Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2010-11-30   Pandora Fms 3.1 - SQL Injection 9 WEB Juan Galiana Lara
2010-11-30   Pandora Fms 3.1 - OS Command Injection 10 WEB Juan Galiana Lara
2010-11-30   Pandora FMS 3.1 - Authentication Bypass 9 WEB Juan Galiana Lara
2010-11-30   Duhok Forum 1.1 - Arbitrary File Upload 9 WEB BrOx-Dz
2010-11-30   Link Protect 1.2 - Persistent Cross-Site Scripting 10 WEB Shichemt Alen
2010-11-30   Orbis CMS 1.0.2 - Arbitrary File Upload 9 WEB Mark Stanislav
2010-11-29   Diferior 8.03 - Multiple Cross-Site Scripting Vulnerabilities 10 WEB High-Tech Bridge SA
2010-11-29   MicroNetSoft RV Dealer Website - 'search.asp' / showAlllistings.asp' SQL Injection 9 WEB underground-stockholm.com
2010-11-28   Site2Nite Big Truck Broker - 'txtSiteId' SQL Injection 10 WEB underground-stockholm.com
2010-11-28   Skeletonz CMS - Persistent Cross-Site Scripting 10 WEB Jbyte
2010-11-27   MemHT Portal 4.0.1 - 'User Agent' Persistent Cross-Site Scripting 10 WEB ZonTa
2010-11-27   Jurpopage 0.2.0 - SQL Injection 8 WEB Sudden_death
2010-11-25   Frog CMS 0.9.5 - Multiple Vulnerabilities 10 WEB High-Tech Bridge SA
2010-11-25   Wolf CMS 0.6.0b - Multiple Vulnerabilities 8 WEB High-Tech Bridge SA
2010-11-25   SiteEngine 7.1 - SQL Injection 9 WEB Beach
2010-11-25   JDownloader Webinterface - Source Code Disclosure 11 WEB Sil3nt_Dre4m
2010-11-25   Joomla! Component JE Ajax Event Calendar - SQL Injection 8 WEB ALTBTA
2010-11-24   Free Simple Software - SQL Injection 9 WEB Mark Stanislav
2010-11-24   WSN Links - SQL Injection 8 WEB Mark Stanislav
2010-11-24   phpvidz 0.9.5 - Administrative Credentials Disclosure 7 WEB Michael Brooks
2010-11-24   Getsimple CMS 2.01 < 2.02 - Administrative Credentials Disclosure 8 WEB Michael Brooks
2010-11-23   PHPmotion 1.62 - 'FCKeditor' Arbitrary File Upload 8 WEB trycyber
2010-11-22   Acidcat CMS 3.3 - 'FCKeditor' Arbitrary File Upload 8 WEB Net.Edit0r
2010-11-22   JCMS 2010 - File Download 9 WEB Beach
2010-11-22   jSchool Advanced - Blind SQL Injection 9 WEB Don Tukulesto
2010-11-22   AuraCMS 1.62 - 'pfd.php' SQL Injection 8 WEB Don Tukulesto
2010-11-21   cPanel 11.x - Cross-Site Request Forgery (Edit E-mail) 8 WEB Mon7rF .
2010-11-21   sahitya graphics CMS - Multiple Vulnerabilities 8 WEB Dr.0rYX & Cr3W-DZ
2010-11-20   vBulletin 4.0.8 PL1 - Cross-Site Scripting Filter Bypass within Profile Customization 9 WEB MaXe
2010-11-20   S_CMS 2.5 - Multiple Vulnerabilities 9 WEB LordTittiS
2010-11-20   Joomla! Component Jimtawl 1.0.2 - Local File Inclusion 9 WEB Mask_magicianz
2010-11-19   DVD Rental Software - SQL Injection 8 WEB JaMbA
2010-11-19   Plogger Gallery 1.0 - Cross-Site Request Forgery (Change Admin Password) 8 WEB Or4nG.M4N
2010-11-19   Arabian YouTube Script - Blind SQL Injection 8 WEB R3d-D3V!L
2010-11-19   PHPGallery 1.1.0 - Cross-Site Request Forgery 7 WEB Or4nG.M4N
2010-11-19   ViArt Shop 4.0.5 - Multiple Vulnerabilities 6 WEB Ariko-Security
2010-11-18   Fozzcom Shopping < 7.94 / < 8.04 - Multiple Vulnerabilities 7 WEB Dr.0rYX & Cr3W-DZ
2010-11-18   Joomla! Component com_mtree 2.1.6 - Overwrite Cross-Site Request Forgery 7 WEB jdc
2010-11-18   chCounter 3.1.3 - SQL Injection 7 WEB Matias Fontanini
2010-11-18   WebRCSdiff 0.9 - 'viewver.php' Remote File Inclusion 8 WEB FL0RiX
2010-11-17   Front Accounting 2.3RC2 - Multiple SQL Injections 6 WEB Juan Manuel Garcia
