2008-07-09
|
|
DreamPics Builder - 'page' SQL Injection
|
4 |
WEB
|
Hussin X
|
2008-07-09
|
|
AuraCMS 2.2.2 - '/pages_data.php' Arbitrary Edit/Add/Delete
|
4 |
WEB
|
k1tk4t
|
2008-07-08
|
|
BoonEx Ray 3.5 - 'sIncPath' Remote File Inclusion
|
4 |
WEB
|
RoMaNcYxHaCkEr
|
2008-07-08
|
|
Mole Group Last Minute Script 4.0 - SQL Injection
|
4 |
WEB
|
t0pP8uZz
|
2008-07-09
|
|
Fonality trixbox - 'langChoice' Local File Inclusion (connect-back) (2)
|
4 |
WEB
|
Jean-Michel BESNARD
|
2008-07-08
|
|
Joomla! Component Content 1.0.0 - 'itemID' SQL Injection
|
4 |
WEB
|
unknown_styler
|
2008-07-08
|
|
Boonex Dolphin 6.1.2 - Multiple Remote File Inclusions
|
4 |
WEB
|
RoMaNcYxHaCkEr
|
2008-07-08
|
|
BrewBlogger 2.1.0.1 - Arbitrary Add Admin
|
4 |
WEB
|
CWH Underground
|
2008-07-08
|
|
Mole Group Real Estate Script 1.1 - SQL Injection
|
4 |
WEB
|
t0pP8uZz
|
2008-07-08
|
|
Mole Group Hotel Script 1.0 - SQL Injection
|
3 |
WEB
|
t0pP8uZz
|
2008-07-07
|
|
SmartPPC Pay Per Click Script - 'idDirectory' Blind SQL Injection (2)
|
5 |
WEB
|
ka0x
|
2008-07-07
|
|
QNX Neutrino 0.8.4 Atomic Edition - Remote Code Execution
|
4 |
WEB
|
Ams
|
2008-07-07
|
|
Triton CMS Pro 1.06 - 'x-forwarded-for' Blind SQL Injection
|
4 |
WEB
|
girex
|
2008-07-07
|
|
Fuzzylime CMS 3.01a - 'file' Local File Inclusion
|
4 |
WEB
|
Cod3rZ
|
2008-07-07
|
|
WebXell Editor 0.1.3 - Arbitrary File Upload
|
4 |
WEB
|
CWH Underground
|
2008-07-07
|
|
SmartPPC Pay Per Click Script - 'idDirectory' Blind SQL Injection (1)
|
4 |
WEB
|
Hamtaro
|
2008-07-06
|
|
ContentNow 1.4.1 - Arbitrary File Upload / Cross-Site Scripting
|
4 |
WEB
|
CWH Underground
|
2008-07-06
|
|
XPOZE Pro 3.06 - 'uid' SQL Injection
|
4 |
WEB
|
HIva Team
|
2008-07-05
|
|
Fuzzylime CMS 3.01 - Remote Command Execution
|
4 |
WEB
|
Ams
|
2008-07-05
|
|
ImperialBB 2.3.5 - Arbitrary File Upload
|
4 |
WEB
|
PHPLizardo
|
2008-07-05
|
|
Kasseler CMS 1.3.0 - Local File Inclusion / Cross-Site Scripting
|
4 |
WEB
|
Cr@zy_King
|
2008-07-05
|
|
Thelia 1.3.5 - Multiple Vulnerabilities
|
4 |
WEB
|
BlackH
|
2008-07-04
|
|
Site@School 2.4.10 - 'FCKeditor' Session Hijacking / Arbitrary File Upload
|
4 |
WEB
|
EgiX
|
2008-07-04
|
|
Joomla! Component DBQuery 1.4.1.1 - Remote File Inclusion
|
4 |
WEB
|
SsEs
|
2008-07-04
|
|
Joomla! Component altas 1.0 - Multiple SQL Injections
|
4 |
WEB
|
Houssamix
|
2008-07-04
|
|
1024 CMS 1.4.4 - Multiple Local/Remote File Inclusions
|
4 |
WEB
|
DSecRG
|
2008-07-03
|
|
pHNews CMS Alpha 1 - Local File Inclusion
|
4 |
WEB
|
CraCkEr
|
2008-07-03
|
|
PHPwebnews 0.2 MySQL Edition - 'det' SQL Injection
|
4 |
WEB
|
Virangar Security
|
2008-07-03
|
|
PHPwebnews 0.2 MySQL Edition - 'id_kat' SQL Injection
|
3 |
WEB
|
storm
|
2008-07-03
|
|
CMS WebBlizzard - 'index.php' Blind SQL Injection
|
4 |
WEB
|
Bl@ckbe@rD
|
2008-07-02
|
|
PHPortal 1.2 - Multiple Remote File Inclusions
|
