Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2008-03-25   BolinOS 4.6.1 - Local File Inclusion / Cross-Site Scripting 8 WEB DSecRG
2008-03-25   e107 Plugin My_Gallery 2.3 - Arbitrary File Download 7 WEB Jerome Athias
2008-03-24   Destar 0.2.2-5 - Arbitrary Add Admin 7 WEB nonroot
2008-03-24   HIS-Webshop - 'his-webshop.pl t' Remote File Disclosure 7 WEB Zero X
2008-03-24   PowerPHPBoard 1.00b - Multiple Local File Inclusions 7 WEB DSecRG
2008-03-24   PowerBook 1.21 - 'index.php' Local File Inclusion 7 WEB DSecRG
2008-03-24   phpBB Module XS-Mod 2.3.1 - Local File Inclusion 7 WEB bd0rk
2008-03-23   Joomla! Component Cinema 1.0 - SQL Injection 7 WEB S@BUN
2008-03-23   Joomla! Component d3000 1.0.0 - SQL Injection 6 WEB S@BUN
2008-03-23   Destar 0.2.2-5 - Arbitrary Add New User 6 WEB nonroot
2008-03-23   Joomla! Component rekry 1.0.0 - 'op_id' SQL Injection 7 WEB Sniper456
2008-03-22   Cuteflow Bin 1.5.0 - 'login.php' Local File Inclusion 7 WEB KnocKout
2008-03-22   PHP-Nuke Platinum 7.6.b.5 - 'dynamic_titles.php' SQL Injection 7 WEB Inphex
2008-03-22   Joomla! Component custompages 1.1 - Remote File Inclusion 7 WEB Sniper456
2008-03-21   XLPortal 2.2.4 - 'Search' SQL Injection 7 WEB cOndemned
2008-03-21   PostNuke 0.764 - Blind SQL Injection 7 WEB The:Paradox
2008-03-21   D.E. Classifieds - 'cat_id' SQL Injection 8 WEB S@BUN
2008-03-21   RunCMS Module Photo 3.02 - 'cid' SQL Injection 7 WEB S@BUN
2008-03-21   phpAddressBook 2.11 - Multiple Local File Inclusions 7 WEB 0x90
2008-03-20   ASPapp Knowledge Base - SQL Injection 8 WEB xcorpitx
2008-03-20   RunCMS Module section - 'artid' SQL Injection 9 WEB Cr@zy_King
2008-03-19   PEEL CMS 3.x - Admin Hash Extraction / Arbitrary File Upload 7 WEB Charles Fol
2008-03-19   Joomla! Component Restaurante 1.0 - 'id' SQL Injection 7 WEB S@BUN
2008-03-19   Mambo Component Accombo 1.x - 'id' SQL Injection 6 WEB S@BUN
2008-03-19   Joomla! Component Alberghi 2.1.3 - 'id' SQL Injection 6 WEB S@BUN
2008-03-19   Joomla! Component joovideo 1.2.2 - 'id' SQL Injection 7 WEB S@BUN
2008-03-19   ASPapp Knowledge Base - 'CatId' SQL Injection (1) 7 WEB xcorpitx
2008-03-18   Easy-Clanpage 2.2 - 'id' SQL Injection 7 WEB n3w7u
2008-03-18   KAPhotoservice - 'album.asp' SQL Injection 7 WEB JosS
2008-03-18   Joomla! Component Acajoom 1.1.5 - SQL Injection 7 WEB fataku
2008-03-17   XOOPS Module Dictionary 0.94 - SQL Injection 7 WEB S@BUN
2008-03-17   phpAuction GPL Enhanced 2.51 - Multiple Remote File Inclusions 7 WEB RoMaNcYxHaCkEr
2008-03-17   Exero CMS 1.0.1 - 'theme' Multiple Local File Inclusions 7 WEB GoLd_M
2008-03-16   phpBP RC3 (2.204) FIX4 - SQL Injection 7 WEB irk4z
2008-03-16   mutiple timesheets 5.0 - Multiple Vulnerabilities 7 WEB JosS
2008-03-14   Fuzzylime CMS 3.01 - 'admindir' Remote File Inclusion 7 WEB irk4z
2008-03-14   AuraCMS 2.2.1 - 'X-Forwarded-For' HTTP Header Blind SQL Injection 7 WEB NTOS-Team
2008-03-14   eXV2 Module WebChat 1.60 - 'roomid' SQL Injection 7 WEB S@BUN
2008-03-14   eXV2 Module Viso 2.0.4.3 - 'kid' SQL Injection 8 WEB S@BUN
2008-03-14   eXV2 Module eblog 1.2 - 'blog_id' SQL Injection 7 WEB S@BUN
2008-03-14   eXV2 Module MyAnnonces - 'lid' SQL Injection 8 WEB S@BUN
2008-03-12   EasyGallery 5.0tr - Multiple Vulnerabilities 7 WEB JosS
