Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2009-12-16   Omnistar Affiliate - Authentication Bypass 22 WEB R3d-D3V!L
2009-12-16   eUploader PRO 3.1.1 - Cross-Site Request Forgery / Cross-Site Scripting 28 WEB Milos Zivanovic
2009-12-16   Pre Hospital Management System - 'department.php?id' SQL Injection 20 WEB R3d-D3V!L
2009-12-16   File Share 1.0 - SQL Injection 22 WEB TOP SAT 13
2009-12-16   Digiappz Freekot - Authentication Bypass 24 WEB R3d-D3V!L
2009-12-16   PhpLinkExchange 1.02 - Cross-Site Scripting / Upload 23 WEB Stink'
2009-12-16   D-Tendencia Bt 2008 - SQL Injection 24 WEB Dr.0rYX & Cr3W-DZ
2009-12-16   WHMCompleteSolution CMS - SQL Injection 24 WEB Dr.0rYX & Cr3W-DZ
2009-12-16   Pre Hospital Management System - Authentication Bypass 20 WEB R3d-D3V!L
2009-12-16   WordPress Plugin WP-Forum 2.3 - SQL Injection / Blind SQL Injection 27 WEB Juan Galiana Lara
2009-12-16   Drupal Module Sections - Cross-Site Scripting 22 WEB Justin C. Klein Keane
2009-12-16   GuestBookPro Script - Remote Database Disclosure 23 WEB ViRuSMaN
2009-12-16   Codefixer Membership - Remote Database Disclosure 25 WEB ViRuSMaN
2009-12-16   OSSIM 2.1.5 - Arbitrary File Upload 24 WEB Nahuel Grisolia
2009-12-16   OSSIM 2.1.5 - Remote Command Execution 27 WEB Nahuel Grisolia
2009-12-16   OSSIM 2.1.5 - SQL Injection 25 WEB Nahuel Grisolia
2009-12-16   iSupport 1.8 - Cross-Site Scripting / Local File Inclusion 24 WEB Stink & Essandre
2009-12-16   RecipePal 1.0 - SQL Injection 26 WEB R3d-D3V!L
2009-12-16   Article Directory - SQL Injection 26 WEB R3d-D3V!L
2009-12-16   V-SpacePal - SQL Injection 23 WEB R3d-D3V!L
2009-12-16   Recipe Script 5.0 - Arbitrary File Upload / Cross-Site Request Forgery / Cross-Site Scripting 23 WEB Milos Zivanovic
2009-12-16   JM CMS 1.0 - Authentication Bypass 24 WEB Red-D3v1L
2009-12-16   family connections 2.1.3 - Multiple Vulnerabilities 21 WEB Salvatore Fresta
2009-12-15   SitePal 1.1 - Authentication Bypass 23 WEB R3d-D3V!L
2009-12-15   GalleryPal FE 1.5 - Authentication Bypass 27 WEB R3d-D3V!L
2009-12-15   iGaming CMS 1.5 - Cross-Site Request Forgery 23 WEB Nex
2009-12-15   DubSite CMS 1.0 - Cross-Site Request Forgery 25 WEB Connection
2009-12-15   Ez Cart 1.0 - Multiple Cross-Site Request Forgery Vulnerabilities 25 WEB Milos Zivanovic
2009-12-15   Ez Blog 1.0 - Cross-Site Scripting / Cross-Site Request Forgery 24 WEB Milos Zivanovic
2009-12-15   LinkPal 1.0 - SQL Injection 23 WEB R3d-D3V!L
2009-12-15   ClickTrackerASP - 'sitedetails.asp?siteid' SQL Injection 22 WEB R3d-D3V!L
2009-12-15   DesigNsbyjm CMS 1.0 - 'PageId' SQL Injection 22 WEB Red-D3v1L
2009-12-15   Ez Faq Maker - Multiple Vulnerabilities 22 WEB Milos Zivanovic
2009-12-15   SitioOnline - SQL Injection 23 WEB 4lG3r14n0-t3r0
2009-12-15   Ez News Manager / Pro - Cross-Site Request Forgery (Change Admin Password) 23 WEB Milos Zivanovic
2009-12-15   Linkster - PHP/MySQL SQL Injection 22 WEB Angela Zhang
2009-12-15   EEGshop 1.2 - SQL Injection 23 WEB Securitylab.ir
2009-12-14   Oracle E-Business Suite - Multiple Vulnerabilities 25 WEB Hacktics
2009-12-14   Traidnt Discovery - Cross-Site Request Forgery (Create Staff Account) 21 WEB G0D-F4Th3r
2009-12-14   WSCreator 1.1 - Blind SQL Injection 24 WEB Salvatore Fresta
2009-12-14   Tender System 0.9.5b - Local File Inclusion 24 WEB Packetdeath
2009-12-14   mini Hosting Panel - Cross-Site Request Forgery (Change Admin Settings) 23 WEB Milos Zivanovic
