2008-05-12
|
|
AJ HYIP ACME - 'topic_detail.php' SQL Injection
|
3 |
WEB
|
InjEctOr5
|
2008-05-12
|
|
Advanced Image Hosting (AIH) 2.1 - SQL Injection
|
3 |
WEB
|
Stack
|
2008-05-12
|
|
CMS Made Simple 1.2.4 Module FileManager - Arbitrary File Upload
|
4 |
WEB
|
EgiX
|
2008-05-12
|
|
PHP Classifieds Script 05122008 - SQL Injection
|
4 |
WEB
|
InjEctOr5
|
2008-05-12
|
|
Mega File Hosting Script 1.2 - 'fid' SQL Injection
|
4 |
WEB
|
TurkishWarriorr
|
2008-05-12
|
|
Battle.net Clan Script 1.5.x - SQL Injection
|
4 |
WEB
|
Stack
|
2008-05-12
|
|
BigACE 2.4 - Multiple Remote File Inclusions
|
4 |
WEB
|
BiNgZa
|
2008-05-12
|
|
ClanLite 2.x - SQL Injection / Cross-Site Scripting
|
4 |
WEB
|
ZoRLu
|
2008-05-12
|
|
ZeusCart 2.0 - 'category_list.php' SQL Injection
|
4 |
WEB
|
t0pP8uZz
|
2008-05-12
|
|
AJ Classifieds 2008 - 'index.php' SQL Injection
|
4 |
WEB
|
t0pP8uZz
|
2008-05-12
|
|
AJ Auction 6.2.1 - 'classifide_ad.php' SQL Injection
|
4 |
WEB
|
t0pP8uZz
|
2008-05-12
|
|
AJ Article 1.0 - 'featured_article.php' SQL Injection
|
4 |
WEB
|
t0pP8uZz
|
2008-05-11
|
|
Vortex CMS - 'pageid' Blind SQL Injection
|
4 |
WEB
|
Lidloses_Auge
|
2008-05-11
|
|
QuickUpCMS - Multiple SQL Injections Vulnerabilities
|
4 |
WEB
|
Lidloses_Auge
|
2008-05-11
|
|
Joomla! Component xsstream-dm 0.01b - SQL Injection
|
4 |
WEB
|
Houssamix
|
2008-05-11
|
|
PhpBlock a8.5 - Multiple Remote File Inclusions
|
4 |
WEB
|
CraCkEr
|
2008-05-10
|
|
Joomla! Component Datsogallery 1.6 - Blind SQL Injection
|
4 |
WEB
|
+toxa+
|
2008-05-10
|
|
Ktools Photostore 3.5.2 - Multiple SQL Injections
|
4 |
WEB
|
DNX
|
2008-05-10
|
|
Advanced Links Management (ALM) 1.52 - SQL Injection
|
4 |
WEB
|
His0k4
|
2008-05-09
|
|
Ktools Photostore 3.5.1 - 'gid' SQL Injection
|
4 |
WEB
|
Mr.SQL
|
2008-05-09
|
|
txtCMS 0.3 - 'index.php' Local File Inclusion
|
4 |
WEB
|
cOndemned
|
2008-05-09
|
|
Phoenix View CMS Pre Alpha2 - SQL Injection / Local File Inclusion / Cross-Site Scripting
|
3 |
WEB
|
tw8
|
2008-05-09
|
|
HispaH Model Search - 'cat.php?cat' SQL Injection
|
3 |
WEB
|
InjEctOr5
|
2008-05-09
|
|
SazCart 1.5.1 - 'prodid' SQL Injection
|
4 |
WEB
|
JosS
|
2008-05-09
|
|
Admidio 1.4.8 - 'getfile.php' Remote File Disclosure
|
4 |
WEB
|
n3v3rh00d
|
2008-05-08
|
|
miniBloggie 1.0 - 'del.php' Arbitrary Delete Post
|
4 |
WEB
|
Cod3rZ
|
2008-05-08
|
|
Cyberfolio 7.12 - 'rep' Remote File Inclusion
|
4 |
WEB
|
RoMaNcYxHaCkEr
|
2008-05-08
|
|
SazCart 1.5.1 - Multiple Remote File Inclusions
|
4 |
WEB
|
RoMaNcYxHaCkEr
|
2008-05-08
|
|
vShare YouTube Clone 2.6 - 'tid' SQL Injection
|
4 |
WEB
|
Saime
|
2008-05-08
|
|
Shader TV (Beta) - Multiple SQL Injections
|
4 |
WEB
|
U238
|
2008-05-08
|
|
RunCMS 1.6.1 - 'msg_image' SQL Injection
|
4 |
WEB
|
The:Paradox
|
2008-05-07
|
|
MusicBox 2.3.7 - 'artistId' SQL Injection
|
5 |
WEB
|
HaCkeR_EgY
|
2008-05-07
|
|
EZContents CMS 2.0.0 - Multiple SQL Injections
|
4 |
WEB
|
