Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2011-10-16   Ruubikcms 1.1.0 - '/extra/image.php' Local File Inclusion 2 WEB Sangyun YOO
2011-10-15   WordPress Plugin Photo Album Plus 4.1.1 - SQL Injection 2 WEB Skraps
2011-10-14   WordPress Plugin Contact Form 2.7.5 - SQL Injection 2 WEB Skraps
2011-10-12   WordPress Plugin GD Star Rating 1.9.10 - SQL Injection 2 WEB Miroslav Stampar
2011-10-12   MyBB MyStatus 3.1 - SQL Injection 2 WEB Mario_Vs
2011-10-11   WordPress Plugin WP-SpamFree Spam Plugin - SQL Injection 2 WEB cheki
2011-10-10   MyBB Forum Userbar Plugin (Userbar 2.2) - SQL Injection 1 WEB Mario_Vs
2011-10-10   MyBB Advanced Forum Signatures - 'afsignatures-2.0.4' SQL Injection 1 WEB Mario_Vs
2011-10-10   POSH - Multiple Vulnerabilities 2 WEB Crashfr
2011-10-10   cotonti CMS 0.9.4 - Multiple Vulnerabilities 1 WEB LiquidWorm
2011-10-10   Roundcube Webmail 0.3.1 - Cross-Site Request Forgery / SQL Injection 2 WEB Smith Falcon
2011-10-10   6kbbs - Multiple Vulnerabilities 1 WEB labs insight
2011-10-10   Filmis 0.2 Beta - Multiple Vulnerabilities 1 WEB M.Jock3R
2011-10-10   KaiBB 2.0.1 - SQL Injection 0 WEB Stefan Schurtz
2011-10-10   openEngine 2.0 - Multiple Blind SQL Injection Vulnerabilities 2 WEB Stefan Schurtz
2011-10-09   GotoCode Online Classifieds - Multiple Vulnerabilities 2 WEB Nathaniel Carew
2011-10-09   MyBB 1.6.4 - Backdoor Access (Metasploit) 2 WEB Metasploit
2011-10-09   Snortreport - '/nmap.php' / 'nbtscan.php' Remote Command Execution (Metasploit) 2 WEB Metasploit
2011-10-08   NexusPHP 1.5 - SQL Injection 1 WEB flyh4t
2011-10-08   Joomla! Component Time Returns 2.0 - SQL Injection 2 WEB kaMtiEz
2011-10-08   BOOKSolved 1.2.2 - Remote File Disclosure 3 WEB bd0rk
2011-10-07   Spreecommerce 0.60.1 - Arbitrary Command Execution (Metasploit) 2 WEB Metasploit
2011-10-07   EFront 3.6.9 Community Edition - Multiple Vulnerabilities 1 WEB IHTeam
2011-10-07   URL Shortener Script 1.0 - SQL Injection 0 WEB M.Jock3R
2011-10-06   Tsmim Lessons Library - 'show.php' SQL Injection 2 WEB M.Jock3R
2011-10-04   CF Image Hosting Script 1.3.82 - File Disclosure 2 WEB bd0rk
2011-10-04   Easy Hosting Control Panel - Admin Authentication Bypass 2 WEB Jasman
2011-10-04   Concrete5 CMS < 5.4.2.1 - Multiple Vulnerabilities 2 WEB Ryan Dewhurst
2011-10-03   JBoss & JMX Console - Misconfigured Deployment Scanner 2 WEB y0ug
2011-10-02   CA Total Defense Suite - reGenerateReports Stored procedure SQL Injection (Metasploit) 2 WEB Metasploit
2011-10-03   GotoCode Online Bookstore - Multiple Vulnerabilities 2 WEB Nathaniel Carew
2011-10-02   Vivvo CMS - Local File Inclusion 2 WEB JaBrOtxHaCkEr
2011-10-02   Banana Dance CMS and Wiki - SQL Injection 2 WEB Aodrulez
2011-09-30   Feed on Feeds 0.5 - Remote PHP Code Injection 2 WEB EgiX
2011-09-30   Marinet CMS - 'room.php' Blind SQL Injection 2 WEB BHG Security Center
2011-09-30   WordPress Plugin Bannerize 2.8.7 - SQL Injection 2 WEB Miroslav Stampar
2011-09-29   Typo3 - File Disclosure 1 WEB Number 7
2011-09-28   timelive time and expense tracking 4.1.1 - Multiple Vulnerabilities 2 WEB Nathaniel Carew
2011-09-27   redmind Online-Shop / E-Commerce-System - SQL Injection 2 WEB Indonesian BlackCoder
2011-09-27   Omnidocs - Multiple Vulnerabilities 2 WEB Sohil Garg
2011-09-27   Jarida 1.0 - Multiple Vulnerabilities 2 WEB Ptrace Security
2011-09-27   WordPress Plugin Mingle Forum 1.0.31 - SQL Injection 2 WEB Miroslav Stampar
2011-09-26   WordPress Plugin CevherShare 2.0 - SQL Injection 1 WEB bd0rk
2011-09-24   WordPress Plugin AdRotate 3.6.5 - SQL Injection 2 WEB Miroslav Stampar
