Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2011-05-10   Calendarix 0.8.20080808 - Multiple Cross-Site Scripting / SQL Injections 17 WEB High-Tech Bridge SA
2011-05-10   poMMo Aardvark PR16.1 - Multiple Cross-Site Scripting Vulnerabilities 20 WEB High-Tech Bridge SA
2011-05-09   ZAPms 1.22 - 'nick' SQL Injection 22 WEB KedAns-Dz
2015-01-09   vBulletin MicroCART 1.1.4 - Arbitrary Files Deletion / SQL Injection / Cross-Site Scripting 23 WEB Technidev
2015-01-08   WordPress Plugin Shopping Cart 3.0.4 - Unrestricted Arbitrary File Upload 21 WEB Kacper Szurek
2011-05-09   Keyfax Customer Response Management 3.2.2.6 - Multiple Cross-Site Scripting Vulnerabilities 25 WEB Richard Brain
2011-05-09   HOMEPIMA Design - 'filedown.php' Local File Disclosure 19 WEB KnocKout
2011-05-07   Getsimple CMS 3.0 - 'set' Local File Inclusion 21 WEB AutoSec Tools
2011-05-09   EmbryoCore 1.03 - 'index.php' SQL Injection 25 WEB KedAns-Dz
2011-05-01   TCExam 11.1.29 - 'tce_xml_user_results.php' Multiple SQL Injections 27 WEB AutoSec Tools
2015-01-07   Sefrengo CMS 1.6.0 - SQL Injection 23 WEB Steffen Rösemann
2015-01-07   Pirelli ADSL2/2+ Wireless Router P.DGA4001N - Information Disclosure 21 WEB Eduardo Novella
2015-01-07   Microweber CMS 0.95 - SQL Injection 25 WEB Pham Kien Cuong
2011-05-09   phpWebSite 1.7.1 - 'upload.php' Arbitrary File Upload 22 WEB AutoSec Tools
2011-05-09   Gelsheet 1.02 - 'index.php' Cross-Site Scripting 23 WEB AutoSec Tools
2011-05-09   Exponent CMS 2.0.0 Beta 1.1 - Local File Inclusion / Arbitrary File Upload 25 WEB AutoSec Tools
2011-05-09   Ampache 3.5.4 - 'login.php' Cross-Site Scripting 21 WEB AutoSec Tools
2011-05-09   encoder 0.4.10 - 'edit.php' Cross-Site Scripting 24 WEB AutoSec Tools
2011-05-08   FestOS 2.3c - 'upload.php' Arbitrary File Upload 22 WEB KedAns-Dz
2015-01-06   AdaptCMS 3.0.3 - Multiple Vulnerabilities 21 WEB LiquidWorm
2011-05-07   e107 0.7.25 - 'news.php' SQL Injection 20 WEB KedAns-Dz
2011-05-05   PHPDug 2.0 - Multiple Cross-Site Scripting Vulnerabilities 22 WEB High-Tech Bridge SA
2011-05-05   BMC Dashboards 7.6.01 - Cross-Site Scripting / Information Disclosure 25 WEB Richard Brain
2011-05-05   BMC Remedy Knowledge Management 7.5.00 - Default Account / Multiple Cross-Site Scripting Vulnerabili 23 WEB Richard Brain
2011-05-05   PHP Directory Listing Script 3.1 - 'index.php' Cross-Site Scripting 22 WEB High-Tech Bridge SA
2011-05-05   WordPress Plugin WP Ajax Calendar 1.0 - 'example.php' Cross-Site Scripting 32 WEB High-Tech Bridge SA
2011-05-03   GoT.MY (Multiple Products) - 'theme_dir' Cross-Site Scripting 21 WEB Hector.x90
2011-05-03   SelectaPix 1.4.1 - 'uploadername' Cross-Site Scripting 21 WEB High-Tech Bridge SA
2011-05-03   YaPiG 0.95 - Multiple Cross-Site Scripting Vulnerabilities 22 WEB High-Tech Bridge SA
2011-05-03   E2 Photo Gallery 0.9 - 'index.php' Cross-Site Scripting 26 WEB High-Tech Bridge SA
