Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2006-06-13   Simpnews 2.x - 'Wap_short_news.php' Remote File Inclusion 25 WEB SpC-x
2006-06-13   VBZoom 1.0/1.1 - Multiple SQL Injections 25 WEB CrAzY CrAcKeR
2006-06-13   CEScripts (Multiple Scripts) - Cross-Site Scripting 24 WEB Luny
2006-06-13   DoubleSpeak 0.1 - Multiple Remote File Inclusions 26 WEB R@1D3N
2006-06-12   iFusion iFlance 1.1 - Multiple Input Validation Vulnerabilities 24 WEB Luny
2006-06-12   SixCMS 6.0 - 'detail.php' Directory Traversal 24 WEB Aesthetico
2006-06-12   SixCMS 6.0 - 'list.php' Cross-Site Scripting 27 WEB Aesthetico
2006-06-12   Foing 0.x - Remote File Inclusion 23 WEB Darkfire
2006-06-12   iFoto 0.20 - 'index.php' Cross-Site Scripting 24 WEB Luny
2006-06-12   Five Star Review Script - 'report.php?item_id' Cross-Site Scripting 23 WEB Luny
2006-06-12   Five Star Review Script - 'index2.php?sort' Cross-Site Scripting 28 WEB Luny
2006-06-12   Adaptive Website Framework 1.11 - Remote File Inclusion 25 WEB Federico Fazzi
2006-06-12   NPDS 5.10 - Multiple Input Validation Vulnerabilities 27 WEB DarkFig
2006-06-09   KAPhotoservice 7.5 - 'edtalbum.asp' Multiple Cross-Site Scripting Vulnerabilities 26 WEB r0t
2006-06-09   KAPhotoservice 7.5 - 'albums.asp?albumid' Cross-Site Scripting 25 WEB r0t
2006-06-09   KAPhotoservice 7.5 - 'album.asp?cat' Cross-Site Scripting 25 WEB r0t
2006-06-09   Baby Katie Media VSReal and VScal 1.0 - 'myslideshow.php?title' Cross-Site Scripting 21 WEB Luny
2006-06-09   Baby Katie Media VSReal and VScal 1.0 - 'index.php?lid' Cross-Site Scripting 27 WEB Luny
2006-06-07   Open Business Management 1.0.3 pl1 - 'company_index.php' Multiple Cross-Site Scripting Vulnerabiliti 23 WEB r0t
2006-06-07   Open Business Management 1.0.3 pl1 - 'list_index.php' Multiple Cross-Site Scripting Vulnerabilities 23 WEB r0t
2006-06-07   Open Business Management 1.0.3 pl1 - 'user_index.php?tf_lastname' Cross-Site Scripting 23 WEB r0t
2006-06-07   Open Business Management 1.0.3 pl1 - 'group_index.php' Multiple Cross-Site Scripting Vulnerabilities 25 WEB r0t
2006-06-07   Open Business Management 1.0.3 pl1 - 'publication_index.php?tf_lang' Cross-Site Scripting 26 WEB r0t
2006-06-07   PostNuke 0.76 RC2 - Multiple Input Validation Vulnerabilities 24 WEB SpC-x
2006-06-07   Calendar Express 2.2 - 'month.php' SQL Injection 25 WEB CrAzY CrAcKeR
2006-06-07   MiraksGalerie 2.62 - 'galsecurity.lib.php?listconfigfile[0]' Remote File Inclusion 26 WEB Federico Fazzi
2006-06-07   MiraksGalerie 2.62 - 'galimage.lib.php?listconfigfile[0]' Remote File Inclusion 22 WEB Federico Fazzi
2006-05-23   AZ Photo Album Script Pro - Cross-Site Scripting 24 WEB Luny
2006-06-06   GANTTy 1.0.3 - 'index.php' Cross-Site Scripting 25 WEB Luny
