Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2011-06-13   Technote 7.2 Blind SQL Injection 376 WEB BlueH4G
2011-06-13   WordPress Events Manager 3.1.2 SQL Injection 164 WEB LoocK3D
2011-06-13   Facebook Session Sidejacking 119 WEB Madhur
2011-06-13   SUBRION CMS Cross Site Scripting / SQL Injection 158 WEB Karthik R
2011-06-13   Pacer Edition CMS 2.1 Local File Inclusion 87 WEB LiquidWorm
2011-06-13   IT Reflect => SQL Injection Vulnerability 118 WEB eXeSoul
2011-06-10   byTolinet Agencia Blind SQL Injection 126 WEB Andrea Bocchetti
2011-06-10   Pacer Edition CMS 2.1 Cross Site Scripting 122 WEB LiquidWorm
2011-06-10   FreePBX 2.9.0.6 Shell Upload 129 WEB Tiago Ferreira
2011-06-10   Booxys Hotel 1.0 Cross Site Scripting 128 WEB Net.Edit0r
2011-06-10   BigDump-SQL Uploader v0.32->0.x Upload File Vulnerability 208 WEB KedAns-Dz
2011-06-10   Pezz Media.. SQL injection Vulnerability 115 WEB k's0uR!
2011-06-10   Innovative Media Group => SQL Injection 104 WEB Ratchet
2011-06-10   WordPress plugin photoracer SQL injection Vulnerability 99 WEB HaNniBaL KsA
2011-06-10   Prefix Technologies (article.php)<= SQL injection Vulnerability 115 WEB KedAns-Dz
2011-06-10   Polycom IP Phone Web Interface Data Diclosure Vulnerability 112 WEB Pr0T3cT10n
2011-06-10   Aastra IP Phone 9480i Web Interface Data disclosure Vulnerability 102 WEB Pr0T3cT10n
2011-06-10   EquiPCS SQL Injection vulnerability exploit 121 WEB Sideswipe
2011-06-09   phpcms v2.4 SQL injection exploit (test vbs_exp) 351 WEB Fjhgx
2011-06-09   WordPress Star Rating SQL Injection 92 WEB expku
2011-06-09   Prefix Technologies (page.php)<= SQL injection Vulnerability 92 WEB Caddy-Dz
2011-06-09   Lifestyles Media Group => SQL Injection 106 WEB Ratchet
2011-06-09   WireMedia => SQL Injection 109 WEB Sideswipe
2011-06-08   BLOG:CMS 4.2.1.f Cross Site Scripting 105 WEB Stefan Schurtz
2011-06-08   Squiz Matrix 4.0.6 / 4.2.2 Cross Site Scripting 78 WEB osisecurity
2011-06-08   AR Infotech SQL injection Vulnerability 109 WEB xConsoLe
2011-06-08   AR Infotech Admin Auth ByPass 100 WEB xConsoLe
2011-06-08   Circus Strategic Communications Inc.. Sql injection 111 WEB k's0uR!
2011-06-08   Mevlana Content Management System SQL-i Vulnerability 93 WEB RoAd_KiLlEr
2011-06-08   Dataface Local File Include 99 WEB ItSecTeam
2011-06-07   Discuz!7.0-7.2和Phpwind7.5后台鸡肋漏洞 143 WEB expku
2011-06-07   Tele Data Contact Management Server Directory Traversal 89 WEB AutoSec Tools
2011-06-07   Simple Web-Server 1.2 Directory Traversal 103 WEB AutoSec Tools
2011-06-07   Nakid CMS 1.0.2 Cross Site Scripting 121 WEB AutoSec Tools
2011-06-07   Angora Guestbook 1.5 Local File Inclusion 105 WEB AutoSec Tools
2011-06-07   Multiple WordPress Themes Cross Site Scripting 106 WEB Best wishes
2011-06-07   vBulletin 3.x vBExperience Cross Site Scripting 141 WEB Mr.ThieF
2011-06-07   vBulletin 4.1.3 Open Redirect 159 WEB Robert Gilbert
2011-06-07   Unu2 multimedia => SQL Injection 122 WEB Sideswipe
2011-06-07   SmartySolution Sql injection 169 WEB Anas
2011-06-07   Kleophatra v0.1.5 'TinyBrowser' File Upload Code Execution (meta) 122 WEB KedAns-Dz
2011-06-07   SpidaNews v1.0 (edit.php) SQL Injection Vulnerability 102 WEB KedAns-Dz
2011-06-07   Joomla Component (com_ccboard) Multiple Vulnerabilities 132 WEB KedAns-Dz