2009-12-14   Text Exchange Pro - Cross-Site Request Forgery (Add Admin) 25 WEB bi0
2009-12-14   Easy Banner Pro - Cross-Site Request Forgery (Add Admin) 22 WEB bi0
2009-12-14   Ez Poll Hoster - Multiple Cross-Site Scripting / Cross-Site Request Forgery Vulnerabilities 23 WEB Milos Zivanovic
2009-12-14   AdManagerPro - Cross-Site Request Forgery (Add Admin) 24 WEB bi0
2009-12-14   Smart PHP Subscriber - Multiple Disclosure Vulnerabilities 23 WEB Milos Zivanovic
2009-12-14   Link Up Gold - Cross-Site Request Forgery (Add Admin) 22 WEB bi0
2009-12-14   Mail Manager Pro - Cross-Site Request Forgery (Change Admin Password) 21 WEB Milos Zivanovic
2009-12-14   Zabbix Server - Multiple Vulnerabilities 21 WEB Nicob
2009-12-14   Zabbix Agent < 1.6.7 - Remote Bypass 25 WEB Nicob
2009-12-14   NAS Uploader 1.0/1.5 - Arbitrary File Upload 21 WEB ViRuSMaN
2009-12-14   myPHPupload 0.5.1 - Arbitrary File Upload 19 WEB ViRuSMaN
2009-12-14   Maxs AJAX File Uploader - Arbitrary File Upload 22 WEB ViRuSMaN
2009-12-14   Digital Hive - Multiple Vulnerabilities 24 WEB ViRuSMaN
2009-12-14   [WS] upload - Arbitrary File Upload 25 WEB ViRuSMaN
2009-12-14   Quartz Concept Content Manager 3.00 - Authentication Bypass 20 WEB Mr.aFiR
2009-12-14   Redmine 0.8.6 - Cross-Site Request Forgery (Add Admin) 24 WEB p0deje
2009-12-14   eoCMS 0.9.03 - Remote File Inclusion 24 WEB 1nd0n3s14n l4m3r
2009-12-14   Automne.ws CMS 4.0.0rc2 - Multiple Remote File Inclusions 22 WEB 1nd0n3s14n l4m3r
2009-12-14   Ez Guestbook 1.0 - Multiple Vulnerabilities 21 WEB Milos Zivanovic
2009-12-13   Chipmunk Board Script 1.x - Multiple Cross-Site Request Forgery Vulnerabilities 26 WEB Milos Zivanovic
2009-12-13   Ele Medios CMS - SQL Injection 22 WEB Dr.0rYX & Cr3W-DZ
2009-12-13   Piwigo 2.0.6 - Multiple Vulnerabilities 23 WEB mr_me
2009-12-13   Frog CMS 0.9.5 - Cross-Site Request Forgery 28 WEB Milos Zivanovic
2009-12-13   Acc PHP eMail 1.1 - Cross-Site Request Forgery 24 WEB bi0
2009-12-10   phpLDAPadmin - Local File Inclusion 27 WEB ipsecs
2009-12-13   SpireCMS 2.0 - SQL Injection 21 WEB Dr.0rYX & Cr3W-DZ
2009-12-13   Joomla! Component com_virtuemart 1.0 - 'Product_ID' SQL Injection 22 WEB SOA Crew
2009-12-13   AccStatistics 1.1 - Cross-Site Request Forgery (Change Admin Settings) 25 WEB Milos Zivanovic
2009-12-13   Interspire Shopping Cart - Full Path Disclosure 24 WEB Mr.aFiR
2009-12-13   Uploadscript 1.0 - Multiple Vulnerabilities 29 WEB Mr.aFiR
2009-12-13   Acc Auto Dealer Script 5.0 - Persistent Cross-Site Scripting / SQL Backup 23 WEB bi0
2009-12-12   ZeeCareers 2.x - PHP HR Manager Website (Cross-Site Scripting / Authentication Bypass) 25 WEB bi0
2009-12-12   Miniweb 2.0 - Full Path Disclosure 28 WEB Salvatore Fresta
2009-12-11   B2C Booking Centre Systems - SQL Injection 23 WEB Salvatore Fresta
2009-12-11   XAMPP 1.7.2 - Change Administrative Password 22 WEB bi0
2009-12-11   phpCollegeExchange 0.1.5c - Multiple SQL Injections 26 WEB Salvatore Fresta
2009-12-11   Illogator Shop - SQL Injection Bypass 24 WEB bi0
2009-12-11   Chipmunk NewsLetter - Cross-Site Request Forgery 26 WEB Milos Zivanovic
2005-05-07   Sun Solaris AnswerBook2 - Multiple Cross-Site Scripting Vulnerabilities 26 WEB Thomas Liam Romanis
2009-12-11   E-Store - SQL Injection 28 WEB Salvatore Fresta
2009-12-11   Digital Scribe 1.4.1 - Multiple SQL Injections 22 WEB Salvatore Fresta
2009-12-11   oBlog - Persistent Cross-Site Scripting / Cross-Site Request Forgery / Admin Brute Force 21 WEB Milos Zivanovic
