| -::DATE |
-::DESCRIPTION |
-::HITS |
|
|
|
|
-::AUTHOR |
| 2009-09-09 |
Agoko CMS <= 0.4 Remote Command Execution Exploit |
2470 |
R | |
D
|
|
StAkeR
|
| 2009-07-13 |
RunCMS <= 1.6.3 (double ext) Remote Shell Injection Exploit |
4064 |
R | |
D
|
|
StAkeR
|
| 2009-06-17 |
fuzzylime cms <= 3.03a Local Inclusion / Arbitrary File Corruption PoC |
2910 |
R | |
D
|
|
StAkeR
|
| 2009-06-12 |
phpWebThings <= 1.5.2 MD5 Hash Retrieve/File Disclosure Exploit |
3557 |
R | |
D
|
|
StAkeR
|
| 2009-06-10 |
LightNEasy sql/no-db <= 2.2.x system Config Disclosure Exploit |
3083 |
R | |
D
|
|
StAkeR
|
| 2009-06-03 |
Podcast Generator <= 1.2 unauthorized Re-Installation Remote Exploit |
2219 |
R | |
D
|
|
StAkeR
|
| 2009-06-02 |
Podcast Generator <= 1.2 GLOBALS[] Multiple Remote Vulnerabilities |
2563 |
R | |
D
|
|
StAkeR
|
| 2009-05-26 |
cpCommerce 1.2.x GLOBALS[prefix] Arbitrary File Inclusion Exploit |
2556 |
R | |
D
|
|
StAkeR
|
| 2009-05-11 |
eggBlog <= 4.1.1 Local Directory Transversal Exploit |
2081 |
R | |
D
|
|
StAkeR
|
| 2009-05-11 |
openWYSIWYG <= 1.4.7 Local Directory Transversal Vulnerability |
2163 |
R | |
D
|
|
StAkeR
|
| 2009-04-28 |
webSPELL <= 4.2.0d Local File Disclosure Exploit (.c linux) |
4693 |
R | |
D
|
|
StAkeR
|
| 2009-04-22 |
Dokeos LMS <= 1.8.5 (include) Remote Code Execution Exploit |
3643 |
R | |
D
|
|
StAkeR
|
| 2009-04-20 |
e107 <= 0.7.15 (extended_user_fields) Blind SQL Injection Exploit |
8205 |
R | |
D
|
|
StAkeR
|
| 2009-04-13 |
Flatnuke <= 2.7.1 (level) Remote Privilege Escalation Exploit |
2987 |
R | |
D
|
|
StAkeR
|
| 2009-04-03 |
AdaptBB 1.0 (topic_id) SQL Injection / Credentials Disclosure Exploit |
4419 |
R | |
D
|
|
StAkeR
|
| 2009-03-09 |
PHP Director <= 0.21 (sql into outfile) eval() Injection Exploit |
3181 |
R | |
D
|
|
StAkeR
|
| 2009-03-09 |
Woltlab Burning Board 3.0.x Multiple Remote Vulnerabilities |
5784 |
R | |
D
|
|
StAkeR
|
| 2009-02-26 |
Coppermine Photo Gallery <= 1.4.20 (BBCode IMG) Privilege Escalation |
14565 |
R | |
D
|
|
StAkeR
|
| 2009-02-23 |
MDPro Module My_eGallery (pid) Remote SQL Injection Exploit |
5635 |
R | |
D
|
|
StAkeR
|
| 2009-02-16 |
MemHT Portal <= 4.0.1 (pvtmsg) Delete All Private Messages Exploit |
3116 |
R | |
D
|
|
StAkeR
|
| 2009-02-03 |
CMS from Scratch <= 1.9.1 (fckeditor) Remote File Upload Exploit |
5623 |
R | |
D
|
|
StAkeR
|
| 2009-01-25 |
MemHT Portal <= 4.0.1 (avatar) Remote Code Execution Exploit |
3706 |
R | |
D
|
|
StAkeR
|
| 2009-01-08 |
CuteNews <= 1.4.6 (ip ban) XSS/Command Execution Exploit (adm req.) |
8389 |
R | |
D
|
|
StAkeR
|
| 2009-01-08 |
XOOPS 2.3.2 (mydirname) Remote PHP Code Execution Exploit |
14716 |
R | |
D
|
|
StAkeR
|
| 2009-01-06 |
SeaMonkey <= 1.1.14 (marquee) Denial of Service Exploit |
3421 |
R | |
D
|
|
StAkeR
|
| 2009-01-04 |
webSPELL <= 4.01.02 (id) Remote Edit Topics Vulnerability |
8092 |
R | |
D
|
|
StAkeR
|
| 2009-01-04 |
PNphpBB2 <= 1.2i (ModName) Multiple Local File Inclusion Exploit |
10143 |
R | |
D
|
|
StAkeR
|
| 2009-01-01 |
Konqueror 4.1 XSS / Remote Crash Vulnerabilities |
