Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2008-01-20   Mini File Host 1.2.1 - 'language' Local File Inclusion 31 WEB shinmai
2008-01-19   WordPress Plugin WP-Forum 1.7.4 - SQL Injection 29 WEB websec Team
2008-01-18   Small Axe 0.3.1 - 'cfile' Remote File Inclusion 30 WEB RoMaNcYxHaCkEr
2008-01-18   Gradman 0.1.3 - 'info.php' Local File Inclusion 32 WEB Syndr0me
2008-01-18   AuraCMS 1.62 - 'stat.php' Remote Code Execution 29 WEB k1tk4t
2008-01-17   Mini File Host 1.2 - 'language' Local File Inclusion 30 WEB Scary-Boys
2008-01-17   PHPEcho CMS 2.0 - 'id' SQL Injection 31 WEB Stack
2008-01-16   MyBulletinBoard (MyBB) 1.2.10 - Multiple Vulnerabilities 29 WEB waraxe
2008-01-16   MyBulletinBoard (MyBB) 1.2.10 - Remote Code Execution 27 WEB Silentz
2008-01-16   Gradman 0.1.3 - 'agregar_info.php' Local File Inclusion 30 WEB JosS
2008-01-16   PHP-RESIDENCE 0.7.2 - 'Search' SQL Injection 28 WEB Khashayar Fereidani
2008-01-16   PixelPost 1.7 - Blind SQL Injection 30 WEB Silentz
2008-01-16   alitalk 1.9.1.1 - Multiple Vulnerabilities 27 WEB tomplixsee
2008-01-16   MailBee WebMail Pro 4.1 - Remote File Disclosure 28 WEB -=M.o.B=-
2008-01-16   Aria 0.99-6 - 'page' Local File Inclusion 31 WEB DSecRG
2008-01-16   Blog:CMS 4.2.1b - SQL Injection / Cross-Site Scripting 32 WEB DSecRG
2008-01-15   FaScript FaPersianHack 1.0 - SQL Injection 31 WEB Khashayar Fereidani
2008-01-15   FaScript FaPersian Petition - SQL Injection 32 WEB Khashayar Fereidani
2008-01-15   FaScript FaName 1.0 - SQL Injection 35 WEB Khashayar Fereidani
2008-01-15   FaScript FaMp3 1.0 - SQL Injection 35 WEB Khashayar Fereidani
2008-01-15   LulieBlog 1.0.1 - Remote Authentication Bypass 33 WEB ka0x
2008-01-14   RichStrong CMS - 'cat' SQL Injection 35 WEB JosS
2008-01-14   Xforum 1.4 - 'topic' SQL Injection 31 WEB j0j0
2008-01-14   X7 Chat 2.0.5 - 'day' SQL Injection 32 WEB nonroot
2008-01-13   Agares phpAutoVideo 2.21 - 'articlecat' SQL Injection (2) 28 WEB Pr0metheuS
2008-01-13   Binn SBuilder - 'nid' Blind SQL Injection 28 WEB JosS
2008-01-13   minimal Gallery 0.8 - Remote File Disclosure 31 WEB Houssamix
2008-01-12   TutorialCMS 1.02 - 'Username' SQL Injection 32 WEB ka0x
2008-01-12   ASP Photo Gallery 1.0 - Multiple SQL Injections 30 WEB trew
2008-01-12   TaskFreak! 0.6.1 - SQL Injection 28 WEB TheDefaced
2008-01-12   Agares phpAutoVideo 2.21 - 'articlecat' SQL Injection (1) 31 WEB ka0x
2008-01-11   photokron 1.7 - Remote Database Disclosure 29 WEB Pr0metheuS
2008-01-11   0DayDB 2.3 - 'id' Remote Authentication Bypass 29 WEB Pr0metheuS
2008-01-11   ImageAlbum 2.0.0b2 - 'id' SQL Injection 32 WEB Raw Security
2008-01-11   Docebo 3.5.0.3 - '/lib.regset.php/non-blind' SQL Injection 31 WEB rgod
2008-01-11   AJchat 0.10 - 'unse' SQL Injection 33 WEB Eugene Minaev
2008-01-11   vcart 3.3.2 - Multiple Remote File Inclusions 32 WEB k1n9k0ng
2008-01-11   DomPHP 0.81 - 'cat' SQL Injection 30 WEB MhZ91
2008-01-11   DigitalHive 2.0 RC2 - 'user_id' SQL Injection 32 WEB j0j0
2008-01-11   iGaming CMS 1.3.1/1.5 - SQL Injection 32 WEB Eugene Minaev
2008-01-10   Evilsentinel 1.0.9 - Multiple Vulnerabilities Disable 31 WEB BlackHawk
