Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2010-03-05   Auktionshaus 3.0.0.1 - 'news.php?id' SQL Injection 4 WEB Easy Laster
2010-03-05   Kolang 4.3.10 < 5.3.0 - 'proc_open()' PHP 'safe_mode' Bypass 4 WEB Hamid Ebadi
2010-03-05   OneCMS 2.5 - SQL Injection 4 WEB Ctacok & .:[melkiy]:
2010-03-04   Sagem Routers - Remote Authentication Bypass 4 WEB AlpHaNiX
2010-03-04   PHP-Nuke - 'user.php' SQL Injection 4 WEB Easy Laster
2010-03-04   PHP-Nuke CMS (Survey and Poll) - SQL Injection 3 WEB SENOT
2010-03-03   Joomla! Component com_blog - Directory Traversal 4 WEB DevilZ TM
2010-03-03   MiNBank 1.5.0 - Remote Command Execution 4 WEB JosS
2010-03-03   smartplugs 1.3 - 'showplugs.php' SQL Injection 4 WEB Easy Laster
2010-03-03   Gnat-TGP 1.2.20 - Remote File Inclusion 4 WEB cr4wl3r
2010-03-03   Dosya Yukle Scrtipi (DosyaYukle Scripti) 1.0 - Arbitrary File Upload 4 WEB indoushka
2010-03-02   Uiga Church Portal - 'index.php' SQL Injection 4 WEB Easy Laster
2010-03-02   My Little Forum - 'contact.php' SQL Injection 4 WEB Easy Laster
2010-03-02   Uploadify Sample Collection - Arbitrary File Upload 4 WEB indoushka
2010-03-02   PHP Advanced Transfer Manager 1.10 - Arbitrary File Upload 4 WEB indoushka
2010-03-02   osCSS 1.2.1 - Database Backups Disclosure 3 WEB indoushka
2010-03-02   Al Sat Scripti - Database Disclosure 4 WEB indoushka
2010-03-01   CMS by MyWorks - Multiple Vulnerabilities 4 WEB Palyo34
2010-03-01   phptroubleticket 2.0 - 'id' SQL Injection 4 WEB kaMtiEz
2010-02-28   Majoda CMS - Authentication Bypass 4 WEB Phenom
2010-02-28   Baykus Yemek Tarifleri 2.1 - SQL Injection 4 WEB cr4wl3r
2010-02-28   Joomla! Component com_liveticker - Blind SQL Injection 3 WEB snakespc
2010-02-28   Joomla! Component com_yanc - SQL Injection 4 WEB snakespc
2010-02-28   HazelPress Lite 0.0.4 - Authentication Bypass 5 WEB cr4wl3r
2010-02-28   Uiga Fan Club - 'index.php' SQL Injection 3 WEB Easy Laster
2010-02-28   Uiga Personal Portal - 'index.php' SQL Injection 4 WEB Easy Laster
2010-02-27   Slaed CMS 4.0 - Multiple Vulnerabilities 4 WEB indoushka
2010-02-27   Joomla! Component com_paxgallery - Blind Injection 4 WEB snakespc
2010-02-27   Uiga Fan Club 1.0 - Authentication Bypass 4 WEB cr4wl3r
2010-02-27   Scripts Feed Business Directory - SQL Injection 3 WEB Crux
2010-02-27   Pre Classified Listings - SQL Injection 3 WEB Crux
2010-02-27   phpMySite - Cross-Site Scripting / SQL Injection 4 WEB Crux
2010-02-27   ProMan 0.1.1 - Multiple File Inclusions 4 WEB cr4wl3r
2010-02-27   phpRAINCHECK 1.0.1 - SQL Injection 4 WEB cr4wl3r
2010-02-27   phpCDB 1.0 - Local File Inclusion 2 WEB cr4wl3r
2010-02-27   Project Man 1.0 - Authentication Bypass 4 WEB cr4wl3r
2010-02-27   Gravity Board X 2.0 Beta (Public Release 3) - SQL Injection 4 WEB Ctacok
2010-02-27   DZ Erotik Auktionshaus 4.rgo - 'news.php' SQL Injection 3 WEB Easy Laster
2010-02-26   FileExecutive 1 - Multiple Vulnerabilities 4 WEB ViRuSMaN
2010-02-25   WebAdministrator Lite CMS - SQL Injection 4 WEB Ariko-Security
2010-02-25   Joomla! Component com_Joomlaconnect_be - Blind Injection 4 WEB snakespc
2010-02-25   GameScript 3.0 - SQL Injection 4 WEB FormatXformat