4 |
WEB
|
Ciph3r
|
2008-07-02
|
|
Joomla! Component is 1.0.1 - Multiple SQL Injections
|
4 |
WEB
|
Houssamix
|
2008-07-02
|
|
Joomla! Component QuickTime VR 0.1 - SQL Injection
|
4 |
WEB
|
Houssamix
|
2008-07-02
|
|
Joomla! Component Brightcode Weblinks - 'catid' SQL Injection
|
5 |
WEB
|
His0k4
|
2008-07-02
|
|
CMS little 0.0.1 - 'template' Local File Inclusion
|
4 |
WEB
|
CWH Underground
|
2008-07-02
|
|
XchangeBoard 1.70 - 'boardID' SQL Injection
|
4 |
WEB
|
haZl0oh
|
2008-07-01
|
|
Joomla! Component mygallery - 'cid' SQL Injection
|
4 |
WEB
|
Houssamix
|
2008-07-01
|
|
Joomla! Component versioning 1.0.2 - 'id' SQL Injection
|
4 |
WEB
|
DarkMatter Crew
|
2008-07-01
|
|
plx Ad Trader 3.2 - 'adid' SQL Injection
|
4 |
WEB
|
Hussin X
|
2008-07-01
|
|
Efestech Shop 2.0 - 'cat_id' SQL Injection
|
4 |
WEB
|
Kacak
|
2008-07-01
|
|
PHP-Nuke Platinium 7.6.b.5 - Remote Code Execution
|
4 |
WEB
|
Charles Fol
|
2008-07-01
|
|
VanGogh Web CMS 0.9 - 'article_ID' SQL Injection
|
2 |
WEB
|
CWH Underground
|
2008-07-01
|
|
Sisplet CMS 2008-01-24 - 'id' SQL Injection
|
3 |
WEB
|
CWH Underground
|
2008-07-01
|
|
CAT2 - 'spaw_root' Local File Inclusion
|
4 |
WEB
|
StAkeR
|
2008-07-01
|
|
PHP-Agenda 2.2.4 - 'index.php' Local File Inclusion
|
5 |
WEB
|
StAkeR
|
2008-06-30
|
|
HIOX Banner Rotator 1.3 - 'hm' Remote File Inclusion
|
5 |
WEB
|
Ghost Hacker
|
2008-06-30
|
|
Mambo Component N-Gallery - Multiple SQL Injections
|
3 |
WEB
|
AlbaniaN-[H]
|
2008-06-30
|
|
pSys 0.7.0 Alpha - 'chatbox.php' SQL Injection
|
3 |
WEB
|
DNX
|
2008-06-30
|
|
AShop Deluxe 4.x - 'catalogue.php' SQL Injection
|
5 |
WEB
|
n0c0py
|
2008-06-30
|
|
MyBloggie 2.1.6 - Multiple SQL Injections
|
4 |
WEB
|
Jesper Jurcenoks
|
2008-06-30
|
|
Catviz 0.4.0 beta1 - Multiple SQL Injections
|
4 |
WEB
|
anonymous
|
2008-06-30
|
|
Pivot 1.40.5 - Dreamwind 'load_template()' Credentials Disclosure
|
4 |
WEB
|
Nine:Situations:Group
|
2008-06-30
|
|
RCM Revision Web Development - 'products.php' SQL Injection
|
4 |
WEB
|
Niiub
|
2008-06-30
|
|
BareNuked CMS 1.1.0 - Arbitrary Add Admin
|
4 |
WEB
|
CWH Underground
|
2008-06-30
|
|
eSHOP100 - 'SUB' SQL Injection
|
5 |
WEB
|
JuDge
|
2008-06-30
|
|
AcmlmBoard 1.A2 - 'pow' SQL Injection
|
4 |
WEB
|
anonymous
|
2008-06-28
|
|
SebracCMS 0.4 - Multiple SQL Injections
|
4 |
WEB
|
shinmai
|
2008-06-28
|
|
Joomla! Component Xe webtv - 'id' Blind SQL Injection
|
4 |
WEB
|
His0k4
|
2008-06-28
|
|
Joomla! Component beamospetition - SQL Injection
|
4 |
WEB
|
His0k4
|
2008-06-28
|
|
Online Booking Manager 2.2 - 'id' SQL Injection
|
4 |
WEB
|
Hussin X
|
2008-06-28
|
|
Joomla! Component jabode - 'id' SQL Injection
|
3 |
WEB
|
His0k4
|
2008-06-28
|
|
poweraward 1.1.0 rc1 - Local File Inclusion / Cross-Site Scripting
|
4 |
WEB
|
CraCkEr
|
2008-06-27
|
|
PHP-Fusion Mod Classifieds - 'lid' SQL Injection
|
4 |
WEB
|
boom3rang