2010-11-17   Front Accounting 2.3RC2 - Multiple Persistent Cross-Site Scripting Vulnerabilities 7 WEB Juan Manuel Garcia
2010-11-17   Sitefinity CMS - 'ASP.NET' Arbitrary File Upload 5 WEB Net.Edit0r
2010-11-16   CompactCMS 1.4.1 - SQL Injection 7 WEB High-Tech Bridge SA
2010-11-16   ClanSphere 2010.0 Final - Multiple Vulnerabilities 7 WEB High-Tech Bridge SA
2010-11-16   IceBB 1.0-rc10 - Multiple Vulnerabilities 7 WEB High-Tech Bridge SA
2010-11-16   openEngine 2.0 100226 - Local File Inclusion / Cross-Site Scripting 7 WEB SecPod Research
2010-11-16   Joomla! Component com_maianmedia - SQL Injection 7 WEB v3n0m
2010-11-16   BPRealestate Real Estate - Authentication Bypass 7 WEB v3n0m
2010-11-16   BPConferenceReporting Web Reporting - Authentication Bypass 8 WEB v3n0m
2010-11-16   BPDirectory Business Directory - Authentication Bypass 8 WEB v3n0m
2010-11-16   BPAffiliate Affiliate Tracking - Authentication Bypass 8 WEB v3n0m
2010-11-16   vBulletin 4.0.8 - Persistent Cross-Site Scripting via Profile Customization 8 WEB MaXe
2010-11-15   Joomla! Component com_alfurqan15x - SQL Injection 8 WEB kaMtiEz
2010-11-15   Nuked-klaN Module Boutique - Blind SQL Injection 9 WEB [AR51]Kevinos
2010-11-15   Web Wiz NewsPad Express Edition 1.03 - Database File Disclosure 8 WEB keracker
2010-11-15   Chameleon Social Networking Software - Persistent Cross-Site Scripting 8 WEB Dr-mosta
2010-11-14   BSI Advance Hotel Booking System 1.0 - SQL Injection 8 WEB v3n0m
2010-11-13   Pre Online Tests Generator Pro - SQL Injection 8 WEB Cru3l.b0y
2010-11-13   Pre ADS Portal - Authentication Bypass 6 WEB Cru3l.b0y
2010-11-13   OneOrZero AIms 2.6.0 Members Edition - Multiple Vulnerabilities 7 WEB Valentin
2010-11-13   Joomla! Component CCBoard 1.2-RC - Multiple Vulnerabilities 7 WEB jdc
2010-11-13   Webmatic - 'index.php' SQL Injection 8 WEB v3n0m
2010-11-13   EasyJobPortal - Arbitrary File Upload 7 WEB MeGo
2010-11-13   Invision Power Board 3 - 'search_app' SQL Injection 7 WEB Lord Tittis3000
2010-11-13   WordPress Plugin Event Registration 5.32 - SQL Injection 8 WEB k3m4n9i
2010-11-13   DBSite - SQL Injection 8 WEB God_Of_Pain
2010-11-13   AWCM 2.1 Final - Remote File Inclusion 8 WEB LoSt.HaCkEr
2010-11-13   Build a Niche Store 3.0 - 'BANS' Authentication Bypass 8 WEB ThunDEr HeaD
2010-11-13   Camtron CMNC-200 IP Camera - Undocumented Default Accounts 8 WEB Trustwave's SpiderLabs
2010-11-13   Camtron CMNC-200 IP Camera - Authentication Bypass 8 WEB Trustwave's SpiderLabs
2010-11-12   Joomla! Component JSupport 1.5.6 - SQL Injection 8 WEB Valentin
2010-11-12   Joomla! Component JSupport 1.5.6 - Cross-Site Scripting 8 WEB Valentin
2010-11-12   Woltlab Burning Board 2.3.4 - File Disclosure 8 WEB sfx
2010-11-12   ASPilot Pilot Cart 7.3 - 'newsroom.asp' SQL Injection 8 WEB Daikin
2010-11-12   Metinfo 3.0 - Multiple Vulnerabilities 6 WEB anT!-Tr0J4n
2010-11-11   E-Xoopport 3.1 - 'display.php?katid' SQL Injection 7 WEB Vis Intelligendi
2010-11-11   XT:Commerce < 3.04 SP2.1 - Cross-Site Scripting 7 WEB Philipp Niedziela
2010-11-11   Landesk - OS command Injection 6 WEB Aureliano Calvo
2010-11-10   eBlog 1.7 - Multiple SQL Injections 7 WEB Salvatore Fresta
2010-11-10   FCKEditor Core 2.x 2.4.3 - 'FileManager upload.php' Arbitrary File Upload 7 WEB grabz
2010-11-09   IBM OmniFind - Cross-Site Request Forgery 8 WEB Fatih Kilic
2010-11-09   osCommerce 2.2 - Cross-Site Request Forgery 8 WEB daandeveloper33
