2010-03-05
|
|
Auktionshaus 3.0.0.1 - 'news.php?id' SQL Injection
|
4 |
WEB
|
Easy Laster
|
2010-03-05
|
|
Kolang 4.3.10 < 5.3.0 - 'proc_open()' PHP 'safe_mode' Bypass
|
4 |
WEB
|
Hamid Ebadi
|
2010-03-05
|
|
OneCMS 2.5 - SQL Injection
|
4 |
WEB
|
Ctacok & .:[melkiy]:
|
2010-03-04
|
|
Sagem Routers - Remote Authentication Bypass
|
4 |
WEB
|
AlpHaNiX
|
2010-03-04
|
|
PHP-Nuke - 'user.php' SQL Injection
|
4 |
WEB
|
Easy Laster
|
2010-03-04
|
|
PHP-Nuke CMS (Survey and Poll) - SQL Injection
|
3 |
WEB
|
SENOT
|
2010-03-03
|
|
Joomla! Component com_blog - Directory Traversal
|
4 |
WEB
|
DevilZ TM
|
2010-03-03
|
|
MiNBank 1.5.0 - Remote Command Execution
|
4 |
WEB
|
JosS
|
2010-03-03
|
|
smartplugs 1.3 - 'showplugs.php' SQL Injection
|
4 |
WEB
|
Easy Laster
|
2010-03-03
|
|
Gnat-TGP 1.2.20 - Remote File Inclusion
|
4 |
WEB
|
cr4wl3r
|
2010-03-03
|
|
Dosya Yukle Scrtipi (DosyaYukle Scripti) 1.0 - Arbitrary File Upload
|
4 |
WEB
|
indoushka
|
2010-03-02
|
|
Uiga Church Portal - 'index.php' SQL Injection
|
4 |
WEB
|
Easy Laster
|
2010-03-02
|
|
My Little Forum - 'contact.php' SQL Injection
|
4 |
WEB
|
Easy Laster
|
2010-03-02
|
|
Uploadify Sample Collection - Arbitrary File Upload
|
4 |
WEB
|
indoushka
|
2010-03-02
|
|
PHP Advanced Transfer Manager 1.10 - Arbitrary File Upload
|
4 |
WEB
|
indoushka
|
2010-03-02
|
|
osCSS 1.2.1 - Database Backups Disclosure
|
3 |
WEB
|
indoushka
|
2010-03-02
|
|
Al Sat Scripti - Database Disclosure
|
4 |
WEB
|
indoushka
|
2010-03-01
|
|
CMS by MyWorks - Multiple Vulnerabilities
|
4 |
WEB
|
Palyo34
|
2010-03-01
|
|
phptroubleticket 2.0 - 'id' SQL Injection
|
4 |
WEB
|
kaMtiEz
|
2010-02-28
|
|
Majoda CMS - Authentication Bypass
|
4 |
WEB
|
Phenom
|
2010-02-28
|
|
Baykus Yemek Tarifleri 2.1 - SQL Injection
|
4 |
WEB
|
cr4wl3r
|
2010-02-28
|
|
Joomla! Component com_liveticker - Blind SQL Injection
|
3 |
WEB
|
snakespc
|
2010-02-28
|
|
Joomla! Component com_yanc - SQL Injection
|
4 |
WEB
|
snakespc
|
2010-02-28
|
|
HazelPress Lite 0.0.4 - Authentication Bypass
|
5 |
WEB
|
cr4wl3r
|
2010-02-28
|
|
Uiga Fan Club - 'index.php' SQL Injection
|
3 |
WEB
|
Easy Laster
|
2010-02-28
|
|
Uiga Personal Portal - 'index.php' SQL Injection
|
4 |
WEB
|
Easy Laster
|
2010-02-27
|
|
Slaed CMS 4.0 - Multiple Vulnerabilities
|
4 |
WEB
|
indoushka
|
2010-02-27
|
|
Joomla! Component com_paxgallery - Blind Injection
|
4 |
WEB
|
snakespc
|
2010-02-27
|
|
Uiga Fan Club 1.0 - Authentication Bypass
|
4 |
WEB
|
cr4wl3r
|
2010-02-27
|
|
Scripts Feed Business Directory - SQL Injection
|
3 |
WEB
|
Crux
|
2010-02-27
|
|
Pre Classified Listings - SQL Injection
|
3 |
WEB
|
Crux
|
2010-02-27
|
|
phpMySite - Cross-Site Scripting / SQL Injection
|
4 |
WEB
|
Crux
|
2010-02-27
|
|
