Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2007-10-18   SiteBar 3.3.8 - 'integrator.php?lang' Cross-Site Scripting 25 WEB Robert Buchholz
2007-10-18   SiteBar 3.3.8 - '/translator.php?upd/cmd/Action/edit' Arbitrary PHP Code Execution 24 WEB Robert Buchholz
2007-10-18   SiteBar 3.3.8 - 'translator.php?dir' Traversal Arbitrary File Access 22 WEB Robert Buchholz
2007-10-15   InnovaPortal - 'msg.jsp?msg' Cross-Site Scripting 24 WEB JosS
2007-10-15   InnovaPortal - 'tc/contents/home001.jsp?contentid' Cross-Site Scripting 26 WEB JosS
2007-10-15   Stringbeans Portal 3.2 Projects Script - Cross-Site Scripting 25 WEB JosS
2014-01-03   DirectControlTM 3.1.7.0 - Multiple Vulnerabilities 25 WEB mohamad ch
2014-01-03   Technicolor TC7200 - Multiple Cross-Site Scripting Vulnerabilities 22 WEB Jeroen - IT Nerdbox
2014-01-03   Technicolor TC7200 - Multiple Cross-Site Request Forgery Vulnerabilities 22 WEB Jeroen - IT Nerdbox
2014-01-03   Nisuta NS-WIR150NE / NS-WIR300N Wireless Routers - Remote Management Web Interface Authentication By 24 WEB Amplia Security Advisories
2007-10-11   Scott Manktelow Design Stride 1.0 - 'Merchant shop.php' SQL Injection 26 WEB durito
2007-10-11   Linkliste 1.2 - 'index.php' Multiple Remote File Inclusions 23 WEB iNs
2007-10-11   Scott Manktelow Design Stride 1.0 - 'Content Management System main.php' SQL Injection 26 WEB durito
2007-10-11   Google Urchin 5.7.3 - 'Report.cgi' Authentication Bypass 26 WEB MustLive
2007-10-11   Scott Manktelow Design Stride 1.0 Courses - 'detail.php' Multiple SQL Injections 27 WEB durito
2007-10-11   Nucleus CMS 3.0.1 - 'index.php' Cross-Site Scripting 26 WEB MustLive
2007-10-11   CRS Manager - Multiple Remote File Inclusions 25 WEB iNs
2007-10-11   UMI CMS - 'index.php' Cross-Site Scripting 22 WEB anonymous
2007-10-11   BoastMachine 2.8 - 'index.php' Local File Inclusion 25 WEB iNs
2007-10-11   Joomla! Component Search 1.0.13 - SearchWord Cross-Site Scripting 24 WEB MustLive
2007-10-11   ActiveKB NX 2.6 - 'index.php' Cross-Site Scripting 23 WEB durito
2007-10-09   phpMyAdmin 2.11.1 - 'setup.php' Cross-Site Scripting 25 WEB Omer Singer
2007-10-10   Joomla! Component WebMaster-Tips.net Joomla! RSS Feed Reader 1.0 - Remote File Inclusion 25 WEB Cyber-Crime
2007-10-09   NetWin DNews - 'Dnewsweb.exe' Multiple Cross-Site Scripting Vulnerabilities 21 WEB Doz
2007-10-08   SNewsCMS 2.1 - 'News_page.php' Cross-Site Scripting 24 WEB medconsultation.ru
2007-10-05   AfterLogic MailBee WebMail Pro 3.x - 'default.asp?mode2' Cross-Site Scripting 26 WEB Ivan Sanchez
2007-10-05   AfterLogic MailBee WebMail Pro 3.x - 'login.php?mode' Cross-Site Scripting 26 WEB Ivan Sanchez
2007-10-04   Stuffed Guys Stuffed Tracker - Multiple Cross-Site Scripting Vulnerabilities 25 WEB Aria-Security Team
2007-10-04   Cart32 6.x - GetImage Arbitrary File Download 25 WEB Paul Craig
2007-10-04   GForge 4.6/4.5/3.1 - 'Verify.php' Cross-Site Scripting 24 WEB Jose Sanchez
