Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2011-01-30   RW-Download 4.0.6 - 'index.php' SQL Injection 27 WEB Dr.NeT
2011-01-30   vBSEO Sitemap 2.5/3.0 - Multiple Vulnerabilities 26 WEB MaXe
2011-01-30   vBSEO 3.2.2/3.5.2 - Persistent Cross-Site Scripting via LinkBacks 25 WEB MaXe
2011-01-29   MultiCMS - Local File Inclusion 27 WEB R3VAN_BASTARD
2011-01-28   PHP Script Directory Software - 'sbcat_id' SQL Injection 24 WEB h4ck3r
2011-01-28   PHP Classified ads software - 'cid' Blind SQL Injection 26 WEB h4ck3r
2011-01-28   PHP Link Directory Software - 'sbcat_id' SQL Injection 24 WEB h4ck3r
2011-01-27   comercioplus 5.6 - Multiple Vulnerabilities 22 WEB Daniel Godoy
2011-01-26   Xnova Legacies 2009.2 - Cross-Site Request Forgery 21 WEB Xploit A Day
2011-01-26   MultiPowUpload 2.1 - Arbitrary File Upload 24 WEB DIES3L
2011-01-26   sap crystal report server 2008 - Directory Traversal 25 WEB Dmitriy Chastuhin
2011-01-26   Froxlor 0.9.15 - Remote File Inclusion 26 WEB DIES3L
2011-01-26   class.upload.php 0.30 - Arbitrary File Upload 23 WEB DIES3L
2011-01-26   AWCM 2.2 Final - Local File Inclusion 24 WEB Cucura
2011-01-26   PHPDirector Game Edition - 'game.php' SQL Injection 25 WEB AtT4CKxT3rR0r1ST
2011-01-25   ab Web CMS 1.35 - Multiple Vulnerabilities 24 WEB Dr.0rYX & Cr3W-DZ
2011-01-24   Joomla! Component com_b2portfolio 1.0.0 - Multiple SQL Injections 25 WEB Salvatore Fresta
2011-01-23   PHP Link Directory 4.1.0 - Cross-Site Request Forgery (Add Admin) 23 WEB AtT4CKxT3rR0r1ST
2011-01-23   PHP Coupon Script 6.0 - 'bus' Blind SQL Injection 24 WEB h4ck3r
2011-01-22   cultbooking 2.0.4 - Multiple Vulnerabilities 26 WEB LiquidWorm
2011-01-22   phpCMS 9.0 - Blind SQL Injection 29 WEB eidelweiss
2011-01-20   PHP Lowbids - 'viewfaqs.php' Blind SQL Injection 26 WEB h4ck3r
2011-01-20   phpCMS 2008 - SQL Injection 26 WEB R3d-D3V!L
2011-01-19   PHP auctions - 'viewfaqs.php' Blind SQL Injection 25 WEB h4ck3r
2011-01-19   Simploo CMS 1.7.1 - PHP Code Execution 24 WEB David Vieira-Kurz
2011-01-18   N-13 News 3.4 - Cross-Site Request Forgery (Admin Add) 26 WEB anT!-Tr0J4n
2011-01-18   CakePHP 1.3.5/1.2.8 - 'Unserialize()' File Inclusion 27 WEB felix
2011-01-18   Joomla! Component allCineVid 1.0.0 - Blind SQL Injection 21 WEB Salvatore Fresta
2011-01-17   AneCMS 1.3 - Persistent Cross-Site Scripting 21 WEB Penguin
2011-01-17   SmoothWall Express 3.0 - Multiple Vulnerabilities 24 WEB dave b
2011-01-17   PHP-Fusion Teams Structure Infusion Addon - SQL Injection 26 WEB Saif
2011-01-16   AWBS 2.9.2 - 'cart.php' Blind SQL Injection 22 WEB ShivX
2011-01-16   Joomla! Component com_people 1.0.0 - Local File Inclusion 20 WEB ALTBTA
2011-01-16   Seo Panel 2.2.0 - Cookie-Rendered Persistent Cross-Site Scripting 23 WEB Mark Stanislav
2011-01-16   BetMore Site Suite 4 - 'bid' Blind SQL Injection 23 WEB h4ck3r
2011-01-16   MeshCMS 3.5 - Remote Code Execution 22 WEB mr_me
2011-01-15   CompactCMS 1.4.1 - Multiple Vulnerabilities 25 WEB Patrick de Brouwer
2011-01-15   glfusion CMS 1.2.1 - 'img' Persistent Cross-Site Scripting 32 WEB Saif
2011-01-15   ViArt Shop 4.0.5 - Cross-Site Request Forgery 28 WEB Or4nG.M4N
2011-01-14   Joomla! Component People 1.0.0 - SQL Injection 25 WEB Salvatore Fresta
2011-01-13   SiteScape Enterprise Forum 7 - TCL Injection 27 WEB Spencer McIntyre
2011-01-12   LifeType 1.2.10 - HTTP Referer Persistent Cross-Site Scripting 22 WEB Saif El-Sherei
