Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2010-11-08   Joomla! Component Cookex Agency CKForms - Local File Inclusion 18 WEB ALTBTA
2010-11-07   Punbb 1.3.4 - Multiple Full Path Disclosures 19 WEB SYSTEM_OVERIDE
2010-11-07   DeluxeBB 1.3 - Private Information Disclosure 21 WEB Vis Intelligendi
2010-11-07   ASPilot Pilot Cart 7.3 - Multiple Vulnerabilities 20 WEB Ariko-Security
2010-11-06   phpCow 2.1 - File Inclusion 20 WEB ViRuS_HiMa
2010-11-06   Joomla! Component com_forme 1.0.5 - Multiple Vulnerabilities 23 WEB jdc
2010-11-06   Zeeways Adserver - Multiple Vulnerabilities 20 WEB Valentin
2010-11-06   MassMirror Uploader - Remote File Inclusion 17 WEB ViciOuS
2010-11-06   Joomla! Component com_dcnews - Local File Inclusion 17 WEB Th3 RDX
2010-11-06   Joomla! Component com_connect - Local File Inclusion 24 WEB Th3 RDX
2010-11-05   Joomla! Component ccInvoices - SQL Injection 19 WEB FL0RiX
2010-11-04   JBI CMS - SQL Injection 20 WEB Cru3l.b0y
2010-11-04   MiniBB 2.5 - SQL Injection 22 WEB High-Tech Bridge SA
2010-11-04   JAF CMS 4.0 rc2 - Multiple Vulnerabilities 17 WEB High-Tech Bridge SA
2010-11-04   SweetRice 0.6.7 - Multiple Vulnerabilities 17 WEB High-Tech Bridge SA
2010-11-04   eoCMS 0.9.04 - Multiple Vulnerabilities 19 WEB High-Tech Bridge SA
2010-11-03   Zen Cart 1.3.9h - Local File Inclusion 20 WEB Salvatore Fresta
2010-11-03   digiSHOP 2.0.2 - SQL Injection 17 WEB Silic0n
2010-11-03   eLouai's Force Download Script - Arbitrary Local File Download 19 WEB v1R00Z
2010-11-02   Dolphin 7.0.3 - Multiple Vulnerabilities 14 WEB anT!-Tr0J4n
2010-11-02   Site2Nite Business eListings - SQL Injection 18 WEB L0rd CrusAd3r
2010-11-02   Digger Solutions NewsLetter Open Source - SQL Injection 20 WEB L0rd CrusAd3r
2010-11-02   Online Work Order System (OWOS) Professional Edition - Authentication Bypass 16 WEB L0rd CrusAd3r
2010-11-02   Comrie Software Pay Roll Time Sheet & Punch Card - Authentication Bypass 18 WEB L0rd CrusAd3r
2010-11-02   Site2Ntite Vacation Rental (VRBO) Listings - SQL Injection 17 WEB L0rd CrusAd3r
2010-11-02   Azaronline Design - SQL Injection 20 WEB XroGuE
2010-11-02   MetInfo 3.0 - 'FCKeditor' Arbitrary File Upload 21 WEB [sh3n]
2010-11-02   Webmedia Explorer 6.13.1 - Persistent Cross-Site Scripting 18 WEB High-Tech Bridge SA
2010-11-02   MemHT Portal 4.0.1 - Persistent Cross-Site Scripting 18 WEB High-Tech Bridge SA
2010-11-02   Kandidat CMS 1.4.2 - Persistent Cross-Site Scripting 19 WEB High-Tech Bridge SA
2010-11-01   douran portal 3.9.7.55 - Multiple Vulnerabilities 17 WEB ITSecTeam
2010-11-01   Collabtive 0.65 - SQL Injection 14 WEB Anatolia Security
2010-11-01   XAMPP 1.7.3 - Multiple Vulnerabilities 20 WEB TheLeader
2010-10-31   Auto CMS 1.8 - Remote Code Execution 19 WEB Giuseppe D'Inverno
2010-10-31   Joomla! Component Sponsor Wall 1.1 - SQL Injection 18 WEB FL0RiX
2010-10-31   Joomla! Component Pulse Infotech Flip Wall - SQL Injection 18 WEB FL0RiX
2010-10-31   MetInfo 3.0 - PHP Code Injection 20 WEB Beach
2010-10-31   MetInfo 2.0 - PHP Code Injection 16 WEB Beach
2010-10-30   Simpli Easy (AFC Simple) NewsLetter 4.2 - Cross-Site Scripting / Information Leakage 21 WEB p0deje
2010-10-30   Zoopeer 0.1/0.2 - 'FCKeditor' Arbitrary File Upload 20 WEB Net.Edit0r
2010-10-30   Joomla! Component com_jfuploader < 2.12 - Arbitrary File Upload 21 WEB Setr0nix