2006-06-05   Alex DownloadEngine 1.4.1 - 'comments.php' SQL Injection 24 WEB ajann
2006-06-05   myNewsletter 1.1.2 - 'Username' SQL Injection 26 WEB FarhadKey
2006-06-05   Kmita FAQ 1.0 - 'index.php?catid' SQL Injection 23 WEB Luny
2006-06-05   Kmita FAQ 1.0 - 'search.php?q' Cross-Site Scripting 26 WEB Luny
2006-06-05   Bookmark4U 2.0 - '/inc/function.php?env[include_prefix]' Remote File Inclusion 23 WEB SnIpEr_SA
2006-06-05   Bookmark4U 2.0 - '/inc/common.php?env[include_prefix]' Remote File Inclusion 25 WEB SnIpEr_SA
2006-06-05   Bookmark4U 2.0 - '/inc/config.php?env[include_prefix]' Remote File Inclusion 24 WEB SnIpEr_SA
2006-06-05   Bookmark4U 2.0 - '/inc/dbase.php?env[include_prefix]' Remote File Inclusion 25 WEB SnIpEr_SA
2006-06-05   ESTsoft InternetDisk - Arbitrary File Upload / Script Execution 20 WEB Kil13r
2006-06-05   CyBoards PHP Lite 1.21/1.25 - 'Common.php' Remote File Inclusion 25 WEB SpC-x
2006-06-05   CoolForum 0.x - 'editpost.php' SQL Injection 27 WEB DarkFig
2006-06-03   XUEBook 1.0 - 'index.php' SQL Injection 26 WEB SpC-x
2006-06-03   IBWd Guestbook 1.0 - 'index.php' SQL Injection 25 WEB SpC-x
2006-06-02   phpBB 2.0.x - 'template.php' Remote File Inclusion 24 WEB Canberx
2006-06-02   LocazoList Classifieds 1.0 - 'Viewmsg.asp' SQL Injection 26 WEB ajann
2006-06-02   PHP ManualMaker 1.0 - Multiple Input Validation Vulnerabilities 20 WEB Luny
2006-06-02   DELTAScripts PHP Pro Publish 2.0 - Multiple Cross-Site Scripting Vulnerabilities 26 WEB Soot
2006-06-02   Ovidentia 5.6.x/5.8 - 'options.php?babInstallPath' Remote File Inclusion 20 WEB black-cod3
2006-06-02   Ovidentia 5.6.x/5.8 - 'posts.php?babInstallPath' Remote File Inclusion 22 WEB black-cod3
2006-06-02   Ovidentia 5.6.x/5.8 - 'search.php?babInstallPath' Remote File Inclusion 23 WEB black-cod3
2006-06-02   Ovidentia 5.6.x/5.8 - 'statart.php?babInstallPath' Remote File Inclusion 23 WEB black-cod3
2006-06-02   Ovidentia 5.6.x/5.8 - 'vacadm.php?babInstallPath' Remote File Inclusion 22 WEB black-cod3
2006-06-02   Ovidentia 5.6.x/5.8 - 'vacadma.php?babInstallPath' Remote File Inclusion 23 WEB black-cod3
2006-06-02   Ovidentia 5.6.x/5.8 - 'vacadmb.php?babInstallPath' Remote File Inclusion 23 WEB black-cod3
2006-06-02   Ovidentia 5.6.x/5.8 - 'approb.php?babInstallPath' Remote File Inclusion 23 WEB black-cod3
2006-06-02   Squirrelmail 1.4.x - 'Redirect.php' Local File Inclusion 20 WEB brokejunker
2006-06-02   TAL RateMyPic 1.0 - Multiple Input Validation Vulnerabilities 27 WEB Luny
2006-06-02   Portix-PHP 2-0.3.2 Portal - Multiple Cross-Site Scripting Vulnerabilities 25 WEB SpC-x
2006-06-02   Enigma Haber 4.2 - Cross-Site Scripting 26 WEB The_BeKiR
2006-06-01   Abarcar Realty Portal 5.1.5 - 'content.php' SQL Injection 22 WEB SpC-x
2006-06-01   Tekno.Portal - 'Bolum.php' SQL Injection 25 WEB SpC-x