Virangar Security
|
2008-05-07
|
|
CMS Faethon 2.2 Ultimate - Remote File Inclusion / Cross-Site Scripting
|
5 |
WEB
|
RoMaNcYxHaCkEr
|
2008-05-07
|
|
OneCMS 2.5 - Blind SQL Injection
|
4 |
WEB
|
Cod3rZ
|
2008-05-07
|
|
PostcardMentor - 'cat_fldAuto' SQL Injection
|
4 |
WEB
|
InjEctOr5
|
2008-05-07
|
|
GameCMS Lite 1.0 - 'systemId' SQL Injection
|
4 |
WEB
|
InjEctOr5
|
2008-05-07
|
|
Galleristic 1.0 - 'cat' SQL Injection
|
4 |
WEB
|
cOndemned
|
2008-05-07
|
|
FipsCMS 2.1 - 'print.asp' SQL Injection
|
4 |
WEB
|
InjEctOr5
|
2008-05-06
|
|
PHPEasyData 1.5.4 - 'cat_id' SQL Injection
|
4 |
WEB
|
InjEctOr5
|
2008-05-06
|
|
Pre Shopping Mall 1.1 - 'search.php' SQL Injection
|
4 |
WEB
|
t0pP8uZz
|
2008-05-05
|
|
DeluxeBB 1.2 - Multiple Vulnerabilities
|
4 |
WEB
|
EgiX
|
2008-05-05
|
|
Power Editor 2.0 - Remote File Disclosure / Edit
|
4 |
WEB
|
Virangar Security
|
2008-05-05
|
|
Miniweb 2.0 - 'historymonth' SQL Injection
|
4 |
WEB
|
HaCkeR_EgY
|
2008-05-05
|
|
BackLinkSpider 1.1 - 'cat_id' SQL Injection
|
4 |
WEB
|
K-159
|
2008-05-05
|
|
Kmita Mail 3.0 - 'file' Remote File Inclusion
|
4 |
WEB
|
K-159
|
2008-05-05
|
|
Kmita Tellfriend 2.0 - 'file' Remote File Inclusion
|
4 |
WEB
|
K-159
|
2008-05-05
|
|
Anserv Auction XL - 'cat' SQL Injection
|
4 |
WEB
|
K-159
|
2008-05-05
|
|
Online Rental Property Script 4.5 - 'pid' SQL Injection
|
4 |
WEB
|
K-159
|
2008-05-05
|
|
PostNuke Module pnEncyclopedia 0.2.0 - SQL Injection
|
4 |
WEB
|
K-159
|
2008-05-04
|
|
Scout Portal Toolkit 1.4.0 - 'ParentId' SQL Injection
|
3 |
WEB
|
JosS
|
2008-05-04
|
|
ScorpNews 1.0 - 'site' Remote File Inclusion
|
3 |
WEB
|
Silver
|
2008-05-04
|
|
Cplinks 1.03 - Authentication Bypass / SQL Injection / Cross-Site Scripting
|
4 |
WEB
|
InjEctOr5
|
2008-05-03
|
|
phpDirectorySource 1.1 - Multiple SQL Injections
|
4 |
WEB
|
InjEctOr5
|
2008-05-03
|
|
SmartBlog 1.3 - 'index.php' SQL Injection
|
3 |
WEB
|
His0k4
|
2008-05-03
|
|
BlogMe PHP 1.1 - 'comments.php' SQL Injection
|
4 |
WEB
|
His0k4
|
2008-05-02
|
|
ItCMS 1.9 - 'boxpop.php' Remote Code Execution
|
4 |
WEB
|
Cod3rZ
|
2008-05-02
|
|
Open Auto Classifieds 1.4.3b - SQL Injection
|
4 |
WEB
|
InjEctOr5
|
2008-05-01
|
|
Vlbook 1.21 - Cross-Site Scripting / Local File Inclusion
|
4 |
WEB
|
Khashayar Fereidani
|
2008-05-01
|
|
ActualAnalyzer Lite (free) 2.78 - Local File Inclusion
|
4 |
WEB
|
Khashayar Fereidani
|
2008-05-01
|
|
Joomla! Component Webhosting - 'catid' Blind SQL Injection
|
4 |
WEB
|
cO2
|
2008-04-30
|
|
Interact 2.4.1 - Multiple Remote File Inclusions
|
4 |
WEB
|
RoMaNcYxHaCkEr
|
2008-04-30
|
|
Harris WapChat 1 - Multiple Remote File Inclusions
|
4 |
WEB
|
k1n9k0ng
|
2008-04-30
|
|
OxYProject 0.85 - 'edithistory.php' Remote Code Execution
|
4 |
WEB
|
GoLd_M
|
2008-04-30
|
|
Project Based Calendaring System (PBCS) 0.7.1 - Multiple Vulnerabilities
|
4 |
WEB
|
GoLd_M
|
2008-04-29
|
|
LokiCMS 0.3.3 - Arbitrary File Delete
|
3 |
WEB
|