2009-12-10   Nuggetz CMS 1.0 - Remote Code Execution 22 WEB Amol Naik
2009-12-11   Billwerx RC 3.1 - Multiple Vulnerabilities 26 WEB mr_me
2009-12-10   OPMANAGER - Blind SQL Injection / XPath Injection 24 WEB Asheesh kumar Mani Tripathi
2009-12-10   PHP Inventory 1.2 - Authentication Bypass 25 WEB mr_me
2009-12-10   Joomla! Component Mamboleto 2.0 RC3 - Remote File Inclusion 24 WEB Don Tukulesto
2009-12-10   Free ASP Upload - Arbitrary File Upload 27 WEB Mr.aFiR
2009-12-10   Joomla! Component com_jphoto - 'id' SQL Injection 21 WEB kaMtiEz
2009-12-10   Joomla! Component com_jsjobs 1.0.5.6 - SQL Injection 21 WEB kaMtiEz
2009-12-09   TestLink Test Management and Execution System - Multiple Cross-Site Scripting / Injection Vulnerabil 23 WEB Core Security
2009-12-09   Real Estate Portal X.0 - Authentication Bypass 25 WEB AnTi SeCuRe
2009-12-08   AlefMentor 2.0 < 5.0 - 'id' SQL Injection 23 WEB Red-D3v1L
2009-12-08   Alqatari group 1.0 < 5.0 - 'id' SQL Injection 24 WEB Red-D3v1L
2009-12-08   Joomla! Component com_job - 'showMoreUse' SQL Injection 23 WEB Palyo34
2009-12-08   Viscacha 0.8 Gold - Persistent Cross-Site Scripting 27 WEB mr_me
2009-12-07   MarieCMS 0.9 - Local File Inclusion / Remote File Inclusion / Cross-Site Scripting 22 WEB Amol Naik
2009-12-08   IRAN N.E.T E-Commerce Group - SQL Injection 24 WEB Dr.0rYX & Cr3W-DZ
2009-12-07   Barracuda IMFirewall 620 - Multiple Vulnerabilities 23 WEB Global-Evolution
2009-12-07   SiSplet CMS 2008-01-24 - Multiple Remote File Inclusions 22 WEB cr4wl3r
2009-12-07   Chipmunk NewsLetter - Persistent Cross-Site Scripting 26 WEB mr_me
2009-12-06   iWeb HTTP Server - Directory Traversal 23 WEB mr_me
2009-12-06   Elkagroup - SQL Injection 24 WEB SadHaCkEr
2009-12-06   AROUNDMe 1.1 - 'language_path' Remote File Inclusion 25 WEB cr4wl3r
2009-12-05   WordPress Plugin Image Manager - Arbitrary File Upload 25 WEB DigitALL
2009-12-05   phpShop 0.8.1 - Multiple Vulnerabilities 26 WEB Andrea Fabrizi
2009-12-04   Joomla! Component yt_color YOOOtheme - Cross-Site Scripting / Cookie Stealing 24 WEB andresg888
2009-12-04   BM Classifieds Ads - SQL Injection 23 WEB Dr.0rYX & Cr3W-DZ
2009-12-04   Joomla! Component com_joomgallery 1.5.x - &func Incorrect Flood Filter 28 WEB Jbyte
2009-12-04   Achievo 1.4.2 - Persistent Cross-Site Scripting 22 WEB Nahuel Grisolia
2009-12-04   Achievo 1.4.2 - Arbitrary File Upload 24 WEB Nahuel Grisolia
2009-12-04   UBBCentral UBB.Threads 7.5.4 2 - Multiple File Inclusions 24 WEB R3VAN_BASTARD
2009-12-04   Invision Power Board 2.3.6/3.0.4 - Local File Inclusion / SQL Injection 27 WEB Dawid Golunski
2009-12-04   427BB 2.3.2 - SQL Injection 23 WEB cr4wl3r
2009-12-04   GeN3 forum 1.3 - SQL Injection 24 WEB Dr.0rYX & Cr3W-DZ
2009-12-03   Vivid Ads Shopping Cart - 'prodid' SQL Injection 21 WEB Yakir Wizman
2009-11-24   OSI Codes PHP Live! Support 3.1 - Remote File Inclusion 21 WEB Don Tukulesto
2009-11-27   PHP-Nuke 8.0 - News Module Cross-Site Scripting / HTML Code Injection 24 WEB K053
2009-12-01   Apache Tomcat 3.2.1 - 404 Error Page Cross-Site Scripting 23 WEB MustLive
2009-12-01   Joomla! Component ProofReader 1.0 RC6 - Cross-Site Scripting 19 WEB MustLive
2009-12-03   Theeta CMS - Multiple Vulnerabilities 26 WEB c0dy
2009-11-25   Power BB 1.8.3 - Remote File Inclusions 26 WEB DigitALL
2009-12-03   SAPID SHOP 1.3 - Remote File Inclusion 22 WEB cr4wl3r