Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2010-02-13   InterTech Co 1.0 - SQL Injection 4 WEB Red-D3v1L
2010-02-13   ZeusCMS 0.2 - Database Backup Dump / Local File Inclusion 4 WEB ViRuSMaN
2010-02-13   WSN Guest 1.02 - 'orderlinks' SQL Injection 4 WEB Gamoscu
2010-02-13   statcountex 3.1 - Multiple Vulnerabilities 4 WEB Phenom
2010-02-13   MRW PHP Upload - Arbitrary File Upload 4 WEB Phenom
2010-02-13   southburn Web - 'products.php' SQL Injection 4 WEB AtT4CKxT3rR0r1ST
2010-02-13   Vito CMS - SQL Injection 4 WEB hacker@sr.gov.yu
2010-02-12   daChooch - SQL Injection 3 WEB snakespc
2010-02-12   CMS Made Simple 1.6.6 - Multiple Vulnerabilities 4 WEB Beenu Arora
2010-02-12   Alqatari Group 1.0 - Blind SQL Injection 3 WEB Red-D3v1L
2010-02-12   Izumi 1.1.0 - Multiple Local File Inclusion / Remote File Inclusions 4 WEB cr4wl3r
2010-02-12   Infragistics WebHtmlEditor 7.1 - Multiple Vulnerabilities 4 WEB SpeeDr00t
2010-02-11   Trade Manager Script - SQL Injection 4 WEB JaMbA
2010-02-11   apemCMS - SQL Injection 4 WEB Ariko-Security
2010-02-11   Vacation Rental Script - SQL Injection 4 WEB JaMbA
2010-02-11   Video Games Rentals Script - SQL Injection 4 WEB JaMbA
2010-02-11   J.A.G (Just Another Guestbook) 1.14 - Database Disclosure 4 WEB Phenom
2010-02-11   RSA - SecurID Cross-Site Scripting 5 WEB s4squatch
2010-02-11   X-Cart Pro 4.0.13 - SQL Injection 3 WEB s4squatch
2010-02-11   Cisco Collaboration Server 5 - Cross-Site Scripting / Source Code Disclosure 4 WEB s4squatch
2010-02-11   Books/eBooks Rental Software - SQL Injection 4 WEB Don Tukulesto
2010-02-11   CD Rentals Script - SQL Injection 5 WEB Don Tukulesto
2010-02-11   myPHP Guestbook 2.0.4 - Database Backup Dump 4 WEB ViRuSMaN
2010-02-11   GameRoom Script - Authentication Bypass / Arbitrary File Upload 4 WEB JIKO
2010-02-11   vBulletin 2.3.x - SQL Injection 5 WEB ROOT_EGY
2010-02-11   vBulletin 3.0.0 - Cross-Site Scripting 4 WEB ROOT_EGY
2010-02-11   vBulletin 3.5.2 - Cross-Site Scripting 4 WEB ROOT_EGY
2010-02-11   Omnidocs - SQL Injection 4 WEB thebluegenius
2010-02-10   ULoki Community Forum 2.1 - 'usercp.php' Cross-Site Scripting 4 WEB Sioma Labs
2010-02-10   HASHE! Solutions - Multiple SQL Injections 4 WEB AtT4CKxT3rR0r1ST
2010-02-10   eSmile Script - 'index.php' SQL Injection 5 WEB AtT4CKxT3rR0r1ST
2010-02-09   osTicket 1.6 RC5 - Multiple Vulnerabilities 3 WEB Nahuel Grisolia
2010-02-09   NewsLetter Tailor 0.2.0 - Remote File Inclusion 4 WEB snakespc
2010-02-09   Limny 1.01 - Arbitrary File Upload 3 WEB JIKO
2010-02-09   Fonts Site Script - Remote File Disclosure 3 WEB JIKO
2010-02-09   Zomorrod CMS - SQL Injection 4 WEB Pouya Daneshmand
2010-02-09   MOJO's IWms 7 - SQL Injection / Cross-Site Scripting 5 WEB cp77fk4r
2010-02-09   Yes Solutions - Webapp SQL Injection 5 WEB HackXBack
2010-02-09   NewsLetter Tailor - Authentication Bypass 5 WEB ViRuSMaN
2010-02-09   NewsLetter Tailor - Database Backup Dump 4 WEB ViRuSMaN
2010-02-09   CPA Site Solutions - Arbitrary File Upload 4 WEB R3VAN_BASTARD
2010-02-09   fipsForum 2.6 - Remote Database Disclosure 3 WEB ViRuSMaN
2010-02-08   Blue Dove - SQL Injection 4 WEB HackXBack
2010-02-08   JaxCMS 1.0 - Local File Inclusion 4 WEB Hamza 'MizoZ' N.