ProMan 0.1.1 - Multiple File Inclusions
|
4 |
WEB
|
cr4wl3r
|
2010-02-27
|
|
phpRAINCHECK 1.0.1 - SQL Injection
|
4 |
WEB
|
cr4wl3r
|
2010-02-27
|
|
phpCDB 1.0 - Local File Inclusion
|
2 |
WEB
|
cr4wl3r
|
2010-02-27
|
|
Project Man 1.0 - Authentication Bypass
|
4 |
WEB
|
cr4wl3r
|
2010-02-27
|
|
Gravity Board X 2.0 Beta (Public Release 3) - SQL Injection
|
4 |
WEB
|
Ctacok
|
2010-02-27
|
|
DZ Erotik Auktionshaus 4.rgo - 'news.php' SQL Injection
|
3 |
WEB
|
Easy Laster
|
2010-02-26
|
|
FileExecutive 1 - Multiple Vulnerabilities
|
4 |
WEB
|
ViRuSMaN
|
2010-02-25
|
|
WebAdministrator Lite CMS - SQL Injection
|
4 |
WEB
|
Ariko-Security
|
2010-02-25
|
|
Joomla! Component com_Joomlaconnect_be - Blind Injection
|
4 |
WEB
|
snakespc
|
2010-02-25
|
|
GameScript 3.0 - SQL Injection
|
4 |
WEB
|
FormatXformat
|
2010-02-25
|
|
Softbiz Recipes Portal Script - 'showcats.php' SQL Injection
|
3 |
WEB
|
Easy Laster
|
2010-02-24
|
|
Softbiz Classifieds PLUS - Multiple SQL Injections
|
4 |
WEB
|
Easy Laster
|
2010-02-24
|
|
Maian Uploader 4.0 - Arbitrary File Upload
|
3 |
WEB
|
indoushka
|
2010-02-24
|
|
PBBoard 2.0.5 - Multiple Vulnerabilities
|
4 |
WEB
|
indoushka
|
2010-02-24
|
|
Web Server Creator Web Portal 0.1 - Multiple Vulnerabilities
|
4 |
WEB
|
indoushka
|
2010-02-24
|
|
Softbiz Auktios Script - Multiple SQL Injections
|
4 |
WEB
|
Easy Laster
|
2010-02-24
|
|
PHPCOIN 1.2.1 - 'mod.php' SQL Injection
|
4 |
WEB
|
BAYBORA
|
2010-02-24
|
|
ShortCMS 1.11F(B) (con) - SQL Injection
|
4 |
WEB
|
Gamoscu
|
2009-11-16
|
|
kalimat new system 1.0 - 'index.php' SQL Injection
|
4 |
WEB
|
ProF.Code
|
2010-02-24
|
|
WikyBlog 1.7.3rc2 - Multiple Vulnerabilities
|
4 |
WEB
|
indoushka
|
2010-02-24
|
|
Article Friendly - Cross-Site Request Forgery
|
5 |
WEB
|
pratul agrawal
|
2010-02-24
|
|
MySmartBB 1.0.0 - Cross-Site Scripting
|
4 |
WEB
|
indoushka
|
2010-02-24
|
|
Max's Photo Album - Arbitrary File Upload
|
4 |
WEB
|
indoushka
|
2010-02-23
|
|
bispage - Bypass
|
4 |
WEB
|
SaMir-BonD
|
2010-02-23
|
|
QuickDev 4 PHP - Database Disclosure
|
4 |
WEB
|
ViRuSMaN
|
2010-02-23
|
|
Tinypug 0.9.5 - Cross-Site Request Forgery (Password Change)
|
4 |
WEB
|
AmnPardaz
|
2010-02-23
|
|
Softbiz Jobs - Multiple SQL Injections
|
4 |
WEB
|
Easy Laster
|
2010-02-23
|
|
WorkSimple 1.3.2 - Multiple Vulnerabilities
|
4 |
WEB
|
JIKO
|
2010-02-23
|
|
Joomla! Component user_id com_sqlreport - Blind SQL Injection
|
4 |
WEB
|
snakespc
|
2010-02-23
|
|
Top Auktion - 'news.php' SQL Injection
|
4 |
WEB
|
Easy Laster
|
2010-02-23
|
|
PHP Auktion Pro SQL - 'news.php' SQL Injection
|
4 |
WEB
|
Easy Laster
|
2010-02-23
|
|
Joomla! Component com_ice - Blind SQL Injection
|
4 |
WEB
|
snakespc
|
2010-02-23
|
|
