Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2009-07-20   DragDropCart - 'search.php?search' Cross-Site Scripting 18 WEB Moudi
2009-07-20   DragDropCart - 'index.php?search' Cross-Site Scripting 16 WEB Moudi
2009-07-20   DragDropCart - '/includes/ajax/getstate.php?prefix' Cross-Site Scripting 20 WEB Moudi
2009-07-20   DragDropCart - '/assets/js/ddcart.php?sid' Cross-Site Scripting 19 WEB Moudi
2014-09-20   ClassApps SelectSurvey.net - Multiple SQL Injections 23 WEB BillV-Lists
2014-09-20   Livefyre LiveComments Plugin - Persistent Cross-Site Scripting 18 WEB Brij Kishore Mishra
2014-09-20   M/Monit 3.3.2 - Cross-Site Request Forgery 18 WEB Dolev Farhi
2014-09-20   vBulletin 4.x Verify Email Before Registration Plugin - SQL Injection 21 WEB Dave
2009-07-20   AdQuick - 'account.php' Cross-Site Scripting 17 WEB Moudi
2009-08-17   Freelancers - 'post_resume.php?jobid' Cross-Site Scripting 19 WEB Moudi
2009-08-17   Freelancers - 'placebid.php?id' Cross-Site Scripting 16 WEB Moudi
2009-07-20   Freewebscriptz HUBScript - 'single_winner1.php' Cross-Site Scripting 17 WEB Moudi
2009-08-21   Paypal Shopping Cart Script - 'index.php?cid' SQL Injection 15 WEB 599eme Man
2009-08-21   Paypal Shopping Cart Script - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 20 WEB 599eme Man
2009-07-20   Astrology - 'celebrities.php' Cross-Site Scripting 19 WEB Moudi
2010-09-23   Joomla! Component com_tax - 'eid' SQL Injection 23 WEB FL0RiX
2009-08-17   RadAFFILIATE Links - 'index.php' Cross-Site Scripting 18 WEB Moudi
2009-07-21   MyDLstore Meta Search Engine Script 1.0 - 'url' Remote File Inclusion 15 WEB Moudi
2009-07-21   APBook 1.3 - Admin Login Multiple SQL Injections 19 WEB n3w7u
2009-07-21   MyDLstore Pixel Ad Script - 'payment.php' Cross-Site Scripting 18 WEB Moudi
2009-07-24   Million Dollar Pixel Ads - Cross-Site Scripting / SQL Injection 19 WEB Moudi
2009-07-24   TurnkeySetup Net Marketing 6.0 - 'faqs.php' Cross-Site Scripting 19 WEB Moudi
2009-07-24   SkaLinks 1.5 - 'cat' Multiple Cross-Site Scripting Vulnerabilities 21 WEB Moudi
2009-07-24   WebShop Hun 1.062s - '/index.php' Local File Inclusion / Cross-Site Scripting 16 WEB u.f.
2010-09-23   OpenText LiveLink 9.7.1 - Multiple Cross-Site Scripting Vulnerabilities 17 WEB Alejandro Ramos
2009-07-24   Clipbucket 1.7.1 - Multiple SQL Injections 18 WEB Qabandi
2009-08-27   Free Arcade Script 1.0 - 'search' Cross-Site Scripting 16 WEB 599eme Man
2009-07-27   WebAsyst Shop-Script PREMIUM - 'SearchString' Cross-Site Scripting 18 WEB u.f.