|
2008-06-27
|
|
SePortal 2.4 - 'poll_id' SQL Injection
|
3 |
WEB
|
Mr.SQL
|
2008-06-27
|
|
OTManager CMS 2.4 - Insecure Cookie Handling
|
4 |
WEB
|
Virangar Security
|
2008-06-27
|
|
W1L3D4 philboard 1.2 - Blind SQL Injection / Cross-Site Scripting
|
4 |
WEB
|
Bl@ckbe@rD
|
2008-06-27
|
|
OTManager CMS 24a - Local File Inclusion / Cross-Site Scripting
|
4 |
WEB
|
CWH Underground
|
2008-06-26
|
|
Keller Web Admin CMS 0.94 Pro - Local File Inclusion (2)
|
3 |
WEB
|
StAkeR
|
2008-06-26
|
|
Orca 2.0/2.0.2 - 'params.php?gConf[dir][layouts]' Remote File Inclusion
|
4 |
WEB
|
Ciph3r
|
2008-06-26
|
|
A+ PHP Scripts - Nms Insecure Cookie Handling
|
4 |
WEB
|
Virangar Security
|
2008-06-26
|
|
phpBLASTER CMS 1.0 RC1 - Multiple Local File Inclusions
|
4 |
WEB
|
CraCkEr
|
2008-06-26
|
|
Cheats Complete Website 1.1.1 - 'itemID' SQL Injection
|
4 |
WEB
|
InjEctOr5
|
2008-06-26
|
|
Drinks Complete Website 2.1.0 - 'drinkid' SQL Injection
|
4 |
WEB
|
InjEctOr5
|
2008-06-26
|
|
Easysitenetwork Jokes Complete Website 2.1.3 - 'jokeid' SQL Injection
|
4 |
WEB
|
InjEctOr5
|
2008-06-26
|
|
Tips Complete Website 1.2.0 - 'tipid' SQL Injection
|
4 |
WEB
|
InjEctOr5
|
2008-06-26
|
|
Riddles Complete Website 1.2.1 - 'riddleid' SQL Injection
|
3 |
WEB
|
InjEctOr5
|
2008-06-26
|
|
Seagull PHP Framework 0.6.4 - 'FCKeditor' Arbitrary File Upload
|
3 |
WEB
|
EgiX
|
2008-06-26
|
|
Galmeta Post CMS 0.2 - Multiple Local File Inclusions
|
4 |
WEB
|
CWH Underground
|
2008-06-26
|
|
PHP-Fusion Mod Kroax 4.42 - 'category' SQL Injection
|
4 |
WEB
|
boom3rang
|
2008-06-26
|
|
polypager 1.0rc2 - SQL Injection / Cross-Site Scripting
|
4 |
WEB
|
CWH Underground
|
2008-06-26
|
|
Keller Web Admin CMS 0.94 Pro - Local File Inclusion (1)
|
3 |
WEB
|
CWH Underground
|
2008-06-25
|
|
Joomla! Component netinvoice 1.2.0 SP1 - SQL Injection
|
4 |
WEB
|
His0k4
|
2008-06-25
|
|
PHPmotion 2.0 - 'update_profile.php' Arbitrary File Upload
|
4 |
WEB
|
EgiX
|
2008-06-25
|
|
MyPHP CMS 0.3.1 - 'pid' SQL Injection
|
4 |
WEB
|
CWH Underground
|
2008-06-25
|
|
Page Manager CMS 2006-02-04 - Arbitrary File Upload
|
4 |
WEB
|
CWH Underground
|
2008-06-25
|
|
Mambo Component Articles - 'artid' Blind SQL Injection
|
4 |
WEB
|
Ded MustD!e
|
2008-06-25
|
|
Jokes & Funny Pics Script - 'sb_jokeid' SQL Injection
|
3 |
WEB
|
Hussin X
|
2008-06-25
|
|
mUnky 0.0.1 - 'zone' Local File Inclusion
|
4 |
WEB
|
StAkeR
|
2008-06-25
|
|
Webdevindo-CMS 0.1 - 'hal' SQL Injection
|
4 |
WEB
|
CWH Underground
|
2008-06-24
|
|
TOKOKITA - 'produk_id' SQL Injection
|
4 |
WEB
|
k1tk4t
|
2008-06-24
|
|
Link ADS 1 - 'linkid' SQL Injection
|
4 |
WEB
|
Hussin X
|
2008-06-24
|
|
E-topbiz ViralDX 2.07 - 'bannerid' SQL Injection
|
4 |
WEB
|
Hussin X
|
2008-06-24
|
|
HiveMaker Directory 1.0.2 - 'cid' SQL Injection
|
4 |
WEB
|
security fears team
|
2008-06-24
|
|
DUcalendar 1.0 - 'iEve' SQL Injection
