Blog RSSExploits RSSFacebook

WEB

Date D   Description Plat. Author
2007-07-24   Webbler CMS 3.1.3 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities 18 WEB Adrian Pastor
2013-12-17   FileMaster SY-IT 3.1 iOS - Multiple Web Vulnerabilities 18 WEB Vulnerability-Lab
2007-07-23   Alstrasoft Affiliate Network Pro 8.0 - 'pgmid' SQL Injection 15 WEB Lostmon
2007-07-23   Alstrasoft Affiliate Network Pro 8.0 - 'temp.php' Cross-Site Scripting 15 WEB Lostmon
2007-07-23   Alstrasoft Affiliate Network Pro 8.0 - 'index.php' Cross-Site Scripting 18 WEB Lostmon
2007-07-23   Alstrasoft Sms Text Messaging Enterprise 2.0 - '/admin/edituser.php?userid' Cross-Site Scripting 21 WEB Lostmon
2007-07-23   Alstrasoft Sms Text Messaging Enterprise 2.0 - '/admin/membersearch.php' Multiple Cross-Site Scripti 17 WEB Lostmon
2007-07-23   Alstrasoft Video Share Enterprise 4.x - Multiple Input Validation Vulnerabilities 16 WEB Lostmon
2013-12-16   Penny Auction 5 - SQL Injection 16 WEB 3spi0n
2013-12-16   Lowest Unique Bid Auction - SQL Injection 19 WEB 3spi0n
2013-12-16   Cisco EPC3925 - Cross-Site Request Forgery 19 WEB Jeroen - IT Nerdbox
2013-12-16   Beetel TC1-450 Airtel Wireless Router - Multiple Cross-Site Request Forgery Vulnerabilities 15 WEB Samandeep Singh
2013-12-16   UPC Ireland Cisco EPC 2425 Router / Horizon Box - WPA-PSK Handshake Information 17 WEB Matt O'Connor
2013-12-16   iScripts MultiCart 2.4 - Persistent Cross-Site Scripting / Cross-Site Request Forgery / Cross-Site S 22 WEB Saadi Siddiqui
2013-12-16   Wallpaper Script 3.5.0082 - Persistent Cross-Site Scripting 16 WEB null pointer
2007-07-23   PHMe 0.0.2 - 'Function_List.php' Local File Inclusion 16 WEB You_You
2007-07-23   Image Racer - 'searchresults.asp' SQL Injection 16 WEB Aria-Security Team
2007-07-23   ASP cvmatik 1.1 - Multiple HTML Injection Vulnerabilities 16 WEB GeFORC3
2007-07-23   Alisveris Sitesi Scripti - 'index.asp' Cross-Site Scripting 17 WEB GeFORC3
2013-12-16   Gitlab 6.0 - Persistent Cross-Site Scripting 17 WEB hellok
2007-07-23   Alisveris Sitesi Scripti - 'index.asp' SQL Injection 18 WEB GeFORC3
2007-07-23   Dora Emlak 1.0 Script - Multiple Input Validation Vulnerabilities 17 WEB GeFORC3
2007-07-20   UseBB 1.0.7 - '/install/upgrade-0-3.php?PHP_SELF' Cross-Site Scripting 14 WEB s4mi
2007-07-20   UseBB 1.0.7 - '/install/upgrade-0-2-3.php?PHP_SELF' Cross-Site Scripting 15 WEB s4mi
2007-07-19   GeoBlog MOD_1.0 - 'deleteblog.php?id' Arbitrary Blog Deletion 17 WEB joseph.giron13
2007-07-19   GeoBlog MOD_1.0 - 'deletecomment.php?id' Arbitrary Comment Deletion 16 WEB joseph.giron13
2007-07-17   Insanely Simple Blog 0.4/0.5 - Cross-Site Scripting 16 WEB joseph.giron13
2007-07-17   Insanely Simple Blog 0.4/0.5 - 'index.php' SQL Injection 18 WEB joseph.giron13
2007-07-17   husrevforum 1.0.1/2.0.1 - 'Philboard_forum.asp' SQL Injection 18 WEB GeFORC3
2007-07-16   TBDev.NET DR - 'TakeProfEdit.php' HTML Injection 16 WEB PescaoDeth
