|
2008-02-23
|
|
PHPProfiles 4.5.2 Beta - 'body_comm.inc.php' Remote File Inclusion
|
20 |
WEB
|
CraCkEr
|
|
2008-02-22
|
|
Quantum Game Library 0.7.2c - Remote File Inclusion
|
17 |
WEB
|
RoMaNcYxHaCkEr
|
|
2008-02-22
|
|
phpQLAdmin 2.2.7 - Multiple Remote File Inclusions
|
18 |
WEB
|
RoMaNcYxHaCkEr
|
|
2008-02-21
|
|
PHP-Nuke Module NukeC 2.1 - 'id_catg' SQL Injection
|
20 |
WEB
|
DamaR
|
|
2008-02-21
|
|
OSSIM 0.9.9rc5 - Cross-Site Scripting / SQL Injection
|
21 |
WEB
|
Marcin Kopec
|
|
2008-02-21
|
|
BeContent 031 - 'id' SQL Injection
|
18 |
WEB
|
Cr@zy_King
|
|
2008-02-21
|
|
PHP-Nuke Module Siir - 'id' SQL Injection
|
15 |
WEB
|
S@BUN
|
|
2008-02-21
|
|
PHP-Nuke Modules Manuales 0.1 - 'cid' SQL Injection
|
23 |
WEB
|
Mehmet Ince
|
|
2008-02-20
|
|
MultiCart 2.0 - 'productdetails.php' SQL Injection
|
20 |
WEB
|
t0pP8uZz
|
|
2008-02-21
|
|
PunBB 1.2.16 - Blind Password Recovery
|
19 |
WEB
|
EpiBite
|
|
2008-02-20
|
|
Woltlab Burning Board 3.0.x - Blind SQL Injection
|
18 |
WEB
|
NBBN
|
|
2008-02-20
|
|
PHP-Nuke Module Inhalt - 'cid' SQL Injection
|
17 |
WEB
|
Crackers_Child
|
|
2008-02-20
|
|
Globsy 1.0 - 'file' Remote File Disclosure
|
18 |
WEB
|
GoLd_M
|
|
2008-02-20
|
|
PHP-Nuke Module Docum - 'artid' SQL Injection
|
17 |
WEB
|
DamaR
|
|
2008-02-20
|
|
Joomla! Component Highwood Design hwdVideoShare - SQL Injection
|
20 |
WEB
|
S@BUN
|
|
2008-02-20
|
|
PHP-Nuke Modules Okul 1.0 - 'okulid' SQL Injection
|
16 |
WEB
|
Mehmet Ince
|
|
2008-02-19
|
|
XOOPS Module Classifieds - 'cid' SQL Injection
|
20 |
WEB
|
S@BUN
|
|
2008-02-19
|
|
XOOPS Module eEmpregos - 'cid' SQL Injection
|
20 |
WEB
|
S@BUN
|
|
2008-02-19
|
|
RunCMS Module MyAnnonces - 'cid' SQL Injection
|
17 |
WEB
|
S@BUN
|
|
2008-02-19
|
|
PHP-Nuke Module EasyContent - 'page_id' SQL Injection
|
19 |
WEB
|
Mehmet Ince
|
|
2008-02-19
|
|
PHP-Nuke Module Sections - 'artid' SQL Injection
|
20 |
WEB
|
S@BUN
|
|
2008-02-18
|
|
sCssBoard (Multiple Versions) - 'pwnpack' Remote s
|
19 |
WEB
|
Inphex
|
|
2008-02-18
|
|
XOOPS Module myTopics - 'articleId' SQL Injection
|
19 |
WEB
|
S@BUN
|
|
2008-02-18
|
|
PHP-Nuke Module books SQL - 'cid' SQL Injection
|
17 |
WEB
|
S@BUN
|
|
2008-02-18
|
|
Joomla! Component com_clasifier - 'cat_id' SQL Injection
|
21 |
WEB
|
S@BUN
|
|
2008-02-18
|
|
Joomla! Component com_pccookbook - 'user_id' SQL Injection
|
20 |
WEB
|
S@BUN
|
|
2008-02-18
|
|
LightBlog 9.6 - 'Username' Local File Inclusion
|
20 |
WEB
|
muuratsalo
|
|
2008-02-18
|
|
Mambo Component Portfolio Manager 1.0 - 'categoryId' SQL Injection
|
19 |
WEB
|
it's my
|
|
2008-02-18
|
|
Joomla! Component astatsPRO 1.0 - 'refer.php' SQL Injection
|
16 |
WEB
|
ka0x
|
|
2008-02-17
|
|
XPWeb 3.3.2 - 'url' Remote File Disclosure
|
16 |
WEB
|
GoLd_M
|
|
2008-02-17
|
|
PHPizabi 0.848b C1 HFP1 - Arbitrary File Upload
|
17 |
WEB
|
ZoRLu
|
|
2008-02-16
|
|