2007-10-04   WordPress Plugin Google FeedBurner FeedSmith 2.2 - Cross-Site Request Forgery 23 WEB David Kierznowski
2007-10-03   Content Builder 0.7.5 - 'postComment.php' Remote File Inclusion 24 WEB Mehrad Ansari Targhi
2007-10-03   Uebimiau Webmail 2.7.x - 'index.php' Cross-Site Scripting 24 WEB Ivan Sanches
2007-10-03   DRBGuestbook 1.1.13 - 'index.php' Cross-Site Scripting 23 WEB Gokhan
2007-10-01   ASP Product Catalog 1.0 - 'default.asp' SQL Injection 24 WEB joseph.giron13
2007-10-01   Ohesa Emlak Portal 1.0 - 'detay.asp?Emlak' SQL Injection 22 WEB GeFORC3
2007-10-01   Ohesa Emlak Portal 1.0 - 'satilik.asp?Kategori' SQL Injection 22 WEB GeFORC3
2007-10-01   Netkamp Emlak Scripti - Multiple Input Validation Vulnerabilities 25 WEB GeFORC3
2007-09-29   MD-Pro 1.0.76 - 'index.php' Firefox ID SQL Injection 24 WEB unidentified1_ is
2007-09-27   Novus 1.0 - 'Buscar.asp' Cross-Site Scripting 24 WEB Zutr4
2007-09-25   SimpNews 2.41.3 - 'backurl' Cross-Site Scripting 29 WEB Jesper Jurcenoks
2007-09-25   SimpNews 2.41.3 - 'l_username' Cross-Site Scripting 23 WEB Jesper Jurcenoks
2007-09-25   SimpGB 1.46.2 - '/admin/emoticonlist.php?l_emoticonlist' Cross-Site Scripting 23 WEB netVigilance
2007-09-25   SimpGB 1.46.2 - '/admin/?l_username' Cross-Site Scripting 26 WEB netVigilance
2007-09-25   PHP-Nuke Dance Music Module - 'index.php' Local File Inclusion 26 WEB waraxe
2007-09-25   JSPWiki 2.5.139 - 'Diff.jsp' Multiple Cross-Site Scripting Vulnerabilities 25 WEB Jason Kratzer
2007-09-25   JSPWiki 2.5.139 - 'Login.jsp' Multiple Cross-Site Scripting Vulnerabilities 23 WEB Jason Kratzer
2007-09-25   JSPWiki 2.5.139 - 'UserPreferences.jsp' Multiple Cross-Site Scripting Vulnerabilities 22 WEB Jason Kratzer
2007-09-25   JSPWiki 2.5.139 - 'Comment.jsp' Multiple Cross-Site Scripting Vulnerabilities 23 WEB Jason Kratzer
2007-09-25   JSPWiki 2.5.139 - 'edit.jsp?edittime' Cross-Site Scripting 22 WEB Jason Kratzer
2007-09-25   JSPWiki 2.5.139 - 'NewGroup.jsp' Multiple Cross-Site Scripting Vulnerabilities 21 WEB Jason Kratzer
2007-09-24   bcoos 1.0.10 Arcade Module - 'index.php' SQL Injection 27 WEB nights shadow
2007-09-24   Urchin 5.7.x - 'session.cgi' Cross-Site Scripting 23 WEB pagvac
2007-09-22   XCMS 1.1/1.7 - 'Password' Arbitrary PHP Code Execution 31 WEB x0kster
2007-09-22   WordPress Core 2.0 - 'wp-register.php' Multiple Cross-Site Scripting Vulnerabilities 26 WEB Adrian Pastor
2007-09-20   Vigile CMS 1.8 Wiki Module - Multiple Cross-Site Scripting Vulnerabilities 22 WEB x0kster
2007-09-20   WebBatch - 'webbatch.exe?dumpinputdata' Remote Information Disclosure 22 WEB Doz
2007-09-20   WebBatch - 'webbatch.exe' Cross-Site Scripting 26 WEB Doz
2007-09-19   LevelOne WBR3404TX Broadband Router - 'RC' Cross-Site Scripting 25 WEB azizov
2007-09-17   b1gMail 6.3.1 - 'hilfe.php' Cross-Site Scripting 27 WEB malibu.r
2007-09-17   Coppermine Photo Gallery 1.4.12 - 'log' Local File Inclusion 20 WEB L4teral
2007-09-17   Coppermine Photo Gallery 1.4.12 - 'referer' Cross-Site Scripting 20 WEB L4teral
