Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2012-03-26   FreePBX 2.10.0 / 2.9.0 callmenum Remote Code Execution 87 WEB muts
2012-03-26   phpFox <= 3.0.1 (ajax.php) Remote Command Execution Exploit 109 WEB EgiX
2012-03-26   CoreCommerce SQL injection 108 WEB ZeTH
2012-03-26   FreePBX 2.10.0 / Elastix 2.2.0 Remote Code Execution Exploit 201 WEB muts
2012-03-23   EasyJobPortal << Sql Injection 120 WEB komodo
2012-03-23   Wolfcms <= 0.75 Multiple Vulnerabilities (CSRF - XSS) 111 WEB Ivano Binetti
2012-03-23   Supernet CMS Blind SQL injection 124 WEB Mr.5p0ng3
2012-03-23   Sitecom WLM-2501 new Multiple CSRF Vulnerabilities [2] 100 WEB Ivano Binetti
2012-03-23   Simple Upload Modules Simple Spotlight 232 WEB BL4ckc0d1n6
2012-03-23   FreePBX 2.10.0, 2.9.0 Multiple Vulnerabilities 97 WEB Martin Tschirsich
2012-03-23   phpMoneyBooks 1.0.2 Local File Inclusion 105 WEB Mark Stanislav
2012-03-23   PHP Grade Book 1.9.4 Unauthenticated SQL Database Export 102 WEB Mark Stanislav
2012-03-23   Cyberoam UTM Multiiple Vulnerabilities 101 WEB Saurabh Harit
2012-03-23   vBShout Persistent XSS 137 WEB ToiL
2012-03-22   phpList 2.10.17 Remote SQL Injection and XSS Vulnerability 95 WEB LiquidWorm
2012-03-22   D-Link DIR-605 CSRF Vulnerability 84 WEB iqzer0
2012-03-22   Vtiger 5.1.0 LFI 116 WEB Pi3rrot
2012-03-22   SEO PHP Directory Software CSRF 68 WEB Jonturk75
2012-03-21   nine10 Blind Sql Injection Vulnerability 103 WEB Angel Injection
2012-03-21   Hermesconcept - SQL Injection Vulnerability 93 WEB TheCyberNuxbie
2012-03-21   NasthonSystems - SQL Injection Vulnerability 88 WEB TheCyberNuxbie
2012-03-21   OneFileCMS - Failure to Restrict URL Access 141 WEB Abhi M Balakrishnan
2012-03-21   OneForum (topic.php) SQL Injection Vulnerability 146 WEB Red Security TEAM
2012-03-20   Excode - SQL Injection Vulnerability 127 WEB TheCyberNuxbie
2012-03-20   FastWeb2 - SQL Injection Vulnerability 128 WEB TheCyberNuxbie
2012-03-20   gnuboard <= 4.34.20 XSS vulnerability via arbitrary file name 96 WEB wh1ant
2012-03-20   ManageEngine DeviceExpert 5.6 Java Server ScheduleResultViewer servlet Unauthenticated Remote Direct 99 WEB rgod
2012-03-20   OneForum SQL Injection Vulnerability 108 WEB Cyber-sec
2012-03-20   Joomla 2.5.0-2.5.1 Time Based SQL Injection Exploit 81 WEB A. Ramos
2012-03-14   SEO classified Ads Script CSRF 114 WEB Jonturk75
2012-03-14   Dating Pro CSRF (change e-mail address) 71 WEB Jonturk75
2012-03-14   Php-lance CSRF (add admin) 101 WEB Jonturk75
2012-03-14   GOLD CLASSIFIEDS CSRF (add admin) 81 WEB Jonturk75
2012-03-14   iLister Multi-Purpose Listing CSRF 110 WEB Jonturk75
2012-03-14   BPowerItaliano CSRF 84 WEB Jonturk75
2012-03-14   Ajax PHP Penny Auction CSRF 81 WEB Jonturk75
2012-03-14   Lowest Unique Bid Auction Scripts CSRF 105 WEB Jonturk75
2012-03-14   EbayAssist CSRF 88 WEB Jonturk75
2012-03-14   BlueSoft Auction CSRF 99 WEB Jonturk75
2012-03-14   OneFileCMS - Failure to Restrict URL Access 102 WEB Abhi M Balakrishnan
2012-03-14   4images - Image Gallery Management System - [CSRF] Change mail user or admin 89 WEB Dmar al3noOoz
2012-03-14   Cycade Gallery SQL Injection Exploit 94 WEB DownFall