2011-06-07   PopScript Multiple Vulnerabilities 116 WEB NassRawI
2011-06-07   SmartySolution Admin Auth ByPass 169 WEB xConsoLe
2011-06-07   PHP-AddressBook v6.2.12 (view.php) SQL Injection Vulnerability 105 WEB KedAns-Dz
2011-06-07   Radiant Infotech Nepal 2.x.x Multiple Vulnerability 129 WEB Net.Edit0r
2011-06-07   WebSVN 2.3.2 Unproper Metacharacters Escaping exec() Remote Command Injection 124 WEB rgod
2011-06-07   Ushahidi 2.0.1 (range param) SQL Injection Vulnerability (post-auth) 126 WEB LiquidWorm
2011-06-03   discuz! X1.5 Get Shell 叉day[Alibaba后续修改与添加Get Shell代码] 235 WEB alibaba
2011-06-03   9959网店系统 v5.0 Blind SQL injection exploit 122 WEB 闷豆
2011-06-03   Vibrant Creations =>SQL Injection Vulnerability 105 WEB eXeSoul
2011-06-03   mWebnet Admin Auth ByPass 141 WEB xConsoLe
2011-06-03   Epop Studio News SQL Injection 199 WEB Codeine
2011-06-02   Discuz! X1-1.5 notify_credit.php Blind SQL injection exploit 208 WEB toby57
2011-06-02   Serendipity 1.5.5 Event Freetag Cross Site Scripting 153 WEB Stefan Schurtz
2011-06-02   Post Revolution 0.8.0c XSS / XSRF / Denial Of Service 130 WEB Javier Bassi
2011-06-02   A Really Simple Chat (ARSC) 3.3-rc2 XSS / SQL Injection 92 WEB expku
2011-06-02   Nagios 3.2.3 Cross Site Scripting 129 WEB Stefan Schurtz
2011-06-02   Netgear WNDAP350 Root Password Disclosure 183 WEB Juerd Waalboer
2011-06-02   MediaCluster (mcCMS) Arbitrary File Upload Vulnerability 75 WEB RoAd_KiLlEr
2011-06-02   Vibrant Creations =>SQL Injection Vulnerability 113 WEB eXeSoul
2011-06-02   Icinga 1.3.0 / 1.4.0 Cross Site Scripting 105 WEB Stefan Schurtz
2011-06-02   byTolinet Agencia <= Remote 'conexion.php' Disclosure Exploit 130 WEB KnocKout
2011-06-02   Innovative Web SQL Injection Vulnerability 123 WEB Kalashinkov3
2011-06-02   ROCKETMEDIA (index.php) Blind SQL-i Vulnerability 108 WEB Kalashinkov3
2011-06-02   World e Mart(news/event/page)=>SQL Injection Vulnerability 107 WEB eXeSoul
2011-06-02   WebC.be <= Remote 'db_login.php' Disclosure Exploit 138 WEB KnocKout
2011-06-02   Pika CMS <= 'showSource.php' Local File Inclusion 123 WEB KnocKout
2011-06-02   Pika CMS <= Remote 'baza_mysql.php' Disclosure Exploit 107 WEB KnocKout
2011-06-02   TEDE Simplificado <= (Versions) SQL Injection Vulnerability 106 WEB KnocKout
2011-06-02   Chiangmai Webdesign (webboardAnswer.php)<= Blind SQL injection Vulnerability 104 WEB Caddy-Dz
2011-06-02   xinha Arbitrary File Upload Vulnerability 177 WEB xConsoLe
2011-06-01   Joomla 1.6.x Administrator PHP Code Execution 86 WEB James Bercegay
2011-06-01   Joomla 1.6.0 SQL Injection 99 WEB James Bercegay
2011-06-01   Kentico CMS 5.5R2.23 Cross Site Scripting 113 WEB LiquidWorm
2011-06-01   Websolutions SQL Injection Vulnerability 204 WEB Kalashinkov3
2011-06-01   GloDerWorks SQL Injection Vulnerability 128 WEB Kalashinkov3
2011-06-01   Mlffat 2.3 SQL Injection Vulnerability 150 WEB KinG Of PiraTeS
2011-06-01   Guru JustAnswer Professional 1.25 Multiple SQL Injection Vulnerabilities 107 WEB v3n0m
2011-06-01   Belkin G Wireless Router Admin Exploit 112 WEB Aodrulez
2011-06-01   eFront Educational <=XSRF (Add admin/change admin passwd) 142 WEB Caddy-Dz
2011-06-01   eFront Community++ <=XSRF (Add admin/change admin passwd) 118 WEB Caddy-Dz
2011-06-01   eFront enterprise <=XSRF (Add admin/change admin passwd) 99 WEB Caddy-Dz