2011-01-12   Joomla! 1.5.22 / 1.6.0 - 'com_mailto' Spam Mail Relay 22 WEB Jeff Channell
2011-01-11   whCMS 0.115 - Cross-Site Request Forgery 26 WEB High-Tech Bridge SA
2011-01-11   Cambio 0.5a - Cross-Site Request Forgery 19 WEB High-Tech Bridge SA
2011-01-11   diafan.cms 4.3 - Multiple Vulnerabilities 21 WEB High-Tech Bridge SA
2011-01-11   vam shop 1.6 - Multiple Vulnerabilities 19 WEB High-Tech Bridge SA
2011-01-11   energine 2.3.8 - Multiple Vulnerabilities 23 WEB High-Tech Bridge SA
2011-01-11   Extcalendar 2 - 'calendar.php' SQL Injection 22 WEB Lagripe-Dz & Mca-Crb
2011-01-10   Lotus CMS Fraise 3.0 - Local File Inclusion / Remote Code Execution 25 WEB mr_me
2011-01-10   TinyBB 1.2 - SQL Injection 27 WEB Aodrulez
2011-01-10   Maximus CMS 1.1.2 - 'FCKeditor' Arbitrary File Upload 23 WEB eidelweiss
2011-01-09   Joomla! Plugin Captcha 4.5.1 - Local File Disclosure 22 WEB dun
2011-01-08   Zwii 2.1.1 - Remote File Inclusion 21 WEB Abdi Mohamed
2011-01-08   WordPress Plugin mingle forum 1.0.26 - Multiple Vulnerabilities 22 WEB Charles Hooper
2011-01-08   sahana agasti 0.6.5 - Multiple Vulnerabilities 25 WEB dun
2011-01-08   Elxis CMS 2009.2 - Remote File Inclusion 23 WEB n0n0x
2011-01-08   axdcms-0.1.1 - Local File Inclusion 24 WEB n0n0x
2011-01-07   openSite 0.2.2 Beta - Local File Inclusion 24 WEB n0n0x
2011-01-06   PHP MicroCMS 1.0.1 - Cross-Site Request Forgery / Cross-Site Scripting 22 WEB High-Tech Bridge SA
2011-01-06   Phenotype CMS 3.0 - SQL Injection 21 WEB High-Tech Bridge SA
2011-01-06   phpMySport 1.4 - SQL Injection / Authentication Bypass / Full Path Disclosure 20 WEB High-Tech Bridge SA
2011-01-06   F3Site 2011 alfa 1 - Cross-Site Scripting / Cross-Site Request Forgery 22 WEB High-Tech Bridge SA
2011-01-06   Openfire 3.6.4 - Multiple Cross-Site Request Forgery Vulnerabilities 22 WEB Riyaz Ahemed Walikar
2011-01-06   Ignition 1.3 - 'comment.php' Local File Inclusion 24 WEB n0n0x
2011-01-05   Concrete CMS 5.4.1.1 - Cross-Site Scripting / Remote Code Execution 22 WEB mr_me
2011-01-05   PhpGedView 4.2.3 - Local File Inclusion 23 WEB dun
2011-01-05   Nucleus 3.61 - Multiple Remote File Inclusions 21 WEB n0n0x
2011-01-04   S40 CMS 0.4.1 - Cross-Site Request Forgery (Change Admin Password) 25 WEB pentesters.ir
2011-01-03   Sahana Agasti 0.6.4 - Multiple Remote File Inclusions 20 WEB n0n0x
2011-01-02   amoeba CMS 1.01 - Multiple Vulnerabilities 25 WEB mr_me
2011-01-02   YourTube 1.0 - Cross-Site Request Forgery (Add User) 27 WEB AtT4CKxT3rR0r1ST
2011-01-02   GALLARIFIC PHP Photo Gallery Script - 'gallery.php' SQL Injection 28 WEB AtT4CKxT3rR0r1ST
2011-01-01   Tech Shop Technote 7 - SQL Injection 25 WEB MaJ3stY
2011-01-01   Sahana Agasti 0.6.4 - SQL Injection 26 WEB dun
2011-01-01   ChurchInfo 1.2.12 - SQL Injection 26 WEB dun
2011-01-01   KLINK - SQL Injection 26 WEB Mauro Rossi & Andres Gomez
2010-12-30   Ignition 1.3 - Remote Code Execution 22 WEB cOndemned
2010-12-30   Ignition 1.3 - 'page.php' Local File Inclusion 22 WEB cOndemned
2010-12-29   LightNEasy 3.2.2 - Multiple Vulnerabilities 24 WEB High-Tech Bridge SA
2010-12-29   WordPress Core 3.0.3 - Persistent Cross-Site Scripting (Internet Explorer 6/7 / NS8.1) 26 WEB Saif
2010-12-29   Discovery TorrentTrader 2.6 - Multiple Vulnerabilities 22 WEB EsS4ndre
2010-12-29   TYPO3 - Arbitrary File Retrieval 24 WEB ikki
