Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2010-03-11   Ane CMS 1 - Persistent Cross-Site Scripting 7 WEB pratul agrawal
2010-03-11   ANE CMD CRSF - Arbitrary Add Admin 9 WEB pratul agrawal
2010-03-11   ATutor 1.6.4 - Multiple Cross-Site Scripting Vulnerabilities 8 WEB ITSecTeam
2010-03-11   Joomla! Component com_about - SQL Injection 9 WEB snakespc
2010-03-10   ispCP Omega 1.0.4 - Remote File Inclusion 9 WEB cr4wl3r
2010-03-10   Gazelle CMS - Cross-Site Request Forgery 8 WEB pratul agrawal
2010-03-10   Softbiz Jobs and Recruitment Script - 'search_result.php' SQL Injection 8 WEB Easy Laster
2010-03-10   PhpCityPortal - Multiple Vulnerabilities 7 WEB R3d-D3V!L
2010-03-10   Friendly-Tech FriendlyTR69 CPE Remote Management 2.8.9 - SQL Injection 7 WEB Yaniv Miron
2010-03-10   Campsite 3.3.5 - Cross-Site Request Forgery 8 WEB pratul agrawal
2010-03-09   nus newssystem 1.02 - 'id' SQL Injection 8 WEB n3w7u
2010-03-09   Wild CMS - SQL Injection 8 WEB Ariko-Security
2010-03-09   mhproducts Kleinanzeigenmarkt - 'search.php' SQL Injection 8 WEB Easy Laster
2010-03-09   Joomla! Component com_hezacontent 1.0 - 'id' SQL Injection 8 WEB kaMtiEz
2010-03-09   Uebimiau Webmail 3.2.0-2.0 - Email Disclosure 9 WEB Z3r0c0re_ R4vax
2010-03-09   PHP File Sharing System 1.5.1 - Multiple Vulnerabilities 8 WEB blake
2010-03-08   Chaton 1.5.2 - Local File Inclusion 8 WEB cr4wl3r
2010-03-08   TRIBISUR 2.0 - Local File Inclusion 8 WEB cr4wl3r
2010-03-08   DZ Auktionshaus 'V4.rgo' - 'id' news.php?SQL Injection 8 WEB Easy Laster
2010-03-07   Bild Flirt System 2.0 - 'index.php?id' SQL Injection 9 WEB Easy Laster
2010-03-07   BigForum 4.5 - SQL Injection 9 WEB Ctacok
2010-03-06   dev4u CMS (Personenseiten) - 'go_target.php' SQL Injection 9 WEB Easy Laster
2010-03-06   PHPCOIN 1.2.1 - 'mod.php' Local File Inclusion 8 WEB _mlk_
2010-03-05   E-topbiz Link ADS 1 PHP script - 'linkid' Blind SQL Injection 8 WEB JosS
2010-03-05   Auktionshaus 3.0.0.1 - 'news.php?id' SQL Injection 8 WEB Easy Laster
2010-03-05   Kolang 4.3.10 < 5.3.0 - 'proc_open()' PHP 'safe_mode' Bypass 8 WEB Hamid Ebadi
2010-03-05   OneCMS 2.5 - SQL Injection 8 WEB Ctacok & .:[melkiy]:
2010-03-04   Sagem Routers - Remote Authentication Bypass 8 WEB AlpHaNiX
2010-03-04   PHP-Nuke - 'user.php' SQL Injection 8 WEB Easy Laster
2010-03-04   PHP-Nuke CMS (Survey and Poll) - SQL Injection 7 WEB SENOT
2010-03-03   Joomla! Component com_blog - Directory Traversal 8 WEB DevilZ TM
2010-03-03   MiNBank 1.5.0 - Remote Command Execution 8 WEB JosS
2010-03-03   smartplugs 1.3 - 'showplugs.php' SQL Injection 8 WEB Easy Laster
2010-03-03   Gnat-TGP 1.2.20 - Remote File Inclusion 8 WEB cr4wl3r
2010-03-03   Dosya Yukle Scrtipi (DosyaYukle Scripti) 1.0 - Arbitrary File Upload 8 WEB indoushka
2010-03-02   Uiga Church Portal - 'index.php' SQL Injection 8 WEB Easy Laster
2010-03-02   My Little Forum - 'contact.php' SQL Injection 8 WEB Easy Laster
2010-03-02   Uploadify Sample Collection - Arbitrary File Upload 8 WEB indoushka
2010-03-02   PHP Advanced Transfer Manager 1.10 - Arbitrary File Upload 8 WEB indoushka
2010-03-02   osCSS 1.2.1 - Database Backups Disclosure 7 WEB indoushka
2010-03-02   Al Sat Scripti - Database Disclosure 8 WEB indoushka