cOndemned
|
2008-04-29
|
|
SugarCRM Community Edition 4.5.1/5.0.0 - File Disclosure
|
3 |
WEB
|
Roberto Suggi Liverani
|
2008-04-28
|
|
Joovili 3.1 - 'browse.videos.php' SQL Injection
|
4 |
WEB
|
HaCkeR_EgY
|
2008-04-28
|
|
Softbiz Web Host Directory Script - 'host_id' SQL Injection
|
4 |
WEB
|
K-159
|
2008-04-28
|
|
Prozilla Hosting Index - 'cat_id' SQL Injection
|
4 |
WEB
|
K-159
|
2008-04-27
|
|
Joomla! Component paxxgallery 0.2 - 'gid' Blind SQL Injection
|
4 |
WEB
|
ZAMUT
|
2008-04-27
|
|
ODFaq 2.1.0 - Blind SQL Injection
|
4 |
WEB
|
cO2
|
2008-04-27
|
|
Joomla! Component Alphacontent 2.5.8 - Blind SQL Injection
|
4 |
WEB
|
cO2
|
2008-04-27
|
|
Content Management System for Phprojekt 0.6.1 - File Disclosure
|
4 |
WEB
|
Houssamix
|
2008-04-27
|
|
FluentCMS - 'view.php' SQL Injection
|
4 |
WEB
|
cO2
|
2008-04-27
|
|
Jokes Site Script - 'jokes.php' SQL Injection
|
3 |
WEB
|
ProgenTR
|
2008-04-27
|
|
Megabbs Forum 2.2 - SQL Injection / Cross-Site Scripting
|
3 |
WEB
|
BugReport.IR
|
2008-04-26
|
|
PHPizabi 0.848b C1 HFP3 - Database Information Disclosure
|
4 |
WEB
|
YOUCODE
|
2008-04-26
|
|
RunCMS Module MyArticles 0.6 Beta-1 - SQL Injection
|
4 |
WEB
|
Cr@zy_King
|
2008-04-26
|
|
PHP Forge 3 Beta 2 - 'id' SQL Injection
|
4 |
WEB
|
JIKO
|
2008-04-26
|
|
Angelo-Emlak 1.0 - Multiple SQL Injections
|
4 |
WEB
|
U238
|
2008-04-26
|
|
Clever Copy 3.0 - 'postview.php' SQL Injection
|
4 |
WEB
|
U238
|
2008-04-26
|
|
Content Management System for Phprojekt 0.6.1 - Remote File Inclusion
|
4 |
WEB
|
RoMaNcYxHaCkEr
|
2008-04-26
|
|
PostNuke Module pnFlashGames 2.5 - SQL Injection
|
4 |
WEB
|
Kacper
|
2008-04-26
|
|
Siteman 2.x - Code Execution / Local File Inclusion / Cross-Site Scripting
|
4 |
WEB
|
Khashayar Fereidani
|
2008-04-25
|
|
Joomla! Component Joomla-Visites 1.1 RC2 - Remote File Inclusion
|
4 |
WEB
|
NoGe
|
2008-04-25
|
|
PostNuke Module PostSchedule 1.0 - 'eid' SQL Injection
|
4 |
WEB
|
Kacper
|
2008-04-25
|
|
MiniBB 2.2 - Cross-Site Scripting / SQL Injection / Full Path Disclosure
|
4 |
WEB
|
girex
|
2008-04-24
|
|
Joomla! Component JPad 1.0 - (Authenticated) SQL Injection
|
4 |
WEB
|
His0k4
|
2008-04-23
|
|
Joomla! Component Community Builder 1.0.1 - Blind SQL Injection
|
4 |
WEB
|
$hur!k'n
|
2008-04-23
|
|
YouTube Clone Script - 'spages.php' Remote Code Execution
|
4 |
WEB
|
Inphex
|
2008-04-23
|
|
Joomla! Component Filiale 1.0.4 - 'idFiliale' SQL Injection
|
4 |
WEB
|
str0xo
|
2008-04-23
|
|
E RESERV 2.1 - 'index.php' SQL Injection
|
4 |
WEB
|
JIKO
|
2008-04-22
|
|
WordPress Plugin Spreadsheet 0.6 - SQL Injection
|
4 |
WEB
|
1ten0.0net1
|
2008-04-22
|
|
Web Calendar 4.1 - Blind SQL Injection
|
4 |
WEB
|
t0pP8uZz
|
2008-04-22
|
|
Joomla! Component FlippingBook 1.0.4 - SQL Injection
|
4 |
WEB
|
cO2
|
2008-04-21
|
|
TR News 2.1 - 'nb' SQL Injection
|
4 |
WEB
|
His0k4
|
2008-04-21
|
|
RedDot CMS 7.5 - 'LngId' SQL Injection
|
4 |
WEB
|
IRM Plc.