2010-09-21   @Mail 6.1.9 - 'MailType' Cross-Site Scripting 17 WEB Vicente Aguilera Diaz
2009-08-27   Smart Magician Blog 1.0 - Multiple SQL Injections 16 WEB Evil-Cod3r
2009-07-27   Basilic 1.5.13 - 'index.php' Cross-Site Scripting 21 WEB PLATEN
2009-08-27   Smart ASP Survey - 'catid' SQL Injection 19 WEB Moudi
2010-09-20   Joomla! Component com_spain - 'nv' SQL Injection 15 WEB FL0RiX
2009-08-30   e-soft24 Article Directory Script - 'q' Cross-Site Scripting 17 WEB 599eme Man
2014-09-16   USB&WiFi Flash Drive 1.3 iOS - Code Execution 22 WEB Vulnerability-Lab
2014-09-16   WordPress Plugin Slideshow Gallery 1.4.6 - Arbitrary File Upload 20 WEB Claudio Viviani
2014-09-16   ZTE ZXDSL-931VII - Configuration Dump 24 WEB L0ukanik0-s S0kniaku0l
2009-08-29   WebStatCaffe - '/stat/referer.php?date' Cross-Site Scripting 21 WEB Moudi
2009-08-29   WebStatCaffe - '/stat/pageviewerschart.php?date' Cross-Site Scripting 20 WEB Moudi
2009-08-29   WebStatCaffe - '/stat/pageviewers.php?date' Cross-Site Scripting 16 WEB Moudi
2009-08-29   WebStatCaffe - '/stat/mostvisitpagechart.php?nopagesmost' Cross-Site Scripting 19 WEB Moudi
2009-08-29   WebStatCaffe - '/stat/visitorduration.php?nodayshow' Cross-Site Scripting 21 WEB Moudi
2009-08-29   WebStatCaffe - '/stat/mostvisitpage.php?nodayshow' Cross-Site Scripting 18 WEB Moudi
2009-08-28   Tukanas Classifieds 1.0 - 'index.php' SQL Injection 20 WEB Moudi
2014-09-15   CacheGuard-OS 5.7.7 - Cross-Site Request Forgery 19 WEB William Costa
2014-09-15   ALCASAR 2.8.1 - Remote Code Execution 24 WEB eF
2014-09-15   Briefcase 4.0 iOS - Code Execution / File Inclusion 19 WEB Vulnerability-Lab
2009-08-29   x10 MP3 Automatic Search Engine 1.6.5b - '/adult/video_listing.php?key' Cross-Site Scripting 23 WEB Moudi
2009-08-29   x10 MP3 Automatic Search Engine 1.6.5b - 'lyrics.php?id' Cross-Site Scripting 19 WEB Moudi
2009-08-29   x10 MP3 Automatic Search Engine 1.6.5b - 'info.php?name' Cross-Site Scripting 23 WEB Moudi
2009-08-29   x10 MP3 Automatic Search Engine 1.6.5b - 'embed.php?name' Cross-Site Scripting 26 WEB Moudi
2009-08-29   x10 MP3 Automatic Search Engine 1.6.5b - 'video_listing.php?key' Cross-Site Scripting 22 WEB Moudi
2009-08-29   x10 MP3 Automatic Search Engine 1.6.5b - '/templates/header1.php?id' Cross-Site Scripting 22 WEB Moudi
2009-08-29   x10 MP3 Automatic Search Engine 1.6.5 - 'linkvideos_listing.php?category' Cross-Site Scripting 25 WEB Moudi
2009-08-29   x10 MP3 Automatic Search Engine 1.6.5 - '/includes/video_ad.php?pic_id' Cross-Site Scripting 23 WEB Moudi
2009-08-28   Open Classifieds - Multiple Cross-Site Scripting Vulnerabilities 20 WEB Moudi
2010-09-17   e107 0.7.23 - Multiple SQL Injections 22 WEB High-Tech Bridge SA
2009-08-30   e-Soft24 PTC Script 1.2 - 'login.php' Multiple Cross-Site Scripting Vulnerabilities 19 WEB 599eme Man
2009-08-30   e-Soft24 Jokes Portal Script Seo 1.0 - Multiple Cross-Site Scripting Vulnerabilities 18 WEB 599eme Man