2011-05-03   Proofpoint Protection Server 5.5.5 - 'process.cgi' Cross-Site Scripting 21 WEB Karan Khosla
2011-05-03   Web Auction 0.3.6 - 'lang' Cross-Site Scripting 26 WEB AutoSec Tools
2015-01-04   Crea8Social 2.0 - Cross-Site Scripting Change Interface 28 WEB Yudhistira B W
2011-05-02   LDAP Account Manager 3.4.0 - 'selfserviceSaveOk' Cross-Site Scripting 25 WEB AutoSec Tools
2011-05-02   LANSA aXes Web Terminal TN5250 - 'axes_default.css' Cross-Site Scripting 24 WEB Patrick Webster
2011-04-30   Tine 2.0 - 'vbook.php' Cross-Site Scripting 24 WEB AutoSec Tools
2011-04-28   ClanSphere 2011.0 - Local File Inclusion / Arbitrary File Upload 25 WEB KedAns-Dz
2015-01-03   e107 2 Bootstrap CMS - Cross-Site Scripting 26 WEB Ahmet Agar / 0x97
2011-04-28   phpGraphy 0.9.13b - 'theme_dir' Cross-Site Scripting 22 WEB High-Tech Bridge SA
2011-04-25   eyeOS 1.9.0.2 - Image File Handling HTML Injection 20 WEB Alberto Ortega
2011-04-28   BackupPC 3.x - 'index.cgi' Multiple Cross-Site Scripting Vulnerabilities 24 WEB High-Tech Bridge SA
2011-04-27   Kusaba X 0.9 - Multiple Cross-Site Scripting Vulnerabilities 23 WEB Emilio Pinna
2011-04-28   WordPress Plugin WP Photo Album 1.5.1 - 'id' Cross-Site Scripting 23 WEB High-Tech Bridge SA
2011-04-28   WordPress Plugin Daily Maui Photo Widget 0.2 - Multiple Cross-Site Scripting Vulnerabilities 29 WEB High-Tech Bridge SA
2011-04-27   Cisco Unified Communications Manager 8.5 - 'xmldirectorylist.jsp' Multiple SQL Injections 25 WEB Alberto Revelli
2015-01-01   Absolut Engine 1.73 - Multiple Vulnerabilities 27 WEB Steffen Rösemann
2011-04-27   up.time Software 5 - Administration Interface Remote Authentication Bypass 22 WEB James Burton
2011-04-27   Joostina (Multiple Components) - SQL Injection 20 WEB KedAns-Dz
2011-04-26   Football Website Manager 1.1 - SQL Injection / Multiple HTML Injection Vulnerabilities 21 WEB RoAd_KiLlEr
2011-04-26   PHP F1 Max's Photo Album - 'showimage.php' Cross-Site Scripting 25 WEB High-Tech Bridge SA
2011-04-26   phpList 2.10.x - 'email' Cross-Site Scripting 23 WEB High-Tech Bridge SA
2011-04-26   WordPress Plugin WP Ajax Recent Posts 1.0.1 - 'do' Cross-Site Scripting 22 WEB High-Tech Bridge SA
2011-04-26   Noah's Classifieds 5.0.4 - 'index.php' Multiple HTML Injection Vulnerabilities 20 WEB High-Tech Bridge SA
2014-12-31   Social Microblogging PRO 1.5 - Persistent Cross-Site Scripting 24 WEB Halil Dalabasmaz
2011-04-26   html-edit CMS 3.1.x - 'html_output' Cross-Site Scripting 26 WEB KedAns-Dz
2011-04-26   WordPress Plugin Sermon Browser 0.43 - Cross-Site Scripting / SQL Injection 22 WEB Ma3sTr0-Dz
2011-04-25   TemaTres 1.3 - '_search_expresion' Cross-Site Scripting 24 WEB AutoSec Tools
2011-04-22   Nuke Evolution Xtreme 2.0 - Local File Inclusion / SQL Injection 29 WEB KedAns-Dz
2011-04-22   Dolibarr ERP/CRM 3.0 - Local File Inclusion / Cross-Site Scripting 23 WEB AutoSec Tools
2011-04-21   LightNEasy 3.2.3 - 'userhandle' Cookie SQL Injection 26 WEB AutoSec Tools
