Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2008-04-18   2532/Gigs 1.2.2 - Arbitrary Database Backup/Download 33 WEB t0pP8uZz
2008-04-18   5th Avenue Shopping Cart - 'category_id' SQL Injection 32 WEB Aria-Security Team
2008-04-18   Grape Statistics 0.2a - 'location' Remote File Inclusion 32 WEB MajnOoNxHaCkEr
2008-04-17   e107 module 123 flash chat 6.8.0 - Remote File Inclusion 31 WEB by_casper41
2008-04-16   XplodPHP AutoTutorials 2.1 - 'id' SQL Injection 27 WEB cO2
2008-04-16   Carbon Communities 2.4 - Multiple Vulnerabilities 32 WEB BugReport.IR
2008-04-15   LaserNet CMS 1.5 - SQL Injection 33 WEB cO2
2008-04-15   LightNEasy sqlite / no database 1.2.2 - Multiple Vulnerabilities 29 WEB girex
2008-04-15   Classifieds Caffe - 'cat_id' SQL Injection 34 WEB JosS
2008-04-14   KwsPHP - 'Upload' Remote Code Execution 36 WEB Ajax
2008-04-14   Dream4 Koobi Pro 6.25 Poll - 'poll_id' SQL Injection 30 WEB S@BUN
2008-04-14   Dream4 Koobi CMS 4.2.4/4.2.5/4.3.0 - Multiple SQL Injections 28 WEB JosS
2008-04-14   BosNews 4.0 - 'article' SQL Injection 30 WEB Crackers_Child
2008-04-14   BosClassifieds 3.0 - 'index.php' SQL Injection 34 WEB SoSo H H
2008-04-14   SmallBiz eShop - 'content_id' SQL Injection 29 WEB Stack
2008-04-14   SmallBiz 4 Seasons CMS - SQL Injection 32 WEB cO2
2008-04-13   Mumbo Jumbo Media OP4 - Blind SQL Injection 32 WEB Lidloses_Auge
2008-04-13   PostCard 1.0 - Remote Insecure Cookie Handling 32 WEB t0pP8uZz
2008-04-13   CPCommerce 1.1.0 - Cross-Site Scripting / Local File Inclusion 34 WEB BugReport.IR
2008-04-13   Pollbooth 2.0 - 'pollID' SQL Injection 32 WEB S@BUN
2008-04-13   Joomla! Component com_extplorer 2.0.0 RC2 - Local Directory Traversal 28 WEB Houssamix
2008-04-13   1024 CMS 1.4.2 - Local File Inclusion / Blind SQL Injection 30 WEB girex
2008-04-12   CcMail 1.0.1 - Insecure Cookie Handling 28 WEB t0pP8uZz
2008-04-11   PHPAddressBook 2.11 - 'view.php' SQL Injection 33 WEB Cr@zy_King
2008-04-11   Joomla! Component JoomlaXplorer 1.6.2 - Remote s 31 WEB Houssamix
2008-04-11   NewsOffice 1.1 - Remote File Inclusion 31 WEB RoMaNcYxHaCkEr
2008-04-11   PHPKB Knowledge Base Software 1.5 - 'ID' SQL Injection 33 WEB parad0x
2008-04-10   RX Maxsoft - 'fotoID' SQL Injection 30 WEB S@BUN
2008-04-10   LightNEasy 1.2 - no database Remote Hash Retrieve 35 WEB girex
2008-04-10   Ksemail - Local File Inclusion 32 WEB dun
2008-04-10   LiveCart 1.1.1 - 'id' Blind SQL Injection 33 WEB irvian
2008-04-09   KnowledgeQuest 2.6 - SQL Injection 30 WEB Virangar Security
2008-04-09   Phaos R4000 Version - 'file' Remote File Disclosure 30 WEB HaCkeR_EgY
2008-04-09   Free Photo Gallery Site Script - 'path' File Disclosure 29 WEB JIKO
2008-04-09   KnowledgeQuest 2.5 - Arbitrary Add Admin 31 WEB t0pP8uZz
2008-04-09   phpBB Addon Fishing Cat Portal - Remote File Inclusion 28 WEB bd0rk
2008-04-08   Dream4 Koobi 4.4/5.4 - gallery SQL Injection 31 WEB S@BUN
2008-04-08   Dream4 Koobi Pro 6.25 Showimages - 'galid' SQL Injection 27 WEB S@BUN
2008-04-08   Dream4 Koobi Pro 6.25 Gallery - 'galid' SQL Injection 28 WEB S@BUN
2008-04-08   Dream4 Koobi Pro 6.25 Shop - 'categ' SQL Injection 28 WEB S@BUN
2008-04-08   Dream4 Koobi Pro 6.25 Links - 'categ' SQL Injection 31 WEB S@BUN