2007-09-17   Alcatel-Lucent OmniPCX Enterprise 7.1 - Remote Command Execution 23 WEB RedTeam Pentesting GmbH
2007-09-17   ewire Payment Client 1.60/1.70 - Command Execution 22 WEB anonymous
2007-09-14   Axis Communications 207W Network Camera - Web Interface '/admin/restartMessage.shtml?server' Cross-S 24 WEB Seth Fogie
2007-09-14   Axis Communications 207W Network Camera - Web Interface 'axis-cgi/admin/pwdgrp.cgi' Multiple Cross-S 21 WEB Seth Fogie
2007-09-14   Axis Communications 207W Network Camera - Web Interface axis-cgi/admin/restart.cgi Cross-Site Reques 23 WEB Seth Fogie
2007-09-14   PHP-Stats 0.1.9.2 - 'Tracking.php' Cross-Site Scripting 24 WEB root@hanicker.it
2007-09-12   CS-Guestbook 0.1 - Login Credentials Information Disclosure 24 WEB Cr@zy_King
2007-09-12   SWSoft Plesk 8.2 - 'login.php3' PLESKSESSID Cookie SQL Injection 23 WEB Nick I Merritt
2007-09-12   BOINC 5.10.20 - 'text_search_action.php?search_string' Cross-Site Scripting 20 WEB Doz
2007-09-12   BOINC 5.10.20 - 'forum_forum.php?id' Cross-Site Scripting 23 WEB Doz
2007-09-10   SisfoKampus - 'dwoprn.php' Arbitrary File Download 24 WEB PUPET
2007-09-10   PHPMyQuote 0.20 - '/index.php' SQL Injection / Cross-Site Scripting 23 WEB Yollubunlar.Org
2007-09-10   Proxy Anket 3.0.1 - 'anket.asp' SQL Injection 24 WEB Yollubunlar.Org
2007-09-08   Toms Gastebuch 1.00/1.01 - 'header.php' Multiple Cross-Site Scripting Vulnerabilities 25 WEB hd1979
2007-09-06   Pulsewiki And Pawfaliki 0.5.1 - 'index.php' Local File Inclusion 26 WEB mafialbano
2007-09-04   E-Smart Cart 1.0 - 'login.asp' SQL Injection 27 WEB SmOk3
2007-09-04   Apache Tomcat 5.5.15 - cal2.jsp Cross-Site Scripting 20 WEB Tushar Vartak
2007-09-04   212Cafe WebBoard 6.30 - 'Read.php' SQL Injection 25 WEB Lopez Bran Digrap
2007-09-03   Claroline 1.x - '/admin/campusProblem.php?view' Cross-Site Scripting 27 WEB Fernando Munoz
2007-09-03   Claroline 1.x - '/admin/advancedUserSearch.php?action' Cross-Site Scripting 25 WEB Fernando Munoz
2007-09-03   Claroline 1.x - '/admin/adminusers.php?dir' Cross-Site Scripting 22 WEB Fernando Munoz
2007-09-03   Claroline 1.x - '/inc/lib/language.lib.php?language' Traversal Local File Inclusion 24 WEB Fernando Munoz
2007-09-03   MKPortal 1.0/1.1 - 'admin.php' Authentication Bypass 24 WEB Demential
2007-09-07   Toms Gästebuch 1.00 - '/admin/header.php' Multiple Cross-Site Scripting Vulnerabilities 23 WEB cod3in
2007-09-07   Toms Gästebuch 1.00 - 'form.php' Multiple Cross-Site Scripting Vulnerabilities 20 WEB cod3in
2013-12-28   D-Link DSL-2750u ME_1.09 - Cross-Site Request Forgery 26 WEB FIGHTERx war
2007-08-30   Absolute Poll Manager XE 4.1 - 'xlaapmview.asp' Cross-Site Scripting 24 WEB Richard Brain
2007-08-29   Cisco CallManager 4.2 / CUCM 4.2 - Logon Page 'lang' SQL Injection 23 WEB anonymous
2007-08-28   ACG News 1.0 - 'index.php' Multiple SQL Injections 21 WEB SmOk3
2007-08-27   PHPGedView 4.1 - 'login.php' Cross-Site Scripting 27 WEB Joshua Morin