2011-04-22   todoyu 2.0.8 - 'lang' Cross-Site Scripting 21 WEB AutoSec Tools
2011-04-21   ZenPhoto 1.4.0.3 - '_zp_themeroot' Multiple Cross-Site Scripting Vulnerabilities 21 WEB High-Tech Bridge SA
2011-04-21   SyCtel Design - 'menu' Multiple Local File Inclusions 22 WEB Ashiyane Digital Security Team
2011-04-20   Automagick Tube Script 1.4.4 - 'module' Cross-Site Scripting 24 WEB Kurd-Team
2011-04-19   webSPELL 4.2.2a - Multiple Cross-Site Scripting Vulnerabilities 26 WEB High-Tech Bridge SA
2011-04-19   ChatLakTurk PHP Botlu Video - 'ara.php' Cross-Site Scripting 22 WEB kurdish hackers team
2011-04-19   Dalbum 1.43 - 'editini.php' Cross-Site Scripting 21 WEB High-Tech Bridge SA
2011-04-19   WordPress Plugin WP-StarsRateBox 1.1 - 'j' SQL Injection 24 WEB High-Tech Bridge SA
2011-04-19   Ultra Marketing Enterprises CMS and Cart - Multiple SQL Injections 24 WEB eXeSoul
2011-04-18   XOOPS 2.5 - 'imagemanager.php' Local File Inclusion 24 WEB KedAns-Dz
2011-04-19   CRESUS - 'recette_detail.php' SQL Injection 25 WEB GrayHatz Security Group
2011-04-18   Joomla! Component com_phocadownload - Local File Inclusion 23 WEB KedAns-Dz
2011-04-16   ChillyCMS 1.2.1 - Multiple Remote File Inclusions 21 WEB KedAns-Dz
2014-12-27   Easy File Sharing Web Server 6.8 - Persistent Cross-Site Scripting 24 WEB Sick Psycko
2014-12-27   PMB 4.1.3 - (Authenticated) SQL Injection 26 WEB xd4rker dark
2014-12-27   phpList 3.0.6/3.0.10 - SQL Injection 22 WEB Vulnerability-Lab
2014-12-27   Pimcore CMS 2.3.0/3.0 - SQL Injection 26 WEB Vulnerability-Lab
2011-04-16   4Images 1.7.9 - Multiple Remote File Inclusions / SQL Injections 26 WEB KedAns-Dz
2011-04-15   PhoenixCMS 1.7 - Local File Inclusion / SQL Injection 20 WEB KedAns-Dz
2011-04-15   RunCMS Module Partners - 'id' SQL Injection 21 WEB KedAns-Dz
2011-04-14   Qianbo Enterprise Web Site Management System - 'Keyword' Cross-Site Scripting 21 WEB d3c0der
2011-04-15   Agahi Advertisement CMS 4.0 - 'view_ad.php' SQL Injection 18 WEB Sepehr Security Team
2011-04-14   PhpAlbum.net 0.4.1-14_fix06 - 'var3' Remote Command Execution 23 WEB High-Tech Bridge SA
2011-04-12   Website Baker 2.8.1 - Multiple SQL Injections 25 WEB High-Tech Bridge SA
2011-04-12   Plogger 1.0 RC1 - 'gallery_name' Cross-Site Scripting 20 WEB High-Tech Bridge SA
2011-04-12   WordPress Theme The Gazette Edition 2.9.4 - Multiple Vulnerabilities 26 WEB MustLive
2011-04-12   WordPress Plugin Spellchecker 3.1 - '/general.php' Local/Remote File Inclusion 22 WEB Dr Trojan
2014-12-24   Lazarus Guestbook 1.22 - Multiple Vulnerabilities 32 WEB TaurusOmar
2011-04-09   eForum 1.1 - 'eforum.php' Arbitrary File Upload 22 WEB QSecure
2011-04-11   WordPress Theme Live Wire 2.3.1 - Multiple Vulnerabilities 22 WEB MustLive
2011-04-11   Etki Video PRO 2.0 - 'kategori.asp?cat' SQL Injection 22 WEB Kurd-Team
2011-04-11   Etki Video PRO 2.0 - 'izle.asp?id' SQL Injection 24 WEB Kurd-Team
2011-04-11   Dimac CMS 1.3 XS - 'default.asp' SQL Injection 25 WEB KedAns-Dz