4836 |
R | |
D
|
|
StAkeR
|
| 2008-12-29 |
Ultimate PHP Board <= 2.2.1 (log inj) Privilege Escalation Exploit |
4199 |
R | |
D
|
|
StAkeR
|
| 2008-12-28 |
DeluxeBB <= 1.2 Remote Blind SQL Injection Exploit |
3670 |
R | |
D
|
|
StAkeR
|
| 2008-12-24 |
PHP-Fusion <= 7.0.2 Remote Blind SQL Injection Exploit |
15037 |
R | |
D
|
|
StAkeR
|
| 2008-12-22 |
SolarCMS 0.53.8 (Forum) Remote Cookies Disclosure Exploit |
3917 |
R | |
D
|
|
StAkeR
|
| 2008-12-22 |
Calendar Script 1.1 (Auth Bypass) SQL Injection Vulnerability |
4036 |
R | |
D
|
|
StAkeR
|
| 2008-12-18 |
2532|Gigs 1.2.2 Stable Remote Login Bypass Vulnerability |
3269 |
R | |
D
|
|
StAkeR
|
| 2008-12-18 |
2532|Gigs 1.2.2 Stable Remote Command Execution Exploit |
3461 |
R | |
D
|
|
StAkeR
|
| 2008-12-17 |
Lizardware CMS <= 0.6.0 Blind SQL Injection Exploit |
2948 |
R | |
D
|
|
StAkeR
|
| 2008-12-15 |
Mediatheka <= 4.2 Remote Blind SQL Injection Exploit |
2385 |
R | |
D
|
|
StAkeR
|
| 2008-12-12 |
Wysi Wiki Wyg 1.0 Remote Password Retrieve Exploit |
2760 |
R | |
D
|
|
StAkeR
|
| 2008-12-08 |
phpBB 3 (Mod Tag Board <= 4) Remote Blind SQL Injection Exploit |
23432 |
R | |
D
|
|
StAkeR
|
| 2008-12-03 |
Joomla Component com_jmovies 1.1 (id) SQL Injection Exploit |
6718 |
R | |
D
|
|
StAkeR
|
| 2008-11-28 |
All Club CMS <= 0.0.2 Remote DB Config Retrieve Exploit |
2522 |
R | |
D
|
|
StAkeR
|
| 2008-11-20 |
PunBB Mod PunPortal 0.1 Local File Inclusion Exploit |
4247 |
R | |
D
|
|
StAkeR
|
| 2008-11-19 |
PunBB (Private Messaging System 1.2.x) Multiple LFI Exploit |
5040 |
R | |
D
|
|
StAkeR
|
| 2008-11-19 |
MauryCMS <= 0.53.2 Remote Shell Upload Exploit |
4372 |
R | |
D
|
|
StAkeR
|
| 2008-11-17 |
OpenASP <= 3.0 Blind SQL Injection Vulnerability |
3195 |
R | |
D
|
|
StAkeR
|
| 2008-11-14 |
SlimCMS <= 1.0.0 (edit.php) Remote SQL Injection Exploit |
3776 |
R | |
D
|
|
StAkeR
|
| 2008-11-07 |
e-Vision CMS <= 2.0.2 Multiple Local File Inclusion Exploit |
2673 |
R | |
D
|
|
StAkeR
|
| 2008-11-05 |
phpBB Mod Small ShoutBox 1.4 Remote Edit/Delete Messages Vuln |
7223 |
R | |
D
|
|
StAkeR
|
| 2008-11-05 |
PHPX 3.5.16 (news_id) Remote SQL Injection Exploit |
2691 |
R | |
D
|
|
StAkeR
|
| 2008-11-04 |
Vibro-CMS Multiple Remote SQL Injection Vulnerabilities |
2389 |
R | |
D
|
|
StAkeR
|
| 2008-11-04 |
nicLOR Puglia Landscape (id) Local File Inclusion Vulnerability |
2213 |
R | |
D
|
|
StAkeR
|
| 2008-11-04 |
nicLOR Sito includefile Local File Inclusion Vulnerabilities |
2756 |
R | |
D
|
|
StAkeR
|
| 2008-11-04 |
TR News <= 2.1 (login.php) Remote Login Bypass Exploit |
3610 |
R | |
D
|
|
StAkeR
|
| 2008-11-02 |
NetRisk <= 2.0 (XSS/SQL Injection) Remote Vulnerabilities |
3341 |
R | |
D
|
|
StAkeR
|
| 2008-11-01 |
Micro CMS <= 0.3.5 Remote (Add/Delete/Password Change) Exploit |
2343 |
R | |
D
|
|
StAkeR
|
| 2008-10-30 |
MyPHP Forum <= 3.0 Edit Topics/Blind SQL Injection Vulnerabilities |
4088 |
R | |
D
|
|
StAkeR
|
| 2008-10-28 |
H2O-CMS <= 3.4 Remote Command Execution Exploit (mq = off) |
3248 |
R | |
D
|
|
StAkeR
|
| 2008-10-27 |