2006-05-01   Hogstorps Guestbook 2.0 - Unauthorized Access 24 WEB omnipresent
2006-05-31   vBulletin 3.0.10 - 'Portal.php' SQL Injection 27 WEB SpC-x
2006-05-31   osTicket 1.x - 'Open_form.php' Remote File Inclusion 24 WEB Sweet
2005-05-31   PHP-Nuke 7.x - Multiple Remote File Inclusions 27 WEB ERNE
2006-05-31   PHPMyDesktop/Arcade 1.0 - 'index.php' Local File Inclusion 24 WEB darkgod
2006-05-31   ToendaCMS 0.7 - 'index.php' Cross-Site Scripting 22 WEB Jokubas
2006-05-30   EVA-Web 2.1.2 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 26 WEB r0t
2006-05-30   EVA-Web 2.1.2 - 'rubrique.php3?date' Cross-Site Scripting 24 WEB r0t
2006-05-30   EVA-Web 2.1.2 - 'article-album.php3?debut_image' Cross-Site Scripting 25 WEB r0t
2006-05-11   Geeklog 1.4 - Multiple Input Validation Vulnerabilities 24 WEB trueend5
2006-05-29   ASPBB 0.5.2 - 'Perform_search.asp' Cross-Site Scripting 22 WEB Mustafa Can Bjorn
2006-05-29   TikiWiki 1.9 - 'tiki-lastchanges.php' Multiple Cross-Site Scripting Vulnerabilities 26 WEB Blwood
2006-05-29   Photoalbum B&W 1.3 - 'index.php' Cross-Site Scripting 24 WEB black-code
2006-05-29   Mini-NUKE 2.3 - 'Your_Account.asp' Multiple SQL Injections 23 WEB Mustafa Can Bjorn
2006-05-27   CoolPHP - 'index.php' Cross-Site Scripting 27 WEB black-code
2006-03-11   vCard 2.9 - Multiple Cross-Site Scripting Vulnerabilities 25 WEB black-code
2006-05-27   AR-Blog 5.2 - Multiple Cross-Site Scripting Vulnerabilities 22 WEB black-code
2006-05-27   Chipmunk Directory - 'index.php' Cross-Site Scripting 30 WEB black-code
2006-05-27   Chipmunk 1.4 - 'Guestbook index.php' Cross-Site Scripting 27 WEB black-code
2006-05-27   SaPHPLesson 2.0 - 'show.php' SQL Injection 23 WEB SwEET-DeViL
2006-05-26   DoceboLms 2.0.x - 'Lang' Multiple Remote File Inclusions 26 WEB beford
2006-05-23   DoceboLms 2.0.x/3.0.x / DoceboKms 3.0.3 / Docebo CMS 3.0.x - Multiple Remote File Inclusions 25 WEB Kacper
2006-05-19   Artmedic NewsLetter 4.1 - 'Log.php' Remote Script Execution 23 WEB C.Schmitz
2006-05-19   JemWeb DownloadControl 1.0 - 'DC.php' SQL Injection 25 WEB Luny
2006-05-19   CodeAvalanche News 1.2 - 'default.asp' SQL Injection 28 WEB omnipresent
2006-05-18   ASPBB 0.5.2 - 'profile.asp?get' Cross-Site Scripting 22 WEB TeufeL
2006-05-18   ASPBB 0.5.2 - 'default.asp?action' Cross-Site Scripting 25 WEB TeufeL
2006-05-18   Cosmoshop 8.10.78/8.11.106 - 'Lshop.cgi' SQL Injection 24 WEB l0om
2006-05-17   Open Wiki 0.78 - 'ow.asp' Cross-Site Scripting 26 WEB LiNuX_rOOt
2006-05-17   BoastMachine 3.1 - 'admin.php' Cross-Site Scripting 26 WEB Yunus Emre Yilmaz
2006-05-16   Caucho Resin 3.0.17/3.0.18 - Viewfile Information Disclosure 22 WEB Joseph Pierini
2006-05-16   Sphider 1.3 - 'search.php' Multiple Cross-Site Scripting Vulnerabilities 24 WEB Soot