2010-10-29   mygamingladder MGL Combo System 7.5 - 'game.php' SQL Injection 24 WEB Easy Laster
2010-10-29   PHPKit 1.6.1 R2 - 'overview.php' SQL Injection 19 WEB Easy Laster
2010-10-28   Pub-Me CMS - Blind SQL Injection 20 WEB H4f
2010-10-28   TFTgallery 0.13.1 - Local File Inclusion 20 WEB Havok
2010-10-28   RoSPORA 1.5.0 - Remote PHP Code Injection 17 WEB EgiX
2010-10-27   mycart 2.0 - Multiple Vulnerabilities 18 WEB Salvatore Fresta
2010-10-27   ACC IMoveis 4.0 - SQL Injection 20 WEB EraGoN
2010-10-27   Alstrasoft e-Friends 4.96 - Multiple Vulnerabilities 20 WEB Salvatore Fresta
2010-10-27   BlogBird Platform - Multiple Cross-Site Scripting Vulnerabilities 19 WEB High-Tech Bridge SA
2010-10-27   Zomplog 3.9 - Multiple Cross-Site Scripting / Cross-Site Request Forgery Vulnerabilities 17 WEB High-Tech Bridge SA
2010-10-27   NinkoBB 1.3RC5 - Cross-Site Scripting 22 WEB High-Tech Bridge SA
2010-10-27   Zomplog 3.9 - Cross-Site Request Forgery 17 WEB High-Tech Bridge SA
2010-10-27   BloofoxCMS Registration Plugin - SQL Injection 17 WEB High-Tech Bridge SA
2010-10-27   Energine CMS - SQL Injection 20 WEB High-Tech Bridge SA
2010-10-27   BloofoxCMS 0.3.5 - Information Disclosure 17 WEB High-Tech Bridge SA
2010-10-27   MyBB 1.6 - Full Path Disclosure 20 WEB High-Tech Bridge SA
2010-10-27   Novaboard 1.1.4 - Local File Inclusion 18 WEB High-Tech Bridge SA
2010-10-27   DZCP (deV!L_z Clanportal) 1.5.4 - Local File Inclusion 19 WEB High-Tech Bridge SA
2010-10-27   phpLiterAdmin 1.0 RC1 - Authentication Bypass 22 WEB High-Tech Bridge SA
2010-10-27   DBHcms 1.1.4 - 'dbhcms_user/SearchString' SQL Injection 20 WEB High-Tech Bridge SA
2010-10-26   BigACE 2.7.3 - Cross-Site Request Forgery (Change Admin Password) 22 WEB Sweet
2010-10-25   Plesk Small Business Manager 10.2.0 and Site Editor - Multiple Vulnerabilities 22 WEB David Hoyt
2010-10-25   Jamb - Cross-Site Request Forgery (Add a Post) 17 WEB Stoke
2010-10-24   DBHcms 1.1.4 - 'dbhcms_pid' SQL Injection 20 WEB ZonTa
2010-10-24   Pulse Pro 1.4.3 - Persistent Cross-Site Scripting 20 WEB Th3 RDX
2010-10-21   Squirrelcart PRO 3.0.0 - Blind SQL Injection 17 WEB Salvatore Fresta
2010-10-21   sNews CMS - Multiple Cross-Site Scripting Vulnerabilities 16 WEB High-Tech Bridge SA
2010-10-20   Oracle Sun Java System Web Server - HTTP Response Splitting 19 WEB Roberto Suggi Liverani
2010-10-19   phpCheckZ 1.1.0 - Blind SQL Injection 18 WEB Salvatore Fresta
2010-10-19   Event Ticket Portal Script Admin Password Change - Cross-Site Request Forgery 20 WEB KnocKout
2010-10-19   Travel Portal Script - Cross-Site Request Forgery (Admin Password Change) 20 WEB KnocKout
2010-10-18   Brooky CubeCart 2.0.1 - SQL Injection 17 WEB X_AviaTique_X
2010-10-18   GeekLog 1.7.0 - 'FCKeditor' Arbitrary File Upload 17 WEB Kubanezi AHG
2010-10-18   411cc - Multiple SQL Injections 16 WEB KnocKout
2010-10-17   Kisisel Radyo Script - Multiple Vulnerabilities 20 WEB FuRty
2010-10-17   Tastydir 1.2 (1216) - Multiple Vulnerabilities 16 WEB R
2010-10-17   WikiWebHelp 0.3.3 - Insecure Cookie Handling 17 WEB FuRty
2010-10-15   KCFinder 2.2 - Arbitrary File Upload 21 WEB saudi0hacker
2010-10-14   Xlrstats 2.0.1 - SQL Injection 20 WEB Sky4
2010-10-14   Data/File - upload and Management Arbitrary File Upload 16 WEB saudi0hacker
2010-10-13   Exponent CMS 0.97 - Multiple Vulnerabilities 19 WEB LiquidWorm
2010-10-12   Collabtive 0.65 - Multiple Vulnerabilities 17 WEB Anatolia Security