2012-03-14   PBLang local file include vulnerability 100 WEB Number 7
2012-03-13   OpenShop - SQL Injection Vulnerability 204 WEB TheCyberNuxbie
2012-03-13   DotFlorence - SQL Injection Vulnerability 85 WEB TheCyberNuxbie
2012-03-13   LEDZ - SQL Injection Vulnerability 95 WEB TheCyberNuxbie
2012-03-13   E-Bay Clone Script -SEO CSRF 85 WEB Jonturk75
2012-03-13   Kubelance CSRF (add new admin) 97 WEB Jonturk75
2012-03-13   Softbiz Quick Ad Manager CSRF 95 WEB Jonturk75
2012-03-13   psPopper 3.0 CSRF (change password) 104 WEB Jonturk75
2012-03-13   idev-TextAds 3.0 CSRF (change e-mail address) 130 WEB Jonturk75
2012-03-13   Barracuda CSRF (change e-mail address) 109 WEB Jonturk75
2012-03-13   InfoExtreme - SQL Injection Vulnerability 114 WEB TheCyberNuxbie
2012-03-13   Saman Portal Local File Inclusion Vulnerability 94 WEB TMT
2012-03-13   Bintech Systems LLC Admin Auth Bypass Exploit 98 WEB BLACK BURN
2012-03-13   Paypal Affiliate Script CSRF 84 WEB Jonturk75
2012-03-13   JROX.COM Affiliate Manager CBFront CSRF 99 WEB Jonturk75
2012-03-13   CBFront CSRF 94 WEB Jonturk75
2012-03-13   Paid to Click Script CSRF 83 WEB Jonturk75
2012-03-13   Affiliate Pro CSRF (change e-mail address) 98 WEB Jonturk75
2012-03-12   Clic Page XSS and SQL Injection Vulnerability 99 WEB OruçReis
2012-03-12   dotBanner Banner Management System CSRF 73 WEB Jonturk75
2012-03-12   Inout PPC Engine XSRF (change e-mail address) 100 WEB Jonturk75
2012-03-12   Ad Manager Pro CSRF Vuln (add admin) 97 WEB Jonturk75
2012-03-12   A.M.Y CSRF (change admin password) 94 WEB Jonturk75
2012-03-12   Easy Banner Manager Pro [CSRF] / (change admin password) 82 WEB Jonturk75
2012-03-12   Acal calendar Multiple Vulns 85 WEB Number 7
2012-03-12   MTDCMS - SQL Injection Vulnerability 103 WEB the_cyber_nuxbie
2012-03-12   WFYCMS - SQL Injection Vulnerability 93 WEB the_cyber_nuxbie
2012-03-12   AlegroCart FredCK-Editor (ASPELL for WinSRV) Remote Command Exec p0c 176 WEB KedAns-Dz
2012-03-12   Cometik Catalogue - SQL Injection Vulnerability 214 WEB the_cyber_nuxbie
2012-03-12   PHP Address Book 6.2.12 Multiple security vulnerabilities 86 WEB Stefan Schurtz
2012-03-12   Zend Server 5.6.0 Multiple Remote Script Insertion Vulnerabilities 109 WEB LiquidWorm
2012-03-12   Aztek Forum 4.01 - SQL Injection Vulnerability 108 WEB the_cyber_nuxbie
2012-03-12   SRISMS - SQL Injection Vulnerability 97 WEB the_cyber_nuxbie
2012-03-12   Nor-Rec WebBasic - SQL Injection Vulnerability 99 WEB the_cyber_nuxbie
2012-03-12   CATSHOP Cart - SQL Injection Vulnerability 106 WEB the_cyber_nuxbie
2012-03-12   Pobol WebBasic - SQL Injection Vulnerability 90 WEB the_cyber_nuxbie
2012-03-12   ActivaDigital- SQL Injection Vulnerability 119 WEB the_cyber_nuxbie
2012-03-12   UEBBI - SQL Injection Vulnerability 89 WEB the_cyber_nuxbie
2012-03-12   LY Network Cart - SQL Injection Vulnerability 105 WEB the_cyber_nuxbie
2012-03-09   RazorCMS <= 1.2.1 STABLE CSRF (Delete Web Pages) 115 WEB Ivano Binetti
2012-03-09   RazorCMS <= 1.2.1 STABLE File Upload Vulnerability 140 WEB i2sec_Hyo jun Oh
2012-03-09   Toenda CMS 1.6.2 Osaka Stable Local File Inclusion 105 WEB AkaStep
2012-03-08   SQLI Online Shop LeKommerce 103 WEB Mazt0r
