Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2008-09-30   SG Real Estate Portal 2.0 - Blind SQL Injection 18 WEB Stack
2008-09-30   eFront 3.5.1 / build 2710 - Arbitrary File Upload 19 WEB Pepelux
2008-09-30   MiNBank 1.5.0 - Multiple Remote File Inclusions 18 WEB DaRkLiFe
2008-09-30   SG Real Estate Portal 2.0 - Blind SQL Injection / Local File Inclusion 19 WEB SirGod
2008-09-30   FAQ Management Script - 'catid' SQL Injection 16 WEB Hussin X
2008-09-29   ArabCMS - 'rss.php' Local File Inclusion 17 WEB JIKO
2008-09-29   PG Matchmaking Script - Multiple SQL Injections 20 WEB Super Cristal
2008-09-29   Post Comments 3.0 - Insecure Cookie Handling 18 WEB Crackers_Child
2008-09-29   Arcadem Pro - 'articlecat' SQL Injection 17 WEB Hussin X
2008-09-29   events Calendar 1.1 - Remote File Inclusion 16 WEB k3vin mitnick
2008-09-28   BbZL.php 0.92 - Insecure Cookie Handling 20 WEB Stack
2008-09-28   PHP-Fusion Mod freshlinks - 'linkid' SQL Injection 18 WEB boom3rang
2008-09-28   Joomla! Component imagebrowser 0.1.5 rc2 - Directory Traversal 16 WEB Cr@zy_King
2008-09-28   BbZL.php 0.92 - 'lien_2' Local Directory Traversal 17 WEB JIKO
2008-09-28   Pilot Group eTraining - 'news_read.php' SQL Injection 25 WEB S.W.A.T.
2008-09-28   Pro Chat Rooms 3.0.3 - SQL Injection 17 WEB ~!Dok_tOR!~
2008-09-28   PHPcounter 1.3.2 - 'index.php' SQL Injection 22 WEB StAkeR
2008-09-28   ParsaWeb CMS - 'Search' SQL Injection 20 WEB BugReport.IR
2008-09-28   ZEELYRICS 2.0 - 'bannerclick.php' SQL Injection 16 WEB Hussin X
2008-09-27   X7 Chat 2.0.1A1 - Local File Inclusion 17 WEB JIKO
2008-09-27   Yoxel 1.23beta - 'itpm_estimate.php' Remote Code Execution 19 WEB dun
2008-09-27   PHP-Lance 1.52 - 'catid' SQL Injection 19 WEB InjEctOr5
2008-09-27   PowerPortal 2.0.13 - 'path' Local Directory Traversal 18 WEB r45c4l
2008-09-27   MyCard 1.0.2 - 'id' SQL Injection 21 WEB r45c4l
2008-09-27   PlugSpace 0.1 - 'navi' Local File Inclusion 17 WEB dun
2008-09-27   LnBlog 0.9.0 - 'plugin' Local File Inclusion 16 WEB dun
2008-09-27   Real Estate Manager 1.01 - 'cat_id' SQL Injection 16 WEB CraCkEr
2008-09-27   CoAST 0.95 - 'sections_file' Remote File Inclusion 17 WEB DaRkLiFe
2008-09-27   E-Uploader Pro 1.0 - Multiple SQL Injections 16 WEB ~!Dok_tOR!~
2008-09-27   Joovili 3.0 - Multiple SQL Injections 19 WEB ~!Dok_tOR!~
2008-09-27   Camera Life 2.6.2b4 - Arbitrary File Upload 18 WEB Mi4night
2008-09-27   Vbgooglemap Hotspot Edition 1.0.3 - SQL Injection 21 WEB elusiven
2008-09-27   X7 Chat 2.0.1A1 - 'mini.php' Local File Inclusion 19 WEB NoGe
2008-09-27   RPG.Board 0.0.8Beta2 - Insecure Cookie Handling 18 WEB Stack
2008-09-27   ASPapp Knowledge Base - 'CatId' SQL Injection (2) 18 WEB Crackers_Child
2008-09-26   RPG.Board 0.0.8Beta2 - 'showtopic' SQL Injection 18 WEB 0x90
2008-09-26   The Gemini Portal 4.7 - 'lang' Remote File Inclusion 18 WEB ZoRLu
2008-09-26   Crux Gallery 1.32 - Insecure Cookie Handling 18 WEB Pepelux
2008-09-26   openEngine 2.0 beta2 - Remote File Inclusion 25 WEB Crackers_Child
2008-09-26   The Gemini Portal 4.7 - Insecure Cookie Handling 18 WEB Pepelux
2008-09-26   Esqlanelapse Software Project 2.6.2 - Insecure Cookie Handling 20 WEB ZoRLu
2008-09-26   Atomic Photo Album 1.1.0pre4 - Insecure Cookie Handling 21 WEB Stack