Softbiz Jobs - Cross-Site Request Forgery
|
4 |
WEB
|
pratul agrawal
|
2010-02-22
|
|
Article Friendly - SQL Injection
|
4 |
WEB
|
SkuLL-HackeR
|
2010-02-22
|
|
phpBugTracker 1.0.1 - File Disclosure
|
4 |
WEB
|
ViRuSMaN
|
2010-02-22
|
|
cPanel - Multiple Cross-Site Request Forgery Vulnerabilities
|
3 |
WEB
|
SecurityRules
|
2010-02-22
|
|
vBSEO 3.1.0 - Local File Inclusion
|
3 |
WEB
|
ViRuSMaN
|
2010-02-22
|
|
Arab Cart 1.0.2.0 - Multiple Vulnerabilities
|
4 |
WEB
|
indoushka
|
2010-02-22
|
|
Galerie Dezign-Box France - Multiple Vulnerabilities
|
4 |
WEB
|
indoushka
|
2010-02-22
|
|
Ero Auktion 2010 - 'news.php' SQL Injection
|
4 |
WEB
|
Easy Laster
|
2010-02-22
|
|
Ero Auktion 2.0 - 'news.php' SQL Injection
|
4 |
WEB
|
Easy Laster
|
2010-02-22
|
|
Ac4p.com Gallery 1.0 - Multiple Vulnerabilities
|
4 |
WEB
|
indoushka
|
2010-02-22
|
|
Softbiz Jobs - 'news_desc' SQL Injection
|
4 |
WEB
|
BAYBORA
|
2010-02-20
|
|
Netzbrett - Database Disclosure
|
4 |
WEB
|
ViRuSMaN
|
2010-02-20
|
|
TimeClock 0.99 - Cross-Site Request Forgery (Add Admin)
|
4 |
WEB
|
ViRuSMaN
|
2010-02-20
|
|
FlatFile Login System - Remote Password Disclosure
|
3 |
WEB
|
ViRuSMaN
|
2010-02-19
|
|
Joomla! Component com_communitypolls 1.5.2 - Local File Inclusion
|
2 |
WEB
|
kaMtiEz
|
2010-02-19
|
|
PHPKit 1.6.1 - 'mailer.php' SQL Injection
|
2 |
WEB
|
Easy Laster
|
2010-02-19
|
|
Fonality trixbox 2.2.4 - 'PhonecDirectory.php' SQL Injection
|
3 |
WEB
|
NorSlacker
|
2010-02-19
|
|
WSC CMS - Authentication Bypass
|
3 |
WEB
|
Phenom
|
2010-02-19
|
|
Amelia CMS - SQL Injection
|
4 |
WEB
|
Ariko-Security
|
2010-02-19
|
|
Litespeed Web Server 4.0.12 - Cross-Site Request Forgery (Add Admin) / Cross-Site Scripting
|
4 |
WEB
|
d1dn0t
|
2010-02-19
|
|
phpAutoVideo - Cross-Site Request Forgery
|
3 |
WEB
|
GoLdeN-z3r0
|
2010-02-18
|
|
Joomla! Plugin Core Design Scriptegrator - Local File Inclusion
|
3 |
WEB
|
S2 Crew
|
2010-02-18
|
|
Open Source Classifieds 1.1.0 Alpha (OSClassi) - SQL Injection / Cross-Site Scripting / Arbitrary Ad
|
4 |
WEB
|
Sioma Labs
|
2010-02-18
|
|
CubeCart - 'index.php' SQL Injection
|
5 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-02-18
|
|
Joomla! Component com_otzivi - Local File Inclusion
|
4 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-02-17
|
|
PunBBAnnuaire 0.4 - Blind SQL Injection
|
4 |
WEB
|
Metropolis
|
2010-02-17
|
|
Erotik Auktionshaus - 'news.php' SQL Injection
|
4 |
WEB
|
Easy Laster
|
2010-02-17
|
|
Auktionshaus Gelb 3 - 'news.php' SQL Injection
|
4 |
WEB
|
Easy Laster
|
2010-02-17
|
|
Auktionshaus 4 - 'news.php' SQL Injection
|
3 |
WEB
|
Easy Laster
|
2010-02-17
|
|
PHPIDS 0.4 - Remote File Inclusion
|
3 |
WEB
|
eidelweiss
|
2010-02-17
|
|
Multiple File Attachments Mail Form Pro 2.0 - Arbitrary File Upload
