WEB CrAzY CrAcKeR
2006-06-19   Eduha Meeting - 'index.php' Arbitrary File Upload 2 WEB Liz0ziM
2006-06-17   Cline Communications - Multiple SQL Injections 2 WEB Liz0ziM
2013-09-03   TP-Link TD-W8951ND - Multiple Vulnerabilities 2 WEB xistence
2013-09-03   WordPress Plugin IndiaNIC Testimonial - Multiple Vulnerabilities 2 WEB RogueCoder
2013-09-03   Zoom Telephonics ADSL Modem/Router - Multiple Vulnerabilities 1 WEB Kyle Lovett
2006-06-17   RahnemaCo - 'page.php' PageID Remote File Inclusion 2 WEB CrAzY.CrAcKeR
2006-06-17   CMS Faethon 1.3.2 - Multiple Remote File Inclusions 2 WEB M.Hasran Addahroni
2006-06-03   dotWidget for articles 2.0 - '/admin/editconfig.php' Multiple Remote File Inclusions 0 WEB SwEET-DeViL
2006-06-03   dotWidget for articles 2.0 - '/admin/categories.php' Multiple Remote File Inclusions 0 WEB SwEET-DeViL
2006-06-03   dotWidget for articles 2.0 - '/admin/index.php' Multiple Remote File Inclusions 1 WEB SwEET-DeViL
2006-06-03   dotWidget for articles 2.0 - '/admin/articles.php' Multiple Remote File Inclusions 1 WEB SwEET-DeViL
2006-06-03   dotWidget for articles 2.0 - '/admin/authors.php' Multiple Remote File Inclusions 1 WEB SwEET-DeViL
2006-06-03   dotWidget for articles 2.0 - 'showarticle.php?file_path' Remote File Inclusion 1 WEB SwEET-DeViL
2006-06-03   dotWidget for articles 2.0 - 'showcatpicks.php?file_path' Remote File Inclusion 2 WEB SwEET-DeViL
2006-06-16   Indexu 5.0.1 - Multiple Remote File Inclusions 2 WEB CrAsh_oVeR_rIdE
2006-06-16   mcGuestbook 1.3 - 'lire.php?lang' Remote File Inclusion 2 WEB SwEET-DeViL
2006-06-16   mcGuestbook 1.3 - 'ecrire.php?lang' Remote File Inclusion 2 WEB SwEET-DeViL
2006-06-16   mcGuestbook 1.3 - 'admin.php?lang' Remote File Inclusion 1 WEB SwEET-DeViL
2006-06-16   Ji-takz - Remote File Inclusion 2 WEB SpC-x
2006-06-15   VBZoom 1.11 - 'forum.php' SQL Injection 2 WEB CrAsh_oVeR_rIdE
2006-03-06   MPCS 0.2 - 'comment.php' Cross-Site Scripting 2 WEB Luny
2006-06-15   HotPlug CMS 1.0 - 'Login1.php' Cross-Site Scripting 2 WEB Federico Fazzi
2006-06-15   vBulletin 2.x/3.x - Multiple Cross-Site Scripting Vulnerabilities 2 WEB Luny
2006-06-14   ISPConfig 2.2.3 - Multiple Remote File Inclusions 2 WEB Federico Fazzi
2006-06-14   RahnemaCo - 'page.php' Remote File Inclusion 2 WEB Breeeeh
2006-06-14   phpBB - 'BBRSS.php' Remote File Inclusion 2 WEB SpC-x
2006-06-14   Confixx 3.0/3.1 - 'FTP_index.php' Cross-Site Scripting 2 WEB kr4ch
2006-06-14   Woltlab Burning Board 2.x - Multiple SQL Injections 1 WEB CrAzY CrAcKeR
2006-06-13   Andy Mack 35mm Slide Gallery 6.0 - 'popup.php' Multiple Cross-Site Scripting Vulnerabilities 0 WEB black-cod3
2006-06-13   Andy Mack 35mm Slide Gallery 6.0 - 'index.php?imgdir' Cross-Site Scripting 1 WEB black-cod3
2006-06-13   Simpnews 2.x - 'Wap_short_news.php' Remote File Inclusion 0 WEB SpC-x
2006-06-13   VBZoom 1.0/1.1 - Multiple SQL Injections 1 WEB CrAzY CrAcKeR
2006-06-13   CEScripts (Multiple Scripts) - Cross-Site Scripting 1 WEB Luny
2006-06-13   DoubleSpeak 0.1 - Multiple Remote File Inclusions 1 WEB R@1D3N
2006-06-12   iFusion iFlance 1.1 - Multiple Input Validation Vulnerabilities 1 WEB Luny
2006-06-12   SixCMS 6.0 - 'detail.php' Directory Traversal 1 WEB Aesthetico
2006-06-12   SixCMS 6.0 - 'list.php' Cross-Site Scripting 1 WEB Aesthetico
2006-06-12   Foing 0.x - Remote File Inclusion 1 WEB Darkfire
2006-06-12   iFoto 0.20 - 'index.php' Cross-Site Scripting 1 WEB Luny
2006-06-12   Five Star Review Script - 'report.php?item_id' Cross-Site Scripting 2 WEB Luny
2006-06-12   Five Star Review Script - 'index2.php?sort' Cross-Site Scripting 2 WEB Luny
2006-06-12   Adaptive Website Framework 1.11 - Remote File Inclusion 2 WEB Federico Fazzi
2006-06-12   NPDS 5.10 - Multiple Input Validation Vulnerabilities 2 WEB DarkFig
2006-06-09   KAPhotoservice 7.5 - 'edtalbum.asp' Multiple Cross-Site Scripting Vulnerabilities 2 WEB r0t
2006-06-09   KAPhotoservice 7.5 - 'albums.asp?albumid' Cross-Site Scripting 2 WEB r0t
2006-06-09   KAPhotoservice 7.5 - 'album.asp?cat' Cross-Site Scripting 2 WEB r0t
2006-06-09   Baby Katie Media VSReal and VScal 1.0 - 'myslideshow.php?title' Cross-Site Scripting 2 WEB Luny
2006-06-09   Baby Katie Media VSReal and VScal 1.0 - 'index.php?lid' Cross-Site Scripting 2 WEB Luny
2006-06-07   Open Business Management 1.0.3 pl1 - 'company_index.php' Multiple Cross-Site Scripting Vulnerabiliti 2 WEB r0t
2006-06-07   Open Business Management 1.0.3 pl1 - 'list_index.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB r0t
2006-06-07   Open Business Management 1.0.3 pl1 - 'user_index.php?tf_lastname' Cross-Site Scripting 2 WEB r0t
2006-06-07   Open Business Management 1.0.3 pl1 - 'group_index.php' Multiple Cross-Site Scripting Vulnerabilities 2 WEB r0t
2006-06-07   Open Business Management 1.0.3 pl1 - 'publication_index.php?tf_lang' Cross-Site Scripting 2 WEB r0t
2006-06-07   PostNuke 0.76 RC2 - Multiple Input Validation Vulnerabilities 2 WEB SpC-x