2011-05-31   Callisto 821+ Cross Site Request Forgery / Cross Site Scripting 111 WEB MustLive
2011-05-31   Forticlient SSL VPN Symlink Overwrite 314 WEB expku
2011-05-31   TinyMCE AjaxFileManager Shell Upload 183 WEB Dr Trojan
2011-05-31   Apache Archiva 1.3.4 Cross Site Request Forgery 110 WEB expku
2011-05-31   Apache Archiva 1.3.4 Cross Site Scripting 91 WEB expku
2011-05-31   SQL Injection Vulnerbility in Dreamzsop 124 WEB lionaneesh
2011-05-31   PHP Inventory <= XSRF Vulnerabelity 96 WEB Caddy-Dz
2011-05-31   ApPHP Shopping Cart <= XSRF (Change Admin Password) 133 WEB Caddy-Dz
2011-05-31   Belkin G Wireless Router F5D7234-4 v5 Exploit 117 WEB Aodrulez
2011-05-31   Easy Media Script SQL Injection Vulnerability 89 WEB Lagripe-Dz
2011-05-31   w-Agora Forum 4.2.1 Arbitrary File Upload Exploit 96 WEB Treasure Priyamal
2011-05-30   风讯(FoosunCMS) SetNextOptions.asp注入漏洞利用 125 WEB expku
2011-05-30   Lil' HTTP Server 2.2 Cross Site Scripting 109 WEB expku
2011-05-30   Apache Archiva 1.3.4 Cross Site Request Forgery 102 WEB expku
2011-05-30   LilHTTP Source Code Disclosure/Download 110 WEB Treasure Priyamal
2011-05-30   AIDeX Mini-Webserver 1.4 integrated Chat Javascript 118 WEB wingthor
2011-05-30   WysGui <= 2.3 (FCKeditor) File Upload Code Execution (meta) 92 WEB KedAns-Dz
2011-05-30   Bitweaver 2.x (FCKeditor) File Upload Code Execution (meta) 89 WEB KedAns-Dz
2011-05-30   Cotonti <=0.9.2 Blind SQL Injection Vulnerability 94 WEB KedAns-Dz
2011-05-30   FineArtPost <= SQL injection Vulnerabelity 68 WEB Caddy-Dz
2011-05-30   Ishikatech <= SQL injection Vulnerabelity 115 WEB Caddy-Dz
2011-05-30   Andabate.com SQL Injection Vulnerability 131 WEB magret
2011-05-30   html_edit CMS <= 3.1.x Multiple (XSRF/CSRF) Vulnerabilites 86 WEB KedAns-Dz
2011-05-30   AlegroCart <= 1.2.x (category_next) Blind SQL Injection Vulnerability 134 WEB KedAns-Dz
2011-05-30   Cotonti <=0.9.2 Multiple Vulnerabilities 128 WEB KedAns-Dz
2011-05-30   Invisionix Roaming System Remote metasys 0.2 LFI Vulnerability 136 WEB Treasure Priyamal
2011-05-30   Puzzle Apps CMS 3.2 Local File Inclusion 160 WEB Treasure Priyamal
2011-05-30   Joomla Component com_joomnik SQL Injection Vulnerability 149 WEB SOLVER
2011-05-30   Joomla Component com_jmsfileseller Local File Inclusion Vulnerability 131 WEB Valentin
2011-05-30   Guru Penny Auction Pro V3 Blind SQL Injection Vulnerability 135 WEB v3n0m
2011-05-30   Duhok Forum 1.1 SQL Injection Vulnerability 118 WEB M.Jock3R
2011-05-30   cPanel < 11.25 CSRF - Add User php Script 164 WEB ninjashell
2011-05-30   HB Ecommerce SQL Injection Vulnerability 127 WEB takeshix
2011-05-27   Clipbucket 2.4 RC2 645 SQL Injection Vulnerability 239 WEB AutoSec Tools
2011-05-27   Design Extensions (Admin) Auth Bypass/File Upload 130 WEB Kalashinkov3
2011-05-26   eGroupware 1.8.001.20110421 Multiple Vulnerabilities 139 WEB AutoSec Tools
2011-05-26   ExtCalendar 2.0b2 (cal_search.php) SQL Injection Vulnerability 118 WEB High-Tech Bridge SA
2011-05-26   i-doIT 0.9.9-4 LFI Vulnerability 101 WEB AutoSec Tools
2011-05-26   Tickets 2.13 SQL Injection Vulnerability 121 WEB AutoSec Tools
2011-05-26   Pixprod SQL Injection Vulnerability 134 WEB Kalashinkov3
2011-05-25   HP System Management Homepage Cross Site Scripting 170 WEB Secunia