WordPress Plugin Photo album - SQL Injection
|
17 |
WEB
|
S@BUN
|
|
2008-02-16
|
|
Joomla! Component com_galeria - SQL Injection
|
15 |
WEB
|
S@BUN
|
|
2008-02-16
|
|
Mambo Component Ricette 1.0 - SQL Injection
|
20 |
WEB
|
S@BUN
|
|
2008-02-16
|
|
Joomla! Component jooget 2.6.8 - SQL Injection
|
20 |
WEB
|
S@BUN
|
|
2008-02-16
|
|
Simple CMS 1.0.3 - 'area' SQL Injection
|
18 |
WEB
|
JosS
|
|
2008-02-16
|
|
AuraCMS 1.62 - Multiple SQL Injections
|
18 |
WEB
|
NTOS-Team
|
|
2008-02-16
|
|
TRUC 0.11.0 - 'download.php' Remote File Disclosure
|
19 |
WEB
|
GoLd_M
|
|
2008-02-15
|
|
Mambo Component Quran 1.1 - 'surano' SQL Injection
|
23 |
WEB
|
Don
|
|
2008-02-15
|
|
WordPress Plugin Simple Forum 1.10 < 1.11 - SQL Injection
|
18 |
WEB
|
S@BUN
|
|
2008-02-15
|
|
WordPress Plugin Simple Forum 2.0 < 2.1 - SQL Injection
|
18 |
WEB
|
S@BUN
|
|
2008-02-14
|
|
PHP Live! 3.2.2 - 'questid' SQL Injection (1)
|
20 |
WEB
|
Xar
|
|
2008-02-14
|
|
freePHPgallery 0.6 - Cookie Local File Inclusion
|
18 |
WEB
|
MhZ91
|
|
2008-02-14
|
|
Scribe 0.2 - 'index.php' Local File Inclusion
|
20 |
WEB
|
muuratsalo
|
|
2008-02-14
|
|
LookStrike Lan Manager 0.9 - Local/Remote File Inclusion
|
16 |
WEB
|
MhZ91
|
|
2008-02-14
|
|
Joomla! Component mediaslide - 'albumnum' Blind SQL Injection
|
16 |
WEB
|
Inphex
|
|
2008-02-14
|
|
Joomla! Component Quiz 0.81 - 'tid' SQL Injection
|
21 |
WEB
|
S@BUN
|
|
2008-02-14
|
|
Joomla! Component MCQuiz 0.9 Final - 'tid' SQL Injection
|
17 |
WEB
|
S@BUN
|
|
2008-02-14
|
|
Joomla! Component paxxgallery 0.2 - 'iid' SQL Injection
|
19 |
WEB
|
S@BUN
|
|
2008-02-14
|
|
artmedic weblog 1.0 - Multiple Local File Inclusions
|
18 |
WEB
|
muuratsalo
|
|
2008-02-14
|
|
nuBoard 0.5 - 'ssid' SQL Injection
|
21 |
WEB
|
Khashayar Fereidani
|
|
2008-02-14
|
|
Affiliate Market 0.1 Beta - Cross-Site Scripting / SQL Injection
|
21 |
WEB
|
Khashayar Fereidani
|
|
2008-02-13
|
|
jspwiki 2.4.104/2.5.139 - Multiple Vulnerabilities
|
20 |
WEB
|
BugSec LTD
|
|
2008-02-13
|
|
Joomla! Component xfaq 1.2 - 'aid' SQL Injection
|
16 |
WEB
|
S@BUN
|
|
2008-02-13
|
|
Affiliate Market 0.1 Beta - 'Language' Local File Inclusion
|
16 |
WEB
|
GoLd_M
|
|
2008-02-12
|
|
AuraCMS 2.2 - 'albums' Pramater SQL Injection
|
16 |
WEB
|
DNX
|
|
2008-02-12
|
|
Joomla! Component pcchess 0.8 - SQL Injection
|
20 |
WEB
|
S@BUN
|
|
2008-02-12
|
|
Joomla! Component Rapid Recipe 1.6.5 - SQL Injection
|
20 |
WEB
|
S@BUN
|
|
2008-02-12
|
|
vKios 2.0.0 - 'cat' SQL Injection
|
20 |
WEB
|
NTOS-Team
|
|
2008-02-10
|
|
Mix Systems CMS - 'parent/id' SQL Injection
|
19 |
WEB
|
halkfild
|
|
2008-02-10
|
|
PacerCMS 0.6 - 'last_module' Remote Code Execution
|
18 |
WEB
|
GoLd_M
|
|
2008-02-10
|
|
SAPID CMF Build 87 - 'last_module' Remote Code Execution
|
19 |
WEB
|
GoLd_M
|
|
2008-02-10
|
|
ITechBids 6.0 - 'item_id' SQL Injection
|
19 |
WEB
|
SoSo H H
|
|
2008-02-10
|
|