|
4 |
WEB
|
Bl@ckbe@rD
|
2008-06-24
|
|
ShareCMS 0.1 - Multiple SQL Injections
|
4 |
WEB
|
CWH Underground
|
2008-06-24
|
|
Relative Real Estate Systems 3.0 - 'listing_id' SQL Injection
|
4 |
WEB
|
K-159
|
2008-06-23
|
|
Demo4 CMS 1b - 'FCKeditor' Arbitrary File Upload
|
4 |
WEB
|
Stack
|
2008-06-23
|
|
cmsWorks 2.2 RC4 - 'FCKeditor' Arbitrary File Upload
|
4 |
WEB
|
Stack
|
2008-06-23
|
|
cmsWorks 2.2 RC4 - 'mod_root' Remote File Inclusion
|
4 |
WEB
|
CraCkEr
|
2008-06-23
|
|
ourvideo CMS 9.5 - Local File Inclusion / Remote File Inclusion / Cross-Site Scripting
|
4 |
WEB
|
CraCkEr
|
2008-06-23
|
|
mm chat 1.5 - Local File Inclusion / Cross-Site Scripting
|
4 |
WEB
|
CraCkEr
|
2008-06-23
|
|
TinXCMS 1.1 - Local File Inclusion / Cross-Site Scripting
|
4 |
WEB
|
CraCkEr
|
2008-06-23
|
|
Dagger CMS 2008 - 'dir_inc' Remote File Inclusion
|
4 |
WEB
|
CraCkEr
|
2008-06-23
|
|
Joomla! Component FacileForms 1.4.4 - Remote File Inclusion
|
4 |
WEB
|
Kacak
|
2008-06-23
|
|
Demo4 CMS - 'id' SQL Injection
|
4 |
WEB
|
CWH Underground
|
2008-06-23
|
|
MyBlog: PHP and MySQL Blog/CMS software - SQL Injection / Cross-Site Scripting
|
4 |
WEB
|
CWH Underground
|
2008-06-23
|
|
MVC-Web CMS 1.0/1.2 - 'newsid' SQL Injection
|
4 |
WEB
|
Bl@ckbe@rD
|
2008-06-23
|
|
ResearchGuide 0.5 - 'id' SQL Injection
|
4 |
WEB
|
dun
|
2008-06-23
|
|
Ready2Edit - 'menuid' SQL Injection
|
4 |
WEB
|
Mr.SQL
|
2008-06-23
|
|
BlogPHP 2.0 - Privilege Escalation / SQL Injection
|
4 |
WEB
|
Cod3rZ
|
2008-06-23
|
|
HoMaP-CMS 0.1 - 'go' SQL Injection
|
4 |
WEB
|
SxCx
|
2008-06-23
|
|
emuCMS 0.3 - 'FCKeditor' Arbitrary File Upload
|
4 |
WEB
|
Stack
|
2008-06-22
|
|
odars CMS 1.0.2 - Remote File Inclusion
|
4 |
WEB
|
CraCkEr
|
2008-06-22
|
|
cmreams CMS 1.3.1.1 beta2 - Local File Inclusion / Cross-Site Scripting
|
4 |
WEB
|
CraCkEr
|
2008-06-22
|
|
Hedgehog-CMS 1.21 - 'header.php' Local File Inclusion
|
4 |
WEB
|
CraCkEr
|
2008-06-22
|
|
HomePH Design 2.10 RC2 - Local File Inclusion / Remote File Inclusion / Cross-Site Scripting
|
4 |
WEB
|
CraCkEr
|
2008-06-22
|
|
HoMaP-CMS 0.1 - 'plugin_admin.php' Remote File Inclusion
|
4 |
WEB
|
CraCkEr
|
2008-06-22
|
|
MiGCMS 2.0.5 - Multiple Remote File Inclusions
|
4 |
WEB
|
CraCkEr
|
2008-06-22
|
|
RSS-aggregator - 'path' Remote File Inclusion
|
4 |
WEB
|
Ghost Hacker
|
2008-06-22
|
|
PageSquid CMS 0.3 Beta - 'index.php' SQL Injection
|
4 |
WEB
|
CWH Underground
|
2008-06-22
|
|
IGSuite 3.2.4 - Reverse Shell / Blind SQL Injection
|
4 |
WEB
|
Guido Landi
|
2008-06-22
|
|
phpDMCA 1.0.0 - Multiple Remote File Inclusions
|
4 |
WEB
|
CraCkEr
|
2008-06-22
|
|
CMS Mini 0.2.2 - Multiple Local File Inclusions
|
4 |
WEB
|
CWH Underground
|
2008-06-22
|
|
shibby shop 2.2 - Multiple Vulnerabilities
|
4 |
WEB
|
KnocKout
|
2008-06-22
|
|
DUdForum 3.0 - 'iFor' SQL Injection
|
4 |
WEB
|
Bl@ckbe@rD
|