2009-08-30   e-Soft24 Flash Games Script 1.0 - Cross-Site Scripting 16 WEB 599eme Man
2010-09-17   Netautor Professional 5.5 - 'login2.php' Cross-Site Scripting 22 WEB Gjoko Krstic
2009-08-03   Blog Ink (Blink) - Multiple SQL Injections 22 WEB Drosophila
2009-08-06   Silurus Classifieds - 'search.php?keywords' Cross-Site Scripting 20 WEB Moudi
2009-08-06   Silurus Classifieds - 'wcategory.php?ID' Cross-Site Scripting 20 WEB Moudi
2009-08-06   Silurus Classifieds - 'category.php?ID' Cross-Site Scripting 18 WEB Moudi
2009-08-06   AJ Auction Pro OOPD 3.0 - 'txtkeyword' Cross-Site Scripting 21 WEB 599eme Man
2010-09-15   ChillyCMS 2.3.4.3 - Arbitrary File Upload 20 WEB John Leitch
2010-09-15   Mollify 1.6 - 'index.php' Cross-Site Scripting 20 WEB John Leitch
2010-09-15   CMScout IBrowser TinyMCE Plugin 2.3.4.3 - Local File Inclusion 18 WEB John Leitch
2014-09-12   Joomla! Component com_formmaker 3.4 - SQL Injection 19 WEB Claudio Viviani
2010-09-15   NWS-Classifieds - 'cmd' Local File Inclusion 19 WEB John Leitch
2009-08-06   Willscript Auction Website Script - 'category.php' SQL Injection 20 WEB 599eme Man
2010-09-15   Multple I-Escorts Products - 'escorts_search.php' Cross-Site Scripting 24 WEB 599eme Man
2009-08-08   SpiceWorks - 'query' Cross-Site Scripting 22 WEB Adam Baldwin
2009-08-06   Multi Website 1.5 - 'search' HTML Injection 22 WEB 599eme Man
2010-09-15   ATutor 1.0 - Multiple 'cid' Cross-Site Scripting Vulnerabilities 25 WEB High-Tech Bridge SA
2010-09-15   AChecker 1.0 - 'URI' Cross-Site Scripting 18 WEB High-Tech Bridge SA
2010-09-15   AContent 1.0 - Cross-Site Scripting / HTML Injection 21 WEB High-Tech Bridge SA
2010-09-06   Santafox 2.0.2 - 'search' Cross-Site Scripting 21 WEB High-Tech Bridge SA
2014-09-11   ChatSecure IM 2.2.4 iOS - Persistent Cross-Site Scripting 17 WEB Vulnerability-Lab
2014-09-11   Photorange 1.0 iOS - Local File Inclusion 21 WEB Vulnerability-Lab
2014-09-11   Joomla! Component Spider Contacts 1.3.6 - 'contacts_id' SQL Injection 25 WEB Claudio Viviani
2014-09-11   OroCRM - Persistent Cross-Site Scripting 22 WEB Provensec
2010-09-14   PaysiteReviewCMS - 'image.php' Cross-Site Scripting 15 WEB Valentin Hoebel
2010-09-14   PaysiteReviewCMS 1.1 - 'search.php' Cross-Site Scripting 18 WEB Valentin Hoebel
2009-09-06   Omnistar Recruiting - 'resume_register.php' Cross-Site Scripting 22 WEB MizoZ
2009-08-06   Waverider Systems Perlshop - Multiple Input Validation Vulnerabilities 21 WEB Shadow
2009-08-13   Elkagroup Elkapax - 'q' Cross-Site Scripting 20 WEB Isfahan
2010-09-09   SmarterTools SmarterStats 5.3.3819 - 'frmHelp.aspx' Cross-Site Scripting 18 WEB David Hoyt
2010-09-07   ZenPhoto 1.3 - '/zp-core/admin.php' Multiple Cross-Site Scripting Vulnerabilities 18 WEB Bogdan Calin
2010-09-07   ZenPhoto 1.3 - '/zp-core/full-image.php?a' SQL Injection 18 WEB Bogdan Calin
2010-09-06   MySource Matrix - 'char_map.php' Multiple Cross-Site Scripting Vulnerabilities 19 WEB Gjoko Krstic