2008-04-08   Prediction Football 1.x - 'matchid' SQL Injection 27 WEB 0in
2008-04-08   SuperNET Shop 1.0 - SQL Injection 29 WEB U238
2008-04-08   LokiCMS 0.3.3 - Remote Command Execution 34 WEB girex
2008-04-08   FLABER 1.1 RC1 - Remote Command Execution 28 WEB EgiX
2008-04-08   Pligg CMS 9.9.0 - 'editlink.php' SQL Injection 30 WEB Guido Landi
2008-04-08   ExBB 0.22 - Local/Remote File Inclusion 30 WEB The:Paradox
2008-04-08   phpTournois G4 - Arbitrary File Upload / Code Execution 30 WEB Charles Fol
2008-04-07   iScripts Socialware - 'id' SQL Injection 29 WEB t0pP8uZz
2008-04-07   My Gaming Ladder 7.5 - 'ladderid' SQL Injection 32 WEB t0pP8uZz
2008-04-07   724CMS 4.01 Enterprise - 'index.php' SQL Injection 32 WEB Lidloses_Auge
2008-04-07   ChartDirector 4.1 - 'viewsource.php' File Disclosure 33 WEB Stack
2008-04-07   Mole 2.1.0 - 'viewsource.php' Remote File Disclosure 36 WEB GoLd_M
2008-04-07   Dragoon 0.1 - 'root' Remote File Inclusion 35 WEB RoMaNcYxHaCkEr
2008-04-07   LinPHA 1.3.3 Plugin Maps - Remote Command Execution 33 WEB EgiX
2008-04-07   Drake CMS 0.4.11 - Blind SQL Injection 31 WEB EgiX
2008-04-07   Prozilla Freelancers - 'project' SQL Injection 33 WEB t0pP8uZz
2008-04-06   Prozilla Cheat Script 2.0 - 'id' SQL Injection 32 WEB t0pP8uZz
2008-04-06   Prozilla Topsites 1.0 - Arbitrary Edit/Add Users 33 WEB t0pP8uZz
2008-04-06   Prozilla Reviews Script 1.0 - Arbitrary Delete User 32 WEB t0pP8uZz
2008-04-06   Prozilla Forum Service - 'forum' SQL Injection 33 WEB t0pP8uZz
2008-04-06   Prozilla Top 100 1.2 - Arbitrary Delete Stats 32 WEB t0pP8uZz
2008-04-06   Site Sift Listings - 'id' SQL Injection 31 WEB S@BUN
2008-04-06   Blog PixelMotion - 'categorie' SQL Injection 31 WEB parad0x
2008-04-06   Blog PixelMotion - 'modif_config.php' Arbitrary File Upload 32 WEB JIKO
2008-04-06   Blog PixelMotion - 'sauvBase.php' Arbitrary Database Backup 30 WEB JIKO
2008-04-06   MyBB Plugin Custom Pages 1.0 - SQL Injection 31 WEB Lidloses_Auge
2008-04-05   Software Index 1.1 - 'cid' SQL Injection 29 WEB t0pP8uZz
2008-04-05   Links Directory 1.1 - 'cat_id' SQL Injection 33 WEB t0pP8uZz
2008-04-05   Picture Rating 1.0 - Blind SQL Injection 34 WEB t0pP8uZz
2008-04-05   visualpic 0.3.1 - Remote File Inclusion 32 WEB Cr@zy_King
2008-04-05   Gaming Directory 1.0 - 'cat_id' SQL Injection 31 WEB t0pP8uZz
2008-04-05   Cobalt 0.1 - Multiple SQL Injections 29 WEB U238
2008-04-05   Easynet Forum Host - 'forum.php' SQL Injection 28 WEB t0pP8uZz
2008-04-05   Entertainment Directory 1.1 - SQL Injection 30 WEB t0pP8uZz
2008-04-05   Blogator-script 0.95 - Change User Password 33 WEB Virangar Security
2008-04-04   Dragoon 0.1 - 'lng' Local File Inclusion 31 WEB w0cker
2008-04-04   Blogator-script 0.95 - 'id_art' SQL Injection 29 WEB Virangar Security
2008-04-04   PIGMy-SQL 1.4.1 - 'getdata.php' Blind SQL Injection 32 WEB t0pP8uZz
2008-04-04   Blogator-script 0.95 - 'incl_page' Remote File Inclusion 31 WEB JIKO
2008-04-04   PHP Photo Gallery 1.0 - 'photo_id' SQL Injection 30 WEB t0pP8uZz
2008-04-04   Affiliate Directory - 'cat_id' SQL Injection 29 WEB t0pP8uZz
2008-04-04   Comdev News Publisher 4.1.2 - SQL Injection 30 WEB t0pP8uZz
2008-04-04   Sabros.us 1.75 - 'thumbnails.php' Remote File Disclosure 33 WEB HaCkeR_EgY