2012-03-08   Iciniti Store SQL Injection - Security Advisory - SOS-12-003 105 WEB Lists
2012-03-08   Promise WebPAM v2.2.0.13 Multiple Remote Vulnerabilities 99 WEB LiquidWorm
2012-03-08   WebfolioCMS <= 1.1.4 Multiple XSS 191 WEB Ivano Binetti
2012-03-08   Symfony 2 Unauthenticated Information Disclosure 121 WEB Phil Taylor
2012-03-08   Log1cms v2.1 Multiple XSRF File (Upload/Download) Vulnerabilities 123 WEB KedAns-Dz
2012-03-08   Zen Cart v.1.5.0 Remote Shell Upload 227 WEB Mr.ExiT
2012-03-06   Drupal CMS 7.12 (latest stable release) Multiple Vulnerabilities 102 WEB Ivano Binetti
2012-03-06   ForkCMS 3.2.5 Multiple Vulnerabilities 87 WEB Ivano Binetti
2012-03-06   lizard cart SQLi (search.php) 92 WEB Number 7
2012-03-06   Symfony2 Local File Disclosure - Security Advisory - SOS-12-002 108 WEB Lists
2012-03-06   EbizCare => SQL Injection Vulnerability 118 WEB dbx
2012-03-06   Open-Realty 2.5.8 Local File Inclusion 103 WEB Transparent
2012-03-06   BigDump Importer v0.32b RFU 149 WEB TeaM MosTa
2012-03-06   piwigo <== SQL Injector 94 WEB TeaM MosTa
2012-03-06   Multiple SQL injections in rivettracker <=1.03 90 WEB Ali Raheem
2012-03-06   CnnCMS 1.x SQL Injection Vulnerability 106 WEB X-Cisadane
2012-03-05   AneCMS v.2e2c583 LFI exploit 97 WEB I2sec-PJH
2012-03-05   deV!L`z Clanportal Witze Addon Versions 0.9 SQL Injection Vulnerability 129 WEB Easy Laster
2012-03-04   Timesheet Next Gen 1.5.2 Multiple SQLi 86 WEB G13
2012-03-04   Multiple SQL injection rivettracker <=1.03 113 WEB Ali Raheem
2012-03-03   Infoserve SQL Vulnerability 91 WEB Optimiz3r
2012-03-03   Endian UTM Firewall v2.4.x & v2.5.0 - Multiple Web Vulnerabilities 105 WEB expku
2012-03-03   Wpmanager version wpm 2.2.0 (FCKeditor) Remote File Upload 137 WEB T0x!c
2012-03-03   phxEventManager 2.0 beta 5 search.php search_terms SQL Injection 119 WEB skysbsb
2012-03-01   Wolf CMS v0.7.5 Multiple Vulnerabilities 104 WEB longrifle0x
2012-03-01   ImgPals Photo Host Version 1.0 Admin Account Disactivation 110 WEB CorryL
2012-03-01   Yealink VOIP Phone Persistent Cross Site Scripting Vulnerability 118 WEB Narendra Shinde
2012-03-01   Topics Viewer CSRF Add Admin 105 WEB Green Hornet
2012-03-01   BrewBlogger v2.3.2 Multiple (XSRF/ShellUpload/SQLi) Vulnerabilities 97 WEB KedAns-Dz
2012-02-29   WebfolioCMS <= 1.1.4 CSRF (Add Admin/Modify Pages) 98 WEB Ivano Binetti
2012-02-28   Bitweaver v2.81 Local File Inclusion Vulnerability 100 WEB I2sec-PJH
2012-02-28   Dotclear 2.4.2 Arbitrary File Upload Vulnerability 92 WEB T0x!c
2012-02-28   ContaoCMS (aka TYPOlight) <= 2.11 CSRF (Delete Admin - Delete Article) 105 WEB Ivano Binetti
2012-02-27   YVS Image Gallery Sql Injection 104 WEB CorryL
2012-02-27   CreateVision CMS Database injection. 157 WEB Zwierzchowski Oskar
2012-02-27   webgrind 1.0 (file param) Local File Inclusion Vulnerability 170 WEB LiquidWorm
2012-02-27   cPassMan v1.82 Remote Command Execution Exploit 86 WEB ls
2012-02-27   PHP Gift Registry 1.5.5 SQL Injection 98 WEB G13
2012-02-24   Snom IP Phone Privilege Escalation - Security Advisory - SOS-12-001 93 WEB Lists
2012-02-24   phpDenora <= 1.4.6 Multiple SQL Injection Vulnerabilities 131 WEB KnickLighter