2010-02-07   TinyMCE WYSIWYG Editor - Multiple Vulnerabilities 4 WEB mc2_s3lector
2010-02-07   Uiga Business Portal - SQL Injection / Cross-Site Scripting 3 WEB Sioma Labs
2010-02-07   Rostermain 1.1 - Authentication Bypass 3 WEB cr4wl3r
2010-02-07   EncapsCMS 0.3.6 - 'config[path]' Remote File Inclusion 4 WEB cr4wl3r
2010-02-07   Killmonster 2.1 - Authentication Bypass 4 WEB cr4wl3r
2010-02-07   Croogo 1.2.1 - Multiple Cross-Site Request Forgery Vulnerabilities 4 WEB Milos Zivanovic
2010-02-07   Joomla! Component com_productbook - SQL Injection 4 WEB snakespc
2010-02-07   Belkatalog CMS - SQL Injection 4 WEB anonymous
2010-02-07   Exponent CMS 0.96.3 - 'articlemodule' SQL Injection 4 WEB T u R c O
2010-02-07   DA Mailing List System 2 - Multiple Vulnerabilities 4 WEB Phenom
2010-02-07   Baal Systems 3.8 - Authentication Bypass 4 WEB cr4wl3r
2010-02-07   Zen Tracking 2.2 - Authentication Bypass 4 WEB cr4wl3r
2010-02-07   WSN Guest - Database Disclosure 4 WEB HackXBack
2010-02-06   ShopEx Single 4.5.1 - Multiple Vulnerabilities 4 WEB cp77fk4r
2010-02-06   odlican.net CMS 1.5 - Arbitrary File Upload 4 WEB anonymous
2010-02-06   Arab Network Tech. (ANT) CMS - SQL Injection 4 WEB Tr0y-x
2010-02-06   Joomla! Component com_photoblog - Blind SQL Injection 4 WEB ALTBTA
2010-02-06   Open Bulletin Board - Multiple Blind SQL Injections 4 WEB AtT4CKxT3rR0r1ST
2010-02-05   Audistats 1.3 - SQL Injection 4 WEB kaMtiEz
2010-02-04   ManageEngine OpUtils 5 - 'Login.DO' SQL Injection 4 WEB Asheesh Anaconda
2010-02-04   MASA2EL Music City 1.0 - SQL Injection 4 WEB alnjm33
2010-02-03   myBusinessAdmin - 'content.php' Blind SQL Injection 3 WEB AtT4CKxT3rR0r1ST
2010-02-03   cityadmin - 'links.php' Blind SQL Injection 4 WEB AtT4CKxT3rR0r1ST
2010-02-03   RealAdmin - 'detail.php' Blind SQL Injection 4 WEB AtT4CKxT3rR0r1ST
2010-02-03   Hipergate 4.0.12 - Multiple Vulnerabilities 4 WEB Nahuel Grisolia
2010-02-03   PHP Car Rental-Script - Authentication Bypass 4 WEB Hamza 'MizoZ' N.
2010-02-03   KubeLance 1.7.6 - Cross-Site Request Forgery (Add Admin) 4 WEB Milos Zivanovic
2010-02-02   MobPartner Chat - Multiple SQL Injections 4 WEB AtT4CKxT3rR0r1ST
2010-02-02   MYRE Classified - 'cat' SQL Injection 4 WEB kaMtiEz
2010-02-02   Dlili Script - SQL Injection 4 WEB Dr.DaShEr
2010-02-02   GCP 2.0 datasets provided as BioCASE Web services - Local File Inclusion 4 WEB R3VAN_BASTARD
2010-02-01   Home Of AlegroCart 1.1 - Cross-Site Request Forgery (Change Administrator Password) 5 WEB The.Morpheus
2010-02-01   RaakCMS - Multiple Vulnerabilities 5 WEB Pouya Daneshmand
2010-02-01   Snif 1.5.2 - Any Filetype Download 4 WEB Aodrulez
2010-02-01   Joomla! Component Yelp - SQL Injection 3 WEB B-HUNT3|2
2010-02-01   Joomla! Component Job - SQL Injection 3 WEB B-HUNT3|2
2010-02-01   Evernew Free Joke Script - 'viewjokes.php' SQL Injection 4 WEB Hamza 'MizoZ' N.
