2010-02-13
|
|
InterTech Co 1.0 - SQL Injection
|
4 |
WEB
|
Red-D3v1L
|
2010-02-13
|
|
ZeusCMS 0.2 - Database Backup Dump / Local File Inclusion
|
4 |
WEB
|
ViRuSMaN
|
2010-02-13
|
|
WSN Guest 1.02 - 'orderlinks' SQL Injection
|
4 |
WEB
|
Gamoscu
|
2010-02-13
|
|
statcountex 3.1 - Multiple Vulnerabilities
|
4 |
WEB
|
Phenom
|
2010-02-13
|
|
MRW PHP Upload - Arbitrary File Upload
|
4 |
WEB
|
Phenom
|
2010-02-13
|
|
southburn Web - 'products.php' SQL Injection
|
4 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-02-13
|
|
Vito CMS - SQL Injection
|
4 |
WEB
|
hacker@sr.gov.yu
|
2010-02-12
|
|
daChooch - SQL Injection
|
3 |
WEB
|
snakespc
|
2010-02-12
|
|
CMS Made Simple 1.6.6 - Multiple Vulnerabilities
|
4 |
WEB
|
Beenu Arora
|
2010-02-12
|
|
Alqatari Group 1.0 - Blind SQL Injection
|
3 |
WEB
|
Red-D3v1L
|
2010-02-12
|
|
Izumi 1.1.0 - Multiple Local File Inclusion / Remote File Inclusions
|
4 |
WEB
|
cr4wl3r
|
2010-02-12
|
|
Infragistics WebHtmlEditor 7.1 - Multiple Vulnerabilities
|
4 |
WEB
|
SpeeDr00t
|
2010-02-11
|
|
Trade Manager Script - SQL Injection
|
4 |
WEB
|
JaMbA
|
2010-02-11
|
|
apemCMS - SQL Injection
|
4 |
WEB
|
Ariko-Security
|
2010-02-11
|
|
Vacation Rental Script - SQL Injection
|
4 |
WEB
|
JaMbA
|
2010-02-11
|
|
Video Games Rentals Script - SQL Injection
|
4 |
WEB
|
JaMbA
|
2010-02-11
|
|
J.A.G (Just Another Guestbook) 1.14 - Database Disclosure
|
4 |
WEB
|
Phenom
|
2010-02-11
|
|
RSA - SecurID Cross-Site Scripting
|
5 |
WEB
|
s4squatch
|
2010-02-11
|
|
X-Cart Pro 4.0.13 - SQL Injection
|
3 |
WEB
|
s4squatch
|
2010-02-11
|
|
Cisco Collaboration Server 5 - Cross-Site Scripting / Source Code Disclosure
|
4 |
WEB
|
s4squatch
|
2010-02-11
|
|
Books/eBooks Rental Software - SQL Injection
|
4 |
WEB
|
Don Tukulesto
|
2010-02-11
|
|
CD Rentals Script - SQL Injection
|
5 |
WEB
|
Don Tukulesto
|
2010-02-11
|
|
myPHP Guestbook 2.0.4 - Database Backup Dump
|
4 |
WEB
|
ViRuSMaN
|
2010-02-11
|
|
GameRoom Script - Authentication Bypass / Arbitrary File Upload
|
4 |
WEB
|
JIKO
|
2010-02-11
|
|
vBulletin 2.3.x - SQL Injection
|
5 |
WEB
|
ROOT_EGY
|
2010-02-11
|
|
vBulletin 3.0.0 - Cross-Site Scripting
|
4 |
WEB
|
ROOT_EGY
|
2010-02-11
|
|
vBulletin 3.5.2 - Cross-Site Scripting
|
4 |
WEB
|
ROOT_EGY
|
2010-02-11
|
|
Omnidocs - SQL Injection
|
4 |
WEB
|
thebluegenius
|
2010-02-10
|
|
ULoki Community Forum 2.1 - 'usercp.php' Cross-Site Scripting
|
4 |
WEB
|
Sioma Labs
|
2010-02-10
|
|
HASHE! Solutions - Multiple SQL Injections
|
4 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-02-10
|
|
eSmile Script - 'index.php' SQL Injection
|
5 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-02-09
|
|
osTicket 1.6 RC5 - Multiple Vulnerabilities
|
3 |
WEB
|
Nahuel Grisolia
|
2010-02-09
|
|
NewsLetter Tailor 0.2.0 - Remote File Inclusion
|
4 |
WEB
|
snakespc
|
2010-02-09
|
|
Limny 1.01 - Arbitrary File Upload
|
3 |
WEB
|
JIKO
|
2010-02-09
|
|
Fonts Site Script - Remote File Disclosure
|
3 |
WEB
|
JIKO
|
2010-02-09
|
|
Zomorrod CMS - SQL Injection
|
