Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2008-11-03   BosClassifieds - 'cat_id' SQL Injection 18 WEB ZoRLu
2008-11-02   DZCP (deV!L_z Clanportal) 1.4.9.6 - Blind SQL Injection 19 WEB anonymous
2008-11-02   1st News - SQL Injection 22 WEB TR-ShaRk
2008-11-02   Maran PHP Shop - 'prodshow.php' SQL Injection 18 WEB d3v1l
2008-11-02   NetRisk 2.0 - Cross-Site Scripting / SQL Injection 20 WEB StAkeR
2008-11-02   Apartment Search Script - Arbitrary File Upload / Cross-Site Scripting 17 WEB ZoRLu
2008-11-02   Joovili 3.1.4 - Insecure Cookie Handling 15 WEB ZoRLu
2008-11-02   Maran PHP Shop - 'admin.php' Insecure Cookie Handling 17 WEB JosS
2008-11-02   Maran PHP Shop - 'prod.php' SQL Injection 18 WEB JosS
2008-11-02   YourFreeWorld Shopping Cart - Blind SQL Injection 26 WEB Hussin X
2008-11-02   Downline Goldmine newdownlinebuilder - SQL Injection 16 WEB Hussin X
2008-11-02   Downline Goldmine paidversion - SQL Injection 16 WEB Hussin X
2008-11-01   YourFreeWorld URL Rotator - SQL Injection 19 WEB Hussin X
2008-11-01   YourFreeWorld Classifieds Hosting - SQL Injection 20 WEB Hussin X
2008-11-01   Downline Goldmine Category Addon - SQL Injection 20 WEB Hussin X
2008-11-01   Downline Goldmine Builder - SQL Injection 17 WEB Hussin X
2008-11-01   YourFreeWorld Classifieds - 'category' SQL Injection 18 WEB Hussin X
2008-11-01   YourFreeWorld Classifieds Blaster - SQL Injection 17 WEB Hussin X
2008-11-01   YourFreeWorld Reminder Service - SQL Injection 18 WEB Hussin X
2008-11-01   YourFreeWorld Scrolling Text Ads - SQL Injection 18 WEB Hussin X
2008-11-01   YourFreeWorld Viral Marketing - SQL Injection 18 WEB Hussin X
2008-11-01   YourFreeWorld Short Url & Url Tracker - SQL Injection 15 WEB Hussin X
2008-11-01   YourFreeWorld Forced Matrix Script - SQL Injection 19 WEB Hussin X
2008-11-01   YourFreeWorld Autoresponder Hosting - 'tr.php' SQL Injection 18 WEB Hussin X
2008-11-01   YourFreeWorld Blog Blaster - 'tr.php' SQL Injection 19 WEB Hussin X
2008-11-01   YourFreeWorld Banner Management - SQL Injection 18 WEB Hussin X
2008-11-01   YourFreeWorld Downline Builder - 'tr.php' SQL Injection 18 WEB Hussin X
2008-11-01   Shahrood - Blind SQL Injection 18 WEB BazOka-HaCkEr
2008-11-01   Micro CMS 0.3.5 - Remote Add/Delete/Password Change 16 WEB StAkeR
2008-11-01   AJ Article 1.0 - Authentication Bypass 19 WEB Hakxer
2008-11-01   YourFreeWorld Programs Rating - SQL Injection 19 WEB Hussin X
2008-11-01   GO4I.NET ASP Forum 1.0 - SQL Injection 16 WEB Bl@ckbe@rD
2008-11-01   Graugon PHP Article Publisher Pro 1.5 - Insecure Cookie Handling 17 WEB ZoRLu
2008-11-01   Joomla! Component Flash Tree Gallery 1.0 - Remote File Inclusion 20 WEB NoGe
2008-11-01   Bloggie Lite 0.0.2 Beta - Insecure Cookie Handling / SQL Injection 19 WEB JosS
2008-11-01   SFS EZ Gaming Cheats - SQL Injection 20 WEB ZoRLu
2008-11-01   SFS EZ Pub Site - SQL Injection 16 WEB Hakxer
2008-11-01   SFS EZ Webstore - 'where' SQL Injection 18 WEB ZoRLu
2008-10-31   SFS EZ Top Sites - SQL Injection 20 WEB Stack
2008-10-31   SFS EZ Career - SQL Injection 16 WEB Stack
2008-10-31   SFS EZ Auction - Blind SQL Injection 18 WEB Stack
2008-10-31   Article Publisher PRO - 'userid' SQL Injection 15 WEB Stack