2007-08-27   Dale Mooney Calendar Events - 'Viewevent.php' SQL Injection 20 WEB s0cratex
2007-08-27   AutoIndex PHP Script 2.2.1 - 'index.php' Cross-Site Scripting 27 WEB d3hydr8
2007-08-24   Arcadem 2.01 - 'index.php' Remote File Inclusion 28 WEB sm0k3
2007-08-13   WordPress Core 1.0.7 - 'Pool index.php' Cross-Site Scripting 25 WEB MustLive
2007-08-22   Ripe Website Manager 0.8.x - '/pages/delete_page.php?id' SQL Injection 23 WEB Nagendra Kumar G
2007-08-21   m-phorum 0.3 - 'index.php' Cross-Site Scripting 27 WEB CodeXpLoder'tq
2007-08-21   coWiki - 'index.php' Cross-Site Scripting 28 WEB MustLive
2007-08-21   ALeadSoft Search Engine Builder - Search.HTML Cross-Site Scripting 23 WEB MustLive
2007-08-20   Gurur Haber 2.0 - 'Uyeler2.php' SQL Injection 24 WEB dumenci
2007-08-20   Firesoft - 'Class_TPL.php' Remote File Inclusion 22 WEB DarKdewiL
2007-08-20   Dalai Forum 1.1 - 'forumreply.php' Local File Inclusion 25 WEB DarKdewiL
2007-08-17   Text File Search Classic - 'TextFileSearch.asp' Cross-Site Scripting 23 WEB GeFORC3
2007-07-16   Olate Download 3.4.1 - 'admin.php' Remote Authentication Bypass 24 WEB imei
2007-07-09   Systeme de vote pour site Web 1.0 - Multiple Remote File Inclusions 23 WEB Crackers_Child
2007-07-13   SkilMatch Systems JobLister3 - 'index.php' SQL Injection 20 WEB joseph.giron13
2007-08-11   Openads (PHPAdsNew) < 2.0.8 - 'lib-remotehost.inc.php' Remote File Inclusion 28 WEB Ma$tEr-0F-De$a$t0r
2007-08-11   Haudenschilt Family Connections 0.8 - 'index.php' Authentication Bypass 23 WEB ilker Kandemir
2007-08-11   PHP-Stats 0.1.9.2 - 'WhoIs.php' Cross-Site Scripting 22 WEB vasodipandora
2007-08-11   Lib2 PHP Library 0.2 - 'My_Statistics.php' Remote File Inclusion 21 WEB ilker Kandemir
2007-08-09   Web News 1.1 - 'news.php?config[root_ordner]' Remote File Inclusion 25 WEB Rizgar
2007-08-09   Web News 1.1 - 'feed.php?config[root_ordner]' Remote File Inclusion 22 WEB Rizgar
2007-08-09   Web News 1.1 - 'index.php?config[root_ordner]' Remote File Inclusion 25 WEB Rizgar
2007-08-09   Bilder Galerie 1.0 - 'index.php' Remote File Inclusion 23 WEB Rizgar
2007-08-09   Shoutbox 1.0 - 'Shoutbox.php' Remote File Inclusion 26 WEB Rizgar
2013-12-24   PHP MBB CMS 004 - Multiple Vulnerabilities 22 WEB cr4wl3r
2013-12-24   Song Exporter 2.1.1 RS iOS - Local File Inclusion 23 WEB Vulnerability-Lab
2013-12-24   Synology DSM 4.3-3810 - Directory Traversal 26 WEB Andrea Fabrizi
2013-12-24   Zimbra Collaboration Server 7.2.2/8.0.2 - Local File Inclusion (Metasploit) 23 WEB Metasploit
2007-08-09   File Uploader 1.1 - 'datei.php?config[root_ordner]' Remote File Inclusion 21 WEB Rizgar
2007-08-09   File Uploader 1.1 - 'index.php?config[root_ordner]' Remote File Inclusion 21 WEB Rizgar
2007-08-09   Mapos-Scripts.de Gastebuch 1.5 - 'index.php' Remote File Inclusion 21 WEB Rizgar
2007-08-08   Coppermine Photo Gallery 1.3/1.4 - 'YABBSE.INC.php' Remote File Inclusion 25 WEB Ma$tEr-0F-De$a$t0r
2007-08-07   VietPHP - 'index.php?language' Remote File Inclusion 23 WEB master-of-desastor