2010-11-09   Joomla! Component com_img - Local File Inclusion 8 WEB CoBRa_21
2010-11-09   Joomla! Component com_markt - SQL Injection 8 WEB CoBRa_21
2010-11-09   Joomla! Component btg_oglas - HTML / Cross-Site Scripting Injection 8 WEB CoBRa_21
2010-11-09   Joomla! Component JQuarks4s 1.0.0 - Blind SQL Injection 9 WEB Salvatore Fresta
2010-11-09   Woltlab Burning Board Userlocator 2.5 - SQL Injection 8 WEB Easy Laster
2010-11-08   Joomla! Component ProDesk 1.5 - Local File Inclusion 8 WEB d3v1l
2010-11-08   Seo Panel 2.1.0 - Critical File Disclosure 8 WEB MaXe
2010-11-08   Joomla! Component com_clanlist - SQL Injection 8 WEB CoBRa_21
2010-11-08   xt:Commerce Shopsoftware 3/4 - 'FCKeditor' Arbitrary File Upload 8 WEB Net.Edit0r
2010-11-08   Joomla! Component com_clan - SQL Injection 8 WEB AtT4CKxT3rR0r1ST
2010-11-08   Joomla! Component Cookex Agency CKForms - Local File Inclusion 6 WEB ALTBTA
2010-11-07   Punbb 1.3.4 - Multiple Full Path Disclosures 8 WEB SYSTEM_OVERIDE
2010-11-07   DeluxeBB 1.3 - Private Information Disclosure 8 WEB Vis Intelligendi
2010-11-07   ASPilot Pilot Cart 7.3 - Multiple Vulnerabilities 8 WEB Ariko-Security
2010-11-06   phpCow 2.1 - File Inclusion 8 WEB ViRuS_HiMa
2010-11-06   Joomla! Component com_forme 1.0.5 - Multiple Vulnerabilities 8 WEB jdc
2010-11-06   Zeeways Adserver - Multiple Vulnerabilities 8 WEB Valentin
2010-11-06   MassMirror Uploader - Remote File Inclusion 8 WEB ViciOuS
2010-11-06   Joomla! Component com_dcnews - Local File Inclusion 8 WEB Th3 RDX
2010-11-06   Joomla! Component com_connect - Local File Inclusion 8 WEB Th3 RDX
2010-11-05   Joomla! Component ccInvoices - SQL Injection 8 WEB FL0RiX
2010-11-04   JBI CMS - SQL Injection 8 WEB Cru3l.b0y
2010-11-04   MiniBB 2.5 - SQL Injection 10 WEB High-Tech Bridge SA
2010-11-04   JAF CMS 4.0 rc2 - Multiple Vulnerabilities 8 WEB High-Tech Bridge SA
2010-11-04   SweetRice 0.6.7 - Multiple Vulnerabilities 8 WEB High-Tech Bridge SA
2010-11-04   eoCMS 0.9.04 - Multiple Vulnerabilities 8 WEB High-Tech Bridge SA
2010-11-03   Zen Cart 1.3.9h - Local File Inclusion 8 WEB Salvatore Fresta
2010-11-03   digiSHOP 2.0.2 - SQL Injection 6 WEB Silic0n
2010-11-03   eLouai's Force Download Script - Arbitrary Local File Download 7 WEB v1R00Z
2010-11-02   Dolphin 7.0.3 - Multiple Vulnerabilities 6 WEB anT!-Tr0J4n
2010-11-02   Site2Nite Business eListings - SQL Injection 8 WEB L0rd CrusAd3r
2010-11-02   Digger Solutions NewsLetter Open Source - SQL Injection 6 WEB L0rd CrusAd3r
2010-11-02   Online Work Order System (OWOS) Professional Edition - Authentication Bypass 7 WEB L0rd CrusAd3r
2010-11-02   Comrie Software Pay Roll Time Sheet & Punch Card - Authentication Bypass 7 WEB L0rd CrusAd3r
2010-11-02   Site2Ntite Vacation Rental (VRBO) Listings - SQL Injection 7 WEB L0rd CrusAd3r
2010-11-02   Azaronline Design - SQL Injection 7 WEB XroGuE
2010-11-02   MetInfo 3.0 - 'FCKeditor' Arbitrary File Upload 7 WEB [sh3n]
2010-11-02   Webmedia Explorer 6.13.1 - Persistent Cross-Site Scripting 7 WEB High-Tech Bridge SA
2010-11-02   MemHT Portal 4.0.1 - Persistent Cross-Site Scripting 7 WEB High-Tech Bridge SA
2010-11-02   Kandidat CMS 1.4.2 - Persistent Cross-Site Scripting 7 WEB High-Tech Bridge SA
2010-11-01   douran portal 3.9.7.55 - Multiple Vulnerabilities 7 WEB ITSecTeam
2010-11-01   Collabtive 0.65 - SQL Injection 7 WEB Anatolia Security