2007-07-14   Citadel WebCit 7.02/7.10 - 'showuser?who' Cross-Site Scripting 17 WEB Christopher Schwardt
2013-12-15   Phone Drive Eightythree 4.1.1 iOS - Multiple Vulnerabilities 19 WEB Vulnerability-Lab
2013-12-15   Piwigo CMS 2.5.3 - Multiple Web Vulnerabilities 16 WEB sajith
2007-07-13   Dating Gold 3.0.5 - 'secure.admin.php?int_path' Remote File Inclusion 19 WEB mostafa_ragab
2007-07-13   Dating Gold 3.0.5 - 'footer.php?int_path' Remote File Inclusion 16 WEB mostafa_ragab
2007-07-13   Dating Gold 3.0.5 - 'header.php?int_path' Remote File Inclusion 16 WEB mostafa_ragab
2007-03-23   MzK Blog - 'Katgoster.asp' SQL Injection 18 WEB GeFORC3
2007-07-13   ActiveWeb Contentserver CMS 5.6.2929 - Client-Side Filtering Bypass 21 WEB RedTeam Pentesting
2007-07-13   contentserver 5.6.2929 - '/errors/transaction.asp?msg' Cross-Site Scripting 18 WEB RedTeam Pentesting
2007-07-13   contentserver 5.6.2929 - '/errors/rights.asp?msg' Cross-Site Scripting 19 WEB RedTeam Pentesting
2007-07-13   ActiveWeb Contentserver 5.6.2929 - 'Picture_Real_Edit.asp' SQL Injection 20 WEB RedTeam Pentesting
2007-07-12   Inmostore 4.0 - 'index.php' SQL Injection 18 WEB Keniobats
2007-07-12   Helma 1.5.3 - Search Script Cross-Site Scripting 20 WEB Hanno Boeck
2007-07-11   IBM Proventia Sensor Appliance - Multiple Input Validation Vulnerabilities 18 WEB Alex Hernandez
2007-07-11   EnViVo!CMS - 'default.asp?ID' SQL Injection 15 WEB durito
2007-07-10   ImgSvr 0.6 - 'Template' Local File Inclusion 21 WEB Tim Brown
2007-07-09   SquirrelMail G/PGP Encryption Plugin 2.0/2.1 - Multiple Remote Command Execution Vulnerabilities 19 WEB Stefan Esser
2007-07-07   Levent Veysi Portal 1.0 - 'Oku.asp' SQL Injection 21 WEB GeFORC3
2007-07-05   Maia Mailguard 1.0.2 - 'login.php' Multiple Local File Inclusions 18 WEB Adriel T. Desautels
2007-07-04   OpManager 6/7 - '/admin/DeviceAssociation.do' Multiple Cross-Site Scripting Vulnerabilities 19 WEB Lostmon
2007-07-04   OpManager 6/7 - 'admin/ServiceConfiguration.do?Operation' Cross-Site Scripting 17 WEB Lostmon
2007-07-04   OpManager 6/7 - reports/ReportViewAction.do Multiple Cross-Site Scripting Vulnerabilities 17 WEB Lostmon
2007-07-04   OpManager 6/7 - 'traceRoute.do?name' Cross-Site Scripting 18 WEB Lostmon
2007-07-04   OpManager 6/7 - 'ping.do?name' Cross-Site Scripting 19 WEB Lostmon
2007-07-04   NetFlow Analyzer 5 - '/jspui/customReport.jsp?rtype' Cross-Site Scripting 17 WEB Lostmon
2007-07-04   NetFlow Analyzer 5 - '/jspui/selectDevice.jsp?rtype' Cross-Site Scripting 20 WEB Lostmon
2007-07-04   NetFlow Analyzer 5 - 'netflow/jspui/index.jsp?view' Cross-Site Scripting 18 WEB Lostmon
2007-07-04   NetFlow Analyzer 5 - '/jspui/appConfig.jsp?task' Cross-Site Scripting 20 WEB Lostmon
2007-07-04   NetFlow Analyzer 5 - '/jspui/applicationList.jsp?alpha' Cross-Site Scripting 21 WEB Lostmon
2007-07-03   Oliver - Multiple Cross-Site Scripting Vulnerabilities 19 WEB A. R.