|
3 |
WEB
|
EgoPL
|
2010-02-17
|
|
uGround 1.0b - SQL Injection
|
3 |
WEB
|
Easy Laster
|
2010-02-17
|
|
Joomla! Component com_acteammember - SQL Injection
|
3 |
WEB
|
ALTBTA
|
2010-02-17
|
|
Nabernet - 'articles.php' SQL Injection
|
3 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-02-17
|
|
intuitive - 'form.php' SQL Injection
|
3 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-02-17
|
|
Joomla! Component com_acprojects - SQL Injection
|
2 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-02-17
|
|
Joomla! Component com_acstartseite - SQL Injection
|
3 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-02-16
|
|
Limny 2.0 - Cross-Site Request Forgery (Create Admin User)
|
6 |
WEB
|
Luis Santana
|
2010-02-16
|
|
Limny 2.0 - Cross-Site Request Forgery (Change Email and Password)
|
4 |
WEB
|
Luis Santana
|
2010-02-16
|
|
SongForever.com Clone - Arbitrary File Upload
|
4 |
WEB
|
indoushka
|
2010-02-16
|
|
Mambo Component 'com_acnews' - 'id' SQL Injection
|
4 |
WEB
|
Zero Bits & Xzit3
|
2010-02-16
|
|
Pogodny CMS - SQL Injection
|
4 |
WEB
|
Ariko-Security
|
2010-02-15
|
|
microUpload - Arbitrary File Upload
|
5 |
WEB
|
Phenom
|
2010-02-15
|
|
Joomla! Component com_hdvideoshare - SQL Injection
|
5 |
WEB
|
snakespc
|
2010-02-15
|
|
Joomla! Component com_joomportfolio - Blind Injection
|
4 |
WEB
|
snakespc
|
2010-02-15
|
|
blog ink - Bypass Setting
|
4 |
WEB
|
indoushka
|
2010-02-15
|
|
CoffieNet CMS - Admin Bypass
|
4 |
WEB
|
indoushka
|
2010-02-15
|
|
Dodo Upload 1.3 - Arbitrary File Upload (Bypass)
|
4 |
WEB
|
indoushka
|
2010-02-15
|
|
WordPress Plugin Copperleaf Photolog 0.16 - SQL Injection
|
4 |
WEB
|
kaMtiEz
|
2010-02-15
|
|
superengine CMS (Custom Pack) - SQL Injection
|
4 |
WEB
|
10n1z3d
|
2010-02-15
|
|
Généré par KDPics 1.18 - Remote Add Admin
|
4 |
WEB
|
snakespc
|
2010-02-14
|
|
Katalog Stron Hurricane 1.3.5 - Remote File Inclusion / SQL Injection
|
4 |
WEB
|
kaMtiEz
|
2010-02-14
|
|
File Upload Manager 1.3 - Web Shell File Upload
|
4 |
WEB
|
ROOT_EGY
|
2010-02-14
|
|
Joomla! Component com_videos - SQL Injection
|
4 |
WEB
|
snakespc
|
2010-02-14
|
|
Joomla! Component Jw_allVideos - Arbitrary File Download
|
4 |
WEB
|
Pouya Daneshmand
|
2010-02-14
|
|
Mambo Component AkoGallery - SQL Injection
|
4 |
WEB
|
snakespc
|
2010-02-14
|
|
JTL-Shop 2 - 'druckansicht.php' SQL Injection
|
3 |
WEB
|
Lo$T
|
2010-02-14
|
|
ShortCMS 1.2.0 - SQL Injection
|
3 |
WEB
|
Thibow
|
2010-02-14
|
|
Calendarix 0.8.20071118 - SQL Injection
|
4 |
WEB
|
Thibow
|
2010-02-14
|
|
PHP PEAR 1.9.0 - Multiple Remote File Inclusions
|
4 |
WEB
|
eidelweiss
|
2010-02-13
|
|
WordPress Core 2.9 - Failure to Restrict URL Access
|
4 |
WEB
|
tmacuk
|