2008-09-26   Libra PHP File Manager 1.18 - Insecure Cookie Handling 20 WEB Stack
2008-09-26   212Cafe Board 0.07 - 'qID' SQL Injection 19 WEB CWH Underground
2008-09-26   PromoteWeb MySQL - 'id' SQL Injection 23 WEB CWH Underground
2008-09-26   Ultimate WebBoard 3.00 - 'Category' SQL Injection 19 WEB CWH Underground
2008-09-26   barcodegen 2.0.0 - 'class_dir' Remote File Inclusion 19 WEB Br0k3n H34rT
2008-09-26   Atomic Photo Album 1.1.0pre4 - Blind SQL Injection 20 WEB Stack
2008-09-25   LanSuite 3.3.2 - 'FCKeditor' Arbitrary File Upload 21 WEB Stack
2008-09-25   Atomic Photo Album 1.1.0pre4 - Cross-Site Scripting / SQL Injection 18 WEB d3v1l
2008-09-25   openEngine 2.0 beta4 - Remote File Inclusion 22 WEB dun
2008-09-25   Vikingboard 0.2 Beta - SQL Column Truncation 18 WEB StAkeR
2008-09-25   PHP infoBoard 7 - Plus Insecure Cookie Handling 17 WEB Stack
2008-09-25   Libra PHP File Manager 1.18/2.0 - Local File Inclusion 16 WEB Pepelux
2008-09-25   PHP infoboard 7 plus - Multiple Vulnerabilities 18 WEB CWH Underground
2008-09-25   Vikingboard 0.2 Beta - 'task' Local File Inclusion 19 WEB dun
2008-09-25   PHPOCS 0.1-beta3 - 'act' Local File Inclusion 19 WEB dun
2008-09-25   LanSuite 3.3.2 - 'design' Local File Inclusion 17 WEB dun
2008-09-25   AJ Auction Pro Platinum - 'seller_id' SQL Injection 20 WEB InjEctOr5
2008-09-24   Observer 0.3.2.1 - Multiple Remote Command Execution Vulnerabilities 19 WEB dun
2008-09-24   barcodegen 2.0.0 - Local File Inclusion 18 WEB dun
2008-09-24   ADN Forum 1.0b - Insecure Cookie Handling 20 WEB Pepelux
2008-09-24   webcp 0.5.7 - 'filelocation' Remote File Disclosure 19 WEB GoLd_M
2008-09-24   Jadu CMS for Government - 'recruit_details.php' SQL Injection 19 WEB r45c4l
2008-09-24   PHPcounter 1.3.2 - 'defs.php' Local File Inclusion 17 WEB dun
2008-09-24   mailwatch 1.0.4 - 'doc' Local File Inclusion 18 WEB dun
2008-09-24   emergecolab 1.0 - 'sitecode' Local File Inclusion 18 WEB dun
2008-09-24   AJ Auction Pro Platinum Skin - 'item_id' SQL Injection 17 WEB GoLd_M
2008-09-24   Jetik Emlak ESA 2.0 - Multiple SQL Injections 20 WEB ZoRLu
2008-09-24   Ol BookMarks Manager 0.7.5 - Local File Inclusion / Remote File Inclusion / SQL Injection 18 WEB GoLd_M
2008-09-24   Rianxosencabos CMS 0.9 - Remote Add Admin 20 WEB ka0x
2008-09-24   HotScripts Clone - 'cid' SQL Injection 21 WEB Hussin X
2008-09-23   WebPortal CMS 0.7.4 - 'code' Remote Code Execution 21 WEB GoLd_M
2008-09-23   Ol BookMarks Manager 0.7.5 - Local File Inclusion 17 WEB dun
2008-09-23   JETIK-WEB Software - 'kat' SQL Injection 22 WEB d3v1l
2008-09-23   Galmeta Post CMS 0.2 - Remote Code Execution / Arbitrary File Upload 18 WEB GoLd_M
2008-09-23   iGaming CMS 1.5 - Multiple SQL Injections 22 WEB StAkeR
2008-09-23   Sofi WebGui 0.6.3 PRE - 'mod_dir' Remote File Inclusion 21 WEB dun
2008-09-23   OpenRat 0.8-beta4 - 'tpl_dir' Remote File Inclusion 16 WEB dun
2008-09-22   CJ Ultra Plus 1.0.4 - Cookie SQL Injection 17 WEB -SmoG-
2008-09-22   Fez 1.3/2.0 RC1 - 'list.php' SQL Injection 20 WEB d3v1l
2008-09-22   basebuilder 2.0.1 - 'main.inc.php' Remote File Inclusion 20 WEB dun
2008-09-22   MyBlog 0.9.8 - Insecure Cookie Handling 19 WEB Pepelux