2010-03-01   CMS by MyWorks - Multiple Vulnerabilities 8 WEB Palyo34
2010-03-01   phptroubleticket 2.0 - 'id' SQL Injection 8 WEB kaMtiEz
2010-02-28   Majoda CMS - Authentication Bypass 8 WEB Phenom
2010-02-28   Baykus Yemek Tarifleri 2.1 - SQL Injection 8 WEB cr4wl3r
2010-02-28   Joomla! Component com_liveticker - Blind SQL Injection 7 WEB snakespc
2010-02-28   Joomla! Component com_yanc - SQL Injection 8 WEB snakespc
2010-02-28   HazelPress Lite 0.0.4 - Authentication Bypass 9 WEB cr4wl3r
2010-02-28   Uiga Fan Club - 'index.php' SQL Injection 7 WEB Easy Laster
2010-02-28   Uiga Personal Portal - 'index.php' SQL Injection 8 WEB Easy Laster
2010-02-27   Slaed CMS 4.0 - Multiple Vulnerabilities 8 WEB indoushka
2010-02-27   Joomla! Component com_paxgallery - Blind Injection 8 WEB snakespc
2010-02-27   Uiga Fan Club 1.0 - Authentication Bypass 9 WEB cr4wl3r
2010-02-27   Scripts Feed Business Directory - SQL Injection 8 WEB Crux
2010-02-27   Pre Classified Listings - SQL Injection 8 WEB Crux
2010-02-27   phpMySite - Cross-Site Scripting / SQL Injection 8 WEB Crux
2010-02-27   ProMan 0.1.1 - Multiple File Inclusions 8 WEB cr4wl3r
2010-02-27   phpRAINCHECK 1.0.1 - SQL Injection 8 WEB cr4wl3r
2010-02-27   phpCDB 1.0 - Local File Inclusion 7 WEB cr4wl3r
2010-02-27   Project Man 1.0 - Authentication Bypass 8 WEB cr4wl3r
2010-02-27   Gravity Board X 2.0 Beta (Public Release 3) - SQL Injection 8 WEB Ctacok
2010-02-27   DZ Erotik Auktionshaus 4.rgo - 'news.php' SQL Injection 7 WEB Easy Laster
2010-02-26   FileExecutive 1 - Multiple Vulnerabilities 8 WEB ViRuSMaN
2010-02-25   WebAdministrator Lite CMS - SQL Injection 8 WEB Ariko-Security
2010-02-25   Joomla! Component com_Joomlaconnect_be - Blind Injection 8 WEB snakespc
2010-02-25   GameScript 3.0 - SQL Injection 8 WEB FormatXformat
2010-02-25   Softbiz Recipes Portal Script - 'showcats.php' SQL Injection 7 WEB Easy Laster
2010-02-24   Softbiz Classifieds PLUS - Multiple SQL Injections 8 WEB Easy Laster
2010-02-24   Maian Uploader 4.0 - Arbitrary File Upload 8 WEB indoushka
2010-02-24   PBBoard 2.0.5 - Multiple Vulnerabilities 8 WEB indoushka
2010-02-24   Web Server Creator Web Portal 0.1 - Multiple Vulnerabilities 8 WEB indoushka
2010-02-24   Softbiz Auktios Script - Multiple SQL Injections 8 WEB Easy Laster
2010-02-24   PHPCOIN 1.2.1 - 'mod.php' SQL Injection 8 WEB BAYBORA
2010-02-24   ShortCMS 1.11F(B) (con) - SQL Injection 8 WEB Gamoscu
2009-11-16   kalimat new system 1.0 - 'index.php' SQL Injection 9 WEB ProF.Code
2010-02-24   WikyBlog 1.7.3rc2 - Multiple Vulnerabilities 8 WEB indoushka
2010-02-24   Article Friendly - Cross-Site Request Forgery 9 WEB pratul agrawal
2010-02-24   MySmartBB 1.0.0 - Cross-Site Scripting 8 WEB indoushka
2010-02-24   Max's Photo Album - Arbitrary File Upload 8 WEB indoushka
2010-02-23   bispage - Bypass 8 WEB SaMir-BonD
2010-02-23   QuickDev 4 PHP - Database Disclosure 8 WEB ViRuSMaN
2010-02-23   Tinypug 0.9.5 - Cross-Site Request Forgery (Password Change) 8 WEB AmnPardaz
2010-02-23   Softbiz Jobs - Multiple SQL Injections 8 WEB Easy Laster
2010-02-23   WorkSimple 1.3.2 - Multiple Vulnerabilities 8 WEB JIKO