2008-03-12   EasyCalendar 4.0tr - Multiple Vulnerabilities 7 WEB JosS
2008-03-12   XOOPS Module tutorials 2.1b - 'printpage.php' SQL Injection 6 WEB S@BUN
2008-03-12   eXV2 Module bamaGalerie 3.03 - SQL Injection 5 WEB S@BUN
2008-03-12   Fully Modded phpBB - 'kb.php' SQL Injection 7 WEB TurkishWarriorr
2008-03-12   XOOPS Module My_eGallery 3.04 - 'gid' SQL Injection 7 WEB S@BUN
2008-03-12   XOOPS Module Gallery 0.2.2 - 'gid' SQL Injection 7 WEB S@BUN
2008-03-12   QuickTalk Forum 1.6 - Blind SQL Injection 7 WEB t0pP8uZz
2008-03-11   Danneo CMS 0.5.1 - Blind SQL Injection 7 WEB InATeam
2008-03-11   Joomla! Component ProductShowcase 1.5 - SQL Injection 7 WEB S@BUN
2008-03-11   phpBB Mod FileBase 2.0 - 'id' SQL Injection 7 WEB t0pP8uZz
2008-03-11   Bloo 1.00 - Multiple SQL Injections 6 WEB MhZ91
2008-03-11   Mapbender 2.4.4 - 'gaz' SQL Injection 7 WEB RedTeam Pentesting
2008-03-11   Mapbender 2.4.4 - 'mapFiler.php' Remote Code Execution 7 WEB RedTeam Pentesting
2008-03-10   phpMyNewsletter 0.8b5 - 'msg_id' SQL Injection 7 WEB Charles Fol
2008-03-10   Mambo Component eWriting 1.2.1 - 'cat' SQL Injection 7 WEB Don
2008-03-09   BM Classifieds 20080409 - Multiple SQL Injections 7 WEB xcorpitx
2008-03-09   QuickTicket 1.5 - 'qti_usr.php' SQL Injection 7 WEB croconile
2008-03-08   Joomla! Component Candle 1.0 - 'cid' SQL Injection 7 WEB S@BUN
2008-03-07   zKup CMS 2.0 < 2.3 - Arbitrary File Upload 7 WEB Charles Fol
2008-03-07   zKup CMS 2.0 < 2.3 - Remote Add Admin 8 WEB Charles Fol
2008-03-06   XOOPS Module wfdownloads - 'cid' SQL Injection 7 WEB S@BUN
2008-03-06   XOOPS Module Glossario 2.2 - 'sid' SQL Injection 7 WEB S@BUN
2008-03-04   Mitra Informatika Solusindo cart - SQL Injection 7 WEB bius
2008-03-01   Dynamic photo Gallery 1.02 - 'albumID' SQL Injection 7 WEB Aria-Security Team
2008-03-01   phpComasy 0.8 - 'mod_project_id' SQL Injection 7 WEB Cr@zy_King
2008-03-01   phpArcadeScript 3.0RC2 - 'userid' SQL Injection 7 WEB SoSo H H
2008-03-01   Mambo Component com_Musica - 'id' SQL Injection 7 WEB Aria-Security Team
2008-02-29   Dream4 Koobi CMS 4.3.0 < 4.2.3 - 'categ' SQL Injection 8 WEB JosS
2008-02-28   Centreon 1.4.2.3 - 'get_image.php' Remote File Disclosure 8 WEB Julien CAYSSOL
2008-02-28   PHP-Nuke Module My_eGallery 2.7.9 - SQL Injection 8 WEB Aria-Security Team
2008-02-28   Barryvan Compo Manager 0.3 - Remote File Inclusion 8 WEB MhZ91
2008-02-28   Podcast Generator 1.0 Beta 2 - Remote File Inclusion / File Disclosure 7 WEB GoLd_M
2008-02-28   SiteBuilderElite 1.2 - Multiple Remote File Inclusions 8 WEB MhZ91
2008-02-28   Dream4 Koobi Pro 5.7 - 'categ' SQL Injection 8 WEB Cr@zy_King
2008-02-27   GROUP-E 1.6.41 - 'head_auth.php' Remote File Inclusion 8 WEB CraCkEr
2008-02-27   eazyPortal 1.0 - 'cookie' SQL Injection 8 WEB Iron
2008-02-27   Mambo Component SimpleBoard 1.0.3 - 'catid' SQL Injection 8 WEB it's my
2008-02-26   WordPress Plugin Sniplets 1.1.2 - Remote File Inclusion / Cross-Site Scripting / Remote Code Executi 7 WEB NBBN
2008-02-26   Nukedit 4.9.x - Remote Create Admin 8 WEB r3dm0v3
2008-02-25   DBHcms 1.1.4 - 'code' Remote File Inclusion 9 WEB Iron
2008-02-25   MiniNuke 2.1 - 'uid' SQL Injection 8 WEB S@BUN
2008-02-25   PHP-Nuke Module Kose_Yazilari - 'artid' SQL Injection 8 WEB xcorpitx