2010-02-01   ShoutCMS - 'content.php' Blind SQL Injection 4 WEB Zero Cold
2010-01-31   Saman Portal - SQL Injection 4 WEB Pouya Daneshmand
2010-01-31   Maian Greetings 2.1 - Arbitrary File Upload 4 WEB indoushka
2010-01-31   Creative SplashWorks-SplashSite - 'page.php' Blind SQL Injection 3 WEB AtT4CKxT3rR0r1ST
2010-01-31   crownweb - 'page.cfm' SQL Injection 4 WEB AtT4CKxT3rR0r1ST
2010-01-30   dotProject 2.1.3 - Cross-Site Scripting / Improper Permissions 4 WEB h00die
2010-01-30   IPB (nv2) Awards < 1.1.0 - SQL Injection 4 WEB fred777
2010-01-30   ThinkAdmin - 'page.php' SQL Injection 4 WEB AtT4CKxT3rR0r1ST
2010-01-29   eWebeditor ASP Version - Multiple Vulnerabilities 4 WEB anonymous
2010-01-30   Joomla! Component com_simplefaq - 'catid' Blind SQL Injection 4 WEB AtT4CKxT3rR0r1ST
2010-01-30   Joomla! Component JE Event Calendar - SQL Injection 4 WEB B-HUNT3|2
2010-01-30   phpunity.newsmanager - Local File Inclusion 4 WEB kaMtiEz
2010-01-30   Joomla! Component com_dms 2.5.1 - SQL Injection 4 WEB kaMtiEz
2010-01-29   Joomla! Component JE Quiz - 'eid' Blind SQL Injection 4 WEB B-HUNT3|2
2010-01-29   Joomla! Component Jreservation - Blind SQL Injection 4 WEB B-HUNT3|2
2010-01-29   PHP Product Catalog - Cross-Site Request Forgery (Change Administrator Password) 3 WEB bi0
2010-01-28   Joomla! Component CCNewsLetter - Local File Inclusion 4 WEB AtT4CKxT3rR0r1ST
2010-01-28   Joomla! Component jVideoDirect - Blind SQL Injection 4 WEB B-HUNT3|2
2010-01-28   Joomla! Component com_kunena - Blind SQL Injection 3 WEB B-HUNT3|2
2010-01-28   Novaboard 1.1.2 - SQL Injection 4 WEB Delibey
2010-01-28   Joomla! Component CCNewsLetter - Directory Traversal 4 WEB B-HUNT3|2
2009-12-21   Woltlab Burningboard Addon Kleinanzeigenmarkt - SQL Injection 4 WEB fred777
2010-01-27   Joomla! Component com_virtuemart - order_status_id SQL Injection 4 WEB B-HUNT3|2
2010-01-27   Joomla! Component VirtueMart Module Customers_who_bought - SQL Injection 4 WEB B-HUNT3|2
2010-01-26   Joomla! 1.5.12 - read/exec Remote files 5 WEB Nikoal Petrov
2010-01-26   Joomla! 1.5.12 - Connect Back 4 WEB Nikola Petrov
2010-01-26   UGiA PHP UPLOADER 0.2 - Arbitrary File Upload 4 WEB indoushka
2010-01-25   Status2k - Remote Add Admin 4 WEB alnjm33
2010-01-24   BoastMachine 3.1 - Arbitrary File Upload 4 WEB alnjm33
2010-01-24   SilverStripe CMS 2.3.5 - Cross-Site Request Forgery / Open Redirection 4 WEB cp77fk4r
2010-01-24   Joomla! Component com_mochigames - SQL Injection 4 WEB B-HUNT3|2
2010-01-23   OpenDb 1.5.0.4 - Multiple Local File Inclusions 4 WEB ViRuSMaN
2010-01-23   Joomla! Component JBDiary - Blind SQL Injection 4 WEB B-HUNT3|2
2010-01-23   Joomla! Component com_jbpublishdownfp - SQL Injection 4 WEB B-HUNT3|2
2010-01-23   Joomla! Component com_casino - SQL Injection 4 WEB B-HUNT3|2
2010-01-23   Joomla! Component com_ContentBlogList - SQL Injection 4 WEB B-HUNT3|2
2010-01-23   magic-portal 2.1 - SQL Injection 5 WEB alnjm33
2010-01-22   Joomla! Component com_biographies - SQL Injection 4 WEB snakespc
2010-01-22   Joomla! Component com_gurujibook - SQL Injection 3 WEB snakespc
2010-01-22   KosmosBlog 0.9.3 - SQL Injection / Cross-Site Scripting / Cross-Site Request Forgery 5 WEB Milos Zivanovic
2010-01-22   Joomla! Component com_avosbillets - SQL Injection 4 WEB snakespc
2010-01-22   Joomla! Component com_gameserver - SQL Injection 4 WEB B-HUNT3|2
2010-01-21   jQuery Uploadify 2.1.0 - Arbitrary File Upload 5 WEB k4cp3r/Ablus
2010-01-21   Blog System 1.x - 'note' SQL Injection 4 WEB h4ck3r