2010-02-23   Joomla! Component user_id com_sqlreport - Blind SQL Injection 8 WEB snakespc
2010-02-23   Top Auktion - 'news.php' SQL Injection 8 WEB Easy Laster
2010-02-23   PHP Auktion Pro SQL - 'news.php' SQL Injection 8 WEB Easy Laster
2010-02-23   Joomla! Component com_ice - Blind SQL Injection 8 WEB snakespc
2010-02-23   Softbiz Jobs - Cross-Site Request Forgery 8 WEB pratul agrawal
2010-02-22   Article Friendly - SQL Injection 8 WEB SkuLL-HackeR
2010-02-22   phpBugTracker 1.0.1 - File Disclosure 8 WEB ViRuSMaN
2010-02-22   cPanel - Multiple Cross-Site Request Forgery Vulnerabilities 7 WEB SecurityRules
2010-02-22   vBSEO 3.1.0 - Local File Inclusion 7 WEB ViRuSMaN
2010-02-22   Arab Cart 1.0.2.0 - Multiple Vulnerabilities 8 WEB indoushka
2010-02-22   Galerie Dezign-Box France - Multiple Vulnerabilities 8 WEB indoushka
2010-02-22   Ero Auktion 2010 - 'news.php' SQL Injection 8 WEB Easy Laster
2010-02-22   Ero Auktion 2.0 - 'news.php' SQL Injection 8 WEB Easy Laster
2010-02-22   Ac4p.com Gallery 1.0 - Multiple Vulnerabilities 8 WEB indoushka
2010-02-22   Softbiz Jobs - 'news_desc' SQL Injection 8 WEB BAYBORA
2010-02-20   Netzbrett - Database Disclosure 8 WEB ViRuSMaN
2010-02-20   TimeClock 0.99 - Cross-Site Request Forgery (Add Admin) 8 WEB ViRuSMaN
2010-02-20   FlatFile Login System - Remote Password Disclosure 7 WEB ViRuSMaN
2010-02-19   Joomla! Component com_communitypolls 1.5.2 - Local File Inclusion 7 WEB kaMtiEz
2010-02-19   PHPKit 1.6.1 - 'mailer.php' SQL Injection 7 WEB Easy Laster
2010-02-19   Fonality trixbox 2.2.4 - 'PhonecDirectory.php' SQL Injection 8 WEB NorSlacker
2010-02-19   WSC CMS - Authentication Bypass 7 WEB Phenom
2010-02-19   Amelia CMS - SQL Injection 8 WEB Ariko-Security
2010-02-19   Litespeed Web Server 4.0.12 - Cross-Site Request Forgery (Add Admin) / Cross-Site Scripting 9 WEB d1dn0t
2010-02-19   phpAutoVideo - Cross-Site Request Forgery 8 WEB GoLdeN-z3r0
2010-02-18   Joomla! Plugin Core Design Scriptegrator - Local File Inclusion 8 WEB S2 Crew
2010-02-18   Open Source Classifieds 1.1.0 Alpha (OSClassi) - SQL Injection / Cross-Site Scripting / Arbitrary Ad 8 WEB Sioma Labs
2010-02-18   CubeCart - 'index.php' SQL Injection 9 WEB AtT4CKxT3rR0r1ST
2010-02-18   Joomla! Component com_otzivi - Local File Inclusion 9 WEB AtT4CKxT3rR0r1ST
2010-02-17   PunBBAnnuaire 0.4 - Blind SQL Injection 9 WEB Metropolis
2010-02-17   Erotik Auktionshaus - 'news.php' SQL Injection 8 WEB Easy Laster
2010-02-17   Auktionshaus Gelb 3 - 'news.php' SQL Injection 8 WEB Easy Laster
2010-02-17   Auktionshaus 4 - 'news.php' SQL Injection 7 WEB Easy Laster
2010-02-17   PHPIDS 0.4 - Remote File Inclusion 8 WEB eidelweiss
2010-02-17   Multiple File Attachments Mail Form Pro 2.0 - Arbitrary File Upload 8 WEB EgoPL
2010-02-17   uGround 1.0b - SQL Injection 8 WEB Easy Laster
2010-02-17   Joomla! Component com_acteammember - SQL Injection 8 WEB ALTBTA
2010-02-17   Nabernet - 'articles.php' SQL Injection 8 WEB AtT4CKxT3rR0r1ST
2010-02-17   intuitive - 'form.php' SQL Injection 8 WEB AtT4CKxT3rR0r1ST
2010-02-17   Joomla! Component com_acprojects - SQL Injection 7 WEB AtT4CKxT3rR0r1ST
2010-02-17   Joomla! Component com_acstartseite - SQL Injection 7 WEB AtT4CKxT3rR0r1ST