2007-07-02   Liesbeth Base CMS - Information Disclosure 22 WEB durito
2007-07-02   Moodle 1.7.1 - 'index.php' Cross-Site Scripting 16 WEB MustLive
2007-07-02   Yoggie Pico and Pico Pro Backticks - Remote Code Execution 17 WEB Cody Brocious
2007-07-02   Claroline 1.8.3 - '$_SERVER['PHP_SELF']' Multiple Cross-Site Scripting Vulnerabilities 18 WEB munozferna
2007-06-27   ETicket 1.5.5 - 'Open.php' Multiple Cross-Site Scripting Vulnerabilities 20 WEB Jesper Jurcenoks
2006-12-02   DUClassmate 1.x - 'ICity' SQL Injection 18 WEB Aria-Security Team
2007-06-27   Papoo 1.0.3 - 'Plugin.php' Authentication Bypass 18 WEB Nico Leidecker
2013-12-12   Pentagram Cerberus P 6363 DSL Router - Multiple Vulnerabilities 17 WEB condis
2013-12-12   WHMCompleteSolution (WHMCS) 4.x/5.x - Multiple Web Vulnerabilities 16 WEB AhwAk20o0 --
2013-12-12   Cythosia 2.x Botnet (C2 Web Panel) - SQL Injection 20 WEB GalaxyAndroid
2013-12-12   KikChat - Local File Inclusion / Remote Code Execution 16 WEB cr4wl3r
2007-06-25   Calendarix 0.7.20070307 - Multiple SQL Injections 18 WEB Jesper Jurcenoks
2007-06-25   Calendarix 0.7.20070307 - Multiple Cross-Site Scripting Vulnerabilities 20 WEB Jesper Jurcenoks
2007-06-25   MyNews 0.10 - AuthACC SQL Injection 17 WEB netVigilance
2007-06-22   Joomla! / Mambo Component Mod_Forum - 'PHPBB_Root.php' Remote File Inclusion 19 WEB spymeta
2007-06-22   eNdonesia 8.4 - 'banners.php?click Action bid' SQL Injection 18 WEB laurent gaffie
2007-06-22   eNdonesia 8.4 - 'mod.php?viewarticle Action artid' SQL Injection 15 WEB laurent gaffie
2007-06-21   NetClassifieds 1.9.7 - Multiple Input Validation Vulnerabilities 19 WEB laurent gaffie
2007-06-21   PHPAccounts 0.5 - 'index.php' Multiple SQL Injections 18 WEB r0t
2007-06-21   PHPAccounts 0.5 - 'index.php' Local File Inclusion 16 WEB r0t
2007-06-20   Wrapper.php for osCommerce - Local File Inclusion 16 WEB Joe Bloomquist
2007-06-20   FuseTalk 4.0 - 'AuthError.cfm' Multiple Cross-Site Scripting Vulnerabilities 17 WEB Ivan Almuina
2013-12-11   Photo Video Album Transfer 1.0 iOS - Multiple Vulnerabilities 19 WEB Vulnerability-Lab
2013-12-11   eFront 3.6.14 (build 18012) - Multiple Persistent Cross-Site Scripting Vulnerabilities 21 WEB sajith
2007-06-20   FuseTalk 4.0 - 'blog/include/common/comfinish.cfm?FTVAR_SCRIPTRUN' Cross-Site Scripting 18 WEB Ivan Almuina
2007-06-20   FuseTalk 4.0 - 'forum/include/common/comfinish.cfm?FTVAR_SCRIPTRUN' Cross-Site Scripting 18 WEB Ivan Almuina
2007-06-20   Comersus Cart 7.0.7 - 'comersus_message.asp' redirectUrl Cross-Site Scripting 18 WEB Doz
2007-06-20   Comersus Cart 7.0.7 - 'comersus_customerAuthenticateForm.asp' redirectUrl Cross-Site Scripting 18 WEB Doz
2007-06-20   Comersus Cart 7.0.7 - 'comersus_optReviewReadExec.asp?id' SQL Injection 16 WEB Doz
2007-06-19   FuseTalk 2.0/3.0 - 'AuthError.cfm' SQL Injection 15 WEB Ivan Almuina
2007-06-18   Fuzzylime 1.0 - 'Low.php' Cross-Site Scripting 16 WEB RMx
2007-08-18   PHP Hosting Biller 1.0 - 'index.php' Cross-Site Scripting 18 WEB Serapis.net
