Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2012-03-12   Ad Manager Pro CSRF Vuln (add admin) 84 WEB Jonturk75
2012-03-12   A.M.Y CSRF (change admin password) 79 WEB Jonturk75
2012-03-12   Easy Banner Manager Pro [CSRF] / (change admin password) 68 WEB Jonturk75
2012-03-12   Acal calendar Multiple Vulns 75 WEB Number 7
2012-03-12   MTDCMS - SQL Injection Vulnerability 91 WEB the_cyber_nuxbie
2012-03-12   WFYCMS - SQL Injection Vulnerability 80 WEB the_cyber_nuxbie
2012-03-12   AlegroCart FredCK-Editor (ASPELL for WinSRV) Remote Command Exec p0c 162 WEB KedAns-Dz
2012-03-12   Cometik Catalogue - SQL Injection Vulnerability 200 WEB the_cyber_nuxbie
2012-03-12   PHP Address Book 6.2.12 Multiple security vulnerabilities 70 WEB Stefan Schurtz
2012-03-12   Zend Server 5.6.0 Multiple Remote Script Insertion Vulnerabilities 93 WEB LiquidWorm
2012-03-12   Aztek Forum 4.01 - SQL Injection Vulnerability 91 WEB the_cyber_nuxbie
2012-03-12   SRISMS - SQL Injection Vulnerability 84 WEB the_cyber_nuxbie
2012-03-12   Nor-Rec WebBasic - SQL Injection Vulnerability 86 WEB the_cyber_nuxbie
2012-03-12   CATSHOP Cart - SQL Injection Vulnerability 88 WEB the_cyber_nuxbie
2012-03-12   Pobol WebBasic - SQL Injection Vulnerability 76 WEB the_cyber_nuxbie
2012-03-12   ActivaDigital- SQL Injection Vulnerability 103 WEB the_cyber_nuxbie
2012-03-12   UEBBI - SQL Injection Vulnerability 75 WEB the_cyber_nuxbie
2012-03-12   LY Network Cart - SQL Injection Vulnerability 92 WEB the_cyber_nuxbie
2012-03-09   RazorCMS <= 1.2.1 STABLE CSRF (Delete Web Pages) 104 WEB Ivano Binetti
2012-03-09   RazorCMS <= 1.2.1 STABLE File Upload Vulnerability 130 WEB i2sec_Hyo jun Oh
2012-03-09   Toenda CMS 1.6.2 Osaka Stable Local File Inclusion 94 WEB AkaStep
2012-03-08   SQLI Online Shop LeKommerce 94 WEB Mazt0r
2012-03-08   Iciniti Store SQL Injection - Security Advisory - SOS-12-003 95 WEB Lists
2012-03-08   Promise WebPAM v2.2.0.13 Multiple Remote Vulnerabilities 88 WEB LiquidWorm
2012-03-08   WebfolioCMS <= 1.1.4 Multiple XSS 181 WEB Ivano Binetti
2012-03-08   Symfony 2 Unauthenticated Information Disclosure 108 WEB Phil Taylor
2012-03-08   Log1cms v2.1 Multiple XSRF File (Upload/Download) Vulnerabilities 110 WEB KedAns-Dz
2012-03-08   Zen Cart v.1.5.0 Remote Shell Upload 215 WEB Mr.ExiT
2012-03-06   Drupal CMS 7.12 (latest stable release) Multiple Vulnerabilities 91 WEB Ivano Binetti
2012-03-06   ForkCMS 3.2.5 Multiple Vulnerabilities 75 WEB Ivano Binetti
2012-03-06   lizard cart SQLi (search.php) 81 WEB Number 7
2012-03-06   Symfony2 Local File Disclosure - Security Advisory - SOS-12-002 93 WEB Lists
2012-03-06   EbizCare => SQL Injection Vulnerability 107 WEB dbx
2012-03-06   Open-Realty 2.5.8 Local File Inclusion 91 WEB Transparent
2012-03-06   BigDump Importer v0.32b RFU 136 WEB TeaM MosTa
2012-03-06   piwigo <== SQL Injector 81 WEB TeaM MosTa
2012-03-06   Multiple SQL injections in rivettracker <=1.03 80 WEB Ali Raheem
2012-03-06   CnnCMS 1.x SQL Injection Vulnerability 92 WEB X-Cisadane
2012-03-05   AneCMS v.2e2c583 LFI exploit 84 WEB I2sec-PJH
2012-03-05   deV!L`z Clanportal Witze Addon Versions 0.9 SQL Injection Vulnerability 114 WEB Easy Laster
2012-03-04   Timesheet Next Gen 1.5.2 Multiple SQLi 72 WEB G13
2012-03-04   Multiple SQL injection rivettracker <=1.03 101 WEB Ali Raheem
2012-03-03   Infoserve SQL Vulnerability 80 WEB Optimiz3r