2010-02-25   Softbiz Recipes Portal Script - 'showcats.php' SQL Injection 3 WEB Easy Laster
2010-02-24   Softbiz Classifieds PLUS - Multiple SQL Injections 4 WEB Easy Laster
2010-02-24   Maian Uploader 4.0 - Arbitrary File Upload 3 WEB indoushka
2010-02-24   PBBoard 2.0.5 - Multiple Vulnerabilities 4 WEB indoushka
2010-02-24   Web Server Creator Web Portal 0.1 - Multiple Vulnerabilities 4 WEB indoushka
2010-02-24   Softbiz Auktios Script - Multiple SQL Injections 4 WEB Easy Laster
2010-02-24   PHPCOIN 1.2.1 - 'mod.php' SQL Injection 4 WEB BAYBORA
2010-02-24   ShortCMS 1.11F(B) (con) - SQL Injection 4 WEB Gamoscu
2009-11-16   kalimat new system 1.0 - 'index.php' SQL Injection 4 WEB ProF.Code
2010-02-24   WikyBlog 1.7.3rc2 - Multiple Vulnerabilities 4 WEB indoushka
2010-02-24   Article Friendly - Cross-Site Request Forgery 5 WEB pratul agrawal
2010-02-24   MySmartBB 1.0.0 - Cross-Site Scripting 4 WEB indoushka
2010-02-24   Max's Photo Album - Arbitrary File Upload 4 WEB indoushka
2010-02-23   bispage - Bypass 4 WEB SaMir-BonD
2010-02-23   QuickDev 4 PHP - Database Disclosure 4 WEB ViRuSMaN
2010-02-23   Tinypug 0.9.5 - Cross-Site Request Forgery (Password Change) 4 WEB AmnPardaz
2010-02-23   Softbiz Jobs - Multiple SQL Injections 4 WEB Easy Laster
2010-02-23   WorkSimple 1.3.2 - Multiple Vulnerabilities 4 WEB JIKO
2010-02-23   Joomla! Component user_id com_sqlreport - Blind SQL Injection 4 WEB snakespc
2010-02-23   Top Auktion - 'news.php' SQL Injection 4 WEB Easy Laster
2010-02-23   PHP Auktion Pro SQL - 'news.php' SQL Injection 4 WEB Easy Laster
2010-02-23   Joomla! Component com_ice - Blind SQL Injection 4 WEB snakespc
2010-02-23   Softbiz Jobs - Cross-Site Request Forgery 4 WEB pratul agrawal
2010-02-22   Article Friendly - SQL Injection 4 WEB SkuLL-HackeR
2010-02-22   phpBugTracker 1.0.1 - File Disclosure 4 WEB ViRuSMaN
2010-02-22   cPanel - Multiple Cross-Site Request Forgery Vulnerabilities 3 WEB SecurityRules
2010-02-22   vBSEO 3.1.0 - Local File Inclusion 3 WEB ViRuSMaN
2010-02-22   Arab Cart 1.0.2.0 - Multiple Vulnerabilities 4 WEB indoushka
2010-02-22   Galerie Dezign-Box France - Multiple Vulnerabilities 4 WEB indoushka
2010-02-22   Ero Auktion 2010 - 'news.php' SQL Injection 4 WEB Easy Laster
2010-02-22   Ero Auktion 2.0 - 'news.php' SQL Injection 4 WEB Easy Laster
2010-02-22   Ac4p.com Gallery 1.0 - Multiple Vulnerabilities 4 WEB indoushka
2010-02-22   Softbiz Jobs - 'news_desc' SQL Injection 4 WEB BAYBORA
2010-02-20   Netzbrett - Database Disclosure 4 WEB ViRuSMaN
2010-02-20   TimeClock 0.99 - Cross-Site Request Forgery (Add Admin) 4 WEB ViRuSMaN
2010-02-20   FlatFile Login System - Remote Password Disclosure 3 WEB ViRuSMaN
2010-02-19   Joomla! Component com_communitypolls 1.5.2 - Local File Inclusion 2 WEB kaMtiEz
2010-02-19   PHPKit 1.6.1 - 'mailer.php' SQL Injection 2 WEB Easy Laster
2010-02-19   Fonality trixbox 2.2.4 - 'PhonecDirectory.php' SQL Injection 3 WEB NorSlacker
2010-02-19   WSC CMS - Authentication Bypass 3 WEB Phenom
2010-02-19   Amelia CMS - SQL Injection 4 WEB Ariko-Security
2010-02-19   Litespeed Web Server 4.0.12 - Cross-Site Request Forgery (Add Admin) / Cross-Site Scripting 4 WEB d1dn0t