2008-10-31   ModernBill 4.4.x - Cross-Site Scripting / Remote File Inclusion 22 WEB nigh7f411
2008-10-31   SFS EZ Software - 'id' SQL Injection 16 WEB x0r
2008-10-31   SFS EZ Hot or Not - 'phid' SQL Injection 17 WEB d3b4g
2008-10-31   SFS EZ Webring - 'cat' SQL Injection 19 WEB d3b4g
2008-10-31   Article Publisher PRO 1.5 - Authentication Bypass 19 WEB Hakxer
2008-10-31   SFS EZ Affiliate - 'cat_id' SQL Injection 19 WEB d3b4g
2008-10-31   SFS EZ BIZ PRO - SQL Injection 17 WEB Hussin X
2008-10-31   Adult Banner Exchange Website - 'targetid' SQL Injection 16 WEB Hussin X
2008-10-31   SFS EZ Link Directory - 'cat_id' SQL Injection 21 WEB BeyazKurt
2008-10-31   SFS EZ Home Business Directory - 'cat_id' SQL Injection 20 WEB BeyazKurt
2008-10-31   SFS EZ Gaming Directory - 'cat_id' SQL Injection 20 WEB BeyazKurt
2008-10-31   SFS EZ Hosting Directory - 'cat_id' SQL Injection 17 WEB BeyazKurt
2008-10-31   Absolute NewsLetter 6.1 - Insecure Cookie Handling 19 WEB x0r
2008-10-31   SFS EZ HotScripts-like Site - 'cid' SQL Injection 19 WEB TR-ShaRk
2008-10-31   Absolute FAQ Manager 6.0 - Insecure Cookie Handling 16 WEB Hakxer
2008-10-31   Absolute News Feed 1.0 - Remote Insecure Cookie Handling 17 WEB Hakxer
2008-10-31   Absolute News Manager 5.1 - Insecure Cookie Handling 19 WEB Hakxer
2008-10-31   U-Mail Webmail 4.91 - 'edit.php' Arbitrary File Write 17 WEB Shennan Wang
2008-10-31   cPanel 11.x - Cross-Site Scripting / Local File Inclusion 18 WEB Khashayar Fereidani
2008-10-31   Logz podcast CMS 1.3.1 - 'art' SQL Injection 17 WEB ZoRLu
2008-10-31   SFS EZ Adult Directory - 'directory.php' SQL Injection 17 WEB Hurley
2008-10-31   SFS EZ Gaming Directory - 'directory.php' SQL Injection 20 WEB Hurley
2008-10-31   Absolute Control Panel XE 1.5 - Insecure Cookie Handling 19 WEB Hakxer
2008-10-31   Absolute Live Support 5.1 - Insecure Cookie Handling 20 WEB Hakxer
2008-10-31   Absolute Form Processor 4.0 - Insecure Cookie Handling 18 WEB Hakxer
2008-10-31   Absolute Banner Manager - Insecure Cookie Handling 18 WEB Hakxer
2008-10-31   Absolute Content Rotator 6.0 - Insecure Cookie Handling 20 WEB Hakxer
2008-10-31   Tribiq CMS 5.0.10a (Windows) - Local File Inclusion 17 WEB GoLd_M
2008-10-31   Cybershade CMS 0.2b - Remote File Inclusion 17 WEB w0cker
2008-10-31   Tribiq CMS 5.0.9a (Beta) - Insecure Cookie Handling 16 WEB ZoRLu
2008-10-31   e107 Plugin lyrics_menu - 'l_id' SQL Injection 19 WEB ZoRLu
2008-10-30   Absolute Poll Manager XE 4.1 - Insecure Cookie Handling 19 WEB Hakxer
2008-10-30   Absolute Podcast 1.0 - Remote Insecure Cookie Handling 18 WEB Hakxer
2008-10-30   Absolute File Send 1.0 - Remote Insecure Cookie Handling 20 WEB Hakxer
2008-10-30   MyPHP Forum 3.0 - Edit Topics / Blind SQL Injection 16 WEB StAkeR
2008-10-29   Pro Traffic One - 'poll_results.php' SQL Injection 15 WEB Hussin X
2008-10-29   Venalsur on-line Booking Centre - Cross-Site Scripting / SQL Injection 18 WEB d3b4g
2008-10-29   Harlandscripts Pro Traffic One - 'mypage.php' SQL Injection 19 WEB Beenu Arora
2008-10-29   WebCards 1.3 - SQL Injection 20 WEB t0pP8uZz
2008-10-29   Mambo Component SimpleBoard 1.0.1 - Arbitrary File Upload 18 WEB t0pP8uZz
2008-10-29   WordPress Plugin E-Commerce 3.4 - Arbitrary File Upload 17 WEB t0pP8uZz