2011-09-24   WordPress Plugin Link Library 5.2.1 - SQL Injection 2 WEB Miroslav Stampar
2011-09-22   JAKCMS PRO 2.2.5 - Arbitrary File Upload 3 WEB EgiX
2011-09-20   Netgear Wireless Cable Modem Gateway - Authentication Bypass / Cross-Site Request Forgery 2 WEB Sense of Security
2011-09-20   SharePoint 2007/2010 and DotNetNuke < 6 - File Disclosure (via XEE) 1 WEB Nicolas Gregoire
2011-09-19   Multiple WordPress Plugins - 'timthumb.php' File Upload 1 WEB Ben Schmidt
2011-09-19   Cisco TelePresence SOS-11-010 - Multiple Vulnerabilities 2 WEB Sense of Security
2011-09-19   WordPress Plugin Relocate Upload 0.14 - Remote File Inclusion 2 WEB Ben Schmidt
2011-09-19   WordPress Plugin Mini Mail Dashboard Widget 1.36 - Remote File Inclusion 2 WEB Ben Schmidt
2011-09-19   WordPress Plugin Zingiri Web Shop 2.2.0 - Remote File Inclusion 2 WEB Ben Schmidt
2011-09-19   WordPress Plugin Mailing List 1.3.2 - Remote File Inclusion 2 WEB Ben Schmidt
2011-09-19   WordPress Plugin Disclosure Policy 1.0 - Remote File Inclusion 1 WEB Ben Schmidt
2011-09-19   WordPress Plugin Livesig 0.4 - Remote File Inclusion 1 WEB Ben Schmidt
2011-09-19   WordPress Plugin Annonces 1.2.0.0 - Remote File Inclusion 1 WEB Ben Schmidt
2011-09-19   WordPress Plugin WPEasyStats 1.8 - Remote File Inclusion 1 WEB Ben Schmidt
2011-09-19   WordPress Plugin AllWebMenus 1.1.3 - Remote File Inclusion 1 WEB Ben Schmidt
2011-09-19   WordPress Plugin TheCartPress 1.1.1 - Remote File Inclusion 2 WEB Ben Schmidt
2011-09-19   Toko Lite CMS 1.5.2 - 'edit.php' HTTP Response Splitting 2 WEB LiquidWorm
2011-09-19   WordPress Plugin Filedownload 0.1 - 'download.php' Remote File Disclosure 2 WEB Septemb0x
2011-09-18   WordPress Plugin Count per Day 2.17 - SQL Injection 2 WEB Miroslav Stampar
2011-09-17   iManager Plugin 1.2.8 - 'd' Arbitrary File Deletion 2 WEB LiquidWorm
2011-09-17   iManager Plugin 1.2.8 - 'lang' Local File Inclusion 2 WEB LiquidWorm
2011-09-17   iBrowser Plugin 1.4.1 - 'lang' Local File Inclusion 2 WEB LiquidWorm
2011-09-15   Nortel Contact Recording Centralized Archive 6.5.1 - SQL Injection 2 WEB rgod
2011-09-14   Cogent DataHub 7.1.1.63 - Source Disclosure 2 WEB Luigi Auriemma
2011-09-14   WordPress Plugin E-Commerce 3.8.6 - SQL Injection 3 WEB Miroslav Stampar
2011-09-13   dotProject 2.1.5 - SQL Injection 1 WEB sherl0ck_
2011-09-13   WordPress Plugin Forum Server 1.7 - SQL Injection 2 WEB Miroslav Stampar
2011-09-12   AstroCMS - Multiple Vulnerabilities 2 WEB brain[pillow]
2011-09-12   Slaed CMS - Code Execution 2 WEB brain[pillow]
2011-09-12   NetCat CMS - Multiple Vulnerabilities 2 WEB brain[pillow]
2011-09-12   PHP Support Tickets 2.2 - Code Execution 1 WEB brain[pillow]
2011-09-12   TomatoCart 1.1 - (Authenticated) Local File Inclusion 2 WEB brain[pillow]
2011-09-10   WordPress Plugin Tune Library 2.17 - SQL Injection 1 WEB Miroslav Stampar
2011-09-09   WordPress Plugin Event Registration 5.44 - SQL Injection 2 WEB serk
2011-09-09   Xataface WebAuction and Xataface Librarian DB - Multiple Vulnerabilities 2 WEB SecPod Research
2011-09-09   MYRE Real Estate Software - Multiple Vulnerabilities 2 WEB SecPod Research
2011-09-09   WordPress Plugin A to Z Category Listing 1.3 - SQL Injection 1 WEB Miroslav Stampar
2011-09-09   WordPress Plugin WP-Filebase Download Manager 0.2.9 - SQL Injection 2 WEB Miroslav Stampar
2011-09-08   OpenCart 1.5.1.2 - Blind SQL Injection 3 WEB RiRes Walid
2011-09-08   WordPress Plugin 1 Flash Gallery 1.30 < 1.5.7a - Arbitrary File Upload (Metasploit) 3 WEB Ben Schmidt