2010-09-06   HeffnerCMS 1.22 - 'index.php' Local File Inclusion 18 WEB MiND C0re
2010-09-02   TBDev 2.0 - Remote File Inclusion / SQL Injection 19 WEB Inj3ct0r
2009-09-02   Webformatique Reservation Manager 2.4 - 'index.php' Cross-Site Scripting 18 WEB Moudi
2010-09-06   Horde Application Framework 3.3.8 - 'icon_browser.php' Cross-Site Scripting 17 WEB Moritz Naumann
2010-09-06   BlueCMS 1.6 - 'x-forwarded-for' Header SQL Injection 23 WEB cnryan
2009-09-11   Match Agency BiZ - 'report.php?pid' Cross-Site Scripting 17 WEB Moudi
2009-09-11   Match Agency BiZ - 'edit_profile.php?important' Cross-Site Scripting 15 WEB Moudi
2009-09-10   tourismscripts HotelBook - 'hotel_id' Multiple SQL Injections 17 WEB Mr.SQL
2009-09-11   SZNews 2.7 - 'printnews.php3' Remote File Inclusion 18 WEB kurdish hackers team
2010-09-10   Datetopia Buy Dating Site - Cross-Site Scripting 23 WEB Moudi
2010-09-03   Pligg CMS 1.0.4 - SQL Injection / Cross-Site Scripting 16 WEB Bogdan Calin
2014-09-09   Parallels Plesk Sitebuilder 9.5 - Multiple Vulnerabilities 22 WEB alieye
2014-09-09   WordPress Plugin WP Support Plus Responsive Ticket System 2.0 - Multiple Vulnerabilities 24 WEB Fikri Fadzil
2014-09-08   Jenkins 1.578 - Multiple Vulnerabilities 21 WEB JoeV
2014-09-08   Mpay24 PrestaShop Payment Module 1.5 - Multiple Vulnerabilities 23 WEB Wireghoul
2014-09-08   Atmail Webmail 7.2 - Multiple Vulnerabilities 16 WEB smash
2014-09-08   TP-Link TL-WR841N / TL-WR841ND - Multiple Vulnerabilities 19 WEB smash
2014-09-08   TP-Link TL-WR340G / TL-WR340GD - Multiple Vulnerabilities 24 WEB smash
2014-09-08   osCommerce 2.3.4 - Multiple Vulnerabilities 16 WEB smash
2014-09-08   Zen Cart 1.5.3 - Multiple Vulnerabilities 18 WEB smash
2014-09-08   phpMyFAQ 2.8.x - Multiple Vulnerabilities 21 WEB smash
2014-09-08   vBulletin 5.1.x - Persistent Cross-Site Scripting 23 WEB smash
2014-09-08   WordPress Theme Acento - 'view-pdf.php?File' Arbitrary File Download 23 WEB alieye
2014-09-08   WordPress Plugin Bulk Delete Users by Email 1.0 - Cross-Site Request Forgery 22 WEB Fikri Fadzil
2014-09-08   Joomla! Component Spider Calendar 3.2.6 - SQL Injection 19 WEB Claudio Viviani
2010-09-03   NuSOAP 0.9.5 - 'nusoap.php' Cross-Site Scripting 17 WEB Bogdan Calin
2010-09-02   CMS WebManager-Pro - 'c.php' SQL Injection 20 WEB MustLive
2010-09-02   OneCMS 2.6.1 - 'index.php' Cross-Site Scripting 20 WEB anT!-Tr0J4n
2009-10-14   AdaptBB 1.0 - 'q' Cross-Site Scripting 19 WEB drunken danish rednecks
2009-09-07   KingCMS 0.6 - 'CONFIG[AdminPath]' Remote File Inclusion 20 WEB Securitylab.ir
2010-09-01   ArtGK CMS - Cross-Site Scripting / HTML Injection 21 WEB High-Tech Bridge SA
2010-09-01   Rumba XML 2.4 - 'index.php' Multiple HTML Injection Vulnerabilities 18 WEB High-Tech Bridge SA
2010-09-01   Amiro.CMS 5.8.4.0 - Multiple HTML Injection Vulnerabilities 20 WEB High-Tech Bridge SA