2010-10-12   WikiWebHelp 0.3.3 - Cross-Site Request Forgery 17 WEB Yoyahack
2010-10-12   AdaptCMS 2.0.1 Beta - Remote File Inclusion (Metasploit) 18 WEB v3n0m
2010-10-11   BaconMap 1.0 - Local File Disclosure 17 WEB John Leitch
2010-10-11   BaconMap 1.0 - SQL Injection 18 WEB John Leitch
2010-10-11   OrangeHRM 2.6.0.1 - Local File Inclusion 19 WEB ZonTa
2010-10-10   Site2Nite Auto e-Manager - SQL Injection 20 WEB KnocKout
2010-10-10   PHP-Fusion Mod Mg User Fotoalbum 1.0.1 - SQL Injection 21 WEB Easy Laster
2010-10-09   VideoDB 3.0.3 - Multiple Vulnerabilities 19 WEB Valentin
2010-10-09   Joomla! Component JS Calendar 1.5.1 - Multiple Vulnerabilities 20 WEB Salvatore Fresta
2010-10-09   Chipmunk Pwngame - Multiple SQL Injections 22 WEB KnocKout
2010-10-09   Joomla! Component Community Builder Enhanced (CBE) 1.4.8/1.4.9/1.4.10 - Local File Inclusion / Remot 19 WEB Delf Tonder
2010-10-08   Flex Timesheet - Authentication Bypass 21 WEB KnocKout
2010-10-08   xWeblog 2.2 - 'arsiv.asp?tarih' SQL Injection 19 WEB ZoRLu
2010-10-07   xWeblog 2.2 - 'oku.asp?makale_id' SQL Injection 19 WEB KnocKout
2010-10-07   Feindura File Manager 1.0(rc) - Arbitrary File Upload 17 WEB KnocKout
2010-10-05   Cag CMS 0.2 - Cross-Site Scripting / Blind SQL Injection 20 WEB Shamus
2010-10-05   SPAW Editor 2.0.8.1 - Local File Inclusion 18 WEB soorakh kos
2010-10-05   CuteNews - 'page' Local File Inclusion 21 WEB eidelweiss
2010-10-04   Uebimiau Webmail 3.2.0-2.0 - Local File Inclusion 20 WEB blake
2010-10-04   Aspect Ratio CMS - Blind SQL Injection 19 WEB Stephan Sattler
2010-10-04   DNET Live-Stats 0.8 - Local File Inclusion 20 WEB blake
2010-10-04   FAQMasterFlex 1.2 - SQL Injection 24 WEB cyb3r.anbu
2010-10-04   Cilem Haber 1.4.4 (Tr) - Database Disclosure 17 WEB ZoRLu
2010-10-03   Aprox CMS Engine 6.0 - Multiple Vulnerabilities 21 WEB Stephan Sattler
2010-10-03   TinyMCE MCFileManager 2.1.2 - Arbitrary File Upload 18 WEB Hackeri-AL
2010-10-02   TradeMC E-Ticaret - SQL Injection / Cross-Site Scripting 18 WEB KnocKout
2010-10-02   SmarterMail < 7.2.3925 - LDAP Injection 17 WEB sqlhacker
2010-10-02   SmarterMail < 7.2.3925 - Persistent Cross-Site Scripting 21 WEB sqlhacker
2010-10-02   Bka Haber 1.0 (Tr) - File Disclosure 19 WEB ZoRLu
2010-10-01   iGaming CMS 1.5 - Blind SQL Injection 17 WEB plucky
2010-10-01   Chipmunk Board 1.3 - 'index.php?forumID' SQL Injection 18 WEB Shamus
2010-10-01   Tiki Wiki CMS Groupware 5.2 - Multiple Vulnerabilities 17 WEB John Leitch
2010-10-01   phpMyShopping 1.0.1505 - Multiple Vulnerabilities 16 WEB Metropolis
2010-10-01   jCart 1.1 - Multiple Cross-Site Scripting / Cross-Site Request Forgery/Open Redirect Vulnerabilities 17 WEB p0deje
2010-10-01   Evaria Content Management System 1.1 - File Disclosure 19 WEB khayeye shotor
2010-10-01   Zen Cart 1.3.9f - 'typefilter' Local File Inclusion 17 WEB LiquidWorm
2010-10-01   zen cart 1.3.9f - Multiple Vulnerabilities 18 WEB LiquidWorm
2010-09-30   JomSocial 1.8.8 - Arbitrary File Upload 17 WEB Jeff Channell
2010-09-30   Joomla! Component JE Directory 1.0 - SQL Injection 18 WEB Easy Laster
2010-09-30   Joomla! Component JE Job - SQL Injection 18 WEB Easy Laster
2010-09-30   ASPMass Shopping Cart - Arbitrary File Upload / Cross-Site Request Forgery 19 WEB Abysssec
2010-09-30   Joomla! Component JE Guestbook 1.0 - Multiple Vulnerabilities 19 WEB Salvatore Fresta