Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2006-07-06   ATutor 1.5.x - '/admin/fix_content.php?submit' Cross-Site Scripting 23 WEB Security News
2006-07-06   ATutor 1.5.x - '/users/browse.php?cat' Cross-Site Scripting 25 WEB Security News
2006-07-06   ATutor 1.5.x - 'password_reminder.php?forgot' Cross-Site Scripting 29 WEB Security News
2006-07-06   ATutor 1.5.x - '/documentation/admin/index.php' Cross-Site Scripting 25 WEB Security News
2006-07-06   ATutor 1.5.x - 'create_course.php' Multiple Cross-Site Scripting Vulnerabilities 30 WEB Security News
2013-09-09   Sophos Web Protection Appliance - Multiple Vulnerabilities 24 WEB Core Security
2013-09-09   Moodle 2.3.8/2.4.5 - Multiple Vulnerabilities 24 WEB Ciaran McNally
2013-09-09   Zyxware Health Monitoring System - Multiple Vulnerabilities 23 WEB Sarahma Security
2006-07-05   Blog:CMS 4.1 - 'Thumb.php' Remote File Inclusion 21 WEB EllipSiS Security
2006-07-05   Invision Power Board (IP.Board) 1.x/2.x - Multiple SQL Injections 27 WEB CrAzY CrAcKeR
2006-07-05   LifeType 1.0.5 - 'index.php?Date' SQL Injection 26 WEB Alejandro Ramos
2006-07-04   PostNuke 0.6x/0.7x - Multiple Cross-Site Scripting Vulnerabilities 23 WEB rgod
2006-07-04   Randshop 0.9.3/1.2 - 'index.php' Remote File Inclusion 26 WEB black-code
2006-07-04   PHPWebGallery 1.x - 'comments.php' Cross-Site Scripting 24 WEB iss4m
2006-07-03   Glossaire 1.7 - Remote File Inclusion 23 WEB CrAzY CrAcKeR
2006-07-03   QTO File Manager 1.0 - Multiple Cross-Site Scripting Vulnerabilities 26 WEB EllipSiS Security
2006-07-03   VirtuaStore 2.0 - 'Password' SQL Injection 23 WEB supermalhacao
2006-07-03   free QBoard 1.1 - 'history.php?qb_path' Remote File Inclusion 24 WEB CrAsh_oVeR_rIdE
2006-07-03   free QBoard 1.1 - 'features.php?qb_path' Remote File Inclusion 24 WEB CrAsh_oVeR_rIdE
2006-07-03   free QBoard 1.1 - 'faq.php?qb_path' Remote File Inclusion 24 WEB CrAsh_oVeR_rIdE
2006-07-03   free QBoard 1.1 - 'delete.php?qb_path' Remote File Inclusion 26 WEB CrAsh_oVeR_rIdE
2006-07-03   free QBoard 1.1 - 'contact.php?qb_path' Remote File Inclusion 21 WEB CrAsh_oVeR_rIdE
2006-07-03   free QBoard 1.1 - 'about.php?qb_path' Remote File Inclusion 26 WEB CrAsh_oVeR_rIdE
2006-07-03   free QBoard 1.1 - 'index.php?qb_path' Remote File Inclusion 24 WEB CrAsh_oVeR_rIdE
2006-07-03   Plume CMS 1.0.4 - 'search.php?_PX_config[manager_path]' Remote File Inclusion 25 WEB CrAsh_oVeR_rIdE
2007-07-03   Plume CMS 1.0.4 - 'rss.php?_PX_config[manager_path]' Remote File Inclusion 28 WEB CrAsh_oVeR_rIdE
2007-07-03   Plume CMS 1.0.4 - 'index.php?_PX_config[manager_path]' Remote File Inclusion 25 WEB CrAsh_oVeR_rIdE
2006-07-03   Vincent Leclercq News 5.2 - Cross-Site Scripting 25 WEB DarkFig
2006-07-01   SturGeoN Upload - Arbitrary File Upload 24 WEB Jihad BENABRA
2006-07-01   Diesel Joke Site - 'Category.php' SQL Injection 24 WEB black-code