2008-01-10   DomPHP 0.81 - 'index.php' Remote File Inclusion 30 WEB Houssamix
2008-01-10   MTCMS 2.0 - SQL Injection 31 WEB Virangar Security
2008-01-10   DomPHP 0.81 - Remote Add Administrator 33 WEB j0j0
2008-01-09   Docebo 3.5.0.3 - 'lib.regset.php' Command Execution 29 WEB EgiX
2008-01-09   Tuned Studios Templates - Local File Inclusion 30 WEB DSecRG
2008-01-09   PHP Webquest 2.6 - Get Database Credentials 31 WEB MhZ91
2008-01-09   UploadImage/UploadScript 1.0 - Remote Change Admin Password 34 WEB Dj7xpl
2008-01-09   osData 2.08 Modules Php121 - Local File Inclusion 32 WEB Cold Zero
2008-01-08   PHP Webquest 2.6 - 'id_actividad' SQL Injection 32 WEB ka0x
2008-01-08   evilboard 0.1a - SQL Injection / Cross-Site Scripting 34 WEB seaofglass
2008-01-08   ZeroCMS 1.0 Alpha - Arbitrary File Upload / SQL Injection 33 WEB KiNgOfThEwOrLd
2008-01-08   SmallNuke 2.0.4 - Pass Recovery SQL Injection 32 WEB Eugene Minaev
2008-01-07   TUTOS 1.3 - 'cmd.php' Remote Command Execution 31 WEB Houssamix
2008-01-07   EggBlog 3.1.0 - Cookies SQL Injection 32 WEB Eugene Minaev
2008-01-07   EkinBoard 1.1.0 - Arbitrary File Upload / Authentication Bypass 30 WEB Eugene Minaev
2008-01-07   FlexBB 0.6.3 - Cookies SQL Injection 30 WEB Eugene Minaev
2008-01-07   OneCMS 2.4 - SQL Injection / Upload 40 WEB BugReport.IR
2008-01-06   Shop-Script 2.0 - 'index.php' Remote File Disclosure 27 WEB Fisher762
2008-01-06   SineCMS 2.3.5 - Local File Inclusion / Remote Code Execution 35 WEB KiNgOfThEwOrLd
2008-01-06   DCP-Portal 6.11 - SQL Injection 29 WEB x0kster
2008-01-06   NetRisk 1.9.7 - Cross-Site Scripting / SQL Injection 33 WEB Virangar Security
2008-01-06   CuteNews 1.1.1 - 'html.php' Remote Code Execution 31 WEB Eugene Minaev
2008-01-06   Horde Web-Mail 3.x - 'go.php' Remote File Disclosure 30 WEB Eugene Minaev
2008-01-06   LoudBlog 0.6.1 - 'parsedpage' Remote Code Execution 34 WEB Eugene Minaev
2008-01-06   PortalApp 4.0 - SQL Injection / Cross-Site Scripting / Authentication Bypass 32 WEB r3dm0v3
2008-01-06   XOOPS mod_gallery Zend_Hash_key + Extract - Remote File Inclusion 31 WEB Eugene Minaev
2008-01-06   Uebimiau Web-Mail 2.7.10/2.7.2 - Remote File Disclosure 31 WEB Eugene Minaev
2008-01-06   RunCMS Newbb_plus 0.92 - Client IP SQL Injection 29 WEB Eugene Minaev
2008-01-06   WordPress Plugin Wp-FileManager 1.2 - Arbitrary File Upload 28 WEB Houssamix
2008-01-05   MODx CMS 0.9.6.1 - Multiple Vulnerabilities 30 WEB BugReport.IR
2008-01-05   NetRisk 1.9.7 - Remote Password Change 33 WEB Cod3rZ
2008-01-05   Invision Power Board (IP.Board) 2.1.7 - 'ACTIVE' Cross-Site Scripting / SQL Injection 33 WEB Eugene Minaev
2008-01-05   Tribisur 2.0 - SQL Injection 32 WEB x0kster
2008-01-05   snetworks PHP Classifieds 5.0 - Remote File Inclusion 30 WEB Crackers_Child
2008-01-05   ClipShare 2.6 - Remote User Password Change 33 WEB Pr0metheuS
2008-01-05   samPHPweb 4.2.2 - 'songinfo.php' SQL Injection 32 WEB BackDoor
2008-01-04   WebPortal CMS 0.6-beta - Remote Password Change 30 WEB The:Paradox
2008-01-04   samPHPweb 4.2.2 - 'db.php' Remote File Inclusion 31 WEB Crackers_Child
2008-01-04   NetRisk 1.9.7 - Local/Remote File Inclusion 33 WEB S.W.A.T.