4 |
WEB
|
Pouya Daneshmand
|
2010-02-09
|
|
MOJO's IWms 7 - SQL Injection / Cross-Site Scripting
|
5 |
WEB
|
cp77fk4r
|
2010-02-09
|
|
Yes Solutions - Webapp SQL Injection
|
5 |
WEB
|
HackXBack
|
2010-02-09
|
|
NewsLetter Tailor - Authentication Bypass
|
5 |
WEB
|
ViRuSMaN
|
2010-02-09
|
|
NewsLetter Tailor - Database Backup Dump
|
4 |
WEB
|
ViRuSMaN
|
2010-02-09
|
|
CPA Site Solutions - Arbitrary File Upload
|
4 |
WEB
|
R3VAN_BASTARD
|
2010-02-09
|
|
fipsForum 2.6 - Remote Database Disclosure
|
3 |
WEB
|
ViRuSMaN
|
2010-02-08
|
|
Blue Dove - SQL Injection
|
4 |
WEB
|
HackXBack
|
2010-02-08
|
|
JaxCMS 1.0 - Local File Inclusion
|
4 |
WEB
|
Hamza 'MizoZ' N.
|
2010-02-07
|
|
TinyMCE WYSIWYG Editor - Multiple Vulnerabilities
|
4 |
WEB
|
mc2_s3lector
|
2010-02-07
|
|
Uiga Business Portal - SQL Injection / Cross-Site Scripting
|
3 |
WEB
|
Sioma Labs
|
2010-02-07
|
|
Rostermain 1.1 - Authentication Bypass
|
3 |
WEB
|
cr4wl3r
|
2010-02-07
|
|
EncapsCMS 0.3.6 - 'config[path]' Remote File Inclusion
|
4 |
WEB
|
cr4wl3r
|
2010-02-07
|
|
Killmonster 2.1 - Authentication Bypass
|
4 |
WEB
|
cr4wl3r
|
2010-02-07
|
|
Croogo 1.2.1 - Multiple Cross-Site Request Forgery Vulnerabilities
|
4 |
WEB
|
Milos Zivanovic
|
2010-02-07
|
|
Joomla! Component com_productbook - SQL Injection
|
4 |
WEB
|
snakespc
|
2010-02-07
|
|
Belkatalog CMS - SQL Injection
|
4 |
WEB
|
anonymous
|
2010-02-07
|
|
Exponent CMS 0.96.3 - 'articlemodule' SQL Injection
|
4 |
WEB
|
T u R c O
|
2010-02-07
|
|
DA Mailing List System 2 - Multiple Vulnerabilities
|
4 |
WEB
|
Phenom
|
2010-02-07
|
|
Baal Systems 3.8 - Authentication Bypass
|
4 |
WEB
|
cr4wl3r
|
2010-02-07
|
|
Zen Tracking 2.2 - Authentication Bypass
|
4 |
WEB
|
cr4wl3r
|
2010-02-07
|
|
WSN Guest - Database Disclosure
|
4 |
WEB
|
HackXBack
|
2010-02-06
|
|
ShopEx Single 4.5.1 - Multiple Vulnerabilities
|
4 |
WEB
|
cp77fk4r
|
2010-02-06
|
|
odlican.net CMS 1.5 - Arbitrary File Upload
|
4 |
WEB
|
anonymous
|
2010-02-06
|
|
Arab Network Tech. (ANT) CMS - SQL Injection
|
4 |
WEB
|
Tr0y-x
|
2010-02-06
|
|
Joomla! Component com_photoblog - Blind SQL Injection
|
4 |
WEB
|
ALTBTA
|
2010-02-06
|
|
Open Bulletin Board - Multiple Blind SQL Injections
|
4 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-02-05
|
|
Audistats 1.3 - SQL Injection
|
4 |
WEB
|
kaMtiEz
|
2010-02-04
|
|
ManageEngine OpUtils 5 - 'Login.DO' SQL Injection
|
4 |
WEB
|
Asheesh Anaconda
|
2010-02-04
|
|
MASA2EL Music City 1.0 - SQL Injection
|
4 |
WEB
|
alnjm33
|
2010-02-03
|
|
myBusinessAdmin - 'content.php' Blind SQL Injection
|
3 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-02-03
|
|
cityadmin - 'links.php' Blind SQL Injection
|
4 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-02-03
|
|
RealAdmin - 'detail.php' Blind SQL Injection
|
4 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-02-03
|
|
Hipergate 4.0.12 - Multiple Vulnerabilities
|
4 |
WEB
|
Nahuel Grisolia
|
2010-02-03
|
|
PHP Car Rental-Script - Authentication Bypass
|
4 |
WEB
|
Hamza 'MizoZ' N.