2006-06-01   SiteBuilder-FX - 'top.php' Remote File Inclusion 25 WEB MazaGi
2006-06-29   SoftBiz Banner Exchange Script 1.0 - 'index.php?PHPSESSID' Cross-Site Scripting 23 WEB securityconnection
2006-06-29   SoftBiz Banner Exchange Script 1.0 - 'gen_confirm_mem.php?PHPSESSID' Cross-Site Scripting 23 WEB securityconnection
2006-06-29   SoftBiz Banner Exchange Script 1.0 - 'lostpassword.php?PHPSESSID' Cross-Site Scripting 24 WEB securityconnection
2006-06-29   SoftBiz Banner Exchange Script 1.0 - 'insertmember.php?city' Cross-Site Scripting 26 WEB securityconnection
2006-06-23   Vincent-Leclercq News 5.2 - 'Diver.php' SQL Injection 20 WEB DarkFig
2006-06-29   newsPHP 2006 PRO - '/inc/rss_feed.php?category' SQL Injection 24 WEB securityconnection
2006-06-29   newsPHP 2006 PRO - 'index.php' Multiple SQL Injections 24 WEB securityconnection
2006-06-29   newsPHP 2006 PRO - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 28 WEB securityconnection
2006-06-29   PHP ICalender 2.22 - 'index.php' Cross-Site Scripting 23 WEB Kurdish Security
2013-09-06   Practico CMS 13.7 - Authentication Bypass 26 WEB shiZheni
2013-09-06   CMS Mini 0.2.2 - Multiple Vulnerabilities 24 WEB SANTHO
2013-09-06   Woltlab Burning Board FLVideo Addon - 'video.php?value' SQL Injection 26 WEB Easy Laster
2006-06-28   PHPClassifieds.Info - Multiple Input Validation Vulnerabilities 26 WEB Luny
2006-06-28   MKPortal 1.0.1 - 'index.php' Directory Traversal 30 WEB rUnViRuS
2006-06-19   vCard PRO - 'search.php?event_id' SQL Injection 25 WEB CrAzY CrAcKeR
2006-06-19   vCard PRO - 'create.php?card_id' SQL Injection 26 WEB CrAzY CrAcKeR
2006-06-19   vCard PRO - 'rating.php?card_id' SQL Injection 23 WEB CrAzY CrAcKeR
2006-06-19   vCard PRO - 'gbrowse.php?cat_id' SQL Injection 26 WEB CrAzY CrAcKeR
2006-06-27   MF Piadas 1.0 - 'admin.php' Remote File Inclusion 25 WEB botan
2006-06-27   H-Sphere 2.5.1 - Multiple Cross-Site Scripting Vulnerabilities 24 WEB r0t
2006-06-27   MF Piadas 1.0 - 'admin.php' Cross-Site Scripting 24 WEB botan
2006-06-27   CrisoftRicette 1.0 - 'Cookbook.php' Remote File Inclusion 25 WEB CrAzY.CrAcKeR
2006-06-27   cPanel 10.8.1/10.8.2 - OnMouseover Cross-Site Scripting 25 WEB MexHackTeam.org
2006-06-26   OpenGuestbook 0.5 - 'view.php?offset' SQL Injection 25 WEB simo64
2006-06-26   OpenGuestbook 0.5 - 'header.php?title' Cross-Site Scripting 26 WEB simo64
2006-06-26   MVNForum Activatemember 1.0 - Cross-Site Scripting 27 WEB r0t
2006-06-23   Usenet 0.5 - 'index.php' Cross-Site Scripting 24 WEB Luny
2006-06-26   MyMail 1.0 - 'login.php' Cross-Site Scripting 24 WEB botan
2006-06-26   cPanel 10 - Select.HTML Cross-Site Scripting 25 WEB preth00nker
2006-06-16   Bee-hive 1.2 - Multiple Remote File Inclusions 29 WEB Kw3[R]Ln
2006-06-26   eNpaper1 - 'Root_Header.php' Remote File Inclusion 24 WEB almaster
2006-06-26   ADODB 4.6/4.7 - 'Tmssql.php' Cross-Site Scripting 21 WEB Rodrigo Silva