PK-Designs PKs Movie Database 3.0.3 - Cross-Site Scripting / SQL Injection
|
19 |
WEB
|
Houssamix
|
|
2008-02-09
|
|
Mambo Component Comments 0.5.8.5g - SQL Injection
|
18 |
WEB
|
CheebaHawk215
|
|
2008-02-09
|
|
Journalness 4.1 - 'last_module' Remote Code Execution
|
22 |
WEB
|
Iron
|
|
2008-02-09
|
|
Open-Realty 2.4.3 - 'last_module' Remote Code Execution
|
15 |
WEB
|
Iron
|
|
2008-02-09
|
|
DomPHP 0.82 - 'index.php' Local File Inclusion
|
17 |
WEB
|
Houssamix
|
|
2008-02-09
|
|
Limbo CMS 1.0.4.2 - 'Cuid' cookie Blind SQL Injection
|
21 |
WEB
|
The:Paradox
|
|
2008-02-08
|
|
Mambo Component com_gallery - SQL Injection
|
20 |
WEB
|
S@BUN
|
|
2008-02-08
|
|
Joomla! Component NeoGallery 1.1 - SQL Injection
|
19 |
WEB
|
S@BUN
|
|
2008-02-08
|
|
PowerNews 2.5.6 - Local File Inclusion
|
19 |
WEB
|
DSecRG
|
|
2008-02-07
|
|
Joomla! Component com_noticias 1.0 - SQL Injection
|
22 |
WEB
|
xcorpitx
|
|
2008-02-07
|
|
Joomla! Component com_doc - SQL Injection
|
19 |
WEB
|
S@BUN
|
|
2008-02-07
|
|
Mambo Component Sermon 0.2 - 'gid' SQL Injection
|
19 |
WEB
|
S@BUN
|
|
2008-02-07
|
|
osCommerce Addon Customer Testimonials 3.1 - SQL Injection
|
16 |
WEB
|
it's my
|
|
2008-02-06
|
|
Mihalism Multi Host Download - 'Username' Blind SQL Injection
|
19 |
WEB
|
Moubik
|
|
2008-02-06
|
|
Mambo Component com_downloads - SQL Injection
|
21 |
WEB
|
S@BUN
|
|
2008-02-06
|
|
Joomla! Component Ynews 1.0.0 - 'id' SQL Injection
|
18 |
WEB
|
Crackers_Child
|
|
2008-02-06
|
|
Astanda Directory Project 1.2 - 'link_id' SQL Injection
|
17 |
WEB
|
you_kn0w
|
|
2008-02-06
|
|
MyBulletinBoard (MyBB) 1.2.11 - 'private.php' SQL Injection (1)
|
19 |
WEB
|
F
|
|
2008-02-06
|
|
OpenSiteAdmin 0.9.1.1 - Multiple File Inclusions
|
20 |
WEB
|
Trancek
|
|
2008-02-05
|
|
WordPress MU < 1.3.2 - 'active_plugins' Code Execution
|
18 |
WEB
|
Alexander Concha
|
|
2008-02-05
|
|
PhotoKorn Gallery 1.543 - 'pic' SQL Injection
|
19 |
WEB
|
you_kn0w
|
|
2008-02-05
|
|
All Club CMS 0.0.2 - 'index.php' SQL Injection
|
17 |
WEB
|
ka0x
|
|
2008-02-05
|
|
RMSOFT Gallery System 2.0 - 'id' SQL Injection
|
17 |
WEB
|
you_kn0w
|
|
2008-02-04
|
|
All Club CMS 0.0.1f - 'index.php' Local File Inclusion
|
16 |
WEB
|
Trancek
|
|
2008-02-04
|
|
VHD Web Pack 2.0 - 'index.php' Local File Inclusion
|
21 |
WEB
|
DSecRG
|
|
2008-02-04
|
|
Mambo Component Shambo2 - 'itemID' SQL Injection
|
15 |
WEB
|
S@BUN
|
|
2008-02-04
|
|
Mambo Component 'com_awesom' 0.3.2 - 'listid' SQL Injection
|
19 |
WEB
|
S@BUN
|
|
2008-02-04
|
|
XOOPS 2.0.18 - Local File Inclusion / URL Redirecting
|
17 |
WEB
|
DSecRG
|
|
2008-02-04
|
|
ITechBids 5.0 - 'item_id' SQL Injection
|
19 |
WEB
|
QTRinux
|
|
2008-02-03
|
|
Joomla! Component com_Marketplace 1.1.1 - SQL Injection
|
21 |
WEB
|
SoSo H H
|
|
2008-02-03
|
|
WordPress Plugin st_newsletter - SQL Injection
|
19 |
WEB
|
S@BUN
|
|
2008-02-03
|
|