2006-05-16   PHPRemoteView - 'PRV.php' Multiple Cross-Site Scripting Vulnerabilities 27 WEB Soot
2006-05-15   Confixx 3.0/3.1 - 'index.php' Cross-Site Scripting 26 WEB LoK-Crew
2005-05-15   MonoChat 1.0 - HTML Injection 24 WEB X-BOY
2006-05-15   PHPODP 1.5 - 'ODP.php' Cross-Site Scripting 26 WEB Kiki
2006-05-15   RadScripts RadLance 7.0 - 'popup.php' Local File Inclusion 24 WEB Mr.CrackerZ
2013-08-26   Joomla! Component com_virtuemart 2.0.22a - SQL Injection 29 WEB Matias Fontanini
2013-08-26   Loftek Nexus 543 IP Cameras - Multiple Vulnerabilities 27 WEB Craig Young
2013-08-26   MusicBox 2.3.8 - Multiple Vulnerabilities 26 WEB DevilScreaM
2013-08-26   PhpVibe 3.1 - Multiple Vulnerabilities 25 WEB Esac
2013-08-26   mooSocial 1.3 - Multiple Vulnerabilities 25 WEB Esac
2006-05-15   PHP Script Tools PSY Auction - 'email_request.php?user_id' Cross-Site Scripting 23 WEB Luny
2006-05-15   PHP Script Tools PSY Auction - 'item.php?id' SQL Injection 25 WEB Luny
2006-05-15   Pixaria PopPhoto 3.5.4 - 'CFG[popphoto_base_path]' Remote File Inclusion 26 WEB VietMafia
2006-05-13   Gphotos 1.4/1.5 - 'index.php?rep' Traversal Arbitrary Directory Listing 22 WEB Morocco Security Team
2006-05-13   Gphotos 1.4/1.5 - 'affich.php?image' Cross-Site Scripting 23 WEB Morocco Security Team
2006-05-13   Gphotos 1.4/1.5 - 'diapo.php?rep' Cross-Site Scripting 26 WEB Morocco Security Team
2006-05-13   Gphotos 1.4/1.5 - 'index.php?rep' Cross-Site Scripting 25 WEB Morocco Security Team
2006-05-12   phpBB 2.0.20 - Unauthorized HTTP Proxy 28 WEB rgod
2006-05-12   OZJournals 1.2 - 'Vname' Cross-Site Scripting 24 WEB Kiki
2006-05-11   phpBB Chart Mod 1.1 - 'charts.php?id' Cross-Site Scripting 24 WEB sn4k3.23
2006-05-11   phpBB Chart Mod 1.1 - 'charts.php?id' SQL Injection 25 WEB sn4k3.23
2006-05-11   Vizra - 'A_Login.php' Cross-Site Scripting 27 WEB R00TT3R
2006-04-25   Cartweaver 2.16.11 - 'Results.cfm' SQL Injection 25 WEB r0t
2006-05-09   EDirectoryPro - 'Search_result.asp' SQL Injection 26 WEB Dj_Eyes
2006-05-09   EImagePro - 'view.asp?Pic' SQL Injection 26 WEB Dj_Eyes
2006-05-09   EImagePro - 'subList.asp?CatID' SQL Injection 23 WEB Dj_Eyes
2006-05-09   ISPConfig 2.2.2/2.2.3 - 'Session.INC.php' Remote File Inclusion 26 WEB ReZEN
2006-05-09   EPublisherPro 0.9.7 - 'Moreinfo.asp' Cross-Site Scripting 25 WEB Dj_Eyes
2006-05-09   MyBB 1.1.1 - 'showthread.php' SQL Injection 26 WEB Breeeeh
2006-05-09   MultiCalendars 3.0 - 'All_calendars.asp' SQL Injection 25 WEB Dj_Eyes
2006-05-08   timobraun Dynamic Galerie 1.0 - 'galerie.php?id' Cross-Site Scripting 25 WEB d4igoro
2006-05-08   timobraun Dynamic Galerie 1.0 - 'index.php?pfad' Cross-Site Scripting 21 WEB d4igoro
2006-05-08   timobraun Dynamic Galerie 1.0 - 'galerie.php?pfad' Arbitrary Directory Listing 22 WEB d4igoro