|
2008-04-21
|
|
Crazy Goomba 1.2.1 - 'id' SQL Injection
|
4 |
WEB
|
ZoRLu
|
2008-04-21
|
|
BlogWorx 1.0 - 'id' SQL Injection
|
4 |
WEB
|
U238
|
2008-04-20
|
|
Acidcat CMS 3.4.1 - Multiple Vulnerabilities
|
4 |
WEB
|
BugReport.IR
|
2008-04-20
|
|
KubeLance 1.6.4 - 'ipn.php' Local File Inclusion
|
4 |
WEB
|
Crackers_Child
|
2008-04-20
|
|
HostDirectory Pro - Insecure Cookie Handling
|
4 |
WEB
|
Crackers_Child
|
2008-04-20
|
|
W1L3D4 philboard 1.0 - 'philboard_reply.asp' SQL Injection
|
4 |
WEB
|
U238
|
2008-04-19
|
|
Aterr 0.9.1 - PHP5 Local File Inclusion
|
4 |
WEB
|
KnocKout
|
2008-04-19
|
|
XOOPS Module Recipe 2.2 - 'detail.php' SQL Injection
|
3 |
WEB
|
S@BUN
|
2008-04-19
|
|
Apartment Search Script - 'listtest.php' SQL Injection
|
4 |
WEB
|
Crackers_Child
|
2008-04-19
|
|
PHP-Fusion 6.01.14 - Blind SQL Injection
|
4 |
WEB
|
The:Paradox
|
2008-04-19
|
|
AllMyGuests 0.4.1 - 'AMG_id' SQL Injection
|
4 |
WEB
|
Player
|
2008-04-18
|
|
Simple Customer 1.2 - 'contact.php' SQL Injection
|
4 |
WEB
|
t0pP8uZz
|
2008-04-18
|
|
PhShoutBox 1.5 - Insecure Cookie Handling
|
4 |
WEB
|
t0pP8uZz
|
2008-04-18
|
|
OpenInvoice 0.9 - Arbitrary Change User Password
|
4 |
WEB
|
t0pP8uZz
|
2008-04-18
|
|
2532/Gigs 1.2.2 - Arbitrary Database Backup/Download
|
4 |
WEB
|
t0pP8uZz
|
2008-04-18
|
|
5th Avenue Shopping Cart - 'category_id' SQL Injection
|
4 |
WEB
|
Aria-Security Team
|
2008-04-18
|
|
Grape Statistics 0.2a - 'location' Remote File Inclusion
|
4 |
WEB
|
MajnOoNxHaCkEr
|
2008-04-17
|
|
e107 module 123 flash chat 6.8.0 - Remote File Inclusion
|
4 |
WEB
|
by_casper41
|
2008-04-16
|
|
XplodPHP AutoTutorials 2.1 - 'id' SQL Injection
|
3 |
WEB
|
cO2
|
2008-04-16
|
|
Carbon Communities 2.4 - Multiple Vulnerabilities
|
4 |
WEB
|
BugReport.IR
|
2008-04-15
|
|
LaserNet CMS 1.5 - SQL Injection
|
4 |
WEB
|
cO2
|
2008-04-15
|
|
LightNEasy sqlite / no database 1.2.2 - Multiple Vulnerabilities
|
4 |
WEB
|
girex
|
2008-04-15
|
|
Classifieds Caffe - 'cat_id' SQL Injection
|
4 |
WEB
|
JosS
|
2008-04-14
|
|
KwsPHP - 'Upload' Remote Code Execution
|
4 |
WEB
|
Ajax
|
2008-04-14
|
|
Dream4 Koobi Pro 6.25 Poll - 'poll_id' SQL Injection
|
4 |
WEB
|
S@BUN
|
2008-04-14
|
|
Dream4 Koobi CMS 4.2.4/4.2.5/4.3.0 - Multiple SQL Injections
|
3 |
WEB
|
JosS
|
2008-04-14
|
|
BosNews 4.0 - 'article' SQL Injection
|
4 |
WEB
|
Crackers_Child
|