2011-04-08   1024 CMS 1.1.0 Beta - Multiple Input Validation Vulnerabilities 25 WEB QSecure & Demetris Papapetrou
2011-04-07   eGroupWare 1.8.1 - 'test.php' Cross-Site Scripting 22 WEB AutoSec Tools
2014-12-23   NetIQ Access Manager 4.0 SP1 - Multiple Vulnerabilities 29 WEB SEC Consult
2014-12-23   SysAid Server - Arbitrary File Disclosure 23 WEB Bernhard Mueller
2014-12-23   PHPMyRecipes 1.2.2 - 'browse.php?category' SQL Injection 24 WEB Manish Tanwar
2014-12-22   Lotus Mail Encryption Server 2.1.0.1 (Protector for Mail) - Local File Inclusion / Remote Code Execu 27 WEB Patrick Webster
2014-12-19   Codiad 2.4.3 - Multiple Vulnerabilities 23 WEB TaurusOmar
2014-12-19   GQ File Manager 0.2.5 - Multiple Vulnerabilities 22 WEB TaurusOmar
2014-12-19   Piwigo 2.7.2 - Multiple Vulnerabilities 21 WEB TaurusOmar
2014-12-19   ProjectSend r561 - Multiple Vulnerabilities 23 WEB TaurusOmar
2014-12-19   MiniBB 3.1 - Blind SQL Injection 25 WEB Kacper Szurek
2014-12-19   Cacti Superlinks Plugin 1.4-2 - SQL Injection / Local File Inclusion 28 WEB Wireghoul
2011-04-07   vTiger CRM 5.2.1 - 'vtigerservice.php' Cross-Site Scripting 24 WEB AutoSec Tools
2011-04-07   Omer Portal 3.220060425 - 'arama_islem.asp' Cross-Site Scripting 28 WEB kurdish hackers team
2011-04-08   PrestaShop 1.3.6 - 'cms.php' Remote File Inclusion 27 WEB KedAns-Dz
2011-04-08   vTiger CRM 5.2.1 - 'sortfieldsjson.php' Local File Inclusion 24 WEB John Leitch
2011-04-06   Redmine 1.0.1/1.1.1 - 'projects/hg-hellowword/news/' Cross-Site Scripting 23 WEB Mesut Timur
2011-04-06   TextPattern 4.2 - 'index.php' Cross-Site Scripting 21 WEB kurdish hackers team
2011-04-04   XOOPS 2.5 - 'banners.php' Multiple Local File Inclusions 20 WEB KedAns-Dz
2011-04-05   UseBB 1.0.11 - 'admin.php' Local File Inclusion 22 WEB High-Tech Bridge SA
2011-04-05   Eleanor CMS - Cross-Site Scripting / Multiple SQL Injections 20 WEB High-Tech Bridge SA
2011-04-04   Yaws-Wiki 1.88-1 - Multiple Cross-Site Scripting / HTML Injection Vulnerabilities 23 WEB Michael Brooks
2011-04-04   Gazelle CMS 1.0 - Cross-Site Scripting / SQL Injection 19 WEB kurdish hackers team
2011-04-03   DoceboLms 4.0.4 - 'index.php' Multiple HTML Injection Vulnerabilities 24 WEB LiquidWorm
2011-04-03   WordPress Plugin Placester 0.1 - 'ajax_action' Cross-Site Scripting 21 WEB John Leitch
2011-04-04   WordPress Plugin WPwizz AdWizz Plugin 1.0 - 'link' Cross-Site Scripting 21 WEB John Leitch
2011-04-04   MyBB 1.4/1.6 - Multiple Vulnerabilities 25 WEB MustLive
2011-04-04   PHP-Fusion - 'article_id' SQL Injection 20 WEB KedAns-Dz
2014-12-17   CIK Telecom VoIP Router SVG6000RW - Privilege Escalation / Command Execution 23 WEB Chako
2011-04-01   AWCM 2.x - 'search.php' Cross-Site Scripting 21 WEB Antu Sanadi
2014-12-16   CMS Papoo 6.0.0 Rev. 4701 - Persistent Cross-Site Scripting 19 WEB Steffen Rösemann
2011-03-31   Collabtive 0.6.5 - Multiple Remote Input Validation Vulnerabilities 21 WEB High-Tech Bridge SA