2008-02-25   PORAR WebBoard - 'question.asp' SQL Injection 8 WEB xcorpitx
2008-02-24   PHP Download Manager 1.1 - Local File Inclusion 8 WEB BeyazKurt
2008-02-24   Portail Web PHP 2.5.1.1 - Multiple Inclusion Vulnerabilities 8 WEB GoLd_M
2008-02-24   pigyard art Gallery - Multiple Vulnerabilities 8 WEB ZoRLu
2008-02-24   PHPUserBase 1.3b - 'unverified.inc.php' Remote File Inclusion 7 WEB CraCkEr
2008-02-23   PHPUserBase 1.3b - 'unverified.inc.php' Local File Inclusion 7 WEB BeyazKurt
2008-02-23   Mambo Component garyscookbook 1.1.1 - SQL Injection 7 WEB S@BUN
2008-02-23   Joomla! Component simple shop 2.0 - SQL Injection 7 WEB S@BUN
2008-02-23   Quinsonnas Mail Checker 1.55 - 'footer.php' Remote File Inclusion 7 WEB GoLd_M
2008-02-23   PHPProfiles 4.5.2 Beta - 'body_comm.inc.php' Remote File Inclusion 7 WEB CraCkEr
2008-02-22   Quantum Game Library 0.7.2c - Remote File Inclusion 7 WEB RoMaNcYxHaCkEr
2008-02-22   phpQLAdmin 2.2.7 - Multiple Remote File Inclusions 8 WEB RoMaNcYxHaCkEr
2008-02-21   PHP-Nuke Module NukeC 2.1 - 'id_catg' SQL Injection 8 WEB DamaR
2008-02-21   OSSIM 0.9.9rc5 - Cross-Site Scripting / SQL Injection 8 WEB Marcin Kopec
2008-02-21   BeContent 031 - 'id' SQL Injection 8 WEB Cr@zy_King
2008-02-21   PHP-Nuke Module Siir - 'id' SQL Injection 7 WEB S@BUN
2008-02-21   PHP-Nuke Modules Manuales 0.1 - 'cid' SQL Injection 8 WEB Mehmet Ince
2008-02-20   MultiCart 2.0 - 'productdetails.php' SQL Injection 9 WEB t0pP8uZz
2008-02-21   PunBB 1.2.16 - Blind Password Recovery 7 WEB EpiBite
2008-02-20   Woltlab Burning Board 3.0.x - Blind SQL Injection 8 WEB NBBN
2008-02-20   PHP-Nuke Module Inhalt - 'cid' SQL Injection 8 WEB Crackers_Child
2008-02-20   Globsy 1.0 - 'file' Remote File Disclosure 8 WEB GoLd_M
2008-02-20   PHP-Nuke Module Docum - 'artid' SQL Injection 8 WEB DamaR
2008-02-20   Joomla! Component Highwood Design hwdVideoShare - SQL Injection 8 WEB S@BUN
2008-02-20   PHP-Nuke Modules Okul 1.0 - 'okulid' SQL Injection 7 WEB Mehmet Ince
2008-02-19   XOOPS Module Classifieds - 'cid' SQL Injection 8 WEB S@BUN
2008-02-19   XOOPS Module eEmpregos - 'cid' SQL Injection 8 WEB S@BUN
2008-02-19   RunCMS Module MyAnnonces - 'cid' SQL Injection 8 WEB S@BUN
2008-02-19   PHP-Nuke Module EasyContent - 'page_id' SQL Injection 8 WEB Mehmet Ince
2008-02-19   PHP-Nuke Module Sections - 'artid' SQL Injection 8 WEB S@BUN
2008-02-18   sCssBoard (Multiple Versions) - 'pwnpack' Remote s 8 WEB Inphex
2008-02-18   XOOPS Module myTopics - 'articleId' SQL Injection 8 WEB S@BUN
2008-02-18   PHP-Nuke Module books SQL - 'cid' SQL Injection 8 WEB S@BUN
2008-02-18   Joomla! Component com_clasifier - 'cat_id' SQL Injection 9 WEB S@BUN
2008-02-18   Joomla! Component com_pccookbook - 'user_id' SQL Injection 8 WEB S@BUN
2008-02-18   LightBlog 9.6 - 'Username' Local File Inclusion 8 WEB muuratsalo
2008-02-18   Mambo Component Portfolio Manager 1.0 - 'categoryId' SQL Injection 9 WEB it's my
2008-02-18   Joomla! Component astatsPRO 1.0 - 'refer.php' SQL Injection 8 WEB ka0x
2008-02-17   XPWeb 3.3.2 - 'url' Remote File Disclosure 8 WEB GoLd_M
2008-02-17   PHPizabi 0.848b C1 HFP1 - Arbitrary File Upload 8 WEB ZoRLu
2008-02-16   WordPress Plugin Photo album - SQL Injection 7 WEB S@BUN