2011-09-08   AM4SS 1.2 - Cross-Site Request Forgery (Add Admin) 2 WEB red virus
2011-09-08   WordPress Plugin Community Events 1.2.1 - SQL Injection 2 WEB Miroslav Stampar
2011-09-08   WordPress Plugin Paid Downloads 2.01 - SQL Injection 2 WEB Miroslav Stampar
2011-09-07   WordPress Plugin Eventify - Simple Events 1.7.f SQL Injection 2 WEB Miroslav Stampar
2011-09-07   WordPress Plugin SCORM Cloud 1.0.6.6 - SQL Injection 2 WEB Miroslav Stampar
2011-09-06   PlaySms 0.9.5.2 - Remote File Inclusion 2 WEB NoGe
2011-09-06   WordPress Plugin KNR Author List Widget 2.0.0 - SQL Injection 2 WEB Miroslav Stampar
2011-09-06   WordPress Plugin post highlights 2.2 - SQL Injection 1 WEB Miroslav Stampar
2011-09-06   WordPress Plugin Tweet Old Post 3.2.5 - SQL Injection 3 WEB sherl0ck_
2011-09-05   Webmobo WB News System - Blind SQL Injection 1 WEB Eyup CELIK
2011-09-05   Elite Gaming Ladders 3.6 - SQL Injection 2 WEB J.O
2011-09-05   WordPress Plugin oQey Gallery 0.4.8 - SQL Injection 2 WEB Miroslav Stampar
2011-09-04   WordPress Plugin Zotpress 4.4 - SQL Injection 1 WEB Miroslav Stampar
2011-09-03   openads-2.0.11 - Remote File Inclusion 1 WEB HaCkErS eV!L
2011-09-03   WordPress Plugin Facebook Opengraph Meta 1.0 - SQL Injection 2 WEB Miroslav Stampar
2011-09-02   WordPress Plugin VideoWhisper Video Presentation 1.1 - SQL Injection 3 WEB Miroslav Stampar
2011-09-01   WordPress Plugin SearchAutocomplete 1.0.8 - SQL Injection 2 WEB Miroslav Stampar
2011-09-01   NetSaro Enterprise Messenger 2.0 - Multiple Vulnerabilities 2 WEB Narendra Shinde
2011-09-01   WordPress Plugin Bannerize 2.8.6 - SQL Injection 1 WEB Miroslav Stampar
2011-09-01   WordPress Plugin Donation 1.0 - SQL Injection 2 WEB Miroslav Stampar
2011-08-31   WordPress Plugin image Gallery with Slideshow 1.5 - Multiple Vulnerabilities 2 WEB Hrvoje Spoljar
2011-08-31   WordPress Plugin grapefile 1.1 - Arbitrary File Upload 2 WEB Hrvoje Spoljar
2011-08-30   WordPress Plugin Couponer 1.2 - SQL Injection 2 WEB Miroslav Stampar
2011-08-30   WordPress Plugin PureHTML 1.0.0 - SQL Injection 2 WEB Miroslav Stampar
2011-08-30   WordPress Plugin yolink Search 1.1.4 - SQL Injection 2 WEB Miroslav Stampar
2011-08-30   WordPress Plugin Audio Gallery Playlist 0.12 - SQL Injection 2 WEB Miroslav Stampar
2011-08-30   WordPress Plugin Crawl Rate Tracker 2.0.2 - SQL Injection 3 WEB Miroslav Stampar
2011-08-30   FileBox File Hosting & Sharing Script 1.5 - SQL Injection 2 WEB SubhashDasyam
2011-08-30   vAuthenticate 3.0.1 - Authentication Bypass 1 WEB bd0rk
2011-08-30   WordPress Plugin Event Registration 5.4.3 - SQL Injection 1 WEB Miroslav Stampar
2011-08-30   WordPress Plugin Advertizer 1.0 - SQL Injection 1 WEB Miroslav Stampar
2011-08-29   WordPress Plugin iCopyright(R) Article Tools 1.1.4 - SQL Injection 2 WEB Miroslav Stampar
2011-08-29   WordPress Plugin SH Slideshow 3.1.4 - SQL Injection 3 WEB Miroslav Stampar
2011-08-28   LifeSize Room - Command Injection (Metasploit) 2 WEB Spencer McIntyre
2011-08-28   Omnistar Mailer - Multiple Vulnerabilities 2 WEB Sid3^effects
2011-08-28   WordPress Plugin mySTAT 2.6 - SQL Injection 2 WEB Miroslav Stampar
2011-08-28   WordPress Plugin Profiles 2.0 RC1 - SQL Injection 2 WEB Miroslav Stampar
2011-08-28   WordPress Plugin Evarisk 5.1.3.6 - SQL Injection 2 WEB Miroslav Stampar
2011-08-28   WordPress Plugin Facebook Promotions 1.3.3 - SQL Injection 2 WEB Miroslav Stampar
2011-08-28   Joomla! Component mod_simpleFileLister 1.0 - Directory Traversal 3 WEB evilsocket
2011-08-28   Joomla! Component joomlacontenteditor 2.0.10 - Multiple Vulnerabilities 3 WEB AmnPardaz