e107 Plugin EasyShop (category_id) Blind SQL Injection Exploit |
3994 |
R | |
D
|
|
StAkeR
|
| 2008-10-23 |
CSPartner 1.0 (Delete All Users/SQL Injection) Remote Exploit |
2971 |
R | |
D
|
|
StAkeR
|
| 2008-10-23 |
miniPortail <= 2.2 (XSS/LFI) Remote Vulnerabilities |
3126 |
R | |
D
|
|
StAkeR
|
| 2008-10-21 |
Limbo CMS (Private Messaging Component) SQL Injection Vulnerability |
4713 |
R | |
D
|
|
StAkeR
|
| 2008-10-20 |
Wysi Wiki Wyg 1.0 (LFI/XSS/PHPInfo) Remote Vulnerabilities |
6016 |
R | |
D
|
|
StAkeR
|
| 2008-10-18 |
miniBloggie 1.0 (del.php) Remote Blind SQL Injection Exploit |
3336 |
R | |
D
|
|
StAkeR
|
| 2008-10-18 |
PHP Easy Downloader <= 1.5 Remote File Creation Exploit |
4720 |
R | |
D
|
|
StAkeR
|
| 2008-10-16 |
Mic_blog 0.0.3 (SQL Injection/Privilege Escalation) Remote Exploit |
3028 |
R | |
D
|
|
StAkeR
|
| 2008-10-16 |
iGaming CMS 2.0 Alpha 1 (search.php) Remote SQL Injection Exploit |
3723 |
R | |
D
|
|
StAkeR
|
| 2008-10-12 |
Globsy <= 1.0 Remote File Rewriting Exploit |
2949 |
R | |
D
|
|
StAkeR
|
| 2008-10-10 |
SlimCMS <= 1.0.0 (redirect.php) Privilege Escalation Exploit |
4100 |
R | |
D
|
|
StAkeR
|
| 2008-10-07 |
Yerba SACphp <= 6.3 Multiple Remote Vulnerabilities |
3284 |
R | |
D
|
|
StAkeR
|
| 2008-10-03 |
IP Reg <= 0.4 Remote Blind SQL Injection Exploit |
3743 |
R | |
D
|
|
StAkeR
|
| 2008-10-03 |
AdaptCMS Lite <= 1.3 Blind SQL Injection Exploit |
3803 |
R | |
D
|
|
StAkeR
|
| 2008-10-01 |
ADN Forum <= 1.0b Blind SQL Injection Exploit |
3432 |
R | |
D
|
|
StAkeR
|
| 2008-10-01 |
Crux Gallery <= 1.32 (index.php theme) Local File Inclusion Vulnerability |
3431 |
R | |
D
|
|
StAkeR
|
| 2008-09-28 |
PHPcounter <= 1.3.2 (index.php name) Remote SQL Injection Exploit |
3396 |
R | |
D
|
|
StAkeR
|
| 2008-09-25 |
Vikingboard <= 0.2 Beta SQL Column Truncation Vulnerability |
2948 |
R | |
D
|
|
StAkeR
|
| 2008-09-23 |
iGaming CMS <= 1.5 Multiple Remote SQL Injection Exploit |
3173 |
R | |
D
|
|
StAkeR
|
| 2008-09-15 |
CzarNews <= 1.20 (Cookie) Remote SQL Injection Exploit |
4007 |
R | |
D
|
|
StAkeR
|
| 2008-09-12 |
WebPortal CMS <= 0.7.4 (download.php aid) SQL Injection Exploit |
3902 |
R | |
D
|
|
StAkeR
|
| 2008-09-11 |
Sports Clubs Web Panel 0.0.1 (p) Local File Inclusion Vulnerability |
2837 |
R | |
D
|
|
StAkeR
|
| 2008-09-10 |
Libera CMS <= 1.12 (Cookie) Remote SQL Injection Exploit |
3651 |
R | |
D
|
|
StAkeR
|
| 2008-07-15 |
Galatolo Web Manager 1.3a <= XSS / Remote SQL Injection Vulnerability |
4001 |
R | |
D
|
|
StAkeR
|
| 2008-07-01 |
php-Agenda 2.2.4 (index.php page) Local File Inclusion Vulnerability |
4304 |
R | |
D
|
|
StAkeR
|
| 2008-07-01 |
CAT2 (spaw_root) Local File Inclusion Vulnerability |
3455 |
R | |
D
|
|
StAkeR
|
| 2008-06-26 |
Keller Web Admin CMS 0.94 Pro Local File Inclusion Vulnerability (1st) |
4361 |
R | |
D
|
|
StAkeR
|
| 2008-06-25 |
mUnky 0.0.1 (index.php zone) Local File Inclusion Vulnerability |
3686 |
R | |
D
|
|
StAkeR
|
| 2008-06-08 |
Galatolo Web Manager 1.0 XSS / Local File Inclusion Vulnerability |
3785 |
R | |
D
|
|
StAkeR
|