2008-01-03   Site@School 2.4.10 - Blind SQL Injection 29 WEB EgiX
2008-01-03   MyPHP Forum 3.0 - 'Final' SQL Injection 32 WEB The:Paradox
2008-01-02   ClipShare - 'UID' SQL Injection 29 WEB Krit
2008-01-01   AGENCY4NET WEBFTP 1 - 'download2.php' File Disclosure 33 WEB GoLd_M
2007-12-31   Joomla! Component PU Arcade 2.1.3 - SQL Injection 31 WEB Houssamix
2007-12-31   WebPortal CMS 0.6.0 - 'index.php' SQL Injection 27 WEB x0kster
2007-12-31   oneSCHOOL - 'admin/login.asp' SQL Injection 34 WEB Guga360
2007-12-31   ZenPhoto 1.1.3 - 'rss.php?albumnr' SQL Injection 31 WEB Silentz
2007-12-31   MyPHP Forum 3.0 (Final) - Multiple SQL Injections 31 WEB x0kster
2007-12-31   IPTBB 0.5.4 - 'id' SQL Injection 30 WEB MhZ91
2007-12-30   w-Agora 4.2.1 - 'cat' SQL Injection 32 WEB IHTeam
2007-12-30   SanyBee Gallery 0.1.1 - 'p' Local File Inclusion 32 WEB jackal
2007-12-30   matpo bilder galerie 1.1 - Remote File Inclusion 34 WEB Crackers_Child
2007-12-30   Bitweaver R2 CMS - Arbitrary File Upload / Disclosure 31 WEB BugReport.IR
2007-12-30   XCMS 1.83 - Remote Command Execution 31 WEB x0kster
2007-12-30   Mihalism Multi Host 2.0.7 - 'download.php' Remote File Disclosure 37 WEB GoLd_M
2007-12-30   kontakt formular 1.4 - Remote File Inclusion 29 WEB bd0rk
2007-12-30   CMS Made Simple 1.2.2 Module TinyMCE - SQL Injection 28 WEB EgiX
2007-12-29   CCMS 3.1 Demo - SQL Injection 30 WEB Pr0metheuS
2007-12-29   Mihalism Multi Forum Host 3.0.x - Remote File Inclusion 38 WEB GoLd_M
2007-12-29   jPORTAL 2.3.1 & UserPatch - 'forum.php' Remote Code Execution 34 WEB irk4z
2007-12-28   NoseRub 0.5.2 - Login SQL Injection 31 WEB Felix Groebert
2007-12-28   Hot or Not Clone by Jnshosts.com - Database Backup Dump 31 WEB RoMaNcYxHaCkEr
2007-12-28   XCMS 1.82 - Local/Remote File Inclusion 29 WEB nexen
2007-12-28   xml2owl 0.1.1 - 'showcode.php' Remote Command Execution 29 WEB MhZ91
2007-12-27   Joovili 3.0.6 - 'joovili.images.php' Remote File Disclosure 28 WEB EcHoLL
2007-12-27   ZeusCMS 0.3 - Blind SQL Injection 31 WEB EgiX
2007-12-26   PNPHPBB2 < 1.2i - 'PHPEx' Local File Inclusion 31 WEB irk4z
2007-12-26   XZero Community Classifieds 4.95.11 - Remote File Inclusion 29 WEB Kw3[R]Ln
2007-12-26   XZero Community Classifieds 4.95.11 - Local File Inclusion / SQL Injection 28 WEB Kw3[R]Ln
2007-12-26   Blakord Portal Beta 1.3.A (All Modules) - SQL Injection 28 WEB JosS
2007-12-26   RunCMS 1.6 - Blind SQL Injection (IDS Evasion) 33 WEB sh2kerr
2007-12-25   eSyndiCat Link Exchange Script 2005-2006 - SQL Injection 28 WEB EgiX
2007-12-25   RunCMS 1.6 - Multiple Vulnerabilities 32 WEB DSecRG
2007-12-25   PMOS Help Desk 2.4 - Remote Command Execution 33 WEB EgiX
2007-12-25   MailMachine Pro 2.2.4 - SQL Injection 29 WEB MhZ91
2007-12-25   RunCMS 1.6 - Get Admin Cookie Blind SQL Injection 30 WEB sh2kerr
2007-12-25   AuraCMS 2.2 - Remote Add Administrator 29 WEB k1tk4t
2007-12-25   TeamCalPro 3.1.000 - Multiple Local/Remote File Inclusions 30 WEB GoLd_M
2007-12-24   Joomla! Component mosDirectory 2.3.2 - Remote File Inclusion 32 WEB ShockShadow
2007-12-24   Agares phpAutoVideo 2.21 - Local/Remote File Inclusion 32 WEB MhZ91
2007-12-24   Jupiter 1.1.5ex - Privilege Escalation 29 WEB BugReport.IR
2007-12-24   ThemeSiteScript 1.0 - 'index.php?loadadminpage' Remote File Inclusion 31 WEB Koller
2007-12-24   CuteNews 1.4.5 - Admin Password md5 Hash Fetching 27 WEB waraxe
2007-12-24   MeGaCheatZ 1.1 - Multiple SQL Injections 32 WEB MhZ91