2008-04-04   Vastal I-Tech Software Zone - 'cat_id' SQL Injection 28 WEB t0pP8uZz
2008-04-04   XPOZE Pro 3.05 - 'reed' SQL Injection 32 WEB t0pP8uZz
2008-04-03   KwsPHP Module ConcoursPhoto 2.0 - 'C_ID' SQL Injection 32 WEB Stack
2008-04-03   KwsPHP Module jeuxflash 1.0 - 'cat' SQL Injection 31 WEB Houssamix
2008-04-03   KwsPHP 1.3.456 Module Archives - 'id' SQL Injection 30 WEB S@BUN
2008-04-03   KwsPHP 1.3.456 Module Galerie - 'id_gal' SQL Injection 31 WEB S@BUN
2008-04-02   PhpBlock a8.4 - 'PATH_TO_CODE' Remote File Inclusion 33 WEB w0cker
2008-04-02   DaZPHP 0.1 - 'prefixdir' Local File Inclusion 28 WEB w0cker
2008-04-02   Joomla! Component OnlineFlashQuiz 1.0.2 - Remote File Inclusion 32 WEB NoGe
2008-04-01   RunCMS Module bamagalerie3 - SQL Injection 30 WEB DreamTurk
2008-04-01   Nuked-klaN 1.7.6 - Multiple Vulnerabilities 31 WEB Charles Fol
2008-04-01   Joomla! Component actualite 1.0 - 'id' SQL Injection 30 WEB Stack
2008-04-01   EggBlog 4.0 - SQL Injection 29 WEB girex
2008-04-01   Mambo Component Ahsshop 1.51 - 'vara' SQL Injection 32 WEB S@BUN
2008-04-01   FaScript FaPhoto 1.0 - 'show.php' SQL Injection 31 WEB Khashayar Fereidani
2008-04-01   EasyNews 40tr - SQL Injection / Cross-Site Scripting / Local File Inclusion 33 WEB Khashayar Fereidani
2008-03-31   Neat weblog 0.2 - 'articleId' SQL Injection 34 WEB Khashayar Fereidani
2008-03-31   Woltlab Burning Board Addon JGS-Treffen 2.0.2 - SQL Injection 30 WEB anonymous
2008-03-31   PHPSpamManager 0.53b - 'body.php' Remote File Disclosure 31 WEB GoLd_M
2008-03-31   WordPress Plugin Download - 'dl_id' SQL Injection 30 WEB BL4CK
2008-03-30   JShop 1.x < 2.x - 'xPage' Local File Inclusion 32 WEB v0l4arrra
2008-03-30   KISGB (tmp_theme) 5.1.1 - Local File Inclusion 31 WEB Cr@zy_King
2008-03-30   mxBB Module mx_blogs 2.0.0-beta - Remote File Inclusion 30 WEB bd0rk
2008-03-30   Smoothflash - 'cid' SQL Injection 32 WEB S@BUN
2008-03-28   AuraCMS 2.x - '/user.php' Security Code Bypass / Arbitrary Add Administrator 29 WEB NTOS-Team
2008-03-28   Joomla! Component MyAlbum 1.0 - 'album' SQL Injection 36 WEB parad0x
2008-03-26   JAF CMS 4.0 RC2 - Multiple Remote File Inclusions 31 WEB CraCkEr
2008-03-25   TopperMod 1.0 - 'mod.php' Local File Inclusion 29 WEB girex
2008-03-25   TopperMod 2.0 - SQL Injection 31 WEB girex
2008-03-25   Joomla! Component Alphacontent 2.5.8 - 'id' SQL Injection 31 WEB cO2
2008-03-25   BolinOS 4.6.1 - Local File Inclusion / Cross-Site Scripting 37 WEB DSecRG
2008-03-25   e107 Plugin My_Gallery 2.3 - Arbitrary File Download 29 WEB Jerome Athias
2008-03-24   Destar 0.2.2-5 - Arbitrary Add Admin 32 WEB nonroot
2008-03-24   HIS-Webshop - 'his-webshop.pl t' Remote File Disclosure 31 WEB Zero X
2008-03-24   PowerPHPBoard 1.00b - Multiple Local File Inclusions 32 WEB DSecRG
2008-03-24   PowerBook 1.21 - 'index.php' Local File Inclusion 33 WEB DSecRG
2008-03-24   phpBB Module XS-Mod 2.3.1 - Local File Inclusion 31 WEB bd0rk
2008-03-23   Joomla! Component Cinema 1.0 - SQL Injection 32 WEB S@BUN
2008-03-23   Joomla! Component d3000 1.0.0 - SQL Injection 31 WEB S@BUN
2008-03-23   Destar 0.2.2-5 - Arbitrary Add New User 30 WEB nonroot
2008-03-23   Joomla! Component rekry 1.0.0 - 'op_id' SQL Injection 31 WEB Sniper456