2012-03-03   Endian UTM Firewall v2.4.x & v2.5.0 - Multiple Web Vulnerabilities 93 WEB expku
2012-03-03   Wpmanager version wpm 2.2.0 (FCKeditor) Remote File Upload 124 WEB T0x!c
2012-03-03   phxEventManager 2.0 beta 5 search.php search_terms SQL Injection 104 WEB skysbsb
2012-03-01   Wolf CMS v0.7.5 Multiple Vulnerabilities 93 WEB longrifle0x
2012-03-01   ImgPals Photo Host Version 1.0 Admin Account Disactivation 98 WEB CorryL
2012-03-01   Yealink VOIP Phone Persistent Cross Site Scripting Vulnerability 108 WEB Narendra Shinde
2012-03-01   Topics Viewer CSRF Add Admin 95 WEB Green Hornet
2012-03-01   BrewBlogger v2.3.2 Multiple (XSRF/ShellUpload/SQLi) Vulnerabilities 86 WEB KedAns-Dz
2012-02-29   WebfolioCMS <= 1.1.4 CSRF (Add Admin/Modify Pages) 87 WEB Ivano Binetti
2012-02-28   Bitweaver v2.81 Local File Inclusion Vulnerability 89 WEB I2sec-PJH
2012-02-28   Dotclear 2.4.2 Arbitrary File Upload Vulnerability 80 WEB T0x!c
2012-02-28   ContaoCMS (aka TYPOlight) <= 2.11 CSRF (Delete Admin - Delete Article) 92 WEB Ivano Binetti
2012-02-27   YVS Image Gallery Sql Injection 93 WEB CorryL
2012-02-27   CreateVision CMS Database injection. 148 WEB Zwierzchowski Oskar
2012-02-27   webgrind 1.0 (file param) Local File Inclusion Vulnerability 159 WEB LiquidWorm
2012-02-27   cPassMan v1.82 Remote Command Execution Exploit 74 WEB ls
2012-02-27   PHP Gift Registry 1.5.5 SQL Injection 87 WEB G13
2012-02-24   Snom IP Phone Privilege Escalation - Security Advisory - SOS-12-001 84 WEB Lists
2012-02-24   phpDenora <= 1.4.6 Multiple SQL Injection Vulnerabilities 121 WEB KnickLighter
2012-02-24   The Uploader 2.0.4 (Eng/Ita) Remote File Upload Remote Code Execution 99 WEB Danny Moules
2012-02-23   DFLabs PTK <= 1.0.5 Multiple Vulnerabilities (Steal Authentication Credentials) 89 WEB Ivano Binetti
2012-02-23   D-Link DSL-2640B Authentication Bypass 73 WEB Ivano Binetti
2012-02-23   WebcamXP and Webcam 7 Directory Traversal Vulnerability 103 WEB Silent Dream
2012-02-23   Dlink DCS series CSRF Change Admin Password 96 WEB rigan
2012-02-23   BRIM < 2.0.0 SQL Injection 86 WEB ifnull
2012-02-23   ForkCMS 3.2.5 Multiple Vulnerabilities 94 WEB Ivano Binetti
2012-02-23   Sagem F@ST 2604 CSRF Vulnerability (ADSL Router) 97 WEB KinG Of PiraTeS
2012-02-23   Limesurvey (PHPSurveyor v.1.91+ stable) Blind SQL Injection 84 WEB TorTukiTu
2012-02-23   VOXTRONIC Voxlog Professional 3.7.2.729 SQL Injection 308 WEB J. Greil
2012-02-23   TestLink SQL Injection Vulnerabilities 104 WEB Juan M. Natal
2012-02-23   Cisco Linksys WAG54GS (ADSL Router) change admin password 76 WEB Ivano Binetti
2012-02-23   MySQLDumper v1.2x.x SQL Injection/Execute Vulnerability 133 WEB KedAns-Dz
2012-02-23   Beats Website SQL Injection Vulnerability 93 WEB system k1ller
2012-02-22   Cisco Linksys WAG54GS CSRF Change Admin Password 110 WEB Ivano Binetti
2012-02-21   PlumeCMS <= 1.2.4 CSRF Vulnerability 69 WEB Ivano Binetti
2012-02-21   D-Link DSL-2640B (ADSL Router) CSRF Vulnerability 120 WEB Ivano Binetti
2012-02-21   Joomla com_etree Blind SQL-inj Vuln 94 WEB Mach1ne
2012-02-20   SyndeoCMS <= 3.0 CSRF Vulnerability 69 WEB Ivano Binetti
2012-02-20   4PSA CMS SQL Injection Vulnerabilities 60 WEB BHG Security Center
2012-02-20   almnzm 2.4 <= CSRF Vulnerability (Add Admin) 172 WEB HaNniBaL KsA
2012-02-20   Pandora FMS v4.0.1 - Local File Include Vulnerability 101 WEB Vulnerability-Lab