|
2010-02-03
|
|
KubeLance 1.7.6 - Cross-Site Request Forgery (Add Admin)
|
4 |
WEB
|
Milos Zivanovic
|
2010-02-02
|
|
MobPartner Chat - Multiple SQL Injections
|
4 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-02-02
|
|
MYRE Classified - 'cat' SQL Injection
|
4 |
WEB
|
kaMtiEz
|
2010-02-02
|
|
Dlili Script - SQL Injection
|
4 |
WEB
|
Dr.DaShEr
|
2010-02-02
|
|
GCP 2.0 datasets provided as BioCASE Web services - Local File Inclusion
|
4 |
WEB
|
R3VAN_BASTARD
|
2010-02-01
|
|
Home Of AlegroCart 1.1 - Cross-Site Request Forgery (Change Administrator Password)
|
5 |
WEB
|
The.Morpheus
|
2010-02-01
|
|
RaakCMS - Multiple Vulnerabilities
|
5 |
WEB
|
Pouya Daneshmand
|
2010-02-01
|
|
Snif 1.5.2 - Any Filetype Download
|
4 |
WEB
|
Aodrulez
|
2010-02-01
|
|
Joomla! Component Yelp - SQL Injection
|
3 |
WEB
|
B-HUNT3|2
|
2010-02-01
|
|
Joomla! Component Job - SQL Injection
|
3 |
WEB
|
B-HUNT3|2
|
2010-02-01
|
|
Evernew Free Joke Script - 'viewjokes.php' SQL Injection
|
4 |
WEB
|
Hamza 'MizoZ' N.
|
2010-02-01
|
|
ShoutCMS - 'content.php' Blind SQL Injection
|
4 |
WEB
|
Zero Cold
|
2010-01-31
|
|
Saman Portal - SQL Injection
|
4 |
WEB
|
Pouya Daneshmand
|
2010-01-31
|
|
Maian Greetings 2.1 - Arbitrary File Upload
|
4 |
WEB
|
indoushka
|
2010-01-31
|
|
Creative SplashWorks-SplashSite - 'page.php' Blind SQL Injection
|
3 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-01-31
|
|
crownweb - 'page.cfm' SQL Injection
|
4 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-01-30
|
|
dotProject 2.1.3 - Cross-Site Scripting / Improper Permissions
|
4 |
WEB
|
h00die
|
2010-01-30
|
|
IPB (nv2) Awards < 1.1.0 - SQL Injection
|
4 |
WEB
|
fred777
|
2010-01-30
|
|
ThinkAdmin - 'page.php' SQL Injection
|
4 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-01-29
|
|
eWebeditor ASP Version - Multiple Vulnerabilities
|
4 |
WEB
|
anonymous
|
2010-01-30
|
|
Joomla! Component com_simplefaq - 'catid' Blind SQL Injection
|
4 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-01-30
|
|
Joomla! Component JE Event Calendar - SQL Injection
|
4 |
WEB
|
B-HUNT3|2
|
2010-01-30
|
|
phpunity.newsmanager - Local File Inclusion
|
4 |
WEB
|
kaMtiEz
|
2010-01-30
|
|
Joomla! Component com_dms 2.5.1 - SQL Injection
|
4 |
WEB
|
kaMtiEz
|
2010-01-29
|
|
Joomla! Component JE Quiz - 'eid' Blind SQL Injection
|
4 |
WEB
|
B-HUNT3|2
|
2010-01-29
|
|
Joomla! Component Jreservation - Blind SQL Injection
|
4 |
WEB
|
B-HUNT3|2
|
2010-01-29
|
|
PHP Product Catalog - Cross-Site Request Forgery (Change Administrator Password)