2007-06-18   WebIf - 'OutConfig' Local File Inclusion 19 WEB maiosyet
2007-06-18   TDizin - 'Arama.asp' Cross-Site Scripting 18 WEB GeFORC3
2007-06-18   WSPortal 1.0 - 'content.php' SQL Injection 18 WEB Jesper Jurcenoks
2007-06-14   Apache MyFaces Tomahawk JSF Framework 1.1.5 - 'Autoscroll' Cross-Site Scripting 19 WEB Rajat Swarup
2007-06-14   Joomla! Component Letterman Subscriber Module 1.2.4 - 'Mod_Lettermansubscribe.php' Cross-Site Script 18 WEB Edi Strosar
2007-06-14   Apache Tomcat 6.0.13 - JSP Example Web Applications Cross-Site Scripting 20 WEB anonymous
2013-12-10   PlaySms 0.9.9.2 - Cross-Site Request Forgery 18 WEB Saadi Siddiqui
2007-06-11   bbPress 0.8.1 - 'BB-login.php' Cross-Site Scripting 17 WEB Ory Segal
2007-06-11   JFFNms 0.8.3 - 'admin/setup.php' Direct Request Authentication Bypass 17 WEB Tim Brown
2007-06-11   JFFNms 0.8.3 - 'admin/adm/test.php' PHP Information Disclosure 16 WEB Tim Brown
2007-06-11   JFFNms 0.8.3 - 'auth.php?user' Cross-Site Scripting 16 WEB Tim Brown
2007-06-11   JFFNms 0.8.3 - 'auth.php' Multiple SQL Injections 16 WEB Tim Brown
2007-06-11   Beehive Forum 0.7.1 - 'links.php' Multiple Cross-Site Scripting Vulnerabilities 18 WEB Ory Segal
2007-06-09   vBSupport 2.0.0 Integrated Ticket System - 'vBSupport.php' SQL Injection 19 WEB rUnViRuS
2007-06-08   WordPress Core 2.2 - 'Request_URI' Cross-Site Scripting 16 WEB zamolx3
2007-06-08   Ibrahim Ã?AKICI - 'Okul Portal Haber_Oku.asp' SQL Injection 18 WEB ertuqrul
2007-06-07   WMSCMS 2.0 - Multiple Cross-Site Scripting Vulnerabilities 19 WEB Glafkos Charalambous
2007-06-07   Atom Photoblog 1.0.1/1.0.9 - 'AtomPhotoblog.php' Multiple Input Validation Vulnerabilities 18 WEB Serapis.net
2007-06-06   ASP Folder Gallery - 'Download_Script.asp' Arbitrary File Download 17 WEB freeprotect.net
2007-06-06   Joomla! Component JD-Wiki 1.0.2 - 'wantedpages.php?MosConfig_absolute_path' Remote File Inclusion 16 WEB DarkbiteX
2007-06-06   Joomla! Component JD-Wiki 1.0.2 - 'dwpage.php?MosConfig_absolute_path' Remote File Inclusion 16 WEB DarkbiteX
2013-12-09   CGILua 3.0 - SQL Injection 14 WEB aceeeeeeeer .
2007-06-04   My Databook - 'diary.php?year' Cross-Site Scripting 18 WEB Serapis.net
2007-06-04   My Databook - 'diary.php?delete' SQL Injection 18 WEB Serapis.net
2013-12-08   Print n Share 5.5 iOS - Multiple Web Vulnerabilities 21 WEB Vulnerability-Lab
2013-12-08   Feetan Inc WireShare 1.9.1 iOS - Persistent 19 WEB Vulnerability-Lab
2007-06-04   WebStudio CMS - 'index.php' Cross-Site Scripting 17 WEB Glafkos Charalambous
2007-06-04   Hunkaray Okul Portaly 1.1 - 'Haberoku.asp' SQL Injection 19 WEB ertuqrul
2007-06-04   Okyanusmedya - 'index.php' Cross-Site Scripting 17 WEB vagrant
2007-06-02   Linker 2.0.4 - 'index.php' Cross-Site Scripting 16 WEB vagrant
2007-06-01   PHPLive! 3.2.2 - '/setup/footer.php' Multiple Cross-Site Scripting Vulnerabilities 15 WEB ReZEN
2007-06-01   PHPLive! 3.2.2 - '/super/info.php?BASE_URL' Cross-Site Scripting 14 WEB ReZEN
2007-06-01   PHPLive! 3.2.2 - '/admin/header.php?admin[name]' Cross-Site Scripting 15 WEB ReZEN