2012-02-20   Mitra Iranian CMS Remote File Upload 107 WEB Nitrojen90
2012-02-20   Joomla Component com_x-shop (idd) <= SQLi Vulnerability 76 WEB KedAns-Dz
2012-02-20   Joomla Component (com_xcomp) <= Local File Inclusion Vulnerability 81 WEB KedAns-Dz
2012-02-20   Joomla Component (com_xvs) <= Local File Inclusion Vulnerability 84 WEB KedAns-Dz
2012-02-20   CDPI Software SQL Injection Vulnerability 94 WEB ITTIHACK
2012-02-20   TopForm CMS SQL Injection Vulnerability 98 WEB faza02
2012-02-20   Solgens SQLInjection Vulnerability 74 WEB the_cyber_nuxbie
2012-02-20   Pirelli Discus DSL-DRGA112-07 Remote Change Password 80 WEB Daniel Godoy
2012-02-20   Telerom CMS SQLi Vulnerability 75 WEB ITTIHACK
2012-02-17   SocialCMS CSRF Vulnerability 95 WEB Ivano Binetti
2012-02-17   LEPTON 1.1.3 SQL Injection / XSS / Local File Inclusion 173 WEB expku
2012-02-17   BuyWebArt <<< SQL Injection Vulnerability 99 WEB Infamous
2012-02-17   Fork CMS v.3.2.4 - Multiple Vulnerabilities 62 WEB RandomStorm
2012-02-16   AHLANNET<<< SQL Injection Vulnerability 88 WEB Infamous
2012-02-15   Chicago Tribune Cross Site Scripting 103 WEB Janne Ahlberg
2012-02-15   Sonexis ConferenceManager Information Disclosure 135 WEB Netragard
2012-02-13   PBBoard v2.1.4 <= Multiple Vulnerabilites 86 WEB KedAns-Dz
2012-02-13   Razor CMS v1.2 <= Multiple File Disclosure Vulnerabilites 88 WEB KedAns-Dz
2012-02-13   Dolibarr CMS v3.2.0 Alpha - File Include Vulnerabilities 108 WEB Vulnerability-Lab
2012-02-10   SimogeoFilemanager Upload File Vulnerability 323 WEB hack`
2012-02-10   Pluck CMS 4.7 Multiple CSRF Vulnerabilities 96 WEB Gordon Security
2012-02-09   D-Link ShareCenter Remote Code Execution 80 WEB Roberto Paleari
2012-02-09   Tibetsystem OwnServer 1.0 Directory Traversal 196 WEB Jason Ellison
2012-02-09   Cyberoam Central Console v2.00.2 - File Include Vulnerability 115 WEB Vulnerability-Lab
2012-02-09   Ananta Gazelle CMS - Update Statement Sql injection 76 WEB hackme
2012-02-08   Flyspray 0.9.9.6 CSRF Vulnerability 99 WEB Vaibhav Gupta
2012-02-07   XRayCMS 1.1.1 SQL Injection Vulnerability 82 WEB chap0
2012-02-07   Tube Ace(Adult PHP Tube Script) SQL Injection 120 WEB Daniel Godoy
2012-02-07   BASE 1.4.5 (base_qry_main.php t_view) SQL Injection Vulnerability 73 WEB a.kadir altan
2012-02-06   Tube Ace(Adult PHP Tube Script) SQL Injection 82 WEB Daniel Godoy
2012-02-06   GAzie <= 5.20 Cross Site Request Forgery 84 WEB Giuseppe D'Inverno
2012-02-03   Achievo v1.4.3 - Multiple Web Vulnerabilities 88 WEB Vulnerability-Lab
2012-02-03   OSCommerce v3.0.2 - Persistent Cross Site Vulnerability 174 WEB Vulnerability-Lab
2012-02-03   Apache Struts Multiple Persistent Cross-Site Scripting Vulnerabilities 216 WEB SecPod Research
2012-02-03   Sphinix Mobile Web Server 3.1.2.47 Multiple Persistent XSS Vulnerabilities 92 WEB SecPod Research
2012-02-02   MailEnable Webmail Cross-Site Scripting Vulnerability 94 WEB Sajjad Pourali
2012-02-02   Webkit normalize bug for android 2.2 (CVE-2010-1759) 100 WEB MJ Keith
2012-02-02   SiT! Support Incident Tracker 3.64 Multiple Vulnerabilities 83 WEB High-Tech Bridge SA
2012-02-02   swDesk Multiple Vulnerabilities 92 WEB Red Security TEAM
2011-12-13   Squiz Matrix - User Account Enumeration 84 WEB Troy Rose
2011-12-12   Docebo LMS <= v4.0.4 (messages) Remote Code Execution 101 WEB mr_me