2008-10-29   7Shop 1.1 - Arbitrary File Upload 16 WEB t0pP8uZz
2008-10-29   e107 plugin fm pro 1 - File Disclosure / Arbitrary File Upload / Directory Traversal 18 WEB GoLd_M
2008-10-29   Sepal SPBOARD 4.5 - 'board.cgi' Remote Command Execution 19 WEB GoLd_M
2008-10-29   H2O-CMS 3.4 - Insecure Cookie Handling 18 WEB Stack
2008-10-28   H2O-CMS 3.4 - Remote Command Execution 22 WEB StAkeR
2008-10-28   TlGuestBook 1.2 - Insecure Cookie Handling 18 WEB x0r
2008-10-28   Agares ThemeSiteScript 1.0 - 'loadadminpage' Remote File Inclusion 16 WEB DaRkLiFe
2008-10-28   PersianBB - 'id' SQL Injection 17 WEB Hussin X
2008-10-28   MyForum 1.3 - Insecure Cookie Handling 16 WEB Stack
2008-10-28   e107 Plugin BLOG Engine 2.1.4 - SQL Injection 17 WEB ZoRLu
2008-10-27   MyKtools 2.4 - Arbitrary Database Backup 17 WEB Stack
2008-10-27   AIOCP 1.4 - 'poll_id' SQL Injection 18 WEB ExSploiters
2008-10-27   QuestCMS - Cross-Site Scripting / Directory Traversal / SQL Injection 16 WEB d3b4g
2008-10-27   e107 Plugin EasyShop - 'category_id' Blind SQL Injection 18 WEB StAkeR
2008-10-27   MyKtools 2.4 - 'langage' Local File Inclusion 17 WEB x0r
2008-10-27   e107 Plugin alternate_profiles - 'id' SQL Injection 17 WEB boom3rang
2008-10-27   TlAds 1.0 - Remote Insecure Cookie Handling 16 WEB x0r
2008-10-27   Persia BME E-Catalogue - SQL Injection 20 WEB BugReport.IR
2008-10-27   MyForum 1.3 - 'padmin' Local File Inclusion 16 WEB Vrs-hCk
2008-10-26   Ads Pro - 'dhtml.pl' Remote Command Execution 18 WEB S0l1D
2008-10-26   MyForum 1.3 - 'lecture.php' SQL Injection 17 WEB Vrs-hCk
2008-10-26   SFS Ez Forum - SQL Injection 19 WEB Hurley
2008-10-26   WordPress Plugin Media Holder - SQL Injection 20 WEB boom3rang
2008-10-26   PozScripts Classified Auctions - 'gotourl.php?id' SQL Injection 18 WEB Hussin X
2008-10-25   Kasra CMS - 'index.php' Multiple SQL Injections 17 WEB G4N0K
2008-10-25   Tlnews 2.2 - Insecure Cookie Handling 17 WEB x0r
2008-10-24   BuzzyWall 1.3.1 - 'id' Remote File Disclosure 18 WEB b3hz4d
2008-10-24   phpdaily - SQL Injection / Cross-Site Scripting / Local File Download 19 WEB 0xFFFFFF
2008-10-24   NEPT Image Uploader 1.0 - Arbitrary File Upload 20 WEB Dentrasi
2008-10-24   Aj RSS Reader - 'url' SQL Injection 18 WEB yassine_enp
2008-10-24   Joomla! Component Kbase 1.0 - SQL Injection 16 WEB H!tm@N
2008-10-24   Joomla! Component archaic binary Gallery 0.2 - Directory Traversal 17 WEB H!tm@N
2008-10-23   SiteEngine 5.x - Multiple Vulnerabilities 16 WEB xy7
2008-10-23   WebSVN 2.0 - Cross-Site Scripting / File Handling / Code Execution 17 WEB GulfTech Security
2008-10-23   miniPortail 2.2 - Cross-Site Scripting / Local File Inclusion 19 WEB StAkeR
2008-10-23   MindDezign Photo Gallery 2.2 - Arbitrary Add Admin 18 WEB CWH Underground
2008-10-23   MindDezign Photo Gallery 2.2 - SQL Injection 19 WEB CWH Underground
2008-10-23   aflog 1.01 - Multiple Insecure Cookie Handling Vulnerabilities 18 WEB JosS
2008-10-23   Joomla! Component RWCards 3.0.11 - Local File Inclusion 18 WEB Vrs-hCk
2008-10-23   txtshop 1.0b (Windows) - 'Language' Local File Inclusion 19 WEB Pepelux
2008-10-23   CSPartner 1.0 - Delete All Users / SQL Injection 20 WEB StAkeR
2008-10-22   YDC - 'cat' SQL Injection 21 WEB Hussin X