2010-12-29   DGNews 2.1 - SQL Injection 22 WEB kalashnikov
2010-12-29   Siteframe CMS 3.2.3 - 'user.php' SQL Injection 27 WEB AnGrY BoY
2010-12-29   PiXie CMS 1.04 - Multiple Cross-Site Request Forgery Vulnerabilities 25 WEB Ali Raheem
2010-12-29   LoveCMS 1.6.2 - Cross-Site Request Forgery / Code Injection 27 WEB hiphop
2010-12-29   PHP-AddressBook 6.2.4 - 'group.php' SQL Injection 24 WEB hiphop
2010-12-29   DzTube - SQL Injection 25 WEB errnick qwe
2010-12-29   kaibb 1.0.1 - Multiple Vulnerabilities 20 WEB High-Tech Bridge SA
2010-12-29   News Script PHP Pro - 'FCKeditor' Arbitrary File Upload 23 WEB Net.Edit0r
2010-12-29   ardeaCore 2.25 - PHP Framework Remote File Inclusion 21 WEB n0n0x
2010-12-28   OpenClassifieds 1.7.0.3 - Chained: Captcha Bypass / SQL Injection / Persistent Cross-Site Scripting 29 WEB Michael Brooks
2010-12-27   Web@all 1.1 - Remote Admin Settings Change 21 WEB Giuseppe D'Inverno
2010-12-27   OpenEMR 3.2.0 - SQL Injection / Cross-Site Scripting 22 WEB blake
2010-12-27   pecio CMS 2.0.5 - Cross-Site Request Forgery (Add Admin) 23 WEB P0C T34M
2010-12-26   Interact 2.4.1 - SQL Injection 22 WEB IR Security
2010-12-25   LoveCMS 1.6.2 Final - Multiple Local File Inclusions 21 WEB cOndemned
2010-12-25   Social Engine 4.x (Music Plugin) - Arbitrary File Upload 24 WEB MyDoom
2010-12-25   Vacation Rental Script 4.0 - Cross-Site Request Forgery 25 WEB OnurTURKESHAN
2010-12-25   Joomla! Component com_idoblog - SQL Injection 24 WEB NOCKAR1111
2010-12-25   Traidnt Up 3.0 - Cross-Site Request Forgery 23 WEB P0C T34M
2010-12-25   openauto 1.6.3 - Multiple Vulnerabilities 25 WEB Michael Brooks
2010-12-25   Pligg CMS 1.1.2 - Blind SQL Injection / Cross-Site Scripting 25 WEB Michael Brooks
2010-12-24   CubeCart 3.0.6 - Cross-Site Request Forgery (Add Admin) 25 WEB P0C T34M
2010-12-24   SquareCMS 0.3.1 - 'post.php' SQL Injection 23 WEB cOndemned
2010-12-24   Joomla! Component com_xmovie 1.0 - Local File Inclusion 26 WEB KelvinX
2010-12-24   iDevSpot iDevCart 1.10 - Multiple Local File Inclusions 22 WEB v3n0m
2010-12-23   CubeCart 3.0.4 - SQL Injection 23 WEB Dr.NeT
2010-12-23   Joomla! Component com_adsmanager - Remote File Inclusion 22 WEB AtT4CKxT3rR0r1ST
2010-12-23   Joomla! Component com_ponygallery - Remote File Inclusion 23 WEB AtT4CKxT3rR0r1ST
2010-12-23   IPN Development Handler 2.0 - Multiple Vulnerabilities 21 WEB AtT4CKxT3rR0r1ST
2010-12-23   Ypninc Realty Classifieds - SQL Injection 23 WEB Br0ly
2010-12-23   Built2Go PHP Shopping - SQL Injection 23 WEB Br0ly
2010-12-23   D-Link WBR-1310 - Authentication Bypass 29 WEB Craig Heffner
2010-12-22   WordPress Plugin Accept Signups 0.1 - Cross-Site Scripting 23 WEB clshack
2010-12-22   Mitel AWC - Command Execution 21 WEB Procheckup
2010-12-21   jobappr 1.4 - Multiple Vulnerabilities 21 WEB giudinvx
2010-12-21   Joomla! Component com_xgallery 1.0 - Local File Inclusion 21 WEB KelvinX
2010-12-21   html-edit CMS - Multiple Vulnerabilities 24 WEB High-Tech Bridge SA
2010-12-21   Habari Blog - Multiple Vulnerabilities 24 WEB High-Tech Bridge SA
2010-12-21   Injader CMS - Multiple Vulnerabilities 20 WEB High-Tech Bridge SA
2010-12-21   Hycus CMS - Multiple Vulnerabilities 23 WEB High-Tech Bridge SA
2010-12-21   S9Y Serendipity 1.5.4 - Arbitrary File Upload 19 WEB pentesters.ir
2010-12-20   Vacation Rental Script 4.0 - Arbitrary File Upload 23 WEB Br0ly