2008-09-22   OpenElec 3.01 - 'obj' Local File Inclusion 17 WEB dun
2008-09-22   WSN Links Free 4.0.34P - 'comments.php' Blind SQL Injection 18 WEB Stack
2008-09-22   WCMS 1.0b - 'news_detail.asp' SQL Injection 19 WEB CWH Underground
2008-09-22   BuzzyWall 1.3.1 - 'search' SQL Injection 19 WEB ~!Dok_tOR!~
2008-09-22   PHP iCalendar 2.24 - Insecure Cookie Handling 18 WEB Stack
2008-09-22   WSN Links 2.20 - 'comments.php' SQL Injection 18 WEB d3v1l
2008-09-22   WSN Links 2.22/2.23 - 'vote.php' SQL Injection 20 WEB d3v1l
2008-09-22   WCMS 1.0b - Arbitrary Add Admin 18 WEB CWH Underground
2008-09-21   AvailScript Article Script - 'view.php' SQL Injection 20 WEB Hussin X
2008-09-21   Rianxosencabos CMS 0.9 - Insecure Cookie Handling 18 WEB Stack
2008-09-21   6rbScript 3.3 - 'section.php' Local File Inclusion 18 WEB Stack
2008-09-21   PHP iCalendar 2.24 - 'cookie_language' Local File Inclusion / Arbitrary File Upload 16 WEB EgiX
2008-09-21   Netartmedia Real Estate Portal 1.2 - SQL Injection 20 WEB Encrypt3d.M!nd
2008-09-21   Netartmedia Jobs Portal 1.3 - Multiple SQL Injections 20 WEB Encrypt3d.M!nd
2008-09-21   e107 Plugin Image Gallery 0.9.6.2 - SQL Injection 18 WEB boom3rang
2008-09-21   AvailScript Jobs Portal Script - (Authenticated) Arbitrary File Upload 21 WEB InjEctOr5
2008-09-21   Rianxosencabos CMS 0.9 - Arbitrary Add Admin 17 WEB CWH Underground
2008-09-21   Diesel Job Site - 'job_id' Blind SQL Injection 19 WEB Stack
2008-09-21   6rbScript 3.3 - 'singerid' SQL Injection 21 WEB Hussin X
2008-09-21   PHPKB 1.5 Professional - Multiple SQL Injections 16 WEB d3v1l
2008-09-21   TWiki 4.2.2 - 'action' Remote Code Execution 18 WEB webDEViL
2008-09-21   Basic PHP Events Lister 1.0 - SQL Injection 18 WEB 0x90
2008-09-21   Invision Power Board 2.3.5 - SQL Injection 18 WEB waraxe
2008-09-20   jPORTAL 2 - 'humor.php' SQL Injection 19 WEB r45c4l
2008-09-20   Oceandir 2.9 - 'show_vote.php' SQL Injection 18 WEB JEEN HACKER TEAM
2008-09-20   Plaincart 1.1.2 - 'p' SQL Injection 18 WEB r45c4l
2008-09-20   Diesel Pay Script - 'area' SQL Injection 16 WEB ZoRLu
2008-09-20   MyFWB 1.0 - 'index.php' SQL Injection 19 WEB 0x90
2008-09-20   Explay CMS 2.1 - Insecure Cookie Handling 19 WEB Stack
2008-09-20   Advanced Electron Forum 1.0.6 - Remote Code Execution 19 WEB GulfTech Security
2008-09-19   Explay CMS 2.1 - Persistent Cross-Site Scripting / Cross-Site Request Forgery 16 WEB hodik
2008-09-19   easyLink 1.1.0 - 'detail.php' SQL Injection 17 WEB Egypt Coder
2008-09-19   Pluck CMS 4.5.3 - 'update.php' Remote File Corruption 20 WEB Nine:Situations:Group
2008-09-18   AssetMan 2.5-b - SQL Injection using Session Fixation 17 WEB Neo Anderson
2008-09-18   ProActive CMS - 'template' Local File Inclusion 18 WEB r45c4l
2008-09-18   Diesel Joke Site - 'picture_category.php' SQL Injection 19 WEB SarBoT511
2008-09-18   CYASK 3.x - 'neturl' Local File Disclosure 18 WEB xy7
2008-09-18   ProArcadeScript 1.3 - 'random' SQL Injection 18 WEB SuNHouSe2
2008-09-18   addalink 4 - 'category_id' SQL Injection 21 WEB ka0x
2008-09-18   E-PHP CMS - 'article.php' SQL Injection 20 WEB HaCkeR_EgY
2008-09-17   addalink 4 Beta - Write Approved Links 23 WEB Pepelux
2008-09-17   X10media Mp3 Search Engine 1.5.5 - Remote File Inclusion 16 WEB THUNDER