2006-06-24   Winged Gallery 1.0 - 'Thumb.php' Cross-Site Scripting 23 WEB Luny
2006-06-24   Custom Dating Biz 1.0 - Multiple Input Validation Vulnerabilities 23 WEB Luny
2006-06-22   PHP Blue Dragon CMS 2.9.1 - Multiple Remote File Inclusions 23 WEB Shm
2006-06-22   Dating Agent 4.7.1 - Multiple Input Validation Vulnerabilities 24 WEB EllipSiS Security
2006-06-22   SoftBizScripts Dating Script 1.0 - 'news_desc.php' SQL Injection 23 WEB EllipSiS Security
2006-06-22   SoftBizScripts Dating Script 1.0 - 'index.php' SQL Injection 26 WEB EllipSiS Security
2006-06-22   SoftBizScripts Dating Script 1.0 - 'products.php' SQL Injection 24 WEB EllipSiS Security
2006-06-22   SoftBizScripts Dating Script 1.0 - 'featured_photos.php' SQL Injection 26 WEB EllipSiS Security
2006-06-22   MyBulletinBoard (MyBB) 1.0.x/1.1.x - 'usercp.php' SQL Injection 24 WEB imei
2006-06-22   Woltlab Burning Board 1.2/2.0/2.3 - 'showmods.php?boardid' SQL Injection 23 WEB CrAzY CrAcKeR
2006-06-22   Woltlab Burning Board 1.2/2.0/2.3 - 'report.php?postid' SQL Injection 24 WEB CrAzY CrAcKeR
2006-06-22   Woltlab Burning Board 1.2/2.0/2.3 - 'newthread.php?boardid' SQL Injection 23 WEB CrAzY CrAcKeR
2006-06-22   PHP Event Calendar 4.2 - SQL Injection 28 WEB Silitix
2006-06-21   Maximus SchoolMAX 4.0.1 - 'Error_msg' Cross-Site Scripting 23 WEB Charles Hooper
2006-06-21   e107 0.7.5 - 'Subject' HTML Injection 26 WEB EllipSiS Security
2006-06-20   vBulletin 3.0.9/3.5.x - 'member.php' Cross-Site Scripting 24 WEB CrAzY.CrAcKeR
2006-06-20   V3 Chat Instant Messenger - 'mycontacts.php' membername Arbitrary User Buddy List Manipulation 23 WEB Luny
2006-06-20   V3 Chat Instant Messenger - 'expire.php?cust_name' Cross-Site Scripting 22 WEB Luny
2006-06-20   V3 Chat Instant Messenger - 'profileview.php?membername' Cross-Site Scripting 20 WEB Luny
2006-06-20   V3 Chat Instant Messenger - 'profile.php?site_id' Cross-Site Scripting 26 WEB Luny
2006-06-20   V3 Chat Instant Messenger - 'search.php' Multiple Cross-Site Scripting Vulnerabilities 23 WEB Luny
2006-06-20   V3 Chat Instant Messenger - 'online.php?site_id' Cross-Site Scripting 26 WEB Luny
2006-06-20   V3 Chat Instant Messenger - '/mail/reply.php?id' Cross-Site Scripting 22 WEB Luny
2006-06-20   V3 Chat Instant Messenger - '/mail/index.php?id' Cross-Site Scripting 21 WEB Luny
2006-06-19   Singapore 0.9.x/0.10 - 'index.php?template' Cross-Site Scripting 23 WEB simo64
2006-06-19   Singapore 0.9.x/0.10 - Multiple Traversal Arbitrary File Access 23 WEB simo64
2006-03-06   Qto File Manager 1.0 - 'index.php' Cross-Site Scripting 26 WEB alijsb
2006-06-19   e107 0.7.5 - 'search.php' Cross-Site Scripting 23 WEB securityconnection
2006-06-19   Cisco CallManager 3.x/4.x - 'Web Interface 'ccmuser/logon.asp' Cross-Site Scripting 25 WEB Jake Reynolds
2006-06-19   Cisco CallManager 3.x/4.x - 'Web Interface 'ccmadmin/phonelist.asp?Pattern' Cross-Site Scripting 23 WEB Jake Reynolds