|
3 |
WEB
|
bi0
|
2010-01-28
|
|
Joomla! Component CCNewsLetter - Local File Inclusion
|
4 |
WEB
|
AtT4CKxT3rR0r1ST
|
2010-01-28
|
|
Joomla! Component jVideoDirect - Blind SQL Injection
|
4 |
WEB
|
B-HUNT3|2
|
2010-01-28
|
|
Joomla! Component com_kunena - Blind SQL Injection
|
3 |
WEB
|
B-HUNT3|2
|
2010-01-28
|
|
Novaboard 1.1.2 - SQL Injection
|
4 |
WEB
|
Delibey
|
2010-01-28
|
|
Joomla! Component CCNewsLetter - Directory Traversal
|
4 |
WEB
|
B-HUNT3|2
|
2009-12-21
|
|
Woltlab Burningboard Addon Kleinanzeigenmarkt - SQL Injection
|
4 |
WEB
|
fred777
|
2010-01-27
|
|
Joomla! Component com_virtuemart - order_status_id SQL Injection
|
4 |
WEB
|
B-HUNT3|2
|
2010-01-27
|
|
Joomla! Component VirtueMart Module Customers_who_bought - SQL Injection
|
4 |
WEB
|
B-HUNT3|2
|
2010-01-26
|
|
Joomla! 1.5.12 - read/exec Remote files
|
5 |
WEB
|
Nikoal Petrov
|
2010-01-26
|
|
Joomla! 1.5.12 - Connect Back
|
4 |
WEB
|
Nikola Petrov
|
2010-01-26
|
|
UGiA PHP UPLOADER 0.2 - Arbitrary File Upload
|
4 |
WEB
|
indoushka
|
2010-01-25
|
|
Status2k - Remote Add Admin
|
4 |
WEB
|
alnjm33
|
2010-01-24
|
|
BoastMachine 3.1 - Arbitrary File Upload
|
4 |
WEB
|
alnjm33
|
2010-01-24
|
|
SilverStripe CMS 2.3.5 - Cross-Site Request Forgery / Open Redirection
|
4 |
WEB
|
cp77fk4r
|
2010-01-24
|
|
Joomla! Component com_mochigames - SQL Injection
|
4 |
WEB
|
B-HUNT3|2
|
2010-01-23
|
|
OpenDb 1.5.0.4 - Multiple Local File Inclusions
|
4 |
WEB
|
ViRuSMaN
|
2010-01-23
|
|
Joomla! Component JBDiary - Blind SQL Injection
|
4 |
WEB
|
B-HUNT3|2
|
2010-01-23
|
|
Joomla! Component com_jbpublishdownfp - SQL Injection
|
4 |
WEB
|
B-HUNT3|2
|
2010-01-23
|
|
Joomla! Component com_casino - SQL Injection
|
4 |
WEB
|
B-HUNT3|2
|
2010-01-23
|
|
Joomla! Component com_ContentBlogList - SQL Injection
|
4 |
WEB
|
B-HUNT3|2
|
2010-01-23
|
|
magic-portal 2.1 - SQL Injection
|
5 |
WEB
|
alnjm33
|
2010-01-22
|
|
Joomla! Component com_biographies - SQL Injection
|
4 |
WEB
|
snakespc
|
2010-01-22
|
|
Joomla! Component com_gurujibook - SQL Injection
|
3 |
WEB
|
snakespc
|
2010-01-22
|
|
KosmosBlog 0.9.3 - SQL Injection / Cross-Site Scripting / Cross-Site Request Forgery
|
5 |
WEB
|
Milos Zivanovic
|
2010-01-22
|
|
Joomla! Component com_avosbillets - SQL Injection
|
4 |
WEB
|
snakespc
|
2010-01-22
|
|
Joomla! Component com_gameserver - SQL Injection
|
4 |
WEB
|
B-HUNT3|2
|
2010-01-21
|
|
jQuery Uploadify 2.1.0 - Arbitrary File Upload
|
5 |
WEB
|
k4cp3r/Ablus
|
2010-01-21
|
|
Blog System 1.x - 'note' SQL Injection
|
4 |
WEB
|
h4ck3r
|