2010-02-19   phpAutoVideo - Cross-Site Request Forgery 3 WEB GoLdeN-z3r0
2010-02-18   Joomla! Plugin Core Design Scriptegrator - Local File Inclusion 3 WEB S2 Crew
2010-02-18   Open Source Classifieds 1.1.0 Alpha (OSClassi) - SQL Injection / Cross-Site Scripting / Arbitrary Ad 4 WEB Sioma Labs
2010-02-18   CubeCart - 'index.php' SQL Injection 5 WEB AtT4CKxT3rR0r1ST
2010-02-18   Joomla! Component com_otzivi - Local File Inclusion 4 WEB AtT4CKxT3rR0r1ST
2010-02-17   PunBBAnnuaire 0.4 - Blind SQL Injection 4 WEB Metropolis
2010-02-17   Erotik Auktionshaus - 'news.php' SQL Injection 4 WEB Easy Laster
2010-02-17   Auktionshaus Gelb 3 - 'news.php' SQL Injection 4 WEB Easy Laster
2010-02-17   Auktionshaus 4 - 'news.php' SQL Injection 3 WEB Easy Laster
2010-02-17   PHPIDS 0.4 - Remote File Inclusion 3 WEB eidelweiss
2010-02-17   Multiple File Attachments Mail Form Pro 2.0 - Arbitrary File Upload 3 WEB EgoPL
2010-02-17   uGround 1.0b - SQL Injection 3 WEB Easy Laster
2010-02-17   Joomla! Component com_acteammember - SQL Injection 3 WEB ALTBTA
2010-02-17   Nabernet - 'articles.php' SQL Injection 3 WEB AtT4CKxT3rR0r1ST
2010-02-17   intuitive - 'form.php' SQL Injection 3 WEB AtT4CKxT3rR0r1ST
2010-02-17   Joomla! Component com_acprojects - SQL Injection 2 WEB AtT4CKxT3rR0r1ST
2010-02-17   Joomla! Component com_acstartseite - SQL Injection 3 WEB AtT4CKxT3rR0r1ST
2010-02-16   Limny 2.0 - Cross-Site Request Forgery (Create Admin User) 6 WEB Luis Santana
2010-02-16   Limny 2.0 - Cross-Site Request Forgery (Change Email and Password) 4 WEB Luis Santana
2010-02-16   SongForever.com Clone - Arbitrary File Upload 4 WEB indoushka
2010-02-16   Mambo Component 'com_acnews' - 'id' SQL Injection 4 WEB Zero Bits & Xzit3
2010-02-16   Pogodny CMS - SQL Injection 4 WEB Ariko-Security
2010-02-15   microUpload - Arbitrary File Upload 5 WEB Phenom
2010-02-15   Joomla! Component com_hdvideoshare - SQL Injection 5 WEB snakespc
2010-02-15   Joomla! Component com_joomportfolio - Blind Injection 4 WEB snakespc
2010-02-15   blog ink - Bypass Setting 4 WEB indoushka
2010-02-15   CoffieNet CMS - Admin Bypass 4 WEB indoushka
2010-02-15   Dodo Upload 1.3 - Arbitrary File Upload (Bypass) 4 WEB indoushka
2010-02-15   WordPress Plugin Copperleaf Photolog 0.16 - SQL Injection 4 WEB kaMtiEz
2010-02-15   superengine CMS (Custom Pack) - SQL Injection 4 WEB 10n1z3d
2010-02-15   Généré par KDPics 1.18 - Remote Add Admin 4 WEB snakespc
2010-02-14   Katalog Stron Hurricane 1.3.5 - Remote File Inclusion / SQL Injection 4 WEB kaMtiEz
2010-02-14   File Upload Manager 1.3 - Web Shell File Upload 4 WEB ROOT_EGY
2010-02-14   Joomla! Component com_videos - SQL Injection 4 WEB snakespc
2010-02-14   Joomla! Component Jw_allVideos - Arbitrary File Download 4 WEB Pouya Daneshmand
2010-02-14   Mambo Component AkoGallery - SQL Injection 4 WEB snakespc
2010-02-14   JTL-Shop 2 - 'druckansicht.php' SQL Injection 3 WEB Lo$T
2010-02-14   ShortCMS 1.2.0 - SQL Injection 3 WEB Thibow
2010-02-14   Calendarix 0.8.20071118 - SQL Injection 4 WEB Thibow
2010-02-14   PHP PEAR 1.9.0 - Multiple Remote File Inclusions 4 WEB eidelweiss
2010-02-13   WordPress Core 2.9 - Failure to Restrict URL Access 4 WEB tmacuk