2006-06-19   Datecomm 1.1 - Multiple Cross-Site Scripting Vulnerabilities 22 WEB Luny
2006-06-19   SaphpLesson 1.1/2.0/3.0 - Multiple SQL Injections 25 WEB CrAzY CrAcKeR
2006-06-19   Eduha Meeting - 'index.php' Arbitrary File Upload 25 WEB Liz0ziM
2006-06-17   Cline Communications - Multiple SQL Injections 28 WEB Liz0ziM
2013-09-03   TP-Link TD-W8951ND - Multiple Vulnerabilities 27 WEB xistence
2013-09-03   WordPress Plugin IndiaNIC Testimonial - Multiple Vulnerabilities 28 WEB RogueCoder
2013-09-03   Zoom Telephonics ADSL Modem/Router - Multiple Vulnerabilities 23 WEB Kyle Lovett
2006-06-17   RahnemaCo - 'page.php' PageID Remote File Inclusion 22 WEB CrAzY.CrAcKeR
2006-06-17   CMS Faethon 1.3.2 - Multiple Remote File Inclusions 24 WEB M.Hasran Addahroni
2006-06-03   dotWidget for articles 2.0 - '/admin/editconfig.php' Multiple Remote File Inclusions 24 WEB SwEET-DeViL
2006-06-03   dotWidget for articles 2.0 - '/admin/categories.php' Multiple Remote File Inclusions 22 WEB SwEET-DeViL
2006-06-03   dotWidget for articles 2.0 - '/admin/index.php' Multiple Remote File Inclusions 25 WEB SwEET-DeViL
2006-06-03   dotWidget for articles 2.0 - '/admin/articles.php' Multiple Remote File Inclusions 23 WEB SwEET-DeViL
2006-06-03   dotWidget for articles 2.0 - '/admin/authors.php' Multiple Remote File Inclusions 23 WEB SwEET-DeViL
2006-06-03   dotWidget for articles 2.0 - 'showarticle.php?file_path' Remote File Inclusion 24 WEB SwEET-DeViL
2006-06-03   dotWidget for articles 2.0 - 'showcatpicks.php?file_path' Remote File Inclusion 21 WEB SwEET-DeViL
2006-06-16   Indexu 5.0.1 - Multiple Remote File Inclusions 25 WEB CrAsh_oVeR_rIdE
2006-06-16   mcGuestbook 1.3 - 'lire.php?lang' Remote File Inclusion 23 WEB SwEET-DeViL
2006-06-16   mcGuestbook 1.3 - 'ecrire.php?lang' Remote File Inclusion 25 WEB SwEET-DeViL
2006-06-16   mcGuestbook 1.3 - 'admin.php?lang' Remote File Inclusion 22 WEB SwEET-DeViL
2006-06-16   Ji-takz - Remote File Inclusion 25 WEB SpC-x
2006-06-15   VBZoom 1.11 - 'forum.php' SQL Injection 26 WEB CrAsh_oVeR_rIdE
2006-03-06   MPCS 0.2 - 'comment.php' Cross-Site Scripting 27 WEB Luny
2006-06-15   HotPlug CMS 1.0 - 'Login1.php' Cross-Site Scripting 24 WEB Federico Fazzi
2006-06-15   vBulletin 2.x/3.x - Multiple Cross-Site Scripting Vulnerabilities 24 WEB Luny
2006-06-14   ISPConfig 2.2.3 - Multiple Remote File Inclusions 25 WEB Federico Fazzi
2006-06-14   RahnemaCo - 'page.php' Remote File Inclusion 23 WEB Breeeeh
2006-06-14   phpBB - 'BBRSS.php' Remote File Inclusion 27 WEB SpC-x
2006-06-14   Confixx 3.0/3.1 - 'FTP_index.php' Cross-Site Scripting 27 WEB kr4ch
2006-06-14   Woltlab Burning Board 2.x - Multiple SQL Injections 26 WEB CrAzY CrAcKeR
2006-06-13   Andy Mack 35mm Slide Gallery 6.0 - 'popup.php' Multiple Cross-Site Scripting Vulnerabilities 27 WEB black-cod3
2006-06-13   Andy Mack 35mm Slide Gallery 6.0 - 'index.php?imgdir' Cross-Site Scripting 25 WEB black-cod3