A-Blog 2.0 - Cross-Site Scripting / SQL Injection
|
19 |
WEB
|
Khashayar Fereidani
|
|
2008-02-03
|
|
Joomla! Component mosDirectory 2.3.2 - 'catid' SQL Injection
|
19 |
WEB
|
GoLd_M
|
|
2008-02-02
|
|
BlogPHP 2 - 'id' Cross-Site Scripting / SQL Injection
|
18 |
WEB
|
Khashayar Fereidani
|
|
2008-02-02
|
|
phpShop 0.8.1 - SQL Injection / Filter Bypass
|
19 |
WEB
|
the redc0ders
|
|
2008-02-02
|
|
BookmarkX script 2007 - 'topicid' SQL Injection
|
19 |
WEB
|
S@BUN
|
|
2008-02-02
|
|
WordPress Plugin Wordspew - SQL Injection
|
17 |
WEB
|
S@BUN
|
|
2008-02-02
|
|
The Everything Development System Pre-1.0 - SQL Injection
|
19 |
WEB
|
sub
|
|
2008-02-02
|
|
WordPress Plugin dmsguestbook 1.7.0 - Multiple Vulnerabilities
|
20 |
WEB
|
NBBN
|
|
2008-02-01
|
|
Joomla! Component NeoReferences 1.3.1 - 'catid' SQL Injection
|
17 |
WEB
|
S@BUN
|
|
2008-02-01
|
|
LightBlog 9.5 - 'cp_upload_image.php' Arbitrary File Upload
|
18 |
WEB
|
Omni
|
|
2008-01-31
|
|
Mambo Component Restaurant 1.0 - SQL Injection
|
16 |
WEB
|
S@BUN
|
|
2008-01-31
|
|
Mambo Component 'com_catalogshop' 1.0b1 - SQL Injection
|
20 |
WEB
|
S@BUN
|
|
2008-01-31
|
|
Mambo Component 'com_akogallery' 2.5b - SQL Injection
|
19 |
WEB
|
S@BUN
|
|
2008-01-31
|
|
sflog! 0.96 - Remote File Disclosure
|
15 |
WEB
|
muuratsalo
|
|
2008-01-31
|
|
Mindmeld 1.2.0.10 - Multiple Remote File Inclusions
|
17 |
WEB
|
David Wharton
|
|
2008-01-30
|
|
PHP Links 1.3 - 'smarty.php' Remote File Inclusion
|
16 |
WEB
|
Houssamix
|
|
2008-01-30
|
|
PHP Links 1.3 - 'id' SQL Injection
|
19 |
WEB
|
Houssamix
|
|
2008-01-30
|
|
Joomla! Component ChronoForms 2.3.5 - Remote File Inclusion
|
23 |
WEB
|
Crackers_Child
|
|
2008-01-30
|
|
Coppermine Photo Gallery 1.4.14 - Remote Command Execution
|
19 |
WEB
|
waraxe
|
|
2008-01-30
|
|
ibProArcade 3.3.0 - SQL Injection
|
19 |
WEB
|
RST/GHC
|
|
2008-01-30
|
|
WordPress Plugin WassUp 1.4.3 - 'to_date' SQL Injection
|
17 |
WEB
|
enter_the_dragon
|
|
2008-01-30
|
|
Mambo Component EstateAgent 0.1 - SQL Injection
|
16 |
WEB
|
S@BUN
|
|
2008-01-30
|
|
Mambo Component jokes 1.0 - 'cat' SQL Injection
|
18 |
WEB
|
S@BUN
|
|
2008-01-30
|
|
Mambo Component Recipes 1.00 - 'id' SQL Injection
|
16 |
WEB
|
S@BUN
|
|
2008-01-30
|
|
WordPress Plugin Adserve 0.2 - 'adclick.php' SQL Injection
|
18 |
WEB
|
enter_the_dragon
|
|
2008-01-30
|
|
Connectix Boards 0.8.2 - 'template_path' Remote File Inclusion
|
16 |
WEB
|
Houssamix
|
|
2008-01-30
|
|
Mambo Component musepoes - 'aid' SQL Injection
|
20 |
WEB
|
S@BUN
|
|
2008-01-30
|
|
Mambo Component 'com_glossary' 2.0 - 'catid' SQL Injection
|
19 |
WEB
|
S@BUN
|
|
2008-01-29
|
|
Mambo Component 'com_mamml' - 'listid' SQL Injection
|
17 |
WEB
|
S@BUN
|
|
2008-01-29
|
|
Mambo Component 'com_fq' - 'listid' SQL Injection
|
18 |
WEB
|
S@BUN
|
|
2008-01-29
|
|
Mambo Component 'com_newsletter' 4.5 - 'listid' SQL Injection
|
17 |
WEB
|
S@BUN
|